Jump to content

Build Theme!
  •  
  • Infected?

WE'RE SURE THAT YOU'LL LOVE US!

Hey there! :wub: Looks like you're enjoying the discussion, but you're not signed up for an account. When you create an account, we remember exactly what you've read, so you always come right back where you left off. You also get notifications, here and via email, whenever new posts are made. You can like posts to share the love. :D Join 93084 other members! Anybody can ask, anybody can answer. Consistently helpful members may be invited to become staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

Trovi search bar, causing failed internet! Logs are ready. [Solved

Viruses Maleware Infection CCcleaner Internet connection issue Rootkits trovi search bar

  • This topic is locked This topic is locked
100 replies to this topic

#46 jeff matthews

jeff matthews

    Advanced Member

  • Authentic Member
  • PipPipPipPip
  • 781 posts

Posted 18 January 2015 - 04:33 PM

Alright the file has been submitted for further analysis.

 

Let me know how it goes or if you find anything.

 

Speaking of which is this a type of diagnoses where you guys can check error reports from windows in relation to drivers, error reports Because i may want to do this with my own machine as well. This is something that i been trying to resolve for a while and last time the windows team of this site that helped me was unable to locate the problem. But Microsoft assured there was an issue in relation to USB adapters failing and hard drives and things like that, but they could not help and they wanted to charge me like 300 dollars to get it fixed. They allowed me to do a pre scanning, and they told me that my machine has all kinds of errors in the reports.

 

In any case i know you like to take on one computer at a time, but ill discuss it more in a different topic if that is ok.


Edited by jeff matthews, 18 January 2015 - 04:36 PM.

    Advertisements

Register to Remove


#47 LiquidTension

LiquidTension

    SuperMember

  • Retired Classroom Teacher
  • 2,566 posts

Posted 19 January 2015 - 05:02 AM

Hello, 
 

In any case i know you like to take on one computer at a time, but ill discuss it more in a different topic if that is ok.

Yes, issues with other machines can be addressed in a separate topic. 
 
Lets see if the following helps. 
 
STEP 1
xfuv55DC.png.pagespeed.ic.utHP7dQtHY.jpg Creating System Restore Point (W7/Vista)

  • Click the Windows Start Button 29Fou9c.jpg. Right-click Computer and click Properties.
  • Click System protection in the panel on the left. 
  • Click the System Protection tab, followed by Create.
  • In the System Protection dialog box, type a description, and click Create.
  • Upon completion, close the window.
     

STEP 2
EIbCaj7.png Uninstalling/Reinstalling a Driver

  • Press the Windows Key pdKOQKY.png + r on your keyboard at the same time. Type devmgmt.msc and click OK.
  • Locate Universal Serial Bus controllers and click the corresponding drop-down box arrow.
  • Locate Intel® USB 3.0 eXtensible Host Controller, right-click the driver, click Uninstall, followed by OK.
  • Click Action, followed by Scan for hardware changes.
  • Reboot your computer. 
  • Check for the issue. 
     

Please work your way through the following steps afterwards.  
 
STEP 1
GfiJrQ9.png MBAM Fixdamage

  • Create a System Restore Point using the instructions earlier.
  • Open Windows Explorer.
  • Navigate to C:\Program Files (x86)\Malwarebytes Anti-Malware\Plugins. Right-Click Fixdamage.exe and select Run as administrator to run the programme.
  • Follow the prompts. 
     

STEP 2
MgeHyNE.png CHKDSK

  • Note: If you have a Solid State Drive (SSD), do not run CHKDSK. Skip STEP 2, and proceed with STEP 3.
  • Click Start and type CMD in the Search Bar. Right-Click CMD.exe and select AVOiBNU.jpg Run as administrator.
  • In the command window type the following and press Enter on your keyboard.
    chkdsk c: /r
  • If you are prompted to schedule CHKDSK to run the next time the computer restarts, type y and press Enter on your keyboard.
  • Type Exit and press Enter on your keyboard.
  • Restart your computer. CHKDSK will automatically run.
  • Note: This process can take up to an hour.
  • Press the Windows Key xpdKOQKY.png.pagespeed.ic.tmAgS1-k6q.png + r on your keyboard at the same time. Type eventvwr.msc and click OK.
  • Click Windows Logs.
  • Right-click Application and click Find.
    • If CHKDSK ran within Windows (you didn't have to restart the computer), type Chkdsk into the text field and click Find Next. The log should appear. Highlight the text, Copy and paste in your next reply.
    • If CHKDSK ran after a restart, type Winlogon (XP) / Wininit (Vista/7) / Chkdsk (8) into the text field and click Find Next. The log should appear. Highlight the text, Copy and paste in your next reply.
  • ​For instructions accompanied by screenshots, please refer to the following article
     

STEP 3
MgeHyNE.png System File Checker (SFC)

  • Press the Windows Key pdKOQKY.png + r on your keyboard at the same time. Type Notepad and click OK.
  • Copy the entire contents of the codebox below and paste into the Notepad document.
    sfc /scannow
    findstr /c:"[SR]" %windir%\Logs\CBS\CBS.log >"%userprofile%\Desktop\sfcresults.txt"
    notepad %userprofile%\Desktop\sfcresults.txt
    del %0
  • Click Format. Ensure Wordwrap is unchecked.
  • Click File, Save As and name the file querysfc.bat.
  • Select All Files as the Save as type.
  • Save the file to your Desktop.
  • Locate querysfc.bat lmRDSkT.png (W8/7/Vista) on your Desktop. Right-click the icon and click AVOiBNU.jpg Run as administrator.
  • Upon completion, a log (sfcresults.txt) will open on your Desktop. Copy the contents of the log and paste in your next reply.
     

STEP 4
SvSrl2h.png Windows Repair (All-in-One)

  • Please download Windows Repair and save the file to your Desktop.
  • Temporarily disable your anti-virus software. For instructions, please refer to the following link.
  • Double-Click tweaking.com_windows_riepair_aio_setup icon to run the installer.
  • Follow the prompts by clicking Next, and finally, Finish.
  • Go to Step 5 and click Create under System Restore, followed by Backup under Registry Backup.
  • Go to the Repairs tab and click Open Repairs.
  • Click Select All, followed by Start.
  • Note: Do NOT use your computer whilst the programme is running.
  • Upon completion, reboot your computer.
  • Using Windows Explorer, navigate to the following folder:
    • 64-bit Systems: C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\Logs
    • 32-bit Systems: C:\Program Files\Tweaking.com\Windows Repair (All in One)\Logs
  • Open the log. Copy the contents and paste in your next reply.
     

