Премини към съдържанието

Tania Simeonova

Потребител
  • Публикации

    56
  • Регистрация

  • Последно онлайн

Харесвания

8 Неутрална репутация

Всичко за Tania Simeonova

  • Титла
    Редовен потребител

Последни посетители

1155 прегледа на профила
  1. Разбирам, много благодаря за помощта и отделеното време
  2. Error 17.8.2019 г. 11:39:39 Service Control Manager 7000 None Error 17.8.2019 г. 11:38:26 DistributedCOM 10010 None Error 17.8.2019 г. 11:33:13 WHEA-Logger 18 None Error 17.8.2019 г. 11:33:13 WHEA-Logger 18 None Error 17.8.2019 г. 11:33:13 WHEA-Logger 18 None Error 17.8.2019 г. 11:33:10 Service Control Manager 7000 None Error 17.8.2019 г. 11:31:57 DistributedCOM 10010 None Error 17.8.2019 г. 10:22:07 Service Control Manager 7000 None Error 17.8.2019 г. 10:21:02 Service Control Manager 7000 None Error 17.8.2019 г. 10:21:02 Service Control Manager 7038 None Error 17.8.2019 г. 10:20:57 DistributedCOM 10010 None Error 17.8.2019 г. 10:10:57 Service Control Manager 7000 None Error 17.8.2019 г. 10:09:04 DistributedCOM 10010 None Error 17.8.2019 г. 10:07:56 Service Control Manager 7022 None Error 17.8.2019 г. 10:01:15 WHEA-Logger 18 None Error 17.8.2019 г. 10:01:15 WHEA-Logger 18 None Error 17.8.2019 г. 10:01:15 WHEA-Logger 18 None Error 17.8.2019 г. 10:01:10 Service Control Manager 7000 None Error 17.8.2019 г. 10:00:59 BugCheck 1001 None Critical 17.8.2019 г. 10:00:44 Kernel-Power 41 (63) Error 17.8.2019 г. 10:00:58 EventLog 6008 None Error 17.8.2019 г. 09:51:49 Service Control Manager 7000 None Error 17.8.2019 г. 09:50:21 DistributedCOM 10010 None Error 16.8.2019 г. 19:48:29 Service Control Manager 7000 None Error 16.8.2019 г. 19:46:14 Service Control Manager 7043 None Error 16.8.2019 г. 19:45:26 DistributedCOM 10010 None Error 15.8.2019 г. 07:44:35 Service Control Manager 7022 None Error 15.8.2019 г. 07:37:45 WHEA-Logger 18 None Error 15.8.2019 г. 07:37:25 Service Control Manager 7000 None Critical 15.8.2019 г. 07:36:09 Kernel-Power 41 (63) Error 15.8.2019 г. 07:36:38 BugCheck 1001 None Error 15.8.2019 г. 07:36:37 EventLog 6008 None Error 15.8.2019 г. 04:07:17 Service Control Manager 7022 None Error 15.8.2019 г. 04:00:05 Service Control Manager 7000 None Error 15.8.2019 г. 03:53:19 WHEA-Logger 18 None Error 15.8.2019 г. 03:53:19 WHEA-Logger 18 None Error 15.8.2019 г. 03:52:47 Service Control Manager 7000 None Error 15.8.2019 г. 03:46:30 Service Control Manager 7043 None Error 15.8.2019 г. 03:45:49 Service Control Manager 7043 None Error 15.8.2019 г. 03:43:37 DistributedCOM 10010 None Error 14.8.2019 г. 08:53:51 WHEA-Logger 18 None Error 14.8.2019 г. 08:53:51 WHEA-Logger 18 None Error 14.8.2019 г. 08:52:55 Service Control Manager 7000 None Error 14.8.2019 г. 07:15:42 DistributedCOM 10010 None Error 14.8.2019 г. 07:17:33 Service Control Manager 7011 None Error 14.8.2019 г. 07:17:03 Service Control Manager 7011 None Error 14.8.2019 г. 07:16:33 Service Control Manager 7011 None Error 14.8.2019 г. 07:16:01 Service Control Manager 7000 None Error 14.8.2019 г. 07:15:42 Service Control Manager 7011 None Error 14.8.2019 г. 07:15:12 Service Control Manager 7011 None Error 14.8.2019 г. 07:15:03 Service Control Manager 7011 None Error 14.8.2019 г. 07:14:42 Service Control Manager 7011 None Error 13.8.2019 г. 18:24:01 Service Control Manager 7009 None Error 13.8.2019 г. 18:21:33 WHEA-Logger 18 None Error 13.8.2019 г. 18:21:33 WHEA-Logger 18 None Error 13.8.2019 г. 18:21:33 WHEA-Logger 18 None Error 13.8.2019 г. 18:21:30 Service Control Manager 7000 None Error 13.8.2019 г. 18:21:28 Service Control Manager 7024 None Critical 13.8.2019 г. 18:21:06 Kernel-Power 41 (63) Error 13.8.2019 г. 18:21:23 BugCheck 1001 None Error 13.8.2019 г. 18:21:22 EventLog 6008 None Error 13.8.2019 г. 11:11:09 Service Control Manager 7022 None Error 13.8.2019 г. 11:08:45 DistributedCOM 10010 None Error 13.8.2019 г. 11:04:37 WHEA-Logger 18 None Error 13.8.2019 г. 11:04:19 Service Control Manager 7000 None Critical 13.8.2019 г. 11:03:08 Kernel-Power 41 (63) Error 13.8.2019 г. 11:03:36 BugCheck 1001 None Error 13.8.2019 г. 11:03:35 EventLog 6008 None Error 11.8.2019 г. 21:49:28 Schannel 36887 None Error 11.8.2019 г. 21:49:28 Schannel 36887 None Error 11.8.2019 г. 21:49:28 Schannel 36887 None Error 11.8.2019 г. 21:49:28 Schannel 36887 None Error 11.8.2019 г. 21:49:28 Schannel 36887 None Error 11.8.2019 г. 21:46:12 WHEA-Logger 18 None Error 11.8.2019 г. 21:46:12 WHEA-Logger 18 None Error 11.8.2019 г. 21:45:57 Service Control Manager 7000 None Error 11.8.2019 г. 21:43:18 Service Control Manager 7011 None Error 11.8.2019 г. 21:40:56 DistributedCOM 10010 None Резултатът
  3. Много странно се получава, след като задам Uninstall потвърждавам, рестартирам и в момента в който компютърът зареди се инсталира отново въпросния процесор и иска втори рестарт! Как да го премахна?
