Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Can Not Download Virus Definitions for Any Program ...


  • Please log in to reply
11 replies to this topic

#1 Blinkstar

Blinkstar

  • Members
  • 53 posts
  • OFFLINE
  •  
  • Local time:06:13 AM

Posted 14 September 2015 - 06:25 PM

My Windows 7 64 bit desktop has been acting oddly lately ... programs not opening or hanging, keyboard slow, etc ... Today I tried some online scanners and I couldn't download virus definitons for any of them. I would get messages like "Could Not Find Proxy Server" or "Problem with connection." Same thing happened when I tried downloading Malwarebytes to install on my PC....

 

But when I tried downloading a movie trailer ... it downloaded just fine.

 

Advice?

 

EDIT: Just tried downloading Trend Micro Online with my laptop ... no problem. So I don't think it is my connection.

 

EDIT AGAIN: Spoke too soon. Trend Micro download only partially completed on my laptop. Keeps stalling out.


Edited by Blinkstar, 14 September 2015 - 06:46 PM.


BC AdBot (Login to Remove)

 


#2 Aura

Aura

    Bleepin' Special Ops


  • Malware Response Team
  • 19,633 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:13 AM

Posted 14 September 2015 - 07:55 PM

Hi Blinkstar :)

My name is Aura and I'll be assisting you with your issue. Follow the instructions below please.

3Al62Pm.pngMiniToolBox
  • Download MiniToolBox and move the executable file to your Desktop;
  • Right-click on MiniToolBox.exe and select Spcusrh.pngRun as Administrator;
  • Check the following options:
    • Flush DNS;
    • Report IE Proxy Settings;
    • Reset IE Proxy Settings;
    • Report FF Proxy Settings;
    • Reset FF Proxy Settings;
    • List content of Hosts;
    • List IP Configuration;
    • List Last 10 Event Viewer Errors;
    • List Installed Programs;
    • List Devices - Only Problems;
    • List Users, Partitions and Memory size;
      B8oLpa3.png
  • Once this is done, click on Go and wait for the scan to complete;
  • Once the scan is complete, a log will open. Please copy/paste the content of the output log in your next reply;

unite_blue.png
Security Administrator | Sysnative Windows Update Senior Analyst | Malware Hunter | @SecurityAura
My timezone UTC-05:00 (East. Coast). If I didn't reply to you within 48 hours, please send me a PM.


#3 Blinkstar

Blinkstar
  • Topic Starter

  • Members
  • 53 posts
  • OFFLINE
  •  
  • Local time:06:13 AM

Posted 30 September 2015 - 07:37 PM

Hi Aura!

 

I had a bit of a family emergency. Sorry I took so long to get back to this!

 

I have done as you asked and here is the log:

 

Hi Blinkstar :)

My name is Aura and I'll be assisting you with your issue. Follow the instructions below please.

3Al62Pm.pngMiniToolBox

  • Download MiniToolBox and move the executable file to your Desktop;
  • Right-click on MiniToolBox.exe and select Spcusrh.pngRun as Administrator;
  • Check the following options:
    • Flush DNS;
    • Report IE Proxy Settings;
    • Reset IE Proxy Settings;
    • Report FF Proxy Settings;
    • Reset FF Proxy Settings;
    • List content of Hosts;
    • List IP Configuration;
    • List Last 10 Event Viewer Errors;
    • List Installed Programs;
    • List Devices - Only Problems;
    • List Users, Partitions and Memory size;
      B8oLpa3.png
  • Once this is done, click on Go and wait for the scan to complete;
  • Once the scan is complete, a log will open. Please copy/paste the content of the output log in your next reply;

 

MiniToolBox by Farbar  Version: 25-07-2015 01
Ran by Bob! (administrator) on 01-10-2015 at 08:33:46
Running from "C:\Users\Bob!\Desktop"
Microsoft Windows 7 Ultimate  Service Pack 1 (X64)
Model: MS-7918 Manufacturer: MSI
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================

"network.proxy.type", 0

"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================


127.0.0.1                   activate.adobe.com
127.0.0.1                   practivate.adobe.com
127.0.0.1                   lmlicenses.wip4.adobe.com
127.0.0.1                   lm.licenses.adobe.com
127.0.0.1                   na1r.services.adobe.com
127.0.0.1                   hlrcv.stage.adobe.com

========================= IP Configuration: ================================

Killer e2200 PCI-E Gigabit Ethernet Controller (NDIS 6.20) = Local Area Connection (Connected)
PdaNet Broadband Adapter = Local Area Connection 2 (Hardware not present)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled


popd
# End of IPv4 configuration



Windows IP Configuration

   Host Name . . . . . . . . . . . . : BRAIN
   Primary Dns Suffix  . . . . . . . :
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : hsd1.or.comcast.net

Ethernet adapter Local Area Connection:

   Connection-specific DNS Suffix  . : hsd1.or.comcast.net
   Description . . . . . . . . . . . : Killer e2200 PCI-E Gigabit Ethernet Controller (NDIS 6.20)
   Physical Address. . . . . . . . . : 44-8A-5B-D2-A4-4D
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2601:1c2:b00:5dee:3de8:a7b8:5bd4:eb65(Preferred)
   Temporary IPv6 Address. . . . . . : 2601:1c2:b00:5dee:e4d1:77c9:e7ea:df83(Preferred)
   Link-local IPv6 Address . . . . . : fe80::3de8:a7b8:5bd4:eb65%11(Preferred)
   IPv4 Address. . . . . . . . . . . : 192.168.1.189(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Thursday, October 01, 2015 8:25:52 AM
   Lease Expires . . . . . . . . . . : Friday, October 02, 2015 8:25:52 AM
   Default Gateway . . . . . . . . . : fe80::c256:27ff:fe76:9b%11
                                       192.168.1.1
   DHCP Server . . . . . . . . . . . : 192.168.1.1
   DHCPv6 IAID . . . . . . . . . . . : 239372891
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-1C-3F-A1-22-44-8A-5B-D2-A4-4D
   DNS Servers . . . . . . . . . . . : 2601:1c2:b00:5dee:c256:27ff:fe76:9b
                                       192.168.1.1
   NetBIOS over Tcpip. . . . . . . . : Enabled
   Connection-specific DNS Suffix Search List :
                                       hsd1.or.comcast.net

Tunnel adapter isatap.hsd1.or.comcast.net:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : hsd1.or.comcast.net
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Local Area Connection* 11:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
DNS request timed out.
    timeout was 2 seconds.
Server:  UnKnown
Address:  2601:1c2:b00:5dee:c256:27ff:fe76:9b

Name:    google.com
Addresses:  2607:f8b0:400a:803::1004
      173.194.33.160
      173.194.33.168
      173.194.33.169
      173.194.33.163
      173.194.33.174
      173.194.33.162
      173.194.33.166
      173.194.33.167
      173.194.33.164
      173.194.33.161
      173.194.33.165


Pinging google.com [2607:f8b0:400a:803::1004] with 32 bytes of data:
Reply from 2607:f8b0:400a:803::1004: time=12ms
Reply from 2607:f8b0:400a:803::1004: time=14ms

Ping statistics for 2607:f8b0:400a:803::1004:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 12ms, Maximum = 14ms, Average = 13ms
Server:  UnKnown
Address:  2601:1c2:b00:5dee:c256:27ff:fe76:9b

Name:    yahoo.com
Addresses:  2001:4998:58:c02::a9
      2001:4998:44:204::a7
      2001:4998:c:a06::2:4008
      98.139.183.24
      98.138.253.109
      206.190.36.45


Pinging yahoo.com [2001:4998:c:a06::2:4008] with 32 bytes of data:
Reply from 2001:4998:c:a06::2:4008: time=15ms
Reply from 2001:4998:c:a06::2:4008: time=17ms

Ping statistics for 2001:4998:c:a06::2:4008:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 15ms, Maximum = 17ms, Average = 16ms

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time=26ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 26ms, Average = 13ms
===========================================================================
Interface List
 11...44 8a 5b d2 a4 4d ......Killer e2200 PCI-E Gigabit Ethernet Controller (NDIS 6.20)
  1...........................Software Loopback Interface 1
 16...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
 12...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0      192.168.1.1    192.168.1.189     10
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
      192.168.1.0    255.255.255.0         On-link     192.168.1.189    266
    192.168.1.189  255.255.255.255         On-link     192.168.1.189    266
    192.168.1.255  255.255.255.255         On-link     192.168.1.189    266
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link     192.168.1.189    266
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link     192.168.1.189    266
===========================================================================
Persistent Routes:
  None

IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
 11    266 ::/0                     fe80::c256:27ff:fe76:9b
  1    306 ::1/128                  On-link
 11     18 2601:1c2:b00:5dee::/64   On-link
 11     26 2601:1c2:b00:5dee::/64   fe80::c256:27ff:fe76:9b
 11    266 2601:1c2:b00:5dee:3de8:a7b8:5bd4:eb65/128
                                    On-link
 11    266 2601:1c2:b00:5dee:e4d1:77c9:e7ea:df83/128
                                    On-link
 11    266 fe80::/64                On-link
 11    266 fe80::3de8:a7b8:5bd4:eb65/128
                                    On-link
  1    306 ff00::/8                 On-link
 11    266 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None

========================= Event log errors: ===============================

Application errors:
==================
Error: (10/01/2015 08:27:46 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (10/01/2015 08:25:54 AM) (Source: Application Error) (User: )
Description: Faulting application name: AnyDVDtray.exe, version: 7.6.2.0, time stamp: 0x55acf379
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x8bfe03f8
Faulting process id: 0xbe4
Faulting application start time: 0xAnyDVDtray.exe0
Faulting application path: AnyDVDtray.exe1
Faulting module path: AnyDVDtray.exe2
Report Id: AnyDVDtray.exe3

Error: (10/01/2015 08:25:52 AM) (Source: Winlogon) (User: )
Description: Windows license activation failed. Error 0x80070005.

