And this one is the Addition log:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-10-2021
Ran by Carlos Luna (01-11-2021 15:36:03)
Running from C:\Users\Carlos Luna\Desktop
Microsoft Windows 7 Ultimate Service Pack 1 (X64) (2009-01-01 05:23:52)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-2305226654-651215044-733858041-500 - Administrator - Disabled)
Carlos Luna (S-1-5-21-2305226654-651215044-733858041-1000 - Administrator - Enabled) => C:\Users\Carlos Luna
Guest (S-1-5-21-2305226654-651215044-733858041-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-2305226654-651215044-733858041-1005 - Limited - Enabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 19.00 (x64 edition) (HKLM\...\{23170F69-40C1-2702-1900-000001000000}) (Version: 19.00.00.0 - Igor Pavlov)
Action! (HKLM-x32\...\Mirillis Action!) (Version: 3.9.6 - Mirillis)
Adobe Flash Player 32 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 32.0.0.465 - Adobe)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.465 - Adobe)
Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.171 - Adobe)
Autodesk Maya 2015 SP2 (HKLM\...\Autodesk Maya 2015 SP2) (Version: 15.2.1633.0 - Autodesk)
Autodesk Maya 2016 SP1 (HKLM\...\Autodesk Maya 2016 SP1) (Version: 16.6.2775.0 - Autodesk) Hidden
Autodesk Maya 2016 SP2 (HKLM\...\Autodesk Maya 2016 SP2) (Version: 16.6.2775.0 - Autodesk) Hidden
Autodesk Maya 2016 SP3 (HKLM\...\Autodesk Maya 2016 SP3) (Version: 16.6.2775.0 - Autodesk) Hidden
Autodesk Maya 2016 SP3P02 (HKLM\...\Autodesk Maya 2016 SP3P02) (Version: 16.6.2775.0 - Autodesk) Hidden
Autodesk Maya 2016 SP4 (HKLM\...\Autodesk Maya 2016 SP4) (Version: 16.6.2775.0 - Autodesk) Hidden
Autodesk Maya 2016 SP4P04 (HKLM\...\Autodesk Maya 2016 SP4P04) (Version: 16.6.2775.0 - Autodesk) Hidden
Autodesk Maya 2016 SP4P05 (HKLM\...\Autodesk Maya 2016 SP4P05) (Version: 16.6.2775.0 - Autodesk) Hidden
Autodesk Maya 2016 SP5 (HKLM\...\Autodesk Maya 2016 SP5) (Version: 16.6.2775.0 - Autodesk) Hidden
Autodesk Maya 2016 SP5P06 (HKLM\...\Autodesk Maya 2016 SP5P06) (Version: 16.6.2775.0 - Autodesk) Hidden
Autodesk Maya 2016 SP5P07 (HKLM\...\Autodesk Maya 2016 SP5P07) (Version: 16.6.2775.0 - Autodesk) Hidden
Autodesk Maya 2016 SP5P08 (HKLM\...\Autodesk Maya 2016 SP5P08) (Version: 16.6.2775.0 - Autodesk) Hidden
Autodesk Maya 2016 SP6 (HKLM\...\Autodesk Maya 2016 SP6) (Version: 16.6.2775.0 - Autodesk)
BlueStacks 5 (HKLM\...\BlueStacks_nxt) (Version: 5.3.70.1004 - BlueStack Systems, Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 4.15 - Piriform)
Corel Update Manager (HKLM\...\{9E1EE683-0C7B-46E7-83EC-1F5A1D8F2296}) (Version: 2.9.389 - Corel corporation) Hidden
CorelDRAW Graphics Suite 2017 - IPM (x64) (HKLM\...\{904B10A6-0D9C-4645-9C61-504FA92B9220}) (Version: 19.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2017 - IPM Content (x64) (HKLM\...\{54F024CB-16AF-4CC0-9BC2-D2507E7C6C01}) (Version: 19.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite 2017 - Writing Tools (x64) (HKLM\...\{E38357D4-1B80-400F-A6D7-B4D5DD83D979}) (Version: 19.1 - Corel Corporation) Hidden
CPUID CPU-Z 1.71.1 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) <==== ATTENTION
CrystalDiskInfo 7.6.1 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 7.6.1 - Crystal Dew World)
Discord (HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\Discord) (Version: 0.0.309 - Discord Inc.)
