I tried to force a QuickTime codec to work on (possibly) corrupted home videos. I used a shady source. Palemoon and Waterfox are now misbehaving.
_____
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-10-2016
Ran by Antman (26-10-2016 16:44:43)
Running from D:\Antman\Desktop
Windows 8.1 Pro with Media Center (Update) (X64) (2016-09-11 00:36:48)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-2077013597-3632690625-1065684953-500 - Administrator - Enabled)
Antman (S-1-5-21-2077013597-3632690625-1065684953-1001 - Administrator - Enabled) => C:\Users\Antman
Guest (S-1-5-21-2077013597-3632690625-1065684953-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2077013597-3632690625-1065684953-1003 - Limited - Enabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\uTorrent) (Version: 3.4.9.42606 - BitTorrent Inc.)
ACP Application (Version: 2016.0916.1502.32 - Advanced Micro Devices, Inc.) Hidden
Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.020.20039 - Adobe Systems Incorporated)
Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.185 - Adobe Systems Incorporated)
Adobe Flash Player 23 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 23.0.0.185 - Adobe Systems Incorporated)
AI Suite 3 (HKLM-x32\...\{CD36E28B-6023-469A-91E7-049A2874EC13}) (Version: 1.01.00 - ASUSTeK Computer Inc.)
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.)
AnyDVD (HKLM-x32\...\AnyDVD) (Version: 7.6.4.0 - SlySoft)
Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Application Compatibility Toolkit (Version: 8.100.26641 - Microsoft) Hidden
ASUS Boot Setting (HKLM-x32\...\{7AAE9187-C24F-4073-A951-36C370E7A3A5}) (Version: 1.00.22 - ASUSTeK Computer Inc.)
Auslogics BoostSpeed Premium (HKLM-x32\...\Auslogics BoostSpeed Premium 8.0.1.0) (Version: - )
Bulk Rename Utility 3.0.0.1 (64-bit) (HKLM\...\Bulk Rename Utility Installation_is1) (Version: - TGRMN Software)
Bullzip PDF Printer 10.25.0.2552 (HKLM\...\Bullzip PDF Printer_is1) (Version: 10.25.0.2552 - Bullzip)
Catalyst Control Center Next Localization BR (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.23 - Piriform)
Classic Shell (HKLM\...\{383BB30A-B4A7-4666-9A83-22CFA8640097}) (Version: 4.3.0 - IvoSoft)
Click-N-Type (HKLM-x32\...\{CC02581D-B1F9-4B22-8E82-024B9D8EB702}) (Version: 3.03.0415 - Lake Software)
CloneDVD2 (HKLM-x32\...\CloneDVD2) (Version: 2.9.3.3 - Elaborate Bytes)
CloneDVDmobile (HKLM-x32\...\CloneDVDmobile) (Version: 1.9.0.1 - SlySoft)
CrazyTalk Animator Standard (HKLM-x32\...\{789567FD-CAA2-4E1C-B38E-9072B3015FFD}) (Version: 1.2.2010.1 - Reallusion Inc.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DFX (HKLM-x32\...\DFX) (Version: 12.021.0.0 - Power Technology)
Digital Cable Advisor (HKLM\...\{07ECF9FC-BB47-4325-8345-7BFEC708DDD7}) (Version: 1.0.0.0 - Microsoft Corporation)
DiskCheckup v3.4 (HKLM-x32\...\DiskCheckup_is1) (Version: 3.4.1002 - PassMark Software)
FileMenu Tools (HKLM\...\FileMenu Tools_is1) (Version: 7.0.5 - LopeSoft)
GiliSoft RAMDisk 6.4.0 (HKLM-x32\...\{30AB2FCD-FBF2-4bed-1111-13E6A1468621}_is1) (Version: 6.4.0 - Gilisoft International LLC.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.71 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
GuideTool (HKLM-x32\...\GuideTool) (Version: - )
HDHomeRun (HKLM\...\{1447F2EE-B042-40AB-8BEB-478FEB1F9A3A}) (Version: 1.0.19686.0 - Silicondust)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.42 - Irfan Skiljan)
jetAudio Plus (HKLM-x32\...\{DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}) (Version: 8.1.0 - COWON)
Kits Configuration Installer (x32 Version: 8.100.25984 - Microsoft) Hidden
K-Lite Mega Codec Pack 12.4.2 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 12.4.2 - KLCP)
Logitech Unifying Software 2.50 (HKLM\...\Logitech Unifying) (Version: 2.50.25 - Logitech)
Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
MCEBuddy 2.x (HKLM\...\{0D3796AA-D867-4278-AEBC-3616AD1F7C3A}) (Version: 2.4.5 - MCEBuddy)
Microsoft DaRT 8.1 (HKLM\...\{4AE2D8A6-430A-4EE8-94BC-C88DD416E258}) (Version: 8.1.22.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Sounds (HKLM-x32\...\{10CE1EA2-12E9-11D3-825E-00C04F6843FE}) (Version: 1.0.0.0 - Microsoft Corp)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 (HKLM-x32\...\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Version: 14.0.24212.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mp3tag v2.79 (HKLM-x32\...\Mp3tag) (Version: v2.79 - Florian Heidenreich)
My Channel Logos (HKLM-x32\...\{6D535A45-2019-4CAC-A353-9B4D708642A0}) (Version: 3.1.0.0 - My Channel Logos)
OEM Application Profile (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Opera Stable 40.0.2308.90 (HKLM-x32\...\Opera 40.0.2308.90) (Version: 40.0.2308.90 - Opera Software)
Pale Moon 26.5.0 (x64 en-US) (HKLM\...\Pale Moon 26.5.0 (x64 en-US)) (Version: 26.5.0 - Moonchild Productions)
Photo BUZZER (64-Bit) (HKLM\...\EMOTION_PROJECTS_1_2_CDF5610E_is1) (Version: 1.14 - Franzis Verlag GmbH)
Photo Pos Pro 3 (HKLM\...\Photo Pos Pro 3) (Version: 3.20 - PowerOfSoftware Ltd.)
PlayReady PC Runtime amd64 (HKLM\...\{2E0C1D31-8FEC-411E-97FB-6E56BD429A98}) (Version: 1.3.10 - Microsoft Corporation)
QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.38.115.2015 - Realtek)
Send To Toys v2.5 (HKLM-x32\...\Send To Toys_is1) (Version: - Gabriele Ponti)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{91140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden
Skypeâ„¢ 7.27 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.27.101 - Skype Technologies S.A.)
