Preventivní kontrola
Napsal: 04 úno 2019 08:36
Dobrý den,
prosím o kontrolu, myš odmítá spolupracovat, přitom ovladače aktuální, system vcelku v normálu.
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 4.02.2019
Ran by Virgill (04-02-2019 08:19:02)
Running from C:\Users\Virgill\Downloads
Windows 7 Ultimate Service Pack 1 (X64) (2018-04-06 10:12:07)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-3750458451-981303790-4038828487-500 - Administrator - Disabled)
Guest (S-1-5-21-3750458451-981303790-4038828487-501 - Limited - Disabled)
Virgill (S-1-5-21-3750458451-981303790-4038828487-1000 - Administrator - Enabled) => C:\Users\Virgill
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: AVG Antivirus (Enabled - Up to date) {4FC75CA5-1654-5411-7CFB-1893D506BCF4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG Antivirus (Enabled - Up to date) {F4A6BD41-306E-5B9F-464B-23E1AE81F649}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 18.01 (x64) (HKLM\...\7-Zip) (Version: 18.01 - Igor Pavlov)
Actionaz 3.8.0 (32 bits) (HKLM-x32\...\{968D7F40-0B23-457D-AD67-0F7C0012EF1E}_is1) (Version: 3.8.0 - Actionaz.org)
Akamai NetSession Interface (HKU\S-1-5-21-3750458451-981303790-4038828487-1000\...\Akamai) (Version: - Akamai Technologies, Inc)
Aliens Colonial Marines (HKLM-x32\...\Aliens Colonial Marines_R.G. Mechanics_is1) (Version: - R.G. Mechanics, Panky)
Auto Keyboard v6.1 (HKLM-x32\...\{71E16EE4-BBED-44A8-8724-9E68D05EE945}_is1) (Version: 6.1 - MurGee.com)
AutoHotkey 1.1.30.01 (HKLM\...\AutoHotkey) (Version: 1.1.30.01 - Lexikos)
AVG AntiVirus FREE (HKLM-x32\...\AVG Antivirus) (Version: 19.1.3075 - AVG Technologies)
Bloody6 (HKLM-x32\...\Bloody3) (Version: 18.10.0001 - Bloody)
CCleaner (HKLM\...\CCleaner) (Version: 5.44 - Piriform)
Cok Free Auto Clicker 2.0 (HKLM-x32\...\Cok Free Auto Clicker_is1) (Version: 2.0 - Cok Software)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd)
Discord (HKU\S-1-5-21-3750458451-981303790-4038828487-1000\...\Discord) (Version: 0.0.301 - Discord Inc.)
Driver Booster 5 (HKLM-x32\...\Driver Booster_is1) (Version: 5.5.1 - IObit)
EVE Online (HKU\S-1-5-21-3750458451-981303790-4038828487-1000\...\{a855ea64-17fc-4621-8088-817c6e5216da}) (Version: 1.0.0 - CCP)
GoldWave v6.31 (HKLM\...\GoldWave v6.31) (Version: 6.31 - GoldWave Inc.)
GoTo Opener (HKLM-x32\...\{1F803452-798F-49FB-A5DD-9F527F7017E4}) (Version: 1.0.473 - LogMeIn, Inc.)
GoToMeeting 8.39.2.11674 (HKU\S-1-5-21-3750458451-981303790-4038828487-1000\...\GoToMeeting) (Version: 8.39.2.11674 - LogMeIn, Inc.)
KeyCommander 1.3.1 (HKLM-x32\...\KeyCommander) (Version: 1.3.1 - fabi.me)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation)
Mozilla Firefox 64.0.2 (x64 cs) (HKLM\...\Mozilla Firefox 64.0.2 (x64 cs)) (Version: 64.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 59.0.2 - Mozilla)
NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation)
Opera Stable 56.0.3051.116 (HKLM-x32\...\Opera 56.0.3051.116) (Version: 56.0.3051.116 - Opera Software)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.994 - Even Balance, Inc.)
pyfa version 2.5.0b1 (YC120.8 1.0) (HKLM-x32\...\{3DA39096-C08D-49CD-90E0-1D177F32C8AA}_is1) (Version: 2.5.0b1 (YC120.8 1.0) - pyfa)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8549 - Realtek Semiconductor Corp.)
