Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20.06.2018
Ran by LenovoX (05-07-2018 16:52:58)
Running from C:\Users\LenovoX.Lenovo\Desktop
Windows 8.1 Pro (Update) (X64) (2018-02-16 17:45:46)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2670462401-1286606041-1155036778-500 - Administrator - Disabled)
Guest (S-1-5-21-2670462401-1286606041-1155036778-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2670462401-1286606041-1155036778-1003 - Limited - Enabled)
LenovoX (S-1-5-21-2670462401-1286606041-1155036778-1001 - Administrator - Enabled) => C:\Users\LenovoX.Lenovo

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Reader 9 (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-A90000000001}) (Version: 9.0.0 - Adobe Systems Incorporated)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 18.5.2342 - AVAST Software)
BurnAware Professional 9.5 (HKLM-x32\...\BurnAware Professional_is1) (Version:  - Burnaware)
CLEO 4.3 (HKLM-x32\...\{A8F37EB0-C741-41D7-8CAB-5B40ECEEF094}_is1) (Version: 4.3 - Seemann, Deji, Alien)
Company of Heroes 2 (HKLM-x32\...\Company of Heroes 2_is1) (Version:  - )
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.7.1.0341 - Disc Soft Ltd)
DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 390.77 - NVIDIA Corporation) Hidden
Fallout 4 GOTY version 1.10.82.0 (HKLM-x32\...\Fallout 4 GOTY_is1) (Version: 1.10.82.0 - Mr DJ)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 67.0.3396.99 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
Infinity (HKU\S-1-5-21-2670462401-1286606041-1155036778-1001\...\Infinity) (Version: 4.0.12 - WeMod)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4276 - Intel Corporation)
Java 8 Update 161 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180161F0}) (Version: 8.0.1610.12 - Oracle Corporation)
Java 8 Update 172 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180172F0}) (Version: 8.0.1720.11 - Oracle Corporation)
KMSpico v9.1.3 (HKLM\...\KMSpico_is1) (Version: 9.1.3 - )
Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.9200.10292 - Realtek Semiconductor Corp.)
Lenovo Service Bridge (HKU\S-1-5-21-2670462401-1286606041-1155036778-1001\...\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1) (Version: 4.0.6.3 - Lenovo)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25017 (HKLM-x32\...\{d6f233bd-3f8c-43f6-878b-07bd0568d595}) (Version: 14.10.25017.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25017 (HKLM-x32\...\{cb7c3049-21de-415b-bd85-b65c14e547df}) (Version: 14.10.25017.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Minecraft 1.12.2 + Titan Launcher 3.7.0 (HKLM-x32\...\Minecraft 1.12.2 + Titan Launcher 3.7.0 1.12.2) (Version: 1.12.2 - Mojang)
Minecraft Launcher 1.8 (HKLM-x32\...\Minecraft Launcher 1.8 1.0.0) (Version: 1.0.0 - Mojang)
Movavi Video Editor 14 (x64) (HKLM\...\Movavi Video Editor 14 (x64)) (Version: 14.3.0 - Movavi)
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.65.2 - Black Tree Gaming)
NVIDIA GeForce Experience 3.13.1.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.13.1.30 - NVIDIA Corporation)
NVIDIA Graphics Driver 390.77 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 390.77 - NVIDIA Corporation)
NVIDIA PhysX (Legacy) (HKLM-x32\...\{6F9D5A0B-202C-4161-BC7F-0664EA39E7E7}) (Version: 9.12.1031 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8199 - Realtek Semiconductor Corp.)
Registry Recycler (HKLM-x32\...\Registry Recycler_is1) (Version: 0.9.3.1 - Developer Tribe (Pvt) Ltd.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
UE4 Prerequisites (x64) (HKLM\...\{36EAD5CF-44EF-4FCF-8BE1-D96C4835D7A4}) (Version: 1.0.11.0 - Epic Games, Inc.) Hidden