Epic Games Launcher (HKLM-x32\...\{8CAF0391-512D-485C-B141-39D89E7EDCA8}) (Version: 1.2.17.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{32C68D93-D32F-4B01-8250-61642BFC22F8}) (Version: 2.0.28.0 - Epic Games, Inc.)
Genshin Impact (HKLM\...\Genshin Impact) (Version: 2.12.1.0 - miHoYo Co.,Ltd)
Intel(R) C++ Redistributables for Windows* on Intel(R) 64 (HKLM-x32\...\{D2437C5C-2D8C-40D2-8059-689AD7239FA3}) (Version: 11.1.048 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.0.19 - Intel Corporation)
Intel® Hardware Accelerated Execution Manager (HKLM\...\{557D160E-2085-4D38-BDA3-1D5D3F74A3A4}) (Version: 6.0.4 - Intel Corporation)
Java 8 Update 311 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180311F0}) (Version: 8.0.3110.11 - Oracle Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
MCShield ::Anti-Malware Tool:: (HKLM-x32\...\MCShield) (Version: 3.0.5.28 - MyCity)
Microsoft .NET Framework 4.8 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.8.03761 - Microsoft Corporation)
Microsoft .NET Framework 4.8 (español) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 3082) (Version: 4.8.03761 - Microsoft Corporation)
Microsoft .NET Framework 4.8 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.8.03761 - Microsoft Corporation)
Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.8.106.0 - Microsoft Corporation)
Microsoft Office 2010 Service Pack 1 (SP1) (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{047B0968-E622-4FAA-9B4B-121FA109EDDE}) (Version: - Microsoft)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.6029.1000 - Microsoft Corporation)
Microsoft Research Mesh Virtual WIFI (HKLM-x32\...\{034A32D5-699E-4AED-A2EB-2CCB6E7F37F1}) (Version: 1.0.000 - Microsoft Research)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{1b103cea-f037-4504-81de-956057b442c3}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29334 (HKLM-x32\...\{a9cfe9c7-e54f-46cd-9c5c-542ff8e3e8c4}) (Version: 14.28.29334.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29334 (HKLM-x32\...\{b2d0f752-adc5-496e-8f70-8669de01f746}) (Version: 14.28.29334.0 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2012 (HKLM-x32\...\{89ca2a32-2b52-4595-8dfd-6fe4757958d0}) (Version: 11.0.51108 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2015 (HKLM-x32\...\{dd8b09df-3ef8-49f1-bd1a-65278435860b}) (Version: 14.0.23217 - Microsoft Corporation)
Minecraft Launcher (HKLM-x32\...\{810F1419-7760-402E-8772-B4054FAA2B72}) (Version: 1.0.0.0 - Mojang)
MSI Afterburner 4.6.2 (HKLM-x32\...\Afterburner) (Version: 4.6.2 - MSI Co., LTD)
NVIDIA Graphics Driver 451.67 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 451.67 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.38.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.34 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
Opera GX Stable 80.0.4170.61 (HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\Opera GX 80.0.4170.61) (Version: 80.0.4170.61 - Opera Software)
Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x64 Hosting Support - PTB (HKLM\...\{E237254B-36A1-3D27-815E-B37C13BE0796}) (Version: 11.0.51108 - Microsoft Corporation) Hidden
Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x86 Hosting Support - PTB (HKLM-x32\...\{03077B58-6ACF-32CA-B42A-EAA458C295A1}) (Version: 11.0.51108 - Microsoft Corporation) Hidden
Project64 version 3.0.1.5664 (HKLM-x32\...\{BEB5FB69-4080-466F-96C4-F15DF271718B}_is1) (Version: 3.0.1.5664 - )
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.67.1226.2012 - Realtek)
Realtek Ethernet Diagnostic Utility (HKLM-x32\...\{DADC7AB0-E554-4705-9F6A-83EA82ED708E}) (Version: 2.0.2.7 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7982 - Realtek Semiconductor Corp.)
