ericmooney12
Posts: 21 +0
So I was being an ***** and opened a file which I thought was a folder at first for some music that I thought was in a rar, and defender detected this twice, here are the logs. I didn't know how to get defender logs, thanks in advance for any help and sorry for taking time on this minor issue
Additional scan result of Farbar Recovery Scan Tool (x64) Version:18-01-2016
Ran by Eric (2016-01-22 06:32:49)
Running from C:\Users\Eric\Desktop
Windows 10 Home (X64) (2015-09-17 02:53:10)
Boot Mode: Safe Mode (with Networking)
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1308616899-3891445292-2732958701-500 - Administrator - Disabled)
ASPNET (S-1-5-21-1308616899-3891445292-2732958701-1006 - Limited - Enabled)
DefaultAccount (S-1-5-21-1308616899-3891445292-2732958701-503 - Limited - Disabled)
Eric (S-1-5-21-1308616899-3891445292-2732958701-1001 - Administrator - Enabled) => C:\Users\Eric
Guest (S-1-5-21-1308616899-3891445292-2732958701-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-1308616899-3891445292-2732958701-1005 - Limited - Enabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 15.14 (x64 edition) (HKLM\...\{23170F69-40C1-2702-1514-000001000000}) (Version: 15.14.00.0 - Igor Pavlov)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.4.1.181 - Adobe Systems Incorporated)
Adobe Photoshop CC 2015 (HKLM-x32\...\{793C2BF7-A4FE-4608-91C9-9282C5801C21}) (Version: 16.1.1 - Adobe Systems Incorporated)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Belarc Advisor 8.5a (HKLM-x32\...\Belarc Advisor) (Version: 8.5.1.0 - Belarc Inc.)
BlitzMax1.50 (HKLM-x32\...\BlitzMax_is1) (Version: - )
BlitzPlus Demo (HKLM-x32\...\BlitzPlus Demo 1.43_is1) (Version: - Blitz Research Ltd)
CCleaner (HKLM\...\CCleaner) (Version: 5.10 - Piriform)
Chipamp (HKLM-x32\...\Chipamp) (Version: 1.1 - OverClocked ReMix)
Crusader Kings II (HKLM-x32\...\Steam App 203770) (Version: - Paradox Development Studio)
CyberLink YouCam 7 (HKLM-x32\...\{0078CD4D-B146-4D77-8CF0-268B36C1A3EC}) (Version: 7.0.0824.0 - CyberLink Corp.)
DOOM 3 (HKLM-x32\...\Steam App 9050) (Version: - id Software)
DOOM II: Hell on Earth (HKLM-x32\...\Steam App 2300) (Version: - id Software)
Fallout 3 (HKLM-x32\...\{974C4B12-4D02-4879-85E0-61C95CC63E9E}) (Version: 1.00.0000 - Bethesda Softworks)
FINAL FANTASY V (HKLM-x32\...\Steam App 382890) (Version: - SQUARE ENIX)
Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.106 - Google Inc.)
Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden
Greenshot 1.2.6.12 (HKLM\...\Greenshot_is1) (Version: 1.2.6.12 - Greenshot)
HDD Raw Copy Tool v1.10 (HKLM-x32\...\HDD Raw Copy Tool_is1) (Version: - HDDGURU)
HP Support Solutions Framework (HKLM-x32\...\{F6A11738-3EE4-4573-AEA5-6CD5D491C167}) (Version: 12.0.30.219 - Hewlett-Packard Company)
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
iolo technologies' System Mechanic (HKLM-x32\...\{55FD1D5A-7AEF-4DA3-8FAF-A71B2A52FFC7}_is1) (Version: 15.0.1 - iolo technologies, LLC)
Java 8 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218060F0}) (Version: 8.0.600.27 - Oracle Corporation)
Malwarebytes Anti-Malware version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{929CE49F-1CA7-4CF3-A9A1-6D757443C63F}) (Version: 1.2.0241 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft)
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.61.1 - Black Tree Gaming)
Oracle VM VirtualBox 5.0.12 (HKLM\...\{6F93731D-89E1-4A8F-BDA9-D104860DDB02}) (Version: 5.0.12 - Oracle Corporation)
PdaNet+ for Android 4.18 (HKLM-x32\...\PdaNet_is1) (Version: - June Fabrics Technology Inc)
PowerISO (HKLM-x32\...\PowerISO) (Version: 6.4 - Power Software Ltd)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7548 - Realtek Semiconductor Corp.)
Realtek PCIE Card Reader (HKLM-x32\...\{0D61A55C-3ADC-409F-BF5B-A1766D1F5944}) (Version: 6.2.9200.29053 - Realtek Semiconductor Corp.)
RPG Maker VX Ace (HKLM-x32\...\Steam App 220700) (Version: - KADOKAWA)
Skyrim Script Extender (SKSE) (HKLM-x32\...\Steam App 365720) (Version: - The SKSE Team)
StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.12.95 - Synaptics Incorporated)
System Requirements Lab Detection (HKLM-x32\...\{A54DA9C6-696A-4A95-BAB5-C7EA94849EDD}) (Version: 6.1.6.0 - Husdawg, LLC)
TeamSpeak 3 Client (HKU\S-1-5-21-1308616899-3891445292-2732958701-1001\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH)
The Elder Scrolls III: Morrowind (HKLM-x32\...\Steam App 22320) (Version: - Bethesda Game Studios®)
The Elder Scrolls IV: Oblivion (HKLM-x32\...\Steam App 22330) (Version: - Bethesda Game Studios)
The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios)
The Witcher: Enhanced Edition (HKLM-x32\...\Steam App 20900) (Version: - CD PROJEKT RED)
Vuze (HKLM\...\8461-7759-5462-8226) (Version: 5.6.2.0 - Azureus Software, Inc.)
