Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Is this possible?


  • This topic is locked This topic is locked
38 replies to this topic

#1 louisemary

louisemary

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:11:18 PM

Posted 01 May 2016 - 03:33 PM

I am on a Win8 laptop. that said,,,the same thing happened on all of my previous W7 machines.

 

All of my computers seem to somehow get changed to Enterprise/workstation type machines. I do not believe that my machines are compromised unless I were to follow a malicious link or download certain things from certain websites. the one common factor is,,,,every machine seems to end up with a inaccessible USB device. This actually is much deeper but,,,,i thought i would start slow. Thank you for any input.



BC AdBot (Login to Remove)

 


#2 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,407 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:08:18 PM

Posted 02 May 2016 - 10:59 AM

All of my computers seem to somehow get changed to Enterprise

 

In order to upgrade to Windows Enterprise you would need the installation media and a legal product code to activate the installation.  

 

What are the makes and models of these computers?

 

every machine seems to end up with a inaccessible USB device.

 

Are you receiving any error messages when the USB ports fail to load a device?

 

Look in the Device Manager to see if there are any warnings (in yellow) or errors (in red).

 

Press the Windows keywindowskey_zps092d5c75.png and the X key at the same time.   A menu will open with the option Device Manager, click/tap on this.

 

When the Device Manager opens scroll down to Universal Serial Bus controllers and click/tap on the arrow to the left to expand the tree.  See if you can find any warnings or errors.


Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#3 louisemary

louisemary
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:11:18 PM

Posted 02 May 2016 - 02:05 PM

No errors or warnings in device manager.

 

I have plugged a flashdrive and get the "Please plug a device in drive *" The drive I had just plugged into.



#4 louisemary

louisemary
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:11:18 PM

Posted 02 May 2016 - 02:12 PM

This is probably a question for "network" forum but since I have not got an answer to another question there,,,I will ask anyway..

 

I have "Glasswire" installed. I blocked  "HP remote assistance" via the firewall app in Glasswire. When I do so it will not allow me to use internet browser (IE, Firefox). I only gives me "Limited Connection".



#5 RolandJS

RolandJS

  • Members
  • 4,517 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Austin TX metro area
  • Local time:10:18 PM

Posted 02 May 2016 - 02:17 PM

Let dc3 know if you have both Windows 8 firewall and Glasswire firewall active, if so, consider disabling Glasswire firewall, and follow dc3's advice, you won't go wrong.


Edited by RolandJS, 02 May 2016 - 03:01 PM.

"Take care of thy backups and thy restores shall take care of thee."  -- Ben Franklin revisited.

http://collegecafe.fr.yuku.com/forums/45/Computer-Technologies/

Backup, backup, backup! -- Lady Fitzgerald (w7forums)

Clone or Image often! Backup... -- RockE (WSL)


#6 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,407 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:08:18 PM

Posted 02 May 2016 - 02:26 PM


 
 
Please download and install Speccy to provide us with information about your computer.  Clicking on this link will automatically initiate the download. 
 
When Speccy opens you will see a screen similar to the one below.
 
speccy9_zps2d9cdedc.png
 
Click on File which is outlined in red in the screen above, and then click on Publish Snapshot.
 
The following screen will appear, click on Yes.
 
speccy7_zpsfa02105f.png
 
The following screen will appear, click on Copy to Clipboard.
 
speccy3_zps1791b093.png
 
In your next post right click inside the Reply to Topic box, then click on Paste.  This will load a link to the Speccy log.
 
 
 

Please download MiniToolBox to your desktop.
 
Right-click on MiniToolBox.exe and select Run as Administrator.
 
You will see an image like the one below.
 
minitoolbox_zps7byuwkla.png
 
Click on the following checkboxes only:
 
• List last 10 Event Viewer log
• List Installed Programs
• List Users, Partitions and Memory size.
• List Minidump Files
 
Click on Go to start the scan.  Once it is finished highlight the text, then copy it and paste it in your topic.

Edited by dc3, 02 May 2016 - 02:29 PM.

Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#7 louisemary

louisemary
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:11:18 PM

Posted 02 May 2016 - 02:31 PM

I truly believe i have either had, or have a "MItM" issue.



#8 louisemary

louisemary
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:11:18 PM

Posted 02 May 2016 - 02:35 PM

I will be away from machine until 6pm.    If i do not get this done in the next 15 mins I will get back to it when i am back.  Thanks for your help.



#9 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,407 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:08:18 PM

Posted 02 May 2016 - 02:36 PM

What makes you believe this.

 

Please do what I have requested.


Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#10 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,407 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:08:18 PM

Posted 02 May 2016 - 02:39 PM

I will be away from machine until 6pm.    If i do not get this done in the next 15 mins I will get back to it when i am back.  Thanks for your help.

What time zone are you in?

 

6:00 pm on the east coast will be 3:00 pm here.

 

6:00 pm in England will be 2:00 am here.


Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#11 louisemary

louisemary
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:11:18 PM

Posted 02 May 2016 - 02:42 PM

I am EDT. 3:41 at this moment.



#12 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,407 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:08:18 PM

Posted 02 May 2016 - 02:47 PM

I will be out of here in another twenty or so minutes and will not be back until early (5:00 am PST) tomorrow.  By 8:30 am I will be gone until late afternoon.  Every other Tuesday is medical Tuesday, I'm gone most of the day.


Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#13 louisemary

louisemary
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:11:18 PM

Posted 02 May 2016 - 05:40 PM

I will get as much info as possible then list it all later or before you arrive tomorrow.



#14 louisemary

louisemary
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:11:18 PM

Posted 02 May 2016 - 10:50 PM

http://speccy.piriform.com/results/fQmk2TmlXjz7rJjALPKSDt6

#15 louisemary

louisemary
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:11:18 PM

Posted 02 May 2016 - 10:54 PM

MiniToolBox by Farbar Version: 07-02-2016 01
Ran by Administrator (administrator) on 02-05-2016 at 23:53:08
Running from "C:\Users\Administrator\Desktop"
Microsoft Windows 8 (X64)
Model: HP Pavilion TS Sleekbook 14 Manufacturer: Hewlett-Packard
Boot Mode: Normal
***************************************************************************

========================= Event log errors: ===============================

Application errors:
==================
Error: (05/02/2016 11:45:26 PM) (Source: Microsoft-Windows-Immersive-Shell) (User: vigiL)
Description: Activation of app SymantecCorporation.NortonStudio_1.0.0.91_x86__v68kp9n051hdp:App.AppX9wb1ydjnxv2pfjbqnkr1cga3gzqxf7p7.mca failed with error: -2144927149 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (05/02/2016 11:25:11 PM) (Source: Microsoft-Windows-Immersive-Shell) (User: vigiL)
Description: Activation of app SymantecCorporation.NortonStudio_1.0.0.91_x86__v68kp9n051hdp:App.AppX9wb1ydjnxv2pfjbqnkr1cga3gzqxf7p7.mca failed with error: -2144927149 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (05/02/2016 07:36:42 PM) (Source: Application Error) (User: )
Description: Faulting application name: IEXPLORE.EXE, version: 10.0.9200.17568, time stamp: 0x563d87d5
Faulting module name: MSHTML.dll, version: 10.0.9200.17606, time stamp: 0x5669dc3d
Exception code: 0xc0000005
Fault offset: 0x0004288f
Faulting process id: 0x488
Faulting application start time: 0xIEXPLORE.EXE0
Faulting application path: IEXPLORE.EXE1
Faulting module path: IEXPLORE.EXE2
Report Id: IEXPLORE.EXE3
Faulting package full name: IEXPLORE.EXE4
Faulting package-relative application ID: IEXPLORE.EXE5