UE4 Prerequisites (x86) (HKLM-x32\...\{6EAAE1C0-6000-45FA-B46D-D206144925BF}) (Version: 1.0.11.0 - Epic Games, Inc.) Hidden
UE4 Prerequisites (x86) (HKLM-x32\...\{f1203e43-4ddb-4280-974e-73f14d793dbd}) (Version: 1.0.13.0 - Epic Games, Inc.) Hidden
WO Mic Client (HKLM-x32\...\WOMic) (Version: - )
Языковой пакет для поддержки размещения набора средств Microsoft Visual Studio Tools для работы с приложениями 2012 (x64) - RUS (HKLM\...\{25FB53C5-BE4C-3B6C-A0C9-D49A39227E1E}) (Version: 11.0.51108 - Microsoft Corporation) Hidden
Языковой пакет для поддержки размещения набора средств Microsoft Visual Studio Tools для работы с приложениями 2012 (x86) - RUS (HKLM-x32\...\{68DC347D-C1C0-3DE2-A53E-CCC71DA53E57}) (Version: 11.0.51108 - Microsoft Corporation) Hidden
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-2305226654-651215044-733858041-1000_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2305226654-651215044-733858041-1000_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2305226654-651215044-733858041-1000_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2305226654-651215044-733858041-1000_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2305226654-651215044-733858041-1000_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2305226654-651215044-733858041-1000_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [6718864 2011-02-12] (Microsoft Corporation -> Microsoft Corporation)
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [4220304 2011-02-12] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> No File
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> No File
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> No File
ContextMenuHandlers1-x32: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2004-12-26] () [File not signed]
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> No File
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [AutopanoShell.ShellContextMenu] -> {4B4F4C4F-5220-4798-ABF3-EC03F7C8A498} => -> No File
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> No File
ContextMenuHandlers4-x32: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2004-12-26] () [File not signed]
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2020-07-05] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6-x32: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2004-12-26] () [File not signed]
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [VIDC.FICV] => C:\Windows\system32\ficvdec_x64.dll [652288 2013-05-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.FICV] => C:\Windows\SysWOW64\ficvdec_x86.dll [641024 2013-05-28] () [File not signed]
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2009-01-01 01:06 - 2021-11-01 11:00 - 000034448 _____ (ASUSTeK Computer Inc. -> ) [File not signed] C:\Program Files (x86)\ASUS\AXSP\1.01.01\PEbiosinterface32.dll
2021-05-01 02:09 - 2013-04-26 10:24 - 000073728 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.dll
2014-02-27 17:43 - 2014-02-27 17:43 - 000173568 _____ (Nokia Corporation and/or its subsidiary(-ies)) [File not signed] C:\Program Files\Logitech Gaming Software\imageformats\qjpeg4.dll
2014-02-27 17:43 - 2014-02-27 17:43 - 001807360 _____ (Nokia Corporation and/or its subsidiary(-ies)) [File not signed] C:\Program Files\Logitech Gaming Software\QtCLucene4.dll
2014-02-27 17:43 - 2014-02-27 17:43 - 003276288 _____ (Nokia Corporation and/or its subsidiary(-ies)) [File not signed] C:\Program Files\Logitech Gaming Software\QtCore4.dll
2014-02-27 17:43 - 2014-02-27 17:43 - 012168192 _____ (Nokia Corporation and/or its subsidiary(-ies)) [File not signed] C:\Program Files\Logitech Gaming Software\QtGui4.dll
2014-02-27 17:43 - 2014-02-27 17:43 - 000750080 _____ (Nokia Corporation and/or its subsidiary(-ies)) [File not signed] C:\Program Files\Logitech Gaming Software\QtHelp4.dll
2014-02-27 17:43 - 2014-02-27 17:43 - 001085952 _____ (Nokia Corporation and/or its subsidiary(-ies)) [File not signed] C:\Program Files\Logitech Gaming Software\QtNetwork4.dll
2014-02-27 17:43 - 2014-02-27 17:43 - 000841728 _____ (Nokia Corporation and/or its subsidiary(-ies)) [File not signed] C:\Program Files\Logitech Gaming Software\QtOpenGL4.dll
2014-02-27 17:43 - 2014-02-27 17:43 - 001990144 _____ (Nokia Corporation and/or its subsidiary(-ies)) [File not signed] C:\Program Files\Logitech Gaming Software\QtScript4.dll
2014-02-27 17:43 - 2014-02-27 17:43 - 000897024 _____ (Nokia Corporation and/or its subsidiary(-ies)) [File not signed] C:\Program Files\Logitech Gaming Software\QtSql4.dll
2014-02-27 17:43 - 2014-02-27 17:43 - 000539136 _____ (Nokia Corporation and/or its subsidiary(-ies)) [File not signed] C:\Program Files\Logitech Gaming Software\QtXml4.dll
==================== Alternate Data Streams (Whitelisted) ========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Users\Carlos Luna\Cookies:9uiptag9KhjXpJROea9BnnRVF [1826]
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\amsdk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dump_3D569C04.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ms3D569C04App => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\amsdk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dump_3D569C04.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ms3D569C04App => ""="Service"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Version 11) (Whitelisted) ==========