STEP 5
xlK5Hdb.png Farbar Recovery Scan Tool (FRST) Scan

  • Right-Click FRST64.exe and select AVOiBNU.jpg Run as administrator to run the programme.
  • Click Yes to the disclaimer.
  • Ensure the Addition.txt box is checked.
  • Click the Scan button and let the programme run.
  • Upon completion, click OK, then OK on the Addition.txt pop up screen.
  • Two logs (FRST.txt & Addition.txt) will now be open on your Desktop. Copy the contents of both logs and paste in your next reply. 
     

======================================================
 
STEP 6
xpfNZP4A.png.pagespeed.ic.bp5cRl1pJg.jpg Logs
In your next reply please include the following logs. Please be sure to copy and paste the requested logs, as well as provide information on any questions I may have asked.

  • chkdskquery.txt
  • sfcresults.txt
  • Windows Repair log
  • FRST.txt
  • Addition.txt

50QfLth.png

 

Would you like to help others with malware removal? Join our Classroom and learn how!


#48 jeff matthews

jeff matthews

    Advanced Member

  • Authentic Member
  • PipPipPipPip
  • 781 posts

Posted 19 January 2015 - 04:18 PM

I have completed Steps 1-2. So far. Here is the log for the Windows Check Disk tool. I will continue to monitor it but so far the USB devices have been working ok. Nothing that i can see where the controllers are not functioning. But will continue to check it out. In any case if this happens to be an issue with the USB 3.0 controllers inferring with the USB 2.0, how are we able to fix that and still utilize USB 3.0?

 

Can you also explain to me what this reffers to in the log "Cleaning up 472 unused index entries from index $SII of file 0x9"

 

 

- System

    - Provider
      [ Name] Microsoft-Windows-Wininit       [ Guid] {206f6dea-d3c5-4d10-bc72-989f03c8b84b}       [ EventSourceName] Wininit
    - EventID 1001
      [ Qualifiers] 16384
      Version 0       Level 4       Task 0       Opcode 0       Keywords 0x80000000000000     - TimeCreated
      [ SystemTime] 2015-01-19T21:30:07.000000000Z
      EventRecordID 6303       Correlation     - Execution
      [ ProcessID] 0       [ ThreadID] 0
      Channel Application       Computer Ashley-PC       Security

- EventData

      Checking file system on C: The type of the file system is NTFS. A disk check has been scheduled. Windows will now check the disk. CHKDSK is verifying files (stage 1 of 5)... 140800 file records processed. File verification completed. 527 large file records processed. 0 bad file records processed. 0 EA records processed. 76 reparse records processed. CHKDSK is verifying indexes (stage 2 of 5)... 187452 index entries processed. Index verification completed. 0 unindexed files scanned. 0 unindexed files recovered. CHKDSK is verifying security descriptors (stage 3 of 5)... 140800 file SDs/SIDs processed. Cleaning up 472 unused index entries from index $SII of file 0x9. Cleaning up 472 unused index entries from index $SDH of file 0x9. Cleaning up 472 unused security descriptors. Security descriptor verification completed. 23327 data files processed. CHKDSK is verifying Usn Journal... 35220728 USN bytes processed. Usn Journal verification completed. CHKDSK is verifying file data (stage 4 of 5)... 140784 files processed. File data verification completed. CHKDSK is verifying free space (stage 5 of 5)... 31506303 free clusters processed. Free space verification is complete. Windows has checked the file system and found no problems. 243963903 KB total disk space. 117622996 KB in 100416 files. 65676 KB in 23328 indexes. 0 KB in bad sectors. 250015 KB in use by the system. 65536 KB occupied by the log file. 126025216 KB available on disk. 4096 bytes in each allocation unit. 60990975 total allocation units on disk. 31506304 allocation units available on disk. Internal Info: 00 26 02 00 6c e3 01 00 79 9b 03 00 00 00 00 00 .&..l...y....... 41 02 00 00 4c 00 00 00 00 00 00 00 00 00 00 00 A...L........... 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ Windows has finished checking your disk. Please wait while your computer restarts.
 
 
 
EDIT: The moment i finished this comment, the USB controllers failed to function yet again. The way i fixed this issue, was i unplugged them from the front ports and plugged them into the back ports and now i am able to type and use my mouse. I may decide to check with Linux again with the front ports for a more extended time? But that was a few days before and these controllers fail pretty quickly, The fact that they did not fail for a whole 2 days on Linux is what has me confused.
 
I will proceed to step 3 now.......

Edited by jeff matthews, 19 January 2015 - 04:26 PM.


#49 jeff matthews

jeff matthews

    Advanced Member

  • Authentic Member
  • PipPipPipPip
  • 781 posts

Posted 19 January 2015 - 04:39 PM

Ok here ya go, here is the SFC Log: No integrity Violations has been found.

 

 