WinRAR 5.30 beta 4 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.30.4 - win.rar GmbH)
World of Warcraft Classic (HKU\S-1-5-21-1308616899-3891445292-2732958701-1001\...\{D55ED80F-FAFD-40E1-99FC-89AF8614A9B5}_is1) (Version: 1.12.1.5875 - Blizzard Entertainment)
WTFast 3.5 (HKLM-x32\...\{12B4121D-5221-4AFC-9EDC-63B0CA139856}_is1) (Version: 3.5.9.511 - Initex & AAA Internet Publishing)
X-Mouse Button Control 2.11.1 (HKLM-x32\...\X-Mouse Button Control) (Version: 2.11.1 - Highresolution Enterprises)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1308616899-3891445292-2732958701-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-C84E721A499B}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => No File
CustomCLSID: HKU\S-1-5-21-1308616899-3891445292-2732958701-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Eric\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1308616899-3891445292-2732958701-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {1272E32F-B35C-40D7-A5C2-C0CF5BBBA5C3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-16] (Google Inc.)
Task: {170F481F-E9D9-4D0E-B6E0-BEBCD3B3ED49} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2016-01-16] (Microsoft Corporation)
Task: {1A7112BB-85BB-4A32-A950-C18FBF23F279} - System32\Tasks\{D92AEBB4-729A-48D6-9E67-2B577E9BF088} => pcalua.exe -a C:\Users\Eric\Desktop\ScpServer\bin\ScpService.exe -d C:\Users\Eric\Desktop\ScpServer\bin
Task: {1EF3ECC9-4FC5-43FC-8E50-4BC8878EE5F4} - System32\Tasks\iolo Process Governor => C:\Program Files (x86)\iolo\System Mechanic\iologovernor64.exe [2015-12-09] (iolo technologies, LLC)
Task: {25C28910-6BE7-477F-9CBD-611260B85583} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-QPFE2F8-Eric => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-10-30] (Adobe Systems Incorporated)
Task: {2E56ED85-709A-4F2D-92CD-7ADDD4D45DD0} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-09-16] (Piriform Ltd)
Task: {3A13B395-C337-41F0-A843-590857A2F031} - System32\Tasks\RtHDVBg => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-11-29] (Realtek Semiconductor)
Task: {3A246D8F-175F-429B-8535-AB303C904F8B} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-ericdm92@hotmail.com => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-10-30] (Adobe Systems Incorporated)
Task: {4B4F66F5-A7F1-49A6-8830-B96B5F8CA8C1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2015-09-28] (Hewlett-Packard)
Task: {571D2801-CA4D-478C-B32F-B31A878A20A1} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-09-16] (Synaptics Incorporated)
Task: {6E058816-4997-4EEA-B685-96190FC7A2B7} - System32\Tasks\{EC1EAB97-0BA1-418C-B43B-BB4B8858E2F8} => pcalua.exe -a C:\Users\Eric\Documents\ScpServer\bin\ScpService.exe -d C:\Users\Eric\Documents\ScpServer\bin
Task: {A20B2CAE-96B0-4388-B8C9-A8AC43E1FEAA} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto
Task: {D5D8EE54-0825-47A8-BEF4-570AC0D7A7F2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-16] (Google Inc.)
Task: {FC7D98AE-A246-4254-934D-3D2835A7EBFC} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-11-29] (Realtek Semiconductor)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2015-09-17 09:48 - 2015-07-14 21:04 - 00032768 _____ () C:\Windows\SYSTEM32\licensemanagerapi.dll
2015-10-01 04:36 - 2015-09-17 01:48 - 02494712 _____ () C:\Windows\system32\CoreUIComponents.dll
2015-10-01 04:36 - 2015-09-17 01:48 - 02494712 _____ () C:\Windows\System32\CoreUIComponents.dll
2015-11-14 04:23 - 2015-11-14 04:23 - 00553120 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll
2015-10-01 04:36 - 2015-09-17 00:48 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-12-08 14:13 - 2015-11-24 23:20 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-12-08 14:13 - 2015-11-24 23:17 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-12-08 14:13 - 2015-11-24 23:17 - 01808384 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-10-01 04:36 - 2015-09-17 00:43 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ioloSystemService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ioloSystemService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2"
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-07-10 06:04 - 2015-07-10 06:02 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1308616899-3891445292-2732958701-1001\Control Panel\Desktop\\Wallpaper -> c:\users\eric\appdata\local\microsoft\windows\themes\roamedthemefiles\desktopbackground\hp_metro_sky.jpg
DNS Servers: Media is not connected to internet.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\StartupFolder: => "Mediatek Wireless Utility.lnk"
HKLM\...\StartupApproved\StartupFolder: => "Ralink Wireless Utility.lnk"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "XboxStat"
HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
HKLM\...\StartupApproved\Run32: => "YouCam Service7"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-1308616899-3891445292-2732958701-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1308616899-3891445292-2732958701-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-1308616899-3891445292-2732958701-1001\...\StartupApproved\Run: => "WTFast Tray"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{56B084E4-C1AA-4A40-918C-335D942F3CFC}] => (Allow) C:\Program Files\Vuze\Azureus.exe
FirewallRules: [{ECFFF7B6-DEA2-45F9-9E8A-4D298B462D2D}] => (Allow) C:\Program Files\Vuze\Azureus.exe
FirewallRules: [{C528CF18-FC59-4AC7-ABAA-AD19A7F255F8}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{3CA328CD-3D09-413E-9615-56E839368116}C:\program files (x86)\cf3b5\ps3.proxyserver\ps3.proxyserver.gui.exe] => (Allow) C:\program files (x86)\cf3b5\ps3.proxyserver\ps3.proxyserver.gui.exe
FirewallRules: [UDP Query User{23077008-5A48-4FC2-82A2-8CE7BDFC9134}C:\program files (x86)\cf3b5\ps3.proxyserver\ps3.proxyserver.gui.exe] => (Allow) C:\program files (x86)\cf3b5\ps3.proxyserver\ps3.proxyserver.gui.exe
FirewallRules: [{4EF50AB9-A35A-4516-ADA8-9CD99D9AEE2D}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\Steam.exe
FirewallRules: [{F4C4E0D8-A777-4D3D-85AD-389D38C3ABEF}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\Steam.exe
FirewallRules: [{577FD565-1834-4142-B5B7-5CFE980BC9FF}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Super Street Fighter IV - Arcade Edition\SSFIV.exe
FirewallRules: [{FCDAD109-E549-45E6-A7CB-DE21061DD906}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Super Street Fighter IV - Arcade Edition\SSFIV.exe