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp//www.msn.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-2305226654-651215044-733858041-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp//latam.msn.com/?ocid=iehp
HKU\S-1-5-21-2305226654-651215044-733858041-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp//www.google.com/
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2305226654-651215044-733858041-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp//www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
SearchScopes: HKU\S-1-5-21-2305226654-651215044-733858041-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp//www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2011-02-12] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_311\bin\ssv.dll [2021-10-21] (Oracle America, Inc. -> Oracle Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-12-21] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_311\bin\jp2ssv.dll [2021-10-21] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-12-21] (Microsoft Corporation -> Microsoft Corporation)
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKU\S-1-5-21-2305226654-651215044-733858041-1000 -> No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp//fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
(If an entry is included in the fixlist, it will be removed from the registry.)
IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com ->
www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com ->
www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com ->
www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com ->
www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com ->
www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com ->
www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com ->
www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com ->
www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com ->
www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info ->
www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com ->
www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com ->
www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com ->
www.123simsen.com
There are 7945 more sites.
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\008k.com ->
www.008k.com
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\00hq.com ->
www.00hq.com
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\0scan.com ->
www.0scan.com
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\1-2005-search.com ->
www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\1-domains-registrations.com ->
www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\1000gratisproben.com ->
www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\1001namen.com ->
www.1001namen.com
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\100sexlinks.com ->
www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\10sek.com ->
www.10sek.com
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\123fporn.info ->
www.123fporn.info
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\123haustiereundmehr.com ->
www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\123moviedownload.com ->
www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-2305226654-651215044-733858041-1000\...\123simsen.com ->
www.123simsen.com
There are 7945 more sites.
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2021-10-18 22:12 - 2021-10-18 22:12 - 000000833 ____R C:\Windows\system32\drivers\etc\hosts
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Program Files (x86)\Common Files\Intel\Shared Files\cpp\bin\Intel64;C:\ProgramData\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Autodesk\Backburner\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT
HKU\S-1-5-21-2305226654-651215044-733858041-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Carlos Luna\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 200.48.225.146 - 200.48.225.130
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
MSCONFIG\Services: ACTION_SVC => 3
MSCONFIG\Services: AdAppMgrSvc => 2
MSCONFIG\Services: Foundry License Server => 2
MSCONFIG\Services: GfExperienceService => 2
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: McComponentHostService => 3
MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: NvNetworkService => 2
MSCONFIG\Services: NvStreamNetworkSvc => 3
MSCONFIG\Services: NvStreamSvc => 2
MSCONFIG\Services: nvsvc => 2
MSCONFIG\Services: RLM => 2
MSCONFIG\Services: Rockstar Service => 3
MSCONFIG\Services: SkypeUpdate => 2
MSCONFIG\Services: Stereo Service => 2
MSCONFIG\Services: vgc => 3
MSCONFIG\Services: WTabletServiceCon => 2
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{26BF10EE-1D79-4107-B72C-C9B0B6530348}] => (Allow) C:\Users\Carlos Luna\AppData\Local\Programs\Opera GX\80.0.4170.48\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [TCP Query User{5CB41C60-5184-4DE4-97E7-47A8CE3C61C2}C:\program files (x86)\womic\womicclient.exe] => (Allow) C:\program files (x86)\womic\womicclient.exe () [File not signed]