2015-01-19 14:29:16, Info                  CSI    00000009 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:16, Info                  CSI    0000000a [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:17, Info                  CSI    0000000c [SR] Verify complete
2015-01-19 14:29:17, Info                  CSI    0000000d [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:17, Info                  CSI    0000000e [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:18, Info                  CSI    00000010 [SR] Verify complete
2015-01-19 14:29:18, Info                  CSI    00000011 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:18, Info                  CSI    00000012 [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:19, Info                  CSI    00000014 [SR] Verify complete
2015-01-19 14:29:20, Info                  CSI    00000015 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:20, Info                  CSI    00000016 [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:21, Info                  CSI    00000018 [SR] Verify complete
2015-01-19 14:29:21, Info                  CSI    00000019 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:21, Info                  CSI    0000001a [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:22, Info                  CSI    0000001c [SR] Verify complete
2015-01-19 14:29:22, Info                  CSI    0000001d [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:22, Info                  CSI    0000001e [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:23, Info                  CSI    00000020 [SR] Verify complete
2015-01-19 14:29:23, Info                  CSI    00000021 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:23, Info                  CSI    00000022 [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:24, Info                  CSI    00000024 [SR] Verify complete
2015-01-19 14:29:24, Info                  CSI    00000025 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:24, Info                  CSI    00000026 [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:25, Info                  CSI    00000028 [SR] Verify complete
2015-01-19 14:29:25, Info                  CSI    00000029 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:25, Info                  CSI    0000002a [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:26, Info                  CSI    0000002c [SR] Verify complete
2015-01-19 14:29:27, Info                  CSI    0000002d [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:27, Info                  CSI    0000002e [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:28, Info                  CSI    00000030 [SR] Verify complete
2015-01-19 14:29:28, Info                  CSI    00000031 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:28, Info                  CSI    00000032 [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:30, Info                  CSI    00000034 [SR] Verify complete
2015-01-19 14:29:30, Info                  CSI    00000035 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:30, Info                  CSI    00000036 [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:31, Info                  CSI    00000038 [SR] Verify complete
2015-01-19 14:29:31, Info                  CSI    00000039 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:31, Info                  CSI    0000003a [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:33, Info                  CSI    0000003c [SR] Verify complete
2015-01-19 14:29:33, Info                  CSI    0000003d [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:33, Info                  CSI    0000003e [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:34, Info                  CSI    00000040 [SR] Verify complete
2015-01-19 14:29:34, Info                  CSI    00000041 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:34, Info                  CSI    00000042 [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:35, Info                  CSI    00000044 [SR] Verify complete
2015-01-19 14:29:35, Info                  CSI    00000045 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:35, Info                  CSI    00000046 [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:37, Info                  CSI    00000048 [SR] Verify complete
2015-01-19 14:29:37, Info                  CSI    00000049 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:37, Info                  CSI    0000004a [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:39, Info                  CSI    0000004c [SR] Verify complete
2015-01-19 14:29:39, Info                  CSI    0000004d [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:39, Info                  CSI    0000004e [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:40, Info                  CSI    00000050 [SR] Verify complete
2015-01-19 14:29:41, Info                  CSI    00000051 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:41, Info                  CSI    00000052 [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:42, Info                  CSI    00000054 [SR] Verify complete
2015-01-19 14:29:42, Info                  CSI    00000055 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:42, Info                  CSI    00000056 [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:46, Info                  CSI    00000059 [SR] Verify complete
2015-01-19 14:29:46, Info                  CSI    0000005a [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:46, Info                  CSI    0000005b [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:49, Info                  CSI    0000005f [SR] Verify complete
2015-01-19 14:29:49, Info                  CSI    00000060 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:49, Info                  CSI    00000061 [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:52, Info                  CSI    00000064 [SR] Verify complete
2015-01-19 14:29:52, Info                  CSI    00000065 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:52, Info                  CSI    00000066 [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:54, Info                  CSI    00000069 [SR] Verify complete
2015-01-19 14:29:54, Info                  CSI    0000006a [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:54, Info                  CSI    0000006b [SR] Beginning Verify and Repair transaction
2015-01-19 14:29:57, Info                  CSI    0000006d [SR] Verify complete
2015-01-19 14:29:57, Info                  CSI    0000006e [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:29:57, Info                  CSI    0000006f [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:00, Info                  CSI    00000091 [SR] Verify complete
2015-01-19 14:30:00, Info                  CSI    00000092 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:00, Info                  CSI    00000093 [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:04, Info                  CSI    00000098 [SR] Verify complete
2015-01-19 14:30:04, Info                  CSI    00000099 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:04, Info                  CSI    0000009a [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:07, Info                  CSI    0000009c [SR] Verify complete
2015-01-19 14:30:07, Info                  CSI    0000009d [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:07, Info                  CSI    0000009e [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:09, Info                  CSI    000000a0 [SR] Verify complete
2015-01-19 14:30:09, Info                  CSI    000000a1 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:09, Info                  CSI    000000a2 [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:12, Info                  CSI    000000a4 [SR] Verify complete
2015-01-19 14:30:13, Info                  CSI    000000a5 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:13, Info                  CSI    000000a6 [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:15, Info                  CSI    000000a8 [SR] Verify complete
2015-01-19 14:30:15, Info                  CSI    000000a9 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:15, Info                  CSI    000000aa [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:18, Info                  CSI    000000ae [SR] Verify complete
2015-01-19 14:30:19, Info                  CSI    000000af [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:19, Info                  CSI    000000b0 [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:23, Info                  CSI    000000d1 [SR] Verify complete
2015-01-19 14:30:23, Info                  CSI    000000d2 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:23, Info                  CSI    000000d3 [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:29, Info                  CSI    000000d5 [SR] Verify complete
2015-01-19 14:30:29, Info                  CSI    000000d6 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:29, Info                  CSI    000000d7 [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:37, Info                  CSI    000000db [SR] Verify complete
2015-01-19 14:30:37, Info                  CSI    000000dc [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:37, Info                  CSI    000000dd [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:38, Info                  CSI    000000df [SR] Verify complete