SpywareBlaster 5.5 (HKLM-x32\...\SpywareBlaster_is1) (Version: 5.5.0 - BrightFort LLC)
Toolkit Documentation (x32 Version: 8.100.26866 - Microsoft) Hidden
UltraISO Premium V9.65 (HKLM-x32\...\UltraISO_is1) (Version: - )
Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb)
User State Migration Tool (x32 Version: 8.100.25984 - Microsoft) Hidden
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.4.8.0 - Elaborate Bytes)
Volume Activation Management Tool (x32 Version: 8.100.26629 - Microsoft) Hidden
Volume2 1.1.4 (HKLM-x32\...\Volume2) (Version: 1.1.4 - Alexandr Irza)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
Waterfox 49.0.2 (x64 en-US) (HKLM\...\Waterfox 49.0.2 (x64 en-US)) (Version: 49.0.2 - Mozilla)
Winaero Tweaker (HKLM\...\Winaero Tweaker_is1) (Version: 0.6.0.6 - Winaero)
Windows Assessment and Deployment Kit for Windows 8.1 (HKLM-x32\...\{e9e06304-a604-434b-b35f-d9beb94dc06d}) (Version: 8.100.26866 - Microsoft Corporation)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WPT Redistributables (x32 Version: 8.100.26866 - Microsoft) Hidden
WPTx64 (x32 Version: 8.100.26837 - Microsoft) Hidden
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001_Classes\CLSID\{0B7AD8D3-094A-44DE-A348-83C6C3FA347C}\InprocServer32 -> C:\Users\Antman\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Clipboarder.gadget\Release\Clipboarder64.dll (Helmut Buhler)
CustomCLSID: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001_Classes\CLSID\{0E7BE950-4ACC-47CB-834B-41A8B96BBFF9}\InprocServer32 -> C:\Users\Antman\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Sidebar7.gadget\Release\Sidebar7.64.dll (Helmut Buhler)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {07A3CEDE-B15E-43C1-944C-33CA390C34CE} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-09-16] (Advanced Micro Devices, Inc.)
Task: {09815097-9713-42B4-BD0F-45022D6C02F5} - System32\Tasks\ASUS\ASUS DIPAwayMode => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe [2015-03-19] ()
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {0C5365D6-82B6-47A5-93A9-8AF02D2ECD56} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-09-28] (Piriform Ltd)
Task: {0C88306B-C6D5-49B6-BA5B-34B3CAC8302A} - System32\Tasks\ASUS\USB 3.0 Boost Service => C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr.exe [2013-07-24] (ASUSTeK Computer Inc.)
Task: {1FA1BB28-EF5F-4A85-ABDF-618F2460940B} - System32\Tasks\ASUS\ASUS Network iControl Help Execute => C:\Program Files (x86)\ASUS\AI Suite III\Network iControl\NetSvcHelp\NetSvcHelpEntry.exe [2013-02-07] (ASUSTeK Computer Inc.)
Task: {310B75AC-85B1-4905-ADC8-6E0050AA70E9} - System32\Tasks\ASUS\ASUS AISuiteIII => C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe [2015-02-17] (ASUSTeK Computer Inc.)
Task: {3A37B2A5-9094-4966-B8A6-5519563E06A5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-25] (Google Inc.)
Task: {6F2DE740-9EF9-4E39-BB48-30438FB90F95} - System32\Tasks\Opera scheduled Autoupdate 1474217424 => C:\Program Files (x86)\Opera\launcher.exe [2016-10-17] (Opera Software)
Task: {717F50D5-6450-4036-B15B-FFDE3C297D49} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-25] (Google Inc.)
Task: {77C24FA7-454D-4F0D-872D-F216119F6870} - System32\Tasks\ASUS\Ez Update => C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe [2013-09-12] ()
Task: {96A639F8-F7CF-49E5-A6E8-5B41DCD6785A} - System32\Tasks\My Channel Logos Updater => C:\Program Files (x86)\My Channel Logos\mclupdater.exe [2013-12-06] (Microsoft)
Task: {9B51DDD6-0752-478F-B8C1-0FC508CC4F9B} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_23_0_0_185_pepper.exe [2016-10-12] (Adobe Systems Incorporated)
Task: {B2B693C5-6421-4021-8EE2-5FAA09F626D7} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-12] (Adobe Systems Incorporated)
Task: {BBF811F5-DF91-4E60-8658-F59E2D146599} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2016-08-15] ()
Task: {C9DD5303-9920-4A1F-8A05-783F92CFBE7A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16] (Adobe Systems Incorporated)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_23_0_0_185_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Antman\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> "hxxp://web-start.org//?ssid=1477064264&a=1054667&src=sh&uuid=e581f462-4dcb-46bf-beeb-6079e9189f31"
ShortcutWithArgument: C:\Users\Antman\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) -> "hxxp://web-start.org//?ssid=1477064264&a=1054667&src=sh&uuid=e581f462-4dcb-46bf-beeb-6079e9189f31"
==================== Loaded Modules (Whitelisted) ==============
2016-09-13 17:14 - 2015-03-19 11:11 - 01271096 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
2016-09-13 17:11 - 2014-02-20 04:27 - 00936728 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
2010-07-15 00:44 - 2010-07-15 00:44 - 00020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll
2016-09-13 08:03 - 2016-09-13 08:03 - 00222208 _____ () C:\Program Files (x86)\Gilisoft\RAMDisk\gsRAMService.exe
2016-08-09 18:56 - 2016-08-09 18:56 - 00034304 _____ () C:\Program Files\MCEBuddy2x\MCEBuddy.Service.exe
2016-08-09 18:53 - 2016-08-09 18:53 - 00705024 _____ () C:\Program Files\MCEBuddy2x\MCEBuddy.Globals.dll
2016-08-09 18:55 - 2016-08-09 18:55 - 00199168 _____ () C:\Program Files\MCEBuddy2x\MCEBuddy.Util.dll
2016-08-09 18:57 - 2016-08-09 18:57 - 00030720 _____ () C:\Program Files\MCEBuddy2x\MCEBuddy.Configuration.dll
2016-08-09 18:53 - 2016-08-09 18:53 - 00102912 _____ () C:\Program Files\MCEBuddy2x\MCEBuddy.Engine.dll
2016-08-09 18:52 - 2016-08-09 18:52 - 00006144 _____ () C:\Program Files\MCEBuddy2x\MCEBuddy.EMailEngine.dll
2016-08-09 18:57 - 2016-08-09 18:57 - 00158720 _____ () C:\Program Files\MCEBuddy2x\MCEBuddy.MetaData.dll
2016-08-30 19:40 - 2016-10-13 08:09 - 01595896 _____ () C:\Program Files (x86)\DFX\DFX.exe
2016-08-30 19:33 - 2016-08-30 19:33 - 00161784 _____ () C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp32.exe
2016-08-30 19:36 - 2016-08-30 19:36 - 00176120 _____ () C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp64.exe
2016-08-30 20:02 - 2016-08-30 20:02 - 00098296 _____ () C:\Program Files (x86)\Common Files\DFX\Dlls\dfxShared64.dll
2016-09-13 17:13 - 2015-02-11 16:07 - 00947512 _____ () C:\Program Files (x86)\ASUS\AI Suite III\ASUSMiniBar.exe
2016-09-19 00:20 - 2016-09-19 00:20 - 00062976 _____ () C:\Windows\assembly\GAC_MSIL\GuideToolAddin\1.0.0.0__7ec3342a8179f1ce\GuideToolAddin.dll
2016-09-19 00:20 - 2016-09-19 00:20 - 00012288 _____ () C:\Windows\assembly\GAC_MSIL\GuideToolAddin.Proxy\1.0.0.0__36d158e618c5e293\GuideToolAddin.Proxy.dll
2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\office14\Cultures\office.odf
2015-11-11 02:49 - 2015-11-11 02:49 - 01557160 _____ () C:\Program Files\Microsoft Office\Office14\ADDINS\UmOutlookAddin.dll
