[SOLVED] Help with corrupted file

royalc90

Member
Joined
Dec 13, 2015
Posts
27
Location
Corona, CA
Hey guys,
So I have windows 10 and 3 days ago it recommended that I remove my old windows 8.1 files so I did. It was just a couple clicks following the prompt and my computer worked fine the rest of the day. The next time I logged in I was running windows 8 again for some reason. I rebooted and used BIOS to boot from my SSD with windows 10. Nothing worked and my desktop icons were all globes so I restarted again and can now only access things through the folders on my desktop because cortana, start menu, and taskbar are all frozen. If I right click anything, everthing freezes for about half an hour. I ran sfc /scannow and got some corrupted files cannot be repaired. Then dism /restorehealth and got error 0x800f081f the source file could not be found. I ran the /source option and got the same thing. I downloaded the windows 10 iso from techbench and tried the media creation tool but even after I mounted the ISO I get the same result. Yesterday when I ran SFCFix it got the same results but today it won't do anything. Here is the last CBS file copy pasted because I can't right click folders or my desktop sorry.

2015-12-15 07:33:55, Info CBS External EvaluateApplicability, package: Package_for_KB3119147~31bf3856ad364e35~amd64~~10.0.1.0, package applicable State: Installed, highest update applicable state: Installed, resulting applicable state:Installed
2015-12-15 07:46:11, Info CBS Session: 30488399_3106684572 initialized by client DISM Package Manager Provider, external staging directory: (null)
2015-12-15 07:46:11, Info CBS Client specifies store corruption detect and repair.
2015-12-15 07:46:11, Info CBS Exec: Session processing started. Client: DISM Package Manager Provider, Session(Store Corruption Detect/Repair): 30488399_3106684572
2015-12-15 07:46:11, Info CBS Reboot mark set
2015-12-15 07:46:11, Info CBS Winlogon: Registering for CreateSession notifications
2015-12-15 07:46:11, Info CBS Winlogon: Loading SysNotify DLL
2015-12-15 07:46:11, Info CBS Winlogon: Starting notify server
2015-12-15 07:46:17, Info CBS Repr: CBS Store check completes
2015-12-15 07:46:17, Info CSI 00000002 IAdvancedInstallerAwareStore_ResolvePendingTransactions (call 1) (flags = 00000004, progress = NULL, phase = 0, pdwDisposition = @0xe2192ffb30
2015-12-15 07:46:17, Info CSI 00000003 Creating NT transaction (seq 1), objectname [6]"(null)"
2015-12-15 07:46:17, Info CSI 00000004 Created NT transaction (seq 1) result 0x00000000, handle @0x3c0
2015-12-15 07:46:17, Info CSI 00000005 Poqexec successfully registered in [l:12 ml:13]"SetupExecute"
2015-12-15 07:46:17, Info CSI 00000006@2015/12/15:15:46:17.048 Beginning NT transaction commit...
2015-12-15 07:46:17, Info CSI 00000007@2015/12/15:15:46:17.048 CSI perf trace:
CSIPERF:TXCOMMIT;309
2015-12-15 07:46:17, Info CSI 00000008 CSI Store 2969736015440 (0x000002b3720f6e50) initialized
2015-12-15 07:46:17, Info CSI 00000009 StoreCorruptionRepair transaction begun. WcpVersion: [l:38]"10.0.10586.0 (th2_release.151029-1700)".
2015-12-15 07:46:17, Info CSI 0000000a@2015/12/15:15:46:17.049 Starting corruption detection (InnerFlags=5)
2015-12-15 07:47:22, Info CSI 0000000b Hashes for file member \SystemRoot\WinSxS\wow64_microsoft-windows-r..xwddmdriver-wow64-c_31bf3856ad364e35_10.0.10586.0_none_3dae054b56911c22\opencl.dll do not match actual file [l:10]"opencl.dll" :
Found: {l:32 15Zo6QE4AUfojzxIYHfgI35HXL9fri8ouLdmre4jJQc=} Expected: {l:32 9rnAnuwzPjMQA7sW63oNAVhckspIngsqJXKYSUeQ5Do=}
2015-12-15 07:47:59, Info CSI 0000000c@2015/12/15:15:47:59.196 Corruption detection complete. numCorruptions = 1, Disp = 1.
2015-12-15 07:47:59, Info CBS Repr: CSI meta data corruption found, will commit repair transaction if repair is asked.
2015-12-15 07:47:59, Info CSI 0000000d@2015/12/15:15:47:59.197 CSI Transaction @0x2b3767333c0 initialized for deployment engine {d16d444c-56d8-11d5-882d-0080c847b195} with flags 00000000 and client id [26]"TI5.30488399_3106684572:1/"


2015-12-15 07:47:59, Info CSI 0000000e@2015/12/15:15:47:59.198 CSI Transaction @0x2b3767333c0 destroyed
2015-12-15 07:47:59, Info CBS Repr: CSI Store check completes
2015-12-15 07:47:59, Info CBS Exec: Download qualification evaluation, business scenario: Manual Corruption Repair
2015-12-15 07:47:59, Info CBS Exec: Clients specified using Windows Update.
2015-12-15 07:47:59, Info CBS WU: Update service is not default AU service, skip. URL: https://fe2.ws.microsoft.com/v6/, Name: Windows Store
2015-12-15 07:47:59, Info CBS WU: Update service is not default AU service, skip. URL: https://fe3.delivery.mp.microsoft.com/, Name: Windows Store (DCat Prod)
2015-12-15 07:47:59, Info CBS WU: Microsoft Update service is the default, URL: (null), Name: Windows Update
2015-12-15 07:48:11, Info CBS DWLD:Search is done, set download progress to 20 percent.
2015-12-15 07:48:11, Info CBS Nothing to download, unexpected
2015-12-15 07:48:11, Info CBS Failed to collect payload and there is nothing to repair. [HRESULT = 0x800f081f - CBS_E_SOURCE_MISSING]
2015-12-15 07:48:11, Info CBS Failed to repair store. [HRESULT = 0x800f081f - CBS_E_SOURCE_MISSING]
2015-12-15 07:48:11, Info CBS Ensure CBS corruption flag is clear
2015-12-15 07:48:11, Info CBS
=================================
Checking System Update Readiness.


(p) CSI Payload Corrupt wow64_microsoft-windows-r..xwddmdriver-wow64-c_31bf3856ad364e35_10.0.10586.0_none_3dae054b56911c22\opencl.dll
Repair failed: Missing replacement payload.


Summary:
Operation: Detect and Repair
Operation result: 0x800f081f
Last Successful Step: Entire operation completes.
Total Detected Corruption: 1
CBS Manifest Corruption: 0
CBS Metadata Corruption: 0
CSI Manifest Corruption: 0
CSI Metadata Corruption: 0
CSI Payload Corruption: 1
Total Repaired Corruption: 0
CBS Manifest Repaired: 0
CSI Manifest Repaired: 0
CSI Payload Repaired: 0
CSI Store Metadata refreshed: True


Total Operation Time: 119 seconds.


2015-12-15 07:48:11, Info CBS CheckSur: hrStatus: 0x800f081f [CBS_E_SOURCE_MISSING], download Result: 0x800f0948 [CBS_E_SOURCE_MISSING_FROM_WU_CAB]
2015-12-15 07:48:11, Info CBS Count of times corruption detected: 1
2015-12-15 07:48:11, Info CBS Seconds between initial corruption detections: -1
2015-12-15 07:48:11, Info CBS Seconds between corruption and repair: -1
2015-12-15 07:48:11, Info CBS SQM: Package change report datapoints not populated because SQM is not initialized or not running online.
2015-12-15 07:48:11, Info CBS Failed to run Detect and repair. [HRESULT = 0x800f081f - CBS_E_SOURCE_MISSING]
2015-12-15 07:48:11, Info CBS Reboot mark cleared
2015-12-15 07:48:11, Info CBS Winlogon: Simplifying Winlogon CreateSession notifications
2015-12-15 07:48:11, Info CBS Winlogon: Deregistering for CreateSession notifications
2015-12-15 07:48:11, Info CBS Exec: Processing complete, session(Corruption Repairing): 30488399_3106684572 [HRESULT = 0x800f081f - CBS_E_SOURCE_MISSING]
2015-12-15 07:48:11, Error CBS Session: 30488399_3106684572 failed to perform store corruption detect and repair operation. [HRESULT = 0x800f081f - CBS_E_SOURCE_MISSING]
2015-12-15 07:48:11, Info CBS Session: 30488399_3106684572 finalized. Download error: 0x800f0948 [CBS_E_SOURCE_MISSING_FROM_WU_CAB], Reboot required: no [HRESULT = 0x800f081f - CBS_E_SOURCE_MISSING]
2015-12-15 07:48:11, Info CBS Failed to FinalizeEx using worker session [HRESULT = 0x800f081f]
2015-12-15 07:50:11, Info CBS Trusted Installer is shutting down because: SHUTDOWN_REASON_AUTOSTOP
2015-12-15 07:50:11, Info CBS TiWorker signaled for shutdown, going to exit.
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: ExecutionEngineFinalize
2015-12-15 07:50:11, Info CBS Ending the TiWorker main loop.
2015-12-15 07:50:11, Info CBS Starting TiWorker finalization.
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: ManifestCacheFinalize
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: ExecutionEngineFinalize
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: ComponentAnalyzerFinalize
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: PackageTrackerFinalize
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: CoreResourcesUnload
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: SessionManagerFinalize
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: CapabilityManagerFinalize
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: PublicObjectMonitorFinalize
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: Enter vCoreInitializeLock
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: WcpUnload
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: DrupUnload
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: CfgMgr32Unload
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: DpxUnload
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: SrUnload
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: CbsEsdUnload
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: CbsTraceInfoUninitialize
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: CbsEventUnregister
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: AppContainerUnload
2015-12-15 07:50:11, Info CBS CbsCoreFinalize: WdsUnload, logging from cbscore will end.
2015-12-15 07:50:11, Info CBS Ending TiWorker finalization.
2015-12-15 07:50:11, Info CBS Ending the TrustedInstaller main loop.
2015-12-15 07:50:11, Info CBS Starting TrustedInstaller finalization.
2015-12-15 07:50:11, Info CBS Winlogon: Stopping notify server
2015-12-15 07:50:11, Info CBS Winlogon: Unloading SysNotify DLL
2015-12-15 07:50:11, Info CBS Ending TrustedInstaller finalization.

This is the first time I've ever tried to fix a computer, but it seems like this is the issue?
2015-12-15 07:47:22, Info CSI 0000000b Hashes for file member \SystemRoot\WinSxS\wow64_microsoft-windows-r..xwddmdriver-wow64-c_31bf3856ad364e35_10.0.10586.0_none_3dae054b56911c22\opencl.dll do not match actual file [l:10]"opencl.dll" :
Found: {l:32 15Zo6QE4AUfojzxIYHfgI35HXL9fri8ouLdmre4jJQc=} Expected: {l:32 9rnAnuwzPjMQA7sW63oNAVhckspIngsqJXKYSUeQ5Do=}

and

Failed to collect payload and there is nothing to repair. [HRESULT = 0x800f081f - CBS_E_SOURCE_MISSING]
2015-12-15 07:48:11, Info CBS Failed to repair store. [HRESULT = 0x800f081f - CBS_E_SOURCE_MISSING]

If anybody could help me it would be greatly appreciated
thanks.
 