  4. Добре, сега обяснете по-подробно какво следва? Да деинсталирам ли и какво точно ?
  5. Ок, след като бъде преместена ще предоставя и файловете от въпросната папка! Благодаря отново Прикачвам файловете Minidump.rar
  6. Благодаря, но бихте ли разяснили по-точно какво трябва да направя сега? Нова тема ли да отварям ?
  7. Здравейте, нямам точна представа какъв може да е, но определено има такъв! Компютърът зарежда прекалено бавно - по няколко минути докато отвори дадена страница, или изобщо няма връзка с нея! Работя с Windows 7 pro, нямам диск към него, защото е копие и лично аз съм го инсталирала, от няколко години работя с него и до момента не съм имала проблеми! В дадени моменти браузърите и някои програми отказват да работят -"Not Responding" до момента в който го рестартирам, след което тръгва за известно време и всичко се повтаря! Additional scan result of Farbar Recovery Scan Tool (x64) Version: 10-08-2019 Ran by krasi (14-08-2019 09:22:21) Running from C:\Users\krasi\Downloads Windows 7 Professional Service Pack 1 (X64) (2013-01-03 08:40:18) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-237019498-3253715406-2815218077-500 - Administrator - Disabled) Guest (S-1-5-21-237019498-3253715406-2815218077-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-237019498-3253715406-2815218077-1002 - Limited - Enabled) krasi (S-1-5-21-237019498-3253715406-2815218077-1001 - Administrator - Enabled) => C:\Users\krasi ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AV: ESET Security (Enabled - Out of date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70} AS: ESET Security (Enabled - Out of date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD} AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-237019498-3253715406-2815218077-1001\...\uTorrent) (Version: 3.5.5.44954 - BitTorrent Inc.) Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 19.012.20035 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 4.0.0.1390 - Adobe Systems Incorporated) Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 2.5.0.367 - Adobe Systems Incorporated) Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2.6 - Adobe Systems Incorporated) Adobe Flash Player 32 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 32.0.0.223 - Adobe) Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated) Adobe Photoshop CS3 (HKLM-x32\...\Adobe_719d6f144d0c086a0dfa7ff76bb9ac1) (Version: 10.0 - Adobe Systems Incorporated) Alipay Cert Component 2.6.0.0 (HKU\S-1-5-21-237019498-3253715406-2815218077-1001\...\AlipayCert) (Version: 2.6.0.0 - Alipay.com Co., Ltd.) AliSafeEngine 5.0.2 (HKLM-x32\...\AliSafeEngine) (Version: 5.0.2 - Alibaba, Inc.) Android Studio (HKLM\...\Android Studio) (Version: 1.0 - Google Inc.) Apple Application Support (HKLM-x32\...\{F5266D28-E0B2-4130-BFC5-EE155AD514DC}) (Version: 2.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Atlantis Word Processor (HKLM-x32\...\Atlantis Word Processor) (Version: - ) AVG Web TuneUp (HKLM-x32\...\AVG Web TuneUp) (Version: 4.3.2.18 - AVG Technologies) Backup and Sync from Google (HKLM\...\{768C0072-2FD2-4934-9824-B2A1E81AEA5D}) (Version: 3.45.5545.5747 - Google, Inc.) BlazeDVD 6.1.1.8 (HKLM-x32\...\BlazeDVD 6.1.1.8_is1) (Version: - ) BurnAware Free 6.5 (HKLM-x32\...\BurnAware Free_is1) (Version: - Burnaware) CAD4test for Windows (HKLM-x32\...\CAD4test for Windows) (Version: - ) CPUID CPU-Z 1.70 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) <==== ATTENTION Crystal Player Professional 1.99 (HKLM-x32\...\Crystal Player) (Version: Professional 1.99 - Crystal Reality LLC) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.47.1.0337 - Disc Soft Ltd) DivX Converter (HKLM-x32\...\{B13A7C41581B411290FBC0395694E2A9}) (Version: 6.6.1 - DivX, Inc.) DivX Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.1.87 - DivX, LLC) DTS+AC3 Filter (HKLM-x32\...\DtsFilter) (Version: - ) EaseUS Data Recovery Wizard 8.6 (HKLM\...\EaseUS Data Recovery Wizard 8.6_is1) (Version: - EaseUS) ESET Security (HKLM\...\{F1544F11-BFCC-43CC-9D0C-169A7E99369E}) (Version: 12.0.31.0 - ESET, spol. s r.o.) EVEREST Ultimate Edition v5.50 (HKLM-x32\...\EVEREST Ultimate Edition_is1) (Version: 5.50 - Lavalys, Inc.) Facebook Video Calling 3.1.0.521 (HKLM-x32\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) ffdshow v1.2.4422 [2012-04-09] (HKLM-x32\...\ffdshow_is1) (Version: 1.2.4422.0 - ) FontTwister 1.4 (HKLM-x32\...\FontTwister) (Version: 1.4 - Neuber GmbH) Free MP3 Cutter 1.01 (HKLM-x32\...\{847E0734-4457-4B48-BF49-998D1CF2CFA1}_is1) (Version: - PolySoft Solutions) GeoVision MJPG (HKLM-x32\...\Codec_MJPG) (Version: - ) GOM Player (HKLM-x32\...\GOM Player) (Version: 2.2.74.5237 - Gretech Corporation) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 76.0.3809.100 - Google LLC) Google Earth Pro (HKLM\...\{70A0F34E-564B-4F93-ADD6-3BAEC6E44075}) (Version: 7.3.2.5776 - Google) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden HP Deskjet 2540 series Basic Device Software (HKLM\...\{A8D4C8FF-C7D9-46DA-8EBA-5774F9705912}) (Version: 32.1.145.46951 - Hewlett-Packard Co.) HP Deskjet 2540 series Help (HKLM-x32\...\{4539575D-C09D-4E71-B207-0F2D6BD74DA2}) (Version: 30.0.0 - Hewlett Packard) HP Photo Creations (HKU\S-1-5-21-237019498-3253715406-2815218077-1001\...\HP Photo Creations) (Version: 1.0.0.22192 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HTC Driver Installer (HKLM-x32\...\{4CEEE5D0-F905-4688-B9F9-ECC710507796}) (Version: 4.17.0.001 - HTC Corporation) Inhatch web plugins (HKLM-x32\...\Inhatch web plugins) (Version: 0.7.5 - Inhatch Team) IPTInstaller (HKLM-x32\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.9 - HTC) Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.510 - Oracle) Java 8 Update 121 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) K-Lite Codec Pack 10.0.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.0.5 - ) LPGTECH Gas Setting 2.0 (HKLM-x32\...\{9E680F62-635A-49E7-BDFE-1D12A4EF0BAE}_is1) (Version: 2.0 - LPGTECH) Malwarebytes, версия 3.8.3.2965 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.8.3.2965 - Malwarebytes) McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.0.80 - McAfee, LLC.) Microsoft .NET Framework 4.7.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation) Microsoft Office Access Runtime (Bulgarian) 2007 (HKLM-x32\...\{90120000-001C-0402-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft PowerPoint 2010 Interactive Guide BGR (HKLM-x32\...\{639D0F32-CF2C-4170-A870-96C1A7C6F11F}) (Version: 1.2.1 - Microsoft) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation) Microsoft SkyDrive (HKU\S-1-5-21-237019498-3253715406-2815218077-1001\...