FirewallRules: [{0C25F58E-8153-4D7C-818D-CB663A1FC299}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\The Witcher Enhanced Edition\System\witcher.exe
FirewallRules: [{7DFE7A8C-9C3F-40F2-99AF-9B825BCB665F}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\The Witcher Enhanced Edition\System\witcher.exe
FirewallRules: [{5495470A-5ECF-4869-A4D7-1640D37A7D61}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\The Witcher Enhanced Edition\System\djinni!.exe
FirewallRules: [{ED80505A-4856-415B-82CF-5AA689BD217B}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\The Witcher Enhanced Edition\System\djinni!.exe
FirewallRules: [{10387F8A-E3B4-485A-9038-01562E9E6C58}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe
FirewallRules: [{929E9347-5E7E-4F59-969E-5CC3D59413AD}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe
FirewallRules: [{5965F941-6BFE-498D-A142-B8E8875AE10A}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{591590DF-873F-4FA0-9F23-7161E4A425D7}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{85B375E9-9E96-4469-B133-728A56FB7D3B}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\bin\steamwebhelper.exe
FirewallRules: [{3876BEB2-3201-4841-BAF5-6DC9559093B9}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\bin\steamwebhelper.exe
FirewallRules: [{13889963-7D14-4B72-9A86-7724E5EFBE39}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Skyrim\SkyrimLauncher.exe
FirewallRules: [{12C75725-21BA-4E23-8126-EB77ABB0CBA3}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Skyrim\SkyrimLauncher.exe
FirewallRules: [{0AFDA5B0-2370-4CB3-BE0E-21AC2CCA7CD0}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Morrowind\Morrowind Launcher.exe
FirewallRules: [{2E3FB88F-A3B5-4406-9F90-701661CDFB49}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Morrowind\Morrowind Launcher.exe
FirewallRules: [TCP Query User{4C007F3D-227E-4F72-931B-59E8BEBAE690}C:\users\eric\desktop\old files\starcraft ii\versions\base38996\sc2_x64.exe] => (Allow) C:\users\eric\desktop\old files\starcraft ii\versions\base38996\sc2_x64.exe
FirewallRules: [UDP Query User{0B90AA83-1073-4097-A6A4-677143F75747}C:\users\eric\desktop\old files\starcraft ii\versions\base38996\sc2_x64.exe] => (Allow) C:\users\eric\desktop\old files\starcraft ii\versions\base38996\sc2_x64.exe
FirewallRules: [{8E5F51E6-1428-4402-BC6C-5D76162B8A54}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\X-COM Terror from the Deep\runme.exe
FirewallRules: [{F0F8BB26-6B69-4E82-B053-FB3BFF8834F5}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\X-COM Terror from the Deep\runme.exe
FirewallRules: [{780A1557-61A9-422E-BB95-A50A6155AA6B}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\X-COM Terror from the Deep\TFD\Terror From the Deep_patched.exe
FirewallRules: [{191D984F-4595-4023-A3C4-068FE7345E5E}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\X-COM Terror from the Deep\TFD\Terror From the Deep_patched.exe
FirewallRules: [TCP Query User{CBA4ED14-3262-4798-B84D-2CEDD8E62375}C:\users\eric\desktop\medivia online\medivia_d3d.exe] => (Allow) C:\users\eric\desktop\medivia online\medivia_d3d.exe
FirewallRules: [UDP Query User{DF6001F2-17E6-4BB6-AFCF-EA2287D35507}C:\users\eric\desktop\medivia online\medivia_d3d.exe] => (Allow) C:\users\eric\desktop\medivia online\medivia_d3d.exe
FirewallRules: [{ECBD9C1D-F332-4D74-AD4C-1065907C8036}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Oblivion\OblivionLauncher.exe
FirewallRules: [{DD591ED3-5EF3-4ACD-9FDB-742E74CABDC1}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Oblivion\OblivionLauncher.exe
FirewallRules: [{24C08FEB-670D-4D36-A621-707DD00D2707}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\FINAL FANTASY V\FFV_Launcher.exe
FirewallRules: [{58EC7208-C3EE-4B13-9BD3-5FE23E5A6F16}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\FINAL FANTASY V\FFV_Launcher.exe
FirewallRules: [TCP Query User{9F0D91AD-707F-4585-8BF0-B9112020B53E}C:\users\eric\desktop\old files\winamp\winamp.exe] => (Allow) C:\users\eric\desktop\old files\winamp\winamp.exe
FirewallRules: [UDP Query User{4B362B00-B5B8-4915-8885-27B2B78DE61E}C:\users\eric\desktop\old files\winamp\winamp.exe] => (Allow) C:\users\eric\desktop\old files\winamp\winamp.exe
FirewallRules: [TCP Query User{6582D8FA-92E4-40EB-8AA4-BF93439E8930}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [UDP Query User{BA705E41-4438-4861-88B2-9B45CB8352D8}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [{3437D618-1F5E-4BD4-95AD-87E03462FC28}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\RPGVXAce\RPGVXAce.exe
FirewallRules: [{A0475A60-5C38-4CBA-85EE-55AD863411F5}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\RPGVXAce\RPGVXAce.exe
FirewallRules: [{8BBF28FA-9B35-428E-A632-663916E81F2C}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{5DDBAA29-D712-4BDC-A31A-23890220E0CF}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{67AFA6D1-4A74-4840-A7D9-5F4526861275}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{85844517-ECA4-426F-B9AD-B98F0BC8CD39}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [{BEA60B32-9A45-40F2-9FE6-3826476FEDB4}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [{CDF5781A-1C5A-40E6-A27C-85D7960985FD}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Doom 3\Doom3.exe
FirewallRules: [{2867AB1D-4172-4610-864B-F155AADBA328}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Doom 3\Doom3.exe
FirewallRules: [{EEFA45D5-4395-4960-BBFB-4C0935CD67A9}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Half-Life 2\hl2.exe
FirewallRules: [{637D67CE-D040-49D8-A8A4-A6122B7F48BD}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Half-Life 2\hl2.exe
FirewallRules: [{ABB3B0EA-12E4-4626-8CBB-7B5C7F4D804E}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Crusader Kings II\CK2game.exe
FirewallRules: [{9D12B412-8452-4F52-A6AC-B12338A62FAE}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Crusader Kings II\CK2game.exe
==================== Restore Points =========================
==================== Faulty Device Manager Devices =============
Name: VirtualBox Host-Only Ethernet Adapter
Description: VirtualBox Host-Only Ethernet Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Oracle Corporation
Service: VBoxNetAdp
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: PdaNet Broadband Adapter
Description: PdaNet Broadband Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: June Fabrics Technology Inc.