Hi and welcome to Sysnative. This is a common but easily resolved issue from updating to Windows 10 November update. Please do the following.

Step#1 - SFCFix Script
Warning: this fix is specific to the user in this thread. No one else should follow these instructions as it may cause more harm than good. If you are after assistance, please start a thread of your own.


  1. Download SFCFix.exe (by niemiro) and save this to your Desktop. If you still have this on your desktop from downloading previously, you don't need to re-download.
  2. Download the file below, SFCFix.zip, and save this to your Desktop. Ensure that this file is named SFCFix.zip - do not rename it.
  3. Save any open documents and close all open windows.
  4. On your Desktop, you should see two files: SFCFix.exe and SFCFix.zip.
  5. Drag the file SFCFix.zip onto the file SFCFix.exe and release it.
  6. SFCFix will now process the script.
  7. Upon completion, a file should be created on your Desktop: SFCFix.txt.
  8. Copy (Ctrl+C) and Paste (Ctrl+V) the contents of this file into your next post for me to analyse please


Step#2 - SFC Scan
1. Right-click on the Start
w8start.png
button and select Command Prompt (Admin)
2. When command prompt opens, Copy (Ctrl+C) and Paste (Right-click > Paste) the following command into it, then press Enter
sfc /scannow

3. Once it finishes, copy and paste the following into the command-prompt window and press Enter.
copy %windir%\logs\cbs\cbs.log "%userprofile%\Desktop\cbs.txt"

4. Once this has completed please go to your Desktop and you will find CBS.txt => Right-click on this file and choose Send To...Compressed (zipped folder). Please upload this zipped file CBS.zip to this thread

Please Note:: if the file is too big to upload to your next post please upload via a service such as Dropbox or One Drive or SendSpace and just provide the link.


Items for your next post
1. SFCFix.txt
2. CBS.txt
 

Attachments

It didn't create a file on my desktop but it says checking for updates...
Failed to check for updates. This may be due to an internet connection problem or a temporary availability failure of the update servers. Please ensure that you are using the latest version of the program before continuing.
The new CBS file is attached.
 

Attachments

I did that and got the same result so I deleted both files and redownloaded them both fresh to try again and it still says the same thing.
 
I got the same results. Should it look different though? Like how safe mode makes the icons bigger or anything like that? Sorry if that's a dumb question but the clean boot appears the same as normal to me.
 
No it should not look any different. It just diables 3rd party software to eliminate any potential conflicts. You are having a very odd problem. We may have to do it manually. What Antivirus and Firewall are you using? Do you have any problems accessing the internet at the moment?
 
I am just using Windows Defender and am posting this from the affected computer so no problems with internet access although some programs like adblock and some media players don't run. Also chrome doesn't hold any of my stuff once I close it.
 
OK, let's take a step back. A few questions.

1. You mentioned that you tried to re-install Windows 10. Does this mean that there is really nothing to save on your machine so if it was wiped and reloaded it would be fine? No data loss?
2. Was the Windows 8.1 that was on the machine an OEM copy (i.e. came pre-installed from Dell or HP) or a Retail copy that you purchased from a store?
 
1. No, there are lots of things on this computer that could be lost but most can be redownloaded and the rest can be moved to a separate HDD.
2. The Windows 8.1 was bought online and downloaded onto a USB stick and was the first thing put on this hardware.
 
Thanks. Please do the following.

Fresh Set of Logs Needed

1. Please download Farbar Recovery Scan Tool and save it to your Desktop.
Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them.
Only one of them will run on your system, that will be the right version.
2. Right click on the file and select Run as administrator (If you don't have this option simply double-click the file to open). When the tool opens click Yes to disclaimer.
3. Press Scan button.
4. It will produce a log called FRST.txt in the same directory the tool is run from (which should be the desktop)
5. Please copy and paste log back here.
6. The first time the tool is run it generates another log (Addition.txt - also located in the same directory as FRST.exe). Please also paste that along with the FRST.txt into your reply.
Note: Please do not attach any logs unless specifically requested. It's easier if you simply copy and paste them into your reply. It's OK if you have to use more than one post to do so.
 
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:14-12-2015
Ran by Royal (administrator) on GAMING_SSD (15-12-2015 16:46:06)
Running from C:\Users\Royal\Desktop
Loaded Profiles: Royal (Available Profiles: Royal)
Platform: Windows 10 Pro Version 1511 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials


==================== Processes (Whitelisted) =================


(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)


(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cnext.exe
(CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe




==================== Registry (Whitelisted) ===========================


(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)


HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [13318424 2015-03-12] (Logitech Inc.)
HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\cnext.exe [4859592 2015-11-18] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-21] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [452016 2011-01-15] (CANON INC.)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [56080 2015-12-02] (Raptr, Inc)
HKU\S-1-5-21-2906918697-159630706-1218816482-1001\...\Run: [GoogleChromeAutoLaunch_31BCA167C6A1D94CD79540471E40C82F] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [741704 2015-12-04] (Google Inc.)
HKU\S-1-5-21-2906918697-159630706-1218816482-1001\...\Run: [Amazon Cloud Drive] => C:\Users\Royal\AppData\Local\Amazon Cloud Drive\AmazonCloudDrive.exe [1939264 2015-12-10] (Amazon.com Inc.)
Startup: C:\Users\Royal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Curse.lnk [2015-04-29]
ShortcutTarget: Curse.lnk -> C:\Users\Royal\AppData\Roaming\Curse Client\Bin\Curse.exe (Curse, Inc)
Startup: C:\Users\Royal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DS4Windows.lnk [2015-08-30]
ShortcutTarget: DS4Windows.lnk -> C:\Users\Royal\Downloads\DS4Windows\DS4Windows.exe ()


==================== Internet (Whitelisted) ====================


(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)


Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{3f4112eb-92d3-4114-966f-050b0d46f4b6}: [DhcpNameServer] 192.168.0.1 205.171.3.25
Tcpip\..\Interfaces\{f3f1860b-6cbf-4c63-a8f7-7c20804407bd}: [DhcpNameServer] 192.168.1.254


Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
BHO: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-10-09] (Skype Technologies S.A.)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-10-09] (Skype Technologies S.A.)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2013-10-09] (Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-10-09] (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)


FireFox:
========
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32.dll [2015-08-20] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-02-18] ()
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)


Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/ig/redirectdomain?brand=LENN&bmod=LENN
CHR StartupUrls: Default -> "hxxp://www.google.com/ig/redirectdomain?brand=LENN&bmod=LENN"
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-04]
CHR Extension: (Google Drive) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (YouTube) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
CHR Extension: (Google Search) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Google Docs Offline) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-18]
CHR Extension: (AdBlock) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-12-08]
CHR Extension: (Reddit Enhancement Suite) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb [2015-01-22]
CHR Extension: (Skype Click to Call) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-10-14]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-23]
CHR Extension: (Amazon Assistant for Chrome) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam [2015-11-13]
CHR Extension: (Gmail) - C:\Users\Royal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-10-09]


==================== Services (Whitelisted) ========================


(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


S4 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2015-11-03] (Hi-Rez Studios) [File not signed]
S4 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [330136 2015-08-27] (Intel Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-29] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-29] (Microsoft Corporation)
S2 ReimageRealTimeProtector; C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [X]


===================== Drivers (Whitelisted) ==========================


(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [40720 2015-07-28] (Advanced Micro Devices, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-09-17] (Advanced Micro Devices)
S3 EMVSCARD; C:\Windows\System32\Drivers\EMVSCARD.sys [28544 2006-12-13] (USB Smart Card Reader)
R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [22216 2014-05-27] ()
R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [22728 2014-05-27] ()
R3 ISCT; C:\Windows\System32\drivers\ISCTD.sys [44744 2014-05-27] ()
R3 ScpVBus; C:\Windows\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Scarlet.Crush Productions)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-10-29] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [293216 2015-10-29] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-29] (Microsoft Corporation)


==================== NetSvcs (Whitelisted) ===================


(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)




==================== One Month Created files and folders ========


(If an entry is included in the fixlist, the file/folder will be moved.)


