Jump to content

kidlat141

Members
  • Posts

    2
  • Joined

  • Last visited

Reputation

0 Neutral
  1. Thank you for the hasty reply. Here's the requested log files **************************************************************************************************** Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 22-05-2015 01Ran by KidlatDESKTOP (administrator) on KIDLATPC on 23-05-2015 10:10:42Running from C:\Users\KidlatDESKTOP\Downloads\ProgramsLoaded Profiles: KidlatDESKTOP (Available Profiles: KidlatDESKTOP)Platform: Windows 7 Ultimate (X64) OS Language: English (United States)Internet Explorer Version 8 (Default browser: Chrome)Boot Mode: NormalTutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe(AMD) C:\Windows\System32\atieclxx.exe(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe(Spotify Ltd) C:\Users\KidlatDESKTOP\AppData\Roaming\Spotify\SpotifyWebHelper.exe(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe(Power Software Ltd) C:\Program Files (x86)\PowerISO\PWRISOVM.EXE(Internet Download Manager, Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMIntegrator64.exe(Dropbox, Inc.) C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\Dropbox.exe(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office15\MSOSYNC.EXE(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe(Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM-x32\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13650648 2013-08-21] (Realtek Semiconductor)HKLM-x32\...\Run: [startCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-09-01] (Advanced Micro Devices, Inc.)HKLM-x32\...\Run: [Adobe ARM] => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [366904 2014-10-08] (Power Software Ltd)HKLM-x32\...\Run: [winqud32] => C:\Windows\SysWOW64\winqud32.exeHKU\S-1-5-21-2140561562-4167766111-1754031696-1000\...\Run: [skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [31280256 2015-04-17] (Skype Technologies S.A.)HKU\S-1-5-21-2140561562-4167766111-1754031696-1000\...\Run: [spotify Web Helper] => C:\Users\KidlatDESKTOP\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2020920 2015-05-10] (Spotify Ltd)HKU\S-1-5-21-2140561562-4167766111-1754031696-1000\...\Run: [iDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3890768 2015-03-19] (Tonec Inc.)HKU\S-1-5-21-2140561562-4167766111-1754031696-1000\...\MountPoints2: {6e6e9268-c9c2-11e4-9da8-c1e522afef0a} - E:\setup.exeHKU\S-1-5-21-2140561562-4167766111-1754031696-1000\...\MountPoints2: {bb5f93f8-cae8-11e4-a0dc-b8975aaef412} - E:\AutoRun.exeHKU\S-1-5-21-2140561562-4167766111-1754031696-1000\...\MountPoints2: {bb5f93fe-cae8-11e4-a0dc-b8975aaef412} - E:\AutoRun.exeHKU\S-1-5-21-2140561562-4167766111-1754031696-1000\...\MountPoints2: {d7e63e5e-ca37-11e4-bde9-b8975aaef412} - E:\AutoRun.exeHKU\S-1-5-21-2140561562-4167766111-1754031696-1000\...\MountPoints2: {d7e63e6c-ca37-11e4-bde9-b8975aaef412} - E:\AutoRun.exeHKU\S-1-5-21-2140561562-4167766111-1754031696-1000\...\MountPoints2: {d7e6408d-ca37-11e4-bde9-b8975aaef412} - E:\AutoRun.exeStartup: C:\Users\KidlatDESKTOP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-03-17]ShortcutTarget: Dropbox.lnk -> C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-05] (Dropbox, Inc.)ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-05] (Dropbox, Inc.)ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-05] (Dropbox, Inc.)ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-05] (Dropbox, Inc.)ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-05] (Dropbox, Inc.)ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-05] (Dropbox, Inc.)ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-05] (Dropbox, Inc.)ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-03-05] (Dropbox, Inc.)ShellIconOverlayIdentifiers: [iDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2014-04-21] (Tonec Inc.)CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) ProxyServer: [s-1-5-21-2140561562-4167766111-1754031696-1000] => 127.0.0.1:80HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.comHKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.comHKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.comHKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.comHKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.comHKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.comHKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.comHKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.comSearchScopes: HKU\S-1-5-21-2140561562-4167766111-1754031696-1000 -> DefaultScope {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = SearchScopes: HKU\S-1-5-21-2140561562-4167766111-1754031696-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2140561562-4167766111-1754031696-1000 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = SearchScopes: HKU\S-1-5-21-2140561562-4167766111-1754031696-1000 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2015-02-21] (Internet Download Manager, Tonec Inc.)BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)BHO: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices)BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2015-02-21] (Internet