2016-10-26 10:38 - 2016-09-23 21:05 - 04128256 _____ () C:\Program Files\Pale Moon\mozjs.dll
2016-09-13 17:13 - 2015-02-11 16:07 - 00091648 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Log4cxxWrapper.dll
2016-09-13 17:13 - 2015-02-11 16:07 - 00147456 _____ () C:\Program Files (x86)\ASUS\AI Suite III\AssistFunc.dll
2016-09-13 17:14 - 2015-03-19 18:12 - 04440064 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\dip4.dll
2016-09-13 17:14 - 2015-03-19 11:11 - 00091648 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\Log4cxxWrapper.dll
2016-09-13 17:13 - 2013-08-29 15:59 - 01138176 _____ () C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EasyUpdt.dll
2016-09-13 17:13 - 2013-06-24 15:59 - 01173504 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Network iControl\Network iControl.dll
2016-09-13 17:13 - 2015-02-11 16:07 - 00828928 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Version\Version.dll
2016-09-13 17:14 - 2015-03-18 23:11 - 00053248 _____ () C:\Program Files (x86)\ASUS\VGA COM\1.00.20\Exeio.dll
2016-09-13 17:14 - 2015-03-18 23:11 - 00278528 _____ () C:\Program Files (x86)\ASUS\VGA COM\1.00.20\Vender.dll
2016-09-13 17:13 - 2014-09-08 22:14 - 00662016 _____ () C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMLib.dll
2016-09-13 17:14 - 2015-03-19 11:11 - 00711680 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4DIGIPowerControlAction.dll
2016-09-13 17:14 - 2015-03-19 11:42 - 00857088 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4EpuAction.dll
2016-09-13 17:14 - 2015-03-19 11:11 - 00803840 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4FanAction.dll
2016-09-13 17:14 - 2015-03-19 11:49 - 00814080 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4TurboVEVOAction.dll
2016-10-26 06:51 - 2016-10-26 06:51 - 00026112 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\PEbiosinterface32.dll
2016-09-13 17:11 - 2014-02-20 04:27 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\ATKEX.dll
2016-08-30 19:57 - 2016-08-30 19:57 - 00083960 _____ () C:\Program Files (x86)\Common Files\DFX\Dlls\dfxShared32.dll
2016-09-13 17:14 - 2015-03-19 11:11 - 00743424 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\EPU.dll
2016-09-13 17:14 - 2015-03-19 11:11 - 00908288 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\FAN.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\TEMP:5C321E34 [125]
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\008k.com -> 008k.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\00hq.com -> 00hq.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\0411dd.com -> 0411dd.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\0511zfhl.com -> 0511zfhl.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\0632qyw.com -> 0632qyw.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\1001movie.com -> 1001movie.com
There are 6091 more sites.
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 09:25 - 2013-08-22 09:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 1) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{29E0F7B7-C012-409E-908D-B2DEDAB90CFB}] => (Allow) C:\Program Files\Windows Media Player\wmplayer.exe
FirewallRules: [{6639DF85-77F4-4B0A-8C32-EE674F4CF892}] => (Allow) C:\Program Files\Silicondust\HDHomeRun\hdhomerun_view.exe
FirewallRules: [{8A952F2B-FB9A-40EA-B2C1-FB749814081E}] => (Allow) C:\Program Files\Silicondust\HDHomeRun\hdhomerun_setup.exe
FirewallRules: [{C84EB135-F0F9-400C-84E1-F466B128B332}] => (Allow) C:\Program Files\Silicondust\HDHomeRun\hdhomerun_nas_install.exe
FirewallRules: [{A1AADBCF-A924-4D87-AAA9-D6B7B6B00702}] => (Allow) C:\Program Files\Silicondust\HDHomeRun\hdhomerun_record.exe
FirewallRules: [{38C8E4A7-B268-454D-A52C-317D284DD40E}] => (Allow) C:\Program Files\Silicondust\HDHomeRun\hdhomerun_config_gui.exe
FirewallRules: [{EBEEB452-1580-4B0B-92BC-876817CDE997}] => (Allow) C:\Program Files\Silicondust\HDHomeRun\hdhomerun_config.exe
FirewallRules: [{EE758A43-EBA2-4C45-B8A0-7E2DC4B8F108}] => (Allow) C:\Windows\ehome\ehRecvr.exe
FirewallRules: [TCP Query User{670C5C8B-0568-4C8D-B940-2CECAD62586A}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{2B838DB0-EF27-4BDC-87BC-8BB6F58DFF37}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{0BA41CB7-61F7-4DDD-AA46-F0CA551AFEC7}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{E41C1B4F-E8E4-4B71-8C70-C9B45D74F5F3}] => (Allow) LPort=2869
FirewallRules: [{D70D07C2-B2BC-4A5E-8CAF-8C94BEF04EAE}] => (Allow) LPort=1900
FirewallRules: [{2E14BCBB-7F90-45B2-970D-902053AB80B9}] => (Allow) C:\Users\Antman\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{FFF621FC-5694-4524-A2E5-6D7E75CC533C}] => (Allow) C:\Users\Antman\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{44CD0594-5787-421A-94D7-9FEB94F7A5D5}] => (Allow) C:\Users\Antman\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{DE9A6F1C-25A6-4C03-8638-D70C8F1C3A24}] => (Allow) C:\Users\Antman\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{F38DED8F-8022-4C19-8B8B-56076CD6EC6D}] => (Allow) C:\Users\Antman\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{7B137A56-59E0-4522-BBB8-F8DD0C8356A9}] => (Allow) C:\Users\Antman\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{31D00B24-6778-4DF1-ACB9-0F394FE56380}] => (Allow) C:\Windows\ehome\ehexthost.exe
FirewallRules: [{DA4E5189-B1E2-4C72-9DBC-AF2F8A135132}] => (Allow) C:\Windows\ehome\ehexthost.exe
FirewallRules: [{CC7CB425-C3BA-4034-86B2-22487DE78505}] => (Allow) C:\Program Files (x86)\GuideTool\GuideTool.exe
FirewallRules: [{F06A1CF3-8261-4983-BBE3-B3CEF2754556}] => (Allow) C:\Program Files (x86)\GuideTool\GuideTool.exe
FirewallRules: [{676C70C7-DAE9-4BDE-A089-949A9BB1B5CA}] => (Allow) C:\Program Files (x86)\GuideTool\GuideTool.exe
FirewallRules: [{9504DEE8-0220-4952-920D-7041A8DE4A76}] => (Allow) C:\Program Files (x86)\GuideTool\GuideTool.exe
FirewallRules: [{B50F7AA9-506D-4673-A1D3-D5371A83D2F1}] => (Allow) C:\Program Files\Waterfox\waterfox.exe
FirewallRules: [{B5DF9774-A606-4C57-8C38-61F08D3BA3B4}] => (Allow) C:\Program Files\Waterfox\waterfox.exe
FirewallRules: [{8AA22675-2760-4974-8B12-9982861C41BC}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [{2DF0974C-02E3-4B18-86C5-524CEF2813BC}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Restore Points =========================
05-10-2016 15:22:03 Installed inSSIDer 4
11-10-2016 16:10:43 Windows Update
12-10-2016 16:32:42 Installed 8GadgetPack
20-10-2016 03:43:00 Scheduled Checkpoint
21-10-2016 11:32:50 Removed QuickTime 7
25-10-2016 15:49:07 Restore Operation
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (10/26/2016 08:04:56 AM) (Source: ESENT) (EventID: 455) (User: )
Description: CCleaner64 (5196) testing: Error -1032 (0xfffffbf8) occurred while opening logfile C:\Users\Antman\AppData\Local\Microsoft\Windows\WebCache\V01.log.
