Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06.06.2018 01 Ran by scoched (09-06-2018 14:13:49) Running from C:\Users\scoched\Downloads Windows 7 Home Premium Service Pack 1 (X64) (2017-12-27 10:48:16) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-265477098-3700819255-1821915994-500 - Administrator - Disabled) Guest (S-1-5-21-265477098-3700819255-1821915994-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-265477098-3700819255-1821915994-1002 - Limited - Enabled) scoched (S-1-5-21-265477098-3700819255-1821915994-1000 - Administrator - Enabled) => C:\Users\scoched ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 1.1.3 (HKLM-x32\...\{A4046FE1-986B-4463-B4DD-CFA473A7056B}_is1) (Version: - PDFZilla) AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.8 - Advanced Micro Devices, Inc.) Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.00.0000 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.00.0000 - Activision) Canon MG3100 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3100_series) (Version: - Canon Inc.) Chromium (HKLM-x32\...\{E6310EF1-B6B1-DF71-0731-AFF1D7B17C71}) (Version: - ) Chromium (HKLM-x32\...\{F5301DF0-A5B0-CC70-1430-BCF0C4B06F70}) (Version: - ) Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 66.0.3359.181 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden Grand Theft Auto Vice City (HKLM-x32\...\{4B35F00C-E63D-40DC-9839-DF15A33EAC46}) (Version: 1.00.000 - ) Hi-Rez Studios Games (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) Java 8 Update 171 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180171F0}) (Version: 8.0.1710.11 - Oracle Corporation) Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Lens Studio 1.0.0 (HKLM-x32\...\{652D235D-D6FF-4E47-B95F-D2BE6E8B9858}}_is1) (Version: 1.0.0 - Snap Inc.) Logitech Webcam Software (HKLM\...\{987FE247-4E69-4A2E-A961-D14F901FDBF6}) (Version: 12.10.1113 - Logitech Inc.) Logitech Webcam Software Driver Package (HKLM\...\lvdrivers_12.10) (Version: 12.10.1110 - Logitech Inc.) Microsoft .NET Framework 4.7.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.02558 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24123 (HKLM-x32\...\{206898cc-4b41-4d98-ac28-9f9ae57f91fe}) (Version: 14.0.24123.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) Mozilla Firefox 60.0.2 (x64 fr) (HKLM\...\Mozilla Firefox 60.0.2 (x64 fr)) (Version: 60.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 60.0.1 - Mozilla) NETGEAR A6210 Genie (HKLM-x32\...\{CBFDA180-F247-4C51-9B2D-B3A7E34666C9}) (Version: 1.0.0.32 - NETGEAR) Hidden NVIDIA 3D Vision Controller Driver 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation) NVIDIA 3D Vision Driver 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 342.01 - NVIDIA Corporation) NVIDIA GeForce Experience 3.12.0.84 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.12.0.84 - NVIDIA Corporation) NVIDIA Graphics Driver 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 342.01 - NVIDIA Corporation) NVIDIA PhysX System Software 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.117.328.2018 - Realtek) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) VTech Download Agent Library (HKLM-x32\...\{DB083AE1-3354-4AAD-BD44-5F2CC4B2ECE6}) (Version: 1.00.0000 - VTech) Hidden Warface My.Com (HKU\S-1-5-21-265477098-3700819255-1821915994-1000\...\Warface My.Com) (Version: 1.60 - My.com B.V.) WinRAR 5.50 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\scoched\AppData\Local\MEGAsync\ShellExtX64.dll -> No File ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\scoched\AppData\Local\MEGAsync\ShellExtX64.dll -> No File ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\scoched\AppData\Local\MEGAsync\ShellExtX64.dll -> No File ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\scoched\AppData\Local\MEGAsync\ShellExtX64.dll -> No File ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\scoched\AppData\Local\MEGAsync\ShellExtX64.dll -> No File ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\scoched\AppData\Local\MEGAsync\ShellExtX64.dll -> No File ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\scoched\AppData\Local\MEGAsync\ShellExtX64.dll -> No File ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll -> No File ContextMenuHandlers2: [DaemonShellExtDriveUltra] -> {F0E53CA3-02F8-40AE-9470-309F0309036F} => C:\Program Files\DAEMON Tools Ultra\DTShl64.dll -> No File ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\scoched\AppData\Local\MEGAsync\ShellExtX64.dll -> No File ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll -> No File ContextMenuHandlers3: [DaemonShellExtImageUltra] -> {B5EBA666-2B94-4C7A-9CAA-A4539F329646} => C:\Program Files\DAEMON Tools Ultra\DTShl64.dll -> No File ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\scoched\AppData\Local\MEGAsync\ShellExtX64.dll -> No File ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\scoched\AppData\Local\MEGAsync\ShellExtX64.dll -> No File ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2016-11-14] (NVIDIA Corporation) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {08A9E997-F22F-4523-8376-48F9C0FDF4FF} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe Task: {0AD0F157-2807-42C2-AF7E-3BB5E551001F} - System32\Tasks\Yahoo! Powered malat => C:\Windows\system32\wscript.exe "C:\ProgramData\{28E7ED84-A2A5-6742-2463-F900BE2172CE}\cani.txt" "68747470733a2f2f7275647564756c752e636f6d" "//B" "//E:jscript" "--IsErIk" <==== ATTENTION Task: {501F693E-A61E-4F15-A382-377461A64F1A} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe Task: {651C524D-F1FD-4418-9869-C6CCB0B29528} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-01-10] (NVIDIA Corporation) Task: {7859FD18-9E6E-4A91-A626-7DD56B499A7B} - System32\Tasks\{7B9EB1C7-1809-4C65-8C2B-1A98B5953E99} => C:\Users\scoched\AppData\Roaming\NACATE~1\updtask.exe <==== ATTENTION Task: {84082828-4763-484A-91B4-9D2BD4BE508B} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe Task: {8C2C9D72-B098-4175-83AB-3EB4EB648735} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-01-10] (NVIDIA Corporation) Task: {913D8CE1-66F5-42B6-A527-0E3BAA34F499} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-01-10] (NVIDIA Corporation) Task: {97177FA6-179F-4333-A875-49C5893DAB6A} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe Task: {974793DD-6E6C-41D3-BA9B-22F175816E8D} - System32\Tasks\Optimize Thumbnail Cache Files => wscript.exe //nologo //E:jscript //B "C:\ProgramData\InstallShield\Update\isuspm.ini" <==== ATTENTION Task: {AE4C02A1-8912-4EDE-B661-A47DDB5BC1D9} - System32\Tasks\{2BD99AD5-2384-6162-4377-13D4278BBFC8}\UpdTask => C:\PROGRA~2\COMMON~1\Sobele\UpdTask.exe Task: {C4DF2CB5-9CCD-43C9-9CF7-C6876F95B09F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-05-27] (Google Inc.) Task: {CD120A72-085B-4770-8FB3-F9BFA5172256} - System32\Tasks\InstallShield® Update Service Scheduler => C:\Program Files (x86)\Common Files\InstallShield\Update\ISUSPM.exe Task: {D37ACC92-555A-4CD0-A092-F00D6F28451D} - System32\Tasks\{7213ACFD-6F0A-A65B-0261-2183E46B5975} => C:\Users\scoched\AppData\Local\Papapabop\Sync.exe [2013-04-14] () Task: {EE3671DB-4FB3-47E7-899E-D541717BAA27} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-05-27] (Google Inc.) Task: {F08B0361-EFCA-4940-AEC0-001F06E50660} - System32\Tasks\Win Tonic_Logon => C:\Program Files\Win Tonic\wtc.exe Task: {F3793E6E-8B1E-4893-8BA6-9B049045EC72} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Yahoo! Powered malat.job => C:\Windows\system32\wscript.ex C:\ProgramData\{28E7ED84-A2A5-6742-2463-F900BE2172CE}\cani.txt <==== ATTENTION Task: C:\Windows\Tasks\{7213ACFD-6F0A-A65B-0261-2183E46B5975}.job => C:\Users\scoched\AppData\Local\PAPAPA~1\Sync.exe <==== ATTENTION Task: C:\Windows\Tasks\{7B9EB1C7-1809-4C65-8C2B-1A98B5953E99}.job => C:\Users\scoched\AppData\Roaming\NACATE~1\updtask.exe <==== ATTENTION ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2017-12-27 13:46 - 2016-11-14 13:15 - 000135224 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2018-02-09 22:26 - 2018-01-10 16:33 - 001268024 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2018-05-28 19:28 - 2018-05-28 19:44 - 000066872 _____ () C:\Windows\SysWOW64\PnkBstrA.exe ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Public\AppData:CSM [476] ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2018-03-05 11:09 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-265477098-3700819255-1821915994-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\scoched\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.0.