2015-12-15 16:46 - 2015-12-15 16:46 - 00011309 _____ C:\Users\Royal\Desktop\FRST.txt
2015-12-15 16:45 - 2015-12-15 16:46 - 00000000 ____D C:\FRST
2015-12-15 16:44 - 2015-12-15 16:45 - 02369536 _____ (Farbar) C:\Users\Royal\Desktop\FRST64.exe
2015-12-15 15:04 - 2015-12-15 15:05 - 01319424 _____ (niemiro) C:\Users\Royal\Desktop\SFCFix.exe
2015-12-15 15:04 - 2015-12-15 15:04 - 00009553 _____ C:\Users\Royal\Desktop\SFCFix.zip
2015-12-15 14:55 - 2015-12-15 14:55 - 00000000 ____D C:\Users\Royal\Downloads\SFCFix
2015-12-15 14:24 - 2015-12-15 14:17 - 02887190 _____ C:\Users\Royal\Desktop\cbs.txt
2015-12-15 14:11 - 2015-12-15 14:24 - 00185369 _____ C:\Users\Royal\Desktop\cbs.zip
2015-12-14 19:50 - 2015-12-14 19:50 - 00004342 _____ C:\Windows\System32\Tasks\ReimageUpdater
2015-12-14 19:50 - 2015-12-14 19:50 - 00003528 _____ C:\Windows\System32\Tasks\Reimage Reminder
2015-12-14 19:50 - 2015-12-14 19:50 - 00000000 ____D C:\ProgramData\Reimage Protector
2015-12-14 19:50 - 2015-12-14 19:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair
2015-12-14 19:49 - 2015-12-14 19:50 - 00000139 _____ C:\Windows\Reimage.ini
2015-12-14 19:39 - 2015-12-14 19:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2015-12-14 19:39 - 2015-12-14 19:39 - 00000000 ____D C:\Program Files\ATI Technologies
2015-12-14 19:38 - 2015-12-14 19:39 - 00000000 ____D C:\Windows\LastGood.Tmp
2015-12-14 19:18 - 2015-12-14 19:18 - 00000000 ____D C:\wim
2015-12-14 18:51 - 2015-12-14 18:51 - 00000000 ____D C:\Windows\system32\SleepStudy
2015-12-14 17:44 - 2015-12-14 16:15 - 4017000448 _____ C:\Win10_1511_English_x64.iso
2015-12-14 17:12 - 2015-12-14 18:20 - 00000000 ____D C:\IMAGE_HEALTH
2015-12-14 16:51 - 2015-12-14 16:34 - 01203015 _____ C:\IMAGE_HEALTH.zip
2015-12-13 20:18 - 2015-12-13 20:18 - 00000000 ___HD C:\$WINDOWS.~BT
2015-12-13 20:04 - 2015-12-15 07:29 - 00000000 ____D C:\Users\Royal\AppData\Local\niemiro
2015-12-13 18:26 - 2015-12-13 18:26 - 00000020 ___SH C:\Users\Royal\ntuser.ini
2015-12-13 18:26 - 2015-12-13 18:26 - 00000000 _SHDL C:\Users\Default\My Documents
2015-12-13 18:26 - 2015-12-13 18:26 - 00000000 _SHDL C:\Users\Default\Documents\My Videos
2015-12-13 18:26 - 2015-12-13 18:26 - 00000000 _SHDL C:\Users\Default\Documents\My Pictures
2015-12-13 18:26 - 2015-12-13 18:26 - 00000000 _SHDL C:\Users\Default\Documents\My Music
2015-12-13 18:26 - 2015-12-13 18:26 - 00000000 _SHDL C:\Users\Default User\Documents\My Videos
2015-12-13 18:26 - 2015-12-13 18:26 - 00000000 _SHDL C:\Users\Default User\Documents\My Pictures
2015-12-13 18:26 - 2015-12-13 18:26 - 00000000 _SHDL C:\Users\Default User\Documents\My Music
2015-12-13 18:25 - 2015-12-15 15:43 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-12-13 18:22 - 2015-12-13 18:22 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-12-13 18:22 - 2015-12-13 18:22 - 00000000 ____D C:\Users\Default\AppData\Roaming\ATI
2015-12-13 18:22 - 2015-12-13 18:22 - 00000000 ____D C:\Users\Default\AppData\Local\ATI
2015-12-13 18:22 - 2015-12-13 18:22 - 00000000 ____D C:\Users\Default User\AppData\Roaming\ATI
2015-12-13 18:22 - 2015-12-13 18:22 - 00000000 ____D C:\Users\Default User\AppData\Local\ATI
2015-12-13 18:22 - 2015-10-29 23:17 - 02718208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2015-12-13 18:21 - 2015-12-14 15:23 - 00000000 ____D C:\Users\Royal
2015-12-13 18:21 - 2015-12-13 18:23 - 00000000 ____D C:\Windows\system32\config\bbimigrate
2015-12-13 18:21 - 2015-12-13 18:21 - 00000000 _SHDL C:\Users\Royal\My Documents
2015-12-13 18:21 - 2015-12-13 18:21 - 00000000 _SHDL C:\Users\Royal\Documents\My Videos
2015-12-13 18:21 - 2015-12-13 18:21 - 00000000 _SHDL C:\Users\Royal\Documents\My Pictures
2015-12-13 18:21 - 2015-12-13 18:21 - 00000000 _SHDL C:\Users\Royal\Documents\My Music
2015-12-13 18:20 - 2015-12-14 19:39 - 00000000 ____D C:\Program Files\AMD
2015-12-13 18:20 - 2015-12-13 18:21 - 00000000 ____D C:\Program Files\Intel
2015-12-13 18:20 - 2015-12-13 18:20 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2015-12-13 18:20 - 2015-12-13 18:20 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2015-12-13 18:20 - 2015-12-13 18:20 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2015-12-13 18:20 - 2015-12-13 18:20 - 00000000 ____D C:\Windows\system32\DAX2
2015-12-13 18:20 - 2015-12-13 18:20 - 00000000 ____D C:\Program Files\Realtek
2015-12-13 18:20 - 2015-12-13 18:20 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2015-12-13 18:20 - 2015-12-13 18:20 - 00000000 _____ C:\Windows\ativpsrm.bin
2015-12-13 18:19 - 2015-12-13 18:28 - 00000000 ___DC C:\Windows\Panther
2015-12-13 18:19 - 2015-12-13 18:23 - 00189352 _____ C:\Windows\system32\FNTCACHE.DAT
2015-12-13 18:17 - 2015-12-13 18:18 - 00000000 ____D C:\Windows.old
2015-12-13 18:17 - 2015-12-13 18:17 - 24601600 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 22572632 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 22393856 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 21125408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 19338240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 18678272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 16984576 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 13381120 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 13017600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 12125184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 11545088 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 09918976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 07979008 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 07476576 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 07199232 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 06572032 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 06297088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 05202944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 03993600 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 03671896 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 03593216 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 03355136 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02918808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02843136 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02772584 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02756096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-12-13 18:17 - 2015-12-13 18:17 - 02756096 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-12-13 18:17 - 2015-12-13 18:17 - 02680320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02653816 _____ C:\Windows\system32\CoreUIComponents.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02624512 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02598400 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02587136 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02544264 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02444288 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02352128 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02280448 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02185840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02179584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02155008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02152800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 02126848 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-12-13 18:17 - 2015-12-13 18:17 - 02121216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02064384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-12-13 18:17 - 2015-12-13 18:17 - 02001408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\ActiveSyncProvider.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01944576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputService.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01860096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01859448 _____ C:\Windows\SysWOW64\CoreUIComponents.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01817160 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01814528 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01734656 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01717248 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01713664 _____ (Microsoft Corporation) C:\Windows\system32\SRHInproc.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01706496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActiveSyncProvider.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01648640 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01540768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01467392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01443328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRHInproc.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01399224 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 01387008 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01337240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01284960 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01268736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Resources.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01268736 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01223168 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01063424 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01056256 _____ (Microsoft Corporation) C:\Windows\system32\JpMapControl.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 01042432 _____ (Microsoft Corporation) C:\Windows\system32\BingOnlineServices.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00988160 _____ (Microsoft Corporation) C:\Windows\system32\NMAA.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00975200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00969728 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00957440 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00948224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Unistore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00948224 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthManager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00938496 _____ (Microsoft Corporation) C:\Windows\system32\MapControlCore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00912384 _____ (Microsoft Corporation) C:\Windows\system32\usermgr.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00911648 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00870400 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00870400 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00850432 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00809312 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00803840 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00800768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JpMapControl.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00795840 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00791552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00784896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NMAA.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00783360 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlCore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00709120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingOnlineServices.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00704352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00704000 _____ (Microsoft Corporation) C:\Windows\system32\CellularAPI.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00698208 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00697856 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00686592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00675064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00674816 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00647168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00638464 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00630632 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\PhoneProviders.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00607232 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00604928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 00604672 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00589312 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApi.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00586208 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00586080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00578912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 00558080 _____ (Microsoft Corporation) C:\Windows\system32\MBMediaManager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00543232 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00540752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00538632 _____ (Microsoft Corporation) C:\Windows\system32\WWanAPI.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00536768 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00523616 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00517632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00517632 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2015-12-13 18:17 - 2015-12-13 18:17 - 00516544 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00511320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\mfmkvsrcsnk.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00490496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00470528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApi.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00459776 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00458752 _____ (Microsoft Corporation) C:\Windows\system32\PlayToDevice.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00454056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00450560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Bluetooth.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00440160 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00431232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00421888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LogonController.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00416768 _____ (Microsoft Corporation) C:\Windows\system32\dmenrollengine.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00409088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StoreAgent.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00408128 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00405048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00400896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2015-12-13 18:17 - 2015-12-13 18:17 - 00382464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmkvsrcsnk.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00382464 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00369912 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00366224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00365568 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00346112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapConfiguration.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\TextInputFramework.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\SensorService.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00340480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00334848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00334736 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00334336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\cryptngc.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Bluetooth.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00303104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00296488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00292352 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00286720 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\moshostcore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00264192 _____ (Nokia) C:\Windows\system32\NmaDirect.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\UserMgrProxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00245848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TextInputFramework.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00241664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptngc.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceaccess.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00205824 _____ (Nokia) C:\Windows\SysWOW64\NmaDirect.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-AppModelExecEvents.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00182784 _____ (Microsoft Corporation) C:\Windows\system32\shutdownux.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\mdmmigrator.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00166912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserMgrProxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\provdatastore.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\provops.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\tetheringservice.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00161632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 00160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgent.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\enrollmentapi.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\dmcertinst.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ETWCoreUIComponentsResources.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00138240 _____ (Microsoft Corporation) C:\Windows\system32\ETWCoreUIComponentsResources.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00133632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Core.TextInput.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCsp.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvc.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00118624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\capimg.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 00116728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\offlinelsa.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MapControls.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MapControls.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00110032 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00100864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offlinelsa.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00095072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdstor.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00092352 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SensorsNativeApi.V2.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\NFCProvisioningPlugin.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\MapsCSP.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00088392 _____ (Microsoft Corporation) C:\Windows\system32\remoteaudioendpoint.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\tzautoupdate.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapsBtSvc.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\AppCapture.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputLocaleManager.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00080600 _____ (Microsoft Corporation) C:\Windows\system32\wwapi.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\BarcodeProvisioningPlugin.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\ProvPluginEng.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\EditBufferTestHook.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\mssign32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\wwancfg.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00073360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remoteaudioendpoint.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\MosStorage.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppCapture.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthManagerProxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\wininetlui.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\moshost.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininetlui.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MosHostClient.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\ihvrilproxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00063528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wwapi.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssign32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthTokenBrokerExt.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditBufferTestHook.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00058408 _____ (Microsoft Corporation) C:\Windows\system32\SensorsNativeApi.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosStorage.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosResource.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\MosResource.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\provtool.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rilproxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\tetheringclient.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\RemovableMediaProvisioningPlugin.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\Wwanpref.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00051680 _____ (Microsoft Corporation) C:\Windows\system32\SensorsUtilsV2.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XblAuthTokenBrokerExt.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosHostClient.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00045568 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\wsplib.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.proxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\mapstoasttask.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XblAuthManagerProxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00037376 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCoreRes.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCoreRes.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00035680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wimmount.sys
2015-12-13 18:17 - 2015-12-13 18:17 - 00035656 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00032040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\tetheringconfigsp.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\WordBreakers.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\mapsupdatetask.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Provisioning.ProxyStub.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\nativemap.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.proxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00026408 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WordBreakers.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\IcsEntitlementHost.exe
2015-12-13 18:17 - 2015-12-13 18:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvcProxy.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MosTrace.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MosTrace.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MosHost.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MosHost.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\readingviewresources.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlStringsRes.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\MapControlStringsRes.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-12-13 18:16 - 2015-12-13 18:16 - 00008192 _____ C:\Windows\system32\config\userdiff
2015-12-13 18:15 - 2015-12-13 18:15 - 00000000 ____D C:\Program Files\Reference Assemblies
2015-12-13 18:15 - 2015-12-13 18:15 - 00000000 ____D C:\Program Files\MSBuild
2015-12-13 18:15 - 2015-12-13 18:15 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2015-12-13 18:15 - 2015-12-13 18:15 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-12-13 18:15 - 2015-10-23 17:47 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2015-12-13 18:15 - 2015-10-23 17:47 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-12-13 18:15 - 2015-10-23 17:47 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2015-12-13 18:15 - 2015-10-23 17:46 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2015-12-13 18:15 - 2015-10-23 17:46 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-12-13 18:15 - 2015-10-23 17:45 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-12-13 15:02 - 2015-12-13 15:02 - 00000224 _____ C:\Users\Royal\Desktop\Repair.bat
2015-12-13 13:33 - 2015-12-14 18:16 - 00000000 ____D C:\Users\Royal\Desktop\mount
2015-12-13 12:37 - 2015-12-13 13:21 - 4017000448 _____ C:\Users\Royal\Downloads\Win10_1511_English_x64.iso
2015-12-13 12:32 - 2015-12-13 12:33 - 79392372 _____ C:\Users\Royal\Downloads\TechBench_2015-08-19_2100.zip
2015-12-13 10:30 - 2015-12-13 10:30 - 00000000 ___HD C:\$Windows.~WS
2015-12-13 10:29 - 2015-12-13 10:29 - 18446336 _____ (Microsoft Corporation) C:\Users\Royal\Downloads\MediaCreationTool.exe
2015-12-13 10:29 - 2015-12-13 10:29 - 18446336 _____ (Microsoft Corporation) C:\Users\Royal\Downloads\MediaCreationTool (1).exe
2015-12-13 08:26 - 2015-12-13 08:26 - 00000000 __SHD C:\found.000
2015-12-12 10:27 - 2015-12-12 10:28 - 00000000 ____D C:\Users\Royal\AppData\Roaming\Amazon Cloud Drive
2015-12-12 10:27 - 2015-12-12 10:27 - 00001321 _____ C:\Users\Royal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon Cloud Drive.lnk
2015-12-12 10:27 - 2015-12-12 10:27 - 00001309 _____ C:\Users\Royal\Desktop\Amazon Cloud Drive.lnk
2015-12-12 10:27 - 2015-12-12 10:27 - 00000000 ____D C:\Users\Royal\AppData\Local\Amazon Cloud Drive
2015-12-12 10:23 - 2015-12-12 10:27 - 00867648 _____ (Amazon) C:\Users\Royal\Downloads\AmazonCloudDriveSetup.exe
2015-12-09 12:47 - 2015-12-09 12:47 - 00000000 ____D C:\ProgramData\ATI
2015-12-09 08:49 - 2015-12-09 08:49 - 00001243 _____ C:\Users\Royal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CNext.lnk
2015-12-08 22:12 - 2015-12-13 18:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
2015-12-08 22:12 - 2015-12-08 22:12 - 00000000 ____D C:\Users\Royal\AppData\Roaming\library_dir
2015-12-08 22:11 - 2015-12-13 18:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2015-12-08 22:11 - 2015-12-12 19:43 - 00000000 ____D C:\Users\Royal\AppData\Roaming\Raptr
2015-12-08 22:11 - 2015-12-08 22:12 - 00000000 ____D C:\Program Files (x86)\Raptr
2015-12-04 19:52 - 2015-12-04 19:52 - 00060946 _____ C:\Users\Royal\Downloads\Essay.pdf
2015-12-03 07:10 - 2015-12-03 07:10 - 00000000 ____D C:\Users\Royal\AppData\Local\ActiveSync
2015-12-03 03:50 - 2015-12-03 03:50 - 00000000 _SHDL C:\Users\Default.migrated\Documents\My Videos
2015-12-03 03:50 - 2015-12-03 03:50 - 00000000 _SHDL C:\Users\Default.migrated\Documents\My Pictures
2015-12-03 03:50 - 2015-12-03 03:50 - 00000000 _SHDL C:\Users\Default.migrated\Documents\My Music
2015-12-03 03:45 - 2015-12-14 19:39 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2015-12-03 03:45 - 2015-12-08 22:10 - 00000000 ____D C:\ProgramData\Package Cache
2015-11-29 15:29 - 2015-11-29 15:29 - 00001556 _____ C:\Users\Royal\Downloads\index.m3u8
2015-11-23 23:36 - 2015-10-23 13:35 - 00162232 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll
2015-11-23 23:35 - 2015-10-23 13:35 - 12088000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll
2015-11-23 23:35 - 2015-10-23 13:35 - 01479808 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2015-11-23 23:33 - 2015-11-23 23:33 - 00232464 _____ C:\Windows\system32\dgtrayicon.exe
2015-11-23 23:30 - 2015-10-23 13:35 - 01256432 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2015-11-23 23:27 - 2015-11-23 23:27 - 00305392 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdacpksd.sys
2015-11-23 20:43 - 2015-11-23 20:43 - 00323588 _____ C:\Windows\system32\ativvaxy_el.dat
2015-11-23 20:43 - 2015-11-23 20:43 - 00320992 _____ C:\Windows\system32\ativvaxy_el_nd.dat
2015-11-23 20:43 - 2015-11-23 20:43 - 00261920 _____ C:\Windows\system32\ativvaxy_stn_nd.dat
2015-11-23 20:43 - 2015-11-23 20:43 - 00204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2015-11-23 20:43 - 2015-11-23 20:43 - 00204952 _____ C:\Windows\system32\ativvsvl.dat
2015-11-23 20:43 - 2015-11-23 20:43 - 00157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2015-11-23 20:43 - 2015-11-23 20:43 - 00157144 _____ C:\Windows\system32\ativvsva.dat
2015-11-23 20:43 - 2015-11-23 20:43 - 00140240 _____ C:\Windows\system32\samu_krnl_ci.sbin
2015-11-23 20:43 - 2015-11-23 20:43 - 00138832 _____ C:\Windows\system32\samu_krnl_isv_ci.sbin
2015-11-23 20:43 - 2015-11-23 20:43 - 00047664 _____ C:\Windows\system32\kapp_ci.sbin
2015-11-23 20:43 - 2015-11-23 20:43 - 00043536 _____ C:\Windows\system32\kapp_si.sbin
2015-11-23 20:42 - 2015-11-23 20:42 - 00737410 _____ C:\Windows\system32\atiicdxx.dat
2015-11-23 20:41 - 2015-11-23 20:41 - 00166560 _____ C:\Windows\system32\amde34a.dat
2015-11-23 20:41 - 2015-11-23 20:41 - 00007112 _____ C:\Windows\system32\AMDKernelEvents.man
2015-11-16 17:10 - 2015-11-16 17:10 - 00000216 _____ C:\Users\Royal\Downloads\chunklist (1).m3u8
2015-11-15 21:22 - 2015-11-15 21:22 - 00000221 _____ C:\Users\Royal\Downloads\chunklist.m3u8


