2015-05-02

I am using BitDefender Total Security 2015 as my AV. BD says I am infected; it took care of some minor items, but said to use BitDefender in Rescue mode to remove the remaining problems. I allow BD to start up in Rescue mode, but with each attempt, I find that my mouse and keyboard will not work.

*** I have run the FARBAR app, and here are the FRST and ADDITION logs following the scan:

FRST:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-05-2015

Ran by David (administrator) on GATES_1 on 02-05-2015 09:14:11

Running from C:\Users\David\Downloads

Loaded Profiles: David (Available profiles: David & Janine & Katelyn)

Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: English (United States)

Internet Explorer Version 11 (Default browser: FF)

Boot Mode: Normal

Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic...ery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe

(AMD) C:\Windows\System32\atiesrxx.exe

(Microsoft Corporation) C:\Windows\System32\wlanext.exe

(AMD) C:\Windows\System32\atieclxx.exe

(Advanced Micro Devices, Inc.) C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe

(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe

() C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvc.exe

(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe

(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe

(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe

(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIGBA.EXE

(ashampoo GmbH & Co. KG) E:\Program Files\Ashampoo\Ashampoo Snap 5\ashsnap.exe

() C:\Program Files (x86)\NETGEAR\WNA3100\WNA3100.exe

(SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe

(SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe

(Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe

(ATI Technologies Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe

(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr.exe

(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr_im.exe

(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe

(Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe

(Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe [1691112 2015-03-29] (Bitdefender)

HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [976320 2009-12-03] (SEIKO EPSON CORPORATION)

HKLM-x32\...\Run: [FUFAXSTM] => C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [847872 2009-12-03] (SEIKO EPSON CORPORATION)

HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2014-11-20] (Advanced Micro Devices, Inc.)

HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [55568 2015-03-24] (Raptr, Inc)

HKU\S-1-5-21-3247265213-742689891-4045190857-1000\...\Run: [Bitdefender Wallet Agent] => C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe [790880 2015-03-29] (Bitdefender)

HKU\S-1-5-21-3247265213-742689891-4045190857-1000\...\Run: [EPSON WorkForce 630 Series] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGBA.EXE [224768 2010-01-12] (SEIKO EPSON CORPORATION)

HKU\S-1-5-21-3247265213-742689891-4045190857-1000\...\Run: [AshSnap] => E:\Program Files\Ashampoo\Ashampoo Snap 5\ashsnap.exe [3400600 2012-08-03] (ashampoo GmbH & Co. KG)

HKU\S-1-5-21-3247265213-742689891-4045190857-1000\...\MountPoints2: {57d775cb-d5aa-11e4-b329-806e6f6e6963} - J:\SETUP.EXE

HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2015-03-30] (Microsoft Corporation)

Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NETGEAR WNA3100 Genie.lnk [2015-03-28]

ShortcutTarget: NETGEAR WNA3100 Genie.lnk -> C:\Program Files (x86)\NETGEAR\WNA3100\WNA3100.exe ()

ShellIconOverlayIdentifiers: [__SafeBox1] -> {152C96EB-288E-4EDC-B7C6-D21F8250ADF3} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll [2014-07-04] (Bitdefender)

ShellIconOverlayIdentifiers: [__SafeBox2] -> {342DAA0B-D796-460D-8566-901E08A1CCAD} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll [2014-07-04] (Bitdefender)

ShellIconOverlayIdentifiers: [__SafeBox3] -> {57595DAE-1AE1-4D97-A49E-67CBB53B52DF} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll [2014-07-04] (Bitdefender)

ShellIconOverlayIdentifiers: [__SafeBox4] -> {33816773-98AE-4723-ADE0-EBE54C8B5A67} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll [2014-07-04] (Bitdefender)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

BHO: Bitdefender Wallet -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll [2015-03-29] (Bitdefender)

BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)

BHO-x32: Bitdefender Wallet -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll [2015-03-29] (Bitdefender)

BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)

Toolbar: HKLM - Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll [2015-03-29] (Bitdefender)

Toolbar: HKLM-x32 - Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll [2015-03-29] (Bitdefender)

Toolbar: HKU\S-1-5-21-3247265213-742689891-4045190857-1000 -> Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll [2015-03-29] (Bitdefender)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:

========

FF ProfilePath: C:\Users\David\AppData\Roaming\Mozilla\Firefox\Profiles\60poxzce.default

FF DefaultSearchEngine.US: Google

FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll [2015-04-16] ()

FF Plugin: @microsoft.com/GENUINE -> disabled No File

FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)

FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-16] ()

FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File

FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)

FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)

FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\bdtbext

FF Extension: Bitdefender Antispam Toolbar - C:\Program Files\Bitdefender\Bitdefender 2015\bdtbext [2015-03-29]

FF HKLM-x32\...\Firefox\Extensions: [bdwteff@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff

FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff [2015-03-29]

FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\bdtbext

StartMenuInternet: FIREFOX.EXE - F:\Program Files (x86)\Mozilla Firefox25\firefox.exe

Chrome:

=======

CHR HKLM-x32\...\Chrome\Extension: [fabcmochhfpldjekobfaaggijgohadih] - https://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-11-20] (Advanced Micro Devices, Inc.) [File not signed]