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^NETGEAR A6210 Genie.lnk => C:\Windows\pss\NETGEAR A6210 Genie.lnk.CommonStartup MSCONFIG\startupreg: AgentMonitor => C:\Program Files (x86)\VTech\DownloadManager\System\AgentMonitor.exe MSCONFIG\startupreg: Chromium => c:\users\scoched\appdata\local\chromium\application\chrome.exe --auto-launch-at-startup --profile-directory=Default --restore-last-session MSCONFIG\startupreg: Cm108Sound => C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cm108.dll,CMICtrlWnd MSCONFIG\startupreg: DAEMON Tools Lite Automount => "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun MSCONFIG\startupreg: DAEMON Tools Ultra Agent => "C:\Program Files\DAEMON Tools Ultra\DTAgent.exe" -autorun MSCONFIG\startupreg: Discord => C:\Users\scoched\AppData\Local\Discord\app-0.0.301\Discord.exe MSCONFIG\startupreg: Dxtory Update Checker 2.0 => C:\Program Files (x86)\ExKode\Dxtory2.0\UpdateChecker.exe MSCONFIG\startupreg: GoogleChromeAutoLaunch_7370C55C7C91EB43254C5F9CFE2998C3 => "C:\Users\scoched\AppData\Local\chromium\Application\chrome.exe" --no-startup-window /prefetch:5 MSCONFIG\startupreg: Logitech Download Assistant => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch MSCONFIG\startupreg: Logitech Vid => "C:\Program Files (x86)\Logitech\Logitech Vid\vid.exe" -bootmode MSCONFIG\startupreg: LogitechQuickCamRibbon => "C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe" /hide MSCONFIG\startupreg: MyComGames => "C:\Users\scoched\AppData\Local\MyComGames\MyComGames.exe" -autostart MSCONFIG\startupreg: RTHDVCPL => "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s MSCONFIG\startupreg: Skype for Desktop => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe MSCONFIG\startupreg: Spotify => C:\Users\scoched\AppData\Roaming\Spotify\Spotify.exe --autostart --minimized MSCONFIG\startupreg: Spotify Web Helper => C:\Users\scoched\AppData\Roaming\Spotify\SpotifyWebHelper.exe --autostart MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent MSCONFIG\startupreg: SunJavaUpdateSched => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe MSCONFIG\startupreg: uTorrent => "C:\Users\scoched\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [TCP Query User{F4BA76D5-5028-4357-B951-B5EB3B2D2DB7}C:\program files (x86)\java\jre1.8.0_151\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_151\bin\javaw.exe FirewallRules: [UDP Query User{8F28F4E4-BD03-4518-B975-32E591FAD68C}C:\program files (x86)\java\jre1.8.0_151\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_151\bin\javaw.exe FirewallRules: [{DD61833E-EFB3-46D7-8758-257667E35302}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{404AB6EE-C90C-4333-8F83-4CD45E658BD0}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{9385A7E2-A096-4168-BF10-17E1A896B1C2}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{7EBBE3AB-2BDE-4310-A31A-B403779D4A26}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [TCP Query User{41260D43-1086-48DA-AC19-198103367525}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [UDP Query User{A247F21B-D106-47E9-87AD-EA92D3BAB5C5}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [TCP Query User{6F40083F-C96D-4F22-B531-88CE3CD1A78B}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [UDP Query User{A4183A65-E807-4C77-BB16-6F0423B58898}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [TCP Query