Error: (05/02/2016 07:36:37 PM) (Source: Application Error) (User: )
Description: Faulting application name: IEXPLORE.EXE, version: 10.0.9200.17568, time stamp: 0x563d87d5
Faulting module name: MSHTML.dll, version: 10.0.9200.17606, time stamp: 0x5669dc3d
Exception code: 0xc0000005
Fault offset: 0x0004288f
Faulting process id: 0x7c4
Faulting application start time: 0xIEXPLORE.EXE0
Faulting application path: IEXPLORE.EXE1
Faulting module path: IEXPLORE.EXE2
Report Id: IEXPLORE.EXE3
Faulting package full name: IEXPLORE.EXE4
Faulting package-relative application ID: IEXPLORE.EXE5

Error: (05/02/2016 07:16:46 PM) (Source: Microsoft-Windows-Immersive-Shell) (User: vigiL)
Description: Activation of app Microsoft.Reader_6.2.8516.0_x64__8wekyb3d8bbwe:Microsoft.Reader.AppXqwpk1t4bvqdvwhxhbyg53psw2e2hmdrd.mca failed with error: -2144927149 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (05/01/2016 11:32:29 PM) (Source: Application Error) (User: )
Description: Faulting application name: Explorer.EXE, version: 6.2.9200.16628, time stamp: 0x51a94434
Faulting module name: van.dll, version: 6.2.9200.16420, time stamp: 0x505aa26d
Exception code: 0xc0000005
Fault offset: 0x0000000000034aff
Faulting process id: 0x574
Faulting application start time: 0xExplorer.EXE0
Faulting application path: Explorer.EXE1
Faulting module path: Explorer.EXE2
Report Id: Explorer.EXE3
Faulting package full name: Explorer.EXE4
Faulting package-relative application ID: Explorer.EXE5

Error: (05/01/2016 10:53:17 PM) (Source: Microsoft-Windows-Immersive-Shell) (User: vigiL)
Description: Activation of app Microsoft.Reader_6.2.8516.0_x64__8wekyb3d8bbwe:Microsoft.Reader.AppXqwpk1t4bvqdvwhxhbyg53psw2e2hmdrd.mca failed with error: -2144927149 See the Microsoft-Windows-TWinUI/Operational log for additional information.

Error: (05/01/2016 08:08:27 PM) (Source: Application Error) (User: )
Description: Faulting application name: mmc.exe, version: 6.2.9200.16496, time stamp: 0x50ece2e8
Faulting module name: KERNELBASE.dll, version: 6.2.9200.17366, time stamp: 0x554d4531
Exception code: 0xe0434352
Fault offset: 0x000000000004aea8
Faulting process id: 0xdf8
Faulting application start time: 0xmmc.exe0
Faulting application path: mmc.exe1
Faulting module path: mmc.exe2
Report Id: mmc.exe3
Faulting package full name: mmc.exe4
Faulting package-relative application ID: mmc.exe5

Error: (05/01/2016 08:08:26 PM) (Source: .NET Runtime) (User: )
Description: Application: mmc.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.Reflection.TargetInvocationException
Stack:
at Microsoft.ManagementConsole.Executive.MmcThreadMessageWindow.OnThreadException(Exception e)
at System.Windows.Forms.NativeWindow.Callback(IntPtr hWnd, Int32 msg, IntPtr wparam, IntPtr lparam)
at System.Windows.Forms.UnsafeNativeMethods.DispatchMessageW(MSG& msg)
at System.Windows.Forms.Application.ComponentManager.System.Windows.Forms.UnsafeNativeMethods.IMsoComponentManager.FPushMessageLoop(IntPtr dwComponentID, Int32 reason, Int32 pvLoopData)
at System.Windows.Forms.Application.ThreadContext.RunMessageLoopInner(Int32 reason, ApplicationContext context)
at System.Windows.Forms.Application.ThreadContext.RunMessageLoop(Int32 reason, ApplicationContext context)
at Microsoft.ManagementConsole.Internal.SnapInMessagePumpProxy.Microsoft.ManagementConsole.Internal.ISnapInMessagePumpProxy.Run()
at Microsoft.ManagementConsole.Executive.SnapInThread.OnThreadStart()
at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
at System.Threading.ThreadHelper.ThreadStart()

