MiniToolBox by Farbar Version: 17-06-2016
Ran by ghass (administrator) on 25-03-2020 at 01:29:30
Running from "C:\Users\ghass\Desktop"
Microsoft Windows 10 Pro (X64)
Model: To Be Filled By O.E.M. Manufacturer: To Be Filled By O.E.M.
Boot Mode: Normal
***************************************************************************
========================= Flush DNS: ===================================
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
========================= IE Proxy Settings: ==============================
Proxy is not enabled.
No Proxy Server is set.
"Reset IE Proxy Settings": IE Proxy Settings were reset.
========================= Hosts content: =================================
========================= IP Configuration: ================================
ExpressVPN TAP Adapter = Ethernet 2 (Disconnected)
Broadcom 802.11ac Wireless PCIE Full Dongle Adapter = WiFi (Connected)
Realtek PCIe GbE Family Controller = Ethernet (Media disconnected)
# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4
reset
set global
set interface interface="Ethernet (Kernel Debugger)" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Ethernet" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Bluetooth Network Connection" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Ethernet 2" forwarding=enabled advertise=enabled metric=5 nud=enabled ignoredefaultroutes=disabled
set interface interface="Bluetooth Network Connection 2" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="WiFi" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Bluetooth Network Connection 3" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
popd
# End of IPv4 configuration
Windows IP Configuration
Host Name . . . . . . . . . . . . : DESKTOP-LD5SF3I
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : mynet
Ethernet adapter Ethernet:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Realtek PCIe GbE Family Controller
Physical Address. . . . . . . . . : 70-85-C2-C5-86-51
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Wireless LAN adapter WiFi:
Connection-specific DNS Suffix . : mynet
Description . . . . . . . . . . . : Broadcom 802.11ac Wireless PCIE Full Dongle Adapter
Physical Address. . . . . . . . . : 2C-FD-A1-CE-CD-CD
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
IPv4 Address. . . . . . . . . . . : 192.168.128.65(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Tuesday, 24 March 2020 1:57:55 pm
Lease Expires . . . . . . . . . . : Thursday, 26 March 2020 1:24:30 am
Default Gateway . . . . . . . . . : 192.168.128.1
DHCP Server . . . . . . . . . . . : 192.168.128.1
DNS Servers . . . . . . . . . . . : 192.168.128.1
NetBIOS over Tcpip. . . . . . . . : Enabled
Server: myhome.mynet
Address: 192.168.128.1
Name: google.com
Addresses: 2404:6800:4005:804::200e
172.217.24.78
Pinging google.com [172.217.24.78] with 32 bytes of data:
Reply from 172.217.24.78: bytes=32 time=4ms TTL=55
Reply from 172.217.24.78: bytes=32 time=5ms TTL=55
Ping statistics for 172.217.24.78:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 4ms, Maximum = 5ms, Average = 4ms
Server: myhome.mynet
Address: 192.168.128.1
Name: yahoo.com
Addresses: 2001:4998:c:1023::5
2001:4998:58:1836::10
2001:4998:44:41d::3
2001:4998:58:1836::11
2001:4998:44:41d::4
2001:4998:c:1023::4
72.30.35.9
98.137.246.8
98.138.219.232
98.138.219.231
98.137.246.7
72.30.35.10
Pinging yahoo.com [72.30.35.10] with 32 bytes of data:
Reply from 72.30.35.10: bytes=32 time=249ms TTL=52
Reply from 72.30.35.10: bytes=32 time=245ms TTL=52
Ping statistics for 72.30.35.10:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 245ms, Maximum = 249ms, Average = 247ms
Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Ping statistics for 127.0.0.1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
8...70 85 c2 c5 86 51 ......Realtek PCIe GbE Family Controller
15...2c fd a1 ce cd cd ......Broadcom 802.11ac Wireless PCIE Full Dongle Adapter
1...........................Software Loopback Interface 1
===========================================================================
IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.128.1 192.168.128.65 35
127.0.0.0 255.0.0.0 On-link 127.0.0.1 331
127.0.0.1 255.255.255.255 On-link 127.0.0.1 331
127.255.255.255 255.255.255.255 On-link 127.0.0.1 331
192.168.128.0 255.255.255.0 On-link 192.168.128.65 291