Error: (10/26/2016 08:04:56 AM) (Source: ESENT) (EventID: 489) (User: )
Description: CCleaner64 (5196) testing: An attempt to open the file "C:\Users\Antman\AppData\Local\Microsoft\Windows\WebCache\V01.log" for read only access failed with system error 32 (0x00000020): "The process cannot access the file because it is being used by another process. ". The open file operation will fail with error -1032 (0xfffffbf8).
Error: (10/26/2016 08:04:46 AM) (Source: ESENT) (EventID: 455) (User: )
Description: CCleaner64 (5196) testing: Error -1032 (0xfffffbf8) occurred while opening logfile C:\Users\Antman\AppData\Local\Microsoft\Windows\WebCache\V01.log.
Error: (10/26/2016 08:04:46 AM) (Source: ESENT) (EventID: 489) (User: )
Description: CCleaner64 (5196) testing: An attempt to open the file "C:\Users\Antman\AppData\Local\Microsoft\Windows\WebCache\V01.log" for read only access failed with system error 32 (0x00000020): "The process cannot access the file because it is being used by another process. ". The open file operation will fail with error -1032 (0xfffffbf8).
Error: (10/26/2016 07:18:08 AM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: )
Description: The volume Recovery was not optimized because an error was encountered: The parameter is incorrect. (0x80070057)
Error: (10/26/2016 06:08:13 AM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: )
Description: The volume Recovery was not optimized because an error was encountered: The parameter is incorrect. (0x80070057)
Error: (10/25/2016 04:10:50 PM) (Source: System Restore) (EventID: 8210) (User: )
Description: An unspecified error occurred during System Restore: (Scheduled Checkpoint). Additional information: 0x80070301.
Error: (10/25/2016 03:50:37 PM) (Source: System Restore) (EventID: 8210) (User: )
Description: An unspecified error occurred during System Restore: (Scheduled Checkpoint). Additional information: 0x80070301.
Error: (10/25/2016 03:49:08 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.
Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.
System Error:
Access is denied.
.
Error: (10/25/2016 11:12:26 AM) (Source: MCEBuddy2x) (EventID: 0) (User: )
Description: Failed to shut down service. The error that occurred was: System.InvalidOperationException: UpdatePendingStatus can only be called during the handling of Start, Stop, Pause and Continue commands.
at System.ServiceProcess.ServiceBase.RequestAdditionalTime(Int32 milliseconds)
at MCEBuddy.Service.ServiceModule.StopEngine(Boolean onStop)
at System.ServiceProcess.ServiceBase.DeferredShutdown().
System errors:
=============
Error: (10/26/2016 06:52:02 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Network Connectivity Assistant service depends on the IP Helper service which failed to start because of the following error:
The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
Error: (10/26/2016 06:51:47 AM) (Source: volmgr) (EventID: 45) (User: )
Description: The system could not sucessfully load the crash dump driver.
Error: (10/26/2016 06:51:45 AM) (Source: volmgr) (EventID: 46) (User: )
Description: Crash dump initialization failed!
Error: (10/26/2016 06:51:45 AM) (Source: volmgr) (EventID: 45) (User: )
Description: The system could not sucessfully load the crash dump driver.
Error: (10/26/2016 06:51:33 AM) (Source: DCOM) (EventID: 10010) (User: Archive-PC)
Description: The server {3EB3C877-1F16-487C-9050-104DBCD66683} did not register with DCOM within the required timeout.
Error: (10/26/2016 06:51:28 AM) (Source: DCOM) (EventID: 10005) (User: Archive-PC)
Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server:
{DD522ACC-F821-461A-A407-50B198B896DC}
Error: (10/26/2016 06:51:23 AM) (Source: DCOM) (EventID: 10005) (User: Archive-PC)
Description: DCOM got error "1084" attempting to start the service WSearch with arguments "Unavailable" in order to run the server:
{9E175B68-F52A-11D8-B9A5-505054503030}
Error: (10/26/2016 06:51:23 AM) (Source: DCOM) (EventID: 10005) (User: Archive-PC)
Description: DCOM got error "1084" attempting to start the service WSearch with arguments "Unavailable" in order to run the server:
{9E175B68-F52A-11D8-B9A5-505054503030}
Error: (10/26/2016 06:51:23 AM) (Source: DCOM) (EventID: 10005) (User: Archive-PC)
Description: DCOM got error "1084" attempting to start the service WSearch with arguments "Unavailable" in order to run the server:
{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (10/26/2016 06:51:23 AM) (Source: DCOM) (EventID: 10005) (User: Archive-PC)
Description: DCOM got error "1084" attempting to start the service WSearch with arguments "Unavailable" in order to run the server:
{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
CodeIntegrity:
===================================
Date: 2016-10-26 05:47:01.506
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-10-24 06:06:49.479
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-10-22 06:03:13.624
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-10-17 05:04:55.825
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-10-15 05:45:37.587
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-10-14 03:56:51.288
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-10-12 07:37:42.046
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-10-10 00:07:33.455
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-10-08 07:41:15.861
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-10-07 05:38:51.332
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
Processor: AMD A10-7800 Radeon R7, 12 Compute Cores 4C+8G
Percentage of memory in use: 42%
Total physical RAM: 11205.18 MB
Available physical RAM: 6395.56 MB
Total Virtual: 15301.18 MB
Available Virtual: 9880.9 MB
==================== Drives ================================
Drive c: (System) (Fixed) (Total:232.37 GB) (Free:194.23 GB) NTFS
Drive d: (Users) (Fixed) (Total:2794.53 GB) (Free:1845.2 GB) NTFS
Drive e: (Media) (Fixed) (Total:4657.4 GB) (Free:499.31 GB) NTFS
Drive r: (GSRAMDISK) (Fixed) (Total:1.99 GB) (Free:1.72 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 232.9 GB) (Disk ID: 00000000)
Partition: GPT.