Download Manager, Tonec Inc.)BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll No FileBHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)BHO-x32: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices)BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-14] (Microsoft Corporation)Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-14] (Microsoft Corporation)Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-14] (Microsoft Corporation)Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-14] (Microsoft Corporation)Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txtTcpip\Parameters: [DhcpNameServer] 192.168.33.1StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox:========FF ProfilePath: C:\Users\KidlatDESKTOP\AppData\Roaming\Mozilla\Firefox\Profiles\us32c79h.default-1427800774932FF Homepage: www.google.comFF NetworkProxy: "type", 0FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation)FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2012-09-23] (Adobe Systems Inc.)FF user.js: detected! => C:\Users\KidlatDESKTOP\AppData\Roaming\Mozilla\Firefox\Profiles\us32c79h.default-1427800774932\user.js [2015-04-12]FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2012-10-01] (Microsoft Corporation)FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2012-09-23] (Adobe Systems Inc.)FF HKU\S-1-5-21-2140561562-4167766111-1754031696-1000\...\Firefox\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\KidlatDESKTOP\AppData\Roaming\IDM\idmmzcc5FF Extension: IDM CC - C:\Users\KidlatDESKTOP\AppData\Roaming\IDM\idmmzcc5 [2015-03-19]FF HKU\S-1-5-21-2140561562-4167766111-1754031696-1000\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\KidlatDESKTOP\AppData\Roaming\IDM\idmmzcc5 Chrome: =======CHR Profile: C:\Users\KidlatDESKTOP\AppData\Local\Google\Chrome\User Data\DefaultCHR Extension: (Google Slides) - C:\Users\KidlatDESKTOP\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-15]CHR Extension: (Google Docs) - C:\Users\KidlatDESKTOP\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-15]CHR Extension: (Google Drive) - C:\Users\KidlatDESKTOP\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-15]CHR Extension: (YouTube) - C:\Users\KidlatDESKTOP\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-15]CHR Extension: (Google Search) - C:\Users\KidlatDESKTOP\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-15]CHR Extension: (Google Sheets) - C:\Users\KidlatDESKTOP\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-15]CHR Extension: (Bookmark Manager) - C:\Users\KidlatDESKTOP\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-05-22]CHR Extension: (Chrome Hotword Shared Module) - C:\Users\KidlatDESKTOP\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-15]CHR Extension: (IDM Integration Module) - C:\Users\KidlatDESKTOP\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2015-03-18]CHR Extension: (Google Wallet) - C:\Users\KidlatDESKTOP\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-15]CHR Extension: (Gmail) - C:\Users\KidlatDESKTOP\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-15]CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-03-17]CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-03-17] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-09-01] (Advanced Micro Devices, Inc.) []R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)S2 AdobeARMservice; "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" [X] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59648 2013-11-04] (Advanced Micro Devices)R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [136408 2015-05-23] (Malwarebytes Corporation)S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-04-14] (Malwarebytes Corporation)S3 ALSysIO; \??\C:\Users\KIDLAT~1\AppData\Local\Temp\ALSysIO64.sys [X]S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-05-23 10:10 - 2015-05-23 10:10 - 00000000 ____D () C:\FRST2015-05-23 09:37 - 2015-05-23 09:37 - 00000000 ____D () C:\Users\KidlatDESKTOP\AppData\Roaming\Adobe2015-05-23 09:37 - 2015-05-23 09:37 - 00000000 ____D () C:\Users\KidlatDESKTOP\AppData\Local\Adobe2015-05-23 09:37 - 2015-05-23 09:37 - 00000000 ____D () C:\ProgramData\Adobe2015-05-22 22:20 - 2015-05-22 22:20 - 00000061 _____ () C:\Users\KidlatDESKTOP\Desktop\123121.txt2015-05-22 19:07 - 2015-05-22 20:21 - 00000000 ____D () C:\Users\KidlatDESKTOP\Desktop\font2015-05-22 18:57 - 2015-05-22 20:21 - 00000000 ____D () C:\Users\KidlatDESKTOP\Desktop\logo2015-05-22 18:48 - 2015-05-22 18:48 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe2015-05-17 14:38 - 2015-05-17 14:38 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox2015-05-14 09:29 - 2015-05-20 13:57 - 00000000 ____D () C:\Users\KidlatDESKTOP\Documents\EA Games2015-05-12 18:18 - 2015-05-12 18:18 - 00000869 _____ () C:\Users\Public\Desktop\ .lnk2015-05-12 18:18 - 2015-05-12 18:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID2015-05-12 18:18 - 2015-05-12 18:18 - 00000000 ____D () C:\Program Files\CPUID2015-05-11 19:13 - 2015-05-11 19:13 - 00275032 _____ () C:\Windows\Minidump\051115-12916-01.dmp2015-05-11 18:01 - 2015-05-11 18:01 - 00275032 _____ () C:\Windows\Minidump\051115-14024-01.dmp2015-05-11 04:57 - 2015-02-24 04:17 - 00295552 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe2015-05-09 15:15 - 2015-05-09 15:15 - 00275088 _____ () C:\Windows\Minidump\050915-18486-01.dmp2015-05-09 01:11 - 2015-05-09 01:11 - 00275032 _____ () C:\Windows\Minidump\050915-15756-01.dmp2015-05-07 15:02 - 2015-05-07 15:02 - 00000000 ____D () C:\Users\KidlatDESKTOP\Documents\My Games2015-05-07 15:02 - 2015-05-07 15:02 - 00000000 ____D () C:\ProgramData\RELOADED2015-05-04 22:50 - 2015-05-11 19:13 - 400986835 _____ () C:\Windows\MEMORY.DMP2015-05-04 22:50 - 2015-05-04 22:50 - 00275032 _____ () C:\Windows\Minidump\050415-13899-01.dmp2015-05-01 01:22 - 2015-05-23 09:58 - 00005002 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for KidlatPC-KidlatDESKTOP KidlatPC ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-05-23 10:08 - 2015-03-26 16:26 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys2015-05-23 10:04 - 2009-07-14 12:45 - 00017136 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A02015-05-23 10:04 - 2009-07-14 12:45 - 00017136 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A02015-05-23 10:00 - 2015-03-14 04:48 - 01931336 _____ () C:\Windows\WindowsUpdate.log2015-05-23 09:58 - 2015-03-15 17:28 - 00000000 ____D () C:\Users\KidlatDESKTOP\AppData\Roaming\Skype2015-05-23 09:58 - 2015-03-15 15:36 - 00000898 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job2015-05-23 09:57 - 2015-04-12 10:49 - 00001716 _____ () C:\Windows\Tasks\UWVFQEE.job2015-05-23 09:57 - 2015-04-12 10:49 - 00001366 _____ () C:\Windows\Tasks\OGCM.job2015-05-23 09:57 - 2015-03-17 17:27 - 00000000 ___RD () C:\Users\KidlatDESKTOP\Dropbox2015-05-23 09:57 - 2015-03-17 08:36 - 00000000 ____D () C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox2015-05-23 09:56 - 2009-07-14 13:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT2015-05-23 09:56 - 2009-07-14 12:51 - 00041285 _____ () C:\Windows\setupact.log2015-05-23 09:30 - 2009-07-14 12:45 - 00443696 _____ () C:\Windows\system32\FNTCACHE.DAT2015-05-22 22:53 - 2015-03-15 17:32 - 00000000 ____D () C:\Users\KidlatDESKTOP\AppData\Roaming\DMCache2015-05-22 22:53 - 2015-03-14 08:59 - 00065536 _____ () C:\Windows\system32\spu_storage.bin2015-05-22 20:18 - 2015-03-14 05:01 - 00112320 _____ () C:\Users\KidlatDESKTOP\AppData\Local\GDIPFONTCACHEV1.DAT2015-05-22 19:20 - 2015-03-15 17:32 - 00000000 ____D () C:\Users\KidlatDESKTOP\Downloads\Compressed2015-05-21 08:06 - 2015-03-14 05:44 - 00000000 ____D () C:\Users\KidlatDESKTOP\AppData\Roaming\vlc2015-05-21 00:22 - 2015-03-18 03:48 - 00000000 ____D () C:\Users\KidlatDESKTOP\Desktop\Workshit2015-05-20 18:46 - 2009-07-14 13:13 - 00785302 _____ () C:\Windows\system32\PerfStringBackup.INI2015-05-20 14:06 - 2015-03-15 17:32 - 00000000 ____D () C:\Users\KidlatDESKTOP\Downloads\Video2015-05-20 13:21 - 2015-03-21 06:30 - 00000000 ____D () C:\Users\KidlatDESKTOP\Documents\FIFA 142015-05-20 09:52 - 2015-03-17 18:27 - 00007635 _____ () C:\Users\KidlatDESKTOP\AppData\Local\resmon.resmoncfg2015-05-19 23:29 - 2009-07-14 15:45 - 00000000 ___RD () C:\Users\Public\Recorded TV2015-05-18 09:46 - 2015-03-18 00:00 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service2015-05-17 12:43 - 2015-03-14 04:49 - 00000000 ____D () C:\Users\KidlatDESKTOP\AppData\Local\VirtualStore2015-05-17 11:07 - 2015-03-29 22:09 - 00000000 ____D () C:\Users\KidlatDESKTOP\AppData\Roaming\mIRC2015-05-16 10:21 - 2015-03-14 09:11 - 00131116 _____ () C:\Windows\PFRO.log2015-05-15 15:52 - 2015-03-15 15:36 - 00003894 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA2015-05-15 15:52 - 2015-03-15 15:36 - 00003642 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore2015-05-15 15:52 - 2015-03-15 15:36 - 00000894 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job2015-05-14 09:28 - 2015-03-14 11:07 - 00165067 _____ () C:\Windows\DirectX.log2015-05-13 08:48 - 2015-03-17 17:33 - 00000000 ____D () C:\Users\KidlatDESKTOP\AppData\Local\Spotify2015-05-13 08:48 - 2015-03-17 17:26 - 00000000 ____D () C:\Users\KidlatDESKTOP\AppData\Roaming\Spotify2015-05-12 08:10 - 2015-03-17 17:25 - 00000000 ____D () C:\Users\KidlatDESKTOP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox2015-05-11 19:13 - 2015-03-15 18:55 - 00000000 ____D () C:\Windows\Minidump2015-05-10 16:48 - 2015-03-17 17:33 - 00001831 _____ () C:\Users\KidlatDESKTOP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk2015-05-08 10:46 - 2009-07-14 13:32 - 00000000 ____D () C:\Windows\Performance2015-05-08 10:21 - 2015-03-26 16:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware2015-05-08 10:21 - 2015-03-26 16:24 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware2015-05-07 17:16 - 2009-07-14 13:08 - 00032630 _____ () C:\Windows\Tasks\SCHEDLGU.TXT2015-05-06 23:34 - 2015-04-12 22:30 - 00000000 ____D () C:\Users\KidlatDESKTOP\AppData\Roaming\BitTorrent2015-05-01 12:50 - 2015-03-15 17:27 - 00000000 ____D () C:\ProgramData\Skype2015-04-30 00:23 - 2015-03-15 17:32 - 00000000 ____D () C:\Users\KidlatDESKTOP\AppData\Roaming\IDM ==================== Files