ReMouse Micro (HKLM-x32\...\ReMouse Micro_is1) (Version: Micro V4.0 - AutomaticSolution Software)
Sandboxie 5.22 (64-bit) (HKLM\...\Sandboxie) (Version: 5.22 - Sandboxie Holdings, LLC)
Skype version 8.29 (HKLM-x32\...\Skype_is1) (Version: 8.29 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKU\S-1-5-21-3750458451-981303790-4038828487-1000\...\TeamSpeak 3 Client) (Version: 3.0.19.4 - TeamSpeak Systems GmbH)
TeamViewer 14 (HKLM-x32\...\TeamViewer) (Version: 14.1.3399 - TeamViewer)
The Lord of the Rings Online™ v1903.0058.2732.4095 (HKLM-x32\...\12bbe590-c890-11d9-9669-0800200c9a66_is1) (Version: 1903.0058.2732.4095 - Standing Stone Games, LLC)
Total Commander 64+32-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.10 - Ghisler Software GmbH)
Uplay (HKLM-x32\...\Uplay) (Version: 58.0 - Ubisoft)
WinRAR 5.50 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-01-28] (Igor Pavlov)
ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2019-01-19] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-01-28] (Igor Pavlov)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2018-02-23] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-01-28] (Igor Pavlov)
ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2019-01-19] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {101AFC1F-385B-4C85-9233-96B637E6DC1A} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [2019-01-19] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
Task: {31CE8820-DEC3-44FE-AF5E-5341094DE701} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-06-24] (Piriform Ltd -> Piriform Ltd)
Task: {33DAF243-3C26-4503-8A14-B38DCBE438FB} - System32\Tasks\Driver Booster SkipUAC (Virgill) => C:\Program Files (x86)\IObit\Driver Booster\5.5.1\DriverBooster.exe [2018-07-17] (IObit Information Technology -> IObit)
Task: {582D6876-09D2-4858-9680-ADA581D3177F} - System32\Tasks\update-S-1-5-21-3750458451-981303790-4038828487-1000 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {7E620777-3F47-4547-8BFA-6A7F0A779454} - System32\Tasks\{2C9D620B-59DD-4BC0-B514-879AECD29A76} => C:\Windows\system32\pcalua.exe -a C:\Users\Virgill\Downloads\arcanumcz-full.exe -d C:\Users\Virgill\Downloads
Task: {8699578C-7053-4B54-BCEE-C59CCF011286} - System32\Tasks\G2MUpdateTask-S-1-5-21-3750458451-981303790-4038828487-1000 => C:\Users\Virgill\AppData\Local\GoToMeeting\11674\g2mupdate.exe [2019-02-02] (LogMeIn, Inc. -> LogMeIn, Inc.)
Task: {9E2D5D21-335E-4DE0-95BE-5E4049E0A0C6} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-06-24] (Piriform Ltd -> Piriform Ltd)
Task: {A4FFC47B-0187-4E2F-B064-169764DDA071} - System32\Tasks\Opera scheduled Autoupdate 1523012796 => C:\Program Files\Opera\launcher.exe [2018-11-26] (Opera Software AS -> Opera Software)
Task: {A897DE4B-C40C-4A4C-84E6-1B7431D8BE4E} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\5.5.1\Scheduler.exe [2018-07-17] (IObit Information Technology -> IObit)
Task: {A937A1EB-103E-402B-A6B3-E92BE4AE1D0C} - System32\Tasks\G2MUploadTask-S-1-5-21-3750458451-981303790-4038828487-1000 => C:\Users\Virgill\AppData\Local\GoToMeeting\11674\g2mupload.exe [2019-02-02] (LogMeIn, Inc. -> LogMeIn, Inc.)
Task: {DADA697C-FC58-4389-89FD-C5C2F0337485} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {EEF6ED9C-DA56-4831-B147-DFAAD7100F51} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [2019-01-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-3750458451-981303790-4038828487-1000.job => C:\Users\Virgill\AppData\Local\GoToMeeting\11674\g2mupdate.exe
Task: C:\Windows\Tasks\G2MUploadTask-S-1-5-21-3750458451-981303790-4038828487-1000.job => C:\Users\Virgill\AppData\Local\GoToMeeting\11674\g2mupload.exe
Task: C:\Windows\Tasks\update-S-1-5-21-3750458451-981303790-4038828487-1000.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\Windows\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
==================== Loaded Modules (Whitelisted) ==============
2019-01-19 18:51 - 2019-01-19 18:51 - 000662960 _____ () C:\Program Files\AVG\Antivirus\streamback.dll
2019-02-04 06:51 - 2019-02-04 06:51 - 006953672 _____ () C:\Program Files\AVG\Antivirus\defs\19020304\algo64.dll
2019-01-19 18:51 - 2019-01-19 18:51 - 000550832 _____ () C:\Program Files\AVG\Antivirus\gui_cache.dll
2019-01-19 18:51 - 2019-01-19 18:51 - 001967536 _____ () C:\Program Files\AVG\Antivirus\shepherdsync.dll
2018-08-16 09:30 - 2018-08-16 09:30 - 000076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2019-01-19 18:51 - 2019-01-19 18:51 - 093696960 _____ () C:\Program Files\AVG\Antivirus\libcef.dll
2019-02-04 07:49 - 2018-10-05 08:50 - 016443120 ____N () C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
2018-06-24 12:26 - 2018-06-24 12:26 - 000084808 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2019-02-04 07:50 - 2018-01-26 10:50 - 000103152 ____N () C:\Program Files (x86)\Bloody6\Bloody6\DLL\DLL_ZoomControl.dll
2019-02-04 07:50 - 2017-04-17 09:43 - 003852800 ____N () C:\Program Files (x86)\Bloody6\Bloody6\Data\RES\Forms\Internet_Advertisement\Internet_Advertisement_DLL.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2018-12-03 19:32 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3750458451-981303790-4038828487-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Virgill\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 185.147.250.13 - 185.147.250.14
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
If an entry is included in the fixlist, it will be removed.
MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: Discord => C:\Users\Virgill\AppData\Local\Discord\app-0.0.301\Discord.exe
MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{0AFE4862-6F63-4B15-BC82-49D3270CD47A}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{6644E874-9026-4432-8BF2-F0FA09681D8E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{858A0103-95D1-44DD-8CC5-89524C0C2D74}C:\users\virgill\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\virgill\appdata\local\akamai\netsession_win.exe (Akamai Technologies, Inc. -> Akamai Technologies, Inc.)
FirewallRules: [UDP Query User{03437D70-8B8F-426C-ADE4-8A0BF185F46C}C:\users\virgill\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\virgill\appdata\local\akamai\netsession_win.exe (Akamai Technologies, Inc. -> Akamai Technologies, Inc.)
FirewallRules: [TCP Query User{BCA1691E-71E5-4D78-9104-51ADF5FA588D}C:\rulez\lotro\lotroclient.exe] => (Allow) C:\rulez\lotro\lotroclient.exe (Standing Stone Games, LLC.)
FirewallRules: [UDP Query User{3934B692-D28F-4998-B6D9-DC87E6AC20B2}C:\rulez\lotro\lotroclient.exe] => (Allow) C:\rulez\lotro\lotroclient.exe (Standing Stone Games, LLC.)
FirewallRules: [TCP Query User{52EF2886-6503-4B6D-9D35-36F6A35F96F5}C:\users\virgill\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\virgill\appdata\local\akamai\netsession_win.exe (Akamai Technologies, Inc. -> Akamai Technologies, Inc.)
FirewallRules: [UDP Query User{B81E49CF-EBD1-45CF-B7BF-7E9B389810FD}C:\users\virgill\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\virgill\appdata\local\akamai\netsession_win.exe (Akamai Technologies, Inc. -> Akamai Technologies, Inc.)
FirewallRules: [{CFC6CB4D-92DD-4CE6-A8D8-03BA660FD588}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{A3F05935-FC59-4968-B0F3-262F8B3CBE1F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{FFCD49BC-7947-4E3A-86BC-2B1CB9C33BC6}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{B5AF05A6-070C-4F35-9FE0-F55C1E680ECD}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{8D45DDF1-F208-4C57-9CD1-635921FE7AE4}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.5.1\DriverBooster.exe (IObit Information Technology -> IObit)
FirewallRules: [{9D99E127-35BB-49CA-8AFA-2CFDA65792F7}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.5.1\DriverBooster.exe (IObit Information Technology -> IObit)
FirewallRules: [{3F440024-4556-47DC-82CD-BAC7D49BA374}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.5.1\DBDownloader.exe (IObit Information Technology -> IObit)
FirewallRules: [{17AF3A5C-2DA9-4DFD-A812-B38602574457}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.5.1\DBDownloader.exe (IObit Information Technology -> IObit)
FirewallRules: [{785231B1-43FA-449E-A04B-677AFEEA936D}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.5.1\AutoUpdate.exe (IObit Information Technology -> IObit)
FirewallRules: [{1B10F87B-E20D-4958-95AC-D97D3BE93B78}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.5.1\AutoUpdate.exe (IObit Information Technology -> IObit)
FirewallRules: [{EB19A4ED-507A-40D0-886A-E267A22F0AD2}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd -> Piriform Ltd)
FirewallRules: [{CD295741-42FD-4710-B568-E8F1B198507E}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd -> Piriform Ltd)
FirewallRules: [{62D517FC-1B13-48B0-A8A0-322111200F0D}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{9DEF38D6-FE89-481C-9618-E2BC9B5FB51D}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{FC34DEF1-3474-4460-881B-CDF36B132F66}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{2CDEA9F2-D138-44C4-B014-C28211805186}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [TCP Query User{E40A58DB-E40B-4F76-8C00-820FB8C5816F}C:\rulez\am\aliens colonial marines\binaries\win32\acm.exe] => (Allow) C:\rulez\am\aliens colonial marines\binaries\win32\acm.exe (Valve Corporation -> SEGA Corporation)
FirewallRules: [UDP Query User{11FDF7FA-2C74-47F0-837C-FE95D3C6CA6E}C:\rulez\am\aliens colonial marines\binaries\win32\acm.exe] => (Allow) C:\rulez\am\aliens colonial marines\binaries\win32\acm.exe (Valve Corporation -> SEGA Corporation)
FirewallRules: [{D4FB539C-ECA7-4856-AC5D-3351B15B0719}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{5EEDECD6-2754-4FBE-A5BB-85075C570F28}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{85F6DE95-6940-4E55-A145-0B2C0A661DFB}C:\rulez\bsgo\launcher\launcher.exe] => (Allow) C:\rulez\bsgo\launcher\launcher.exe No File
FirewallRules: [UDP Query User{F9B5121D-A2A5-456E-A82C-F3CA77A85A3A}C:\rulez\bsgo\launcher\launcher.exe] => (Allow) C:\rulez\bsgo\launcher\launcher.exe No File
FirewallRules: [{BC679100-1FA5-4025-97EA-8CED23CC9E9A}] => (Allow) C:\Program Files\Opera\56.0.3051.104\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{1262BF53-B29F-4FD6-8680-55E4145B9E57}] => (Allow) C:\Program Files\Opera\56.0.3051.116\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{6E914660-7EC6-4CBD-BCAD-4411160385FD}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{E54558BD-7978-4438-A7EA-29ACF382FCC5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{C7173121-F702-47B0-B177-1A56D3495212}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{533400F1-97B9-4758-AF75-03EA22476129}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{6142E86A-87F5-400F-84C9-2446A39B7DC4}] => (Allow) C:\Program Files\AVG\Antivirus\AvEmUpdate.exe (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