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1397.3 GB) (Disk ID: 02EEE85A)
Partition 1: (Not Active) - (Size=1397.3 GB) - (Type=42)
========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 1397.3 GB) (Disk ID: 638E5A20)
Partition 1: (Not Active) - (Size=1397.3 GB) - (Type=42)
========================================================
Disk: 3 (MBR Code: Windows 7 or 8) (Size: 4657.5 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt ============================
_____
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-10-2016
Ran by Antman (26-10-2016 16:44:43)
Running from D:\Antman\Desktop
Windows 8.1 Pro with Media Center (Update) (X64) (2016-09-11 00:36:48)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-2077013597-3632690625-1065684953-500 - Administrator - Enabled)
Antman (S-1-5-21-2077013597-3632690625-1065684953-1001 - Administrator - Enabled) => C:\Users\Antman
Guest (S-1-5-21-2077013597-3632690625-1065684953-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2077013597-3632690625-1065684953-1003 - Limited - Enabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\uTorrent) (Version: 3.4.9.42606 - BitTorrent Inc.)
ACP Application (Version: 2016.0916.1502.32 - Advanced Micro Devices, Inc.) Hidden
Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.020.20039 - Adobe Systems Incorporated)
Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.185 - Adobe Systems Incorporated)
Adobe Flash Player 23 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 23.0.0.185 - Adobe Systems Incorporated)
AI Suite 3 (HKLM-x32\...\{CD36E28B-6023-469A-91E7-049A2874EC13}) (Version: 1.01.00 - ASUSTeK Computer Inc.)
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.)
AnyDVD (HKLM-x32\...\AnyDVD) (Version: 7.6.4.0 - SlySoft)
Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Application Compatibility Toolkit (Version: 8.100.26641 - Microsoft) Hidden
ASUS Boot Setting (HKLM-x32\...\{7AAE9187-C24F-4073-A951-36C370E7A3A5}) (Version: 1.00.22 - ASUSTeK Computer Inc.)
Auslogics BoostSpeed Premium (HKLM-x32\...\Auslogics BoostSpeed Premium 8.0.1.0) (Version: - )
Bulk Rename Utility 3.0.0.1 (64-bit) (HKLM\...\Bulk Rename Utility Installation_is1) (Version: - TGRMN Software)
Bullzip PDF Printer 10.25.0.2552 (HKLM\...\Bullzip PDF Printer_is1) (Version: 10.25.0.2552 - Bullzip)
Catalyst Control Center Next Localization BR (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.23 - Piriform)
Classic Shell (HKLM\...\{383BB30A-B4A7-4666-9A83-22CFA8640097}) (Version: 4.3.0 - IvoSoft)
Click-N-Type (HKLM-x32\...\{CC02581D-B1F9-4B22-8E82-024B9D8EB702}) (Version: 3.03.0415 - Lake Software)
CloneDVD2 (HKLM-x32\...\CloneDVD2) (Version: 2.9.3.3 - Elaborate Bytes)
CloneDVDmobile (HKLM-x32\...\CloneDVDmobile) (Version: 1.9.0.1 - SlySoft)
CrazyTalk Animator Standard (HKLM-x32\...\{789567FD-CAA2-4E1C-B38E-9072B3015FFD}) (Version: 1.2.2010.1 - Reallusion Inc.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DFX (HKLM-x32\...\DFX) (Version: 12.021.0.0 - Power Technology)
Digital Cable Advisor (HKLM\...\{07ECF9FC-BB47-4325-8345-7BFEC708DDD7}) (Version: 1.0.0.0 - Microsoft Corporation)
DiskCheckup v3.4 (HKLM-x32\...\DiskCheckup_is1) (Version: 3.4.1002 - PassMark Software)
FileMenu Tools (HKLM\...\FileMenu Tools_is1) (Version: 7.0.5 - LopeSoft)
GiliSoft RAMDisk 6.4.0 (HKLM-x32\...\{30AB2FCD-FBF2-4bed-1111-13E6A1468621}_is1) (Version: 6.4.0 - Gilisoft International LLC.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.71 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
GuideTool (HKLM-x32\...\GuideTool) (Version: - )
HDHomeRun (HKLM\...\{1447F2EE-B042-40AB-8BEB-478FEB1F9A3A}) (Version: 1.0.19686.0 - Silicondust)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.42 - Irfan Skiljan)
jetAudio Plus (HKLM-x32\...\{DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}) (Version: 8.1.0 - COWON)
Kits Configuration Installer (x32 Version: 8.100.25984 - Microsoft) Hidden
K-Lite Mega Codec Pack 12.4.2 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 12.4.2 - KLCP)
Logitech Unifying Software 2.50 (HKLM\...\Logitech Unifying) (Version: 2.50.25 - Logitech)
Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
MCEBuddy 2.x (HKLM\...\{0D3796AA-D867-4278-AEBC-3616AD1F7C3A}) (Version: 2.4.5 - MCEBuddy)
Microsoft DaRT 8.1 (HKLM\...\{4AE2D8A6-430A-4EE8-94BC-C88DD416E258}) (Version: 8.1.22.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Sounds (HKLM-x32\...\{10CE1EA2-12E9-11D3-825E-00C04F6843FE}) (Version: 1.0.0.0 - Microsoft Corp)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 (HKLM-x32\...\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Version: 14.0.24212.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mp3tag v2.79 (HKLM-x32\...\Mp3tag) (Version: v2.79 - Florian Heidenreich)
My Channel Logos (HKLM-x32\...\{6D535A45-2019-4CAC-A353-9B4D708642A0}) (Version: 3.1.0.0 - My Channel Logos)
OEM Application Profile (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Opera Stable 40.0.2308.90 (HKLM-x32\...\Opera 40.0.2308.90) (Version: 40.0.2308.90 - Opera Software)
Pale Moon 26.5.0 (x64 en-US) (HKLM\...\Pale Moon 26.5.0 (x64 en-US)) (Version: 26.5.0 - Moonchild Productions)
Photo BUZZER (64-Bit) (HKLM\...\EMOTION_PROJECTS_1_2_CDF5610E_is1) (Version: 1.14 - Franzis Verlag GmbH)
Photo Pos Pro 3 (HKLM\...\Photo Pos Pro 3) (Version: 3.20 - PowerOfSoftware Ltd.)
PlayReady PC Runtime amd64 (HKLM\...\{2E0C1D31-8FEC-411E-97FB-6E56BD429A98}) (Version: 1.3.10 - Microsoft Corporation)
QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.38.115.2015 - Realtek)
Send To Toys v2.5 (HKLM-x32\...\Send To Toys_is1) (Version: - Gabriele Ponti)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{91140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden
Skypeâ„¢ 7.27 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.27.101 - Skype Technologies S.A.)