S3 BdDesktopParental; C:\Program Files\Bitdefender\Bitdefender 2015\bdparentalservice.exe [78144 2014-12-09] (Bitdefender)

S4 SafeBox; C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [94624 2013-07-08] (Bitdefender)

R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe [67320 2014-10-27] (Bitdefender)

R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe [1547936 2015-03-29] (Bitdefender)

S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-26] (Microsoft Corporation)

R2 WSWNA3100; C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvc.exe [316120 2014-08-18] ()

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AODDriver4.3; C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices)

R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [1306464 2015-03-29] (BitDefender)

R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [677104 2015-03-29] (BitDefender)

R1 BdfNdisf; c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [93600 2015-03-29] (BitDefender LLC)

R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [107080 2012-10-29] (BitDefender LLC)

S3 bdfwfpf_pc; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [121928 2013-07-02] (Bitdefender SRL)

S3 BDSandBox; C:\Windows\system32\drivers\bdsandbox.sys [82824 2015-03-29] (BitDefender SRL)

R1 BDVEDISK; C:\Windows\System32\DRIVERS\bdvedisk.sys [76944 2012-04-17] (BitDefender)

R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [160544 2015-03-29] (BitDefender LLC)

S3 NPF; C:\Windows\System32\DRIVERS\npf.sys [47632 2010-02-03] (CACE Technologies, Inc.)

R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [452040 2014-10-15] (BitDefender S.R.L.)

S3 cpuz138; \??\C:\Users\David\AppData\Local\Temp\cpuz138\cpuz138_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)

==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-02 09:14 - 2015-05-02 09:14 - 00010671 _____ () C:\Users\David\Downloads\FRST.txt

2015-05-02 09:13 - 2015-05-02 09:14 - 00000000 ____D () C:\FRST

2015-05-02 09:13 - 2015-05-02 09:13 - 02101248 _____ (Farbar) C:\Users\David\Downloads\FRST64.exe

2015-05-02 07:57 - 2015-05-02 07:57 - 00000000 ____D () C:\ProgramData\ATI

2015-05-02 01:10 - 2015-05-02 01:10 - 00000000 ____D () C:\Users\David\AppData\Roaming\library_dir

2015-05-02 01:10 - 2015-05-02 01:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved

2015-05-02 01:09 - 2015-05-02 09:02 - 00000000 ____D () C:\Users\David\AppData\Roaming\Raptr

2015-05-02 01:09 - 2015-05-02 01:10 - 00000000 ____D () C:\Program Files (x86)\Raptr

2015-05-02 01:09 - 2015-05-02 01:09 - 00058610 _____ () C:\Windows\SysWOW64\CCCInstall_201505020109117774.log

2015-05-02 01:09 - 2015-05-02 01:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center

2015-05-02 01:09 - 2015-05-02 01:09 - 00000000 ____D () C:\Program Files (x86)\AMD AVT

2015-05-02 01:07 - 2015-05-02 01:07 - 00000000 ____D () C:\Program Files (x86)\AMD

2015-04-22 07:38 - 2015-04-22 14:01 - 00000000 ____D () C:\ProgramData\Adobe

2015-04-22 07:38 - 2015-04-22 07:38 - 00000000 ____D () C:\Program Files (x86)\Adobe

2015-04-17 07:39 - 2015-04-17 07:39 - 00000000 ____D () C:\Users\David\AppData\Local\bdch

2015-04-12 18:28 - 2015-04-12 18:28 - 00000136 _____ () C:\Users\David\Desktop\Deltek - ByLight Timekeeping.url

2015-04-12 12:30 - 2015-04-12 12:30 - 00280040 _____ () C:\Windows\Minidump\041215-38126-01.dmp

2015-04-11 11:48 - 2015-04-11 11:48 - 00280040 _____ () C:\Windows\Minidump\041115-39593-01.dmp

2015-04-08 20:02 - 2015-04-08 20:02 - 00000000 ____D () C:\ProgramData\bdch

2015-04-07 19:45 - 2015-04-07 19:45 - 00262144 _____ () C:\Windows\Minidump\040715-41964-01.dmp

2015-04-07 10:07 - 2015-04-07 10:07 - 00000000 ____D () C:\Users\David\AppData\Local\Macromedia

2015-04-06 23:58 - 2015-04-06 23:58 - 00000000 ____D () C:\Users\David\AppData\Roaming\Macromedia

2015-04-06 23:52 - 2015-04-16 15:48 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe

2015-04-06 23:52 - 2015-04-16 15:48 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

2015-04-06 23:52 - 2015-04-06 23:52 - 00000000 ____D () C:\Windows\SysWOW64\Macromed

2015-04-06 23:52 - 2015-04-06 23:52 - 00000000 ____D () C:\Windows\system32\Macromed

2015-04-06 23:50 - 2015-04-06 23:50 - 00000000 __SHD () C:\Users\David\AppData\Local\EmieUserList

2015-04-06 23:50 - 2015-04-06 23:50 - 00000000 __SHD () C:\Users\David\AppData\Local\EmieSiteList

2015-04-06 23:50 - 2015-04-06 23:50 - 00000000 __SHD () C:\Users\David\AppData\Local\EmieBrowserModeList

2015-04-06 23:49 - 2015-04-22 16:20 - 00000000 ____D () C:\Users\David\AppData\Local\Adobe