in the root of some directories ======= 2015-03-17 18:54 - 2015-03-19 20:57 - 0000627 _____ () C:\Users\KidlatDESKTOP\AppData\Roaming\All CPU MeterV3_Settings.ini2015-03-27 03:14 - 2015-03-27 03:14 - 0004185 _____ () C:\Users\KidlatDESKTOP\AppData\Roaming\OGCM2015-03-27 03:14 - 2015-03-27 03:14 - 0005542 _____ () C:\Users\KidlatDESKTOP\AppData\Roaming\UWVFQEE2015-03-17 18:27 - 2015-05-20 09:52 - 0007635 _____ () C:\Users\KidlatDESKTOP\AppData\Local\resmon.resmoncfg Some files in TEMP:====================C:\Users\KidlatDESKTOP\AppData\Local\Temp\1A7E8B17-25E3-0A11-1F21-E2C207220F23.dllC:\Users\KidlatDESKTOP\AppData\Local\Temp\1A7E8B17-25E3-0A11-1F21-E2C207220F23.exeC:\Users\KidlatDESKTOP\AppData\Local\Temp\A9E8E8E2-E7F7-02CC-05B5-6E4876F780E3.exeC:\Users\KidlatDESKTOP\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpb8_u4n.dllC:\Users\KidlatDESKTOP\AppData\Local\Temp\ebccabfbcacaf.exeC:\Users\KidlatDESKTOP\AppData\Local\Temp\ebccabfbcaceg.exeC:\Users\KidlatDESKTOP\AppData\Local\Temp\genteert.dllC:\Users\KidlatDESKTOP\AppData\Local\Temp\ICReinstall_mp3rocket.exeC:\Users\KidlatDESKTOP\AppData\Local\Temp\KMSPicoCloseAll.exeC:\Users\KidlatDESKTOP\AppData\Local\Temp\mirc741.exeC:\Users\KidlatDESKTOP\AppData\Local\Temp\vlc-2.2.1-win32.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signedC:\Windows\System32\wininit.exe => File is digitally signedC:\Windows\SysWOW64\wininit.exe => File is digitally signedC:\Windows\explorer.exe => File is digitally signedC:\Windows\SysWOW64\explorer.exe => File is digitally signedC:\Windows\System32\svchost.exe => File is digitally signedC:\Windows\SysWOW64\svchost.exe => File is digitally signedC:\Windows\System32\services.exe => File is digitally signedC:\Windows\System32\User32.dll => File is digitally signedC:\Windows\SysWOW64\User32.dll => File is digitally signedC:\Windows\System32\userinit.exe => File is digitally signedC:\Windows\SysWOW64\userinit.exe => File is digitally signedC:\Windows\System32\rpcss.dll => File is digitally signedC:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-05-14 08:42 ==================== End of log ============================ ADDITION.TXT Additional scan result of Farbar Recovery Scan Tool (x64) Version: 22-05-2015 01Ran by KidlatDESKTOP at 2015-05-23 10:11:14Running from C:\Users\KidlatDESKTOP\Downloads\ProgramsBoot Mode: Normal========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2140561562-4167766111-1754031696-500 - Administrator - Disabled)Guest (S-1-5-21-2140561562-4167766111-1754031696-501 - Limited - Disabled)HomeGroupUser$ (S-1-5-21-2140561562-4167766111-1754031696-1003 - Limited - Enabled)KidlatDESKTOP (S-1-5-21-2140561562-4167766111-1754031696-1000 - Administrator - Enabled) => C:\Users\KidlatDESKTOP ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Reader XI MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AB0000000001}) (Version: 11.0.00 - Adobe Systems Incorporated)AMD Catalyst Install Manager (HKLM\...\{57FAC78D-009E-8CC3-8803-44AC8D76E9CA}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)BitTorrent (HKU\S-1-5-21-2140561562-4167766111-1754031696-1000\...\BitTorrent) (Version: 7.9.3.39947 - BitTorrent Inc.)Core Temp version 0.99.8 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 0.99.8 - Arthur Liberman)CPUID CPU-Z 1.72 (HKLM\...\CPUID CPU-Z_is1) (Version: - )Dropbox (HKU\S-1-5-21-2140561562-4167766111-1754031696-1000\...\Dropbox) (Version: 3.4.6 - Dropbox, Inc.)Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.65 - Google Inc.)Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) HiddenGoogle Update Helper (x32 Version: 1.3.27.5 - Google Inc.) HiddenInternet Download Manager (HKLM-x32\...\Internet Download Manager) (Version: - Tonec Inc.)Magic ISO Maker v5.5 (build 0281) (HKLM-x32\...\Magic ISO Maker v5.5 (build 0281)) (Version: - )Malwarebytes Anti-Malware version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation)Microsoft Office Professional Plus 2013 (HKLM-x32\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation)Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)mIRC (HKLM-x32\...\mIRC) (Version: 7.41 - mIRC Co. Ltd.)Mozilla Firefox 38.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 38.0.1 (x86 en-US)) (Version: 38.0.1 - Mozilla)Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 36.0.1 - Mozilla)OEM Application Profile (HKLM-x32\...\{D8866D22-EB42-2A80-6DA2-A0809F8A5810}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)Outils de vérification linguistique 2013 de Microsoft Office - Français (x32 Version: 15.0.4420.1017 - Microsoft Corporation) HiddenPowerISO (HKLM-x32\...\PowerISO) (Version: 6.1 - Power Software Ltd)Ralink RT2870 Wireless LAN Card (HKLM-x32\...\{28DA7D8B-F9A4-4F18-8AA0-551B1E084D0D}) (Version: 1.5.6.0 - Ralink)Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.65.1025.2012 - Realtek)Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7023 - Realtek Semiconductor Corp.)Skype™ 7.4 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.4.102 - Skype Technologies S.A.)Spotify (HKU\S-1-5-21-2140561562-4167766111-1754031696-1000\...