UE4 Prerequisites (x64) (HKLM-x32\...\{2890ae6b-90e9-448d-b3e6-97e43c21e2fd}) (Version: 1.0.13.0 - Epic Games, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.0 (HKLM\...\VulkanRT1.0.65.0) (Version: 1.0.65.0 - LunarG, Inc.) Hidden
WinRAR 5.50 (64-bitová verzia) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH)
Zoo Tycoon 2 - Ultimate Collection (HKLM-x32\...\{9CC4840D-EF1C-406F-AF08-3C19EB1335B9}) (Version: 1.00.0000 - Microsoft Game Studios) Hidden
Zoo Tycoon 2 - Ultimate Collection (HKLM-x32\...\InstallShield_{9CC4840D-EF1C-406F-AF08-3C19EB1335B9}) (Version: 1.00.0000 - Microsoft Game Studios)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2670462401-1286606041-1155036778-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-21] (AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-21] (AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-02-12] (Disc Soft Ltd)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-21] (AVAST Software)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-02-12] (Disc Soft Ltd)
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2015-08-27] (Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2018-01-24] (NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-21] (AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {2323182A-30DD-4340-B2BD-7B71840D05E5} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-2670462401-1286606041-1155036778-1001 => C:\Users\LenovoX.Lenovo\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [2018-05-24] (Lenovo Group Limited)
Task: {261D8A51-71CA-43E2-81D0-54737BBD18D6} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-03-14] (NVIDIA Corporation)
Task: {26CE9481-4784-41A8-AF9F-902C78F00ECD} - System32\Tasks\{263A5873-C3AF-4837-B6CB-A74B9A1D7BD2} => C:\Windows\system32\pcalua.exe -a "F:\Program Files (x86)\Empire Total War\Empire.exe" -d "F:\Program Files (x86)\Empire Total War"
Task: {32F1B34F-E5F9-4BF3-8A7F-2CD67E64674A} - System32\Tasks\{7A457CB6-63E3-4A08-9EC5-D75FDC2A5863} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Universal Interactive\Blue Tongue Software\Jurassic Park Operation Genesis\JPOG\SimJP.exe" -d "C:\Program Files (x86)\Universal Interactive\Blue Tongue Software\Jurassic Park Operation Genesis\JPOG"
Task: {46179C00-B5B6-45AB-8D20-06650387DB27} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-03-14] (NVIDIA Corporation)
Task: {4653CE89-4FCC-48DA-B8AD-8BD90DBE9CF8} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2018-06-13] (AVAST Software)
Task: {652A3348-F67C-4E95-B916-23EBE9AE01D5} - System32\Tasks\{46989AE3-5EBD-43F0-8915-6EC7AB23BE78} => C:\Windows\system32\pcalua.exe -a "C:\Users\LenovoX.Lenovo\Desktop\Postal 2-A week in Paradise[AWP]\Postal 2-AWP\AWP\System\AWP.exe" -d "C:\Users\LenovoX.Lenovo\Desktop\Postal 2-A week in Paradise[AWP]\Postal 2-AWP\AWP\System"
Task: {7486DB6D-9B8C-4490-AEFB-8ABC87EB70AD} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-06-21] (AVAST Software)
Task: {78E2E4B9-100D-48D3-BE37-03D9F46A64C6} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2018-03-14] (NVIDIA Corporation)
Task: {7EF0C214-2ECC-4A5A-A502-A25F5992BA0D} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2018-03-14] (NVIDIA Corporation)
Task: {8A44EAA6-0C41-4240-9A90-0ED138B379F2} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-03-14] (NVIDIA Corporation)
Task: {9B445277-2F83-4234-A7DD-ACF77AB1DDC6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-02-16] (Google Inc.)
Task: {BAC69A48-337F-4302-90EB-218F58A41DF1} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-03-14] (NVIDIA Corporation)
Task: {D44D1EBD-381A-433B-BAC1-B46897628558} - System32\Tasks\{53147FCF-14D8-46CF-87DA-266EE3D04CFD} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\GOG.com\Evil Genius\ReleaseExe\EvilGeniusExeStub-Release.exe" -d "C:\Program Files (x86)\GOG.com\Evil Genius\ReleaseExe\"