\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 ENU (HKLM-x32\...\{3A9FC03D-C685-4831-94CF-4EDFD3749497}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 x64 ENU (HKLM\...\{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Word 2010 Interactive Guide BGR (HKLM-x32\...\{F8342FCF-3343-4CBC-A9CA-3BFBEA7F3A4E}) (Version: 1.2.1 - Microsoft) Movie Maker (HKLM-x32\...\{05C0B4A9-DF70-4C05-BAEF-E21CFF3E7C7C}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{45898170-E68C-4F02-AA35-C2186BF347A3}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{B39A6825-EA20-43EA-AB2D-A6BC0298D9A1}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Mozilla Firefox 49.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 49.0.1 (x86 en-US)) (Version: 49.0.1 - Mozilla) Mozilla Firefox 68.0.1 (x64 bg) (HKLM\...\Mozilla Firefox 68.0.1 (x64 bg)) (Version: 68.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 57.0.2 - Mozilla) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) NVIDIA PhysX (HKLM-x32\...\{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}) (Version: 9.10.0514 - NVIDIA Corporation) PDF Settings (HKLM-x32\...\{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}) (Version: 1.0 - Adobe Systems Incorporated) Hidden PhotoScape (HKLM-x32\...\PhotoScape) (Version: - ) Product Improvement Study for HP Deskjet 2540 series (HKLM\...\{C927FC7E-4061-44AC-BE09-496AF6BAC131}) (Version: 32.1.145.46951 - Hewlett-Packard Co.) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.987 - Even Balance, Inc.) Scan Tailor (HKLM-x32\...\Scan Tailor) (Version: - ) Screenshot Captor 4.9.3 (HKLM-x32\...\ScreenshotCaptor_is1) (Version: - ) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{91140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft) Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) Skype version 8.38 (HKLM-x32\...\Skype_is1) (Version: 8.38 - Skype Technologies S.A.) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) STDU Viewer version 1.6.191.0 (HKLM-x32\...\STDU Viewer_is1) (Version: 1.6.191.0 - STDUtility) The KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 3.9.0.124 - PandoraTV) TuneUp Utilities Language Pack (en-US) (HKLM-x32\...\{A6F5703D-A4B1-4857-9EDD-DC0ABBBB0D96}) (Version: 13.0.3000.138 - TuneUp Software) Hidden VC80CRTRedist - 8.0.50727.6195 (HKLM-x32\...\{933B4015-4618-4716-A828-5289FC03165F}) (Version: 1.2.0 - DivX, Inc) Hidden VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: - Elaborate Bytes) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN) Wave Editor 3.3.2.0 (HKLM-x32\...\Wave Editor_is1) (Version: 3.3.2.0 - AbyssMedia.com) Web Page Maker V3.22 (HKLM-x32\...\Web Page Maker_is1) (Version: - Web Page Maker Software Company, Inc.) Winamp (HKLM-x32\...\Winamp) (Version: 5.63 - Nullsoft, Inc) Winamp Detector Plug-in (HKU\S-1-5-21-237019498-3253715406-2815218077-1001\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) Windows Media Player 64-bit Plug-in Fix (HKLM\...\{00a8ce68-cb2e-4652-aecd-c05c0d9d53a7}.sdb) (Version: - ) Windows Media Player Plus! 2.7 (HKLM-x32\...\{67E4EF06-E0D6-42E0-A2BA-67199B0143FB}_is1) (Version: 2.7 - BM-productions) WinRAR 4.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) X264 (HKLM-x32\...\Codec_X264) (Version: - ) XVID (HKLM-x32\...\Codec_XVID) (Version: - ) Фотогалерия (HKLM-x32\...\{87E79A55-EBF1-472F-BCAD-4A631B9A69A5}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Ц§ё¶±¦°ІИ«їШјю 4.0.0.101 (HKLM-x32\...\alieditplus) (Version: 4.0.0.101 - Alipay.com Co., Ltd.) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-237019498-3253715406-2815218077-1001_Classes\CLSID\{08D512D2-7D97-4E22-B7DB-82791106C086}\InprocServer32 -> C:\Users\krasi\AppData\Roaming\alipay\cf\alicdo_x64.dll (Alipay.com Co.,Ltd -> Alipay) CustomCLSID: HKU\S-1-5-21-237019498-3253715406-2815218077-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\krasi\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-237019498-3253715406-2815218077-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\krasi\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-237019498-3253715406-2815218077-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\krasi\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-237019498-3253715406-2815218077-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\krasi\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\FileSyncApi64.dll (Microsoft Corporation -> Microsoft Corporation) ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [6671064 2013-12-19] (Microsoft Corporation -> Microsoft Corporation) ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [4171480 2013-12-19] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-06-27] (Google LLC -> Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-06-27] (Google LLC -> Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-06-27] (Google LLC -> Google) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll [2014-03-20] (Adobe Systems Incorporated -> ) ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll [2014-03-20] (Adobe Systems Incorporated -> ) ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll [2014-03-20] (Adobe Systems Incorporated -> ) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll [2014-03-20] (Adobe Systems Incorporated -> ) ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2018-11-29] (ESET, spol. s r.o. -> ESET) ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2019-06-27] (Google LLC -> Google) ContextMenuHandlers1: [ShellConverter] -> {30A4E07E-068A-4d91-8F05-691283A1336B} => C:\Program Files (x86)\Common Files\AVSMedia\ActiveX\AVSShellConverter64.dll -> No File ContextMenuHandlers1: [VirtualCloneDrive] -> {B7056B8E-4F99-44f8-8CBD-282390FE5428} => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG -> Elaborate Bytes AG) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2012-06-09] (Alexander Roshal) [File not signed] ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2012-06-09] (Alexander Roshal) [File not signed] ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2018-11-29] (ESET, spol. s r.o. -> ESET) ContextMenuHandlers2: [VirtualCloneDrive] -> {B7056B8E-4F99-44f8-8CBD-282390FE5428} => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG -> Elaborate Bytes AG) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2019-06-27] (Google LLC -> Google) ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll [2014-03-20] (Adobe Systems Incorporated -> ) ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2018-11-29] (ESET, spol. s r.o. -> ESET) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2012-06-09] (Alexander Roshal) [File not signed] ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2012-06-09] (Alexander Roshal) [File not signed] ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) ShortcutWithArgument: C:\Users\krasi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Изрязване на екран и стартиране на OneNote 2010.lnk -> C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation) -> /tsr <==== Cyrillic ==================== Loaded Modules (Whitelisted) ============== 2013-10-17 16:27 - 2013-10-17 16:27 - 000166912 _____ () [File not signed] C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe 2019-08-14 08:53 - 2019-08-14 08:53 - 000113664 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\_ctypes.