2015-04-03 20:39 - 2015-04-03 20:39 - 00000000 __SHD () C:\Users\Janine\AppData\Local\EmieUserList

2015-04-03 20:39 - 2015-04-03 20:39 - 00000000 __SHD () C:\Users\Janine\AppData\Local\EmieSiteList

2015-04-03 20:39 - 2015-04-03 20:39 - 00000000 __SHD () C:\Users\Janine\AppData\Local\EmieBrowserModeList

2015-04-03 20:39 - 2015-04-03 20:39 - 00000000 ____D () C:\Users\Janine\AppData\Roaming\Epson

2015-04-03 20:39 - 2015-04-03 20:39 - 00000000 ____D () C:\Users\Janine\AppData\Roaming\Adobe

2015-04-03 20:39 - 2015-04-03 20:39 - 00000000 _____ () C:\Users\Janine\Sti_Trace.log

2015-04-02 17:38 - 2015-04-02 17:38 - 00280040 _____ () C:\Windows\Minidump\040215-42385-01.dmp

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-02 09:08 - 2009-07-13 22:45 - 00016176 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0

2015-05-02 09:08 - 2009-07-13 22:45 - 00016176 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0

2015-05-02 09:05 - 2009-07-13 23:13 - 00781694 _____ () C:\Windows\system32\PerfStringBackup.INI

2015-05-02 09:04 - 2015-03-28 18:31 - 01854818 _____ () C:\Windows\WindowsUpdate.log

2015-05-02 09:01 - 2009-07-13 23:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT

2015-05-02 09:01 - 2009-07-13 22:51 - 00020621 _____ () C:\Windows\setupact.log

2015-05-02 09:00 - 2015-03-28 18:49 - 00033056 _____ () C:\Windows\PFRO.log

2015-05-02 08:54 - 2015-03-29 14:39 - 00000682 ____H () C:\bdr-cf01

2015-05-02 01:09 - 2015-03-28 20:58 - 00000000 ____D () C:\ProgramData\AMD

2015-05-02 01:09 - 2015-03-28 20:58 - 00000000 ____D () C:\Program Files\AMD

2015-05-02 01:08 - 2015-03-28 20:55 - 00000000 ____D () C:\Program Files\ATI Technologies

2015-05-02 01:05 - 2015-03-28 20:54 - 00000000 ____D () C:\AMD

2015-04-22 16:20 - 2015-03-31 08:59 - 00000000 ____D () C:\Users\David\AppData\Roaming\Adobe

2015-04-21 10:17 - 2009-07-13 21:20 - 00000000 ____D () C:\Windows\LiveKernelReports

2015-04-20 18:08 - 2015-04-01 08:46 - 00000000 ____D () C:\Users\David\Documents\Outlook Files

2015-04-16 20:51 - 2015-03-28 18:20 - 00000000 ____D () C:\Users\David\AppData\Local\Microsoft Help

2015-04-12 12:30 - 2015-03-31 03:16 - 1035826792 _____ () C:\Windows\MEMORY.DMP

2015-04-12 12:30 - 2015-03-31 03:16 - 00000000 ____D () C:\Windows\Minidump

2015-04-06 08:24 - 2009-07-13 21:20 - 00000000 ____D () C:\Windows\system32\NDF

2015-04-03 20:39 - 2015-03-29 16:21 - 00109296 _____ () C:\Users\Janine\AppData\Local\GDIPFONTCACHEV1.DAT

2015-04-03 20:39 - 2015-03-29 16:21 - 00001413 _____ () C:\Users\Janine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk

2015-04-02 17:38 - 2009-07-13 22:45 - 00408136 _____ () C:\Windows\system32\FNTCACHE.DAT

==================== Files in the root of some directories =======

2015-03-29 14:41 - 2015-03-29 14:41 - 0771475 _____ () C:\ProgramData\1427660851.bdinstall.bin

Some content of TEMP:

====================

C:\Users\David\AppData\Local\Temp\ose00000.exe

C:\Users\David\AppData\Local\Temp\raptrpatch.exe

C:\Users\David\AppData\Local\Temp\raptr_stub.exe

C:\Users\David\AppData\Local\Temp\speccycpuid.dll

C:\Users\David\AppData\Local\Temp\tmp77A3.exe

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed

C:\Windows\System32\wininit.exe => File is digitally signed

C:\Windows\SysWOW64\wininit.exe => File is digitally signed

C:\Windows\explorer.exe => File is digitally signed

C:\Windows\SysWOW64\explorer.exe => File is digitally signed

C:\Windows\System32\svchost.exe => File is digitally signed

C:\Windows\SysWOW64\svchost.exe => File is digitally signed

C:\Windows\System32\services.exe => File is digitally signed

C:\Windows\System32\User32.dll => File is digitally signed

C:\Windows\SysWOW64\User32.dll => File is digitally signed

C:\Windows\System32\userinit.exe => File is digitally signed

C:\Windows\SysWOW64\userinit.exe => File is digitally signed

C:\Windows\System32\rpcss.dll => File is digitally signed

C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2015-05-01 22:08

==================== End Of Log ============================

ADDITION:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-05-2015

Ran by David at 2015-05-02 09:14:41

Running from C:\Users\David\Downloads

Boot Mode: Normal

==========================================================

==================== Accounts: =============================

Administrator (S-1-5-21-3247265213-742689891-4045190857-500 - Administrator - Disabled)