Task: {DA33403E-FBB8-4BB1-BABA-ED3065D66DEF} - System32\Tasks\{F6E51710-FFD8-4C1B-AA9E-CC2CAA854C8D} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\EA Games\Command & Conquer The First Decade\Command & Conquer Red Alert(tm) II\RA2\RA2MD.exe" -d "C:\Program Files (x86)\EA Games\Command & Conquer The First Decade\Command & Conquer Red Alert(tm) II\RA2"
Task: {DBD9079D-A408-4A15-9912-5B919D53C71E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-02-16] (Google Inc.)
Task: {EF997B42-445C-4BCB-BAD4-48722754E0A6} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-03-14] (NVIDIA Corporation)
Task: {F89C97B0-B156-4F60-8A30-CBD9FCC53CE5} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2018-03-14] (NVIDIA Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2018-02-16 20:02 - 2018-03-14 15:05 - 001267648 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2018-02-16 20:17 - 2018-01-24 02:19 - 000544240 _____ () C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem\DisplayDriverAnalyzer\_DisplayDriverCrashAnalyzer64.dll
2018-06-26 23:08 - 2018-06-22 21:15 - 004608856 _____ () C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.99\libglesv2.dll
2018-06-26 23:08 - 2018-06-22 21:15 - 000099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.99\libegl.dll
2018-02-16 20:02 - 2018-03-14 15:05 - 001041344 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2018-03-17 09:58 - 2018-03-17 09:58 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2018-06-21 15:39 - 2018-06-21 15:39 - 000483544 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll
2018-06-21 15:39 - 2018-06-21 15:39 - 000282840 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
2018-02-16 20:02 - 2018-03-14 15:04 - 081563584 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll
2018-03-28 21:07 - 2018-03-14 15:04 - 002478016 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\swiftshader\libglesv2.dll
2018-03-28 21:07 - 2018-03-14 15:04 - 000125376 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\swiftshader\libegl.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 15:25 - 2018-07-05 15:02 - 000000035 _____ C:\Windows\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2670462401-1286606041-1155036778-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\LenovoX.Lenovo\Pictures\img1505143397115.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKLM\...\StartupApproved\Run: => "Wondershare Helper Compact.exe"
HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe"
HKU\S-1-5-21-2670462401-1286606041-1155036778-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-2670462401-1286606041-1155036778-1001\...\StartupApproved\Run: => "World of Warships"
HKU\S-1-5-21-2670462401-1286606041-1155036778-1001\...\StartupApproved\Run: => "Steam"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{899B724C-1FC7-4608-8751-1B3CAA45AC57}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{BEE05157-8CB2-4E20-B4A2-0F30EA114DAE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [TCP Query User{7FAC7045-02B3-4153-A1BF-257B3FC84F73}C:\users\lenovox.lenovo\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\lenovox.lenovo\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{F9826501-3B1E-47AF-B649-55C06EACB57A}C:\users\lenovox.lenovo\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\lenovox.lenovo\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{0F83708E-4B1E-4986-982A-5CD0657C658F}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
FirewallRules: [TCP Query User{E95BBB47-3B78-4C81-82D9-7519DF99FEF8}C:\gog games\8-bit hordes\clientg.exe] => (Allow) C:\gog games\8-bit hordes\clientg.exe
FirewallRules: [UDP Query User{4F4A67D8-FCB0-4588-BF03-0F65B8C8E4CE}C:\gog games\8-bit hordes\clientg.exe] => (Allow) C:\gog games\8-bit hordes\clientg.exe