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000173568 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\_elementtree.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 001800192 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\_hashlib.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000032256 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\_multiprocessing.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000046080 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\_psutil_windows.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000047616 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\_socket.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 002230784 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\_ssl.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000026112 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\_yappi.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000080896 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\bz2.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 006277632 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\cello.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000014848 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\common.time34.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000007680 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\hashobjs_ext.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000301568 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\PIL._imaging.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000169472 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\pyexpat.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 001084416 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\pysqlite2._sqlite.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000548864 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\pythoncom27.dll 2019-08-14 08:53 - 2019-08-14 08:53 - 000137728 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\pywintypes27.dll 2019-08-14 08:53 - 2019-08-14 08:53 - 000010752 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\select.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000020992 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\thumbnails_ext.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000689664 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\unicodedata.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000118784 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\usb_ext.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000128512 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\win32api.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000438784 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\win32com.shell.shell.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000011776 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\win32crypt.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000023040 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\win32event.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000149504 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\win32file.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000223232 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\win32gui.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000048128 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\win32inet.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000029696 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\win32pdh.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000027648 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\win32pipe.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000044032 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\win32process.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000020480 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\win32profile.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000136192 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\win32security.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000026624 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\win32ts.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000034304 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\windows.conditional.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000038400 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\windows.connectivity.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000073216 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\windows.device_monitor.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000110592 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\windows.volumes.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000020480 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\windows.winwrap.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 001325056 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\wx._controls_.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 001489408 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\wx._core_.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 001007104 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\wx._gdi_.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000103424 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\wx._html2.