FirewallRules: [UDP Query User{C4B58CE0-9B62-4529-B69B-189EF82CB167}C:\program files (x86)\womic\womicclient.exe] => (Allow) C:\program files (x86)\womic\womicclient.exe () [File not signed]
FirewallRules: [TCP Query User{53066240-262C-4D89-AD40-374FC9C37118}C:\users\carlos luna\appdata\local\programs\opera gx\opera.exe] => (Allow) C:\users\carlos luna\appdata\local\programs\opera gx\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [UDP Query User{4FE1146C-6B94-4A3F-B3B9-03B3D4234638}C:\users\carlos luna\appdata\local\programs\opera gx\opera.exe] => (Allow) C:\users\carlos luna\appdata\local\programs\opera gx\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [TCP Query User{DFCFD19C-91C2-40C7-946E-3EE01B712C2E}C:\program files (x86)\steam\steam.exe] => (Allow) C:\program files (x86)\steam\steam.exe (Valve -> Valve Corporation)
FirewallRules: [UDP Query User{6A80C201-3B27-4588-98EE-E01BBA7533C3}C:\program files (x86)\steam\steam.exe] => (Allow) C:\program files (x86)\steam\steam.exe (Valve -> Valve Corporation)
FirewallRules: [{36077DE1-8476-401E-8EA6-52CBF9065A7D}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{D025ADD2-4276-4691-B046-73FA0D984488}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [TCP Query User{586D1D22-7153-4987-97D8-B77472B9AF71}C:\program files\epic games\amongus\among us.exe] => (Allow) C:\program files\epic games\amongus\among us.exe () [File not signed]
FirewallRules: [UDP Query User{CC6FE1C3-7381-4122-8B0F-95493109FF5E}C:\program files\epic games\amongus\among us.exe] => (Allow) C:\program files\epic games\amongus\among us.exe () [File not signed]
FirewallRules: [{3BDD0093-9E93-4FDA-938C-6F8CC931654F}] => (Allow) C:\Users\Carlos Luna\AppData\Local\Programs\Opera GX\80.0.4170.61\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [TCP Query User{5CBDF2E0-CB20-4AE0-9BA2-CE78F6BDF0AE}C:\program files\genshin impact\genshin impact game\genshinimpact.exe] => (Allow) C:\program files\genshin impact\genshin impact game\genshinimpact.exe (miHoYo Co.,Ltd. -> )
FirewallRules: [UDP Query User{985CB71C-5064-4898-8B6F-1A4B83F251E0}C:\program files\genshin impact\genshin impact game\genshinimpact.exe] => (Allow) C:\program files\genshin impact\genshin impact game\genshinimpact.exe (miHoYo Co.,Ltd. -> )
FirewallRules: [{9BCB1DAC-4A40-44C1-BA83-D5E1CF1DD096}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\RISK Global Domination\RISK.exe () [File not signed]
FirewallRules: [{2D9C3240-87F7-414B-A498-1A6238A99B0D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\RISK Global Domination\RISK.exe () [File not signed]
FirewallRules: [TCP Query User{01F7E6D7-6831-4E02-AC98-14FC7C0AC9C8}C:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe () [File not signed]
FirewallRules: [UDP Query User{53A32A65-3F71-4320-9C6C-D832023AA22C}C:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe () [File not signed]
FirewallRules: [{0E255199-C3C4-4F02-88FD-FC94100871C9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Action Taimanin\ActionTaimanin.exe () [File not signed]
FirewallRules: [{FD9C28AB-F010-407B-B017-0D6B689E01CC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Action Taimanin\ActionTaimanin.exe () [File not signed]
==================== Restore Points =========================
30-10-2021 16:44:02 Scheduled Checkpoint
==================== Faulty Device Manager Devices ============
Name: BlueStacks Hypervisor
Description: BlueStacks Hypervisor
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: BlueStacksDrv
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: BigNox Service
Description: BigNox Service
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: YSDrv
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: AMSDK Driver
Description: AMSDK Driver
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: amsdk
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: ehdrv
Description: ehdrv
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: ehdrv
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: SM Bus Controller
Description: SM Bus Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: epfw
Description: epfw
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: epfw
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: epfwwfp
Description: epfwwfp
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: epfwwfp
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
==================== Event log errors: ========================
Application errors:
==================
Error: (10/31/2021 04:40:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: HD-Player.exe, version: 5.3.70.1004, time stamp: 0x614976f6
Faulting module name: Qt5Core.dll, version: 5.15.4.0, time stamp: 0x608bce4d
Exception code: 0xc0000005
Fault offset: 0x00000000001d606b
Faulting process id: 0xa60
Faulting application start time: 0x01d7ce8c1125a165
Faulting application path: C:\Program Files\BlueStacks_nxt\HD-Player.exe
Faulting module path: C:\Program Files\BlueStacks_nxt\Qt5Core.dll
Report Id: 3c2b7ce1-3a93-11ec-83d3-d850e63c46b2
Error: (10/23/2021 09:29:35 PM) (Source: Microsoft-Windows-RestartManager) (EventID: 10006) (User: NT AUTHORITY)
Description: Application or service 'Epic Online Services local application.' could not be shut down.