192.168.128.65 255.255.255.255 On-link 192.168.128.65 291
192.168.128.255 255.255.255.255 On-link 192.168.128.65 291
224.0.0.0 240.0.0.0 On-link 127.0.0.1 331
224.0.0.0 240.0.0.0 On-link 192.168.128.65 291
255.255.255.255 255.255.255.255 On-link 127.0.0.1 331
255.255.255.255 255.255.255.255 On-link 192.168.128.65 291
===========================================================================
Persistent Routes:
None
IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
1 331 ::1/128 On-link
1 331 ff00::/8 On-link
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================
Catalog5 01 C:\Windows\SysWOW64\napinsp.dll [54784] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\pnrpnsp.dll [70656] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [70656] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\mswsock.dll [324920] (Microsoft Corporation)
Catalog5 05 C:\Windows\SysWOW64\winrnr.dll [23552] (Microsoft Corporation)
Catalog5 06 C:\Windows\SysWOW64\NLAapi.dll [70144] (Microsoft Corporation)
Catalog5 07 C:\Windows\SysWOW64\wshbth.dll [50688] (Microsoft Corporation)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [324920] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [324920] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [324920] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [324920] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [324920] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [324920] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [324920] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [324920] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [324920] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [324920] (Microsoft Corporation)
Catalog9 11 C:\Windows\SysWOW64\mswsock.dll [324920] (Microsoft Corporation)
Catalog9 12 C:\Windows\SysWOW64\mswsock.dll [324920] (Microsoft Corporation)
Catalog9 13 C:\Windows\SysWOW64\mswsock.dll [324920] (Microsoft Corporation)
Catalog9 14 C:\Windows\SysWOW64\mswsock.dll [324920] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\pnrpnsp.dll [86528] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86528] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\mswsock.dll [407544] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\winrnr.dll [31232] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\NLAapi.dll [93184] (Microsoft Corporation)
x64-Catalog5 07 C:\Windows\System32\wshbth.dll [64000] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [407544] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [407544] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [407544] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [407544] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [407544] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [407544] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [407544] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [407544] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [407544] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [407544] (Microsoft Corporation)
x64-Catalog9 11 C:\Windows\System32\mswsock.dll [407544] (Microsoft Corporation)
x64-Catalog9 12 C:\Windows\System32\mswsock.dll [407544] (Microsoft Corporation)
x64-Catalog9 13 C:\Windows\System32\mswsock.dll [407544] (Microsoft Corporation)
x64-Catalog9 14 C:\Windows\System32\mswsock.dll [407544] (Microsoft Corporation)
========================= Event log errors: ===============================
Application errors:
==================
Error: (03/25/2020 01:25:07 AM) (Source: DbxSvc) (User: )
Description: Failed to get driver message: (-2147024890) The handle is invalid.
Error: (03/24/2020 02:18:55 PM) (Source: Microsoft-Windows-PerfNet) (User: DESKTOP-LD5SF3I)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.
Error: (03/24/2020 01:56:22 PM) (Source: PanoptoRecorder) (User: )
Description: Timestamp: 03/24/2020 05:56:22.6757633 Message: Problem constructing communications link with server Category: Panopto Priority: -1 EventId: 12123 Severity: Error Title: Machine: DESKTOP-LD5SF3I Application Domain: Recorder.exe Process Id: 3628 Process Name: D:\Dropbox\Teaching\Panopto\Recorder.exe Win32 Thread Id: 3632 Thread Name: Extended Properties: Exception - System.Net.WebException: The remote name could not be resolved: 'lecturecapture.hku.hk'
Server stack trace:
at System.Net.HttpWebRequest.GetRequestStream(TransportContext& context)
at System.Net.HttpWebRequest.GetRequestStream()
at System.Web.Services.Protocols.SoapHttpClientProtocol.Invoke(String methodName, Object[] parameters)
at Panopto.Recorder.RecorderService.Recorder.LoginWithPassword(String user, String pass, String recorderVersion, MachineInfo machine)
at System.Runtime.Remoting.Messaging.StackBuilderSink._PrivateProcessMessage(IntPtr md, Object[] args, Object server, Object[]& outArgs)
at System.Runtime.Remoting.Messaging.StackBuilderSink.AsyncProcessMessage(IMessage msg, IMessageSink replySink)
Exception rethrown at [0]:
at System.Runtime.Remoting.Proxies.RealProxy.EndInvokeHelper(Message reqMsg, Boolean bProxyCase)
at System.Runtime.Remoting.Proxies.RemotingProxy.Invoke(Object NotUsed, MessageData& msgData)
at Panopto.Recorder.Worker.LoginWithPasswordDelegate.EndInvoke(IAsyncResult result)
at Panopto.Recorder.Worker.LoginToServer() Type Name - "Panopto.Recorder.Worker, Recorder, Version=6.0.0.56831, Culture=neutral, PublicKeyToken=null"
Error: (03/24/2020 01:29:10 PM) (Source: Application Error) (User: )
Description: Faulting application name: POWERPNT.EXE, version: 16.0.11929.20648, time stamp: 0x5e5dcf2e
Faulting module name: KERNELBASE.dll, version: 10.0.18362.719, time stamp: 0xb31987d3
Exception code: 0xe0000002
Fault offset: 0x000000000003a859
Faulting process ID: 0x1c04
Faulting application start time: 0xPOWERPNT.EXE0
Faulting application path: POWERPNT.EXE1
Faulting module path: POWERPNT.EXE2
Report ID: POWERPNT.EXE3
Faulting package full name: POWERPNT.EXE4
Faulting package-relative application ID: POWERPNT.EXE5
Error: (03/24/2020 01:23:19 PM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe_Winmgmt, version: 10.0.18362.1, time stamp: 0x32d6c210
Faulting module name: ntdll.dll, version: 10.0.18362.719, time stamp: 0x64d10ee0
Exception code: 0xc0000409
Fault offset: 0x00000000000a41d8
Faulting process ID: 0xa68
Faulting application start time: 0xsvchost.exe_Winmgmt0
Faulting application path: svchost.exe_Winmgmt1
Faulting module path: svchost.exe_Winmgmt2
Report ID: svchost.exe_Winmgmt3
Faulting package full name: svchost.exe_Winmgmt4
Faulting package-relative application ID: svchost.exe_Winmgmt5
Error: (03/24/2020 12:44:27 PM) (Source: Application Error) (User: )
Description: Faulting application name: Recorder.exe, version: 6.0.0.56831, time stamp: 0x5d0b4e71
Faulting module name: wpfgfx_v0400.dll, version: 4.8.4121.0, time stamp: 0x5deb3768
Exception code: 0xc0000005
Fault offset: 0x0000000000016bc8
Faulting process ID: 0x1d24
Faulting application start time: 0xRecorder.exe0
Faulting application path: Recorder.exe1
Faulting module path: Recorder.exe2
Report ID: Recorder.exe3
Faulting package full name: Recorder.exe4
Faulting package-relative application ID: Recorder.exe5
Error: (03/24/2020 12:44:27 PM) (Source: .NET Runtime) (User: )
Description: Application: Recorder.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: exception code c0000005, exception address 00007FF8059B6BC8
Error: (03/24/2020 10:10:09 AM) (Source: DbxSvc) (User: )
Description: Failed to get driver message: (-2147024890) The handle is invalid.
Error: (03/23/2020 05:35:04 PM) (Source: Application Error) (User: )
Description: Faulting application name: dwm.exe, version: 10.0.18362.387, time stamp: 0x8e064b77
Faulting module name: dwmcore.dll, version: 10.0.18362.693, time stamp: 0x2d178e04
Exception code: 0xe0464645
Fault offset: 0x000000000006426d
Faulting process ID: 0x45c
Faulting application start time: 0xdwm.exe0
Faulting application path: dwm.exe1
Faulting module path: dwm.exe2
Report ID: dwm.exe3
Faulting package full name: dwm.exe4
Faulting package-relative application ID: dwm.exe5
Error: (03/23/2020 02:05:58 PM) (Source: Application Error) (User: )
Description: Windows cannot access the file for one of the following reasons:
there is a problem with the network connection, the disk that the file is stored on, or the storage
drivers installed on this computer; or the disk is missing.
Windows closed the program Desktop Window Manager because of this error.
Program: Desktop Window Manager
File:
The error value is listed in the Additional Data section.
User Action
1. Open the file again.
This situation might be a temporary problem that corrects itself when the program runs again.
2.