FirewallRules: [TCP Query User{A8A60F2F-B1A4-47BF-B176-0F80D5C1C82B}C:\gog games\8-bit hordes\instanceserverg.exe] => (Allow) C:\gog games\8-bit hordes\instanceserverg.exe
FirewallRules: [UDP Query User{E124DEC7-370D-4E5F-B4DA-10C08172B43B}C:\gog games\8-bit hordes\instanceserverg.exe] => (Allow) C:\gog games\8-bit hordes\instanceserverg.exe
FirewallRules: [{38DB5780-4FC8-4EF3-AC55-FD4D755B4D0D}] => (Allow) C:\Program Files (x86)\Microsoft Games\Zoo Tycoon 2\zt.exe
FirewallRules: [{0C5362E1-ED02-4BFE-A51D-3624A25B3744}] => (Allow) C:\Program Files (x86)\Microsoft Games\Zoo Tycoon 2\zt.exe
FirewallRules: [TCP Query User{04A04FB7-FC5F-45DD-84D6-F2FA26A253BC}C:\program files\movavi video editor 14\videoeditor.exe] => (Allow) C:\program files\movavi video editor 14\videoeditor.exe
FirewallRules: [UDP Query User{AD44BEE4-8B08-4CDB-9592-39B23F3C5CB9}C:\program files\movavi video editor 14\videoeditor.exe] => (Allow) C:\program files\movavi video editor 14\videoeditor.exe
FirewallRules: [TCP Query User{DAA071D6-3A10-49D3-9BB3-AED03463F013}F:\games\gog.com\medal of honor\mohaa.exe] => (Allow) F:\games\gog.com\medal of honor\mohaa.exe
FirewallRules: [UDP Query User{E229E99B-7313-4215-9547-D1025869248A}F:\games\gog.com\medal of honor\mohaa.exe] => (Allow) F:\games\gog.com\medal of honor\mohaa.exe
FirewallRules: [{238FF492-63C2-4214-9423-FBDADBB15506}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{7C04B421-6190-44D8-A351-96EE20BE7BF6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{D8F998BB-2C1B-4703-92D6-6BF7CB721E6F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{3A7E2D9F-01DC-49B8-AEE2-A14EDA08ACFD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [TCP Query User{5D7D18A5-D544-4B12-9E40-AB0EE02E38C7}F:\games\postal redux v3.0\postalredux\binaries\win64\postalredux-win64-shipping.exe] => (Allow) F:\games\postal redux v3.0\postalredux\binaries\win64\postalredux-win64-shipping.exe
FirewallRules: [UDP Query User{6C8AE1B5-3E0F-4B71-BDFB-B802F953C376}F:\games\postal redux v3.0\postalredux\binaries\win64\postalredux-win64-shipping.exe] => (Allow) F:\games\postal redux v3.0\postalredux\binaries\win64\postalredux-win64-shipping.exe
FirewallRules: [TCP Query User{1DB08ED2-6795-43BF-AAE0-BB9E60B993B5}F:\games\gog games\medal of honor - pacific assault\mohpa.exe] => (Allow) F:\games\gog games\medal of honor - pacific assault\mohpa.exe
FirewallRules: [UDP Query User{91C9A78E-6CC9-4D25-8209-D280357178A6}F:\games\gog games\medal of honor - pacific assault\mohpa.exe] => (Allow) F:\games\gog games\medal of honor - pacific assault\mohpa.exe
FirewallRules: [TCP Query User{C84E06B8-6FB9-4FAF-9DCC-168DE3EB9E59}C:\users\lenovox.lenovo\appdata\local\forgotten_hope\updater\fh2updater.exe] => (Allow) C:\users\lenovox.lenovo\appdata\local\forgotten_hope\updater\fh2updater.exe
FirewallRules: [UDP Query User{D284119E-DED6-4725-B492-14E9B27CD095}C:\users\lenovox.lenovo\appdata\local\forgotten_hope\updater\fh2updater.exe] => (Allow) C:\users\lenovox.lenovo\appdata\local\forgotten_hope\updater\fh2updater.exe
FirewallRules: [TCP Query User{14D2C152-A295-4287-83E4-0FFFE2A07F48}F:\games\battlefield 2\mods\fh2\communityupdater\fh2communityupdater.exe] => (Allow) F:\games\battlefield 2\mods\fh2\communityupdater\fh2communityupdater.exe
FirewallRules: [UDP Query User{01B737EA-92CC-49F8-B003-55F0F7046741}F:\games\battlefield 2\mods\fh2\communityupdater\fh2communityupdater.exe] => (Allow) F:\games\battlefield 2\mods\fh2\communityupdater\fh2communityupdater.exe
FirewallRules: [TCP Query User{AEF5B82A-4303-441F-9ABE-B8DB732515AE}F:\games\battlefield 2\forgottenhope2.exe] => (Allow) F:\games\battlefield 2\forgottenhope2.exe