==================== One Month Modified files and folders ========


(If an entry is included in the fixlist, the file/folder will be moved.)


2015-12-15 16:45 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\AppReadiness
2015-12-15 16:45 - 2015-10-29 22:28 - 00000000 ____D C:\Windows
2015-12-15 16:13 - 2014-01-23 16:17 - 00000928 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-12-15 15:47 - 2015-10-29 23:21 - 00000000 ____D C:\Windows\INF
2015-12-15 15:47 - 2015-08-20 11:54 - 00879220 _____ C:\Windows\system32\PerfStringBackup.INI
2015-12-15 15:43 - 2014-01-23 16:17 - 00000924 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-12-15 07:48 - 2015-10-29 23:11 - 00000000 ____D C:\Windows\CbsTemp
2015-12-15 07:15 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\LiveKernelReports
2015-12-14 19:39 - 2014-01-23 17:42 - 00000000 ____D C:\AMD
2015-12-14 14:53 - 2015-10-29 22:28 - 00262144 ___SH C:\Windows\system32\config\BBI
2015-12-14 12:45 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\appcompat
2015-12-13 20:18 - 2015-08-20 11:33 - 00001908 _____ C:\Windows\diagwrn.xml
2015-12-13 20:18 - 2015-08-20 11:33 - 00001908 _____ C:\Windows\diagerr.xml
2015-12-13 18:26 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\Registration
2015-12-13 18:26 - 2015-08-20 12:02 - 00000451 _____ C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-12-13 18:26 - 2015-08-20 12:02 - 00000000 __RHD C:\Users\Public\AccountPictures
2015-12-13 18:25 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\system32\WinBioDatabase
2015-12-13 18:25 - 2015-10-29 22:28 - 00032768 ___SH C:\Windows\system32\config\ELAM
2015-12-13 18:25 - 2015-08-20 11:52 - 00022840 _____ C:\Windows\system32\emptyregdb.dat
2015-12-13 18:25 - 2014-11-17 16:52 - 00002316 _____ C:\Windows\System32\Tasks\{2DB08243-FE14-4D40-97C4-C25AE8EADDC6}
2015-12-13 18:25 - 2014-01-23 16:17 - 00003440 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-12-13 18:25 - 2014-01-23 16:17 - 00003216 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-12-13 18:25 - 2013-12-09 13:22 - 00002938 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2906918697-159630706-1218816482-1001
2015-12-13 18:24 - 2015-10-29 23:24 - 00000000 __RSD C:\Windows\Media
2015-12-13 18:24 - 2015-10-29 23:24 - 00000000 __RHD C:\Users\Public\Libraries
2015-12-13 18:24 - 2015-10-29 23:24 - 00000000 ___HD C:\Program Files\WindowsApps
2015-12-13 18:23 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\system32\catroot2old
2015-12-13 18:23 - 2015-08-20 12:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios
2015-12-13 18:23 - 2015-06-16 17:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2015-12-13 18:23 - 2015-01-30 08:33 - 00000000 ____D C:\Windows\SysWOW64\STRING
2015-12-13 18:23 - 2015-01-27 09:48 - 00000000 ____D C:\Windows\system32\STRING
2015-12-13 18:23 - 2014-12-14 08:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2015-12-13 18:23 - 2014-10-21 07:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2015-12-13 18:23 - 2014-10-14 16:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-12-13 18:23 - 2014-01-23 16:36 - 00000000 ____D C:\Users\Royal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-12-13 18:23 - 2014-01-23 16:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-12-13 18:23 - 2013-12-09 13:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-12-13 18:22 - 2015-10-30 01:02 - 00000000 ____D C:\Windows\SysWOW64\WCN
2015-12-13 18:22 - 2015-10-30 01:02 - 00000000 ____D C:\Windows\SysWOW64\sysprep
2015-12-13 18:22 - 2015-10-30 01:02 - 00000000 ____D C:\Windows\system32\WCN
2015-12-13 18:22 - 2015-10-30 01:02 - 00000000 ____D C:\Windows\DigitalLocker
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ___SD C:\Windows\SysWOW64\DiagSvcs
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ___SD C:\Windows\SysWOW64\Configuration
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ___SD C:\Windows\system32\Configuration
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ___RD C:\Windows\PurchaseDialog
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\SysWOW64\SMI
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\SysWOW64\MUI
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\system32\spool
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\system32\oobe
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\system32\MUI
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\system32\InputMethod
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\PolicyDefinitions
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\InputMethod
2015-12-13 18:22 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\Help
2015-12-13 18:22 - 2015-10-29 22:28 - 00000000 ____D C:\Users\Default.migrated
2015-12-13 18:22 - 2015-01-27 09:47 - 00000000 ___HD C:\Windows\system32\CanonIJ Uninstaller Information
2015-12-13 18:22 - 2013-12-09 13:35 - 00000000 __SHD C:\Windows\SysWOW64\AI_RecycleBin
2015-12-13 18:22 - 2013-08-22 07:36 - 00000000 ____D C:\Windows\system32\WindowsInternal.Inbox.Shared
2015-12-13 18:22 - 2013-08-22 07:36 - 00000000 ____D C:\Windows\system32\WindowsInternal.Inbox.Media.Shared
2015-12-13 18:22 - 2013-08-22 07:36 - 00000000 ____D C:\Windows\ADFS
2015-12-13 18:21 - 2015-10-29 23:24 - 00000000 __SHD C:\Program Files\Windows Sidebar
2015-12-13 18:21 - 2015-10-29 23:24 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2015-12-13 18:21 - 2015-10-29 23:24 - 00000000 ____D C:\ProgramData\USOPrivate
2015-12-13 18:21 - 2015-10-29 23:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-12-13 18:21 - 2015-10-29 22:28 - 00000000 ____D C:\Windows\system32\Sysprep
2015-12-13 18:21 - 2015-01-30 08:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG5300 series
2015-12-13 18:21 - 2015-01-27 09:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2015-12-13 18:21 - 2013-12-09 13:17 - 00000000 ____D C:\Users\Royal\AppData\Local\Packages
2015-12-13 18:19 - 2015-10-30 01:14 - 00000000 ____D C:\Windows\ServiceProfiles
2015-12-13 18:19 - 2015-10-29 23:24 - 00028672 _____ C:\Windows\system32\config\BCD-Template
2015-12-13 18:17 - 2015-10-29 23:24 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2015-12-13 18:17 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\system32\SystemResetPlatform
2015-12-13 18:17 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\system32\appraiser
2015-12-13 18:17 - 2015-10-29 23:24 - 00000000 ____D C:\Windows\Provisioning
2015-12-13 18:17 - 2015-10-29 22:28 - 00000000 ____D C:\Windows\SysWOW64\Dism
2015-12-13 18:17 - 2015-10-29 22:28 - 00000000 ____D C:\Windows\system32\Dism
2015-12-13 18:15 - 2015-10-29 23:17 - 00480256 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00395264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplayx.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\dpnathlp.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnathlp.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpwsockx.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe
2015-12-13 18:15 - 2015-10-29 23:17 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpmodemx.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnsvr.exe
2015-12-13 18:15 - 2015-10-29 23:17 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplaysvr.exe
2015-12-13 18:15 - 2015-10-29 23:17 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dpnhupnp.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dpnhpast.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhupnp.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhpast.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\dpnlobby.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnlobby.dll
2015-12-13 18:15 - 2015-10-29 23:17 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll
2015-12-13 07:53 - 2013-12-09 13:36 - 00000000 ____D C:\Program Files (x86)\Steam
2015-12-13 07:29 - 2015-08-20 12:02 - 00000000 __SHD C:\Users\Royal\IntelGraphicsProfiles
2015-12-12 21:02 - 2014-10-21 07:30 - 00000000 ____D C:\Users\Royal\AppData\Roaming\vlc
2015-12-12 07:44 - 2015-08-20 16:36 - 00000000 ____D C:\Users\Royal\AppData\Roaming\DS4Windows
2015-12-11 21:23 - 2015-01-24 09:17 - 00000000 ____D C:\Users\Royal\Desktop\League of Legends
2015-12-11 11:50 - 2015-04-29 19:33 - 00000000 ____D C:\Users\Royal\AppData\Roaming\Curse Client
2015-12-11 11:20 - 2014-01-24 13:40 - 00000000 ____D C:\Users\Royal\Documents\My Games
2015-12-09 09:40 - 2014-01-23 17:42 - 00000000 ____D C:\Windows\system32\MRT
2015-12-09 09:38 - 2014-01-23 17:42 - 140158008 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-12-09 08:44 - 2015-08-20 16:36 - 00000000 ____D C:\Users\Royal\Downloads\DS4Windows
2015-12-08 22:22 - 2014-10-22 10:20 - 00000000 ____D C:\Users\Royal\Documents\Orcs Must Die
2015-12-08 22:11 - 2015-11-07 13:37 - 00000000 ____D C:\Users\Royal\AppData\Local\AMD
2015-12-08 19:39 - 2014-01-23 16:21 - 00301728 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-12-03 07:10 - 2015-08-20 12:04 - 00002374 _____ C:\Users\Royal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-12-03 07:10 - 2015-08-20 12:04 - 00000000 ___RD C:\Users\Royal\OneDrive
2015-11-30 16:33 - 2015-10-29 23:26 - 00826872 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-11-30 16:33 - 2015-10-29 23:26 - 00176632 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl


==================== Files in the root of some directories =======


2015-12-13 18:20 - 2015-12-13 18:20 - 0000000 ____H () C:\ProgramData\DP45977C.lfl


Some files in TEMP:
====================
C:\Users\Royal\AppData\Local\Temp\ReimagePackage.exe




==================== Bamital & volsnap =================


(There is no automatic fix for files that do not pass verification.)


C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed




LastRegBack: 2015-12-13 18:19


==================== End of FRST.txt ============================

Additional scan result of Farbar Recovery Scan Tool (x64) Version:14-12-2015
Ran by Royal (2015-12-15 16:46:24)
Running from C:\Users\Royal\Desktop
Windows 10 Pro (X64) (2015-12-14 02:26:15)
Boot Mode: Normal
==========================================================




==================== Accounts: =============================


Administrator (S-1-5-21-2906918697-159630706-1218816482-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2906918697-159630706-1218816482-503 - Limited - Disabled)
Guest (S-1-5-21-2906918697-159630706-1218816482-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2906918697-159630706-1218816482-1003 - Limited - Enabled)
Royal (S-1-5-21-2906918697-159630706-1218816482-1001 - Administrator - Enabled) => C:\Users\Royal


==================== Security Center ========================


(If an entry is included in the fixlist, it will be removed.)


AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}


==================== Installed Programs ======================


(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)


Adobe Flash Player 10 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 10.3.183.90 - Adobe Systems Incorporated)
Amazon Cloud Drive (HKU\S-1-5-21-2906918697-159630706-1218816482-1001\...\Amazon Cloud Drive) (Version: 3.1.2.21 - Amazon.com, Inc.)
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 5.00 - Advanced Micro Devices, Inc.)
Antichamber (HKLM-x32\...\Steam App 219890) (Version: - Alexander Bruce)
Apple Application Support (HKLM-x32\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}) (Version: 8.0.5.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Baldur's Gate II: Enhanced Edition (HKLM-x32\...\Steam App 257350) (Version: - Beamdog)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: - )
Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.1.1 - Canon Inc.)
Canon MG5300 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5300_series) (Version: - Canon Inc.)
Canon MP Navigator EX 5.0 (HKLM-x32\...\MP Navigator EX 5.0) (Version: - )
Catalyst Control Center Next Localization BR (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden
Chivalry: Medieval Warfare (HKLM-x32\...\Steam App 219640) (Version: - Torn Banner Studios)
Curse (HKLM-x32\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 6.0.0.0 - Curse)
Darksiders (HKLM-x32\...\Steam App 50620) (Version: - Vigil Games)
Darksiders II (HKLM-x32\...\Steam App 50650) (Version: - Vigil Games)
Don't Starve (HKLM-x32\...\Steam App 219740) (Version: - Klei Entertainment)
Don't Starve Together Beta (HKLM-x32\...\Steam App 322330) (Version: - Klei Entertainment)
Dungeon Defenders (HKLM-x32\...\Steam App 65800) (Version: - Trendy Entertainment)
Fallout: New Vegas (HKLM-x32\...\Steam App 22380) (Version: - Obsidian Entertainment)
FINAL FANTASY VIII (HKLM-x32\...\Steam App 39150) (Version: - SQUARE ENIX)
Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.80 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4276 - Intel Corporation)
Intel(R) Smart Connect Technology (HKLM\...\{08B90A20-95D3-4725-84B9-AF6553E06C4F}) (Version: 5.0.10.2850 - Intel Corporation)
iTunes (HKLM\...\{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}) (Version: 12.0.1.26 - Apple Inc.)
Kerbal Space Program (HKLM-x32\...\Steam App 220200) (Version: - Squad)
League of Legends (HKLM-x32\...\League of Legends 3.0.0) (Version: 3.0.0 - Riot Games)
League of Legends (x32 Version: 3.0.0 - Riot Games) Hidden
LEGO MARVEL Super Heroes (HKLM-x32\...\Steam App 249130) (Version: - Traveller's Tales)
Logitech Gaming Software 8.58 (HKLM\...\Logitech Gaming Software) (Version: 8.58.183 - Logitech Inc.)
Mark of the Ninja (HKLM-x32\...\Steam App 214560) (Version: - Klei Entertainment)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
My Game Long Name (HKLM\...\UDK-c2204611-af54-47a3-959d-a82ae8d47bab) (Version: - Epic Games, Inc.)
NVIDIA PhysX (HKLM-x32\...\{8A809006-C25A-4A3A-9DAB-94659BCDB107}) (Version: 9.10.0224 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Orcs Must Die! (HKLM-x32\...\Steam App 102600) (Version: - Robot Entertainment)
Orcs Must Die! 2 (HKLM-x32\...\Steam App 201790) (Version: - Robot Entertainment)
Path of Exile (HKLM-x32\...\Steam App 238960) (Version: - Grinding Gear Games)
Raptr (HKLM-x32\...\Raptr) (Version: - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
Reimage Repair (HKLM\...\Reimage Repair) (Version: 1.8.2.6 - Reimage) <==== ATTENTION
Shadowrun Returns (HKLM-x32\...\Steam App 234650) (Version: - Harebrained Schemes)
Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - 2K Games, Inc.)
Sir, You Are Being Hunted (HKLM-x32\...\Steam App 242880) (Version: - Big Robot Ltd)
Skype Click to Call (HKLM-x32\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 6.13.13771 - Skype Technologies S.A.)
Skypeâ„¢ 7.3 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.3.101 - Skype Technologies S.A.)
Smite (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017}) (Version: 2.20.3137.0 - Hi-Rez Studios)
Star Wars - Battlefront II (HKLM-x32\...\Steam App 6060) (Version: - Pandemic Studios)
Star Wars - Jedi Knight II: Jedi Outcast (HKLM-x32\...\Steam App 6030) (Version: - Raven Software)
Star Wars - Jedi Knight: Mysteries of the Sith (HKLM-x32\...\Steam App 32390) (Version: - LucasArts)
Star Wars Jedi Knight: Dark Forces II (HKLM-x32\...\Steam App 32380) (Version: - LucasArts)
Star Wars Jedi Knight: Jedi Academy (HKLM-x32\...\Steam App 6020) (Version: - Raven Software)
Star Wars Republic Commando (HKLM-x32\...\Steam App 6000) (Version: - LucasArts)
Star Wars Starfighter (HKLM-x32\...\Steam App 32350) (Version: - LucasArts)
Star Wars The Clone Wars: Republic Heroes (HKLM-x32\...\Steam App 32420) (Version: - Krome Studios)
Star Wars: Dark Forces (HKLM-x32\...\Steam App 32400) (Version: - LucasArts)
Star Wars: Empire at War Gold (HKLM-x32\...\Steam App 32470) (Version: - Petroglyph)
Star Wars: Knights of the Old Republic (HKLM-x32\...\Steam App 32370) (Version: - BioWare)
Star Wars: Knights of the Old Republic II (HKLM-x32\...\Steam App 208580) (Version: - Obsidian Entertainment)
Star Wars: The Force Unleashed II (HKLM-x32\...\Steam App 32500) (Version: - Aspyr Studios)
Star Wars: The Force Unleashed Ultimate Sith Edition (HKLM-x32\...\Steam App 32430) (Version: - LucasArts)
Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation)
Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve)
The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios)
The Witcher 2: Assassins of Kings Enhanced Edition (HKLM-x32\...\Steam App 20920) (Version: - CD Projekt RED)
The Witcher: Enhanced Edition (HKLM-x32\...\Steam App 20900) (Version: - CD Projekt RED)
Trine (HKLM-x32\...\Steam App 35700) (Version: - Frozenbyte)
Trine 2 (HKLM-x32\...\Steam App 35720) (Version: - Frozenbyte)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
War Thunder (HKLM-x32\...\Steam App 236390) (Version: - Gaijin Entertainment)
XCOM: Enemy Unknown (HKLM-x32\...\Steam App 200510) (Version: - Firaxis Games)


==================== Custom CLSID (Whitelisted): ==========================


(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


CustomCLSID: HKU\S-1-5-21-2906918697-159630706-1218816482-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Royal\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2906918697-159630706-1218816482-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)


==================== Restore Points =========================


14-12-2015 18:39:12 Windows Update


==================== Hosts content: ===============================


(If needed Hosts: directive could be included in the fixlist to reset Hosts.)