Error: (05/01/2016 06:03:04 PM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe_PcaSvc, version: 6.2.9200.16420, time stamp: 0x505a9a4e
Faulting module name: ntdll.dll, version: 6.2.9200.17581, time stamp: 0x5644f0f7
Exception code: 0xc0000008
Fault offset: 0x0000000000004bf9
Faulting process id: 0x5e4
Faulting application start time: 0xsvchost.exe_PcaSvc0
Faulting application path: svchost.exe_PcaSvc1
Faulting module path: svchost.exe_PcaSvc2
Report Id: svchost.exe_PcaSvc3
Faulting package full name: svchost.exe_PcaSvc4
Faulting package-relative application ID: svchost.exe_PcaSvc5


System errors:
=============
Error: (05/02/2016 09:41:09 PM) (Source: EventLog) (User: )
Description: The previous system shutdown at 9:15:17 PM on ‎5/‎2/‎2016 was unexpected.

Error: (05/02/2016 09:40:43 PM) (Source: Microsoft-Windows-Kernel-Boot) (User: NT AUTHORITY)
Description: 32212255951150624

Error: (05/02/2016 09:39:41 PM) (Source: DCOM) (User: vigiL)
Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (05/02/2016 09:39:39 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (05/02/2016 09:39:39 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (05/02/2016 09:39:39 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (05/02/2016 09:39:37 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (05/02/2016 09:39:37 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (05/02/2016 09:39:37 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (05/02/2016 09:39:34 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068


Microsoft Office Sessions:
=========================
Error: (05/02/2016 11:45:26 PM) (Source: Microsoft-Windows-Immersive-Shell)(User: vigiL)
Description: SymantecCorporation.NortonStudio_1.0.0.91_x86__v68kp9n051hdp:App.AppX9wb1ydjnxv2pfjbqnkr1cga3gzqxf7p7.mca-2144927149

Error: (05/02/2016 11:25:11 PM) (Source: Microsoft-Windows-Immersive-Shell)(User: vigiL)
Description: SymantecCorporation.NortonStudio_1.0.0.91_x86__v68kp9n051hdp:App.AppX9wb1ydjnxv2pfjbqnkr1cga3gzqxf7p7.mca-2144927149

Error: (05/02/2016 07:36:42 PM) (Source: Application Error)(User: )
Description: IEXPLORE.EXE10.0.9200.17568563d87d5MSHTML.dll10.0.9200.176065669dc3dc00000050004288f48801d1a4cb037d2824C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\Windows\SYSTEM32\MSHTML.dllb9241d3b-10be-11e6-be93-a0481c04ec41

Error: (05/02/2016 07:36:37 PM) (Source: Application Error)(User: )
Description: IEXPLORE.EXE10.0.9200.17568563d87d5MSHTML.dll10.0.9200.176065669dc3dc00000050004288f7c401d1a4cb088fb4ceC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\Windows\SYSTEM32\MSHTML.dllb5fe378b-10be-11e6-be93-a0481c04ec41

Error: (05/02/2016 07:16:46 PM) (Source: Microsoft-Windows-Immersive-Shell)(User: vigiL)
Description: Microsoft.Reader_6.2.8516.0_x64__8wekyb3d8bbwe:Microsoft.Reader.AppXqwpk1t4bvqdvwhxhbyg53psw2e2hmdrd.mca-2144927149

Error: (05/01/2016 11:32:29 PM) (Source: Application Error)(User: )
Description: Explorer.EXE6.2.9200.1662851a94434van.dll6.2.9200.16420505aa26dc00000050000000000034aff57401d1a40ebd62dd9cC:\Windows\Explorer.EXEC:\Windows\SYSTEM32\van.dll7e96c944-1016-11e6-be90-a0481c04ec41

Error: (05/01/2016 10:53:17 PM) (Source: Microsoft-Windows-Immersive-Shell)(User: vigiL)
Description: Microsoft.Reader_6.2.8516.0_x64__8wekyb3d8bbwe:Microsoft.Reader.AppXqwpk1t4bvqdvwhxhbyg53psw2e2hmdrd.mca-2144927149