Error: (10/01/2015 07:40:02 AM) (Source: MsiInstaller) (User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.

Error: (10/01/2015 07:38:51 AM) (Source: Application Error) (User: )
Description: Faulting application name: AnyDVDtray.exe, version: 7.6.2.0, time stamp: 0x55acf379
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x8bfe03f8
Faulting process id: 0xbc0
Faulting application start time: 0xAnyDVDtray.exe0
Faulting application path: AnyDVDtray.exe1
Faulting module path: AnyDVDtray.exe2
Report Id: AnyDVDtray.exe3

Error: (10/01/2015 07:38:49 AM) (Source: Winlogon) (User: )
Description: Windows license activation failed. Error 0x80070005.

Error: (10/01/2015 07:38:13 AM) (Source: MsiInstaller) (User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.

Error: (10/01/2015 07:37:28 AM) (Source: MsiInstaller) (User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.

Error: (10/01/2015 07:29:42 AM) (Source: MsiInstaller) (User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.

Error: (10/01/2015 07:28:34 AM) (Source: MsiInstaller) (User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.


System errors:
=============
Error: (10/01/2015 08:26:11 AM) (Source: Service Control Manager) (User: )
Description: The Peer Name Resolution Protocol service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/01/2015 08:26:11 AM) (Source: Service Control Manager) (User: )
Description: The Peer Networking Grouping service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/01/2015 08:26:11 AM) (Source: Service Control Manager) (User: )
Description: The Peer Name Resolution Protocol service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/01/2015 08:26:11 AM) (Source: Service Control Manager) (User: )
Description: The Peer Networking Grouping service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/01/2015 08:26:11 AM) (Source: Service Control Manager) (User: )
Description: The Peer Name Resolution Protocol service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/01/2015 08:26:11 AM) (Source: Service Control Manager) (User: )
Description: The Peer Networking Grouping service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/01/2015 08:25:59 AM) (Source: Service Control Manager) (User: )
Description: The Peer Name Resolution Protocol service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/01/2015 08:25:59 AM) (Source: Service Control Manager) (User: )
Description: The Peer Networking Grouping service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/01/2015 08:25:53 AM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
prodrv06
prohlp02
prosync1
PxHlpa64
sfhlp01

Error: (10/01/2015 08:25:48 AM) (Source: Application Popup) (User: )
Description: \SystemRoot\SysWow64\drivers\prodrv06.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.


Microsoft Office Sessions:
=========================
Error: (10/01/2015 08:27:46 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (10/01/2015 08:25:54 AM) (Source: Application Error)(User: )
Description: AnyDVDtray.exe7.6.2.055acf379unknown0.0.0.000000000c00000058bfe03f8be401d0fbdfbb48f5edC:\Program Files (x86)\SlySoft\AnyDVD\AnyDVDtray.exeunknownf983c89f-67d2-11e5-a174-448a5bd2a44d

Error: (10/01/2015 08:25:52 AM) (Source: Winlogon)(User: )
Description: 0x800700050x00000000

Error: (10/01/2015 07:40:02 AM) (Source: MsiInstaller)(User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (10/01/2015 07:38:51 AM) (Source: Application Error)(User: )
Description: AnyDVDtray.exe7.6.2.055acf379unknown0.0.0.000000000c00000058bfe03f8bc001d0fbd928b53703C:\Program Files (x86)\SlySoft\AnyDVD\AnyDVDtray.exeunknown67071465-67cc-11e5-8020-448a5bd2a44d

Error: (10/01/2015 07:38:49 AM) (Source: Winlogon)(User: )
Description: 0x800700050x00000000

Error: (10/01/2015 07:38:13 AM) (Source: MsiInstaller)(User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (10/01/2015 07:37:28 AM) (Source: MsiInstaller)(User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (10/01/2015 07:29:42 AM) (Source: MsiInstaller)(User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (10/01/2015 07:28:34 AM) (Source: MsiInstaller)(User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.(NULL)(NULL)(NULL)(NULL)(NULL)


=========================== Installed Programs ============================

"Homefront" (HKLM-x32\...\{30CA29BE-BC36-4E92-9001-3D0A963D1958}_is1) (Version: 1.5.500001.0 - )
«The Elder Scrolls V - Skyrim»  1.9.32.0.8 (HKLM-x32\...\The Elder Scrolls V - Skyrim_is1) (Version: 1.9.32.0.8 - Bethesda Softworks)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Among the sleep (HKLM-x32\...\Among the sleep_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, markfiter)
Android SDK Tools (HKLM-x32\...\Android SDK Tools) (Version: 1.16 - Google Inc.)
AnyDVD (HKLM-x32\...\AnyDVD) (Version: 7.6.2.0 - SlySoft)
Auzen X-Fi Prelude 7.1 (HKLM-x32\...\{DA7D5E4A-7AEA-45BE-AA03-3748282DFB09}) (Version: 1.0 - )
Beard and Hairstyle Set (HKLM-x32\...\Beard and Hairstyle Set_is1) (Version: 1.0.0.0 - GOG.com)
BitComet 1.37 64-bit (HKLM-x32\...\BitComet_x64) (Version: 1.37 - CometNetwork)
CCleaner (HKLM\...\CCleaner) (Version: 5.02 - Piriform)
Cheat Engine 6.3 (HKLM-x32\...\Cheat Engine 6.3_is1) (Version:  - Cheat Engine)
Cheat Engine 6.4 (HKLM-x32\...\Cheat Engine 6.4_is1) (Version:  - Cheat Engine)
Condemned - Criminal Origins (HKLM-x32\...\Condemned - Criminal Origins_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)
DayZ Commander (HKLM-x32\...\{7B2CA5E9-763C-4FCE-81EE-13E81ABFE908}) (Version: 0.92.115 - Dotjosh Studios)
Dolby Digital Live Pack (HKLM-x32\...\Dolby Digital Live Pack) (Version: 3.03 - Creative Technology Limited)
DVD Decrypter (Remove Only) (HKLM-x32\...\DVD Decrypter) (Version:  - )
Dying Light (HKLM-x32\...\RHlpbmdMaWdodA==_is1) (Version: 1 - )
EasyCleaner (HKLM-x32\...\{F5346614-B7C4-4E94-826A-E2363155233D}) (Version: 2.0.6.380 - ToniArts)
Elements 12 Organizer (HKLM-x32\...\{9D80A7B7-DC01-485D-AE93-710D559B5C56}) (Version: 12.0 - Adobe Systems Incorporated) Hidden
FEAR (HKLM-x32\...\{2B653229-9854-4989-B780-D978F5F13EAB}) (Version: 1.00.0000 - Vivendi Universal Games, Inc.)
Flawless Widescreen version 1.0.15 (HKLM-x32\...\{7348D82E-8C68-48FF-BA2D-8C97B5B4B3D8}_is1) (Version: 1.0.15 - Flawless Widescreen)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 7.1.0.306 - Foxit Software Inc.)
FreePIE (HKLM-x32\...\{7D420331-BCBA-4B8C-8448-6E9829403BA6}) (Version: 1.8.569.0 - FreePIE)
GnuWin32: Arc version 5.21j-1 (HKLM-x32\...\Arc-5.21j-1_is1) (Version: 5.21j-1 - GnuWin32)
Grand Theft Auto V (HKLM-x32\...\Grand Theft Auto V_is1) (Version:  - )
GZ3Doom 1.8.6_k (HKLM-x32\...\GZ3Doom 1.8.6_k) (Version: 1.8.6_k - zdoom.org)
Hex Workshop v6.7 (HKLM\...\{A47DAFC0-AF57-4462-BD40-B3F02F33CB40}) (Version: 6.7.3.5308 - BreakPoint Software)
HxD Hex Editor version 1.7.7.0 (HKLM-x32\...\HxD Hex Editor_is1) (Version: 1.7.7.0 - Maël Hörz)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Kholat (HKLM-x32\...\Kholat_is1) (Version:  - )
K-Lite Codec Pack 11.4.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 11.4.0 - )
Logitech SetPoint 6.65 (HKLM\...\sp6) (Version: 6.65.62 - Logitech)
Logitech Unifying Software 2.50 (HKLM\...\Logitech Unifying) (Version: 2.50.25 - Logitech)
LOOT (HKLM-x32\...\LOOT) (Version: 0.6.1 - LOOT Development Team)
Mad Max (HKLM-x32\...\Mad Max_is1) (Version:  - )
Metal Gear Solid 5: The Phantom Pain (HKLM-x32\...\Metal Gear Solid 5: The Phantom Pain_is1) (Version:  - )
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Monitor Asset Manager (HKLM-x32\...\{AD0BBBFD-C5E9-4214-A863-E83313D67C0C}_is1) (Version:  - EnTech Taiwan)
Mozilla Firefox 41.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 41.0.1 (x86 en-US)) (Version: 41.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 41.0.1.5750 - Mozilla)
MyHarmony (HKCU\...\036a0e4fc6a247ec) (Version: 1.0.1.257 - Logitech)
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.53.2 - Black Tree Gaming)
Not A Hero (HKLM-x32\...\1429698467_is1) (Version: 2.0.0.1 - GOG.com)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.7.3 - Notepad++ Team)
NVIDIA GeForce Experience 2.4.1.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.1.21 - NVIDIA Corporation)
NVIDIA Graphics Driver 355.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 355.82 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Open 3D Model Viewer (HKLM-x32\...\{EBDFEC36-5277-454F-875B-F0AA2CDC3C92}) (Version: 1.10.0000 - Alexander Gessler)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
paint.net (HKLM\...\{19BD2C33-16A8-4ED1-B9EA-D9E35B21EC42}) (Version: 4.0.5 - dotPDN LLC)
PC Tools Firewall Plus 7.0 (HKLM-x32\...\PC Tools Firewall Plus) (Version: 7.0 - PC Tools)
PdaNet+ for Android 4.18 (HKLM-x32\...\PdaNet_is1) (Version:  - June Fabrics Technology Inc)
PeerBlock 1.2 (r693) (HKLM\...\{015C5B35-B678-451C-9AEE-821E8D69621C}_is1) (Version: 1.2.0.693 - PeerBlock, LLC)
PowerISO (HKLM-x32\...\PowerISO) (Version: 6.1 - Power Software Ltd)
PRE12 STI 64Installer (HKLM-x32\...\{06934A7E-D27F-4C5C-9D93-9715E274D736}) (Version: 12.0 - Adobe Systems Incorporated) Hidden
Process Hacker 2.35 (r5898) (HKLM\...\Process_Hacker2_is1) (Version: 2.35.0.5898 - wj32)
Project Zomboid (HKLM-x32\...\Project Zomboid_R.G. Gamblers_is1) (Version:  - R.G. Gamblers, Fanfar)
QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.)
RAD Video Tools (HKLM-x32\...\RADVideo) (Version:  - )
RadeonPro 1.0 (Build 1.1.1.0) (HKLM-x32\...\RadeonPro_is1) (Version:  - )
RAMMon V1.0 (HKLM\...\{D0E36B69-687C-43B3-93BA-5E4B6E531023}_is1) (Version: 1.0 - PassMark Software)
Redneck Rampage Collection (HKLM-x32\...\Redneck Rampage Collection_is1) (Version:  - GOG.com)
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games)
Ryse - Son of Rome (HKLM-x32\...\Ryse - Son of Rome_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.45.0 - SAMSUNG Electronics Co., Ltd.)
Sanitarium (HKLM-x32\...\Sanitarium_is1) (Version:  - GOG.com)
SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 4.1.1000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 2.4.1.21 - NVIDIA Corporation) Hidden
Shockwave (HKLM-x32\...\Shockwave) (Version:  - )
Shutter (HKLM-x32\...\Shutter_is1) (Version: 3.6 - Denis Kozlov)
SixaxisPairTool 0.3.0 (HKLM-x32\...\SixaxisPairTool_is1) (Version: 0.3.0 - Dancing Pixel Studios)
Soldiers - Heroes of World War II (HKLM-x32\...\{FCB29739-3E50-4B12-B459-116ADDC60221}) (Version: 1.00.000 - Codemasters)
SOMA (HKLM\...\U09NQQ==_is1) (Version: 1 - )
StartupSelector (HKLM-x32\...\{1B485419-875B-428D-816B-2F6627815D7A}) (Version: 1.0.0.0 - Mike Lin)
STASIS (HKLM-x32\...\1439548178_is1) (Version: 2.0.0.4 - GOG.com)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Temerian Armor Set (HKLM-x32\...\Temerian Armor Set_is1) (Version: 1.0.0.0 - GOG.com)
The Long Dark (HKLM-x32\...\The Long Dark_is1) (Version: v.183 - Релиз от R.G. Steamgames)
The Vanishing of Ethan Carter Redux (HKLM-x32\...\VGhlVmFuaXNoaW5nb2ZFdGhhbkNhcnRlclJlZHV4_is1) (Version: 1 - )
The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.0.0.0 - GOG.com)
TriDef 3D 6.5 (HKLM-x32\...\essentials-bundle) (Version: 6.5 - Dynamic Digital Depth Australia Pty Ltd)
TriDef 3D Oculus Rift Add-on 1.0b8 (HKLM-x32\...\oculus-rift-bundle) (Version: 1.0b8 - Dynamic Digital Depth Australia Pty Ltd)
Trinus VR version 1.9.2b (HKLM-x32\...\{A66AD08F-FC5B-4583-9A7D-4636F5637B2C}_is1) (Version: 1.9.2b - Odd Sheep Ltd.)
Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation)
Windows Driver Package - Google, Inc. (WinUSB) AndroidUsbDeviceClass  (08/28/2014 11.0.0000.00000) (HKLM\...\092555911492C6959D2596D612F52DCA71881CA2) (Version: 08/28/2014 11.0.0000.00000 - Google, Inc.)
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
WinRAR 5.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH)
X-Fi Prelude 7.1 (HKLM-x32\...\{0282C872-4B44-444B-9818-54FBD7D50ECD}) (Version: 1.0 - Creative Technology Limited)
Zombi (HKLM-x32\...\Zombi_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, markfiter)