Service: pneteth
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Qualcomm Atheros AR9485 802.11b|g|n WiFi Adapter
Description: Qualcomm Atheros AR9485 802.11b/g/n WiFi Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros Communications Inc.
Service: athr
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (01/22/2016 06:20:19 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-QPFE2F8)
Description: Activation of app Microsoft.Getstarted_2.6.12.0_x64__8wekyb3d8bbwe:App.AppX7mv0s3r0wanj0n66dy6vax24ps6avzvz.mca failed with error: -2144927149 See the Microsoft-Windows-TWinUI/Operational log for additional information.
Error: (01/22/2016 05:15:26 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: ShellExperienceHost.exe, version: 10.0.10240.16515, time stamp: 0x55fa599a
Faulting module name: Windows.UI.Xaml.dll, version: 10.0.10240.16548, time stamp: 0x56133a14
Exception code: 0xc000027b
Fault offset: 0x00000000004aee7f
Faulting process id: 0xf68
Faulting application start time: 0xShellExperienceHost.exe0
Faulting application path: ShellExperienceHost.exe1
Faulting module path: ShellExperienceHost.exe2
Report Id: ShellExperienceHost.exe3
Faulting package full name: ShellExperienceHost.exe4
Faulting package-relative application ID: ShellExperienceHost.exe5
Error: (01/22/2016 05:15:22 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: SystemSettingsBroker.exe, version: 10.0.10240.16384, time stamp: 0x559f39c2
Faulting module name: NetworkMobileSettings.dll, version: 10.0.10240.16515, time stamp: 0x55fa5840
Exception code: 0xc0000005
Fault offset: 0x00000000000a2472
Faulting process id: 0x1f9c
Faulting application start time: 0xSystemSettingsBroker.exe0
Faulting application path: SystemSettingsBroker.exe1
Faulting module path: SystemSettingsBroker.exe2
Report Id: SystemSettingsBroker.exe3
Faulting package full name: SystemSettingsBroker.exe4
Faulting package-relative application ID: SystemSettingsBroker.exe5
Error: (01/21/2016 08:38:56 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Failed to create restore point (Process = C:\Windows\system32\srtasks.exe ExecuteScheduledSPPCreation; Description = Scheduled Checkpoint; Error = 0x80070422).
Error: (01/21/2016 11:05:02 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program wmplayer.exe version 12.0.10240.16384 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: 17c0
Start Time: 01d1545d62bab9d2
Termination Time: 39
Application Path: C:\Program Files (x86)\Windows Media Player\wmplayer.exe
Report Id: b629be81-c058-11e5-9c13-cf1d2bbe1bd9
Faulting package full name:
Faulting package-relative application ID:
Error: (01/21/2016 09:31:22 AM) (Source: ESENT) (EventID: 490) (User: )
Description: SettingSyncHost (4924) An attempt to open the file "C:\Windows\system32\edb.chk" for read / write access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).
Error: (01/21/2016 09:31:12 AM) (Source: ESENT) (EventID: 454) (User: )
Description: SettingSyncHost (4924) Database recovery/restore failed with unexpected error -1032.
Error: (01/21/2016 09:31:12 AM) (Source: ESENT) (EventID: 490) (User: )
Description: SettingSyncHost (4924) An attempt to open the file "C:\Windows\system32\edb.log" for read / write access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).
Error: (01/21/2016 09:31:02 AM) (Source: ESENT) (EventID: 439) (User: )
Description: SettingSyncHost (4924) Unable to write a shadowed header for file C:\Windows\system32\edb.chk. Error -1032.
Error: (01/21/2016 09:31:02 AM) (Source: ESENT) (EventID: 490) (User: )
Description: SettingSyncHost (4924) An attempt to open the file "C:\Windows\system32\edb.chk" for read / write access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).