SpywareBlaster 5.5 (HKLM-x32\...\SpywareBlaster_is1) (Version: 5.5.0 - BrightFort LLC)
Toolkit Documentation (x32 Version: 8.100.26866 - Microsoft) Hidden
UltraISO Premium V9.65 (HKLM-x32\...\UltraISO_is1) (Version: - )
Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb)
User State Migration Tool (x32 Version: 8.100.25984 - Microsoft) Hidden
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.4.8.0 - Elaborate Bytes)
Volume Activation Management Tool (x32 Version: 8.100.26629 - Microsoft) Hidden
Volume2 1.1.4 (HKLM-x32\...\Volume2) (Version: 1.1.4 - Alexandr Irza)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
Waterfox 49.0.2 (x64 en-US) (HKLM\...\Waterfox 49.0.2 (x64 en-US)) (Version: 49.0.2 - Mozilla)
Winaero Tweaker (HKLM\...\Winaero Tweaker_is1) (Version: 0.6.0.6 - Winaero)
Windows Assessment and Deployment Kit for Windows 8.1 (HKLM-x32\...\{e9e06304-a604-434b-b35f-d9beb94dc06d}) (Version: 8.100.26866 - Microsoft Corporation)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WPT Redistributables (x32 Version: 8.100.26866 - Microsoft) Hidden
WPTx64 (x32 Version: 8.100.26837 - Microsoft) Hidden
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001_Classes\CLSID\{0B7AD8D3-094A-44DE-A348-83C6C3FA347C}\InprocServer32 -> C:\Users\Antman\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Clipboarder.gadget\Release\Clipboarder64.dll (Helmut Buhler)
CustomCLSID: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001_Classes\CLSID\{0E7BE950-4ACC-47CB-834B-41A8B96BBFF9}\InprocServer32 -> C:\Users\Antman\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Sidebar7.gadget\Release\Sidebar7.64.dll (Helmut Buhler)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {07A3CEDE-B15E-43C1-944C-33CA390C34CE} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-09-16] (Advanced Micro Devices, Inc.)
Task: {09815097-9713-42B4-BD0F-45022D6C02F5} - System32\Tasks\ASUS\ASUS DIPAwayMode => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe [2015-03-19] ()
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {0C5365D6-82B6-47A5-93A9-8AF02D2ECD56} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-09-28] (Piriform Ltd)
Task: {0C88306B-C6D5-49B6-BA5B-34B3CAC8302A} - System32\Tasks\ASUS\USB 3.0 Boost Service => C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr.exe [2013-07-24] (ASUSTeK Computer Inc.)
Task: {1FA1BB28-EF5F-4A85-ABDF-618F2460940B} - System32\Tasks\ASUS\ASUS Network iControl Help Execute => C:\Program Files (x86)\ASUS\AI Suite III\Network iControl\NetSvcHelp\NetSvcHelpEntry.exe [2013-02-07] (ASUSTeK Computer Inc.)
Task: {310B75AC-85B1-4905-ADC8-6E0050AA70E9} - System32\Tasks\ASUS\ASUS AISuiteIII => C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe [2015-02-17] (ASUSTeK Computer Inc.)
Task: {3A37B2A5-9094-4966-B8A6-5519563E06A5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-25] (Google Inc.)
Task: {6F2DE740-9EF9-4E39-BB48-30438FB90F95} - System32\Tasks\Opera scheduled Autoupdate 1474217424 => C:\Program Files (x86)\Opera\launcher.exe [2016-10-17] (Opera Software)
Task: {717F50D5-6450-4036-B15B-FFDE3C297D49} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-25] (Google Inc.)
Task: {77C24FA7-454D-4F0D-872D-F216119F6870} - System32\Tasks\ASUS\Ez Update => C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe [2013-09-12] ()
Task: {96A639F8-F7CF-49E5-A6E8-5B41DCD6785A} - System32\Tasks\My Channel Logos Updater => C:\Program Files (x86)\My Channel Logos\mclupdater.exe [2013-12-06] (Microsoft)
Task: {9B51DDD6-0752-478F-B8C1-0FC508CC4F9B} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_23_0_0_185_pepper.exe [2016-10-12] (Adobe Systems Incorporated)
Task: {B2B693C5-6421-4021-8EE2-5FAA09F626D7} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-12] (Adobe Systems Incorporated)
Task: {BBF811F5-DF91-4E60-8658-F59E2D146599} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2016-08-15] ()
Task: {C9DD5303-9920-4A1F-8A05-783F92CFBE7A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16] (Adobe Systems Incorporated)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_23_0_0_185_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Antman\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> "hxxp://web-start.org//?ssid=1477064264&a=1054667&src=sh&uuid=e581f462-4dcb-46bf-beeb-6079e9189f31"
ShortcutWithArgument: C:\Users\Antman\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) -> "hxxp://web-start.org//?ssid=1477064264&a=1054667&src=sh&uuid=e581f462-4dcb-46bf-beeb-6079e9189f31"
==================== Loaded Modules (Whitelisted) ==============
2016-09-13 17:14 - 2015-03-19 11:11 - 01271096 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
2016-09-13 17:11 - 2014-02-20 04:27 - 00936728 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
2010-07-15 00:44 - 2010-07-15 00:44 - 00020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll
2016-09-13 08:03 - 2016-09-13 08:03 - 00222208 _____ () C:\Program Files (x86)\Gilisoft\RAMDisk\gsRAMService.exe
2016-08-09 18:56 - 2016-08-09 18:56 - 00034304 _____ () C:\Program Files\MCEBuddy2x\MCEBuddy.Service.exe
2016-08-09 18:53 - 2016-08-09 18:53 - 00705024 _____ () C:\Program Files\MCEBuddy2x\MCEBuddy.Globals.dll
2016-08-09 18:55 - 2016-08-09 18:55 - 00199168 _____ () C:\Program Files\MCEBuddy2x\MCEBuddy.Util.dll
2016-08-09 18:57 - 2016-08-09 18:57 - 00030720 _____ () C:\Program Files\MCEBuddy2x\MCEBuddy.Configuration.dll
2016-08-09 18:53 - 2016-08-09 18:53 - 00102912 _____ () C:\Program Files\MCEBuddy2x\MCEBuddy.Engine.dll
2016-08-09 18:52 - 2016-08-09 18:52 - 00006144 _____ () C:\Program Files\MCEBuddy2x\MCEBuddy.EMailEngine.dll
2016-08-09 18:57 - 2016-08-09 18:57 - 00158720 _____ () C:\Program Files\MCEBuddy2x\MCEBuddy.MetaData.dll
2016-08-30 19:40 - 2016-10-13 08:09 - 01595896 _____ () C:\Program Files (x86)\DFX\DFX.exe
2016-08-30 19:33 - 2016-08-30 19:33 - 00161784 _____ () C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp32.exe
2016-08-30 19:36 - 2016-08-30 19:36 - 00176120 _____ () C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp64.exe
2016-08-30 20:02 - 2016-08-30 20:02 - 00098296 _____ () C:\Program Files (x86)\Common Files\DFX\Dlls\dfxShared64.dll
2016-09-13 17:13 - 2015-02-11 16:07 - 00947512 _____ () C:\Program Files (x86)\ASUS\AI Suite III\ASUSMiniBar.exe
2016-09-19 00:20 - 2016-09-19 00:20 - 00062976 _____ () C:\Windows\assembly\GAC_MSIL\GuideToolAddin\1.0.0.0__7ec3342a8179f1ce\GuideToolAddin.dll
2016-09-19 00:20 - 2016-09-19 00:20 - 00012288 _____ () C:\Windows\assembly\GAC_MSIL\GuideToolAddin.Proxy\1.0.0.0__36d158e618c5e293\GuideToolAddin.Proxy.dll
2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\office14\Cultures\office.odf
2015-11-11 02:49 - 2015-11-11 02:49 - 01557160 _____ () C:\Program Files\Microsoft Office\Office14\ADDINS\UmOutlookAddin.dll
2016-10-26 10:38 - 2016-09-23 21:05 - 04128256 _____ () C:\Program Files\Pale Moon\mozjs.dll