========================= Devices: ================================

Name: Universal Serial Bus (USB) Controller
Description: Universal Serial Bus (USB) Controller
Class Guid:
Manufacturer:
Service:
Device ID: PCI\VEN_8086&DEV_8CB1&SUBSYS_79181462&REV_00\3&11583659&0&A0
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: PdaNet Broadband Adapter
Description: PdaNet Broadband Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: June Fabrics Technology Inc.
Service: pneteth
Device ID: ROOT\PNETETH\0000
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: High Definition Audio Device
Description: High Definition Audio Device
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: HdAudAddService
Device ID: HDAUDIO\FUNC_01&VEN_10EC&DEV_0900&SUBSYS_1462D918&REV_1000\4&1FBA59CC&0&0001
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: SM Bus Controller
Description: SM Bus Controller
Class Guid:
Manufacturer:
Service:
Device ID: PCI\VEN_8086&DEV_8CA2&SUBSYS_79181462&REV_00\3&11583659&0&FB
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


========================= Memory info: ===================================

Percentage of memory in use: 23%
Total physical RAM: 8127.81 MB
Available physical RAM: 6247.47 MB
Total Virtual: 16253.83 MB
Available Virtual: 14178.63 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:446.91 GB) (Free:42.81 GB) NTFS

========================= Users: ========================================

User accounts for \\BRAIN

Administrator            Bob!                     Guest                    


**** End of log ****
 

MiniToolBox by Farbar  Version: 25-07-2015 01
Ran by Bob! (administrator) on 01-10-2015 at 08:33:46
Running from "C:\Users\Bob!\Desktop"
Microsoft Windows 7 Ultimate  Service Pack 1 (X64)
Model: MS-7918 Manufacturer: MSI
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================

"network.proxy.type", 0

"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================


127.0.0.1                   activate.adobe.com
127.0.0.1                   practivate.adobe.com
127.0.0.1                   lmlicenses.wip4.adobe.com
127.0.0.1                   lm.licenses.adobe.com
127.0.0.1                   na1r.services.adobe.com
127.0.0.1                   hlrcv.stage.adobe.com

========================= IP Configuration: ================================

Killer e2200 PCI-E Gigabit Ethernet Controller (NDIS 6.20) = Local Area Connection (Connected)
PdaNet Broadband Adapter = Local Area Connection 2 (Hardware not present)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled


popd
# End of IPv4 configuration



Windows IP Configuration

   Host Name . . . . . . . . . . . . : BRAIN
   Primary Dns Suffix  . . . . . . . :
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : hsd1.or.comcast.net

Ethernet adapter Local Area Connection:

   Connection-specific DNS Suffix  . : hsd1.or.comcast.net
   Description . . . . . . . . . . . : Killer e2200 PCI-E Gigabit Ethernet Controller (NDIS 6.20)
   Physical Address. . . . . . . . . : 44-8A-5B-D2-A4-4D
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2601:1c2:b00:5dee:3de8:a7b8:5bd4:eb65(Preferred)
   Temporary IPv6 Address. . . . . . : 2601:1c2:b00:5dee:e4d1:77c9:e7ea:df83(Preferred)
   Link-local IPv6 Address . . . . . : fe80::3de8:a7b8:5bd4:eb65%11(Preferred)
   IPv4 Address. . . . . . . . . . . : 192.168.1.189(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Thursday, October 01, 2015 8:25:52 AM
   Lease Expires . . . . . . . . . . : Friday, October 02, 2015 8:25:52 AM
   Default Gateway . . . . . . . . . : fe80::c256:27ff:fe76:9b%11
                                       192.168.1.1
   DHCP Server . . . . . . . . . . . : 192.168.1.1
   DHCPv6 IAID . . . . . . . . . . . : 239372891
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-1C-3F-A1-22-44-8A-5B-D2-A4-4D
   DNS Servers . . . . . . . . . . . : 2601:1c2:b00:5dee:c256:27ff:fe76:9b
                                       192.168.1.1
   NetBIOS over Tcpip. . . . . . . . : Enabled
   Connection-specific DNS Suffix Search List :
                                       hsd1.or.comcast.net

Tunnel adapter isatap.hsd1.or.comcast.net:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : hsd1.or.comcast.net
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Local Area Connection* 11:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
DNS request timed out.
    timeout was 2 seconds.
Server:  UnKnown
Address:  2601:1c2:b00:5dee:c256:27ff:fe76:9b

Name:    google.com
Addresses:  2607:f8b0:400a:803::1004
      173.194.33.160
      173.194.33.168
      173.194.33.169
      173.194.33.163
      173.194.33.174
      173.194.33.162
      173.194.33.166
      173.194.33.167
      173.194.33.164
      173.194.33.161
      173.194.33.165


Pinging google.com [2607:f8b0:400a:803::1004] with 32 bytes of data:
Reply from 2607:f8b0:400a:803::1004: time=12ms
Reply from 2607:f8b0:400a:803::1004: time=14ms