FirewallRules: [{BA4D2F96-2170-4705-8D26-98AF2D9C8862}] => (Allow) C:\Program Files\AVG\Antivirus\AvEmUpdate.exe (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
==================== Restore Points =========================
19-01-2019 18:53:33 Driver Booster : Realtek High Definition Audio
30-01-2019 04:01:17 Scheduled Checkpoint
04-02-2019 07:42:51 Removed Mumble 1.2.19
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (02/04/2019 07:57:16 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (02/04/2019 07:03:57 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (02/04/2019 06:56:37 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (02/04/2019 06:51:07 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/m ... ootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.
Error: (02/03/2019 06:48:57 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (02/02/2019 03:16:56 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/m ... ootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.
Error: (02/02/2019 06:26:11 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (02/01/2019 01:35:35 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/m ... ootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.
System errors:
=============
Error: (01/24/2019 06:47:54 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The AVG Antivirus service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.
Error: (01/18/2019 06:47:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The NetGroup Packet Filter Driver service failed to start due to the following error:
The system cannot find the file specified.
Error: (01/17/2019 04:50:41 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The NetGroup Packet Filter Driver service failed to start due to the following error:
The system cannot find the file specified.
Error: (01/16/2019 05:26:42 PM) (Source: Tcpip) (EventID: 4199) (User: )
Description: The system detected an address conflict for IP address 192.168.1.100 with the system
having network hardware address DC-0E-A1-E1-0C-23. Network operations on this system may
be disrupted as a result.
Error: (01/16/2019 05:27:22 PM) (Source: Server) (EventID: 2505) (User: )
Description: The server could not bind to the transport \Device\NetBT_Tcpip_{428ECB01-5BCC-4B16-992C-5DA81CD9FA39} because another computer on the network has the same name. The server could not start.
Error: (01/16/2019 06:52:34 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The NetGroup Packet Filter Driver service failed to start due to the following error:
The system cannot find the file specified.
Error: (01/15/2019 07:19:53 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The NetGroup Packet Filter Driver service failed to start due to the following error:
The system cannot find the file specified.
Error: (01/10/2019 08:07:06 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The NetGroup Packet Filter Driver service failed to start due to the following error:
The system cannot find the file specified.
CodeIntegrity:
===================================
Date: 2018-11-12 07:17:47.586
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sandboxie\SbieDrv.sys because the set of per-page image hashes could not be found on the system.
Date: 2018-11-12 07:17:47.586
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sandboxie\SbieDrv.sys because the set of per-page image hashes could not be found on the system.
Date: 2018-11-12 07:17:47.571
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sandboxie\SbieDrv.sys because the set of per-page image hashes could not be found on the system.
Date: 2018-11-12 07:17:47.212
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sandboxie\SbieDrv.sys because the set of per-page image hashes could not be found on the system.
Date: 2018-11-12 07:17:47.134
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sandboxie\SbieDrv.sys because the set of per-page image hashes could not be found on the system.
Date: 2018-11-12 07:17:47.056
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sandboxie\SbieDrv.sys because the set of per-page image hashes could not be found on the system.
Date: 2018-11-12 06:47:16.320
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sandboxie\SbieDrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2018-11-12 06:47:16.320
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sandboxie\SbieDrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i3 CPU 530 @ 2.93GHz
Percentage of memory in use: 90%
Total physical RAM: 3963.49 MB
Available physical RAM: 364.06 MB
Total Virtual: 7925.18 MB
Available Virtual: 4062.58 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:231.95 GB) (Free:122.03 GB) NTFS
Drive d: () (Fixed) (Total:186.07 GB) (Free:185.75 GB) NTFS
\\?\Volume{e566fc40-3981-11e8-8d79-806e6f6e6963}\ (Rezervováno systémem) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS
\\?\Volume{e566fc42-3981-11e8-8d79-806e6f6e6963}\ () (Fixed) (Total:0.84 GB) (Free:0.82 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: 811594C9)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=231.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=861 MB) - (Type=27)
========================================================
Disk: 1 (Size: 186.3 GB) (Disk ID: 000400A5)
Partition 1: (Not Active) - (Size=186.1 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================
prosím o kontrolu, myš odmítá spolupracovat, přitom ovladače aktuální, system vcelku v normálu.