Error: (10/23/2021 08:11:21 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: HD-Player.exe, version: 5.3.70.1004, time stamp: 0x614976f6
Faulting module name: HD-Player.exe, version: 5.3.70.1004, time stamp: 0x614976f6
Exception code: 0xc0000005
Fault offset: 0x0000000000031409
Faulting process id: 0x874
Faulting application start time: 0x01d7c86b27659c15
Faulting application path: C:\Program Files\BlueStacks_nxt\HD-Player.exe
Faulting module path: C:\Program Files\BlueStacks_nxt\HD-Player.exe
Report Id: 4be535b1-3467-11ec-b7f3-d850e63c46b2
Error: (10/19/2021 06:16:02 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: AntiMalware.exe, version: 3.2.28.0, time stamp: 0x60633416
Faulting module name: KERNELBASE.dll, version: 6.1.7601.24545, time stamp: 0x5e0eb7f5
Exception code: 0xe0434352
Fault offset: 0x0000c5af
Faulting process id: 0x1260
Faulting application start time: 0x01d7c4dab20fd0e2
Faulting application path: C:\Program Files (x86)\Zemana\AntiMalware\AntiMalware.exe
Faulting module path: C:\Windows\syswow64\KERNELBASE.dll
Report Id: f139c231-30cd-11ec-ac98-d850e63c46b2
Error: (10/19/2021 06:16:01 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: AntiMalware.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.IO.FileLoadException
at Zemana.AntiMalware.UI.Program.Main(System.String[])
Error: (10/19/2021 06:01:08 AM) (Source: AntiMalware) (EventID: 0) (User: )
Description: Application has encountered a problem and needs to be closed. Please contact the adminstrator with the following information:
System.ComponentModel.Win32Exception (0x80004005): Error creating window handle.
at System.Windows.Forms.NativeWindow.CreateHandle(CreateParams cp)
at System.Windows.Forms.Control.CreateHandle()
at System.Windows.Forms.Control.CreateControl(Boolean fIgnoreVisible)
at System.Windows.Forms.Control.CreateControl(Boolean fIgnoreVisible)
at System.Windows.Forms.Control.CreateControl()
at System.Windows.Forms.Control.ControlCollection.Add(Control value)
at Zemana.AntiMalware.UI.Services.ScanPanelController.<>c__DisplayClass12_0.<AddScanFailedPanel>b__0(Panel pnl) in Z:\Projects\Zemana AntiMalware Staging\Zemana.AntiMalware.UI\Services\ScanPanelController.cs:line 73Error creating window handle.
Stack Trace:
at System.Windows.Forms.NativeWindow.CreateHandle(CreateParams cp)
at System.Windows.Forms.Control.CreateHandle()
at System.Windows.Forms.Control.CreateControl(Boolean fIgnoreVisible)
at System.Windows.Forms.Control.CreateControl(Boolean fIgnoreVisible)
at System.Windows.Forms.Control.CreateControl()
at System.Windows.Forms.Control.ControlCollection.Add(Control value)
at Zemana.AntiMalware.UI.Services.ScanPanelController.<>c__DisplayClass12_0.<AddScanFailedPanel>b__0(Panel pnl) in Z:\Projects\Zemana AntiMalware Staging\Zemana.AntiMalware.UI\Services\ScanPanelController.cs:line 73
Error: (10/19/2021 05:17:10 AM) (Source: MsiInstaller) (EventID: 1013) (User: 1989AH)
Description: Product: SuspendedBypass -- <<29017>>
Error: (10/19/2021 05:16:39 AM) (Source: MsiInstaller) (EventID: 11704) (User: 1989AH)
Description: Product: SuspendedBypass -- Error 1704. <<1704>>
System errors:
=============
Error: (11/01/2021 03:40:55 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: The server {BB6DF56B-CACE-11DC-9992-0019B93A3A84} did not register with DCOM within the required timeout.