User{D5196F48-7105-42DC-868B-4BCF395BD045}C:\program files (x86)\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files (x86)\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [UDP Query User{696C2392-A887-45F1-BDEA-7882825ACB7B}C:\program files (x86)\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files (x86)\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [{513781DA-3510-4634-A4AE-1FC486B945D9}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe FirewallRules: [{CA0185AB-60BB-4A9B-A0C0-F3C32E6F8B84}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe FirewallRules: [{58B25707-E1EC-4163-94FC-726768323831}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe FirewallRules: [{E1DA76AB-F567-4B9C-8EE9-FFC7CD9B11B8}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe FirewallRules: [{D3F761F0-90A2-4D01-B587-B97CA10D2C33}] => (Allow) C:\Program Files\DriversCloud.com\DriversCloud.exe FirewallRules: [{CFBD4B77-DB54-4382-90B1-BF5A89CCF85D}] => (Allow) C:\Program Files\DriversCloud.com\DriversCloud.exe FirewallRules: [{FD5EAFE0-90FD-4EA0-874A-C8B7AE208AB6}] => (Allow) C:\Users\scoched\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{464C8846-A120-490C-81E5-88A5FB82B238}] => (Allow) C:\Users\scoched\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{9EF767E5-05DC-4AD3-9847-C6780EDDA0A1}E:\wrc 4 fia world rally championship\wrc4.exe] => (Allow) E:\wrc 4 fia world rally championship\wrc4.exe FirewallRules: [UDP Query User{EE426E53-C4A9-45B2-B63A-92EEF6A43C29}E:\wrc 4 fia world rally championship\wrc4.exe] => (Allow) E:\wrc 4 fia world rally championship\wrc4.exe FirewallRules: [{33218971-7E26-4B3A-A7C2-69C0A41A9286}] => (Allow) C:\Program Files (x86)\Logitech\Logitech Vid\Vid.exe FirewallRules: [{891837D0-375C-4579-ABB6-D77CF9AE14B5}] => (Allow) C:\Program Files (x86)\Logitech\Logitech Vid\Vid.exe FirewallRules: [TCP Query User{E6C34731-C268-4CF6-8563-B5052895D328}C:\program files\snap inc\apps\lens-studio-sync\lens-studio-sync.exe] => (Allow) C:\program files\snap inc\apps\lens-studio-sync\lens-studio-sync.exe FirewallRules: [UDP Query User{A93BC727-7BB5-49BD-922D-D832B935B9A5}C:\program files\snap inc\apps\lens-studio-sync\lens-studio-sync.exe] => (Allow) C:\program files\snap inc\apps\lens-studio-sync\lens-studio-sync.exe FirewallRules: [TCP Query User{4C06F189-5351-4113-AC0D-41B39C463259}C:\program files\java\jre1.8.0_101\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_101\bin\javaw.exe FirewallRules: [UDP Query User{7DE84159-473F-45D7-B122-BB3057F0C9DC}C:\program files\java\jre1.8.0_101\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_101\bin\javaw.exe FirewallRules: [{36E0DAB0-9515-4B33-9AD6-D6ED8E9C8692}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{1B7BC8BD-D796-4562-A993-8655A048FDDA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{FD4ABC1C-9145-463A-A664-6C560BD2AC5E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{4884552F-2784-4EBF-B073-F5A9233E558B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{055E8402-3F5B-458A-A8DC-2AD157B858DC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{1C0285A8-2098-494C-948A-42538B29D5D7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{63BB6E47-003F-4602-AD75-B56F57191400}C:\users\scoched\desktop\teeworlds-0.6.4-win32\teeworlds-0.6.4-win32\teeworlds.exe] => (Allow) C:\users\scoched\desktop\teeworlds-0.6.4-win32\teeworlds-0.6.4-win32\teeworlds.exe FirewallRules: [UDP Query User{817C09DD-869E-4083-BFB0-ADCA98F56EBF}C:\users\scoched\desktop\teeworlds-0.6.4-win32\teeworlds-0.6.4-win32\teeworlds.exe] => (Allow) C:\users\scoched\desktop\teeworlds-0.6.4-win32\teeworlds-0.6.4-win32\teeworlds.exe FirewallRules: [TCP Query User{C45DEBEE-DFFE-4606-BB29-9EFDC43ABCA0}C:\users\scoched\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\scoched\appdata\local\mycomgames\mycomgames.exe FirewallRules: [UDP Query User{840CB0E4-7F58-405C-9B67-F7C82135CC29}C:\users\scoched\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\scoched\appdata\local\mycomgames\mycomgames.exe