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 000916992 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\wx._misc_.pyd 2019-08-14 08:53 - 2019-08-14 08:53 - 001039872 _____ () [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\wx._windows_.pyd 2006-02-28 12:42 - 2006-02-28 12:42 - 000094208 _____ (Apple Computer, Inc.) [File not signed] C:\Program Files (x86)\Bonjour\mdnsNSP.dll 2006-02-28 12:42 - 2006-02-28 12:42 - 000229376 _____ (Apple Computer, Inc.) [File not signed] C:\Program Files (x86)\Bonjour\mDNSResponder.exe 2013-12-23 17:04 - 2015-06-26 12:24 - 001694720 _____ (Informer Technologies, Inc.) [File not signed] C:\Program Files\Software Informer\core.dll 2015-06-30 21:18 - 2015-06-09 12:14 - 000274432 _____ (Informer Technologies, Inc.) [File not signed] C:\Program Files\Software Informer\iebrowser.dll 2015-06-30 21:18 - 2015-06-26 12:23 - 000020992 _____ (Informer Technologies, Inc.) [File not signed] C:\Program Files\Software Informer\impl.dll 2015-06-30 21:18 - 2015-06-26 12:23 - 000115712 _____ (Informer Technologies, Inc.) [File not signed] C:\Program Files\Software Informer\siUiWindowResources.dll 2013-12-23 17:04 - 2015-06-26 12:25 - 001634304 _____ (Informer Technologies, Inc.) [File not signed] C:\Program Files\Software Informer\softinfo.exe 2015-06-30 21:18 - 2015-06-09 12:14 - 000015360 _____ (Informer Technologies, Inc.) [File not signed] C:\Program Files\Software Informer\wbacommon.dll 2019-08-14 08:53 - 2019-08-14 08:53 - 003042304 _____ (Python Software Foundation) [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\python27.dll 2019-08-14 08:53 - 2019-08-14 08:53 - 000202240 _____ (wxWidgets development team) [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\wxbase30u_net_vc90_x64.dll 2019-08-14 08:53 - 2019-08-14 08:53 - 002831872 _____ (wxWidgets development team) [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\wxbase30u_vc90_x64.dll 2019-08-14 08:53 - 2019-08-14 08:53 - 001654784 _____ (wxWidgets development team) [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\wxmsw30u_adv_vc90_x64.dll 2019-08-14 08:53 - 2019-08-14 08:53 - 006542336 _____ (wxWidgets development team) [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\wxmsw30u_core_vc90_x64.dll 2019-08-14 08:53 - 2019-08-14 08:53 - 000773632 _____ (wxWidgets development team) [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\wxmsw30u_html_vc90_x64.dll 2019-08-14 08:53 - 2019-08-14 08:53 - 000137216 _____ (wxWidgets development team) [File not signed] C:\Users\krasi\AppData\Local\Temp\_MEI29162\wxmsw30u_webview_vc90_x64.dll 2015-08-21 21:13 - 2015-08-21 21:13 - 000075264 _____ (Zlib) [File not signed] C:\Program Files (x86)\Hotspot Shield\bin\zlib1.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-237019498-3253715406-2815218077-1001\...\alipay.com -> hxxps://alipay.com IE trusted site: HKU\S-1-5-21-237019498-3253715406-2815218077-1001\...\alipay.com -> hxxp://alipay.com IE trusted site: HKU\S-1-5-21-237019498-3253715406-2815218077-1001\...\alisoft.com -> hxxps://alisoft.com IE trusted site: HKU\S-1-5-21-237019498-3253715406-2815218077-1001\...\alisoft.com -> hxxp://alisoft.com IE trusted site: HKU\S-1-5-21-237019498-3253715406-2815218077-1001\...\taobao.com -> hxxps://taobao.com IE trusted site: HKU\S-1-5-21-237019498-3253715406-2815218077-1001\...\taobao.com -> hxxp://taobao.com ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 05:34 - 2017-12-17 14:32 - 000000035 _____ C:\Windows\system32\drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\ProgramData\Oracle\Java\javapath;C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\PROGRA~2\CTSPEC~1;C:\Program Files (x86)\Windows Live\Shared HKU\S-1-5-21-237019498-3253715406-2815218077-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\krasi\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 31.211.159.254 - 31.211.159.253 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == If an entry is included in the fixlist, it will be removed. ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{0FE51611-456E-4A90-9C1B-701FE507426D}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe (Apple Inc. -> Apple Inc.) FirewallRules: [TCP Query User{5ED1FB45-5A08-42DC-ADD9-524944C59497}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Allow) C:\program files (x86)\mozilla firefox\plugin-container.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [UDP Query User{D9A96B69-0C19-4EFF-B1A4-DD1602654335}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Allow) C:\program files (x86)\mozilla firefox\plugin-container.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [TCP Query User{EF4A52EF-A526-4851-9EC9-697B34C8FB0B}C:\program files (x86)\winamp\winamp.exe] => (Block) C:\program files (x86)\winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.) FirewallRules: [UDP Query User{3602DF59-2BAF-4661-8533-2110D5390F71}C:\program files (x86)\winamp\winamp.exe] => (Block) C:\program files (x86)\winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.) FirewallRules: [{602BA4A1-5AA7-4AB3-A380-67284CD90582}] => (Allow) LPort=2706 FirewallRules: [{7FA18716-810A-4323-945E-34C659D8E49B}] => (Allow) LPort=2707 FirewallRules: [{FC25DB0B-3DC5-4E21-85AB-562127A04D05}] => (Allow) LPort=2708 FirewallRules: [{A53CAAA3-D6B3-4B1B-8C7B-E0EE784297FD}] => (Allow) LPort=2709 FirewallRules: [TCP Query User{18A06534-35EA-40DF-860E-5BC393880A01}C:\users\krasi\europefire\mohaa.exe] => (Block) C:\users\krasi\europefire\mohaa.exe (Electronic Arts Inc.) [File not signed] FirewallRules: [UDP Query User{55CFAB62-F7E9-4331-97C9-62CD8B9476FE}C:\users\krasi\europefire\mohaa.exe] => (Block) C:\users\krasi\europefire\mohaa.exe (Electronic Arts Inc.) [File not signed] FirewallRules: [{3FFFD0A2-9DC9-4AD3-89AE-77C1D9499152}] => (Allow) C:\Program Files\HP\HP Deskjet 2540 series\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{B0D10B36-6A0B-4585-82EA-1F119E84CAD9}] => (Allow) LPort=5357 FirewallRules: [{63511B2F-639A-4663-9BC2-AB4F9FD7CB07}] => (Allow) C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{579AA6C8-189A-4008-9405-F2AB75E08F77}] => (Allow) C:\Users\krasi\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{AED4B226-90AD-4B04-BAC6-7E926E217787}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{1921884F-CD91-4468-B46E-2D39B277667F}] => (Allow) LPort=2869 FirewallRules: [{48C6D739-A354-4961-B0E3-C2D207786ACE}] => (Allow) LPort=1900 FirewallRules: [{52B9E8FF-5781-4253-950D-04FEDD7F8B11}] => (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper.exe No File FirewallRules: [{D03987F5-7DEB-4D9E-9059-8C41AD53A7ED}] => (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper.exe No File FirewallRules: [{D0F6ECD4-19C4-4A47-B956-F8DD897E26F6}] => (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper_32.exe No File FirewallRules: [{92512654-55C6-4E48-A701-496E05953F05}] => (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper_32.exe No File FirewallRules: [{E0B66D5B-A255-4F51-9D73-591C7970E3F1}] => (Allow) C:\Program Files\Opera x64\opera.exe No File FirewallRules: [{177B9743-60FD-4771-B31E-8A66032109AA}] => (Allow) C:\Program Files\Opera x64\opera.exe No File FirewallRules: [TCP Query User{E536D980-D959-4333-BE49-6688C4D6572D}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [UDP Query User{121FF5C9-7812-4063-8BE7-EB38507A7613}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [{AAC42CA4-93F6-4845-82C3-8B954F2C1526}] => (Allow) C:\Users\krasi\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe (Skype Software Sarl -> Skype Limited) FirewallRules: [TCP Query User{28BC57C9-2019-48A9-88D1-92712030DBD2}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [UDP Query User{1B9155C8-4F6E-4511-B3C9-7FA9DAF5105E}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{37E84269-7EFF-45C4-9E77-9B9A489458EB}C:\games\world_of_tanks\wotlauncher.exe] => (Block) C:\games\world_of_tanks\wotlauncher.exe No File FirewallRules: [UDP Query User{7E4FE89C-6753-4770-A1F6-490A6F840896}C:\games\world_of_tanks\wotlauncher.exe] => (Block) C:\games\world_of_tanks\wotlauncher.exe No File FirewallRules: [{907E468A-2049-4DFB-9862-F38B0E58450E}] => (Allow) C:\Program Files (x86)\Proxy Switcher Standard\ProxySwitcher.exe No File FirewallRules: [{C1217CEA-51F3-4836-B49E-EDB6B71B2A2D}] => (Allow) C:\Program Files (x86)\Proxy Switcher Standard\ProxySwitcher.exe No File FirewallRules: [{C93C00DF-1C52-43AC-A8A0-64298863112E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{64BD7937-AC31-47B0-A186-BE0B21A5BBD4}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{33C998E5-871F-41F0-A15F-327F9E474544}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{7A7F87B5-925E-4522-A3D5-1AD335C99469}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{4521FEE3-DD25-4322-9F38-19190243E62E}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [{DC8F01DE-0161-401A-B659-1320C04A7FEE}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [{D66D5C4D-B1B4-4170-A3CF-32372D721AB4}] => (Allow) C:\Program Files (x86)\TradeManager\AliIM.exe No File FirewallRules: [{A4F19E14-F14F-4369-947E-BF65E2355C88}] => (Allow) C:\Program Files (x86)\TradeManager\AliIM.exe No File FirewallRules: [TCP Query User{E9D30B0C-29F9-4E34-989F-0A511B42C7A2}C:\program files\android\android studio\jre\bin\java.exe] => (Block) C:\program files\android\android studio\jre\bin\java.exe FirewallRules: [UDP Query User{BF004499-A833-4569-8FA7-D45978F6AE3F}C:\program files\android\android studio\jre\bin\java.exe] => (Block) C:\program files\android\android studio\jre\bin\java.exe FirewallRules: [{8F9EECA7-CA4A-4D84-99BA-EA7A701E8C74}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{A91E950F-936F-4B10-BC69-6B822E74EF83}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{8DB8D36C-BC70-412E-8C05-DBB3CAF7DCAA}] => (Allow) C:\Users\krasi\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{2DC41D12-480D-49C5-9B12-66AA14F32AFA}] => (Allow) C:\Users\krasi\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{124136E8-BCC0-4630-8D20-90E365D724D9}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{F7FA54D6-E96C-4021-851E-78DFFC081B4B}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{7326CD5B-0570-4664-9263-4C1DB982C8FA}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) ==================== Restore Points ========================= 02-08-2019 09:52:31 Scheduled Checkpoint 02-08-2019 09:57:23 Windows Update 05-08-2019 21:35:06 Windows Update 08-08-2019 21:49:03 Windows Update 12-08-2019 06:41:04 Windows Update ==================== Faulty Device Manager Devices ============= Name: ZAM Guard Driver Description: ZAM Guard Driver Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: ZAM_Guard Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: TAP-Win32 Adapter V9 #19 Description: TAP-Win32 Adapter V9 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-Win32 Provider V9 Service: tap0901 Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: TAP-Win32 Adapter V9 #20 Description: TAP-Win32 Adapter V9 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-Win32 Provider V9 Service: tap0901 Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: TAP-Win32 Adapter V9 #21 Description: TAP-Win32 Adapter V9 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-Win32 Provider V9 Service: tap0901 Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: TAP-Win32 Adapter V9 #22 Description: TAP-Win32 Adapter V9 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-Win32 Provider V9 Service: tap0901 Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: TAP-Win32 Adapter V9 #23 Description: TAP-Win32 Adapter V9 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-Win32 Provider V9 Service: tap0901 Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: TAP-Win32 Adapter V9 #24 Description: TAP-Win32 Adapter V9 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-Win32 Provider V9 Service: tap0901 Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: TAP-Win32 Adapter V9 #25 Description: TAP-Win32 Adapter V9 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-Win32 Provider V9 Service: tap0901 Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: TAP-Win32 Adapter V9 #26 Description: TAP-Win32 Adapter V9 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-Win32 Provider V9 Service: tap0901 Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: TAP-Win32 Adapter V9 #27 Description: TAP-Win32 Adapter V9 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: TAP-Win32 Provider V9 Service: tap0901 Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: ZAM Helper Driver Description: ZAM Helper Driver Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: ZAM Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (08/13/2019 09:48:19 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: mbam.exe, version: 3.1.0.1594, time stamp: 0x5b807117 Faulting module name: Qt5Core.dll, version: 5.11.1.0, time stamp: 0x5b7eca64 Exception code: 0xc0000005 Fault offset: 0x001b91fe Faulting process id: 0x123c Faulting application start time: 0x01d551a27b72b320 Faulting application path: C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe Faulting module path: C:\Program Files\Malwarebytes\Anti-Malware\Qt5Core.dll Report Id: 552384f0-bd96-11e9-a732-002215d5bbf6 Error: (08/13/2019 08:42:11 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: firefox.exe, version: 60.8.0.7005, time stamp: 0x00000000 Faulting module name: mozglue.dll, version: 60.8.0.7005, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x00075674 Faulting