Error: (11/01/2021 11:00:57 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
ehdrv
epfw
YSDrv
Error: (11/01/2021 11:00:54 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The BlueStacks Hypervisor service failed to start due to the following error:
The system cannot find the path specified.
Error: (11/01/2021 04:59:03 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: The server {995C996E-D918-4A8C-A302-45719A6F4EA7} did not register with DCOM within the required timeout.
Error: (11/01/2021 02:48:33 AM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk2\DR2.
Error: (11/01/2021 02:48:33 AM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk2\DR2.
Error: (11/01/2021 02:48:32 AM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk2\DR2.
Error: (11/01/2021 02:48:31 AM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk2\DR2.
Windows Defender:
================
Date: 2016-05-08 05:04:37.251
Description:
Windows Defender scan has been stopped before completion.
Scan Type:AntiSpyware
Scan Parameters:Quick Scan
Date: 2016-02-03 02:42:01.148
Description:
Windows Defender has detected spyware or other potentially unwanted software.
For more information please see the following:
http://go.microsoft.com/fwlink/?linkid=37020&name=BrowserModifier:Win32/SupTab&threatid=214126
Name:BrowserModifier:Win32/SupTab
Severity:High
Category:Browser Modifier
Path Found:file:C:\Program Files (x86)\TData\DuiLib.dll;file:C:\Program Files (x86)\TData\MCfig.ini;file:C:\Program Files (x86)\TData\msvcp110.dll;file:C:\Program Files (x86)\TData\msvcr110.dll;file:C:\Program Files (x86)\TData\Raydld.exe;file:C:\Program Files (x86)\TData\skin\About.xml;file:C:\Program Files (x86)\TData\skin\about_banner.png;file:C:\Program Files (x86)\TData\skin\animate_history.png;file:C:\Program Files (x86)\TData\skin\animate_portal.png;file:C:\Program Files (x86)\TData\skin\animate_recent.png;file:C:\Program Files (x86)\TData\skin\big_button_down.png;file:C:\Program Files (x86)\TData\skin\bk_shadow.png;file:C:\Program Files (x86)\TData\skin\bottom_toolbar_bk.png;file:C:\Program Files (x86)\TData\skin\brower_back.png;file:C:\Program Files (x86)\TData\skin\brower_refresh.png;file:C:\Program Files (x86)\TData\skin\btn.png;file:C:\Program Files (x86)\TData\skin\btn_browser_dir.png;file:C:\Program Files (x86)\TData\skin\ck_box.png;file:C:\Program Files (x86)\TData\skin\ck_check.png;file:C:\Program Files
Detection Type:Concrete
Detection Source:System
Status:Unknown
Process Name:
Date: 2016-02-03 02:11:35.241
Description:
Windows Defender has detected spyware or other potentially unwanted software.
For more information please see the following:
BrowserModifier:Win32/SupTab threat description - Microsoft Security Intelligence
Name:BrowserModifier:Win32/SupTab
Severity:High
Category:Browser Modifier
Path Found:file:C:\Program Files (x86)\TData\DuiLib.dll;file:C:\Program Files (x86)\TData\MCfig.ini;file:C:\Program Files (x86)\TData\msvcp110.dll;file:C:\Program Files (x86)\TData\msvcr110.dll;file:C:\Program Files (x86)\TData\Raydld.exe;file:C:\Program Files (x86)\TData\skin\About.xml;file:C:\Program Files (x86)\TData\skin\about_banner.png;file:C:\Program Files (x86)\TData\skin\animate_history.png;file:C:\Program Files (x86)\TData\skin\animate_portal.png;file:C:\Program Files (x86)\TData\skin\animate_recent.png;file:C:\Program Files (x86)\TData\skin\big_button_down.png;file:C:\Program Files (x86)\TData\skin\bk_shadow.png;file:C:\Program Files (x86)\TData\skin\bottom_toolbar_bk.png;file:C:\Program Files (x86)\TData\skin\brower_back.png;file:C:\Program Files (x86)\TData\skin\brower_refresh.png;file:C:\Program Files (x86)\TData\skin\btn.png;file:C:\Program Files (x86)\TData\skin\btn_browser_dir.png;file:C:\Program Files (x86)\TData\skin\ck_box.png;file:C:\Program Files (x86)\TData\skin\ck_check.png;file:C:\Program Files
Detection Type:Concrete
Detection Source:System
Status:Unknown
Process Name:C:\Windows\System32\svchost.exe
Date: 2016-02-03 02:10:32.255
Description:
Windows Defender has detected spyware or other potentially unwanted software.