2013-08-22 05:25 - 2013-08-22 05:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts




==================== Scheduled Tasks (Whitelisted) =============


(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


Task: {00438F62-D692-4EC0-A55D-0219C87F5EC4} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {22835D5D-BAFC-4EC1-9B05-D6A2D0D5696D} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {2FE60C88-039C-4EE9-8D89-BC979E13F3F9} - System32\Tasks\Reimage Reminder => C:\Program Files\Reimage\Reimage Repair\ReimageReminder.exe <==== ATTENTION
Task: {31CBE622-3374-4FB4-B5E7-481EB36D4632} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-12-09] (Microsoft Corporation)
Task: {48E08C63-0230-44E0-AD4C-6910F61BA421} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {4B144EF3-9C0A-47EB-AD90-467333864EFA} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {66A0C8C6-9FFD-436D-913F-5D21A26A9367} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {6C7DA6C6-3064-4BB7-8971-3C016BD9EAAA} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {7A04A026-6C6B-4E85-A267-329C9D3EB557} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {8A0DC3EF-7D7D-47E5-9E6D-85418796198D} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {A4138288-D3D1-4683-8E99-C1586FD103FC} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {B48F478F-FA07-4CE2-BEFE-AD44A4061054} - System32\Tasks\{2DB08243-FE14-4D40-97C4-C25AE8EADDC6} => pcalua.exe -a "E:\Riot Games\League of Legends\lol.launcher.exe" -d "E:\Riot Games\League of Legends"
Task: {B76123E5-12B8-464E-BA0A-F9EF1A3EC4C5} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {B862707B-1B97-44C4-B333-039332E87218} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {C86DC286-97D1-422C-91F5-043A6CD5705C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {D598AC5A-BDEF-415E-A567-3EA51B703490} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {DC18D526-52FD-4EA3-9311-4C9700EF19E2} - System32\Tasks\ReimageUpdater => C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe <==== ATTENTION
Task: {FA3AEFFF-B594-41AB-8716-32E855FC4D5B} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION


(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe


==================== Shortcuts =============================


(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============


2015-10-29 23:18 - 2015-10-29 23:18 - 00185856 _____ () C:\Windows\SYSTEM32\ism32k.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02653816 _____ () C:\Windows\system32\CoreUIComponents.dll
2015-12-13 18:17 - 2015-12-13 18:17 - 02653816 _____ () C:\Windows\System32\CoreUIComponents.dll
2014-09-17 23:23 - 2014-09-17 23:23 - 00866584 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll
2015-03-12 10:23 - 2015-03-12 10:23 - 01050904 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll
2014-09-17 23:23 - 2014-09-17 23:23 - 00059160 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll
2015-03-12 10:23 - 2015-03-12 10:23 - 00242456 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll
2015-06-25 16:34 - 2015-06-25 16:34 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2015-06-25 16:37 - 2015-06-25 16:37 - 00739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2015-06-25 16:35 - 2015-06-25 16:35 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2015-06-25 16:38 - 2015-06-25 16:38 - 00071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2015-06-25 15:53 - 2015-06-25 15:53 - 00011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll
2015-06-25 15:51 - 2015-06-25 15:51 - 02013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2015-12-09 14:13 - 2015-12-04 13:32 - 01583432 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.80\libglesv2.dll
2015-12-09 14:13 - 2015-12-04 13:32 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.80\libegl.dll
2015-12-09 14:13 - 2015-12-04 13:32 - 16573256 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.80\PepperFlash\pepflashplayer.dll


==================== Alternate Data Streams (Whitelisted) =========


(If an entry is included in the fixlist, only the ADS will be removed.)


AlternateDataStreams: C:\Program Files\Bonjour:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Apple Software Update:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\ATI Technologies:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Bonjour:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Hi-Rez Studios:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\iTunes:Win32App_1
AlternateDataStreams: C:\Users\Royal\AppData\Roaming\Curse Client:Win32App_1


==================== Safe Mode (Whitelisted) ===================


(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)




==================== EXE Association (Whitelisted) ===============


(If an entry is included in the fixlist, the registry item will be restored to default or removed.)




==================== Internet Explorer trusted/restricted ===============


(If an entry is included in the fixlist, it will be removed from the registry.)




==================== Other Areas ============================


(Currently there is no automatic fix for this section.)


HKU\S-1-5-21-2906918697-159630706-1218816482-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.1.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.


==================== MSCONFIG/TASK MANAGER disabled items ==


(Currently there is no automatic fix for this section.)


MSCONFIG\Services: AMD External Events Utility => 2
MSCONFIG\Services: Apple Mobile Device => 2
MSCONFIG\Services: Bonjour Service => 2
MSCONFIG\Services: cphs => 3
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: HiPatchService => 2
MSCONFIG\Services: igfxCUIService1.0.0.0 => 2
MSCONFIG\Services: iPod Service => 3
MSCONFIG\Services: Skype C2C Service => 2
MSCONFIG\Services: SkypeUpdate => 2
MSCONFIG\Services: Steam Client Service => 3