If the file still cannot be accessed and
- It is on the network,
your network administrator should verify that there is not a problem with the network and that the server can be contacted.
- It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer.
3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER.
4. If the problem persists, restore the file from a backup copy.
5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for
further assistance.
Additional Data
Error value: 00000000
Disk type: 0
System errors:
=============
Error: (03/24/2020 01:55:36 PM) (Source: volmgr) (User: )
Description: Dump file creation failed due to error during dump creation.
Error: (03/24/2020 01:55:42 PM) (Source: EventLog) (User: )
Description: The previous system shutdown at 12:58:29 pm on 24/3/2020 was unexpected.
Error: (03/24/2020 01:23:19 PM) (Source: Service Control Manager) (User: )
Description: The Windows Management Instrumentation service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 120000 milliseconds: Restart the service.
Error: (03/24/2020 02:18:18 AM) (Source: volmgr) (User: )
Description: Dump file creation failed due to error during dump creation.
Error: (03/24/2020 02:18:23 AM) (Source: EventLog) (User: )
Description: The previous system shutdown at 2:06:54 am on 24/3/2020 was unexpected.
Error: (03/23/2020 07:26:51 PM) (Source: volmgr) (User: )
Description: Dump file creation failed due to error during dump creation.
Error: (03/23/2020 07:26:56 PM) (Source: EventLog) (User: )
Description: The previous system shutdown at 7:21:16 pm on 23/3/2020 was unexpected.
Error: (03/22/2020 10:31:05 AM) (Source: volmgr) (User: )
Description: Dump file creation failed due to error during dump creation.
Error: (03/22/2020 10:31:11 AM) (Source: EventLog) (User: )
Description: The previous system shutdown at 10:18:40 am on 22/3/2020 was unexpected.
Error: (03/20/2020 09:38:52 AM) (Source: BTHUSB) (User: )
Description: The local Bluetooth adapter has failed in an undetermined manner and will not be used. The driver has been unloaded.
Microsoft Office Sessions:
=========================
Error: (03/25/2020 01:25:07 AM) (Source: DbxSvc)(User: )
Description: (-2147024890) The handle is invalid.
Error: (03/24/2020 02:18:55 PM) (Source: Microsoft-Windows-PerfNet)(User: DESKTOP-LD5SF3I)
Description: 3221225506
Error: (03/24/2020 01:56:22 PM) (Source: PanoptoRecorder)(User: )
Description: Timestamp: 03/24/2020 05:56:22.6757633 Message: Problem constructing communications link with server Category: Panopto Priority: -1 EventId: 12123 Severity: Error Title: Machine: DESKTOP-LD5SF3I Application Domain: Recorder.exe Process Id: 3628 Process Name: D:\Dropbox\Teaching\Panopto\Recorder.exe Win32 Thread Id: 3632 Thread Name: Extended Properties: Exception - System.Net.WebException: The remote name could not be resolved: 'lecturecapture.hku.hk'
Server stack trace:
at System.Net.HttpWebRequest.GetRequestStream(TransportContext& context)
at System.Net.HttpWebRequest.GetRequestStream()
at System.Web.Services.Protocols.SoapHttpClientProtocol.Invoke(String methodName, Object[] parameters)
at Panopto.Recorder.RecorderService.Recorder.LoginWithPassword(String user, String pass, String recorderVersion, MachineInfo machine)
at System.Runtime.Remoting.Messaging.StackBuilderSink._PrivateProcessMessage(IntPtr md, Object[] args, Object server, Object[]& outArgs)
at System.Runtime.Remoting.Messaging.StackBuilderSink.AsyncProcessMessage(IMessage msg, IMessageSink replySink)
Exception rethrown at [0]:
at System.Runtime.Remoting.Proxies.RealProxy.EndInvokeHelper(Message reqMsg, Boolean bProxyCase)
at System.Runtime.Remoting.Proxies.RemotingProxy.Invoke(Object NotUsed, MessageData& msgData)
at Panopto.Recorder.Worker.LoginWithPasswordDelegate.EndInvoke(IAsyncResult result)
at Panopto.Recorder.Worker.LoginToServer() Type Name - "Panopto.Recorder.Worker, Recorder, Version=6.0.0.56831, Culture=neutral, PublicKeyToken=null"
Error: (03/24/2020 01:29:10 PM) (Source: Application Error)(User: )