System errors:
=============
Error: (01/22/2016 06:34:50 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC}
Error: (01/22/2016 06:32:50 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (01/22/2016 06:32:50 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (01/22/2016 06:32:50 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC}
Error: (01/22/2016 06:32:42 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (01/22/2016 06:32:42 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (01/22/2016 06:32:42 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC}
Error: (01/22/2016 06:31:33 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (01/22/2016 06:31:33 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (01/22/2016 06:31:33 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC}
==================== Memory info ===========================
Processor: AMD A6-5200 APU with Radeon(TM) HD Graphics
Percentage of memory in use: 23%
Total physical RAM: 5600.36 MB
Available physical RAM: 4290.93 MB
Total Virtual: 6496.36 MB
Available Virtual: 5353.46 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:297.54 GB) (Free:38.72 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:0.44 GB) (Free:0.14 GB) NTFS
Drive f: () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 91D08757)
Partition 1: (Not Active) - (Size=450 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=99 MB) - (Type=0C)
Partition 3: (Active) - (Size=297.5 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version:18-01-2016
Ran by Eric (2016-01-22 06:32:49)
Running from C:\Users\Eric\Desktop
Windows 10 Home (X64) (2015-09-17 02:53:10)
Boot Mode: Safe Mode (with Networking)
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1308616899-3891445292-2732958701-500 - Administrator - Disabled)
ASPNET (S-1-5-21-1308616899-3891445292-2732958701-1006 - Limited - Enabled)
DefaultAccount (S-1-5-21-1308616899-3891445292-2732958701-503 - Limited - Disabled)
Eric (S-1-5-21-1308616899-3891445292-2732958701-1001 - Administrator - Enabled) => C:\Users\Eric
Guest (S-1-5-21-1308616899-3891445292-2732958701-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-1308616899-3891445292-2732958701-1005 - Limited - Enabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 15.14 (x64 edition) (HKLM\...\{23170F69-40C1-2702-1514-000001000000}) (Version: 15.14.00.0 - Igor Pavlov)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.4.1.181 - Adobe Systems Incorporated)
Adobe Photoshop CC 2015 (HKLM-x32\...\{793C2BF7-A4FE-4608-91C9-9282C5801C21}) (Version: 16.1.1 - Adobe Systems Incorporated)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Belarc Advisor 8.5a (HKLM-x32\...\Belarc Advisor) (Version: 8.5.1.0 - Belarc Inc.)
BlitzMax1.50 (HKLM-x32\...\BlitzMax_is1) (Version: - )
BlitzPlus Demo (HKLM-x32\...\BlitzPlus Demo 1.43_is1) (Version: - Blitz Research Ltd)
CCleaner (HKLM\...\CCleaner) (Version: 5.10 - Piriform)
Chipamp (HKLM-x32\...\Chipamp) (Version: 1.1 - OverClocked ReMix)
Crusader Kings II (HKLM-x32\...\Steam App 203770) (Version: - Paradox Development Studio)
CyberLink YouCam 7 (HKLM-x32\...\{0078CD4D-B146-4D77-8CF0-268B36C1A3EC}) (Version: 7.0.0824.0 - CyberLink Corp.)
DOOM 3 (HKLM-x32\...\Steam App 9050) (Version: - id Software)
DOOM II: Hell on Earth (HKLM-x32\...\Steam App 2300) (Version: - id Software)
Fallout 3 (HKLM-x32\...\{974C4B12-4D02-4879-85E0-61C95CC63E9E}) (Version: 1.00.0000 - Bethesda Softworks)
FINAL FANTASY V (HKLM-x32\...\Steam App 382890) (Version: - SQUARE ENIX)
Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.106 - Google Inc.)
Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden
Greenshot 1.2.6.12 (HKLM\...\Greenshot_is1) (Version: 1.2.6.12 - Greenshot)
HDD Raw Copy Tool v1.10 (HKLM-x32\...\HDD Raw Copy Tool_is1) (Version: - HDDGURU)
HP Support Solutions Framework (HKLM-x32\...\{F6A11738-3EE4-4573-AEA5-6CD5D491C167}) (Version: 12.0.30.219 - Hewlett-Packard Company)
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
iolo technologies' System Mechanic (HKLM-x32\...\{55FD1D5A-7AEF-4DA3-8FAF-A71B2A52FFC7}_is1) (Version: 15.0.1 - iolo technologies, LLC)
Java 8 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218060F0}) (Version: 8.0.600.27 - Oracle Corporation)
Malwarebytes Anti-Malware version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{929CE49F-1CA7-4CF3-A9A1-6D757443C63F}) (Version: 1.2.0241 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft)
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.61.1 - Black Tree Gaming)
Oracle VM VirtualBox 5.0.12 (HKLM\...\{6F93731D-89E1-4A8F-BDA9-D104860DDB02}) (Version: 5.0.12 - Oracle Corporation)
PdaNet+ for Android 4.18 (HKLM-x32\...\PdaNet_is1) (Version: - June Fabrics Technology Inc)
PowerISO (HKLM-x32\...\PowerISO) (Version: 6.4 - Power Software Ltd)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7548 - Realtek Semiconductor Corp.)
Realtek PCIE Card Reader (HKLM-x32\...\{0D61A55C-3ADC-409F-BF5B-A1766D1F5944}) (Version: 6.2.9200.29053 - Realtek Semiconductor Corp.)
RPG Maker VX Ace (HKLM-x32\...\Steam App 220700) (Version: - KADOKAWA)
Skyrim Script Extender (SKSE) (HKLM-x32\...\Steam App 365720) (Version: - The SKSE Team)
StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.12.95 - Synaptics Incorporated)
System Requirements Lab Detection (HKLM-x32\...\{A54DA9C6-696A-4A95-BAB5-C7EA94849EDD}) (Version: 6.1.6.0 - Husdawg, LLC)
TeamSpeak 3 Client (HKU\S-1-5-21-1308616899-3891445292-2732958701-1001\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH)
The Elder Scrolls III: Morrowind (HKLM-x32\...\Steam App 22320) (Version: - Bethesda Game Studios®)
The Elder Scrolls IV: Oblivion (HKLM-x32\...\Steam App 22330) (Version: - Bethesda Game Studios)
The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios)
The Witcher: Enhanced Edition (HKLM-x32\...\Steam App 20900) (Version: - CD PROJEKT RED)
Vuze (HKLM\...\8461-7759-5462-8226) (Version: 5.6.2.0 - Azureus Software, Inc.)