For more information please see the following:
BrowserModifier:Win32/SupTab threat description - Microsoft Security Intelligence
Name:BrowserModifier:Win32/SupTab
Severity:High
Category:Browser Modifier
Path Found:file:C:\Program Files (x86)\TData\TData.exe;process

id:3380,ProcessStart:130989568244561237
Detection Type:Concrete
Detection Source:System
Status:Unknown
Process Name:C:\Windows\System32\svchost.exe
Date: 2016-02-03 00:26:57.463
Description:
Windows Defender has detected spyware or other potentially unwanted software.
For more information please see the following:
BrowserModifier:Win32/SupTab threat description - Microsoft Security Intelligence
Name:BrowserModifier:Win32/SupTab
Severity:High
Category:Browser Modifier
Path Found:file:C:\Program Files (x86)\TData\DuiLib.dll;file:C:\Program Files (x86)\TData\MCfig.ini;file:C:\Program Files (x86)\TData\msvcp110.dll;file:C:\Program Files (x86)\TData\msvcr110.dll;file:C:\Program Files (x86)\TData\Raydld.exe;file:C:\Program Files (x86)\TData\skin\About.xml;file:C:\Program Files (x86)\TData\skin\about_banner.png;file:C:\Program Files (x86)\TData\skin\animate_history.png;file:C:\Program Files (x86)\TData\skin\animate_portal.png;file:C:\Program Files (x86)\TData\skin\animate_recent.png;file:C:\Program Files (x86)\TData\skin\big_button_down.png;file:C:\Program Files (x86)\TData\skin\bk_shadow.png;file:C:\Program Files (x86)\TData\skin\bottom_toolbar_bk.png;file:C:\Program Files (x86)\TData\skin\brower_back.png;file:C:\Program Files (x86)\TData\skin\brower_refresh.png;file:C:\Program Files (x86)\TData\skin\btn.png;file:C:\Program Files (x86)\TData\skin\btn_browser_dir.png;file:C:\Program Files (x86)\TData\skin\ck_box.png;file:C:\Program Files (x86)\TData\skin\ck_check.png;file:C:\Program Files
Detection Type:Concrete
Detection Source:System
Status:Unknown
Process Name:C:\Windows\System32\svchost.exe
Date: 2015-09-16 13:10:27.854
Description:
Windows Defender has encountered an error trying to load signatures and will attempt reverting back to a known-good set of signatures.
Signatures Attempted:Current
Error Code:0x80070002
Error description:The system cannot find the file specified.
Signature version:0.0.0.0
Engine version:0.0.0.0
==================== Memory info ===========================
BIOS: American Megatrends Inc. 2003 10/15/2014
Motherboard: ASUSTeK COMPUTER INC. H87-PLUS
Processor: Intel(R) Core(TM) i7-4770 CPU @ 3.40GHz
Percentage of memory in use: 40%
Total physical RAM: 8130.46 MB
Available physical RAM: 4868.57 MB
Total Virtual: 16259.06 MB
Available Virtual: 10842.64 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:931.41 GB) (Free:458.18 GB) NTFS
Drive h: (CarlosLuna) (Fixed) (Total:465.76 GB) (Free:253.9 GB) NTFS
\\?\Volume{6f327824-d7c3-11dd-893f-806e6f6e6963}\ (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 319F4949)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS)
==========================================================
Disk: 1 (Size: 465.8 GB) (Disk ID: 844382C4)
Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS)
==================== End of Addition.txt =======================