Error: (05/01/2016 08:08:27 PM) (Source: Application Error)(User: )
Description: mmc.exe6.2.9200.1649650ece2e8KERNELBASE.dll6.2.9200.17366554d4531e0434352000000000004aea8df801d1a406719a74f7C:\Windows\system32\mmc.exeC:\Windows\system32\KERNELBASE.dllfdf0e27d-0ff9-11e6-be8e-a0481c04ec41

Error: (05/01/2016 08:08:26 PM) (Source: .NET Runtime)(User: )
Description: Application: mmc.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.Reflection.TargetInvocationException
Stack:
at Microsoft.ManagementConsole.Executive.MmcThreadMessageWindow.OnThreadException(Exception e)
at System.Windows.Forms.NativeWindow.Callback(IntPtr hWnd, Int32 msg, IntPtr wparam, IntPtr lparam)
at System.Windows.Forms.UnsafeNativeMethods.DispatchMessageW(MSG& msg)
at System.Windows.Forms.Application.ComponentManager.System.Windows.Forms.UnsafeNativeMethods.IMsoComponentManager.FPushMessageLoop(IntPtr dwComponentID, Int32 reason, Int32 pvLoopData)
at System.Windows.Forms.Application.ThreadContext.RunMessageLoopInner(Int32 reason, ApplicationContext context)
at System.Windows.Forms.Application.ThreadContext.RunMessageLoop(Int32 reason, ApplicationContext context)
at Microsoft.ManagementConsole.Internal.SnapInMessagePumpProxy.Microsoft.ManagementConsole.Internal.ISnapInMessagePumpProxy.Run()
at Microsoft.ManagementConsole.Executive.SnapInThread.OnThreadStart()
at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
at System.Threading.ThreadHelper.ThreadStart()

Error: (05/01/2016 06:03:04 PM) (Source: Application Error)(User: )
Description: svchost.exe_PcaSvc6.2.9200.16420505a9a4entdll.dll6.2.9200.175815644f0f7c00000080000000000004bf95e401d1a3edaa8fc49aC:\Windows\System32\svchost.exeC:\Windows\SYSTEM32\ntdll.dll7a223f8a-0fe8-11e6-be8b-a0ccacf53d9b


CodeIntegrity Errors:
===================================
Date: 2016-04-30 06:34:51.939
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\WindowsApps\SymantecCorporation.NortonStudio_1.0.0.91_x86__v68kp9n051hdp\mmaMain.exe with signing level Unsigned while the system requires signing level 6 or better to load.

Date: 2016-04-26 18:24:41.192
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\WindowsApps\SymantecCorporation.NortonStudio_1.0.0.91_x86__v68kp9n051hdp\mmaMain.exe with signing level Unsigned while the system requires signing level 6 or better to load.

Date: 2016-04-26 15:42:59.965
Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\WindowsApps\SymantecCorporation.NortonStudio_1.0.0.91_x86__v68kp9n051hdp\mmaMain.exe with signing level Unsigned while the system requires signing level 6 or better to load.