WinRAR 5.30 beta 4 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.30.4 - win.rar GmbH)
World of Warcraft Classic (HKU\S-1-5-21-1308616899-3891445292-2732958701-1001\...\{D55ED80F-FAFD-40E1-99FC-89AF8614A9B5}_is1) (Version: 1.12.1.5875 - Blizzard Entertainment)
WTFast 3.5 (HKLM-x32\...\{12B4121D-5221-4AFC-9EDC-63B0CA139856}_is1) (Version: 3.5.9.511 - Initex & AAA Internet Publishing)
X-Mouse Button Control 2.11.1 (HKLM-x32\...\X-Mouse Button Control) (Version: 2.11.1 - Highresolution Enterprises)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1308616899-3891445292-2732958701-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-C84E721A499B}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => No File
CustomCLSID: HKU\S-1-5-21-1308616899-3891445292-2732958701-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Eric\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1308616899-3891445292-2732958701-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {1272E32F-B35C-40D7-A5C2-C0CF5BBBA5C3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-16] (Google Inc.)
Task: {170F481F-E9D9-4D0E-B6E0-BEBCD3B3ED49} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2016-01-16] (Microsoft Corporation)
Task: {1A7112BB-85BB-4A32-A950-C18FBF23F279} - System32\Tasks\{D92AEBB4-729A-48D6-9E67-2B577E9BF088} => pcalua.exe -a C:\Users\Eric\Desktop\ScpServer\bin\ScpService.exe -d C:\Users\Eric\Desktop\ScpServer\bin
Task: {1EF3ECC9-4FC5-43FC-8E50-4BC8878EE5F4} - System32\Tasks\iolo Process Governor => C:\Program Files (x86)\iolo\System Mechanic\iologovernor64.exe [2015-12-09] (iolo technologies, LLC)
Task: {25C28910-6BE7-477F-9CBD-611260B85583} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-QPFE2F8-Eric => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-10-30] (Adobe Systems Incorporated)
Task: {2E56ED85-709A-4F2D-92CD-7ADDD4D45DD0} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-09-16] (Piriform Ltd)
Task: {3A13B395-C337-41F0-A843-590857A2F031} - System32\Tasks\RtHDVBg => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-11-29] (Realtek Semiconductor)
Task: {3A246D8F-175F-429B-8535-AB303C904F8B} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-ericdm92@hotmail.com => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-10-30] (Adobe Systems Incorporated)
Task: {4B4F66F5-A7F1-49A6-8830-B96B5F8CA8C1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2015-09-28] (Hewlett-Packard)
Task: {571D2801-CA4D-478C-B32F-B31A878A20A1} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-09-16] (Synaptics Incorporated)
Task: {6E058816-4997-4EEA-B685-96190FC7A2B7} - System32\Tasks\{EC1EAB97-0BA1-418C-B43B-BB4B8858E2F8} => pcalua.exe -a C:\Users\Eric\Documents\ScpServer\bin\ScpService.exe -d C:\Users\Eric\Documents\ScpServer\bin
Task: {A20B2CAE-96B0-4388-B8C9-A8AC43E1FEAA} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto
Task: {D5D8EE54-0825-47A8-BEF4-570AC0D7A7F2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-16] (Google Inc.)
Task: {FC7D98AE-A246-4254-934D-3D2835A7EBFC} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-11-29] (Realtek Semiconductor)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2015-09-17 09:48 - 2015-07-14 21:04 - 00032768 _____ () C:\Windows\SYSTEM32\licensemanagerapi.dll
2015-10-01 04:36 - 2015-09-17 01:48 - 02494712 _____ () C:\Windows\system32\CoreUIComponents.dll
2015-10-01 04:36 - 2015-09-17 01:48 - 02494712 _____ () C:\Windows\System32\CoreUIComponents.dll
2015-11-14 04:23 - 2015-11-14 04:23 - 00553120 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll
2015-10-01 04:36 - 2015-09-17 00:48 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-12-08 14:13 - 2015-11-24 23:20 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-12-08 14:13 - 2015-11-24 23:17 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-12-08 14:13 - 2015-11-24 23:17 - 01808384 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-10-01 04:36 - 2015-09-17 00:43 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ioloSystemService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ioloSystemService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2"
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-07-10 06:04 - 2015-07-10 06:02 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1308616899-3891445292-2732958701-1001\Control Panel\Desktop\\Wallpaper -> c:\users\eric\appdata\local\microsoft\windows\themes\roamedthemefiles\desktopbackground\hp_metro_sky.jpg
DNS Servers: Media is not connected to internet.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\StartupFolder: => "Mediatek Wireless Utility.lnk"
HKLM\...\StartupApproved\StartupFolder: => "Ralink Wireless Utility.lnk"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "XboxStat"
HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
HKLM\...\StartupApproved\Run32: => "YouCam Service7"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-1308616899-3891445292-2732958701-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1308616899-3891445292-2732958701-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-1308616899-3891445292-2732958701-1001\...\StartupApproved\Run: => "WTFast Tray"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{56B084E4-C1AA-4A40-918C-335D942F3CFC}] => (Allow) C:\Program Files\Vuze\Azureus.exe
FirewallRules: [{ECFFF7B6-DEA2-45F9-9E8A-4D298B462D2D}] => (Allow) C:\Program Files\Vuze\Azureus.exe
FirewallRules: [{C528CF18-FC59-4AC7-ABAA-AD19A7F255F8}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{3CA328CD-3D09-413E-9615-56E839368116}C:\program files (x86)\cf3b5\ps3.proxyserver\ps3.proxyserver.gui.exe] => (Allow) C:\program files (x86)\cf3b5\ps3.proxyserver\ps3.proxyserver.gui.exe
FirewallRules: [UDP Query User{23077008-5A48-4FC2-82A2-8CE7BDFC9134}C:\program files (x86)\cf3b5\ps3.proxyserver\ps3.proxyserver.gui.exe] => (Allow) C:\program files (x86)\cf3b5\ps3.proxyserver\ps3.proxyserver.gui.exe
FirewallRules: [{4EF50AB9-A35A-4516-ADA8-9CD99D9AEE2D}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\Steam.exe
FirewallRules: [{F4C4E0D8-A777-4D3D-85AD-389D38C3ABEF}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\Steam.exe
FirewallRules: [{577FD565-1834-4142-B5B7-5CFE980BC9FF}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Super Street Fighter IV - Arcade Edition\SSFIV.exe
FirewallRules: [{FCDAD109-E549-45E6-A7CB-DE21061DD906}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Super Street Fighter IV - Arcade Edition\SSFIV.exe