Description: POWERPNT.EXE16.0.11929.206485e5dcf2eKERNELBASE.dll10.0.18362.719b31987d3e0000002000000000003a8591c0401d60190cdaea392C:\Program Files\Microsoft Office\Root\Office16\POWERPNT.EXEC:\Windows\System32\KERNELBASE.dlldcf651f4-a229-46c9-bf33-a4807a961091
Error: (03/24/2020 01:23:19 PM) (Source: Application Error)(User: )
Description: svchost.exe_Winmgmt10.0.18362.132d6c210ntdll.dll10.0.18362.71964d10ee0c000040900000000000a41d8a6801d6013f70e716fbC:\Windows\system32\svchost.exeC:\Windows\SYSTEM32\ntdll.dll1f4cd33f-703e-4689-a5a6-5943af860b15
Error: (03/24/2020 12:44:27 PM) (Source: Application Error)(User: )
Description: Recorder.exe6.0.0.568315d0b4e71wpfgfx_v0400.dll4.8.4121.05deb3768c00000050000000000016bc81d2401d601952394722cD:\Dropbox\Teaching\Panopto\Recorder.exeC:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\wpfgfx_v0400.dllee463c21-716a-4c6d-9045-667c0315e6e8
Error: (03/24/2020 12:44:27 PM) (Source: .NET Runtime)(User: )
Description: Application: Recorder.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: exception code c0000005, exception address 00007FF8059B6BC8
Error: (03/24/2020 10:10:09 AM) (Source: DbxSvc)(User: )
Description: (-2147024890) The handle is invalid.
Error: (03/23/2020 05:35:04 PM) (Source: Application Error)(User: )
Description: dwm.exe10.0.18362.3878e064b77dwmcore.dll10.0.18362.6932d178e04e0464645000000000006426d45c01d600e93a93a48cC:\Windows\system32\dwm.exeC:\Windows\system32\dwmcore.dll49c274c6-1478-41d2-991e-921422b23474
Error: (03/23/2020 02:05:58 PM) (Source: Application Error)(User: )
Description: Desktop Window Manager000000000
CodeIntegrity Errors:
===================================
Date: 2020-03-11 13:40:39.430
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.
Date: 2020-03-11 13:40:39.425
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.
Date: 2020-03-11 13:40:39.355
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.
Date: 2020-03-11 13:40:39.349
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.
Date: 2020-03-11 13:40:39.341
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsreg.dll because the set of per-page image hashes could not be found on the system.
Date: 2020-03-11 13:40:39.335
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsreg.dll because the set of per-page image hashes could not be found on the system.
Date: 2020-03-11 13:40:35.262
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
Date: 2020-03-11 13:40:35.250
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.
=========================== Installed Programs ============================
"CZUR Scanner V4.6" (HKLM-x32\...\{1FDB6D08-4308-424B-A32D-5DE22747A0B2}_is1) (Version: 4.6 - "CZUR TECH CO., LTD")
7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.13 - Adobe Systems)
Anno 1800 (HKLM-x32\...\Uplay Install 4553) (Version: - Ubisoft)
Battlefield™ 1 (HKLM-x32\...\{335B50BC-6130-4BAF-9A6A-F1561270587B}) (Version: 1.0.57.44284 - Electronic Arts)
Bulk Rename Utility 3.3.1.0 (64-bit) (HKLM\...\Bulk Rename Utility Installation_is1) (Version: - TGRMN Software)
calibre (HKLM-x32\...\{13EA2450-6C59-4732-97E5-0BD1D17C8C16}) (Version: 4.12.0 - Kovid Goyal)
CCleaner (HKLM\...\CCleaner) (Version: 5.64 - Piriform)
Crash Bandicoot™ N. Sane Trilogy (HKLM\...\Steam App 731490) (Version: - Vicarious Visions)
Dropbox (HKLM-x32\...\Dropbox) (Version: 93.4.273 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.295.1 - Dropbox, Inc.) Hidden
ExpressVPN (HKLM-x32\...\{435b3ffb-1cdc-4ff2-8dcd-a67ec6f207b3}) (Version: 7.7.11.4 - ExpressVPN)
ExpressVPN (HKLM-x32\...\{E5B9C3E5-889C-4F22-A959-F4B8463D2835}) (Version: 7.7.11.4 - ExpressVPN) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 80.0.3987.149 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
Hathi Download Helper version 1.1.9 (HKLM-x32\...\{1AA98952-B224-4FD5-8116-B052000EA286}_is1) (Version: 1.1.9 -
https://sourceforge.net/projects/hathidownloadhelper/)
HD Tune Pro 5.75 (HKLM-x32\...\HD Tune Pro_is1) (Version: - EFD Software)
IrfanView 4.54 (64-bit) (HKLM\...\IrfanView64) (Version: 4.54 - Irfan Skiljan)
Logitech Camera Settings (HKLM-x32\...\LogiUCDPP) (Version: 2.10.4.0 - Logitech Europe S.A.)