David (S-1-5-21-3247265213-742689891-4045190857-1000 - Administrator - Enabled) => C:\Users\David

Guest (S-1-5-21-3247265213-742689891-4045190857-501 - Limited - Disabled)

Janine (S-1-5-21-3247265213-742689891-4045190857-1002 - Limited - Enabled) => C:\Users\Janine

Katelyn (S-1-5-21-3247265213-742689891-4045190857-1003 - Limited - Enabled) => C:\Users\Katelyn

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Bitdefender Antivirus (Enabled - Up to date) {9A0813D8-CED6-F86B-072E-28D2AF25A83D}

AS: Bitdefender Antispyware (Enabled - Up to date) {2169F23C-E8EC-F7E5-3D9E-13A0D4A2E280}

AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

FW: Bitdefender Firewall (Enabled) {A23392FD-84B9-F933-2C71-81E751F6EF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated)

AMD Catalyst Install Manager (HKLM\...\{F2A7CE36-57BF-5C86-952D-90DBF3746D82}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)

Bitdefender Total Security 2015 (HKLM\...\Bitdefender) (Version: 18.20.0.1429 - Bitdefender)

Epson Event Manager (HKLM-x32\...\{03B8AA32-F23C-4178-B8E6-09ECD07EAA47}) (Version: 2.40.0001 - SEIKO EPSON CORPORATION)

Epson FAX Utility (HKLM-x32\...\{0CBE6C93-CB2E-4378-91EE-12BE6D4E2E4A}) (Version: 1.10.00 - SEIKO EPSON CORPORATION)

Epson PC-FAX Driver (HKLM-x32\...\EPSON PC-FAX Driver 2) (Version: - )

EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation)

EPSON WorkForce 630 Series Printer Uninstall (HKLM\...\EPSON WorkForce 630 Series) (Version: - SEIKO EPSON Corporation)

Etron USB3.0 Host Controller (HKLM-x32\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.115 - Etron Technology)

Etron USB3.0 Host Controller (x32 Version: 0.115 - Etron Technology) Hidden

Magical Jelly Bean KeyFinder (HKLM-x32\...\KeyFinder_is1) (Version: 2.0.10.10 - Magical Jelly Bean)

Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation)

Microsoft Office Home and Student 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)

Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{14297226-E0A0-3781-8911-E9D529552663}) (Version: 9.0.30729 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)

Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)

Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)

Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)

Mozilla Firefox 36.0.4 (x86 en-US) (HKU\S-1-5-21-3247265213-742689891-4045190857-1000\...\Mozilla Firefox 36.0.4 (x86 en-US)) (Version: 36.0.4 - Mozilla)

Mozilla Firefox 37.0.1 (x86 en-US) (HKU\S-1-5-21-3247265213-742689891-4045190857-1000\...\Mozilla Firefox 37.0.1 (x86 en-US)) (Version: 37.0.1 - Mozilla)

NETGEAR WNA3100 wireless USB 2.0 adapter (HKLM-x32\...\{C2425F91-1F7B-4037-9A05-9F290184798D}) (Version: 2.2.0.4 - NETGEAR)

Raptr (HKLM-x32\...\Raptr) (Version: - )

Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.90.826.2014 - Realtek)

Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)

Speccy (HKLM\...\Speccy) (Version: 1.28 - Piriform)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

==================== Restore Points =========================

01-01-2008 00:09:02 Installed Realtek Ethernet Controller Driver

11-04-2015 18:13:37 Scheduled Checkpoint

19-04-2015 00:33:16 Scheduled Checkpoint

01-05-2015 22:15:34 Scheduled Checkpoint

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-13 20:34 - 2009-06-10 15:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {2BD849CD-44FA-41DB-B55D-7D8B06A2D55D} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc

==================== Loaded Modules (whitelisted) ==============

2015-03-29 14:38 - 2014-08-27 16:31 - 00265080 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\txmlutil.dll

2015-03-29 14:38 - 2013-09-03 14:29 - 00101328 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\bdmetrics.dll

2015-03-29 14:39 - 2014-12-17 14:34 - 00003072 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\UI\accessl.ui

2015-03-29 14:39 - 2012-10-29 14:22 - 00152816 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\bdfwcore.dll

2015-05-01 20:41 - 2015-05-01 20:41 - 00789856 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_00250_005\ashttpbr.mdl

2015-05-01 20:41 - 2015-05-01 20:41 - 00710016 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_00250_005\ashttpdsp.mdl

2015-05-01 20:41 - 2015-05-01 20:41 - 02683008 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_00250_005\ashttpph.mdl

2015-05-01 20:41 - 2015-05-01 20:41 - 01325480 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_00250_005\ashttprbl.mdl

2014-11-20 21:23 - 2014-11-20 21:23 - 00214528 _____ () C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll

2014-02-11 06:08 - 2014-02-11 06:08 - 00817152 _____ () C:\Program Files\AMD\ATI.ACE\Fuel\Device.dll

2014-02-11 06:08 - 2014-02-11 06:08 - 03650560 _____ () C:\Program Files\AMD\ATI.ACE\Fuel\Platform.dll