Ping statistics for 2607:f8b0:400a:803::1004:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 12ms, Maximum = 14ms, Average = 13ms
Server:  UnKnown
Address:  2601:1c2:b00:5dee:c256:27ff:fe76:9b

Name:    yahoo.com
Addresses:  2001:4998:58:c02::a9
      2001:4998:44:204::a7
      2001:4998:c:a06::2:4008
      98.139.183.24
      98.138.253.109
      206.190.36.45


Pinging yahoo.com [2001:4998:c:a06::2:4008] with 32 bytes of data:
Reply from 2001:4998:c:a06::2:4008: time=15ms
Reply from 2001:4998:c:a06::2:4008: time=17ms

Ping statistics for 2001:4998:c:a06::2:4008:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 15ms, Maximum = 17ms, Average = 16ms

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time=26ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 26ms, Average = 13ms
===========================================================================
Interface List
 11...44 8a 5b d2 a4 4d ......Killer e2200 PCI-E Gigabit Ethernet Controller (NDIS 6.20)
  1...........................Software Loopback Interface 1
 16...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
 12...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0      192.168.1.1    192.168.1.189     10
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
      192.168.1.0    255.255.255.0         On-link     192.168.1.189    266
    192.168.1.189  255.255.255.255         On-link     192.168.1.189    266
    192.168.1.255  255.255.255.255         On-link     192.168.1.189    266
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link     192.168.1.189    266
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link     192.168.1.189    266
===========================================================================
Persistent Routes:
  None

IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
 11    266 ::/0                     fe80::c256:27ff:fe76:9b
  1    306 ::1/128                  On-link
 11     18 2601:1c2:b00:5dee::/64   On-link
 11     26 2601:1c2:b00:5dee::/64   fe80::c256:27ff:fe76:9b
 11    266 2601:1c2:b00:5dee:3de8:a7b8:5bd4:eb65/128
                                    On-link
 11    266 2601:1c2:b00:5dee:e4d1:77c9:e7ea:df83/128
                                    On-link
 11    266 fe80::/64                On-link
 11    266 fe80::3de8:a7b8:5bd4:eb65/128
                                    On-link
  1    306 ff00::/8                 On-link
 11    266 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None

========================= Event log errors: ===============================

Application errors:
==================
Error: (10/01/2015 08:27:46 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (10/01/2015 08:25:54 AM) (Source: Application Error) (User: )
Description: Faulting application name: AnyDVDtray.exe, version: 7.6.2.0, time stamp: 0x55acf379
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x8bfe03f8
Faulting process id: 0xbe4
Faulting application start time: 0xAnyDVDtray.exe0
Faulting application path: AnyDVDtray.exe1
Faulting module path: AnyDVDtray.exe2
Report Id: AnyDVDtray.exe3

Error: (10/01/2015 08:25:52 AM) (Source: Winlogon) (User: )
Description: Windows license activation failed. Error 0x80070005.

Error: (10/01/2015 07:40:02 AM) (Source: MsiInstaller) (User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.

Error: (10/01/2015 07:38:51 AM) (Source: Application Error) (User: )
Description: Faulting application name: AnyDVDtray.exe, version: 7.6.2.0, time stamp: 0x55acf379
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x8bfe03f8
Faulting process id: 0xbc0
Faulting application start time: 0xAnyDVDtray.exe0
Faulting application path: AnyDVDtray.exe1
Faulting module path: AnyDVDtray.exe2
Report Id: AnyDVDtray.exe3

Error: (10/01/2015 07:38:49 AM) (Source: Winlogon) (User: )
Description: Windows license activation failed. Error 0x80070005.

Error: (10/01/2015 07:38:13 AM) (Source: MsiInstaller) (User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.

Error: (10/01/2015 07:37:28 AM) (Source: MsiInstaller) (User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.

Error: (10/01/2015 07:29:42 AM) (Source: MsiInstaller) (User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.

Error: (10/01/2015 07:28:34 AM) (Source: MsiInstaller) (User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.


System errors:
=============
Error: (10/01/2015 08:26:11 AM) (Source: Service Control Manager) (User: )
Description: The Peer Name Resolution Protocol service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/01/2015 08:26:11 AM) (Source: Service Control Manager) (User: )
Description: The Peer Networking Grouping service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/01/2015 08:26:11 AM) (Source: Service Control Manager) (User: )
Description: The Peer Name Resolution Protocol service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/01/2015 08:26:11 AM) (Source: Service Control Manager) (User: )
Description: The Peer Networking Grouping service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/01/2015 08:26:11 AM) (Source: Service Control Manager) (User: )
Description: The Peer Name Resolution Protocol service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/01/2015 08:26:11 AM) (Source: Service Control Manager) (User: )
Description: The Peer Networking Grouping service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/01/2015 08:25:59 AM) (Source: Service Control Manager) (User: )
Description: The Peer Name Resolution Protocol service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/01/2015 08:25:59 AM) (Source: Service Control Manager) (User: )
Description: The Peer Networking Grouping service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/01/2015 08:25:53 AM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
prodrv06
prohlp02
prosync1
PxHlpa64
sfhlp01

Error: (10/01/2015 08:25:48 AM) (Source: Application Popup) (User: )
Description: \SystemRoot\SysWow64\drivers\prodrv06.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.


Microsoft Office Sessions:
=========================
Error: (10/01/2015 08:27:46 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (10/01/2015 08:25:54 AM) (Source: Application Error)(User: )
Description: AnyDVDtray.exe7.6.2.055acf379unknown0.0.0.000000000c00000058bfe03f8be401d0fbdfbb48f5edC:\Program Files (x86)\SlySoft\AnyDVD\AnyDVDtray.exeunknownf983c89f-67d2-11e5-a174-448a5bd2a44d

Error: (10/01/2015 08:25:52 AM) (Source: Winlogon)(User: )
Description: 0x800700050x00000000

Error: (10/01/2015 07:40:02 AM) (Source: MsiInstaller)(User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (10/01/2015 07:38:51 AM) (Source: Application Error)(User: )
Description: AnyDVDtray.exe7.6.2.055acf379unknown0.0.0.000000000c00000058bfe03f8bc001d0fbd928b53703C:\Program Files (x86)\SlySoft\AnyDVD\AnyDVDtray.exeunknown67071465-67cc-11e5-8020-448a5bd2a44d

Error: (10/01/2015 07:38:49 AM) (Source: Winlogon)(User: )
Description: 0x800700050x00000000

Error: (10/01/2015 07:38:13 AM) (Source: MsiInstaller)(User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (10/01/2015 07:37:28 AM) (Source: MsiInstaller)(User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (10/01/2015 07:29:42 AM) (Source: MsiInstaller)(User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (10/01/2015 07:28:34 AM) (Source: MsiInstaller)(User: BRAIN)
Description: Product: Duet Display -- Duet Display requires an active Internet connection for installation. Please check your network configuration and proxy settings.(NULL)(NULL)(NULL)(NULL)(NULL)