FirewallRules: [{0C25F58E-8153-4D7C-818D-CB663A1FC299}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\The Witcher Enhanced Edition\System\witcher.exe
FirewallRules: [{7DFE7A8C-9C3F-40F2-99AF-9B825BCB665F}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\The Witcher Enhanced Edition\System\witcher.exe
FirewallRules: [{5495470A-5ECF-4869-A4D7-1640D37A7D61}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\The Witcher Enhanced Edition\System\djinni!.exe
FirewallRules: [{ED80505A-4856-415B-82CF-5AA689BD217B}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\The Witcher Enhanced Edition\System\djinni!.exe
FirewallRules: [{10387F8A-E3B4-485A-9038-01562E9E6C58}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe
FirewallRules: [{929E9347-5E7E-4F59-969E-5CC3D59413AD}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\The Witcher Enhanced Edition\Digital Comic\DigitalComic.exe
FirewallRules: [{5965F941-6BFE-498D-A142-B8E8875AE10A}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{591590DF-873F-4FA0-9F23-7161E4A425D7}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{85B375E9-9E96-4469-B133-728A56FB7D3B}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\bin\steamwebhelper.exe
FirewallRules: [{3876BEB2-3201-4841-BAF5-6DC9559093B9}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\bin\steamwebhelper.exe
FirewallRules: [{13889963-7D14-4B72-9A86-7724E5EFBE39}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Skyrim\SkyrimLauncher.exe
FirewallRules: [{12C75725-21BA-4E23-8126-EB77ABB0CBA3}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Skyrim\SkyrimLauncher.exe
FirewallRules: [{0AFDA5B0-2370-4CB3-BE0E-21AC2CCA7CD0}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Morrowind\Morrowind Launcher.exe
FirewallRules: [{2E3FB88F-A3B5-4406-9F90-701661CDFB49}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Morrowind\Morrowind Launcher.exe
FirewallRules: [TCP Query User{4C007F3D-227E-4F72-931B-59E8BEBAE690}C:\users\eric\desktop\old files\starcraft ii\versions\base38996\sc2_x64.exe] => (Allow) C:\users\eric\desktop\old files\starcraft ii\versions\base38996\sc2_x64.exe
FirewallRules: [UDP Query User{0B90AA83-1073-4097-A6A4-677143F75747}C:\users\eric\desktop\old files\starcraft ii\versions\base38996\sc2_x64.exe] => (Allow) C:\users\eric\desktop\old files\starcraft ii\versions\base38996\sc2_x64.exe
FirewallRules: [{8E5F51E6-1428-4402-BC6C-5D76162B8A54}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\X-COM Terror from the Deep\runme.exe
FirewallRules: [{F0F8BB26-6B69-4E82-B053-FB3BFF8834F5}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\X-COM Terror from the Deep\runme.exe
FirewallRules: [{780A1557-61A9-422E-BB95-A50A6155AA6B}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\X-COM Terror from the Deep\TFD\Terror From the Deep_patched.exe
FirewallRules: [{191D984F-4595-4023-A3C4-068FE7345E5E}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\X-COM Terror from the Deep\TFD\Terror From the Deep_patched.exe
FirewallRules: [TCP Query User{CBA4ED14-3262-4798-B84D-2CEDD8E62375}C:\users\eric\desktop\medivia online\medivia_d3d.exe] => (Allow) C:\users\eric\desktop\medivia online\medivia_d3d.exe
FirewallRules: [UDP Query User{DF6001F2-17E6-4BB6-AFCF-EA2287D35507}C:\users\eric\desktop\medivia online\medivia_d3d.exe] => (Allow) C:\users\eric\desktop\medivia online\medivia_d3d.exe
FirewallRules: [{ECBD9C1D-F332-4D74-AD4C-1065907C8036}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Oblivion\OblivionLauncher.exe
FirewallRules: [{DD591ED3-5EF3-4ACD-9FDB-742E74CABDC1}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Oblivion\OblivionLauncher.exe
FirewallRules: [{24C08FEB-670D-4D36-A621-707DD00D2707}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\FINAL FANTASY V\FFV_Launcher.exe
FirewallRules: [{58EC7208-C3EE-4B13-9BD3-5FE23E5A6F16}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\FINAL FANTASY V\FFV_Launcher.exe
FirewallRules: [TCP Query User{9F0D91AD-707F-4585-8BF0-B9112020B53E}C:\users\eric\desktop\old files\winamp\winamp.exe] => (Allow) C:\users\eric\desktop\old files\winamp\winamp.exe
FirewallRules: [UDP Query User{4B362B00-B5B8-4915-8885-27B2B78DE61E}C:\users\eric\desktop\old files\winamp\winamp.exe] => (Allow) C:\users\eric\desktop\old files\winamp\winamp.exe
FirewallRules: [TCP Query User{6582D8FA-92E4-40EB-8AA4-BF93439E8930}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [UDP Query User{BA705E41-4438-4861-88B2-9B45CB8352D8}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [{3437D618-1F5E-4BD4-95AD-87E03462FC28}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\RPGVXAce\RPGVXAce.exe
FirewallRules: [{A0475A60-5C38-4CBA-85EE-55AD863411F5}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\RPGVXAce\RPGVXAce.exe
FirewallRules: [{8BBF28FA-9B35-428E-A632-663916E81F2C}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{5DDBAA29-D712-4BDC-A31A-23890220E0CF}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{67AFA6D1-4A74-4840-A7D9-5F4526861275}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{85844517-ECA4-426F-B9AD-B98F0BC8CD39}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [{BEA60B32-9A45-40F2-9FE6-3826476FEDB4}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [{CDF5781A-1C5A-40E6-A27C-85D7960985FD}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Doom 3\Doom3.exe
FirewallRules: [{2867AB1D-4172-4610-864B-F155AADBA328}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Doom 3\Doom3.exe
FirewallRules: [{EEFA45D5-4395-4960-BBFB-4C0935CD67A9}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Half-Life 2\hl2.exe
FirewallRules: [{637D67CE-D040-49D8-A8A4-A6122B7F48BD}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Half-Life 2\hl2.exe
FirewallRules: [{ABB3B0EA-12E4-4626-8CBB-7B5C7F4D804E}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Crusader Kings II\CK2game.exe
FirewallRules: [{9D12B412-8452-4F52-A6AC-B12338A62FAE}] => (Allow) C:\Users\Eric\Desktop\old files\Steam\steamapps\common\Crusader Kings II\CK2game.exe
==================== Restore Points =========================
==================== Faulty Device Manager Devices =============
Name: VirtualBox Host-Only Ethernet Adapter
Description: VirtualBox Host-Only Ethernet Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Oracle Corporation
Service: VBoxNetAdp
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: PdaNet Broadband Adapter
Description: PdaNet Broadband Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: June Fabrics Technology Inc.