\Spotify) (Version: 1.0.4.90.g0b6df40b - Spotify AB)VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-2140561562-4167766111-1754031696-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-2140561562-4167766111-1754031696-1000_Classes\CLSID\{083f5ae0-2b0a-11dd-bd0b-0800200c9a66}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)CustomCLSID: HKU\S-1-5-21-2140561562-4167766111-1754031696-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-2140561562-4167766111-1754031696-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-2140561562-4167766111-1754031696-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-2140561562-4167766111-1754031696-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-2140561562-4167766111-1754031696-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-2140561562-4167766111-1754031696-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-2140561562-4167766111-1754031696-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-2140561562-4167766111-1754031696-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-2140561562-4167766111-1754031696-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ==================== Restore Points ========================= 14-05-2015 09:27:46 Installed DirectX14-05-2015 09:28:35 Installed Microsoft Visual C++ 2005 Redistributable20-05-2015 13:57:28 Removed NVIDIA PhysX v8.10.17 ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 10:34 - 2015-03-19 20:58 - 00001222 ____A C:\Windows\system32\Drivers\etc\hosts128.199.64.201 onhax.org 128.199.64.201 www.onhax.org 128.199.64.201 onhax.com 128.199.64.201 www.onhax.com 128.199.64.201 onhax.in 128.199.64.201 www.onhax.in 128.199.64.201 onhax.info 128.199.64.201 www.onhax.info 128.199.64.201 mhktricks.net 128.199.64.201 www.mhktricks.net ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0BD88F49-3C75-4383-94B9-5DAEAFA2F032} - System32\Tasks\OGCM => C:\Users\KidlatDESKTOP\AppData\Roaming\OGCM.exe <==== ATTENTIONTask: {2E68D3B8-EA4A-400A-AC84-873E1E20B5E6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)Task: {3852F231-AEAA-403E-A7AA-84E8DC70A5E8} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exeTask: {391A1B66-EAB3-4B4F-9FE8-0AD4F76CB569} - System32\Tasks\Microsoft Office 15 Sync Maintenance for KidlatPC-KidlatDESKTOP KidlatPC => C:\Program Files (x86)\Microsoft Office\Office15\MsoSync.exe [2012-10-01] (Microsoft Corporation)Task: {4A35002C-B38B-4164-8DAF-D30E17DE56C7} - \ShopperProJSUpd No Task File <==== ATTENTIONTask: {4C3F4566-18CD-424B-B643-DBBB2FAE928D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-15] (Google Inc.)Task: {766552A1-C664-4AE7-8194-EAB07058D78E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-15] (Google Inc.)Task: {A1DBF4B1-E831-4EB6-B037-9667EA6D47B0} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)Task: {FCC772A9-55D4-44C3-8269-ADBAB4A90D7F} - System32\Tasks\UWVFQEE => C:\Users\KidlatDESKTOP\AppData\Roaming\UWVFQEE.exe <==== ATTENTIONTask: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exeTask: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exeTask: C:\Windows\Tasks\OGCM.job => C:\Users\KidlatDESKTOP\AppData\Roaming\OGCM.exe <==== ATTENTIONTask: C:\Windows\Tasks\UWVFQEE.job => C:\Users\KidlatDESKTOP\AppData\Roaming\UWVFQEE.exe <==== ATTENTION ==================== Loaded Modules (Whitelisted) ============== 2012-10-01 19:34 - 2012-10-01 19:34 - 06522480 _____ () C:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll2014-09-01 21:22 - 2014-09-01 21:22 - 00214528 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll2013-11-04 15:03 - 2013-11-04 15:03 - 00818688 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll2013-11-04 15:03 - 2013-11-04 15:03 - 03650560 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll2014-09-01 21:22 - 2014-09-01 21:22 - 00127488 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll2014-09-01 21:22 - 2014-09-01 21:22 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll2012-10-01 19:33 - 2012-10-01 19:33 - 06522480 _____ () C:\Program Files (x86)\Microsoft Office\Office15\1033\GrooveIntlResource.dll2015-05-23 09:57 - 2015-05-23 09:57 - 00043008 _____ () c:\Users\KidlatDESKTOP\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpb8_u4n.dll2015-03-05 05:45 - 2015-03-05 05:45 - 00750080 _____ () C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\libGLESv2.dll2015-03-05 05:45 - 2015-03-05 05:45 - 00047616 _____ () C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\libEGL.dll2015-03-05 05:45 - 2015-03-05 05:45 - 00865280 _____ () C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll2015-03-05 05:45 - 2015-03-05 05:45 - 00200704 _____ () C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll2015-05-21 22:59 - 2015-05-14 00:48 - 01281864 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.65\libglesv2.dll2015-05-21 22:59 - 2015-05-14 00:48 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.65\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2140561562-4167766111-1754031696-1000\Control Panel\Desktop\\Wallpaper -> DNS Servers: 192.168.33.1 ==================== MSCONFIG/TASK MANAGER Error getting == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [TCP