=========================== Installed Programs ============================

"Homefront" (HKLM-x32\...\{30CA29BE-BC36-4E92-9001-3D0A963D1958}_is1) (Version: 1.5.500001.0 - )
«The Elder Scrolls V - Skyrim»  1.9.32.0.8 (HKLM-x32\...\The Elder Scrolls V - Skyrim_is1) (Version: 1.9.32.0.8 - Bethesda Softworks)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Among the sleep (HKLM-x32\...\Among the sleep_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, markfiter)
Android SDK Tools (HKLM-x32\...\Android SDK Tools) (Version: 1.16 - Google Inc.)
AnyDVD (HKLM-x32\...\AnyDVD) (Version: 7.6.2.0 - SlySoft)
Auzen X-Fi Prelude 7.1 (HKLM-x32\...\{DA7D5E4A-7AEA-45BE-AA03-3748282DFB09}) (Version: 1.0 - )
Beard and Hairstyle Set (HKLM-x32\...\Beard and Hairstyle Set_is1) (Version: 1.0.0.0 - GOG.com)
BitComet 1.37 64-bit (HKLM-x32\...\BitComet_x64) (Version: 1.37 - CometNetwork)
CCleaner (HKLM\...\CCleaner) (Version: 5.02 - Piriform)
Cheat Engine 6.3 (HKLM-x32\...\Cheat Engine 6.3_is1) (Version:  - Cheat Engine)
Cheat Engine 6.4 (HKLM-x32\...\Cheat Engine 6.4_is1) (Version:  - Cheat Engine)
Condemned - Criminal Origins (HKLM-x32\...\Condemned - Criminal Origins_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)
DayZ Commander (HKLM-x32\...\{7B2CA5E9-763C-4FCE-81EE-13E81ABFE908}) (Version: 0.92.115 - Dotjosh Studios)
Dolby Digital Live Pack (HKLM-x32\...\Dolby Digital Live Pack) (Version: 3.03 - Creative Technology Limited)
DVD Decrypter (Remove Only) (HKLM-x32\...\DVD Decrypter) (Version:  - )
Dying Light (HKLM-x32\...\RHlpbmdMaWdodA==_is1) (Version: 1 - )
EasyCleaner (HKLM-x32\...\{F5346614-B7C4-4E94-826A-E2363155233D}) (Version: 2.0.6.380 - ToniArts)
Elements 12 Organizer (HKLM-x32\...\{9D80A7B7-DC01-485D-AE93-710D559B5C56}) (Version: 12.0 - Adobe Systems Incorporated) Hidden
FEAR (HKLM-x32\...\{2B653229-9854-4989-B780-D978F5F13EAB}) (Version: 1.00.0000 - Vivendi Universal Games, Inc.)
Flawless Widescreen version 1.0.15 (HKLM-x32\...\{7348D82E-8C68-48FF-BA2D-8C97B5B4B3D8}_is1) (Version: 1.0.15 - Flawless Widescreen)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 7.1.0.306 - Foxit Software Inc.)
FreePIE (HKLM-x32\...\{7D420331-BCBA-4B8C-8448-6E9829403BA6}) (Version: 1.8.569.0 - FreePIE)
GnuWin32: Arc version 5.21j-1 (HKLM-x32\...\Arc-5.21j-1_is1) (Version: 5.21j-1 - GnuWin32)
Grand Theft Auto V (HKLM-x32\...\Grand Theft Auto V_is1) (Version:  - )
GZ3Doom 1.8.6_k (HKLM-x32\...\GZ3Doom 1.8.6_k) (Version: 1.8.6_k - zdoom.org)
Hex Workshop v6.7 (HKLM\...\{A47DAFC0-AF57-4462-BD40-B3F02F33CB40}) (Version: 6.7.3.5308 - BreakPoint Software)
HxD Hex Editor version 1.7.7.0 (HKLM-x32\...\HxD Hex Editor_is1) (Version: 1.7.7.0 - Maël Hörz)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Kholat (HKLM-x32\...\Kholat_is1) (Version:  - )
K-Lite Codec Pack 11.4.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 11.4.0 - )
Logitech SetPoint 6.65 (HKLM\...\sp6) (Version: 6.65.62 - Logitech)
Logitech Unifying Software 2.50 (HKLM\...\Logitech Unifying) (Version: 2.50.25 - Logitech)
LOOT (HKLM-x32\...\LOOT) (Version: 0.6.1 - LOOT Development Team)
Mad Max (HKLM-x32\...\Mad Max_is1) (Version:  - )
Metal Gear Solid 5: The Phantom Pain (HKLM-x32\...\Metal Gear Solid 5: The Phantom Pain_is1) (Version:  - )
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Monitor Asset Manager (HKLM-x32\...\{AD0BBBFD-C5E9-4214-A863-E83313D67C0C}_is1) (Version:  - EnTech Taiwan)
Mozilla Firefox 41.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 41.0.1 (x86 en-US)) (Version: 41.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 41.0.1.5750 - Mozilla)
MyHarmony (HKCU\...\036a0e4fc6a247ec) (Version: 1.0.1.257 - Logitech)
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.53.2 - Black Tree Gaming)
Not A Hero (HKLM-x32\...\1429698467_is1) (Version: 2.0.0.1 - GOG.com)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.7.3 - Notepad++ Team)
NVIDIA GeForce Experience 2.4.1.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.1.21 - NVIDIA Corporation)
NVIDIA Graphics Driver 355.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 355.82 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Open 3D Model Viewer (HKLM-x32\...\{EBDFEC36-5277-454F-875B-F0AA2CDC3C92}) (Version: 1.10.0000 - Alexander Gessler)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
paint.net (HKLM\...\{19BD2C33-16A8-4ED1-B9EA-D9E35B21EC42}) (Version: 4.0.5 - dotPDN LLC)
PC Tools Firewall Plus 7.0 (HKLM-x32\...\PC Tools Firewall Plus) (Version: 7.0 - PC Tools)
PdaNet+ for Android 4.18 (HKLM-x32\...\PdaNet_is1) (Version:  - June Fabrics Technology Inc)
PeerBlock 1.2 (r693) (HKLM\...\{015C5B35-B678-451C-9AEE-821E8D69621C}_is1) (Version: 1.2.0.693 - PeerBlock, LLC)
PowerISO (HKLM-x32\...\PowerISO) (Version: 6.1 - Power Software Ltd)
PRE12 STI 64Installer (HKLM-x32\...\{06934A7E-D27F-4C5C-9D93-9715E274D736}) (Version: 12.0 - Adobe Systems Incorporated) Hidden
Process Hacker 2.35 (r5898) (HKLM\...\Process_Hacker2_is1) (Version: 2.35.0.5898 - wj32)
Project Zomboid (HKLM-x32\...\Project Zomboid_R.G. Gamblers_is1) (Version:  - R.G. Gamblers, Fanfar)
QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.)
RAD Video Tools (HKLM-x32\...\RADVideo) (Version:  - )
RadeonPro 1.0 (Build 1.1.1.0) (HKLM-x32\...\RadeonPro_is1) (Version:  - )
RAMMon V1.0 (HKLM\...\{D0E36B69-687C-43B3-93BA-5E4B6E531023}_is1) (Version: 1.0 - PassMark Software)
Redneck Rampage Collection (HKLM-x32\...\Redneck Rampage Collection_is1) (Version:  - GOG.com)
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games)
Ryse - Son of Rome (HKLM-x32\...\Ryse - Son of Rome_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.45.0 - SAMSUNG Electronics Co., Ltd.)
Sanitarium (HKLM-x32\...\Sanitarium_is1) (Version:  - GOG.com)
SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 4.1.1000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 2.4.1.21 - NVIDIA Corporation) Hidden
Shockwave (HKLM-x32\...\Shockwave) (Version:  - )
Shutter (HKLM-x32\...\Shutter_is1) (Version: 3.6 - Denis Kozlov)
SixaxisPairTool 0.3.0 (HKLM-x32\...\SixaxisPairTool_is1) (Version: 0.3.0 - Dancing Pixel Studios)
Soldiers - Heroes of World War II (HKLM-x32\...\{FCB29739-3E50-4B12-B459-116ADDC60221}) (Version: 1.00.000 - Codemasters)
SOMA (HKLM\...\U09NQQ==_is1) (Version: 1 - )
StartupSelector (HKLM-x32\...\{1B485419-875B-428D-816B-2F6627815D7A}) (Version: 1.0.0.0 - Mike Lin)
STASIS (HKLM-x32\...\1439548178_is1) (Version: 2.0.0.4 - GOG.com)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Temerian Armor Set (HKLM-x32\...\Temerian Armor Set_is1) (Version: 1.0.0.0 - GOG.com)
The Long Dark (HKLM-x32\...\The Long Dark_is1) (Version: v.183 - Релиз от R.G. Steamgames)
The Vanishing of Ethan Carter Redux (HKLM-x32\...\VGhlVmFuaXNoaW5nb2ZFdGhhbkNhcnRlclJlZHV4_is1) (Version: 1 - )
The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.0.0.0 - GOG.com)
TriDef 3D 6.5 (HKLM-x32\...\essentials-bundle) (Version: 6.5 - Dynamic Digital Depth Australia Pty Ltd)
TriDef 3D Oculus Rift Add-on 1.0b8 (HKLM-x32\...\oculus-rift-bundle) (Version: 1.0b8 - Dynamic Digital Depth Australia Pty Ltd)
Trinus VR version 1.9.2b (HKLM-x32\...\{A66AD08F-FC5B-4583-9A7D-4636F5637B2C}_is1) (Version: 1.9.2b - Odd Sheep Ltd.)
Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation)
Windows Driver Package - Google, Inc. (WinUSB) AndroidUsbDeviceClass  (08/28/2014 11.0.0000.00000) (HKLM\...\092555911492C6959D2596D612F52DCA71881CA2) (Version: 08/28/2014 11.0.0000.00000 - Google, Inc.)
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
WinRAR 5.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH)
X-Fi Prelude 7.1 (HKLM-x32\...\{0282C872-4B44-444B-9818-54FBD7D50ECD}) (Version: 1.0 - Creative Technology Limited)
Zombi (HKLM-x32\...\Zombi_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, markfiter)

========================= Devices: ================================

Name: Universal Serial Bus (USB) Controller
Description: Universal Serial Bus (USB) Controller
Class Guid:
Manufacturer:
Service:
Device ID: PCI\VEN_8086&DEV_8CB1&SUBSYS_79181462&REV_00\3&11583659&0&A0
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: PdaNet Broadband Adapter
Description: PdaNet Broadband Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: June Fabrics Technology Inc.
Service: pneteth
Device ID: ROOT\PNETETH\0000
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: High Definition Audio Device
Description: High Definition Audio Device
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: HdAudAddService
Device ID: HDAUDIO\FUNC_01&VEN_10EC&DEV_0900&SUBSYS_1462D918&REV_1000\4&1FBA59CC&0&0001
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: SM Bus Controller
Description: SM Bus Controller
Class Guid:
Manufacturer:
Service:
Device ID: PCI\VEN_8086&DEV_8CA2&SUBSYS_79181462&REV_00\3&11583659&0&FB
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


========================= Memory info: ===================================

Percentage of memory in use: 23%
Total physical RAM: 8127.81 MB
Available physical RAM: 6247.47 MB
Total Virtual: 16253.83 MB
Available Virtual: 14178.63 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:446.91 GB) (Free:42.81 GB) NTFS

========================= Users: ========================================

User accounts for \\BRAIN

Administrator            Bob!                     Guest                    


**** End of log ****
 



#4 Aura

Aura

    Bleepin' Special Ops


  • Malware Response Team
  • 19,633 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:13 AM