2014-11-20 21:23 - 2014-11-20 21:23 - 00127488 _____ () C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Container.Wlan.dll

2015-03-28 18:00 - 2014-08-18 17:50 - 00316120 _____ () C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvc.exe

2015-03-28 18:00 - 2014-08-18 17:49 - 08274648 _____ () C:\Program Files (x86)\NETGEAR\WNA3100\WNA3100.exe

2014-11-20 21:23 - 2014-11-20 21:23 - 00102400 _____ () C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Proxy.Native.dll

2015-03-28 18:00 - 2015-02-26 20:19 - 00380928 _____ () C:\Program Files (x86)\NETGEAR\WNA3100\WifiLib.dll

2013-03-18 19:11 - 2012-08-03 11:29 - 00042904 ____N () E:\Program Files\Ashampoo\Ashampoo Snap 5\MouseHook.dll

2015-03-28 18:00 - 2014-07-22 10:18 - 00278528 _____ () C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvcLib.dll

2009-07-13 15:03 - 2009-07-13 19:15 - 00364544 _____ () C:\Windows\SysWOW64\msjetoledb40.dll

2010-11-22 16:56 - 2010-11-22 16:56 - 00087040 _____ () C:\Program Files (x86)\Raptr\_ctypes.pyd

2010-11-22 16:56 - 2010-11-22 16:56 - 00043008 _____ () C:\Program Files (x86)\Raptr\_socket.pyd

2010-11-22 16:56 - 2010-11-22 16:56 - 00805376 _____ () C:\Program Files (x86)\Raptr\_ssl.pyd

2014-05-13 17:26 - 2014-05-13 17:26 - 05812736 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtGui.pyd

2014-05-13 17:26 - 2014-05-13 17:26 - 00067584 _____ () C:\Program Files (x86)\Raptr\sip.pyd

2014-05-13 17:26 - 2014-05-13 17:26 - 01662464 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtCore.pyd

2014-05-13 17:26 - 2014-05-13 17:26 - 00494592 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtNetwork.pyd

2010-11-22 16:57 - 2010-11-22 16:57 - 00096256 _____ () C:\Program Files (x86)\Raptr\win32api.pyd

2010-11-22 16:56 - 2010-11-22 16:56 - 00110592 _____ () C:\Program Files (x86)\Raptr\pywintypes26.dll

2010-11-22 16:56 - 2010-11-22 16:56 - 00010240 _____ () C:\Program Files (x86)\Raptr\select.pyd

2010-11-22 16:56 - 2010-11-22 16:56 - 00356864 _____ () C:\Program Files (x86)\Raptr\_hashlib.pyd

2010-11-22 16:57 - 2010-11-22 16:57 - 00036352 _____ () C:\Program Files (x86)\Raptr\win32process.pyd

2010-11-22 16:57 - 2010-11-22 16:57 - 00111104 _____ () C:\Program Files (x86)\Raptr\win32file.pyd

2010-11-22 16:56 - 2010-11-22 16:56 - 00044544 _____ () C:\Program Files (x86)\Raptr\_sqlite3.pyd

2011-02-15 12:17 - 2011-02-15 12:17 - 00417501 _____ () C:\Program Files (x86)\Raptr\sqlite3.dll

2010-11-22 16:57 - 2010-11-22 16:57 - 00167936 _____ () C:\Program Files (x86)\Raptr\win32gui.pyd

2014-05-13 17:26 - 2014-05-13 17:26 - 00313856 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtWebKit.pyd

2010-11-22 16:56 - 2010-11-22 16:56 - 00127488 _____ () C:\Program Files (x86)\Raptr\pyexpat.pyd

2010-11-22 16:56 - 2010-11-22 16:56 - 00009216 _____ () C:\Program Files (x86)\Raptr\winsound.pyd

2010-11-22 16:56 - 2010-11-22 16:56 - 00354304 _____ () C:\Program Files (x86)\Raptr\pythoncom26.dll

2010-11-22 16:57 - 2010-11-22 16:57 - 00016384 _____ () C:\Program Files (x86)\Raptr\win32trace.pyd

2014-08-13 18:37 - 2014-08-13 18:37 - 00113171 _____ () C:\Program Files (x86)\Raptr\libvlc.dll

2014-08-13 18:37 - 2014-08-13 18:37 - 02396691 _____ () C:\Program Files (x86)\Raptr\libvlccore.dll

2010-11-22 16:56 - 2010-11-22 16:56 - 00583680 _____ () C:\Program Files (x86)\Raptr\unicodedata.pyd

2010-11-22 16:57 - 2010-11-22 16:57 - 00263168 _____ () C:\Program Files (x86)\Raptr\win32com.shell.shell.pyd

2010-11-22 16:56 - 2010-11-22 16:56 - 00324608 _____ () C:\Program Files (x86)\Raptr\PIL._imaging.pyd

2013-11-20 18:05 - 2013-11-20 18:05 - 00256000 _____ () C:\Program Files (x86)\Raptr\amd_ags.dll

2010-11-22 16:57 - 2010-11-22 16:57 - 00141312 _____ () C:\Program Files (x86)\Raptr\gobject._gobject.pyd

2014-06-17 18:56 - 2014-06-17 18:56 - 02717595 _____ () C:\Program Files (x86)\Raptr\heliotrope._purple.pyd