FirewallRules: [TCP Query User{1B9B9115-2EBF-40BB-B0CD-868B2A927A4D}E:\warface\mygames\warface my.com\bin32release\game.exe] => (Allow) E:\warface\mygames\warface my.com\bin32release\game.exe FirewallRules: [UDP Query User{A01BD963-DE63-4171-8F3C-286C8C62F7E8}E:\warface\mygames\warface my.com\bin32release\game.exe] => (Allow) E:\warface\mygames\warface my.com\bin32release\game.exe FirewallRules: [TCP Query User{A1BC6BC5-E4E4-41D8-9376-CDE22445052F}C:\mygames\warface\warface my.com\bin32release\game.exe] => (Allow) C:\mygames\warface\warface my.com\bin32release\game.exe FirewallRules: [UDP Query User{EDF07C1F-4813-48AB-A059-6FC4B9805DF2}C:\mygames\warface\warface my.com\bin32release\game.exe] => (Allow) C:\mygames\warface\warface my.com\bin32release\game.exe FirewallRules: [{EB4CB2B4-DC0F-4F92-86D9-3D5D7D3A030D}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe FirewallRules: [{F61235B8-BDDB-43D2-AC9C-B465150BFA1B}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe FirewallRules: [{EB30A23A-162E-4886-9462-2A83247DF391}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe FirewallRules: [TCP Query User{A1247C33-4E89-4DBF-A6E1-B46C3667EADF}C:\program files\strogino cs portal\garrys mod\bin\tools\steamcmd.exe] => (Allow) C:\program files\strogino cs portal\garrys mod\bin\tools\steamcmd.exe FirewallRules: [UDP Query User{2548ECED-1F40-489D-AA3D-A15D3A4707FA}C:\program files\strogino cs portal\garrys mod\bin\tools\steamcmd.exe] => (Allow) C:\program files\strogino cs portal\garrys mod\bin\tools\steamcmd.exe FirewallRules: [TCP Query User{0D60D495-4866-43AF-AAE9-489E30B64181}C:\program files\strogino cs portal\garrys mod\hl2.exe] => (Allow) C:\program files\strogino cs portal\garrys mod\hl2.exe FirewallRules: [UDP Query User{E2519958-48E1-4218-B34C-D691612E3691}C:\program files\strogino cs portal\garrys mod\hl2.exe] => (Allow) C:\program files\strogino cs portal\garrys mod\hl2.exe FirewallRules: [{49E13D31-B4E2-4A74-A2B8-BEBC2725F4C6}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{9D8BE0DC-C6B7-4BB9-8F14-D7A4BB988453}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{C5CC0FD8-6DE4-4B4E-9187-B6D60A50689C}C:\program files\strogino cs portal\garrys mod\hl2.exe] => (Allow) C:\program files\strogino cs portal\garrys mod\hl2.exe FirewallRules: [UDP Query User{28012590-00A1-495B-BAE6-A761481B6432}C:\program files\strogino cs portal\garrys mod\hl2.exe] => (Allow) C:\program files\strogino cs portal\garrys mod\hl2.exe FirewallRules: [{BD5701E8-808C-4A68-820D-F5CEF493EDDA}] => (Allow) C:\Program Files (x86)\BlueStacks\HD-Player.exe FirewallRules: [TCP Query User{2CA1E72B-AC05-4132-BB28-F16EE8A4EF22}C:\users\scoched\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\scoched\appdata\local\mycomgames\mycomgames.exe FirewallRules: [UDP Query User{56DA0AC7-3AA4-4F9F-A2E5-DE59E08D631F}C:\users\scoched\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\scoched\appdata\local\mycomgames\mycomgames.exe FirewallRules: [TCP Query User{1C3AEE47-84AA-4306-B244-3A01031A9AB9}C:\users\scoched\desktop\teeworlds-0.6.4-win32\teeworlds-0.6.4-win32\teeworlds.exe] => (Allow) C:\users\scoched\desktop\teeworlds-0.6.4-win32\teeworlds-0.6.4-win32\teeworlds.exe FirewallRules: [UDP Query User{3DBE7636-526B-458A-8013-30C4D436F175}C:\users\scoched\desktop\teeworlds-0.6.4-win32\teeworlds-0.6.4-win32\teeworlds.exe] => (Allow) C:\users\scoched\desktop\teeworlds-0.6.4-win32\teeworlds-0.6.4-win32\teeworlds.exe FirewallRules: [TCP Query User{6CA5509B-6155-4678-AE58-57857002E6B0}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [UDP Query User{63096A7E-9801-48AD-A96C-50AC3F4E9ACB}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [TCP Query User{74076B00-220A-4AEC-840C-AF37476EC016}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [UDP Query User{29C477D6-6DA0-4E21-956A-CD2E5C8A0939}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [TCP Query User{71B9CCB7-8D2D-45E1-A1AA-99979C12A018}C:\program