Posted 30 September 2015 - 08:15 PM

It seems that your system was configured to use cracked/pirated version of Adobe programs in the past, if I were you I would remove that since BleepingComputer doesn't provide assistance if you use illegal versions of programs or try to defeat their copyright :)
127.0.0.1                   activate.adobe.com
127.0.0.1                   practivate.adobe.com
127.0.0.1                   lmlicenses.wip4.adobe.com
127.0.0.1                   lm.licenses.adobe.com
127.0.0.1                   na1r.services.adobe.com
127.0.0.1                   hlrcv.stage.adobe.com
Uninstall the following programs please.
  • Adobe Flash Player 17 NPAPI - Outdated and vulnerable;
  • Cheat Engine 6.3 - You already have 6.4 installed, no need for the old version anymore;
  • EasyCleaner - See the speech below;
  • Java 8 Update 31 - Outdated and vulnerable;
  • PC Tools Firewall Plus 7.0 - PC Tools products don't exist anymore, I wouldn't use security related products that aren't developped anymore;
warning.gifRegistry Cleaners Warning!
I see that you have a Registry Cleaner program installed. These programs are known to be harmful to the system and should not be used for any reason there is. It's a known fact that using Registry Cleaners can easily break a Windows installation, to the point where a complete reinstallation might be needed. Here's a few myths about using these programs, and why they are just plainly false.
  • "Using a Registry Cleaner will improve a system's performance" - False. The Windows Registry is a big database which contains information on everything present on the system, from the boot settings to how your programs looks when you open them. There's so many entries in it that cleaning even thousands of them isn't enough to boost a system performance. Also, there's no studies, tests, benchmarks, etc. which shows that using Registry Cleaners actually improve a system speed;
  • "Using a Registry Cleaner will fix all your errors" - False. Using a Registry Cleaner won't fix any problems at all. In fact, it have more chances to create them if anything. There's no program that can fix every problems in a simple click, and there probably never will. If you have an error, it's better to troubleshoot that error in particuliar by finding what's causing it and fixing it than using a software that might give you more errors;
  • "If you don't use a Registry Cleaner, you'll leave a door open for malware" - False. It is rare that malware will actually hijack orpheans keys and keypairs in the Registry to create persistence or install themself. They'll usually create their own keys/keypairs since they have been instructed (coded) to do so, and the creator cannot expect every system he'll infect to have leftover keys. Also, pretty much only Reg Loading Points in the Registry would be of any interest for a malware to hijack, and these are usually occupied already, or quickly deleted when empty;
  • Registry Cleaners aren't Registry Defraggers - These are two different kind of software who have two distinct function each.
  • On a last note, there's a lot of Registry Cleaners out here that won't create a back-up of your Registry before applying the changes they make. Which means that if you use them and clean entries that prevents Windows to reboot after, locking you out of your computer, you won't be able to restore a precedent Registry back-up via the Recovery PE. This means that if you can't fix the boot issue after that, you'll most likely be forced to reinstall Windows;
Registry Cleaners were used back in the days by developers who were using a OLE-schema for their applications. They used these to clean the Registry after uninstalling their programs, just in case there was traces of it left behind that could affect a reinstallation. These were back in the Windows 95 and Windows 98 days and this practice isn't in effect anymore. Therefore, there's no reason for you to use such programs and quite a few to avoid them instead.

Here's more articles on Registry Cleaners that are worth a read if you want to learn more about them and why you shouldn't use them.Download and install the following drivers. If it asks for a restart at the end of an installation, please do so.

http://download.msi.com/dvr_exe/intel_usb30.zip
http://download.msi.com/dvr_exe/intel_me10_mb.zip
http://download.msi.com/dvr_exe/intel_chipse_9_w10.zip

Once done, let me know :)

unite_blue.png
Security Administrator | Sysnative Windows Update Senior Analyst | Malware Hunter | @SecurityAura
My timezone UTC-05:00 (East. Coast). If I didn't reply to you within 48 hours, please send me a PM.


#5 Blinkstar

Blinkstar
  • Topic Starter

  • Members
  • 53 posts
  • OFFLINE
  •  
  • Local time:06:13 AM

Posted 30 September 2015 - 11:21 PM

Done! Installed all three. Thanks for getting back to me so fast!

 

Another odd thing ... firefox appears to suddenly be running in developer mode for reasons that are beyond me. This site, for instance, is now popping up a little box whenever I load it up that says: "A username and password are being requested by http://dev.bleepingcomputer.com. The site says: "Restricted"



#6 Aura

Aura

    Bleepin' Special Ops


  • Malware Response Team
  • 19,633 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:13 AM

Posted 01 October 2015 - 05:27 AM

Alright, let's run MiniToolBox again now to see if the drivers were accepted :)

3Al62Pm.pngMiniToolBox
  • Download MiniToolBox and move the executable file to your Desktop;
  • Right-click on MiniToolBox.exe and select Spcusrh.pngRun as Administrator (for Windows Vista, 7, 8, 8.1 and 10 users);
  • Check the following options:
    • List Installed Programs;
    • List Last 10 Event Viewer Errors;
    • List Devices - Only Problems;
    • List Users, Partitions and Memory size;
      wNeKMCX.png
  • Once this is done, click on Go and wait for the scan to complete;
  • Once the scan is complete, a log will open. Please copy/paste the content of the output log in your next reply;
As for Mozilla Firefox, this isn't an issue with Firefox, but with BleepingComputer. I know what's happening but I can't really tell you all the details (yet), however I reported that issue to Grinler so he can take a look at it :)

unite_blue.png
Security Administrator | Sysnative Windows Update Senior Analyst | Malware Hunter | @SecurityAura
My timezone UTC-05:00 (East. Coast). If I didn't reply to you within 48 hours, please send me a PM.


#7 Blinkstar

Blinkstar
  • Topic Starter

  • Members
  • 53 posts
  • OFFLINE
  •  
  • Local time:06:13 AM

Posted 01 October 2015 - 12:18 PM

Alright, let's run MiniToolBox again now to see if the drivers were accepted :)

3Al62Pm.pngMiniToolBox

  • Download MiniToolBox and move the executable file to your Desktop;
  • Right-click on MiniToolBox.exe and select Spcusrh.pngRun as Administrator (for Windows Vista, 7, 8, 8.1 and 10 users);
  • Check the following options:
    • List Installed Programs;
    • List Last 10 Event Viewer Errors;
    • List Devices - Only Problems;
    • List Users, Partitions and Memory size;
      wNeKMCX.png
  • Once this is done, click on Go and wait for the scan to complete;
  • Once the scan is complete, a log will open. Please copy/paste the content of the output log in your next reply;
As for Mozilla Firefox, this isn't an issue with Firefox, but with BleepingComputer. I know what's happening but I can't really tell you all the details (yet), however I reported that issue to Grinler so he can take a look at it :)

 

The developer options are popping up in firefox before I visit BleepingComputer, though I think you're right that only BC is giving me that particular message ... I may just reinstall firefox and see if that fixes it.

 

Here are the latest results. Thanks again for your help!

 

MiniToolBox by Farbar  Version: 25-07-2015 01
Ran by Bob! (administrator) on 02-10-2015 at 01:15:46
Running from "C:\Users\Bob!\Desktop"
Microsoft Windows 7 Ultimate  Service Pack 1 (X64)
Model: MS-7918 Manufacturer: MSI
Boot Mode: Normal
***************************************************************************

========================= Event log errors: ===============================

Application errors:
==================
Error: (10/02/2015 01:09:22 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (10/02/2015 01:07:29 AM) (Source: Winlogon) (User: )
Description: Windows license activation failed. Error 0x80070005.

Error: (10/01/2015 05:18:16 PM) (Source: Software Protection Platform Service) (User: )
Description: License Activation Scheduler (sppuinotify.dll) failed with the following error code:
0x80070005

Error: (10/01/2015 04:18:16 PM) (Source: Software Protection Platform Service) (User: )
Description: License Activation Scheduler (sppuinotify.dll) failed with the following error code:
0x80070005

Error: (10/01/2015 03:32:22 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (10/01/2015 03:30:29 PM) (Source: Winlogon) (User: )
Description: Windows license activation failed. Error 0x80070005.

Error: (10/01/2015 03:12:27 PM) (Source: Software Protection Platform Service) (User: )
Description: License Activation Scheduler (sppuinotify.dll) failed with the following error code:
0x80070005

Error: (10/01/2015 02:12:27 PM) (Source: Software Protection Platform Service) (User: )
Description: License Activation Scheduler (sppuinotify.dll) failed with the following error code:
0x80070005

Error: (10/01/2015 01:26:33 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (10/01/2015 01:24:40 PM) (Source: Winlogon) (User: )
Description: Windows license activation failed. Error 0x80070005.


System errors:
=============
Error: (10/02/2015 01:07:47 AM) (Source: Service Control Manager) (User: )
Description: The Peer Name Resolution Protocol service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/02/2015 01:07:47 AM) (Source: Service Control Manager) (User: )
Description: The Peer Networking Grouping service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/02/2015 01:07:47 AM) (Source: Service Control Manager) (User: )
Description: The Peer Name Resolution Protocol service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/02/2015 01:07:47 AM) (Source: Service Control Manager) (User: )
Description: The Peer Networking Grouping service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/02/2015 01:07:47 AM) (Source: Service Control Manager) (User: )
Description: The Peer Name Resolution Protocol service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/02/2015 01:07:47 AM) (Source: Service Control Manager) (User: )
Description: The Peer Networking Grouping service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/02/2015 01:07:36 AM) (Source: Service Control Manager) (User: )
Description: The Peer Name Resolution Protocol service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/02/2015 01:07:36 AM) (Source: Service Control Manager) (User: )
Description: The Peer Networking Grouping service depends on the Peer Networking Identity Manager service which failed to start because of the following error:
%%1058

Error: (10/02/2015 01:07:29 AM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
prodrv06
prohlp02
prosync1
PxHlpa64
sfhlp01

Error: (10/02/2015 01:07:24 AM) (Source: Application Popup) (User: )
Description: \SystemRoot\SysWow64\drivers\prodrv06.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.