=========================== Installed Programs ============================

4 Elements II (HKLM-x32\...\WTA-126bc3b9-9187-467a-bc42-0167036a43ec) (Version: 2.2.0.98 - WildTangent) Hidden
Airport Mania (HKLM-x32\...\WTA-d7acccbe-04f9-4c4c-90a3-5844f0681078) (Version: 2.2.0.95 - WildTangent) Hidden
Azteca (HKLM-x32\...\WTA-4765ca24-5f85-48c1-981c-85d6305cb102) (Version: 2.2.0.97 - WildTangent) Hidden
Bejeweled 3 (HKLM-x32\...\WTA-063c7272-4216-4403-b92c-c489064aed0d) (Version: 2.2.0.98 - WildTangent) Hidden
Bounce Symphony (HKLM-x32\...\WTA-7b5026b7-efae-43e6-8ab4-d4d5b4a405f6) (Version: 2.2.0.98 - WildTangent) Hidden
Build-a-lot (HKLM-x32\...\WTA-049693be-bb25-42ca-b9a1-f193e65d67f7) (Version: 2.2.0.98 - WildTangent) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.17 - Piriform)
CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.2.2114 - CyberLink Corp.)
CyberLink PhotoDirector (HKLM-x32\...\InstallShield_{4862344A-A39C-4897-ACD4-A1BED5163C5A}) (Version: 2.0.2.3317 - CyberLink Corp.)
CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.2.2126 - CyberLink Corp.)
CyberLink PowerDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.7.4528 - CyberLink Corp.)
CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.5.5.5811 - CyberLink Corp.)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft)
Emsisoft Anti-Malware (HKLM\...\{5502032C-88C1-4303-99FE-B5CBD7684CEA}_is1) (Version: 11.6 - Emsisoft Ltd.)
Energy Star (HKLM-x32\...\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}) (Version: 1.0.9 - Hewlett-Packard Company)
FATE: The Cursed King (HKLM-x32\...\WTA-18f0422a-6102-4865-9220-d41a3189339a) (Version: 2.2.0.97 - WildTangent) Hidden
Final Drive Fury (HKLM-x32\...\WTA-a465fe4a-4889-46a4-9ea6-3ef13f284f1d) (Version: 2.2.0.95 - WildTangent) Hidden
GlassWire 1.2 (remove only) (HKLM-x32\...\GlassWire 1.2) (Version: 1.2.54 - SecureMix LLC)
Hewlett-Packard ACLM.NET v1.2.1.1 (HKLM-x32\...\{6F340107-F9AA-47C6-B54C-C3A19F11553F}) (Version: 1.00.0000 - Hewlett-Packard Company) Hidden
Hoyle Card Games (HKLM-x32\...\WTA-e9985900-85fb-4b4a-8466-9daec72d8f2b) (Version: 2.2.0.95 - WildTangent) Hidden
HP 3D DriveGuard (HKLM\...\{6821D775-9303-46DD-977A-2D97CA18B054}) (Version: 4.2.8.1 - Hewlett-Packard Company)
HP Connected Music (Meridian - installer) (HKLM-x32\...\StartHPConnectedMusic) (Version: v1.0 - Meridian Audio Ltd)
HP Connected Remote (HKLM-x32\...\{F243A34B-AB7F-4065-B770-B85B767C247C}) (Version: 1.0.1218 - Hewlett-Packard)
HP CoolSense (HKLM-x32\...\{8704FEEF-A6A8-4E7E-B124-BD6122C66E2C}) (Version: 2.10.42 - Hewlett-Packard Company)
HP Documentation (HKLM-x32\...\{DD27F8B0-BFDE-4188-89A0-BBF389FC367E}) (Version: 1.2.0.0 - Hewlett-Packard)
HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.3.0 - WildTangent)
HP MyRoom (HKLM-x32\...\{9C35EDE5-4B0F-45E7-A438-314BA889948E}) (Version: 9.0.0.0 - Hewlett-Packard Company)
HP Quick Launch (HKLM-x32\...\{E5823036-6F09-4D0A-B05C-E2BAA129288A}) (Version: 3.0.6 - Hewlett-Packard Company)
HP Registration Service (HKLM\...\{C2E428EB-116E-41C0-9E84-B22DE9CCA42F}) (Version: 1.1.6232.4245 - Hewlett-Packard)
HP Support Assistant (HKLM-x32\...\{EE202411-2C26-49E8-9784-1BC1DBF7DE96}) (Version: 7.0.39.15 - Hewlett-Packard Company)
HP Utility Center (HKLM-x32\...\{0C57987A-A03A-4B95-A309-D23F78F406CA}) (Version: 1.0.8 - Hewlett-Packard)
HP Wireless Button Driver (HKLM-x32\...\{941DE69D-6CEE-4171-8F1F-3D7E352AA498}) (Version: 1.0.6.1 - Hewlett-Packard Company)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6425.0 - IDT)
Intel® Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2857 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.9.1002 - Intel Corporation)