2016-09-13 17:13 - 2015-02-11 16:07 - 00091648 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Log4cxxWrapper.dll
2016-09-13 17:13 - 2015-02-11 16:07 - 00147456 _____ () C:\Program Files (x86)\ASUS\AI Suite III\AssistFunc.dll
2016-09-13 17:14 - 2015-03-19 18:12 - 04440064 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\dip4.dll
2016-09-13 17:14 - 2015-03-19 11:11 - 00091648 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\Log4cxxWrapper.dll
2016-09-13 17:13 - 2013-08-29 15:59 - 01138176 _____ () C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EasyUpdt.dll
2016-09-13 17:13 - 2013-06-24 15:59 - 01173504 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Network iControl\Network iControl.dll
2016-09-13 17:13 - 2015-02-11 16:07 - 00828928 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Version\Version.dll
2016-09-13 17:14 - 2015-03-18 23:11 - 00053248 _____ () C:\Program Files (x86)\ASUS\VGA COM\1.00.20\Exeio.dll
2016-09-13 17:14 - 2015-03-18 23:11 - 00278528 _____ () C:\Program Files (x86)\ASUS\VGA COM\1.00.20\Vender.dll
2016-09-13 17:13 - 2014-09-08 22:14 - 00662016 _____ () C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMLib.dll
2016-09-13 17:14 - 2015-03-19 11:11 - 00711680 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4DIGIPowerControlAction.dll
2016-09-13 17:14 - 2015-03-19 11:42 - 00857088 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4EpuAction.dll
2016-09-13 17:14 - 2015-03-19 11:11 - 00803840 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4FanAction.dll
2016-09-13 17:14 - 2015-03-19 11:49 - 00814080 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4TurboVEVOAction.dll
2016-10-26 06:51 - 2016-10-26 06:51 - 00026112 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\PEbiosinterface32.dll
2016-09-13 17:11 - 2014-02-20 04:27 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\ATKEX.dll
2016-08-30 19:57 - 2016-08-30 19:57 - 00083960 _____ () C:\Program Files (x86)\Common Files\DFX\Dlls\dfxShared32.dll
2016-09-13 17:14 - 2015-03-19 11:11 - 00743424 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\EPU.dll
2016-09-13 17:14 - 2015-03-19 11:11 - 00908288 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\FAN.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\TEMP:5C321E34 [125]
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\008k.com -> 008k.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\00hq.com -> 00hq.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\0411dd.com -> 0411dd.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\0511zfhl.com -> 0511zfhl.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\0632qyw.com -> 0632qyw.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\...\1001movie.com -> 1001movie.com
There are 6091 more sites.
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 09:25 - 2013-08-22 09:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-2077013597-3632690625-1065684953-1001\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 1) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{29E0F7B7-C012-409E-908D-B2DEDAB90CFB}] => (Allow) C:\Program Files\Windows Media Player\wmplayer.exe
FirewallRules: [{6639DF85-77F4-4B0A-8C32-EE674F4CF892}] => (Allow) C:\Program Files\Silicondust\HDHomeRun\hdhomerun_view.exe
FirewallRules: [{8A952F2B-FB9A-40EA-B2C1-FB749814081E}] => (Allow) C:\Program Files\Silicondust\HDHomeRun\hdhomerun_setup.exe
FirewallRules: [{C84EB135-F0F9-400C-84E1-F466B128B332}] => (Allow) C:\Program Files\Silicondust\HDHomeRun\hdhomerun_nas_install.exe
FirewallRules: [{A1AADBCF-A924-4D87-AAA9-D6B7B6B00702}] => (Allow) C:\Program Files\Silicondust\HDHomeRun\hdhomerun_record.exe
FirewallRules: [{38C8E4A7-B268-454D-A52C-317D284DD40E}] => (Allow) C:\Program Files\Silicondust\HDHomeRun\hdhomerun_config_gui.exe
FirewallRules: [{EBEEB452-1580-4B0B-92BC-876817CDE997}] => (Allow) C:\Program Files\Silicondust\HDHomeRun\hdhomerun_config.exe
FirewallRules: [{EE758A43-EBA2-4C45-B8A0-7E2DC4B8F108}] => (Allow) C:\Windows\ehome\ehRecvr.exe
FirewallRules: [TCP Query User{670C5C8B-0568-4C8D-B940-2CECAD62586A}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{2B838DB0-EF27-4BDC-87BC-8BB6F58DFF37}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{0BA41CB7-61F7-4DDD-AA46-F0CA551AFEC7}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{E41C1B4F-E8E4-4B71-8C70-C9B45D74F5F3}] => (Allow) LPort=2869
FirewallRules: [{D70D07C2-B2BC-4A5E-8CAF-8C94BEF04EAE}] => (Allow) LPort=1900
FirewallRules: [{2E14BCBB-7F90-45B2-970D-902053AB80B9}] => (Allow) C:\Users\Antman\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{FFF621FC-5694-4524-A2E5-6D7E75CC533C}] => (Allow) C:\Users\Antman\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{44CD0594-5787-421A-94D7-9FEB94F7A5D5}] => (Allow) C:\Users\Antman\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{DE9A6F1C-25A6-4C03-8638-D70C8F1C3A24}] => (Allow) C:\Users\Antman\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{F38DED8F-8022-4C19-8B8B-56076CD6EC6D}] => (Allow) C:\Users\Antman\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{7B137A56-59E0-4522-BBB8-F8DD0C8356A9}] => (Allow) C:\Users\Antman\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{31D00B24-6778-4DF1-ACB9-0F394FE56380}] => (Allow) C:\Windows\ehome\ehexthost.exe
FirewallRules: [{DA4E5189-B1E2-4C72-9DBC-AF2F8A135132}] => (Allow) C:\Windows\ehome\ehexthost.exe
FirewallRules: [{CC7CB425-C3BA-4034-86B2-22487DE78505}] => (Allow) C:\Program Files (x86)\GuideTool\GuideTool.exe
FirewallRules: [{F06A1CF3-8261-4983-BBE3-B3CEF2754556}] => (Allow) C:\Program Files (x86)\GuideTool\GuideTool.exe
FirewallRules: [{676C70C7-DAE9-4BDE-A089-949A9BB1B5CA}] => (Allow) C:\Program Files (x86)\GuideTool\GuideTool.exe
FirewallRules: [{9504DEE8-0220-4952-920D-7041A8DE4A76}] => (Allow) C:\Program Files (x86)\GuideTool\GuideTool.exe
FirewallRules: [{B50F7AA9-506D-4673-A1D3-D5371A83D2F1}] => (Allow) C:\Program Files\Waterfox\waterfox.exe
FirewallRules: [{B5DF9774-A606-4C57-8C38-61F08D3BA3B4}] => (Allow) C:\Program Files\Waterfox\waterfox.exe
FirewallRules: [{8AA22675-2760-4974-8B12-9982861C41BC}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [{2DF0974C-02E3-4B18-86C5-524CEF2813BC}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Restore Points =========================
05-10-2016 15:22:03 Installed inSSIDer 4
11-10-2016 16:10:43 Windows Update
12-10-2016 16:32:42 Installed 8GadgetPack
20-10-2016 03:43:00 Scheduled Checkpoint
21-10-2016 11:32:50 Removed QuickTime 7
25-10-2016 15:49:07 Restore Operation
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (10/26/2016 08:04:56 AM) (Source: ESENT) (EventID: 455) (User: )
Description: CCleaner64 (5196) testing: Error -1032 (0xfffffbf8) occurred while opening logfile C:\Users\Antman\AppData\Local\Microsoft\Windows\WebCache\V01.log.