2015-01-19 14:30:38, Info                  CSI    000000e0 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:38, Info                  CSI    000000e1 [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:39, Info                  CSI    000000e3 [SR] Verify complete
2015-01-19 14:30:39, Info                  CSI    000000e4 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:39, Info                  CSI    000000e5 [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:41, Info                  CSI    000000e7 [SR] Verify complete
2015-01-19 14:30:41, Info                  CSI    000000e8 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:41, Info                  CSI    000000e9 [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:45, Info                  CSI    000000fc [SR] Verify complete
2015-01-19 14:30:45, Info                  CSI    000000fd [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:45, Info                  CSI    000000fe [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:46, Info                  CSI    00000100 [SR] Verify complete
2015-01-19 14:30:46, Info                  CSI    00000101 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:46, Info                  CSI    00000102 [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:47, Info                  CSI    00000104 [SR] Verify complete
2015-01-19 14:30:48, Info                  CSI    00000105 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:48, Info                  CSI    00000106 [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:50, Info                  CSI    00000108 [SR] Verify complete
2015-01-19 14:30:50, Info                  CSI    00000109 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:50, Info                  CSI    0000010a [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:52, Info                  CSI    0000010c [SR] Verify complete
2015-01-19 14:30:52, Info                  CSI    0000010d [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:52, Info                  CSI    0000010e [SR] Beginning Verify and Repair transaction
2015-01-19 14:30:58, Info                  CSI    00000112 [SR] Verify complete
2015-01-19 14:30:58, Info                  CSI    00000113 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:30:58, Info                  CSI    00000114 [SR] Beginning Verify and Repair transaction
2015-01-19 14:31:00, Info                  CSI    00000116 [SR] Verify complete
2015-01-19 14:31:00, Info                  CSI    00000117 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:31:00, Info                  CSI    00000118 [SR] Beginning Verify and Repair transaction
2015-01-19 14:31:00, Info                  CSI    0000011a [SR] Verify complete
2015-01-19 14:31:00, Info                  CSI    0000011b [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:31:00, Info                  CSI    0000011c [SR] Beginning Verify and Repair transaction
2015-01-19 14:31:03, Info                  CSI    0000011e [SR] Verify complete
2015-01-19 14:31:03, Info                  CSI    0000011f [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:31:03, Info                  CSI    00000120 [SR] Beginning Verify and Repair transaction
2015-01-19 14:31:05, Info                  CSI    00000122 [SR] Verify complete
2015-01-19 14:31:05, Info                  CSI    00000123 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:31:05, Info                  CSI    00000124 [SR] Beginning Verify and Repair transaction
2015-01-19 14:31:08, Info                  CSI    00000126 [SR] Verify complete
2015-01-19 14:31:08, Info                  CSI    00000127 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:31:08, Info                  CSI    00000128 [SR] Beginning Verify and Repair transaction
2015-01-19 14:31:14, Info                  CSI    00000138 [SR] Verify complete
2015-01-19 14:31:14, Info                  CSI    00000139 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:31:14, Info                  CSI    0000013a [SR] Beginning Verify and Repair transaction
2015-01-19 14:31:17, Info                  CSI    00000144 [SR] Verify complete
2015-01-19 14:31:17, Info                  CSI    00000145 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:31:17, Info                  CSI    00000146 [SR] Beginning Verify and Repair transaction
2015-01-19 14:31:25, Info                  CSI    00000148 [SR] Verify complete
2015-01-19 14:31:25, Info                  CSI    00000149 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:31:25, Info                  CSI    0000014a [SR] Beginning Verify and Repair transaction
2015-01-19 14:31:28, Info                  CSI    0000014c [SR] Verify complete
2015-01-19 14:31:28, Info                  CSI    0000014d [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:31:28, Info                  CSI    0000014e [SR] Beginning Verify and Repair transaction
2015-01-19 14:31:33, Info                  CSI    00000151 [SR] Verify complete
2015-01-19 14:31:33, Info                  CSI    00000152 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:31:33, Info                  CSI    00000153 [SR] Beginning Verify and Repair transaction
2015-01-19 14:31:37, Info                  CSI    00000155 [SR] Verify complete
2015-01-19 14:31:37, Info                  CSI    00000156 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:31:37, Info                  CSI    00000157 [SR] Beginning Verify and Repair transaction
2015-01-19 14:31:40, Info                  CSI    00000159 [SR] Verify complete
2015-01-19 14:31:40, Info                  CSI    0000015a [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:31:40, Info                  CSI    0000015b [SR] Beginning Verify and Repair transaction
2015-01-19 14:31:42, Info                  CSI    0000015d [SR] Verify complete
2015-01-19 14:31:43, Info                  CSI    0000015e [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:31:43, Info                  CSI    0000015f [SR] Beginning Verify and Repair transaction
2015-01-19 14:31:45, Info                  CSI    00000163 [SR] Verify complete
2015-01-19 14:31:45, Info                  CSI    00000164 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:31:45, Info                  CSI    00000165 [SR] Beginning Verify and Repair transaction
2015-01-19 14:31:52, Info                  CSI    00000167 [SR] Verify complete
2015-01-19 14:31:52, Info                  CSI    00000168 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:31:52, Info                  CSI    00000169 [SR] Beginning Verify and Repair transaction
2015-01-19 14:31:57, Info                  CSI    0000016c [SR] Verify complete
2015-01-19 14:31:57, Info                  CSI    0000016d [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:31:57, Info                  CSI    0000016e [SR] Beginning Verify and Repair transaction
2015-01-19 14:32:00, Info                  CSI    00000170 [SR] Verify complete
2015-01-19 14:32:00, Info                  CSI    00000171 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:32:00, Info                  CSI    00000172 [SR] Beginning Verify and Repair transaction
2015-01-19 14:32:04, Info                  CSI    00000175 [SR] Verify complete
2015-01-19 14:32:04, Info                  CSI    00000176 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:32:04, Info                  CSI    00000177 [SR] Beginning Verify and Repair transaction
2015-01-19 14:32:08, Info                  CSI    0000017a [SR] Verify complete
2015-01-19 14:32:08, Info                  CSI    0000017b [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:32:08, Info                  CSI    0000017c [SR] Beginning Verify and Repair transaction
2015-01-19 14:32:12, Info                  CSI    0000017e [SR] Verify complete
2015-01-19 14:32:12, Info                  CSI    0000017f [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:32:12, Info                  CSI    00000180 [SR] Beginning Verify and Repair transaction
2015-01-19 14:32:14, Info                  CSI    00000182 [SR] Verify complete
2015-01-19 14:32:14, Info                  CSI    00000183 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:32:14, Info                  CSI    00000184 [SR] Beginning Verify and Repair transaction
2015-01-19 14:32:17, Info                  CSI    00000186 [SR] Verify complete
2015-01-19 14:32:17, Info                  CSI    00000187 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:32:17, Info                  CSI    00000188 [SR] Beginning Verify and Repair transaction
2015-01-19 14:32:19, Info                  CSI    0000018b [SR] Verify complete
2015-01-19 14:32:19, Info                  CSI    0000018c [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:32:19, Info                  CSI    0000018d [SR] Beginning Verify and Repair transaction
2015-01-19 14:32:22, Info                  CSI    0000018f [SR] Verify complete
2015-01-19 14:32:23, Info                  CSI    00000190 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:32:23, Info                  CSI    00000191 [SR] Beginning Verify and Repair transaction
2015-01-19 14:32:25, Info                  CSI    00000193 [SR] Verify complete
2015-01-19 14:32:25, Info                  CSI    00000194 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:32:25, Info                  CSI    00000195 [SR] Beginning Verify and Repair transaction