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 4.02.2019
Ran by Virgill (04-02-2019 08:19:02)
Running from C:\Users\Virgill\Downloads
Windows 7 Ultimate Service Pack 1 (X64) (2018-04-06 10:12:07)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-3750458451-981303790-4038828487-500 - Administrator - Disabled)
Guest (S-1-5-21-3750458451-981303790-4038828487-501 - Limited - Disabled)
Virgill (S-1-5-21-3750458451-981303790-4038828487-1000 - Administrator - Enabled) => C:\Users\Virgill
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: AVG Antivirus (Enabled - Up to date) {4FC75CA5-1654-5411-7CFB-1893D506BCF4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG Antivirus (Enabled - Up to date) {F4A6BD41-306E-5B9F-464B-23E1AE81F649}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 18.01 (x64) (HKLM\...\7-Zip) (Version: 18.01 - Igor Pavlov)
Actionaz 3.8.0 (32 bits) (HKLM-x32\...\{968D7F40-0B23-457D-AD67-0F7C0012EF1E}_is1) (Version: 3.8.0 - Actionaz.org)
Akamai NetSession Interface (HKU\S-1-5-21-3750458451-981303790-4038828487-1000\...\Akamai) (Version: - Akamai Technologies, Inc)
Aliens Colonial Marines (HKLM-x32\...\Aliens Colonial Marines_R.G. Mechanics_is1) (Version: - R.G. Mechanics, Panky)
Auto Keyboard v6.1 (HKLM-x32\...\{71E16EE4-BBED-44A8-8724-9E68D05EE945}_is1) (Version: 6.1 - MurGee.com)
AutoHotkey 1.1.30.01 (HKLM\...\AutoHotkey) (Version: 1.1.30.01 - Lexikos)
AVG AntiVirus FREE (HKLM-x32\...\AVG Antivirus) (Version: 19.1.3075 - AVG Technologies)
Bloody6 (HKLM-x32\...\Bloody3) (Version: 18.10.0001 - Bloody)
CCleaner (HKLM\...\CCleaner) (Version: 5.44 - Piriform)
Cok Free Auto Clicker 2.0 (HKLM-x32\...\Cok Free Auto Clicker_is1) (Version: 2.0 - Cok Software)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd)
Discord (HKU\S-1-5-21-3750458451-981303790-4038828487-1000\...\Discord) (Version: 0.0.301 - Discord Inc.)
Driver Booster 5 (HKLM-x32\...\Driver Booster_is1) (Version: 5.5.1 - IObit)
EVE Online (HKU\S-1-5-21-3750458451-981303790-4038828487-1000\...\{a855ea64-17fc-4621-8088-817c6e5216da}) (Version: 1.0.0 - CCP)
GoldWave v6.31 (HKLM\...\GoldWave v6.31) (Version: 6.31 - GoldWave Inc.)
GoTo Opener (HKLM-x32\...\{1F803452-798F-49FB-A5DD-9F527F7017E4}) (Version: 1.0.473 - LogMeIn, Inc.)
GoToMeeting 8.39.2.11674 (HKU\S-1-5-21-3750458451-981303790-4038828487-1000\...\GoToMeeting) (Version: 8.39.2.11674 - LogMeIn, Inc.)
KeyCommander 1.3.1 (HKLM-x32\...\KeyCommander) (Version: 1.3.1 - fabi.me)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation)
Mozilla Firefox 64.0.2 (x64 cs) (HKLM\...\Mozilla Firefox 64.0.2 (x64 cs)) (Version: 64.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 59.0.2 - Mozilla)
NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation)
Opera Stable 56.0.3051.116 (HKLM-x32\...\Opera 56.0.3051.116) (Version: 56.0.3051.116 - Opera Software)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.994 - Even Balance, Inc.)
pyfa version 2.5.0b1 (YC120.8 1.0) (HKLM-x32\...\{3DA39096-C08D-49CD-90E0-1D177F32C8AA}_is1) (Version: 2.5.0b1 (YC120.8 1.0) - pyfa)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8549 - Realtek Semiconductor Corp.)