Query User{9F77BC87-5F66-4C98-BC38-E29509FE724A}C:\users\kidlatdesktop\desktop\call of duty - black ops\blackops.exe] => (Allow) C:\users\kidlatdesktop\desktop\call of duty - black ops\blackops.exeFirewallRules: [uDP Query User{6C0C3A09-FDFD-45AA-8E19-5BE471AAFE64}C:\users\kidlatdesktop\desktop\call of duty - black ops\blackops.exe] => (Allow) C:\users\kidlatdesktop\desktop\call of duty - black ops\blackops.exeFirewallRules: [{D8BC48D8-AAC4-4C63-8F57-47D756125D60}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exeFirewallRules: [{2EEB1D53-62C1-4D19-95CF-43D86591A14C}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exeFirewallRules: [{45F17275-6D94-48D0-8739-81F9DCCB4C78}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exeFirewallRules: [{1F30323F-1A5C-4764-81A5-E3EDA8661C3A}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exeFirewallRules: [TCP Query User{3269BCFA-CCCE-4527-9948-E55C760F6283}C:\users\kidlatdesktop\desktop\call of duty modern warfare 2\iw4mp.exe] => (Allow) C:\users\kidlatdesktop\desktop\call of duty modern warfare 2\iw4mp.exeFirewallRules: [uDP Query User{FE96A85F-41D2-4E51-851C-C1CA2A9AE1FA}C:\users\kidlatdesktop\desktop\call of duty modern warfare 2\iw4mp.exe] => (Allow) C:\users\kidlatdesktop\desktop\call of duty modern warfare 2\iw4mp.exeFirewallRules: [{12470A25-2371-4273-941B-61A84671E38F}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exeFirewallRules: [TCP Query User{4739E661-AC2B-41DA-A5EB-24479F53173F}D:\call of duty - black ops\blackops.exe] => (Allow) D:\call of duty - black ops\blackops.exeFirewallRules: [uDP Query User{128E6294-C569-44A0-A478-D2B53DAB3150}D:\call of duty - black ops\blackops.exe] => (Allow) D:\call of duty - black ops\blackops.exeFirewallRules: [{3F83D1DC-CC6B-477A-AF17-442375C198FA}] => (Allow) C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\Dropbox.exeFirewallRules: [{7928449B-B166-48D8-9778-1A0F6A7E1E5A}] => (Allow) C:\Users\KidlatDESKTOP\AppData\Roaming\Dropbox\bin\Dropbox.exeFirewallRules: [TCP Query User{77B31369-57A5-482F-A7B7-C46FDA0EFA4D}C:\users\kidlatdesktop\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\kidlatdesktop\appdata\roaming\spotify\spotify.exeFirewallRules: [uDP Query User{1DFAAB60-B161-45D8-89F4-7F999555B4DD}C:\users\kidlatdesktop\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\kidlatdesktop\appdata\roaming\spotify\spotify.exeFirewallRules: [{48C59B29-F46D-46D3-ABCA-A04C7D25EB49}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exeFirewallRules: [{DBD49134-E650-464A-A75B-7D2E9DF4E978}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exeFirewallRules: [TCP Query User{90AE1EB3-6AC5-4FAA-B48C-1AA0927925DA}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exeFirewallRules: [uDP Query User{1E640E7D-27B0-4238-8DC6-406140D29948}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exeFirewallRules: [{B192BBB9-13CB-453A-B7B5-DD3D290329A7}] => (Allow) C:\Program Files (x86)\Internet Download Manager\IDMan.exeFirewallRules: [{3C2842B5-0CB9-4029-8E35-8352D04C3574}] => (Allow) C:\Program Files (x86)\Internet Download Manager\IDMan.exeFirewallRules: [{391DAE9D-2B47-4944-B3AD-8DBC11273618}] => (Allow) C:\Program Files (x86)\Internet Download Manager\IDMan.exeFirewallRules: [{457FF369-C422-4EB2-BA4A-3C34AA52821F}] => (Allow) C:\Program Files (x86)\Internet Download Manager\IDMan.exeFirewallRules: [{F9FB2173-384B-4E27-93AF-2F7F2E8B1BC3}] => (Allow) D:\Installer\Proxifier 3.0\Proxifier.exeFirewallRules: [{B18A4F3A-692D-4BC1-BD3D-BAF4F3A00B8C}] => (Allow) D:\Installer\Proxifier 3.0\Proxifier.exeFirewallRules: [{EB65CA3C-F65D-499C-A6EB-2418CFFAABBA}] => (Allow) D:\Installer\Proxifier 3.0\Proxifier.exeFirewallRules: [{411114B3-5AE0-43E1-80BD-D10E4BD9BC51}] => (Allow) D:\Installer\Proxifier 3.0\Proxifier.exeFirewallRules: [TCP Query User{8CF73C37-972C-43E1-869E-F04E7B9BC20E}C:\games\fifa 14\game\fifa14.exe] => (Allow) C:\games\fifa 14\game\fifa14.exeFirewallRules: [uDP Query User{CE12A541-CC08-4783-B2E6-ACB68DBFA4D1}C:\games\fifa 14\game\fifa14.exe] => (Allow) C:\games\fifa 14\game\fifa14.exeFirewallRules: [{D8584F9F-E430-4C2F-AACA-C4B4CA8C73A3}] => (Allow) C:\Users\KidlatDESKTOP\AppData\Roaming\BitTorrent\BitTorrent.exeFirewallRules: [{C1CF0378-B66F-45AA-8DCF-152531DBC2A7}] => (Allow) C:\Users\KidlatDESKTOP\AppData\Roaming\BitTorrent\BitTorrent.exeFirewallRules: [{EC427F2E-9E10-4081-9F33-F46328CEB38C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= Name: RM-803|NOKIA Lumia 710Description: RM-803|NOKIA Lumia 710Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28)Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: RM-803|NOKIA Lumia 710Description: RM-803|NOKIA Lumia 710Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28)Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28)Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors:==================Error: (05/23/2015 10:08:19 AM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application name: mbam.exe, version: 1.0.2.929, time stamp: 0x552d3ec4Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000Exception code: 0xc0000005Fault offset: 0x69737265Faulting process id: 