2015-01-19 14:32:27, Info                  CSI    00000198 [SR] Verify complete
2015-01-19 14:32:28, Info                  CSI    00000199 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:32:28, Info                  CSI    0000019a [SR] Beginning Verify and Repair transaction
2015-01-19 14:32:31, Info                  CSI    0000019d [SR] Verify complete
2015-01-19 14:32:31, Info                  CSI    0000019e [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:32:31, Info                  CSI    0000019f [SR] Beginning Verify and Repair transaction
2015-01-19 14:32:34, Info                  CSI    000001a2 [SR] Verify complete
2015-01-19 14:32:34, Info                  CSI    000001a3 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:32:34, Info                  CSI    000001a4 [SR] Beginning Verify and Repair transaction
2015-01-19 14:32:38, Info                  CSI    000001a7 [SR] Verify complete
2015-01-19 14:32:38, Info                  CSI    000001a8 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:32:38, Info                  CSI    000001a9 [SR] Beginning Verify and Repair transaction
2015-01-19 14:32:41, Info                  CSI    000001ab [SR] Verify complete
2015-01-19 14:32:41, Info                  CSI    000001ac [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:32:41, Info                  CSI    000001ad [SR] Beginning Verify and Repair transaction
2015-01-19 14:32:41, Info                  CSI    000001af [SR] Verify complete
2015-01-19 14:32:42, Info                  CSI    000001b0 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:32:42, Info                  CSI    000001b1 [SR] Beginning Verify and Repair transaction
2015-01-19 14:32:44, Info                  CSI    000001b3 [SR] Verify complete
2015-01-19 14:32:44, Info                  CSI    000001b4 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:32:44, Info                  CSI    000001b5 [SR] Beginning Verify and Repair transaction
2015-01-19 14:32:47, Info                  CSI    000001b7 [SR] Verify complete
2015-01-19 14:32:47, Info                  CSI    000001b8 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:32:47, Info                  CSI    000001b9 [SR] Beginning Verify and Repair transaction
2015-01-19 14:32:50, Info                  CSI    000001bb [SR] Verify complete
2015-01-19 14:32:50, Info                  CSI    000001bc [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:32:50, Info                  CSI    000001bd [SR] Beginning Verify and Repair transaction
2015-01-19 14:33:08, Info                  CSI    000001bf [SR] Verify complete
2015-01-19 14:33:09, Info                  CSI    000001c0 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:33:09, Info                  CSI    000001c1 [SR] Beginning Verify and Repair transaction
2015-01-19 14:33:12, Info                  CSI    000001c3 [SR] Verify complete
2015-01-19 14:33:12, Info                  CSI    000001c4 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:33:12, Info                  CSI    000001c5 [SR] Beginning Verify and Repair transaction
2015-01-19 14:33:24, Info                  CSI    000001c7 [SR] Verify complete
2015-01-19 14:33:24, Info                  CSI    000001c8 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:33:24, Info                  CSI    000001c9 [SR] Beginning Verify and Repair transaction
2015-01-19 14:33:35, Info                  CSI    000001cb [SR] Verify complete
2015-01-19 14:33:35, Info                  CSI    000001cc [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:33:35, Info                  CSI    000001cd [SR] Beginning Verify and Repair transaction
2015-01-19 14:33:37, Info                  CSI    000001cf [SR] Verify complete
2015-01-19 14:33:37, Info                  CSI    000001d0 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:33:37, Info                  CSI    000001d1 [SR] Beginning Verify and Repair transaction
2015-01-19 14:33:40, Info                  CSI    000001d3 [SR] Verify complete
2015-01-19 14:33:40, Info                  CSI    000001d4 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:33:40, Info                  CSI    000001d5 [SR] Beginning Verify and Repair transaction
2015-01-19 14:33:41, Info                  CSI    000001d7 [SR] Verify complete
2015-01-19 14:33:41, Info                  CSI    000001d8 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:33:41, Info                  CSI    000001d9 [SR] Beginning Verify and Repair transaction
2015-01-19 14:33:43, Info                  CSI    000001db [SR] Verify complete
2015-01-19 14:33:43, Info                  CSI    000001dc [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:33:43, Info                  CSI    000001dd [SR] Beginning Verify and Repair transaction
2015-01-19 14:33:45, Info                  CSI    000001df [SR] Verify complete
2015-01-19 14:33:45, Info                  CSI    000001e0 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:33:45, Info                  CSI    000001e1 [SR] Beginning Verify and Repair transaction
2015-01-19 14:33:47, Info                  CSI    000001e3 [SR] Verify complete
2015-01-19 14:33:47, Info                  CSI    000001e4 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:33:47, Info                  CSI    000001e5 [SR] Beginning Verify and Repair transaction
2015-01-19 14:33:48, Info                  CSI    000001e7 [SR] Verify complete
2015-01-19 14:33:48, Info                  CSI    000001e8 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:33:48, Info                  CSI    000001e9 [SR] Beginning Verify and Repair transaction
2015-01-19 14:33:51, Info                  CSI    000001f1 [SR] Verify complete
2015-01-19 14:33:51, Info                  CSI    000001f2 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:33:51, Info                  CSI    000001f3 [SR] Beginning Verify and Repair transaction
2015-01-19 14:33:53, Info                  CSI    000001f5 [SR] Verify complete
2015-01-19 14:33:53, Info                  CSI    000001f6 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:33:53, Info                  CSI    000001f7 [SR] Beginning Verify and Repair transaction
2015-01-19 14:33:55, Info                  CSI    000001f9 [SR] Verify complete
2015-01-19 14:33:55, Info                  CSI    000001fa [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:33:55, Info                  CSI    000001fb [SR] Beginning Verify and Repair transaction
2015-01-19 14:33:57, Info                  CSI    000001fd [SR] Verify complete
2015-01-19 14:33:57, Info                  CSI    000001fe [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:33:57, Info                  CSI    000001ff [SR] Beginning Verify and Repair transaction
2015-01-19 14:34:00, Info                  CSI    00000201 [SR] Verify complete
2015-01-19 14:34:00, Info                  CSI    00000202 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:34:00, Info                  CSI    00000203 [SR] Beginning Verify and Repair transaction
2015-01-19 14:34:03, Info                  CSI    00000206 [SR] Verify complete
2015-01-19 14:34:03, Info                  CSI    00000207 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:34:03, Info                  CSI    00000208 [SR] Beginning Verify and Repair transaction
2015-01-19 14:34:05, Info                  CSI    0000020a [SR] Verify complete
2015-01-19 14:34:05, Info                  CSI    0000020b [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:34:05, Info                  CSI    0000020c [SR] Beginning Verify and Repair transaction
2015-01-19 14:34:06, Info                  CSI    0000020e [SR] Verify complete
2015-01-19 14:34:06, Info                  CSI    0000020f [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:34:06, Info                  CSI    00000210 [SR] Beginning Verify and Repair transaction
2015-01-19 14:34:09, Info                  CSI    00000212 [SR] Verify complete
2015-01-19 14:34:09, Info                  CSI    00000213 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:34:09, Info                  CSI    00000214 [SR] Beginning Verify and Repair transaction
2015-01-19 14:34:15, Info                  CSI    00000219 [SR] Verify complete
2015-01-19 14:34:15, Info                  CSI    0000021a [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:34:15, Info                  CSI    0000021b [SR] Beginning Verify and Repair transaction
2015-01-19 14:34:19, Info                  CSI    00000220 [SR] Verify complete
2015-01-19 14:34:19, Info                  CSI    00000221 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:34:19, Info                  CSI    00000222 [SR] Beginning Verify and Repair transaction
2015-01-19 14:34:23, Info                  CSI    00000228 [SR] Verify complete
2015-01-19 14:34:23, Info                  CSI    00000229 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:34:23, Info                  CSI    0000022a [SR] Beginning Verify and Repair transaction
2015-01-19 14:34:27, Info                  CSI    00000233 [SR] Verify complete
2015-01-19 14:34:28, Info                  CSI    00000234 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:34:28, Info                  CSI    00000235 [SR] Beginning Verify and Repair transaction
2015-01-19 14:34:31, Info                  CSI    0000023a [SR] Verify complete
2015-01-19 14:34:31, Info                  CSI    0000023b [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:34:31, Info                  CSI    0000023c [SR] Beginning Verify and Repair transaction