2011-02-15 12:17 - 2011-02-15 12:17 - 01213633 _____ () C:\Program Files (x86)\Raptr\libxml2-2.dll

2010-11-22 17:06 - 2010-11-22 17:06 - 00055808 _____ () C:\Program Files (x86)\Raptr\zlib1.dll

2013-05-09 17:52 - 2013-05-09 17:52 - 00495680 _____ () C:\Program Files (x86)\Raptr\plugins\libaim.dll

2013-05-09 17:52 - 2013-05-09 17:52 - 01183699 _____ () C:\Program Files (x86)\Raptr\liboscar.dll

2013-05-09 17:52 - 2013-05-09 17:52 - 00483306 _____ () C:\Program Files (x86)\Raptr\plugins\libicq.dll

2013-05-03 12:57 - 2013-05-03 12:57 - 00655356 _____ () C:\Program Files (x86)\Raptr\plugins\libirc.dll

2013-05-03 12:56 - 2013-05-03 12:56 - 01306387 _____ () C:\Program Files (x86)\Raptr\plugins\libmsn.dll

2013-05-03 12:56 - 2013-05-03 12:56 - 00565461 _____ () C:\Program Files (x86)\Raptr\plugins\libxmpp.dll

2013-05-03 12:57 - 2013-05-03 12:57 - 01640221 _____ () C:\Program Files (x86)\Raptr\libjabber.dll

2013-05-03 12:56 - 2013-05-03 12:56 - 00506276 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoo.dll

2013-05-03 12:57 - 2013-05-03 12:57 - 01053730 _____ () C:\Program Files (x86)\Raptr\libymsg.dll

2013-05-03 12:57 - 2013-05-03 12:57 - 00497782 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoojp.dll

2013-05-03 12:57 - 2013-05-03 12:57 - 00603326 _____ () C:\Program Files (x86)\Raptr\plugins\ssl-nss.dll

2013-05-03 12:57 - 2013-05-03 12:57 - 00474199 _____ () C:\Program Files (x86)\Raptr\plugins\ssl.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Users\David\Downloads\epson13807.exe:BDU

AlternateDataStreams: C:\Users\David\Downloads\FRST64.exe:BDU

AlternateDataStreams: C:\Users\David\Downloads\KeyFinderInstaller.exe:BDU

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)

==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, the associated entry will be removed from the registry.)

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3247265213-742689891-4045190857-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\David\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg

DNS Servers: 192.168.1.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

==================== FirewallRules (whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe

FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe

FirewallRules: [{6DBB3D5F-440E-4012-BB39-AF8B9AF8234A}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTE.EXE

FirewallRules: [{552F6679-4943-4BA5-92F6-A7302170573C}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTE.EXE

FirewallRules: [{17621B74-17A9-4DBB-9147-535D3E4C1136}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office14\outlook.exe

FirewallRules: [{CDFA946E-63FC-48B5-9087-DC0A885BE86B}] => (Allow) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe

FirewallRules: [TCP Query User{BEA4B083-F1BB-416C-884B-A2DC5E7CC868}L:\0 - drive c backups - march 2015\program files (x86)\mozilla firefox\firefox.exe] => (Allow) L:\0 - drive c backups - march 2015\program files (x86)\mozilla firefox\firefox.exe

FirewallRules: [UDP Query User{35513801-01A5-4D64-92ED-1D4DEE937B05}L:\0 - drive c backups - march 2015\program files (x86)\mozilla firefox\firefox.exe] => (Allow) L:\0 - drive c backups - march 2015\program files (x86)\mozilla firefox\firefox.exe

FirewallRules: [{5C31ECEB-4987-4D9E-BE37-DBF57D1DD2A0}] => (Block) L:\0 - drive c backups - march 2015\program files (x86)\mozilla firefox\firefox.exe

FirewallRules: [{0820A7B9-519B-4DBA-A511-EBE720491F84}] => (Block) L:\0 - drive c backups - march 2015\program files (x86)\mozilla firefox\firefox.exe

FirewallRules: [{07E31863-FE33-40D2-A417-41512D97615E}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe

FirewallRules: [{9966F1F1-9851-4060-B09A-AF2140DAD70F}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe

FirewallRules: [{BE65DA07-1B86-4915-B748-4E80ECC38F68}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe

FirewallRules: [{A6F58E46-3511-4659-BD90-3A5940C5AB9A}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe

==================== Faulty Device Manager Devices =============

==================== Event log errors: =========================

Application errors:

==================

Error: (05/02/2015 01:09:22 AM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: plugin-container.exe, version: 37.0.2.5583, time stamp: 0x552ef76c

Faulting module name: mozalloc.dll, version: 37.0.2.5583, time stamp: 0x552ee9ae

Exception code: 0x80000003

Fault offset: 0x00001aa1

Faulting process id: 0xaf8

Faulting application start time: 0xplugin-container.exe0

Faulting application path: plugin-container.exe1

Faulting module path: plugin-container.exe2

Report Id: plugin-container.exe3

Error: (05/02/2015 01:05:13 AM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: IEXPLORE.EXE, version: 11.0.9600.17689, time stamp: 0x54e68526