Logitech Options (HKLM\...\LogiOptions) (Version: 8.10.84 - Logitech)
Microsoft Office 365 ProPlus - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 16.0.11929.20648 - Microsoft Corporation)
Microsoft OneDrive (HKCU\...\OneDriveSetup.exe) (Version: 19.232.1124.0010 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.16.27012 (HKLM-x32\...\{67f67547-9693-4937-aa13-56e296bd40f6}) (Version: 14.16.27012.6 - Microsoft Corporation)
NirSoft BlueScreenView (HKLM-x32\...\NirSoft BlueScreenView) (Version: - )
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.11929.20648 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.11929.20648 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.11929.20648 - Microsoft Corporation) Hidden
Origin (HKLM-x32\...\Origin) (Version: 10.5.66.38849 - Electronic Arts, Inc.)
Panopto (64-bit) (HKLM\...\{E1A7B6C2-12E7-4024-ACBD-AD0767B6B7EA}) (Version: 6.0.0.56831 - Panopto)
PDF-XChange PRO (HKLM\...\{7C27AE43-385F-42DC-A8CA-1F1FD397336E}) (Version: 8.0.336.0 - Tracker Software Products (Canada) Ltd.) Hidden
PDF-XChange PRO (HKLM-x32\...\{5844f5e4-0620-4dc8-97a1-fb18e73fd2a1}) (Version: 8.0.336.0 - Tracker Software Products (Canada) Ltd.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8899.1 - Realtek Semiconductor Corp.)
SmartControl-4.3.15 (HKLM-x32\...\{E55BD19C-E4AA-469F-9474-AE70A1D8A666}) (Version: 4.3.99 - PHL)
Speccy (HKLM\...\Speccy) (Version: 1.32 - Piriform)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.3.0.362 - Microsoft Corporation)
Uplay (HKLM-x32\...\Uplay) (Version: 104.0 - Ubisoft)
WhatsApp (HKCU\...\WhatsApp) (Version: 0.4.1307 - WhatsApp)
WhoCrashed 6.65 (HKLM\...\WhoCrashed_is1) (Version: - Resplendence Software Projects Sp.)
Zoom (HKCU\...\ZoomUMX) (Version: 4.6 - Zoom Video Communications, Inc.)
Zotero (HKLM-x32\...\Zotero 5.0.84 (x86 en-US)) (Version: 5.0.84 - Corporation for Digital Scholarship)
百度网盘 (HKLM-x32\...\百度云管家) (Version: 6.9.1 - 百度在线网络技术(北京)有限公司)
========================= Devices: ================================
Name: ExpressVPN TAP Adapter
Description: ExpressVPN TAP Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: ExpressVPN
Service: tapexpressvpn
Device ID: ROOT\NET\0000
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
========================= Memory info: ===================================
Percentage of memory in use: 28%
Total physical RAM: 14264.85 MB
Available physical RAM: 10173.96 MB
Total Virtual: 16440.85 MB
Available Virtual: 11671.46 MB
========================= Partitions: =====================================
1 Drive c: () (Fixed) (Total:232.25 GB) (Free:157.36 GB) NTFS
2 Drive d: (Dropbox) (Fixed) (Total:931.51 GB) (Free:338.28 GB) NTFS
3 Drive e: (Software) (Fixed) (Total:2794.5 GB) (Free:2518.97 GB) NTFS
========================= Users: ========================================
User accounts for \\DESKTOP-LD5SF3I
Administrator DefaultAccount ghass
Guest Test WDAGUtilityAccount
**** End of log ****