2015-01-19 14:34:34, Info                  CSI    00000240 [SR] Verify complete
2015-01-19 14:34:34, Info                  CSI    00000241 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:34:34, Info                  CSI    00000242 [SR] Beginning Verify and Repair transaction
2015-01-19 14:34:36, Info                  CSI    00000244 [SR] Verify complete
2015-01-19 14:34:36, Info                  CSI    00000245 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:34:36, Info                  CSI    00000246 [SR] Beginning Verify and Repair transaction
2015-01-19 14:34:39, Info                  CSI    00000261 [SR] Verify complete
2015-01-19 14:34:39, Info                  CSI    00000262 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:34:39, Info                  CSI    00000263 [SR] Beginning Verify and Repair transaction
2015-01-19 14:34:42, Info                  CSI    0000026f [SR] Verify complete
2015-01-19 14:34:42, Info                  CSI    00000270 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:34:42, Info                  CSI    00000271 [SR] Beginning Verify and Repair transaction
2015-01-19 14:34:45, Info                  CSI    00000273 [SR] Verify complete
2015-01-19 14:34:45, Info                  CSI    00000274 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:34:45, Info                  CSI    00000275 [SR] Beginning Verify and Repair transaction
2015-01-19 14:34:48, Info                  CSI    00000277 [SR] Verify complete
2015-01-19 14:34:48, Info                  CSI    00000278 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:34:48, Info                  CSI    00000279 [SR] Beginning Verify and Repair transaction
2015-01-19 14:34:51, Info                  CSI    0000027b [SR] Verify complete
2015-01-19 14:34:51, Info                  CSI    0000027c [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:34:51, Info                  CSI    0000027d [SR] Beginning Verify and Repair transaction
2015-01-19 14:34:55, Info                  CSI    0000028b [SR] Verify complete
2015-01-19 14:34:55, Info                  CSI    0000028c [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:34:55, Info                  CSI    0000028d [SR] Beginning Verify and Repair transaction
2015-01-19 14:35:00, Info                  CSI    00000293 [SR] Verify complete
2015-01-19 14:35:01, Info                  CSI    00000294 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:35:01, Info                  CSI    00000295 [SR] Beginning Verify and Repair transaction
2015-01-19 14:35:04, Info                  CSI    0000029f [SR] Verify complete
2015-01-19 14:35:04, Info                  CSI    000002a0 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:35:04, Info                  CSI    000002a1 [SR] Beginning Verify and Repair transaction
2015-01-19 14:35:06, Info                  CSI    000002a3 [SR] Verify complete
2015-01-19 14:35:06, Info                  CSI    000002a4 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:35:06, Info                  CSI    000002a5 [SR] Beginning Verify and Repair transaction
2015-01-19 14:35:10, Info                  CSI    000002a8 [SR] Verify complete
2015-01-19 14:35:10, Info                  CSI    000002a9 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:35:10, Info                  CSI    000002aa [SR] Beginning Verify and Repair transaction
2015-01-19 14:35:12, Info                  CSI    000002ac [SR] Verify complete
2015-01-19 14:35:12, Info                  CSI    000002ad [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:35:12, Info                  CSI    000002ae [SR] Beginning Verify and Repair transaction
2015-01-19 14:35:15, Info                  CSI    000002b0 [SR] Verify complete
2015-01-19 14:35:15, Info                  CSI    000002b1 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:35:15, Info                  CSI    000002b2 [SR] Beginning Verify and Repair transaction
2015-01-19 14:35:18, Info                  CSI    000002b4 [SR] Verify complete
2015-01-19 14:35:18, Info                  CSI    000002b5 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:35:18, Info                  CSI    000002b6 [SR] Beginning Verify and Repair transaction
2015-01-19 14:35:21, Info                  CSI    000002b8 [SR] Verify complete
2015-01-19 14:35:21, Info                  CSI    000002b9 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:35:21, Info                  CSI    000002ba [SR] Beginning Verify and Repair transaction
2015-01-19 14:35:25, Info                  CSI    000002d4 [SR] Verify complete
2015-01-19 14:35:25, Info                  CSI    000002d5 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:35:25, Info                  CSI    000002d6 [SR] Beginning Verify and Repair transaction
2015-01-19 14:35:28, Info                  CSI    000002d8 [SR] Verify complete
2015-01-19 14:35:28, Info                  CSI    000002d9 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:35:28, Info                  CSI    000002da [SR] Beginning Verify and Repair transaction
2015-01-19 14:35:36, Info                  CSI    000002dc [SR] Verify complete
2015-01-19 14:35:36, Info                  CSI    000002dd [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:35:36, Info                  CSI    000002de [SR] Beginning Verify and Repair transaction
2015-01-19 14:35:39, Info                  CSI    000002e0 [SR] Verify complete
2015-01-19 14:35:39, Info                  CSI    000002e1 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:35:39, Info                  CSI    000002e2 [SR] Beginning Verify and Repair transaction
2015-01-19 14:35:42, Info                  CSI    000002e6 [SR] Verify complete
2015-01-19 14:35:42, Info                  CSI    000002e7 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:35:42, Info                  CSI    000002e8 [SR] Beginning Verify and Repair transaction
2015-01-19 14:35:44, Info                  CSI    000002ea [SR] Verify complete
2015-01-19 14:35:45, Info                  CSI    000002eb [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:35:45, Info                  CSI    000002ec [SR] Beginning Verify and Repair transaction
2015-01-19 14:35:48, Info                  CSI    000002ee [SR] Verify complete
2015-01-19 14:35:48, Info                  CSI    000002ef [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:35:48, Info                  CSI    000002f0 [SR] Beginning Verify and Repair transaction
2015-01-19 14:35:51, Info                  CSI    000002f2 [SR] Verify complete
2015-01-19 14:35:51, Info                  CSI    000002f3 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:35:51, Info                  CSI    000002f4 [SR] Beginning Verify and Repair transaction
2015-01-19 14:35:54, Info                  CSI    000002f7 [SR] Verify complete
2015-01-19 14:35:54, Info                  CSI    000002f8 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:35:54, Info                  CSI    000002f9 [SR] Beginning Verify and Repair transaction
2015-01-19 14:35:57, Info                  CSI    000002fb [SR] Verify complete
2015-01-19 14:35:57, Info                  CSI    000002fc [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:35:57, Info                  CSI    000002fd [SR] Beginning Verify and Repair transaction
2015-01-19 14:36:00, Info                  CSI    000002ff [SR] Verify complete
2015-01-19 14:36:01, Info                  CSI    00000300 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:36:01, Info                  CSI    00000301 [SR] Beginning Verify and Repair transaction
2015-01-19 14:36:04, Info                  CSI    00000303 [SR] Verify complete
2015-01-19 14:36:04, Info                  CSI    00000304 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:36:04, Info                  CSI    00000305 [SR] Beginning Verify and Repair transaction
2015-01-19 14:36:08, Info                  CSI    00000308 [SR] Verify complete
2015-01-19 14:36:08, Info                  CSI    00000309 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:36:08, Info                  CSI    0000030a [SR] Beginning Verify and Repair transaction
2015-01-19 14:36:12, Info                  CSI    0000030c [SR] Verify complete
2015-01-19 14:36:12, Info                  CSI    0000030d [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:36:12, Info                  CSI    0000030e [SR] Beginning Verify and Repair transaction
2015-01-19 14:36:16, Info                  CSI    00000310 [SR] Verify complete
2015-01-19 14:36:16, Info                  CSI    00000311 [SR] Verifying 100 (0x0000000000000064) components
2015-01-19 14:36:16, Info                  CSI    00000312 [SR] Beginning Verify and Repair transaction
2015-01-19 14:36:19, Info                  CSI    00000314 [SR] Verify complete
2015-01-19 14:36:19, Info                  CSI    00000315 [SR] Verifying 85 (0x0000000000000055) components
2015-01-19 14:36:19, Info                  CSI    00000316 [SR] Beginning Verify and Repair transaction
2015-01-19 14:36:22, Info                  CSI    00000318 [SR] Verify complete
2015-01-19 14:36:22, Info                  CSI    00000319 [SR] Repairing 0 components
2015-01-19 14:36:22, Info                  CSI    0000031a [SR] Beginning Verify and Repair transaction
2015-01-19 14:36:22, Info                  CSI    0000031c [SR] Repair complete
 