Faulting module name: atidxx32.dll, version: 8.17.10.569, time stamp: 0x541761f5

Exception code: 0xc0000005

Fault offset: 0x004b5b4a

Faulting process id: 0x1114

Faulting application start time: 0xIEXPLORE.EXE0

Faulting application path: IEXPLORE.EXE1

Faulting module path: IEXPLORE.EXE2

Report Id: IEXPLORE.EXE3

Error: (05/01/2015 10:59:16 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )

Description: Acquisition of End User License failed. hr=0xC004C008

Sku Id=e120e868-3df2-464a-95a0-b52fa5ada4bf

Error: (05/01/2015 10:59:16 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )

Description: License acquisition failure details.

hr=0xC004C008

Error: (01/01/2008 00:10:31 AM) (Source: ATIeRecord) (EventID: 16388) (User: )

Description: ATI EEU Client event error

Error: (05/01/2015 10:15:47 AM) (Source: ATIeRecord) (EventID: 16388) (User: )

Description: ATI EEU Client event error

Error: (04/22/2015 10:06:20 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: CCC.exe, version: 4.5.0.0, time stamp: 0x53ad0dcc

Faulting module name: clr.dll, version: 4.0.30319.18063, time stamp: 0x526767d0

Exception code: 0xc0000005

Fault offset: 0x000000000000482c

Faulting process id: 0xfe0

Faulting application start time: 0xCCC.exe0

Faulting application path: CCC.exe1

Faulting module path: CCC.exe2

Report Id: CCC.exe3

Error: (04/22/2015 10:06:19 PM) (Source: .NET Runtime) (EventID: 1023) (User: )

Description: Application: CCC.exe

Framework Version: v4.0.30319

Description: The process was terminated due to an internal error in the .NET Runtime at IP 000007FEEEF3482C (000007FEEEF30000) with exit code 80131506.

Error: (04/22/2015 08:13:51 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: CCC.exe, version: 4.5.0.0, time stamp: 0x53ad0dcc

Faulting module name: clr.dll, version: 4.0.30319.18063, time stamp: 0x526767d0

Exception code: 0xc0000005

Fault offset: 0x000000000000482c

Faulting process id: 0x10ec

Faulting application start time: 0xCCC.exe0

Faulting application path: CCC.exe1

Faulting module path: CCC.exe2

Report Id: CCC.exe3

Error: (04/22/2015 08:13:50 PM) (Source: .NET Runtime) (EventID: 1023) (User: )

Description: Application: CCC.exe

Framework Version: v4.0.30319

Description: The process was terminated due to an internal error in the .NET Runtime at IP 000007FEEEF3482C (000007FEEEF30000) with exit code 80131506.

System errors:

=============

Error: (05/02/2015 09:01:29 AM) (Source: Service Control Manager) (EventID: 7026) (User: )

Description: The following boot-start or system-start driver(s) failed to load:

cdrom

Error: (05/02/2015 07:57:40 AM) (Source: Service Control Manager) (EventID: 7026) (User: )

Description: The following boot-start or system-start driver(s) failed to load:

cdrom

Error: (01/01/2008 00:13:20 AM) (Source: Service Control Manager) (EventID: 7026) (User: )

Description: The following boot-start or system-start driver(s) failed to load:

cdrom

Error: (01/01/2008 00:09:55 AM) (Source: Service Control Manager) (EventID: 7011) (User: )

Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the AMD External Events Utility service.

Error: (01/01/2008 00:05:52 AM) (Source: Service Control Manager) (EventID: 7026) (User: )

Description: The following boot-start or system-start driver(s) failed to load:

cdrom

Error: (05/01/2015 08:41:58 AM) (Source: Service Control Manager) (EventID: 7026) (User: )

Description: The following boot-start or system-start driver(s) failed to load:

cdrom

Error: (05/01/2015 08:35:43 AM) (Source: Service Control Manager) (EventID: 7026) (User: )

Description: The following boot-start or system-start driver(s) failed to load:

cdrom

Error: (05/01/2015 10:19:28 AM) (Source: Service Control Manager) (EventID: 7026) (User: )

Description: The following boot-start or system-start driver(s) failed to load:

cdrom

Error: (05/01/2015 10:18:29 AM) (Source: Service Control Manager) (EventID: 7011) (User: )

Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the VSSERV service.

Error: (05/01/2015 10:15:11 AM) (Source: Service Control Manager) (EventID: 7011) (User: )

Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the AMD External Events Utility service.

Microsoft Office Sessions:

=========================

Error: (05/02/2015 01:09:22 AM) (Source: Application Error) (EventID: 1000) (User: )

Description: plugin-container.exe37.0.2.5583552ef76cmozalloc.dll37.0.2.5583552ee9ae8000000300001aa1af801d0848225606698F:\Program Files (x86)\Mozilla Firefox25\plugin-container.exeF:\Program Files (x86)\Mozilla Firefox25\mozalloc.dll27c90d14-f09a-11e4-ac29-fcaa14935a07

Error: (05/02/2015 01:05:13 AM) (Source: Application Error) (EventID: 1000) (User: )

Description: IEXPLORE.EXE11.0.9600.1768954e68526atidxx32.dll8.17.10.569541761f5c0000005004b5b4a111401d08487d967659aC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\Windows\system32\atidxx32.dll9361aa68-f099-11e4-ac29-fcaa14935a07