FirewallRules: [UDP Query User{58409C3D-9AC2-4F30-AB41-AF9BFD34C289}F:\games\battlefield 2\forgottenhope2.exe] => (Allow) F:\games\battlefield 2\forgottenhope2.exe
FirewallRules: [{3C415459-CE9B-4EB2-8FCC-B20DA3FA462E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{C118CB15-CF7C-4796-A719-85C08BA65C2A}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{0A1B772F-1BC1-4161-97E6-7807128F0F02}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{F2FB22E0-FCED-45A9-9379-2ED7D5279EA9}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [TCP Query User{0DB83800-38BC-437D-A8D8-FA75C41F45B4}F:\games\outlast\binaries\win64\olgame.exe] => (Allow) F:\games\outlast\binaries\win64\olgame.exe
FirewallRules: [UDP Query User{C37A848D-C01C-41F4-A576-A45FCE5F9160}F:\games\outlast\binaries\win64\olgame.exe] => (Allow) F:\games\outlast\binaries\win64\olgame.exe
FirewallRules: [TCP Query User{A8BEFDC5-37EA-4DC2-A118-5AC6863ED64D}F:\games\wargaming.net\gamecenter\wgc.exe] => (Allow) F:\games\wargaming.net\gamecenter\wgc.exe
FirewallRules: [UDP Query User{A5F66976-3E61-4A5D-9C8F-36FACF16E735}F:\games\wargaming.net\gamecenter\wgc.exe] => (Allow) F:\games\wargaming.net\gamecenter\wgc.exe
FirewallRules: [{9BCE5010-73BF-4862-B405-99966779E203}] => (Allow) F:\Games\World of Warships\WoWSLauncher.exe
FirewallRules: [{209A2923-0B42-46E3-8CCB-84B8424E35E7}] => (Allow) F:\Games\World of Warships\WoWSLauncher.exe
FirewallRules: [{889A266E-764D-49E7-8702-ED70CD29348E}] => (Allow) F:\Games\World of Warships\worldofwarships.exe
FirewallRules: [{D8D81FC6-7E58-44C9-B2B5-668732ED6B82}] => (Allow) F:\Games\World of Warships\worldofwarships.exe
FirewallRules: [TCP Query User{59393C24-E98F-4296-9DB0-78FDEAA546CC}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe
FirewallRules: [UDP Query User{89C7290A-85CC-4F97-978D-B747F0CD83C0}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe
FirewallRules: [{2FF23777-2EDC-4F97-A130-314760C001C5}] => (Block) C:\programdata\wargaming.net\gamecenter\wgc.exe
FirewallRules: [{29029A18-4BA6-4146-9DE0-E476A4BC84B3}] => (Block) C:\programdata\wargaming.net\gamecenter\wgc.exe
FirewallRules: [TCP Query User{CCEFFA91-F37F-40C7-8AE3-891BB86A5963}F:\games\left4dead\left4dead.exe] => (Allow) F:\games\left4dead\left4dead.exe
FirewallRules: [UDP Query User{6494184A-F165-4C78-A8DC-ACBB99BE132E}F:\games\left4dead\left4dead.exe] => (Allow) F:\games\left4dead\left4dead.exe
FirewallRules: [TCP Query User{2F0F7316-08AE-44F1-8082-7C29138E293E}F:\games\gog games\men of war\mow.exe] => (Allow) F:\games\gog games\men of war\mow.exe
FirewallRules: [UDP Query User{9F151550-BF4C-40FD-8305-AF9BD6A239D1}F:\games\gog games\men of war\mow.exe] => (Allow) F:\games\gog games\men of war\mow.exe
FirewallRules: [TCP Query User{EAA06F72-0FA9-47C1-AA1C-BC5D2100871A}C:\users\lenovox.lenovo\desktop\left 4 dead 2\left4dead2.exe] => (Allow) C:\users\lenovox.lenovo\desktop\left 4 dead 2\left4dead2.exe
FirewallRules: [UDP Query User{AFEF9922-979D-470E-A06C-F0A94B1DA468}C:\users\lenovox.lenovo\desktop\left 4 dead 2\left4dead2.exe] => (Allow) C:\users\lenovox.lenovo\desktop\left 4 dead 2\left4dead2.exe
FirewallRules: [TCP Query User{1433F4B2-9949-48B9-A615-5A3024166BDE}F:\games\gog games\singularity\binaries\singularity.exe] => (Allow) F:\games\gog games\singularity\binaries\singularity.exe
FirewallRules: [UDP Query User{0CEE8723-5917-4A35-89CF-072C936E70E9}F:\games\gog games\singularity\binaries\singularity.exe] => (Allow) F:\games\gog games\singularity\binaries\singularity.exe
FirewallRules: [TCP Query User{64404904-B762-4194-B003-00AF576A7A9C}F:\games\total.war.shogun.2.complete-kaos\shogun2.exe] => (Allow) F:\games\total.war.shogun.2.complete-kaos\shogun2.exe
FirewallRules: [UDP Query User{440F927B-8CCD-4A4D-A42D-D3B72B1EF8A7}F:\games\total.war.shogun.2.complete-kaos\shogun2.exe] => (Allow) F:\games\total.war.shogun.2.complete-kaos\shogun2.exe