Microsoft Office Sessions:
=========================
Error: (10/02/2015 01:09:22 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (10/02/2015 01:07:29 AM) (Source: Winlogon)(User: )
Description: 0x800700050x00000000

Error: (10/01/2015 05:18:16 PM) (Source: Software Protection Platform Service)(User: )
Description: 0x80070005

Error: (10/01/2015 04:18:16 PM) (Source: Software Protection Platform Service)(User: )
Description: 0x80070005

Error: (10/01/2015 03:32:22 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (10/01/2015 03:30:29 PM) (Source: Winlogon)(User: )
Description: 0x800700050x00000000

Error: (10/01/2015 03:12:27 PM) (Source: Software Protection Platform Service)(User: )
Description: 0x80070005

Error: (10/01/2015 02:12:27 PM) (Source: Software Protection Platform Service)(User: )
Description: 0x80070005

Error: (10/01/2015 01:26:33 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (10/01/2015 01:24:40 PM) (Source: Winlogon)(User: )
Description: 0x800700050x00000000


=========================== Installed Programs ============================

"Homefront" (HKLM-x32\...\{30CA29BE-BC36-4E92-9001-3D0A963D1958}_is1) (Version: 1.5.500001.0 - )
«The Elder Scrolls V - Skyrim»  1.9.32.0.8 (HKLM-x32\...\The Elder Scrolls V - Skyrim_is1) (Version: 1.9.32.0.8 - Bethesda Softworks)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Among the sleep (HKLM-x32\...\Among the sleep_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, markfiter)
Android SDK Tools (HKLM-x32\...\Android SDK Tools) (Version: 1.16 - Google Inc.)
AnyDVD (HKLM-x32\...\AnyDVD) (Version: 7.6.2.0 - SlySoft)
Auzen X-Fi Prelude 7.1 (HKLM-x32\...\{DA7D5E4A-7AEA-45BE-AA03-3748282DFB09}) (Version: 1.0 - )
Beard and Hairstyle Set (HKLM-x32\...\Beard and Hairstyle Set_is1) (Version: 1.0.0.0 - GOG.com)
BitComet 1.37 64-bit (HKLM-x32\...\BitComet_x64) (Version: 1.37 - CometNetwork)
CCleaner (HKLM\...\CCleaner) (Version: 5.02 - Piriform)
Cheat Engine 6.4 (HKLM-x32\...\Cheat Engine 6.4_is1) (Version:  - Cheat Engine)
Condemned - Criminal Origins (HKLM-x32\...\Condemned - Criminal Origins_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)
DayZ Commander (HKLM-x32\...\{7B2CA5E9-763C-4FCE-81EE-13E81ABFE908}) (Version: 0.92.115 - Dotjosh Studios)
Dolby Digital Live Pack (HKLM-x32\...\Dolby Digital Live Pack) (Version: 3.03 - Creative Technology Limited)
DVD Decrypter (Remove Only) (HKLM-x32\...\DVD Decrypter) (Version:  - )
Dying Light (HKLM-x32\...\RHlpbmdMaWdodA==_is1) (Version: 1 - )
Elements 12 Organizer (HKLM-x32\...\{9D80A7B7-DC01-485D-AE93-710D559B5C56}) (Version: 12.0 - Adobe Systems Incorporated) Hidden
FEAR (HKLM-x32\...\{2B653229-9854-4989-B780-D978F5F13EAB}) (Version: 1.00.0000 - Vivendi Universal Games, Inc.)
Flawless Widescreen version 1.0.15 (HKLM-x32\...\{7348D82E-8C68-48FF-BA2D-8C97B5B4B3D8}_is1) (Version: 1.0.15 - Flawless Widescreen)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 7.1.0.306 - Foxit Software Inc.)
FreePIE (HKLM-x32\...\{7D420331-BCBA-4B8C-8448-6E9829403BA6}) (Version: 1.8.569.0 - FreePIE)
GnuWin32: Arc version 5.21j-1 (HKLM-x32\...\Arc-5.21j-1_is1) (Version: 5.21j-1 - GnuWin32)
Grand Theft Auto V (HKLM-x32\...\Grand Theft Auto V_is1) (Version:  - )
GZ3Doom 1.8.6_k (HKLM-x32\...\GZ3Doom 1.8.6_k) (Version: 1.8.6_k - zdoom.org)
Hex Workshop v6.7 (HKLM\...\{A47DAFC0-AF57-4462-BD40-B3F02F33CB40}) (Version: 6.7.3.5308 - BreakPoint Software)
HxD Hex Editor version 1.7.7.0 (HKLM-x32\...\HxD Hex Editor_is1) (Version: 1.7.7.0 - Maël Hörz)
Intel® Chipset Device Software (HKLM-x32\...\{c7f54569-0018-439c-809a-48046a4d4ebc}) (Version: 10.1.1.9 - Intel® Corporation) Hidden
Intel® Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.31.1000 - Intel Corporation)
Intel® USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 3.0.5.69 - Intel Corporation)
Kholat (HKLM-x32\...\Kholat_is1) (Version:  - )
K-Lite Codec Pack 11.4.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 11.4.0 - )
Logitech SetPoint 6.65 (HKLM\...\sp6) (Version: 6.65.62 - Logitech)
Logitech Unifying Software 2.50 (HKLM\...\Logitech Unifying) (Version: 2.50.25 - Logitech)
LOOT (HKLM-x32\...\LOOT) (Version: 0.6.1 - LOOT Development Team)
Mad Max (HKLM-x32\...\Mad Max_is1) (Version:  - )
Metal Gear Solid 5: The Phantom Pain (HKLM-x32\...\Metal Gear Solid 5: The Phantom Pain_is1) (Version:  - )
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Monitor Asset Manager (HKLM-x32\...\{AD0BBBFD-C5E9-4214-A863-E83313D67C0C}_is1) (Version:  - EnTech Taiwan)
Mozilla Firefox 41.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 41.0.1 (x86 en-US)) (Version: 41.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 41.0.1.5750 - Mozilla)
MyHarmony (HKCU\...\036a0e4fc6a247ec) (Version: 1.0.1.257 - Logitech)
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.53.2 - Black Tree Gaming)
Not A Hero (HKLM-x32\...\1429698467_is1) (Version: 2.0.0.1 - GOG.com)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.7.3 - Notepad++ Team)
NVIDIA GeForce Experience 2.4.1.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.1.21 - NVIDIA Corporation)
NVIDIA Graphics Driver 355.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 355.82 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Open 3D Model Viewer (HKLM-x32\...\{EBDFEC36-5277-454F-875B-F0AA2CDC3C92}) (Version: 1.10.0000 - Alexander Gessler)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
paint.net (HKLM\...\{19BD2C33-16A8-4ED1-B9EA-D9E35B21EC42}) (Version: 4.0.5 - dotPDN LLC)
PdaNet+ for Android 4.18 (HKLM-x32\...\PdaNet_is1) (Version:  - June Fabrics Technology Inc)
PeerBlock 1.2 (r693) (HKLM\...\{015C5B35-B678-451C-9AEE-821E8D69621C}_is1) (Version: 1.2.0.693 - PeerBlock, LLC)
PowerISO (HKLM-x32\...\PowerISO) (Version: 6.1 - Power Software Ltd)
PRE12 STI 64Installer (HKLM-x32\...\{06934A7E-D27F-4C5C-9D93-9715E274D736}) (Version: 12.0 - Adobe Systems Incorporated) Hidden
Process Hacker 2.35 (r5898) (HKLM\...\Process_Hacker2_is1) (Version: 2.35.0.5898 - wj32)
Project Zomboid (HKLM-x32\...\Project Zomboid_R.G. Gamblers_is1) (Version:  - R.G. Gamblers, Fanfar)
QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.)
RAD Video Tools (HKLM-x32\...\RADVideo) (Version:  - )
RadeonPro 1.0 (Build 1.1.1.0) (HKLM-x32\...\RadeonPro_is1) (Version:  - )
RAMMon V1.0 (HKLM\...\{D0E36B69-687C-43B3-93BA-5E4B6E531023}_is1) (Version: 1.0 - PassMark Software)
Redneck Rampage Collection (HKLM-x32\...\Redneck Rampage Collection_is1) (Version:  - GOG.com)
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games)
Ryse - Son of Rome (HKLM-x32\...\Ryse - Son of Rome_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.45.0 - SAMSUNG Electronics Co., Ltd.)
Sanitarium (HKLM-x32\...\Sanitarium_is1) (Version:  - GOG.com)
SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 4.1.1000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 2.4.1.21 - NVIDIA Corporation) Hidden
Shockwave (HKLM-x32\...\Shockwave) (Version:  - )
Shutter (HKLM-x32\...\Shutter_is1) (Version: 3.6 - Denis Kozlov)
SixaxisPairTool 0.3.0 (HKLM-x32\...\SixaxisPairTool_is1) (Version: 0.3.0 - Dancing Pixel Studios)
Soldiers - Heroes of World War II (HKLM-x32\...\{FCB29739-3E50-4B12-B459-116ADDC60221}) (Version: 1.00.000 - Codemasters)
SOMA (HKLM\...\U09NQQ==_is1) (Version: 1 - )
StartupSelector (HKLM-x32\...\{1B485419-875B-428D-816B-2F6627815D7A}) (Version: 1.0.0.0 - Mike Lin)
STASIS (HKLM-x32\...\1439548178_is1) (Version: 2.0.0.4 - GOG.com)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Temerian Armor Set (HKLM-x32\...\Temerian Armor Set_is1) (Version: 1.0.0.0 - GOG.com)
The Long Dark (HKLM-x32\...\The Long Dark_is1) (Version: v.183 - Релиз от R.G. Steamgames)
The Vanishing of Ethan Carter Redux (HKLM-x32\...\VGhlVmFuaXNoaW5nb2ZFdGhhbkNhcnRlclJlZHV4_is1) (Version: 1 - )
The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.0.0.0 - GOG.com)
TriDef 3D 6.5 (HKLM-x32\...\essentials-bundle) (Version: 6.5 - Dynamic Digital Depth Australia Pty Ltd)
TriDef 3D Oculus Rift Add-on 1.0b8 (HKLM-x32\...\oculus-rift-bundle) (Version: 1.0b8 - Dynamic Digital Depth Australia Pty Ltd)
Trinus VR version 1.9.2b (HKLM-x32\...\{A66AD08F-FC5B-4583-9A7D-4636F5637B2C}_is1) (Version: 1.9.2b - Odd Sheep Ltd.)
Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation)
Windows Driver Package - Google, Inc. (WinUSB) AndroidUsbDeviceClass  (08/28/2014 11.0.0000.00000) (HKLM\...\092555911492C6959D2596D612F52DCA71881CA2) (Version: 08/28/2014 11.0.0000.00000 - Google, Inc.)
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
WinRAR 5.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH)
X-Fi Prelude 7.1 (HKLM-x32\...\{0282C872-4B44-444B-9818-54FBD7D50ECD}) (Version: 1.0 - Creative Technology Limited)
Zombi (HKLM-x32\...\Zombi_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, markfiter)