0x334Faulting application start time: 0xmbam.exe0Faulting application path: mbam.exe1Faulting module path: mbam.exe2Report Id: mbam.exe3 Error: (05/20/2015 02:05:36 PM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application name: vlc.exe, version: 2.2.1.0, time stamp: 0x00000004Faulting module name: libqt4_plugin.dll, version: 2.2.1.0, time stamp: 0x00020002Exception code: 0x40000015Fault offset: 0x007ca10aFaulting process id: 0xd28Faulting application start time: 0xvlc.exe0Faulting application path: vlc.exe1Faulting module path: vlc.exe2Report Id: vlc.exe3 Error: (05/20/2015 00:12:33 AM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application name: SpotifyWebHelper.exe, version: 1.0.4.90, time stamp: 0x55310065Faulting module name: SpotifyWebHelper.exe, version: 1.0.4.90, time stamp: 0x55310065Exception code: 0xc0000005Fault offset: 0x0003eb30Faulting process id: 0x77cFaulting application start time: 0xSpotifyWebHelper.exe0Faulting application path: SpotifyWebHelper.exe1Faulting module path: SpotifyWebHelper.exe2Report Id: SpotifyWebHelper.exe3 Error: (05/19/2015 09:15:18 PM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application name: mbam.exe, version: 1.0.2.929, time stamp: 0x552d3ec4Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000Exception code: 0xc0000005Fault offset: 0x69737265Faulting process id: 0x32cFaulting application start time: 0xmbam.exe0Faulting application path: mbam.exe1Faulting module path: mbam.exe2Report Id: mbam.exe3 Error: (05/14/2015 10:10:27 AM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application name: MirrorsEdge.exe, version: 1.0.1.0, time stamp: 0x4965beecFaulting module name: MirrorsEdge.exe, version: 1.0.1.0, time stamp: 0x4965beecException code: 0xc0000005Fault offset: 0x00fa6f82Faulting process id: 0xdc0Faulting application start time: 0xMirrorsEdge.exe0Faulting application path: MirrorsEdge.exe1Faulting module path: MirrorsEdge.exe2Report Id: MirrorsEdge.exe3 Error: (05/14/2015 10:10:23 AM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application name: MirrorsEdge.exe, version: 1.0.1.0, time stamp: 0x4965beecFaulting module name: KERNELBASE.dll, version: 6.1.7600.16385, time stamp: 0x4a5bdbdfException code: 0xe06d7363Fault offset: 0x0000b727Faulting process id: 0xdc0Faulting application start time: 0xMirrorsEdge.exe0Faulting application path: MirrorsEdge.exe1Faulting module path: MirrorsEdge.exe2Report Id: MirrorsEdge.exe3 Error: (05/14/2015 10:10:16 AM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application name: MirrorsEdge.exe, version: 1.0.1.0, time stamp: 0x4965beecFaulting module name: ntdll.dll, version: 6.1.7600.16385, time stamp: 0x4a5bdb3bException code: 0xc0000005Fault offset: 0x0002e23eFaulting process id: 0xdc0Faulting application start time: 0xMirrorsEdge.exe0Faulting application path: MirrorsEdge.exe1Faulting module path: MirrorsEdge.exe2Report Id: MirrorsEdge.exe3 Error: (05/13/2015 03:11:38 PM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application name: WINWORD.EXE, version: 15.0.4420.1017, time stamp: 0x5067349aFaulting module name: wwlib.dll, version: 15.0.4420.1017, time stamp: 0x506734a9Exception code: 0xc0000005Fault offset: 0x00e04481Faulting process id: 0xeacFaulting application start time: 0xWINWORD.EXE0Faulting application path: WINWORD.EXE1Faulting module path: WINWORD.EXE2Report Id: WINWORD.EXE3 Error: (05/12/2015 08:36:55 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: )Description: Failed auto update retrieval of third-party root certificate from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/22D5D8DF8F0231D18DF79DB7CF8A2D64C93F6C3A.crt>with error: This operation returned because the timeout period expired. . Error: (05/11/2015 07:15:40 PM) (Source: Application Hang) (EventID: 1002) (User: )Description: The program Skype.exe version 7.4.0.102 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 9ec Start Time: 01d08bdb92e88aa1 Termination Time: 20 Application Path: C:\Program Files (x86)\Skype\Phone\Skype.exe Report Id: System errors:=============Error: (05/23/2015 09:57:08 AM) (Source: Service Control Manager) (EventID: 7026) (User: )Description: The following boot-start or system-start driver(s) failed to load: cdrom Error: (05/23/2015 09:56:54 AM) (Source: EventLog) (EventID: 6008) (User: )Description: The previous system shutdown at 9:54:33 AM on ‎5/‎23/‎2015 was unexpected. Error: (05/23/2015 09:31:01 AM) (Source: Service Control Manager) (EventID: 7026) (User: )Description: The following boot-start or system-start driver(s) failed to load: cdrom Error: (05/22/2015 06:35:54 PM) (Source: Service Control Manager) (EventID: 7026) (User: )Description: The following boot-start or system-start driver(s) failed to load: cdrom Error: (05/21/2015 04:08:20 PM) (Source: Service Control Manager) (EventID: 7026) (User: )Description: The following boot-start or system-start driver(s) failed to load: cdrom Error: (05/21/2015 03:41:27 PM) (Source: Service Control Manager) (EventID: 7026) (User: )Description: The following boot-start or system-start driver(s) failed to load: cdrom Error: (05/21/2015 03:03:03 