FirewallRules: [{DA85A495-4EA5-4383-850E-56077CEC1398}] => (Allow) F:\Games\Mr DJ\Fallout 4 GOTY\Fallout4.exe
FirewallRules: [{57660B0E-BAEC-497E-BA91-8A1B08D00D30}] => (Allow) F:\Games\Mr DJ\Fallout 4 GOTY\Fallout4.exe
FirewallRules: [{777A8619-6A90-457C-AE81-DE2FCEC3D89C}] => (Allow) F:\Games\Mr DJ\Fallout 4 GOTY\Fallout4Launcher.exe
FirewallRules: [{B66A19F8-262D-4DB0-B3FC-738F2AE5A77E}] => (Allow) F:\Games\Mr DJ\Fallout 4 GOTY\Fallout4Launcher.exe
FirewallRules: [TCP Query User{2A824874-BEC7-4D87-8323-2AF97E36FBC9}F:\games\mr dj\fallout 4 goty\fallout4.exe] => (Allow) F:\games\mr dj\fallout 4 goty\fallout4.exe
FirewallRules: [UDP Query User{8B5FDA7E-97C0-4604-BD7F-977CFEBCCE6A}F:\games\mr dj\fallout 4 goty\fallout4.exe] => (Allow) F:\games\mr dj\fallout 4 goty\fallout4.exe
FirewallRules: [TCP Query User{1796380F-AB31-407B-92A3-1E563C2BA2E4}F:\games\xcom - enemy unknown\xew\binaries\win32\xcomew.exe] => (Allow) F:\games\xcom - enemy unknown\xew\binaries\win32\xcomew.exe
FirewallRules: [UDP Query User{3FFBAC31-A53F-4589-B585-7A19980179F7}F:\games\xcom - enemy unknown\xew\binaries\win32\xcomew.exe] => (Allow) F:\games\xcom - enemy unknown\xew\binaries\win32\xcomew.exe
FirewallRules: [TCP Query User{925D7907-0019-48A6-93D7-3B53DCCE886E}F:\games\xcom - enemy unknown\binaries\win32\xcomgame.exe] => (Allow) F:\games\xcom - enemy unknown\binaries\win32\xcomgame.exe
FirewallRules: [UDP Query User{D01C5B39-6131-43F6-AE4E-4AE23C9285B8}F:\games\xcom - enemy unknown\binaries\win32\xcomgame.exe] => (Allow) F:\games\xcom - enemy unknown\binaries\win32\xcomgame.exe
FirewallRules: [TCP Query User{7CF6E390-49A9-42C3-AAF9-D9D075C367FB}F:\games\xcom 2 war of the chosen\xcom2-warofthechosen\binaries\win64\xcom2.exe] => (Allow) F:\games\xcom 2 war of the chosen\xcom2-warofthechosen\binaries\win64\xcom2.exe
FirewallRules: [UDP Query User{528D9720-2F11-4BA3-A1B9-1F49D599B054}F:\games\xcom 2 war of the chosen\xcom2-warofthechosen\binaries\win64\xcom2.exe] => (Allow) F:\games\xcom 2 war of the chosen\xcom2-warofthechosen\binaries\win64\xcom2.exe
FirewallRules: [TCP Query User{885D074E-7643-4FAF-B901-806085FA5D13}F:\games\xcom 2 war of the chosen\binaries\win64\xcom2.exe] => (Allow) F:\games\xcom 2 war of the chosen\binaries\win64\xcom2.exe
FirewallRules: [UDP Query User{95808485-1538-41AF-8657-3B78182CD540}F:\games\xcom 2 war of the chosen\binaries\win64\xcom2.exe] => (Allow) F:\games\xcom 2 war of the chosen\binaries\win64\xcom2.exe
FirewallRules: [{38CB0E1C-E154-485B-8285-11242937D8B9}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{1BB02115-48B5-44BE-A927-053132DFBDF6}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{62C3C2FC-FE88-4E0E-B9F4-8194ADF5B9BE}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{71AFA383-5C34-4055-BB74-D7BC2E63C104}F:\games\total war - rome 2\rome2.exe] => (Allow) F:\games\total war - rome 2\rome2.exe
FirewallRules: [UDP Query User{18E4B6C3-C1D9-4B45-874E-521DEB1102D0}F:\games\total war - rome 2\rome2.exe] => (Allow) F:\games\total war - rome 2\rome2.exe
FirewallRules: [TCP Query User{E3E51EE8-A16B-410E-B4FE-96D90EF5120F}C:\program files (x86)\java\jre1.8.0_172\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_172\bin\javaw.exe
FirewallRules: [UDP Query User{81129917-3721-49A2-A8CD-0CBE293ED73D}C:\program files (x86)\java\jre1.8.0_172\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_172\bin\javaw.exe
FirewallRules: [TCP Query User{39BE81B0-055D-4A48-817E-BFB406E14D29}F:\games\company of heroes 2\reliccoh2.exe] => (Allow) F:\games\company of heroes 2\reliccoh2.exe
FirewallRules: [UDP Query User{33CE104C-E97C-4A21-9291-4968E6314FB3}F:\games\company of heroes 2\reliccoh2.exe] => (Allow) F:\games\company of heroes 2\reliccoh2.exe