==================== FirewallRules (Whitelisted) ===============


(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{3DC7E629-2DB3-41D1-8BCC-1D77C1F8F9AE}] => (Allow) E:\SteamLibrary\SteamApps\common\Don't Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{7DF393D0-83B9-41A0-AFF3-C85005D1AD77}] => (Allow) E:\SteamLibrary\SteamApps\common\Don't Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{ABEB1F78-EE9E-4A77-9D31-5B15C192C8AD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{9BC5F615-A335-4300-9BEA-0CB6D5ABFC59}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{85462593-8104-4B31-9BC4-18B1C110AAA5}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{1C282CBE-5862-4827-B10F-38FAC123D68C}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{F5E7B45D-9BFD-490F-A281-A6CB81BA0798}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{F074F2F4-757E-41BB-A1C7-38ECB6489321}] => (Allow) C:\Program Files\Logitech Gaming Software\LCore.exe
FirewallRules: [{24100B0C-950D-4B0D-AFAF-60ED11ED1925}] => (Allow) C:\Program Files\Logitech Gaming Software\LCore.exe
FirewallRules: [{D74B2156-4136-40EB-B418-9099A2AFD5B8}] => (Allow) E:\SteamLibrary\SteamApps\common\Antichamber\Binaries\Win32\UDK.exe
FirewallRules: [{BE5BDEEC-27E9-4BFE-B708-5114CB7EE6F3}] => (Allow) E:\SteamLibrary\SteamApps\common\Antichamber\Binaries\Win32\UDK.exe
FirewallRules: [{A3FF0826-B14C-4153-A48C-D73D2A4D7648}] => (Allow) E:\SteamLibrary\SteamApps\common\SirYouAreBeingHunted\x86\sir.exe
FirewallRules: [{51259555-649F-49FC-B0FB-877D5525368C}] => (Allow) E:\SteamLibrary\SteamApps\common\SirYouAreBeingHunted\x86\sir.exe
FirewallRules: [{CD575A42-B1DB-40A3-B60A-0E2544C2A8F8}] => (Allow) E:\SteamLibrary\SteamApps\common\SirYouAreBeingHunted\x64\sir.exe
FirewallRules: [{71263776-D1C8-4CCF-8548-9A3839D50E12}] => (Allow) E:\SteamLibrary\SteamApps\common\SirYouAreBeingHunted\x64\sir.exe
FirewallRules: [UDP Query User{EC806BA2-8265-4FC6-83AE-1A7ADA77C612}E:\steamlibrary\steamapps\common\war thunder\aces.exe] => (Allow) E:\steamlibrary\steamapps\common\war thunder\aces.exe
FirewallRules: [TCP Query User{F78052D3-E16D-4082-8CEA-9DEB226B4B48}E:\steamlibrary\steamapps\common\war thunder\aces.exe] => (Allow) E:\steamlibrary\steamapps\common\war thunder\aces.exe
FirewallRules: [{A8166E85-37AC-4D7D-9D78-E9FD5CD7D06D}] => (Allow) E:\SteamLibrary\SteamApps\common\Team Fortress 2\hl2.exe
FirewallRules: [{37DC1D79-6062-4324-8567-111E9FF7F108}] => (Allow) E:\SteamLibrary\SteamApps\common\Team Fortress 2\hl2.exe
FirewallRules: [{39903544-4027-4A72-B1EE-20E5942A982A}] => (Allow) E:\SteamLibrary\SteamApps\common\War Thunder\launcher.exe
FirewallRules: [{CE30595B-9D15-4241-9B83-A23F3E77FB06}] => (Allow) E:\SteamLibrary\SteamApps\common\War Thunder\launcher.exe
FirewallRules: [{F4D28D8C-993E-4108-987D-27B43E6ED19E}] => (Allow) E:\SteamLibrary\SteamApps\common\Star Wars The Force Unleashed 2\SWTFU2.exe
FirewallRules: [{DAC78540-E2F4-4411-9CCD-E29E7088F0F8}] => (Allow) E:\SteamLibrary\SteamApps\common\Star Wars The Force Unleashed 2\SWTFU2.exe
FirewallRules: [{CC22DD66-D940-41B3-A25A-02493773AD64}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe
FirewallRules: [{0DC1668B-C1CD-4639-B2A0-7C3F39332E51}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{ABB42A4A-FA13-4534-B65A-0C9EFCDD2A1D}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{45BEC88E-A413-40A7-9CBD-DB1DEB4F77E5}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{D6D7A88B-40B7-4317-8DBE-5CAFE0207BFF}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [UDP Query User{86D35F96-DD53-4E01-B26E-672B22C55310}E:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) E:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe
FirewallRules: [TCP Query User{90C72231-3447-46FF-BB13-E4ED75E0EE6C}E:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) E:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe
FirewallRules: [UDP Query User{F723CD24-A630-457D-A561-B7FDF91F5DBF}E:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) E:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe
FirewallRules: [TCP Query User{3E362B07-519B-4C0C-911D-9DBB34584214}E:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) E:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe
FirewallRules: [{3307C8F1-C634-4405-BBA2-42CF7A2CF154}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\CDW\Binaries\Win32\CDW.exe
FirewallRules: [{CBB50A6C-F94A-491A-A3C6-7E8A74C901D7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\CDW\Binaries\Win32\CDW.exe
FirewallRules: [{C256EBFA-E40C-42C9-A4B9-631AE41B3389}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\Binaries\Win32\CMW.exe
FirewallRules: [{FEF7D19D-34B1-43BF-87A4-3675C6457B2A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\Binaries\Win32\CMW.exe
FirewallRules: [{AB8C4EAA-2C87-403A-892B-0B11E342EA23}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\CDW\Binaries\Win64\CDW.exe
FirewallRules: [{D9BD554D-84FF-41D0-988D-C04256B4A1F0}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\CDW\Binaries\Win64\CDW.exe
FirewallRules: [{64B0937D-B5E5-40E1-9FCD-424F466F8EE5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\Binaries\Win64\CMW.exe
FirewallRules: [{FD61A6FF-0782-46DC-9F2C-1CBFC4D33D61}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\Binaries\Win64\CMW.exe
FirewallRules: [{9D50F217-5E94-4350-9A86-DBA6A6CD6C42}] => (Allow) E:\SteamLibrary\SteamApps\common\Star Wars The Force Unleashed\SWTFU Launcher.exe
FirewallRules: [{A6B94431-567C-4C33-A48D-3C5B559950EE}] => (Allow) E:\SteamLibrary\SteamApps\common\Star Wars The Force Unleashed\SWTFU Launcher.exe
FirewallRules: [UDP Query User{E527562B-6E60-45CD-B8C9-C928B794BC77}C:\program files (x86)\steam\steamapps\common\xcom-enemy-unknown\xew\binaries\win32\xcomew.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\xcom-enemy-unknown\xew\binaries\win32\xcomew.exe
FirewallRules: [TCP Query User{14486B28-2C23-4B5B-9F78-AFAC16C6CA29}C:\program files (x86)\steam\steamapps\common\xcom-enemy-unknown\xew\binaries\win32\xcomew.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\xcom-enemy-unknown\xew\binaries\win32\xcomew.exe
FirewallRules: [{7BD391FF-9657-4C83-A4EF-DA8C58BC148D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\ChivLauncher.exe
FirewallRules: [{169F0BF8-6AB1-4F06-80F1-93E82C80231E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\chivalrymedievalwarfare\ChivLauncher.exe
FirewallRules: [{EEA0F168-0FDF-4920-90C1-5B3FF2592DB5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Knights of the Old Republic II\swkotor2.exe
FirewallRules: [{B8BC3506-0924-4C25-874F-07CBF8FB0885}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Knights of the Old Republic II\swkotor2.exe
FirewallRules: [{CA09B9E2-25D2-4A1C-961C-9A6A90B58CFF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe
FirewallRules: [{E53698CB-9011-4219-97FE-DF489A1A058F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe
FirewallRules: [{3583EBD4-BF66-45CD-A27E-14440D4E30FA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Kerbal Space Program\KSP.exe
FirewallRules: [{F118FD8F-3543-4A87-8F56-A3F7094872B5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Kerbal Space Program\KSP.exe
FirewallRules: [{8AF60293-BA25-4BBF-B1D0-1BFF43447C84}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Darksiders 2\Darksiders2.exe
FirewallRules: [{1FF87C6B-9590-42EB-9E1A-9FFBE8BE5797}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Darksiders 2\Darksiders2.exe
FirewallRules: [{143787AA-F11A-407F-92AA-1F758385C789}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dungeon Defenders\Binaries\Win32\DungeonDefenders.exe
FirewallRules: [{D443A42F-C4AF-4856-8465-97157C0197FA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dungeon Defenders\Binaries\Win32\DungeonDefenders.exe
FirewallRules: [{8A1DB7D5-2B4C-4F45-B1C3-54567DEDFBD8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FINAL FANTASY VIII\FF8_Launcher.exe
FirewallRules: [{7364BC9A-AE61-4BCB-AFED-A37CBE07297F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FINAL FANTASY VIII\FF8_Launcher.exe
FirewallRules: [{AD7FA916-A3A2-4809-A75B-AB6B52B705B6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Trine 2\trine2_launcher.exe
FirewallRules: [{71D44934-5707-4644-8841-6575141C4154}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Trine 2\trine2_launcher.exe
FirewallRules: [{D1FB361D-B857-44C4-BD05-C27C5A4A3E22}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe
FirewallRules: [{798A22C6-32E7-41AF-AB65-04F7013DFEFE}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe
FirewallRules: [{DD923627-F365-4FE8-85F4-B4B56B0D08AB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Empire at War\runme2.exe
FirewallRules: [{F3CAAA68-A25E-4240-B7A2-5FF76EC04542}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Empire at War\runme2.exe
FirewallRules: [{DE3E4655-FB04-4DE0-9401-962A00DA0B33}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Empire at War\runme.exe
FirewallRules: [{EA50BA34-5F01-4930-966A-11FB6145991A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Empire at War\runme.exe
FirewallRules: [{A61F0DF8-557A-4FC2-B85A-1A16B3FF82F5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars The Clone Wars\RepublicHeroesLauncher.exe
FirewallRules: [{F7560493-C397-4BA3-BD1B-696396B6BADC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars The Clone Wars\RepublicHeroesLauncher.exe
FirewallRules: [{38E2FF66-9D13-47AE-959A-1B3A581A4FD5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Starfighter\Starfighter.exe
FirewallRules: [{6C993AA1-F4D4-422C-812E-0F6798405597}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Starfighter\Starfighter.exe
FirewallRules: [{B9D5E7BE-5566-4515-B6F7-366B6BB94D56}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{2F9DF41B-8CCC-48F8-9C44-CCBCE77BC296}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{B16FC5D4-8538-4D74-8409-5F4556403ADD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\the witcher 2\Launcher.exe
FirewallRules: [{9B2DCDA7-D517-449F-B6A0-A6AAFB93829C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\the witcher 2\Launcher.exe
FirewallRules: [{2CFBD768-F1CD-49D5-899B-677D233A9005}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Witcher Enhanced Edition\System\djinni!.exe
FirewallRules: [{70E8888B-581A-4B35-8204-A0776E5B16E4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Witcher Enhanced Edition\System\djinni!.exe
FirewallRules: [{104DBD05-D0D2-46AD-BA04-E73144F75422}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Witcher Enhanced Edition\System\witcher.exe
FirewallRules: [{62EFDD2D-EF6D-467F-809F-F489C5A69519}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\The Witcher Enhanced Edition\System\witcher.exe
FirewallRules: [{41062EC3-59A0-4CB9-B459-BA299924007F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe
FirewallRules: [{CD9776E0-197C-4BAE-84DB-F4993DCFAE9E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe
FirewallRules: [{08CF692C-701E-40B1-A00F-4331C8FA9398}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Outcast\GameData\jk2mp.exe
FirewallRules: [{CA293C73-CD98-4262-9AD2-F9CED686DA09}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Outcast\GameData\jk2mp.exe
FirewallRules: [{C225DF44-586A-4026-AC4F-A071755D68F7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Outcast\GameData\jk2sp.exe
FirewallRules: [{347FCAA1-DAC7-462B-8CE7-CF4B01FC6629}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Outcast\GameData\jk2sp.exe
FirewallRules: [{6BA3073D-2608-4952-AD38-4E388AA09B3E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Academy\GameData\jamp.exe
FirewallRules: [{2AFFBCD9-84C3-4A29-9A4B-503BB1954AAA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Academy\GameData\jamp.exe
FirewallRules: [{424A123F-4CA4-430B-AEC5-C053155242E1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Academy\GameData\jasp.exe
FirewallRules: [{DCAAC390-186A-4D2C-B4E8-E030CDD3BA55}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Academy\GameData\jasp.exe
FirewallRules: [{60A58CFF-ABE0-447F-AC5D-2B1CD564AFF0}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Republic Commando\GameData\System\SWRepublicCommando.exe
FirewallRules: [{79990DA8-B7CA-4C9F-8EE8-A62FBDEEFD93}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Republic Commando\GameData\System\SWRepublicCommando.exe
FirewallRules: [{E71ECEF8-A738-4DBD-A767-C2450ABC821F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\GarrysMod\hl2.exe
FirewallRules: [{488BA32A-A301-495B-88BB-9757D6C753E7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\GarrysMod\hl2.exe
FirewallRules: [{FF874BED-144E-49FF-9508-7CCE51D71BB4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Baldur's Gate II Enhanced Edition\Baldur.exe
FirewallRules: [{CFA254BB-44CE-40F5-A3B5-8C537F6765E1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Baldur's Gate II Enhanced Edition\Baldur.exe
FirewallRules: [{8A99581C-72D5-48F1-807D-76D68CC6DFD2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Orcs Must Die!\Build\release\OrcsMustDie.exe
FirewallRules: [{3088BF60-0F1F-480C-9BF7-469BCF046F57}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Orcs Must Die!\Build\release\OrcsMustDie.exe
FirewallRules: [{0788A570-65D5-4517-8FB4-9161679712A7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Darksiders\DarksidersPC.exe
FirewallRules: [{F67F1F3E-6B21-44D1-80CB-7FA4F59B2493}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Darksiders\DarksidersPC.exe
FirewallRules: [{F25E1ECE-8CE8-45EF-A931-2B2A6B26ABFD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Trine\_enchanted_edition_\trine1_launcher.exe
FirewallRules: [{D4A97A1E-8BDA-45E1-8AF7-8CD874336F88}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Trine\_enchanted_edition_\trine1_launcher.exe
FirewallRules: [{06530028-FB3F-40CC-9546-6B54130CE5F5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dark Forces\DosBox\dosbox.exe
FirewallRules: [{A3408F4C-5EA2-4A16-8DBA-316E37350728}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dark Forces\DosBox\dosbox.exe
FirewallRules: [{41B80CBC-360E-412D-A415-12EC665F362B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Knight Mysteries of the Sith\JKM.EXE
FirewallRules: [{526C4EE9-34C6-42D9-B771-BF8F70409511}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Jedi Knight Mysteries of the Sith\JKM.EXE
FirewallRules: [{EB209EFE-5092-4861-AC54-DDE314CCB2C2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Jedi Knight\JK.EXE
FirewallRules: [{8E2F969E-23AD-41C6-90B0-E48BC84D9C10}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Star Wars Jedi Knight\JK.EXE
FirewallRules: [{3BD24B06-9221-428E-A218-65C4DCD759F1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\swkotor\swkotor.exe
FirewallRules: [{6F09FF1B-EB1E-4448-B0C9-5F8525C56D62}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\swkotor\swkotor.exe
FirewallRules: [{BCDCBBDB-56E9-4A56-BC8C-7AD0225FFFCE}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\mark_of_the_ninja\bin\game.exe
FirewallRules: [{4B0A2A04-F7E0-4F7B-B379-4BA537B88615}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\mark_of_the_ninja\bin\game.exe
FirewallRules: [{AF89019A-79DF-43A7-AA8A-48B62E9131F3}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shadowrun Returns\Shadowrun.exe
FirewallRules: [{83D87B81-AA34-4248-90F9-8FCB16DC17BE}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Shadowrun Returns\Shadowrun.exe
FirewallRules: [{5A194C90-FF66-4E76-A116-9CFDB4329858}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{FE2B94B4-3DD8-42EC-B166-A616C2098747}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [UDP Query User{975F7C98-7FD6-4CA6-BB5F-C0135D78C4C0}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{CF7D48C0-56BC-48CC-9FA7-3577C23EAF4A}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{103DB0EC-6358-40DB-8626-4F9E19456833}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{6E484075-3767-4760-8124-8174E090E420}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{E52A6007-EFD0-4AA3-A633-F92EF4219952}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\XCom-Enemy-Unknown\Binaries\Win32\XComGame.exe
FirewallRules: [{128659FD-245B-4580-A27A-8BD14A4362D5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\XCom-Enemy-Unknown\Binaries\Win32\XComGame.exe
FirewallRules: [{CF72560C-3818-41EC-8512-570CBC4FE99A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe
FirewallRules: [{95F512F9-A4D1-4E88-8DB3-F047EA06FFFA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe
FirewallRules: [{7FD22DBB-8B76-404E-B8BA-4AAE69A65F6C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{20F3EA90-FF78-416C-8FD2-FA213F929482}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{476E48E3-BD58-4AB8-BEFB-A19F3BC99527}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{A59743F8-5E79-4D37-A3A5-0B05B797AC54}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [TCP Query User{318B08D8-59C9-476F-872D-4123039FBEAD}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe] => (Allow) C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe
FirewallRules: [UDP Query User{57B42A40-6E57-4E50-9910-80BD163549DA}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe] => (Allow) C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe
FirewallRules: [{34FC766E-D11E-4038-BA83-6D868DCF4A5C}] => (Allow) E:\SteamLibrary\SteamApps\common\SirYouAreBeingHunted\launcher\sir.exe
FirewallRules: [{41853FFC-AC52-4DCF-91A4-A327876AB804}] => (Allow) E:\SteamLibrary\SteamApps\common\SirYouAreBeingHunted\launcher\sir.exe
FirewallRules: [{A8939A92-DE2A-4235-A4B2-4249713F3971}] => (Allow) E:\SteamLibrary\SteamApps\common\LEGO Marvel Super Heroes\LEGOMARVEL.exe
FirewallRules: [{4EB6E432-717E-445B-B3F6-B3D43A221CEC}] => (Allow) E:\SteamLibrary\SteamApps\common\LEGO Marvel Super Heroes\LEGOMARVEL.exe
FirewallRules: [{86E0DA3E-5231-4C4D-8CE3-A5DB19A58CFD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dont_starve\bin\dontstarve_steam.exe
FirewallRules: [{75A507D8-E82C-464E-81CD-500491F2EE87}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dont_starve\bin\dontstarve_steam.exe