PM) (Source: Service Control Manager) (EventID: 7026) (User: )Description: The following boot-start or system-start driver(s) failed to load: cdrom Error: (05/21/2015 00:06:07 PM) (Source: Service Control Manager) (EventID: 7026) (User: )Description: The following boot-start or system-start driver(s) failed to load: cdrom Error: (05/21/2015 06:52:42 AM) (Source: Service Control Manager) (EventID: 7026) (User: )Description: The following boot-start or system-start driver(s) failed to load: cdrom Error: (05/20/2015 03:39:51 PM) (Source: Service Control Manager) (EventID: 7026) (User: )Description: The following boot-start or system-start driver(s) failed to load: cdrom Microsoft Office:=========================Error: (05/23/2015 10:08:19 AM) (Source: Application Error) (EventID: 1000) (User: )Description: mbam.exe1.0.2.929552d3ec4unknown0.0.0.000000000c00000056973726533401d094fd43b8f23eC:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exeunknown9453416b-00f0-11e5-beb6-b8975aaef412 Error: (05/20/2015 02:05:36 PM) (Source: Application Error) (EventID: 1000) (User: )Description: vlc.exe2.2.1.000000004libqt4_plugin.dll2.2.1.00002000240000015007ca10ad2801d092c2fac580ebC:\Program Files (x86)\VideoLAN\VLC\vlc.exeC:\Program Files (x86)\VideoLAN\VLC\plugins\gui\libqt4_plugin.dll3b44f72f-feb6-11e4-9b64-b8975aaef412 Error: (05/20/2015 00:12:33 AM) (Source: Application Error) (EventID: 1000) (User: )Description: SpotifyWebHelper.exe1.0.4.9055310065SpotifyWebHelper.exe1.0.4.9055310065c00000050003eb3077c01d09247edf12fffC:\Users\KidlatDESKTOP\AppData\Roaming\Spotify\SpotifyWebHelper.exeC:\Users\KidlatDESKTOP\AppData\Roaming\Spotify\SpotifyWebHelper.exedad6b644-fe41-11e4-8ff9-b8975aaef412 Error: (05/19/2015 09:15:18 PM) (Source: Application Error) (EventID: 1000) (User: )Description: mbam.exe1.0.2.929552d3ec4unknown0.0.0.000000000c00000056973726532c01d0923569fddbb6C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exeunknown1799d92e-fe29-11e4-808a-b8975aaef412 Error: (05/14/2015 10:10:27 AM) (Source: Application Error) (EventID: 1000) (User: )Description: MirrorsEdge.exe1.0.1.04965beecMirrorsEdge.exe1.0.1.04965beecc000000500fa6f82dc001d08de685d6453fC:\Program Files (x86)\R.G. Mechanics\Mirror's Edge\Binaries\MirrorsEdge.exeC:\Program Files (x86)\R.G. Mechanics\Mirror's Edge\Binaries\MirrorsEdge.exe630f3528-f9de-11e4-9447-b8975aaef412 Error: (05/14/2015 10:10:23 AM) (Source: Application Error) (EventID: 1000) (User: )Description: MirrorsEdge.exe1.0.1.04965beecKERNELBASE.dll6.1.7600.163854a5bdbdfe06d73630000b727dc001d08de685d6453fC:\Program Files (x86)\R.G. Mechanics\Mirror's Edge\Binaries\MirrorsEdge.exeC:\Windows\syswow64\KERNELBASE.dll6068c327-f9de-11e4-9447-b8975aaef412 Error: (05/14/2015 10:10:16 AM) (Source: Application Error) (EventID: 1000) (User: )Description: MirrorsEdge.exe1.0.1.04965beecntdll.dll6.1.7600.163854a5bdb3bc00000050002e23edc001d08de685d6453fC:\Program Files (x86)\R.G. Mechanics\Mirror's Edge\Binaries\MirrorsEdge.exeC:\Windows\SysWOW64\ntdll.dll5c5cc84e-f9de-11e4-9447-b8975aaef412 Error: (05/13/2015 03:11:38 PM) (Source: Application Error) (EventID: 1000) (User: )Description: WINWORD.EXE15.0.4420.10175067349awwlib.dll15.0.4420.1017506734a9c000000500e04481eac01d08d2f6b7dc143C:\Program Files (x86)\Microsoft Office\Office15\WINWORD.EXEC:\Program Files (x86)\Microsoft Office\Office15\wwlib.dll4bbf0d2c-f93f-11e4-919a-b8975aaef412 Error: (05/12/2015 08:36:55 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: )Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/22D5D8DF8F0231D18DF79DB7CF8A2D64C93F6C3A.crtThisoperation returned because the timeout period expired. Error: (05/11/2015 07:15:40 PM) (Source: Application Hang) (EventID: 1002) (User: )Description: Skype.exe7.4.0.1029ec01d08bdb92e88aa120C:\Program Files (x86)\Skype\Phone\Skype.exe ==================== Memory info =========================== Processor: AMD A6-6400K APU with Radeon HD Graphics Percentage of memory in use: 54%Total physical RAM: 3250.82 MBAvailable physical RAM: 1465.15 MBTotal Pagefile: 6499.78 MBAvailable Pagefile: 4191.02 MBTotal Virtual: 8192 MBAvailable Virtual: 8191.82 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:244.04 GB) (Free:206.41 GB) NTFSDrive d: () (Fixed) (Total:221.62 GB) (Free:174.48 GB) NTFS ==================== MBR & Partition Table ================== ========================================================Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: B6CF65E2)Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)Partition 2: (Not Active) - (Size=244 GB) - (Type=07 NTFS)Partition 3: (Not Active) - (Size=221.6 GB) - (Type=07 NTFS) ==================== End of log ============================
  2. Good day, Lately, when browsing through the Internet my computer gives out random clicking sounds, the same sound we hear when we open a Windows folder. It's really annoying and i'm worried if a virus or malware has infected my PC. I tried to run Malwarebytes ver. 2015.05.22.03 but it came out clean. Is there any other way to double check if my pc is infected? Thanks for the help.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.