==================== Restore Points =========================

25-06-2018 22:10:04 Driver Booster : Broadcom Bluetooth 4.0 USB
03-07-2018 15:39:16 Scheduled Checkpoint
05-07-2018 14:19:37 Restore Point Created by FRST

==================== Faulty Device Manager Devices =============

Name: Bluetooth Device (Personal Area Network)
Description: Bluetooth Device (Personal Area Network)
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: BthPan
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (07/05/2018 02:20:03 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
TraverseDir : Unable to FindNextFile.

System Error:
The request could not be performed because of an I/O device error.
.

Error: (07/05/2018 02:19:36 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface.  hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.


Operation:
   Gathering Writer Data

Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {98497a66-10c3-4500-b265-3b9adbe209ad}

Error: (07/03/2018 03:39:31 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
TraverseDir : Unable to FindNextFile.

System Error:
The request could not be performed because of an I/O device error.
.

Error: (07/03/2018 03:39:15 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
TraverseDir : Unable to FindNextFile.

System Error:
The request could not be performed because of an I/O device error.
.

Error: (07/02/2018 12:05:07 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: )
Description: The volume System Reserved was not optimized because an error was encountered: The parameter is incorrect. (0x80070057)

Error: (07/01/2018 04:04:40 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: )
Description: The volume System Reserved was not optimized because an error was encountered: The parameter is incorrect. (0x80070057)

Error: (07/01/2018 12:20:55 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: )
Description: The volume System Reserved was not optimized because an error was encountered: The parameter is incorrect. (0x80070057)

Error: (07/01/2018 11:45:55 AM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: )
Description: The volume System Reserved was not optimized because an error was encountered: The parameter is incorrect. (0x80070057)


System errors:
=============
Error: (07/05/2018 04:46:13 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Disc Soft Lite Bus Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (07/05/2018 04:46:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Search service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 30000 milliseconds: Restart the service.

Error: (07/05/2018 04:46:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Media Player Network Sharing Service service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 30000 milliseconds: Restart the service.

Error: (07/05/2018 04:46:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The NVIDIA LocalSystem Container service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 6000 milliseconds: Restart the service.

Error: (07/05/2018 04:46:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Presentation Foundation Font Cache 3.0.0.0 service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 0 milliseconds: Restart the service.

Error: (07/05/2018 04:46:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The NVIDIA Telemetry Container service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 1000 milliseconds: Restart the service.

Error: (07/05/2018 04:46:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The NVIDIA Display Container LS service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 1000 milliseconds: Restart the service.

Error: (07/05/2018 04:46:11 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Intel(R) HD Graphics Control Panel Service service terminated unexpectedly.  It has done this 1 time(s).


CodeIntegrity:
===================================

Date: 2018-05-04 18:14:17.784
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-05-04 18:14:17.563
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-05-04 18:14:17.345
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-05-04 18:14:17.075
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-05-04 18:14:16.854
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-05-04 18:14:16.581
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-05-04 18:14:16.349
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-05-04 18:14:16.143
Description: 
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-3210M CPU @ 2.50GHz
Percentage of memory in use: 23%
Total physical RAM: 8060.85 MB
Available physical RAM: 6170.56 MB
Total Virtual: 9340.85 MB
Available Virtual: 6906 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:97.66 GB) (Free:37.66 GB) NTFS
Drive e: (Local Disk) (Fixed) (Total:14.57 GB) (Free:14.55 GB) NTFS
Drive f: (Local Disk) (Fixed) (Total:368.1 GB) (Free:294.29 GB) NTFS

\\?\Volume{f1c480c1-133f-11e8-824b-806e6f6e6963}\ (System Reserved) (Fixed) (Total:0.34 GB) (Free:0.3 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 14.9 GB) (Disk ID: 45D71946)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=14.6 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 0004F452)
Partition 1: (Not Active) - (Size=97.7 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=368.1 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================