ReMouse Micro (HKLM-x32\...\ReMouse Micro_is1) (Version: Micro V4.0 - AutomaticSolution Software)
Sandboxie 5.22 (64-bit) (HKLM\...\Sandboxie) (Version: 5.22 - Sandboxie Holdings, LLC)
Skype version 8.29 (HKLM-x32\...\Skype_is1) (Version: 8.29 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKU\S-1-5-21-3750458451-981303790-4038828487-1000\...\TeamSpeak 3 Client) (Version: 3.0.19.4 - TeamSpeak Systems GmbH)
TeamViewer 14 (HKLM-x32\...\TeamViewer) (Version: 14.1.3399 - TeamViewer)
The Lord of the Rings Online™ v1903.0058.2732.4095 (HKLM-x32\...\12bbe590-c890-11d9-9669-0800200c9a66_is1) (Version: 1903.0058.2732.4095 - Standing Stone Games, LLC)
Total Commander 64+32-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.10 - Ghisler Software GmbH)
Uplay (HKLM-x32\...\Uplay) (Version: 58.0 - Ubisoft)
WinRAR 5.50 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-01-28] (Igor Pavlov)
ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2019-01-19] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-01-28] (Igor Pavlov)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2018-02-23] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-01-28] (Igor Pavlov)
ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2019-01-19] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {101AFC1F-385B-4C85-9233-96B637E6DC1A} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [2019-01-19] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
Task: {31CE8820-DEC3-44FE-AF5E-5341094DE701} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-06-24] (Piriform Ltd -> Piriform Ltd)
Task: {33DAF243-3C26-4503-8A14-B38DCBE438FB} - System32\Tasks\Driver Booster SkipUAC (Virgill) => C:\Program Files (x86)\IObit\Driver Booster\5.5.1\DriverBooster.exe [2018-07-17] (IObit Information Technology -> IObit)
Task: {582D6876-09D2-4858-9680-ADA581D3177F} - System32\Tasks\update-S-1-5-21-3750458451-981303790-4038828487-1000 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {7E620777-3F47-4547-8BFA-6A7F0A779454} - System32\Tasks\{2C9D620B-59DD-4BC0-B514-879AECD29A76} => C:\Windows\system32\pcalua.exe -a C:\Users\Virgill\Downloads\arcanumcz-full.exe -d C:\Users\Virgill\Downloads
Task: {8699578C-7053-4B54-BCEE-C59CCF011286} - System32\Tasks\G2MUpdateTask-S-1-5-21-3750458451-981303790-4038828487-1000 => C:\Users\Virgill\AppData\Local\GoToMeeting\11674\g2mupdate.exe [2019-02-02] (LogMeIn, Inc. -> LogMeIn, Inc.)
Task: {9E2D5D21-335E-4DE0-95BE-5E4049E0A0C6} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-06-24] (Piriform Ltd -> Piriform Ltd)
Task: {A4FFC47B-0187-4E2F-B064-169764DDA071} - System32\Tasks\Opera scheduled Autoupdate 1523012796 => C:\Program Files\Opera\launcher.exe [2018-11-26] (Opera Software AS -> Opera Software)
Task: {A897DE4B-C40C-4A4C-84E6-1B7431D8BE4E} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\5.5.1\Scheduler.exe [2018-07-17] (IObit Information Technology -> IObit)
Task: {A937A1EB-103E-402B-A6B3-E92BE4AE1D0C} - System32\Tasks\G2MUploadTask-S-1-5-21-3750458451-981303790-4038828487-1000 => C:\Users\Virgill\AppData\Local\GoToMeeting\11674\g2mupload.exe [2019-02-02] (LogMeIn, Inc. -> LogMeIn, Inc.)
Task: {DADA697C-FC58-4389-89FD-C5C2F0337485} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {EEF6ED9C-DA56-4831-B147-DFAAD7100F51} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [2019-01-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-3750458451-981303790-4038828487-1000.job => C:\Users\Virgill\AppData\Local\GoToMeeting\11674\g2mupdate.exe
Task: C:\Windows\Tasks\G2MUploadTask-S-1-5-21-3750458451-981303790-4038828487-1000.job => C:\Users\Virgill\AppData\Local\GoToMeeting\11674\g2mupload.exe
Task: C:\Windows\Tasks\update-S-1-5-21-3750458451-981303790-4038828487-1000.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\Windows\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
==================== Loaded Modules (Whitelisted) ==============
2019-01-19 18:51 - 2019-01-19 18:51 - 000662960 _____ () C:\Program Files\AVG\Antivirus\streamback.dll
2019-02-04 06:51 - 2019-02-04 06:51 - 006953672 _____ () C:\Program Files\AVG\Antivirus\defs\19020304\algo64.dll
2019-01-19 18:51 - 2019-01-19 18:51 - 000550832 _____ () C:\Program Files\AVG\Antivirus\gui_cache.dll
2019-01-19 18:51 - 2019-01-19 18:51 - 001967536 _____ () C:\Program Files\AVG\Antivirus\shepherdsync.dll
2018-08-16 09:30 - 2018-08-16 09:30 - 000076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2019-01-19 18:51 - 2019-01-19 18:51 - 093696960 _____ () C:\Program Files\AVG\Antivirus\libcef.dll
2019-02-04 07:49 - 2018-10-05 08:50 - 016443120 ____N () C:\Program Files (x86)\Bloody6\Bloody6\Bloody6.exe
2018-06-24 12:26 - 2018-06-24 12:26 - 000084808 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2019-02-04 07:50 - 2018-01-26 10:50 - 000103152 ____N () C:\Program Files (x86)\Bloody6\Bloody6\DLL\DLL_ZoomControl.dll
2019-02-04 07:50 - 2017-04-17 09:43 - 003852800 ____N () C:\Program Files (x86)\Bloody6\Bloody6\Data\RES\Forms\Internet_Advertisement\Internet_Advertisement_DLL.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2018-12-03 19:32 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3750458451-981303790-4038828487-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Virgill\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 185.147.250.13 - 185.147.250.14
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
If an entry is included in the fixlist, it will be removed.
MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: Discord => C:\Users\Virgill\AppData\Local\Discord\app-0.0.301\Discord.exe
MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{0AFE4862-6F63-4B15-BC82-49D3270CD47A}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{6644E874-9026-4432-8BF2-F0FA09681D8E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{858A0103-95D1-44DD-8CC5-89524C0C2D74}C:\users\virgill\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\virgill\appdata\local\akamai\netsession_win.exe (Akamai Technologies, Inc. -> Akamai Technologies, Inc.)
FirewallRules: [UDP Query User{03437D70-8B8F-426C-ADE4-8A0BF185F46C}C:\users\virgill\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\virgill\appdata\local\akamai\netsession_win.exe (Akamai Technologies, Inc. -> Akamai Technologies, Inc.)
FirewallRules: [TCP Query User{BCA1691E-71E5-4D78-9104-51ADF5FA588D}C:\rulez\lotro\lotroclient.exe] => (Allow) C:\rulez\lotro\lotroclient.exe (Standing Stone Games, LLC.)
FirewallRules: [UDP Query User{3934B692-D28F-4998-B6D9-DC87E6AC20B2}C:\rulez\lotro\lotroclient.exe] => (Allow) C:\rulez\lotro\lotroclient.exe (Standing Stone Games, LLC.)
FirewallRules: [TCP Query User{52EF2886-6503-4B6D-9D35-36F6A35F96F5}C:\users\virgill\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\virgill\appdata\local\akamai\netsession_win.exe (Akamai Technologies, Inc. -> Akamai Technologies, Inc.)
FirewallRules: [UDP Query User{B81E49CF-EBD1-45CF-B7BF-7E9B389810FD}C:\users\virgill\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\virgill\appdata\local\akamai\netsession_win.exe (Akamai Technologies, Inc. -> Akamai Technologies, Inc.)
FirewallRules: [{CFC6CB4D-92DD-4CE6-A8D8-03BA660FD588}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{A3F05935-FC59-4968-B0F3-262F8B3CBE1F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{FFCD49BC-7947-4E3A-86BC-2B1CB9C33BC6}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{B5AF05A6-070C-4F35-9FE0-F55C1E680ECD}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{8D45DDF1-F208-4C57-9CD1-635921FE7AE4}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.5.1\DriverBooster.exe (IObit Information Technology -> IObit)
FirewallRules: [{9D99E127-35BB-49CA-8AFA-2CFDA65792F7}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.5.1\DriverBooster.exe (IObit Information Technology -> IObit)
FirewallRules: [{3F440024-4556-47DC-82CD-BAC7D49BA374}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.5.1\DBDownloader.exe (IObit Information Technology -> IObit)
FirewallRules: [{17AF3A5C-2DA9-4DFD-A812-B38602574457}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.5.1\DBDownloader.exe (IObit Information Technology -> IObit)
FirewallRules: [{785231B1-43FA-449E-A04B-677AFEEA936D}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.5.1\AutoUpdate.exe (IObit Information Technology -> IObit)
FirewallRules: [{1B10F87B-E20D-4958-95AC-D97D3BE93B78}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.5.1\AutoUpdate.exe (IObit Information Technology -> IObit)
FirewallRules: [{EB19A4ED-507A-40D0-886A-E267A22F0AD2}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd -> Piriform Ltd)
FirewallRules: [{CD295741-42FD-4710-B568-E8F1B198507E}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd -> Piriform Ltd)
FirewallRules: [{62D517FC-1B13-48B0-A8A0-322111200F0D}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{9DEF38D6-FE89-481C-9618-E2BC9B5FB51D}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{FC34DEF1-3474-4460-881B-CDF36B132F66}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{2CDEA9F2-D138-44C4-B014-C28211805186}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [TCP Query User{E40A58DB-E40B-4F76-8C00-820FB8C5816F}C:\rulez\am\aliens colonial marines\binaries\win32\acm.exe] => (Allow) C:\rulez\am\aliens colonial marines\binaries\win32\acm.exe (Valve Corporation -> SEGA Corporation)
FirewallRules: [UDP Query User{11FDF7FA-2C74-47F0-837C-FE95D3C6CA6E}C:\rulez\am\aliens colonial marines\binaries\win32\acm.exe] => (Allow) C:\rulez\am\aliens colonial marines\binaries\win32\acm.exe (Valve Corporation -> SEGA Corporation)
FirewallRules: [{D4FB539C-ECA7-4856-AC5D-3351B15B0719}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{5EEDECD6-2754-4FBE-A5BB-85075C570F28}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{85F6DE95-6940-4E55-A145-0B2C0A661DFB}C:\rulez\bsgo\launcher\launcher.exe] => (Allow) C:\rulez\bsgo\launcher\launcher.exe No File
FirewallRules: [UDP Query User{F9B5121D-A2A5-456E-A82C-F3CA77A85A3A}C:\rulez\bsgo\launcher\launcher.exe] => (Allow) C:\rulez\bsgo\launcher\launcher.exe No File
FirewallRules: [{BC679100-1FA5-4025-97EA-8CED23CC9E9A}] => (Allow) C:\Program Files\Opera\56.0.3051.104\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{1262BF53-B29F-4FD6-8680-55E4145B9E57}] => (Allow) C:\Program Files\Opera\56.0.3051.116\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{6E914660-7EC6-4CBD-BCAD-4411160385FD}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{E54558BD-7978-4438-A7EA-29ACF382FCC5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{C7173121-F702-47B0-B177-1A56D3495212}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{533400F1-97B9-4758-AF75-03EA22476129}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{6142E86A-87F5-400F-84C9-2446A39B7DC4}] => (Allow) C:\Program Files\AVG\Antivirus\AvEmUpdate.exe (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