Intel® SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Jewel Match 3 (HKLM-x32\...\WTA-2d7a8c39-2054-4c7e-b556-cb45c2c61f6c) (Version: 2.2.0.98 - WildTangent) Hidden
John Deere Drive Green (HKLM-x32\...\WTA-72f32e99-622f-48b2-ba2b-8e2bffc9a586) (Version: 2.2.0.95 - WildTangent) Hidden
Kaspersky Cleaner (HKLM-x32\...\{6D8461B7-6026-497C-A94B-95BC1A4E3EBC}) (Version: 1.0.0.106 - Kaspersky Lab)
Letters from Nowhere 2 (HKLM-x32\...\WTA-62a671bc-06a2-494d-8491-8ccdaddcd711) (Version: 2.2.0.97 - WildTangent) Hidden
Mah Jong Medley (HKLM-x32\...\WTA-c81f1900-6cfa-4138-85d5-632939ee3193) (Version: 2.2.0.95 - WildTangent) Hidden
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Movie Maker (HKLM-x32\...\{40F55150-F43D-4C9F-9A00-1A0A6F1EB7F0}) (Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{D71BC54E-A4E6-4E06-866C-FD6EE16EA187}) (Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Mozilla Firefox 46.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 46.0 (x86 en-US)) (Version: 46.0 - Mozilla)
Mystery of Mortlake Mansion (HKLM-x32\...\WTA-288ff4f3-adb6-491b-982a-a6bd8fa9a162) (Version: 2.2.0.98 - WildTangent) Hidden
NirSoft SysExporter (HKLM-x32\...\NirSoft SysExporter) (Version: - )
Penguins! (HKLM-x32\...\WTA-733ffe11-d00a-42f8-b7fd-7f2352855589) (Version: 2.2.0.98 - WildTangent) Hidden
Polar Bowler (HKLM-x32\...\WTA-49660956-c1a0-4114-ae1f-7d0d32216e74) (Version: 2.2.0.97 - WildTangent) Hidden
Polar Golfer (HKLM-x32\...\WTA-66c7792b-e9e8-441c-ad82-9ead2b86058c) (Version: 2.2.0.98 - WildTangent) Hidden
Qualcomm Atheros Driver Installation Program (HKLM-x32\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 10.0 - Qualcomm Atheros)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.3.730.2012 - Realtek)
Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.2.8400.29029 - Realtek Semiconductor Corp.)
Resource Hacker Version 3.6.0 (HKLM-x32\...\ResourceHacker_is1) (Version: - )
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Roads of Rome 3 (HKLM-x32\...\WTA-2607fc81-6229-42d1-937d-1a92069a3038) (Version: 2.2.0.98 - WildTangent) Hidden
Secunia PSI (3.0.0.11005) (HKLM-x32\...\Secunia PSI) (Version: 3.0.0.11005 - Secunia)
swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.10.12 - Synaptics Incorporated)
The Treasures of Mystery Island: The Ghost Ship (HKLM-x32\...\WTA-65365455-cb2a-4b9f-a9a0-8676b311c506) (Version: 2.2.0.98 - WildTangent) Hidden
Update Installer for WildTangent Games App (HKLM-x32\...\{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App) (Version: - WildTangent) Hidden
WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.3.0 - WildTangent)
WildTangent Games App (HKLM-x32\...\{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp) (Version: 4.0.9.7 - WildTangent) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3503.0728 - Microsoft Corporation)
Zuma's Revenge (HKLM-x32\...\WTA-0a45eb18-c1ea-4b8b-9c02-55d7925de97b) (Version: 2.2.0.98 - WildTangent) Hidden

========================= Memory info: ===================================

Percentage of memory in use: 40%
Total physical RAM: 3986.27 MB
Available physical RAM: 2365.77 MB
Total Virtual: 5586.27 MB
Available Virtual: 3605.55 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:92 GB) (Free:42 GB) NTFS
2 Drive d: (RECOVERY) (Fixed) (Total:26.39 GB) (Free:3.08 GB) NTFS
3 Drive e: (RECOVERY) (Removable) (Total:14.44 GB) (Free:13.53 GB) FAT32

========================= Users: ========================================

User accounts for \\VIGIL

Administrator Guest her
lisa Long will

========================= Minidump Files ==================================

No minidump file found


**** End of log ****




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users