files\java\jre1.8.0_101\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_101\bin\javaw.exe FirewallRules: [UDP Query User{6914EBAC-E4D3-41EF-873B-324DFD05189C}C:\program files\java\jre1.8.0_101\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_101\bin\javaw.exe FirewallRules: [TCP Query User{E0DE0B67-F85F-436E-86B7-631D24F70571}C:\users\scoched\appdata\local\mycomgames\gamecenter.exe] => (Allow) C:\users\scoched\appdata\local\mycomgames\gamecenter.exe FirewallRules: [UDP Query User{E92F9C27-752A-440D-A92B-021B4D3E3F0D}C:\users\scoched\appdata\local\mycomgames\gamecenter.exe] => (Allow) C:\users\scoched\appdata\local\mycomgames\gamecenter.exe FirewallRules: [TCP Query User{31CEC89D-8F6E-4647-9B88-E05A46546929}C:\users\scoched\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\scoched\appdata\local\gamecenter\gamecenter.exe FirewallRules: [UDP Query User{3FDDC340-6332-40E3-9B9B-F2D2C1960C3C}C:\users\scoched\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\scoched\appdata\local\gamecenter\gamecenter.exe FirewallRules: [TCP Query User{482FB200-72E3-4AEA-89F0-3CD111D43ED3}C:\program files (x86)\bin\javaw.exe] => (Allow) C:\program files (x86)\bin\javaw.exe FirewallRules: [UDP Query User{479D47DC-4BD8-4F6A-BCC1-6CCC6B74EEB2}C:\program files (x86)\bin\javaw.exe] => (Allow) C:\program files (x86)\bin\javaw.exe FirewallRules: [TCP Query User{8CAEAA1D-C42D-4C2B-A763-E32334604EDB}C:\users\scoched\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\scoched\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{10F0C98F-E27B-40B7-8597-8A286EDCACB2}C:\users\scoched\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\scoched\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{D16241F6-9C4A-4A31-B592-F043DFA8541A}C:\program files (x86)\hi-rez studios\hirezgames\paladins\binaries\win64\paladins.exe] => (Allow) C:\program files (x86)\hi-rez studios\hirezgames\paladins\binaries\win64\paladins.exe FirewallRules: [UDP Query User{497D172C-542B-4239-A1B1-06D36684D5A3}C:\program files (x86)\hi-rez studios\hirezgames\paladins\binaries\win64\paladins.exe] => (Allow) C:\program files (x86)\hi-rez studios\hirezgames\paladins\binaries\win64\paladins.exe FirewallRules: [{BD3CEDCA-F8F2-4A2D-96C6-AB80F9415676}] => (Allow) C:\Users\scoched\AppData\Local\Chromium\Application\chrome.exe FirewallRules: [TCP Query User{0ED33D5A-1911-4D7A-A281-BBD8A76D11BD}C:\program files\java\jre1.8.0_171\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_171\bin\javaw.exe FirewallRules: [UDP Query User{2A5C8B2F-AFC4-471D-8218-B538E501E32A}C:\program files\java\jre1.8.0_171\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_171\bin\javaw.exe FirewallRules: [{FA69B226-12F1-45D6-9AD1-22F2FCC4BAE0}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{FFEBBEA1-F3C7-4536-A461-EE5DD50FC6F7}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{E0D5901C-65F3-47E0-93E6-BDE2EEBCA128}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{321D0BBB-D5DE-4077-BCEC-5EA657DFE9EA}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{2950FCDE-11E5-4588-B64D-E048DB2DE557}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{46BA43A4-F05A-4366-94E3-6529FDFB05E5}] => (Allow) C:\Program Files (x86)\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe FirewallRules: [{C072FA5D-ACBF-440C-893D-19B4E204CF3C}] => (Allow) C:\Program Files (x86)\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe ==================== Restore Points ========================= 02-06-2018 10:54:38 Windows Update 08-06-2018 20:09:02 Windows Update ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (06/09/2018 12:36:10 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (06/08/2018 08:04:05 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (06/02/2018 02:11:28 PM) (Source: RasClient) (EventID: 20227) (User: ) Description: CoId={E7484699-2A25-47B9-9DE2-C35BF722DA5D}: The user scoched-PC\scoched dialed a connection named VPN Connection which has failed. The error code returned on failure is 0. Error: (06/02/2018 02:11:12 PM) (Source: RasClient) (EventID: 20227) (User: ) Description: CoId={4CDB6F5B-A61C-4C23-B63E-AF0038697C08}: The user scoched-PC\scoched dialed a connection named VPN Connection which has failed. The error code returned on failure is 0. Error: (06/02/2018 02:11:12 PM) (Source: RasClient) (EventID: 20227) (User: ) Description: CoId={4CDB6F5B-A61C-4C23-B63E-AF0038697C08}: The user scoched-PC\scoched dialed a connection named VPN Connection which has failed. The error code returned on failure is 0. Error: (06/02/2018 02:11:12 PM) (Source: RasClient) (EventID: 20227) (User: ) Description: CoId={4CDB6F5B-A61C-4C23-B63E-AF0038697C08}: The user scoched-PC\scoched dialed a connection named VPN Connection which has failed. The error code returned on failure is 868. Error: (06/02/2018 02:11:03 PM) (Source: RasClient) (EventID: 20227) (User: ) Description: CoId={58C09444-C223-473A-BA00-248B110B4CF8}: The user scoched-PC\scoched dialed a connection named VPN Connection which has failed. The error code returned on failure is 0. Error: (06/02/2018 02:10:11 PM) (Source: RasClient) (EventID: 20227) (User: ) Description: CoId={C92F454A-47E0-448C-BEA5-903CB1242087}: The user scoched-PC\scoched dialed a connection named VPN Connection which has failed. The error code returned on failure is 0. System errors: ============= Error: (06/09/2018 12:35:41 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID {C97FCC79-E628-407D-AE68-A06AD6D8B4D1} and APPID {344ED43D-D086-4961-86A6-1106F4ACAD9B} to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC). This security permission can be modified using the Component Services administrative tool. Error: (06/09/2018 12:34:35 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The NetgearSwitchUSB service failed to start due to the following error: The system cannot find the file specified. Error: (06/09/2018 12:34:35 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The McAfee SiteAdvisor Service service failed to start due to the following error: The system cannot find the file specified. Error: (06/09/2018 12:34:28 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The NVIDIA Stereoscopic 3D Driver Service service failed to start due to the following error: The system cannot find the file specified. Error: (06/08/2018 09:10:27 PM) (Source: cdrom) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\CdRom0. Error: (06/08/2018 08:10:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Mozilla Maintenance Service service failed to start due to the following error: The system cannot find the file specified. Error: (06/08/2018 08:10:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Mozilla Maintenance Service service failed to start due to the following error: The system cannot find the file specified. Error: (06/08/2018 08:10:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Mozilla Maintenance Service service failed to start due to the following error: The system cannot find the file specified. Windows Defender: =================================== Date: 2018-01-12 15:22:19.861 Description: Windows Defender has encountered an error trying to load signatures and will attempt reverting back to a known-good set of signatures. Signatures Attempted:Current Error Code:0x80070003 Error description:The system cannot find the path specified. Signature version:0.0.0.0 Engine version:0.0.0.0 ==================== Memory info =========================== Processor: AMD Sempron(tm) 145 Processor Percentage of memory in use: 38% Total physical RAM: 4094.12 MB Available physical RAM: 2530.45 MB Total Virtual: 8186.4 MB Available Virtual: 6026.45 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:74.43 GB) (Free:9.48 GB) NTFS \\?\Volume{7a3d498c-eaf1-11e7-9735-806e6f6e6963}\ (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 74.5 GB) (Disk ID: 67F2CC40) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=74.4 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================