========================= Devices: ================================

Name: High Definition Audio Device
Description: High Definition Audio Device
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: HdAudAddService
Device ID: HDAUDIO\FUNC_01&VEN_10EC&DEV_0900&SUBSYS_1462D918&REV_1000\4&1FBA59CC&0&0001
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: PdaNet Broadband Adapter
Description: PdaNet Broadband Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: June Fabrics Technology Inc.
Service: pneteth
Device ID: ROOT\PNETETH\0000
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


========================= Memory info: ===================================

Percentage of memory in use: 23%
Total physical RAM: 8127.81 MB
Available physical RAM: 6248.65 MB
Total Virtual: 16253.83 MB
Available Virtual: 14213.1 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:446.91 GB) (Free:34.19 GB) NTFS

========================= Users: ========================================

User accounts for \\BRAIN

Administrator            Bob!                     Guest                    


**** End of log ****
 



#8 Aura

Aura

    Bleepin' Special Ops


  • Malware Response Team
  • 19,633 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:13 AM

Posted 01 October 2015 - 01:20 PM

Good, the drivers were successfully installed :) Follow the instructions below please.

MGADiag
  • Download MGADiag (by Microsoft) from the link below:
    http://go.microsoft.com/fwlink/?linkid=52012
  • Run the tool by double clicking on the file. Press Continue when prompted
  • When it has finished, press Copy then Paste (Ctrl+V) this into your next post

unite_blue.png
Security Administrator | Sysnative Windows Update Senior Analyst | Malware Hunter | @SecurityAura
My timezone UTC-05:00 (East. Coast). If I didn't reply to you within 48 hours, please send me a PM.


#9 Blinkstar

Blinkstar
  • Topic Starter

  • Members
  • 53 posts
  • OFFLINE
  •  
  • Local time:06:13 AM

Posted 01 October 2015 - 03:43 PM

Okay, here it is.

 

Diagnostic Report (1.9.0027.0):
-----------------------------------------
Windows Validation Data-->

Validation Code: 0
Cached Online Validation Code: N/A, hr = 0xc004f012
Windows Product Key: *****-*****-TMVMJ-BBMRX-3MBMV
Windows Product Key Hash: 55n8g6xdzhe4AOWhmTzdzQoLfa4=
Windows Product ID: 00426-292-0000007-85502
Windows Product ID Type: 5
Windows License Type: Retail
Windows OS version: 6.1.7601.2.00010100.1.0.001
ID: {ECAAA7DE-6872-487B-A14A-F21A81BD7984}(3)
Is Admin: Yes
TestCab: 0x0
LegitcheckControl ActiveX: N/A, hr = 0x80070002
Signed By: N/A, hr = 0x80070002
Product Name: Windows 7 Ultimate
Architecture: 0x00000009
Build lab: 7601.win7sp1_gdr.150722-0600
TTS Error:
Validation Diagnostic:
Resolution Status: N/A

Vista WgaER Data-->
ThreatID(s): N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002

Windows XP Notifications Data-->
Cached Result: N/A, hr = 0x80070002
File Exists: No
Version: N/A, hr = 0x80070002
WgaTray.exe Signed By: N/A, hr = 0x80070002
WgaLogon.dll Signed By: N/A, hr = 0x80070002

OGA Notifications Data-->
Cached Result: N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002
OGAExec.exe Signed By: N/A, hr = 0x80070002
OGAAddin.dll Signed By: N/A, hr = 0x80070002

OGA Data-->
Office Status: 109 N/A
OGA Version: N/A, 0x80070002
Signed By: N/A, hr = 0x80070002
Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

Browser Data-->
Proxy settings:
User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
Default Browser: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
Download signed ActiveX controls: Prompt
Download unsigned ActiveX controls: Disabled
Run ActiveX controls and plug-ins: Allowed
Initialize and script ActiveX controls not marked as safe: Disabled
Allow scripting of Internet Explorer Webbrowser control: Disabled
Active scripting: Allowed
Script ActiveX controls marked as safe for scripting: Allowed

File Scan Data-->
File Mismatch: C:\Windows\system32\systemcpl.dll[6.1.7600.16385], Hr = 0x800b0100
File Mismatch: C:\Windows\system32\user32.dll[6.1.7600.16385], Hr = 0x800b0100

Other data-->
Office Details: <GenuineResults><MachineData><UGUID>{ECAAA7DE-6872-487B-A14A-F21A81BD7984}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010100.1.0.001</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-3MBMV</PKey><PID>00426-292-0000007-85502</PID><PIDType>5</PIDType><SID>S-1-5-21-254863753-390344883-2284178809</SID><SYSTEM><Manufacturer>MSI</Manufacturer><Model>MS-7918</Model></SYSTEM><BIOS><Manufacturer>American Megatrends Inc.</Manufacturer><Version>V1.4</Version><SMBIOSVersion major="2" minor="8"/><Date>20140724000000.000000+000</Date></BIOS><HWID>99443407018400F4</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>China Standard Time(GMT+08:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM/><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>  

Spsys.log Content: 0x80070002

Licensing Data-->
Input Error: Can not find script file "C:\Windows\system32\slmgr.vbs".

Windows Activation Technologies-->
HrOffline: 0x00000000
HrOnline: N/A
HealthStatus: 0x0000000000000000
Event Time Stamp: N/A
ActiveX: Registered, Version: 7.1.7600.16395
Admin Service: Not Registered - 0x80070005
HealthStatus Bitmask Output:


HWID Data-->
HWID Hash Current: LgAAAAEAAgABAAEAAAACAAAAAQABAAEAln1qCTa2RtQe3nyUjuMKQ3DNVuzI9g==

OEM Activation 1.0 Data-->
N/A

OEM Activation 2.0 Data-->
BIOS valid for OA 2.0: yes, but no SLIC table
Windows marker version: N/A
OEMID and OEMTableID Consistent: N/A
BIOS Information:
  ACPI Table Name    OEMID Value    OEMTableID Value
  APIC            ALASKA        A M I
  FACP            ALASKA        A M I
  HPET            ALASKA        A M I
  MCFG            ALASKA        A M I
  FPDT            ALASKA        A M I
  FIDT            ALASKA        A M I
  SSDT            Ther_R        Ther_Rvp
  SSDT            Ther_R        Ther_Rvp
  SSDT            Ther_R        Ther_Rvp
  SSDT            Ther_R        Ther_Rvp
  SSDT            Ther_R        Ther_Rvp
  ASF!            INTEL          HCG
  DMAR            INTEL         BDW

 



#10 Aura

Aura

    Bleepin' Special Ops


  • Malware Response Team
  • 19,633 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:13 AM

Posted 02 October 2015 - 12:48 PM

Sadly it seems that you are using a counterfeit version of Windows, that you probably activated using RemoveWAT. BleepingComputer doesn't approve of defeating current copyrights measure to use software and OS without paying for them. Therefore, if you want to continue receiving assistance for your issue (from me at least), I'll ask you to get a genuine copy of Windows.

Let me know what you'll do please :)

unite_blue.png
Security Administrator | Sysnative Windows Update Senior Analyst | Malware Hunter | @SecurityAura
My timezone UTC-05:00 (East. Coast). If I didn't reply to you within 48 hours, please send me a PM.


#11 Blinkstar

Blinkstar
  • Topic Starter

  • Members
  • 53 posts
  • OFFLINE
  •  
  • Local time:06:13 AM

Posted 02 October 2015 - 01:25 PM

Sadly it seems that you are using a counterfeit version of Windows, that you probably activated using RemoveWAT. BleepingComputer doesn't approve of defeating current copyrights measure to use software and OS without paying for them. Therefore, if you want to continue receiving assistance for your issue (from me at least), I'll ask you to get a genuine copy of Windows.

Let me know what you'll do please :)

 

Ah yes. I sensed that was where this was going from your last request. I have been thinking of migrating to Windows 10, which is after all free, so perhaps I'll return again at that point. Thanks for your assistance.



#12 Aura

Aura

    Bleepin' Special Ops


  • Malware Response Team
  • 19,633 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:13 AM

Posted 02 October 2015 - 01:35 PM

No problem Blinkstar, you're welcome :)

Keep in mind that even thought it is possible to migrate (upgrade) to Windows 10 with a counterfeit version of Windows 7, 8 or 8.1, your copy of Windows 10 will also be counterfeit so you'll need to buy a genuine product key for it :)

unite_blue.png
Security Administrator | Sysnative Windows Update Senior Analyst | Malware Hunter | @SecurityAura
My timezone UTC-05:00 (East. Coast). If I didn't reply to you within 48 hours, please send me a PM.





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users