Error: (10/26/2016 08:04:56 AM) (Source: ESENT) (EventID: 489) (User: )
Description: CCleaner64 (5196) testing: An attempt to open the file "C:\Users\Antman\AppData\Local\Microsoft\Windows\WebCache\V01.log" for read only access failed with system error 32 (0x00000020): "The process cannot access the file because it is being used by another process. ". The open file operation will fail with error -1032 (0xfffffbf8).
Error: (10/26/2016 08:04:46 AM) (Source: ESENT) (EventID: 455) (User: )
Description: CCleaner64 (5196) testing: Error -1032 (0xfffffbf8) occurred while opening logfile C:\Users\Antman\AppData\Local\Microsoft\Windows\WebCache\V01.log.
Error: (10/26/2016 08:04:46 AM) (Source: ESENT) (EventID: 489) (User: )
Description: CCleaner64 (5196) testing: An attempt to open the file "C:\Users\Antman\AppData\Local\Microsoft\Windows\WebCache\V01.log" for read only access failed with system error 32 (0x00000020): "The process cannot access the file because it is being used by another process. ". The open file operation will fail with error -1032 (0xfffffbf8).
Error: (10/26/2016 07:18:08 AM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: )
Description: The volume Recovery was not optimized because an error was encountered: The parameter is incorrect. (0x80070057)
Error: (10/26/2016 06:08:13 AM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: )
Description: The volume Recovery was not optimized because an error was encountered: The parameter is incorrect. (0x80070057)
Error: (10/25/2016 04:10:50 PM) (Source: System Restore) (EventID: 8210) (User: )
Description: An unspecified error occurred during System Restore: (Scheduled Checkpoint). Additional information: 0x80070301.
Error: (10/25/2016 03:50:37 PM) (Source: System Restore) (EventID: 8210) (User: )
Description: An unspecified error occurred during System Restore: (Scheduled Checkpoint). Additional information: 0x80070301.
Error: (10/25/2016 03:49:08 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.
Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.
System Error:
Access is denied.
.
Error: (10/25/2016 11:12:26 AM) (Source: MCEBuddy2x) (EventID: 0) (User: )
Description: Failed to shut down service. The error that occurred was: System.InvalidOperationException: UpdatePendingStatus can only be called during the handling of Start, Stop, Pause and Continue commands.
at System.ServiceProcess.ServiceBase.RequestAdditionalTime(Int32 milliseconds)
at MCEBuddy.Service.ServiceModule.StopEngine(Boolean onStop)
at System.ServiceProcess.ServiceBase.DeferredShutdown().
System errors:
=============
Error: (10/26/2016 06:52:02 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Network Connectivity Assistant service depends on the IP Helper service which failed to start because of the following error:
The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
Error: (10/26/2016 06:51:47 AM) (Source: volmgr) (EventID: 45) (User: )
Description: The system could not sucessfully load the crash dump driver.
Error: (10/26/2016 06:51:45 AM) (Source: volmgr) (EventID: 46) (User: )
Description: Crash dump initialization failed!
Error: (10/26/2016 06:51:45 AM) (Source: volmgr) (EventID: 45) (User: )
Description: The system could not sucessfully load the crash dump driver.
Error: (10/26/2016 06:51:33 AM) (Source: DCOM) (EventID: 10010) (User: Archive-PC)
Description: The server {3EB3C877-1F16-487C-9050-104DBCD66683} did not register with DCOM within the required timeout.
Error: (10/26/2016 06:51:28 AM) (Source: DCOM) (EventID: 10005) (User: Archive-PC)
Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server:
{DD522ACC-F821-461A-A407-50B198B896DC}
Error: (10/26/2016 06:51:23 AM) (Source: DCOM) (EventID: 10005) (User: Archive-PC)
Description: DCOM got error "1084" attempting to start the service WSearch with arguments "Unavailable" in order to run the server:
{9E175B68-F52A-11D8-B9A5-505054503030}
Error: (10/26/2016 06:51:23 AM) (Source: DCOM) (EventID: 10005) (User: Archive-PC)
Description: DCOM got error "1084" attempting to start the service WSearch with arguments "Unavailable" in order to run the server:
{9E175B68-F52A-11D8-B9A5-505054503030}
Error: (10/26/2016 06:51:23 AM) (Source: DCOM) (EventID: 10005) (User: Archive-PC)
Description: DCOM got error "1084" attempting to start the service WSearch with arguments "Unavailable" in order to run the server:
{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (10/26/2016 06:51:23 AM) (Source: DCOM) (EventID: 10005) (User: Archive-PC)
Description: DCOM got error "1084" attempting to start the service WSearch with arguments "Unavailable" in order to run the server:
{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
CodeIntegrity:
===================================
Date: 2016-10-26 05:47:01.506
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-10-24 06:06:49.479
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-10-22 06:03:13.624
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-10-17 05:04:55.825
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-10-15 05:45:37.587
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-10-14 03:56:51.288
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-10-12 07:37:42.046
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-10-10 00:07:33.455
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-10-08 07:41:15.861
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2016-10-07 05:38:51.332
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
Processor: AMD A10-7800 Radeon R7, 12 Compute Cores 4C+8G
Percentage of memory in use: 42%
Total physical RAM: 11205.18 MB
Available physical RAM: 6395.56 MB
Total Virtual: 15301.18 MB
Available Virtual: 9880.9 MB
==================== Drives ================================
Drive c: (System) (Fixed) (Total:232.37 GB) (Free:194.23 GB) NTFS
Drive d: (Users) (Fixed) (Total:2794.53 GB) (Free:1845.2 GB) NTFS
Drive e: (Media) (Fixed) (Total:4657.4 GB) (Free:499.31 GB) NTFS
Drive r: (GSRAMDISK) (Fixed) (Total:1.99 GB) (Free:1.72 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 232.9 GB) (Disk ID: 00000000)
Partition: GPT.
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1397.3 GB) (Disk ID: 02EEE85A)
Partition 1: (Not Active) - (Size=1397.3 GB) - (Type=42)
========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 1397.3 GB) (Disk ID: 638E5A20)
Partition 1: (Not Active) - (Size=1397.3 GB) - (Type=42)
========================================================
Disk: 3 (MBR Code: Windows 7 or 8) (Size: 4657.5 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt ============================
Attachments
-
23.8 KB Views: 14