Error: (05/01/2015 10:59:16 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )

Description: hr=0xC004C008e120e868-3df2-464a-95a0-b52fa5ada4bf

Error: (05/01/2015 10:59:16 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )

Description: hr=0xC004C00800010001(0x00000000, 22:59:16:538 - http://go.microsoft.com/fwlink/?LinkID=88341)

00020001(0x00000000, 22:59:16:538)

00030001(0x00000000, 22:59:16:538 - http://go.microsoft.com)

00030002(0x00000000, 22:59:16:538 - 1)

00020005(0x00000000, 22:59:16:538 - 0)

0002000C(0x00000000, 22:59:16:558 - 302)

0002000E(0x00000000, 22:59:16:558 - https://activation.sls.microsoft.com...SLLicense.asmx)

00020001(0x00000000, 22:59:16:558)

00030001(0x00000000, 22:59:16:558 - https://activation.sls.microsoft.com)

00030002(0x00000000, 22:59:16:558 - 1)

00020005(0x00000000, 22:59:16:558 - 0)

0002000C(0x00000000, 22:59:16:818 - 500)

00010002(0x8004FC01, 22:59:16:818 - <?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:soap="http://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema"><s...s><Message>113 (Activation) - [PA Maximum unlock exceeded. ---> Maximum unlock exceeded]</Message></Messages></detail></soap:Fault></soap:Body></soap:Envelope>)

00010003(0x8004FC01, 22:59:16:818)

Error: (01/01/2008 00:10:31 AM) (Source: ATIeRecord) (EventID: 16388) (User: )

Description:

Error: (05/01/2015 10:15:47 AM) (Source: ATIeRecord) (EventID: 16388) (User: )

Description:

Error: (04/22/2015 10:06:20 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: CCC.exe4.5.0.053ad0dccclr.dll4.0.30319.18063526767d0c0000005000000000000482cfe001d07d73acb06654C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exeC:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll18c6757c-e96e-11e4-b96a-8789c1242401

Error: (04/22/2015 10:06:19 PM) (Source: .NET Runtime) (EventID: 1023) (User: )

Description: Application: CCC.exe

Framework Version: v4.0.30319

Description: The process was terminated due to an internal error in the .NET Runtime at IP 000007FEEEF3482C (000007FEEEF30000) with exit code 80131506.

Error: (04/22/2015 08:13:51 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: CCC.exe4.5.0.053ad0dccclr.dll4.0.30319.18063526767d0c0000005000000000000482c10ec01d07d6519b79c9cC:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exeC:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll620eef3e-e95e-11e4-b96a-8789c1242401

Error: (04/22/2015 08:13:50 PM) (Source: .NET Runtime) (EventID: 1023) (User: )

Description: Application: CCC.exe

Framework Version: v4.0.30319

Description: The process was terminated due to an internal error in the .NET Runtime at IP 000007FEEEF3482C (000007FEEEF30000) with exit code 80131506.

==================== Memory info ===========================

Processor: AMD Phenom(tm) II X6 1090T Processor

Percentage of memory in use: 15%

Total physical RAM: 16360.75 MB

Available physical RAM: 13824.99 MB

Total Pagefile: 32719.68 MB

Available Pagefile: 29928.27 MB

Total Virtual: 8192 MB

Available Virtual: 8191.82 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:232.79 GB) (Free:169.16 GB) NTFS

Drive d: (Local Disk - DOCS+PROGs) (Fixed) (Total:39.52 GB) (Free:13.28 GB) NTFS ==>[System with boot components (obtained from reading drive)]

Drive e: (Local Disk - UTILITIES+CORE APPS) (Fixed) (Total:292.97 GB) (Free:272.31 GB) NTFS

Drive f: (Local Disk - GENERAL APPS) (Fixed) (Total:263.67 GB) (Free:173.62 GB) NTFS

Drive g: (GRAPHICS - PHOTOS - VIDEOS) (Fixed) (Total:244.14 GB) (Free:209.07 GB) NTFS

Drive h: (Local Disk - BACKUPS + DOWNLOADS) (Fixed) (Total:195.31 GB) (Free:109.77 GB) NTFS

Drive i: (Local Disk - MUSIC + SOUNDS) (Fixed) (Total:59.06 GB) (Free:56.59 GB) NTFS

==================== MBR & Partition Table ==================

========================================================

Disk: 0 (Size: 596.2 GB) (Disk ID: 4CCC4CCB)

Partition 1: (Active) - (Size=39.5 GB) - (Type=07 NTFS)

Partition 2: (Not Active) - (Size=556.6 GB) - (Type=OF Extended)

========================================================

Disk: 1 (Size: 596.2 GB) (Disk ID: 00069521)

Partition 1: (Active) - (Size=97.7 GB) - (Type=83)

Partition 2: (Not Active) - (Size=244.1 GB) - (Type=07 NTFS)

Partition 3: (Not Active) - (Size=195.3 GB) - (Type=07 NTFS)

Partition 4: (Not Active) - (Size=59.1 GB) - (Type=07 NTFS)

========================================================

Disk: 2 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: BA770733)

Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)

Partition 2: (Not Active) - (Size=232.8 GB) - (Type=07 NTFS)

==================== End Of Log ============================

Show more