 

Proceeding To Step 4

 

Ok there are several logs in the directory which one do you need? I guess i will just post them all.

 

windows Repair Log:

 

 

Tweaking.com - Windows Repair v2.10.2
--------------------------------------------------------------------------------

System Variables
--------------------------------------------------------------------------------
OS: Windows 7 Home Premium
OS Architecture: 64-bit
OS Version: 6.1.7601
OS Service Pack: Service Pack 1
Computer Name: ASHLEY-PC
Windows Drive: C:\
Windows Path: C:\Windows
Program Files: C:\Program Files
Program Files (x86): C:\Program Files (x86)
Current Profile: C:\Users\Ashley
Current Profile SID: S-1-5-21-2650459626-1003566679-2177798267-1000
Current Profile Classes: S-1-5-21-2650459626-1003566679-2177798267-1000_Classes
Profiles Location: C:\Users
Profiles Location 2: C:\Windows\ServiceProfiles
Local Settings AppData: C:\Users\Ashley\AppData\Local
--------------------------------------------------------------------------------

System Information
--------------------------------------------------------------------------------
System Up Time: 0 Days 01:15:33

Process Count: 57
Commit Total: 2.10 GB
Commit Limit: 15.89 GB
Commit Peak: 2.39 GB
Handle Count: 16950
Kernel Total: 574.46 MB
Kernel Paged: 441.19 MB
Kernel Non Paged: 133.27 MB
System Cache: 6.22 GB
Thread Count: 717
--------------------------------------------------------------------------------

Memory Before Cleaning with CleanMem
--------------------------------------------------------------------------------
Memory Total: 7.94 GB
Memory Used: 1.78 GB(22.4326%)
Memory Avail.: 6.16 GB
--------------------------------------------------------------------------------

Cleaning Memory Before Starting Repairs...

Memory After Cleaning with CleanMem
--------------------------------------------------------------------------------
Memory Total: 7.94 GB
Memory Used: 1.44 GB(18.1837%)
Memory Avail.: 6.50 GB
--------------------------------------------------------------------------------

Starting Repairs...
   Started at (1/19/2015 2:44:56 PM)

Setting Any Missing 'InstallDate' From Uninstall Sections Before Running Repair...
Total Missing 'InstallDate' Fixed: 125
 
01 - Reset Registry Permissions 01/03
   HKEY_CURRENT_USER & Sub Keys
   Start (1/19/2015 2:44:57 PM)
   Running Repair Under Current User Account
   Done (1/19/2015 2:45:00 PM)

01 - Reset Registry Permissions 02/03
   HKEY_LOCAL_MACHINE & Sub Keys
   Start (1/19/2015 2:45:00 PM)
   Running Repair Under System Account
   Done (1/19/2015 2:47:04 PM)

01 - Reset Registry Permissions 03/03
   HKEY_CLASSES_ROOT & Sub Keys
   Start (1/19/2015 2:47:05 PM)
   Running Repair Under System Account
   Done (1/19/2015 2:47:41 PM)

02 - Reset File Permissions: C:
   C: & Sub Folders
   Start (1/19/2015 2:47:41 PM)
   Trying To Run Repair As Trusted Installer.
   This Repair Is Hidden By Windows Itself.
   You Can See The Repair Working In The Task Manager.
   Running Repair As Trusted Installer
   Done (1/19/2015 2:51:34 PM)

02 - Reset File Permissions: All Profiles
   C:\Users & Sub Folders
   Start (1/19/2015 2:51:34 PM)
   Running Repair Under System Account
   Done (1/19/2015 2:52:16 PM)

02 - Reset File Permissions: Current Profile
   C:\Users\Ashley & Sub Folders
   Start (1/19/2015 2:52:16 PM)
   Running Repair Under System Account
   Done (1/19/2015 2:52:39 PM)

02 - Reset File Permissions: Cleanup
   Repairing Restricted Folders Permissions To Avoid Infinite Loops
   Start (1/19/2015 2:52:39 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:52:41 PM)

03 - Reset Service Permissions
   Start (1/19/2015 2:52:41 PM)
   Running Repair Under System Account
   Done (1/19/2015 2:52:46 PM)

04 - Register System Files
   Start (1/19/2015 2:52:46 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:53:01 PM)

05 - Repair WMI
   Start (1/19/2015 2:53:01 PM)

   Starting Security Center So We Can Export The Security Info.