FirewallRules: [{BA4D2F96-2170-4705-8D26-98AF2D9C8862}] => (Allow) C:\Program Files\AVG\Antivirus\AvEmUpdate.exe (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
==================== Restore Points =========================
19-01-2019 18:53:33 Driver Booster : Realtek High Definition Audio
30-01-2019 04:01:17 Scheduled Checkpoint
04-02-2019 07:42:51 Removed Mumble 1.2.19
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (02/04/2019 07:57:16 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (02/04/2019 07:03:57 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (02/04/2019 06:56:37 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (02/04/2019 06:51:07 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/m ... ootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.
Error: (02/03/2019 06:48:57 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (02/02/2019 03:16:56 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/m ... ootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.
Error: (02/02/2019 06:26:11 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (02/01/2019 01:35:35 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/m ... ootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.
System errors:
=============
Error: (01/24/2019 06:47:54 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The AVG Antivirus service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.
Error: (01/18/2019 06:47:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The NetGroup Packet Filter Driver service failed to start due to the following error:
The system cannot find the file specified.
Error: (01/17/2019 04:50:41 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The NetGroup Packet Filter Driver service failed to start due to the following error:
The system cannot find the file specified.
Error: (01/16/2019 05:26:42 PM) (Source: Tcpip) (EventID: 4199) (User: )
Description: The system detected an address conflict for IP address 192.168.1.100 with the system
having network hardware address DC-0E-A1-E1-0C-23. Network operations on this system may
be disrupted as a result.
Error: (01/16/2019 05:27:22 PM) (Source: Server) (EventID: 2505) (User: )
Description: The server could not bind to the transport \Device\NetBT_Tcpip_{428ECB01-5BCC-4B16-992C-5DA81CD9FA39} because another computer on the network has the same name. The server could not start.
Error: (01/16/2019 06:52:34 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The NetGroup Packet Filter Driver service failed to start due to the following error:
The system cannot find the file specified.
Error: (01/15/2019 07:19:53 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The NetGroup Packet Filter Driver service failed to start due to the following error:
The system cannot find the file specified.
Error: (01/10/2019 08:07:06 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The NetGroup Packet Filter Driver service failed to start due to the following error:
The system cannot find the file specified.
CodeIntegrity:
===================================
Date: 2018-11-12 07:17:47.586
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sandboxie\SbieDrv.sys because the set of per-page image hashes could not be found on the system.
Date: 2018-11-12 07:17:47.586
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sandboxie\SbieDrv.sys because the set of per-page image hashes could not be found on the system.
Date: 2018-11-12 07:17:47.571
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sandboxie\SbieDrv.sys because the set of per-page image hashes could not be found on the system.
Date: 2018-11-12 07:17:47.212
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sandboxie\SbieDrv.sys because the set of per-page image hashes could not be found on the system.
Date: 2018-11-12 07:17:47.134
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sandboxie\SbieDrv.sys because the set of per-page image hashes could not be found on the system.
Date: 2018-11-12 07:17:47.056
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sandboxie\SbieDrv.sys because the set of per-page image hashes could not be found on the system.
Date: 2018-11-12 06:47:16.320
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sandboxie\SbieDrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2018-11-12 06:47:16.320
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Sandboxie\SbieDrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i3 CPU 530 @ 2.93GHz
Percentage of memory in use: 90%
Total physical RAM: 3963.49 MB
Available physical RAM: 364.06 MB
Total Virtual: 7925.18 MB
Available Virtual: 4062.58 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:231.95 GB) (Free:122.03 GB) NTFS
Drive d: () (Fixed) (Total:186.07 GB) (Free:185.75 GB) NTFS
\\?\Volume{e566fc40-3981-11e8-8d79-806e6f6e6963}\ (Rezervováno systémem) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS
\\?\Volume{e566fc42-3981-11e8-8d79-806e6f6e6963}\ () (Fixed) (Total:0.84 GB) (Free:0.82 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: 811594C9)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=231.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=861 MB) - (Type=27)
========================================================
Disk: 1 (Size: 186.3 GB) (Disk ID: 000400A5)
Partition 1: (Not Active) - (Size=186.1 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================