process id: 0x1cf4 Faulting application start time: 0x01d55123456bde20 Faulting application path: C:\Users\krasi\Desktop\Tor Browser\Browser\firefox.exe Faulting module path: C:\Users\krasi\Desktop\Tor Browser\Browser\mozglue.dll Report Id: 184e9b90-bd8d-11e9-a732-002215d5bbf6 Error: (08/02/2019 09:50:16 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: BSvcProcessor.exe, version: 1.0.6.0, time stamp: 0x563b2359 Faulting module name: BSvcProcessor.exe, version: 1.0.6.0, time stamp: 0x563b2359 Exception code: 0xc0000005 Fault offset: 0x00007b80 Faulting process id: 0x1888 Faulting application start time: 0x01d548fe49699940 Faulting application path: C:\Users\krasi\AppData\Local\Microsoft\BingSvc\BSvcProcessor.exe Faulting module path: C:\Users\krasi\AppData\Local\Microsoft\BingSvc\BSvcProcessor.exe Report Id: c88bf420-b4f1-11e9-8439-002215d5bbf6 Error: (07/27/2019 10:52:53 AM) (Source: .NET Runtime) (EventID: 1022) (User: ) Description: .NET Runtime version 4.0.30319.0 - There was a failure initializing profiling API attach infrastructure. This process will not allow a profiler to attach. HRESULT: 0x80004005. Process ID (decimal): 5796. Message ID: [0x2509]. Error: (07/26/2019 10:04:39 AM) (Source: .NET Runtime) (EventID: 1022) (User: ) Description: .NET Runtime version 4.0.30319.0 - There was a failure initializing profiling API attach infrastructure. This process will not allow a profiler to attach. HRESULT: 0x80004005. Process ID (decimal): 512. Message ID: [0x2509]. Error: (07/24/2019 09:25:50 PM) (Source: .NET Runtime) (EventID: 1022) (User: ) Description: .NET Runtime version 4.0.30319.0 - There was a failure initializing profiling API attach infrastructure. This process will not allow a profiler to attach. HRESULT: 0x80004005. Process ID (decimal): 1812. Message ID: [0x2509]. Error: (07/23/2019 06:06:11 AM) (Source: .NET Runtime) (EventID: 1022) (User: ) Description: .NET Runtime version 4.0.30319.0 - There was a failure initializing profiling API attach infrastructure. This process will not allow a profiler to attach. HRESULT: 0x80004005. Process ID (decimal): 8120. Message ID: [0x2509]. Error: (07/13/2019 04:03:24 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: egui.exe, version: 10.6.209.0, time stamp: 0x5bffc57b Faulting module name: ntdll.dll, version: 6.1.7601.24499, time stamp: 0x5d0115b0 Exception code: 0xc0000374 Fault offset: 0x00000000000bf302 Faulting process id: 0xf38 Faulting application start time: 0x01d5387ae1015480 Faulting application path: C:\Program Files\ESET\ESET Security\egui.exe Faulting module path: C:\Windows\SYSTEM32\ntdll.dll Report Id: 9882a860-a56e-11e9-8ed6-002215d5bbf6 System errors: ============= Error: (08/14/2019 08:53:51 AM) (Source: Microsoft-Windows-WHEA-Logger) (EventID: 18) (User: NT AUTHORITY) Description: A fatal hardware error has occurred. Reported by component: Processor Core Error Source: 3 Error Type: 256 Processor ID: 1 The details view of this entry contains further information. Error: (08/14/2019 08:53:51 AM) (Source: Microsoft-Windows-WHEA-Logger) (EventID: 18) (User: NT AUTHORITY) Description: A fatal hardware error has occurred. Reported by component: Processor Core Error Source: 3 Error Type: 256 Processor ID: 1 The details view of this entry contains further information. Error: (08/14/2019 08:52:55 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The WC Assistant service failed to start due to the following error: The system cannot find the file specified. Error: (08/14/2019 07:15:42 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: The server {995C996E-D918-4A8C-A302-45719A6F4EA7} did not register with DCOM within the required timeout. Error: (08/14/2019 07:17:33 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the hidserv service. Error: (08/14/2019 07:17:03 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the AudioEndpointBuilder service. Error: (08/14/2019 07:16:33 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the CscService service. Error: (08/14/2019 07:16:01 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The TCP/IP NetBIOS Helper service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion. Windows Defender: =================================== Date: 2019-06-01 06:54:33.790 Description: Windows Defender scan has been stopped before completion. Scan ID:{8A9BCFEE-D7EF-482B-BF33-9170A8475584} Scan Type:AntiSpyware Scan Parameters:Quick Scan CodeIntegrity: =================================== Date: 2019-02-13 03:57:59.893 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\kernel32.dll because the set of per-page image hashes could not be found on the system. Date: 2018-10-12 03:31:12.001 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\kernel32.dll because the set of per-page image hashes could not be found on the system. Date: 2017-11-26 16:42:54.884 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\tap0901.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-11-26 16:42:54.198 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\tap0901.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-11-26 16:42:53.496 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\tap0901.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-11-26 16:42:52.809 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\tap0901.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-11-26 16:42:52.123 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\tap0901.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-11-26 16:42:51.436 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\tap0901.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== BIOS: American Megatrends Inc. 0405 08/27/2008 Motherboard: ASUSTeK Computer INC. M2N68 Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 5000+ Percentage of memory in use: 87% Total physical RAM: 4095.3 MB Available physical RAM: 522.21 MB Total Virtual: 8188.75 MB Available Virtual: 3596.72 MB ==================== Drives ================================ Drive 😄 () (Fixed) (Total:465.66 GB) (Free:297.3 GB) NTFS ==>[drive with boot components (obtained from BCD)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 4B389A53) Partition 1: (Active) - (Size=465.7 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================ FRST.txt123.txt33333.txt
  8. Здравейте, напоследък компютърът е много бавен и зле зареждащ! Трябва да се изчаква по няколко минути докато зареди дадена страница или въобще не я отваря - не може да установи връзка, рестартирам в началото е ок след няколко минути се скапва, работя с Windows 7 pro!