Service: pneteth
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Qualcomm Atheros AR9485 802.11b|g|n WiFi Adapter
Description: Qualcomm Atheros AR9485 802.11b/g/n WiFi Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros Communications Inc.
Service: athr
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (01/22/2016 06:20:19 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-QPFE2F8)
Description: Activation of app Microsoft.Getstarted_2.6.12.0_x64__8wekyb3d8bbwe:App.AppX7mv0s3r0wanj0n66dy6vax24ps6avzvz.mca failed with error: -2144927149 See the Microsoft-Windows-TWinUI/Operational log for additional information.
Error: (01/22/2016 05:15:26 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: ShellExperienceHost.exe, version: 10.0.10240.16515, time stamp: 0x55fa599a
Faulting module name: Windows.UI.Xaml.dll, version: 10.0.10240.16548, time stamp: 0x56133a14
Exception code: 0xc000027b
Fault offset: 0x00000000004aee7f
Faulting process id: 0xf68
Faulting application start time: 0xShellExperienceHost.exe0
Faulting application path: ShellExperienceHost.exe1
Faulting module path: ShellExperienceHost.exe2
Report Id: ShellExperienceHost.exe3
Faulting package full name: ShellExperienceHost.exe4
Faulting package-relative application ID: ShellExperienceHost.exe5
Error: (01/22/2016 05:15:22 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: SystemSettingsBroker.exe, version: 10.0.10240.16384, time stamp: 0x559f39c2
Faulting module name: NetworkMobileSettings.dll, version: 10.0.10240.16515, time stamp: 0x55fa5840
Exception code: 0xc0000005
Fault offset: 0x00000000000a2472
Faulting process id: 0x1f9c
Faulting application start time: 0xSystemSettingsBroker.exe0
Faulting application path: SystemSettingsBroker.exe1
Faulting module path: SystemSettingsBroker.exe2
Report Id: SystemSettingsBroker.exe3
Faulting package full name: SystemSettingsBroker.exe4
Faulting package-relative application ID: SystemSettingsBroker.exe5
Error: (01/21/2016 08:38:56 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Failed to create restore point (Process = C:\Windows\system32\srtasks.exe ExecuteScheduledSPPCreation; Description = Scheduled Checkpoint; Error = 0x80070422).
Error: (01/21/2016 11:05:02 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program wmplayer.exe version 12.0.10240.16384 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: 17c0
Start Time: 01d1545d62bab9d2
Termination Time: 39
Application Path: C:\Program Files (x86)\Windows Media Player\wmplayer.exe
Report Id: b629be81-c058-11e5-9c13-cf1d2bbe1bd9
Faulting package full name:
Faulting package-relative application ID:
Error: (01/21/2016 09:31:22 AM) (Source: ESENT) (EventID: 490) (User: )
Description: SettingSyncHost (4924) An attempt to open the file "C:\Windows\system32\edb.chk" for read / write access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).
Error: (01/21/2016 09:31:12 AM) (Source: ESENT) (EventID: 454) (User: )
Description: SettingSyncHost (4924) Database recovery/restore failed with unexpected error -1032.
Error: (01/21/2016 09:31:12 AM) (Source: ESENT) (EventID: 490) (User: )
Description: SettingSyncHost (4924) An attempt to open the file "C:\Windows\system32\edb.log" for read / write access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).
Error: (01/21/2016 09:31:02 AM) (Source: ESENT) (EventID: 439) (User: )
Description: SettingSyncHost (4924) Unable to write a shadowed header for file C:\Windows\system32\edb.chk. Error -1032.
Error: (01/21/2016 09:31:02 AM) (Source: ESENT) (EventID: 490) (User: )
Description: SettingSyncHost (4924) An attempt to open the file "C:\Windows\system32\edb.chk" for read / write access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).
System errors:
=============
Error: (01/22/2016 06:34:50 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC}
Error: (01/22/2016 06:32:50 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (01/22/2016 06:32:50 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (01/22/2016 06:32:50 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC}
Error: (01/22/2016 06:32:42 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (01/22/2016 06:32:42 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (01/22/2016 06:32:42 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC}
Error: (01/22/2016 06:31:33 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (01/22/2016 06:31:33 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (01/22/2016 06:31:33 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-QPFE2F8)
Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC}
==================== Memory info ===========================
Processor: AMD A6-5200 APU with Radeon(TM) HD Graphics
Percentage of memory in use: 23%
Total physical RAM: 5600.36 MB
Available physical RAM: 4290.93 MB
Total Virtual: 6496.36 MB
Available Virtual: 5353.46 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:297.54 GB) (Free:38.72 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:0.44 GB) (Free:0.14 GB) NTFS
Drive f: () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 91D08757)
Partition 1: (Not Active) - (Size=450 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=99 MB) - (Type=0C)
Partition 3: (Active) - (Size=297.5 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================