==================== Faulty Device Manager Devices =============




==================== Event log errors: =========================


Application errors:
==================
Error: (12/15/2015 04:46:26 PM) (Source: ESENT) (EventID: 490) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: An attempt to open the file "C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.chk" for read / write access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).


Error: (12/15/2015 04:46:15 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: Error -1032 (0xfffffbf8) occurred while opening logfile C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.log.


Error: (12/15/2015 04:46:15 PM) (Source: ESENT) (EventID: 489) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: An attempt to open the file "C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.log" for read only access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).


Error: (12/15/2015 04:46:05 PM) (Source: ESENT) (EventID: 490) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: An attempt to open the file "C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.chk" for read / write access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).


Error: (12/15/2015 04:45:54 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: Error -1032 (0xfffffbf8) occurred while opening logfile C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.log.


Error: (12/15/2015 04:45:54 PM) (Source: ESENT) (EventID: 489) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: An attempt to open the file "C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.log" for read only access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).


Error: (12/15/2015 04:45:44 PM) (Source: ESENT) (EventID: 490) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: An attempt to open the file "C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.chk" for read / write access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).


Error: (12/15/2015 04:45:33 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: Error -1032 (0xfffffbf8) occurred while opening logfile C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.log.


Error: (12/15/2015 04:45:33 PM) (Source: ESENT) (EventID: 489) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: An attempt to open the file "C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.log" for read only access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).


Error: (12/15/2015 04:45:23 PM) (Source: ESENT) (EventID: 490) (User: )
Description: svchost (2020) TILEREPOSITORYS-1-5-21-2906918697-159630706-1218816482-1001: An attempt to open the file "C:\Users\Royal\AppData\Local\TileDataLayer\Database\EDB.chk" for read / write access failed with system error 5 (0x00000005): "Access is denied. ". The open file operation will fail with error -1032 (0xfffffbf8).




System errors:
=============
Error: (12/15/2015 03:46:52 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}


Error: (12/15/2015 03:43:45 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The ReimageRealTimeProtector service failed to start due to the following error:
%%2


Error: (12/15/2015 03:42:54 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the AppReadiness service.


Error: (12/15/2015 03:42:23 PM) (Source: DCOM) (EventID: 10010) (User: Gaming_SSD)
Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39}


Error: (12/15/2015 03:42:23 PM) (Source: DCOM) (EventID: 10010) (User: Gaming_SSD)
Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39}


Error: (12/15/2015 03:42:23 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Sync Host_3ef3c service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.


Error: (12/15/2015 03:42:23 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable


Error: (12/14/2015 08:55:00 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable


Error: (12/14/2015 07:39:25 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Interactive Services Detection service terminated with the following error:
%%1


Error: (12/14/2015 07:12:38 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}




CodeIntegrity:
===================================
Date: 2015-12-15 16:44:49.156
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.


Date: 2015-12-15 16:44:49.152
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.


Date: 2015-12-15 15:04:45.344
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.


Date: 2015-12-15 15:04:45.339
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.


Date: 2015-12-15 15:02:07.332
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.


Date: 2015-12-15 15:02:07.327
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.


Date: 2015-12-14 19:12:52.699
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.


Date: 2015-12-13 18:25:33.006
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.


Date: 2015-12-13 18:23:56.727
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.


Date: 2015-12-13 18:20:05.776
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.




==================== Memory info ===========================


Processor: Intel(R) Core(TM) i5-3570K CPU @ 3.40GHz
Percentage of memory in use: 26%
Total physical RAM: 8075.11 MB
Available physical RAM: 5952.97 MB
Total Virtual: 9995.11 MB
Available Virtual: 7837.86 MB


==================== Drives ================================


Drive c: (Local Disk) (Fixed) (Total:222.79 GB) (Free:11.21 GB) NTFS
Drive d: (System Reserved) (Fixed) (Total:0.34 GB) (Free:0.06 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive e: () (Fixed) (Total:465.42 GB) (Free:465.27 GB) NTFS
Drive g: (System Reserved) (Fixed) (Total:0.34 GB) (Free:0.06 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive h: () (Removable) (Total:3.8 GB) (Free:0.05 GB) FAT32
Drive j: (My Passport) (Fixed) (Total:1862.98 GB) (Free:1601.33 GB) NTFS


==================== MBR & Partition Table ==================


========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 82591F52)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.4 GB) - (Type=07 NTFS)


========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 223.6 GB) (Disk ID: 1B78FA1E)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=222.8 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)


========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 1863 GB) (Disk ID: 7986EAE4)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)


========================================================
Disk: 3 (MBR Code: Windows XP) (Size: 3.8 GB) (Disk ID: C3072E18)
Partition 1: (Active) - (Size=3.8 GB) - (Type=0B)


==================== End of Addition.txt ============================
 
You are very low on space on your C: drive (only about 5%). You really need at least 15% for windows to run optimally. Before attempting anything I would free up some space. I see duplicate ISOs that can possibly be cleaned up.

C:\Win10_1511_English_x64.iso
C:\Users\Royal\Downloads\Win10_1511_English_x64.iso

Once you have cleared up space, I would mount the Windows 10 Build 1511 ISO and then run setup again while in Windows. Allow it to do a repair/upgrade install right over the top of your existing install. This should resolve any issues you are having. If you already tried this specific task please let me know.
 
Yes, unfortunately I did try this already and it somehow seemed to make everything even slower. It now takes over 10 minutes to log in. This is what I meant when I said that I had tried to let windows install again, sorry if that wasn't clear.
 
Thanks I suspected but wasn't sure. Please do the following.

Step#1 - ChkDsk Scan
1. Right-click your Start button and select Command Prompt (Admin). Answer Yes to allow if the User Account Control dialog comes up.
2. You should now have a black window open that you can type in to.
3. Please type chkdsk and then press enter.
4. Chkdsk will start to run. Please allow it to finish. You will know it is running when you see text as follows.
Chkdsk.JPG


5. Download ListChkdskResult.exe by SleepyDude and save it on your desktop. If it's already downloaded to your desktop, just skip this step.
6. Right-click this file and select Run as administrator (Allow if prompted)and a text file will open (and also be saved on the desktop as ListChkdskResult.txt).
Please copy the contents of this file and paste into your next post.
 
ListChkdskResult by SleepyDude v0.1.7 Beta | 21-09-2013


------< Log generate on 12/15/2015 17:37:19 >------
Category: 0
Computer Name: Gaming_SSD
Event Code: 26212
Record Number: 13715
Source Name: Chkdsk
Time Written: 12-16-2015 @ 01:37:03
Event Type: Information
User:
Message: Chkdsk was executed in read-only mode on a volume snapshot.


Checking file system on C:
The type of the file system is NTFS.
Volume label is Local Disk.


WARNING! /F parameter not specified.
Running CHKDSK in read-only mode.


Stage 1: Examining basic file system structure ...


401920 file records processed.


File verification completed.


5118 large file records processed.




0 bad file records processed.




Stage 2: Examining file name linkage ...


577784 index entries processed.


Index verification completed.


0 unindexed files scanned.




0 unindexed files recovered to lost and found.




Stage 3: Examining security descriptors ...
Security descriptor verification completed.


87933 data files processed.


CHKDSK is verifying Usn Journal...


39058512 USN bytes processed.


Usn Journal verification completed.


Windows has scanned the file system and found no problems.
No further action is required.


233609215 KB total disk space.
217542912 KB in 228362 files.
176824 KB in 87934 indexes.
0 KB in bad sectors.
517443 KB in use by the system.
65536 KB occupied by the log file.
15372036 KB available on disk.


4096 bytes in each allocation unit.
58402303 total allocation units on disk.
3843009 allocation units available on disk.


-----------------------------------------------------------------------
Category: 0
Computer Name: Gaming_SSD
Event Code: 1001
Record Number: 1833
Source Name: Microsoft-Windows-Wininit
Time Written: 12-15-2015 @ 03:10:00
Event Type: Information
User:
Message:


Checking file system on C:
The type of the file system is NTFS.
Volume label is Local Disk.




One of your disks needs to be checked for consistency. You
may cancel the disk check, but it is strongly recommended
that you continue.
Windows will now check the disk.


Stage 1: Examining basic file system structure ...
401920 file records processed.


File verification completed.
5116 large file records processed.


0 bad file records processed.




Stage 2: Examining file name linkage ...
576678 index entries processed.


Index verification completed.
0 unindexed files scanned.


0 unindexed files recovered to lost and found.




Stage 3: Examining security descriptors ...
Cleaning up 439 unused index entries from index $SII of file 0x9.
Cleaning up 439 unused index entries from index $SDH of file 0x9.
Cleaning up 439 unused security descriptors.
Security descriptor verification completed.
87380 data files processed.


CHKDSK is verifying Usn Journal...
38852320 USN bytes processed.


Usn Journal verification completed.


Windows has scanned the file system and found no problems.
No further action is required.


233609215 KB total disk space.
224326972 KB in 222915 files.
173680 KB in 87381 indexes.
0 KB in bad sectors.
517435 KB in use by the system.
65536 KB occupied by the log file.
8591128 KB available on disk.


4096 bytes in each allocation unit.
58402303 total allocation units on disk.
2147782 allocation units available on disk.


Internal Info:
00 22 06 00 dc bb 04 00 61 93 08 00 00 00 00 00 ."......a.......
1b 01 00 00 63 00 00 00 00 00 00 00 00 00 00 00 ....c...........


Windows has finished checking your disk.
Please wait while your computer restarts.


-----------------------------------------------------------------------
 

Has Sysnative Forums helped you? Please consider donating to help us support the site!

Back
Top