  9. Весели празници и искрени благодарности за указаната помощ
  10. DelFix и за първия компютър DelFix_copy.txt
  11. Прилагам дневникът от втората машина, резултатите за първата ще ги пусна по-късно, в момента нямам достъп до него. Програмата Malwarebytes за момента ще си я запазя # DelFix v1.013 - Logfile created 19/12/2017 at 14:32:04 # Updated 17/04/2016 by Xplode # Username : Krasi - KRASI-PC # Operating System : Windows 7 Professional Service Pack 1 (64 bits) ~ Removing disinfection tools ... Deleted : C:\FRST Deleted : C:\AdwCleaner Deleted : C:\Users\Krasi\Desktop\ZHPCleaner.lnk Deleted : C:\Users\Krasi\Desktop\ZHPCleaner.txt Deleted : C:\Users\Krasi\Downloads\Addition (1).txt Deleted : C:\Users\Krasi\Downloads\Addition.txt Deleted : C:\Users\Krasi\Downloads\adwcleaner_7.0.5.0.exe Deleted : C:\Users\Krasi\Downloads\Fixlog.txt Deleted : C:\Users\Krasi\Downloads\FRST.txt Deleted : C:\Users\Krasi\Downloads\FRST64 (1).exe Deleted : C:\Users\Krasi\Downloads\FRST64.exe Deleted : C:\Users\Krasi\Downloads\ZHPCleaner.exe ~ Creating registry backup ... OK ~ Cleaning system restore ... Deleted : RP #136 [Windows Update | 11/20/2017 04:16:00] Deleted : RP #137 [Scheduled Checkpoint | 12/01/2017 18:56:34] Deleted : RP #138 [Scheduled Checkpoint | 12/10/2017 16:27:53] Deleted : RP #139 [Windows Update | 12/15/2017 04:15:01] Deleted : RP #141 [Restore Point Created by FRST | 12/19/2017 09:55:13] Deleted : RP #143 [Restore Point Created by FRST | 12/19/2017 10:51:22] New restore point created ! ~ Resetting system settings ... OK ########## - EOF - ##########
  12. Всичко е Ок, работи чудесно, без забележки
  13. # AdwCleaner 7.0.5.0 - Logfile created on Tue Dec 19 11:25:18 2017 # Updated on 2017/29/11 by Malwarebytes # Database: 12-18-2017.1 # Running on Windows 7 Professional (X64) # Mode: scan # Support: https://www.malwarebytes.com/support ***** [ Services ] ***** No malicious services found. ***** [ Folders ] ***** No malicious folders found. ***** [ Files ] ***** No malicious files found. ***** [ DLL ] ***** No malicious DLLs found. ***** [ WMI ] ***** No malicious WMI found. ***** [ Shortcuts ] ***** PUP.Optional.Legacy, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk - http:\\istart.webssearches.com\?type=sc&ts=1414733960&from=wpc&uid=WDCXWD5000BPVT-35HXZT1_WD-WXN1A81A8688A8688 PUP.Optional.Legacy, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk - http:\\istart.webssearches.com\?type=sc&ts=1414733960&from=wpc&uid=WDCXWD5000BPVT-35HXZT1_WD-WXN1A81A8688A8688 ***** [ Tasks ] ***** No malicious tasks found. ***** [ Registry ] ***** PUP.Optional.Legacy, [Key] - HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\plarium.com PUP.Optional.Legacy, [Key] - HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0} PUP.Optional.Legacy, [Key] - HKU\.DEFAULT\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} PUP.Optional.Legacy, [Key] - HKU\S-1-5-18\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} PUP.Optional.Reimage, [Key] - HKLM\SOFTWARE\Reimage ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries. ***** [ Chromium (and derivatives) ] ***** PUP.Optional.Legacy, SearchProvider found: webssearches - istart.webssearches.com PUP.Optional.Legacy, SearchProvider found: webssearches - webssearches PUP.Optional.Legacy, SearchProvider found: Ask.com - search.tb.ask.com PUP.Optional.Legacy, SearchProvider found: Ask.com - search.tb.ask.com_ PUP.Optional.Legacy, SearchProvider found: Conduit - search.conduit.com /!\ Please Reset the Chrome Synchronization before cleaning the Chrome Preferences: https://support.google.com/chrome/answer/3097271 ************************* ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt ########## # AdwCleaner 7.0.5.0 - Logfile created on Tue Dec 19 11:35:13 2017 # Updated on 2017/29/11 by Malwarebytes # Running on Windows 7 Professional (X64) # Mode: clean # Support: https://www.malwarebytes.com/support ***** [ Services ] ***** No malicious services deleted. ***** [ Folders ] ***** No malicious folders deleted. ***** [ Files ] ***** No malicious files deleted. ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** Cleaned: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk[http:\\istart.webssearches.com\?type=sc&ts=1414733960&from=wpc&uid=WDCXWD5000BPVT-35HXZT1_WD-WXN1A81A8688A8688] Cleaned: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk[http:\\istart.webssearches.com\?type=sc&ts=1414733960&from=wpc&uid=WDCXWD5000BPVT-35HXZT1_WD-WXN1A81A8688A8688] ***** [ Tasks ] ***** No malicious tasks deleted. ***** [ Registry ] ***** Deleted: [Key] - HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\plarium.com Deleted: [Key] - HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0} Deleted: [Key] - HKU\.DEFAULT\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} Deleted: [Key] - HKU\S-1-5-18\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} Deleted: [Key] - HKLM\SOFTWARE\Reimage ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries deleted. ***** [ Chromium (and derivatives) ] ***** SearchProvider deleted: webssearches - istart.webssearches.com SearchProvider deleted: webssearches - istart.webssearches.com SearchProvider deleted: Ask.com - search.tb.ask.com SearchProvider deleted: Ask.com - search.tb.ask.com SearchProvider deleted: Conduit - search.conduit.com ************************* ::Tracing keys deleted ::Winsock settings cleared ::Additional Actions: 0 ************************* C:/AdwCleaner/AdwCleaner[S0].txt - [2226 B] - [2017/12/19 11:25:18] C:/AdwCleaner/AdwCleaner[S0]1.txt - [2226 B] - [2017/12/19 11:33:53] ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt ##########
  14. Няма проблем резултатът: Fixlog.txt
  • Разглеждащи това в момента   0 потребители

    Няма регистрирани потребители разглеждащи тази страница.

×
×
  • Добави ново...