   Exporting Antivirus Info...
   No Antivirus Products Reported.

   Exporting AntiSpyware Info...
   Windows Defender Exported.

   Exporting 3rd Party Firewall Info...
   No Firewall Products Reported.

   Running Repair Under Current User Account
   Done (1/19/2015 2:53:58 PM)

06 - Repair Windows Firewall
   Start (1/19/2015 2:53:58 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:54:26 PM)

07 - Repair Internet Explorer
   Start (1/19/2015 2:54:26 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:54:42 PM)

08 - Repair MDAC/MS Jet
   Start (1/19/2015 2:54:42 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:54:49 PM)

09 - Repair Hosts File
   Start (1/19/2015 2:54:49 PM)
   Running Repair Under System Account
   Done (1/19/2015 2:54:50 PM)

10 - Remove Policies Set By Infections
   Start (1/19/2015 2:54:50 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:54:52 PM)

11 - Repair Start Menu Icons Removed By Infections
   Start (1/19/2015 2:54:52 PM)
   Running Repair Under System Account
   Done (1/19/2015 2:54:53 PM)

12 - Repair Icons
   Start (1/19/2015 2:54:53 PM)
   Running Repair Under Current User Account
   Done (1/19/2015 2:54:54 PM)

13 - Repair Winsock & DNS Cache
   Start (1/19/2015 2:54:54 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:55:10 PM)

14 - Remove Temp Files
   Start (1/19/2015 2:55:10 PM)
   Running Repair Under System Account
   Done (1/19/2015 2:55:11 PM)

15 - Repair Proxy Settings
   Start (1/19/2015 2:55:11 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:55:13 PM)

16 - Unhide Non System Files
   Start (1/19/2015 2:55:13 PM)
   C:\ - Total Files Unhidden: 320 - Check Unhidden_Files.txt for list of files unhidden
   Done (1/19/2015 2:55:39 PM)

17 - Repair Windows Updates
   Start (1/19/2015 2:55:39 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Setting Windows Updates Files That Are In Use To Be Removed At Next Boot.
   Done (1/19/2015 2:55:59 PM)

18 - Repair CD/DVD Missing/Not Working
   Start (1/19/2015 2:55:59 PM)
   iTunes not found, not applying UpperFilters iTunes Reg Key
   Done (1/19/2015 2:55:59 PM)

19 - Repair Volume Shadow Copy Service
   Start (1/19/2015 2:55:59 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:56:17 PM)

20 - Repair Windows Sidebar/Gadgets
   Start (1/19/2015 2:56:17 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:56:19 PM)

21 - Repair MSI (Windows Installer)
   Start (1/19/2015 2:56:19 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:56:27 PM)

22 - Repair Windows Snipping Tool
   Start (1/19/2015 2:56:27 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:56:29 PM)

23.01 - Repair bat Association
   Start (1/19/2015 2:56:29 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:56:31 PM)

23.02 - Repair cmd Association
   Start (1/19/2015 2:56:31 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:56:33 PM)

23.03 - Repair com Association
   Start (1/19/2015 2:56:33 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:56:35 PM)

23.04 - Repair Directory Association
   Start (1/19/2015 2:56:35 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:56:37 PM)

23.05 - Repair Drive Association
   Start (1/19/2015 2:56:37 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:56:39 PM)

23.06 - Repair exe Association
   Start (1/19/2015 2:56:39 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:56:41 PM)

23.07 - Repair Folder Association
   Start (1/19/2015 2:56:41 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:56:44 PM)

23.08 - Repair inf Association
   Start (1/19/2015 2:56:44 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:56:46 PM)

23.09 - Repair lnk (Shortcuts) Association
   Start (1/19/2015 2:56:46 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:56:48 PM)

23.10 - Repair msc Association
   Start (1/19/2015 2:56:48 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:56:50 PM)

23.11 - Repair reg Association
   Start (1/19/2015 2:56:50 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:56:52 PM)

23.12 - Repair scr Association
   Start (1/19/2015 2:56:52 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:56:54 PM)

24 - Repair Windows Safe Mode
   Start (1/19/2015 2:56:55 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:56:57 PM)

25 - Repair Print Spooler
   Start (1/19/2015 2:56:57 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:57:06 PM)

26 - Restore Important Windows Services
   Start (1/19/2015 2:57:06 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:57:10 PM)

27 - Set Windows Services To Default Startup
   Start (1/19/2015 2:57:10 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:57:13 PM)

   Skipping Repair.
   Repair is for Windows v6.2 (Windows 8 & Newer) or higher.
   Current version: 6.1

   Skipping Repair.
   Repair is for Windows v6.2 (Windows 8 & Newer) or higher.
   Current version: 6.1

   Skipping Repair.
   Repair is for Windows v6.2 (Windows 8 & Newer) or higher.
   Current version: 6.1

31 - Repair Windows 'New' Submenu
   Start (1/19/2015 2:57:13 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:57:15 PM)

32 - Restore UAC (User Account Control) Settings
   Start (1/19/2015 2:57:15 PM)
   Running Repair Under Current User Account
   Running Repair Under System Account
   Done (1/19/2015 2:57:17 PM)

Cleaning up empty logs...

All Selected Repairs Done.
   Done at (1/19/2015 2:57:17 PM)
   Total Repair Time: 00:12:22


...YOU MUST RESTART YOUR SYSTEM...
 

 

Remove Temp Files:

 

Deleted file - C:\Users\Ashley\AppData\Local\Temp\Account Admin.bmp
Deleted file - C:\Users\Ashley\AppData\Local\Temp\Ashley.bmp
Deleted file - C:\Users\Ashley\AppData\Local\Temp\chrome_installer.log
Deleted file - C:\Users\Ashley\AppData\Local\Temp\Chuck.bmp
Deleted file - C:\Users\Ashley\AppData\Local\Temp\E100.tmp
Deleted file - C:\Users\Ashley\AppData\Local\Temp\etilqs_56PReRcDu324eJv
Deleted file - C:\Users\Ashley\AppData\Local\Temp\etilqs_8E5ssL2qcRvGnBs
C:\Users\Ashley\AppData\Local\Temp\etilqs_id8WMgnCZRwoDTf
The process cannot access the file because it is being used by another process.
Deleted file - C:\Users\Ashley\AppData\Local\Temp\etilqs_LBPymXulK2AHxMp
Deleted file - C:\Users\Ashley\AppData\Local\Temp\etilqs_VLrO3DT6dzW7iTl
C:\Users\Ashley\AppData\Local\Temp\etilqs_zoud0EpJZnsfmJK
The process cannot access the file because it is being used by another process.
C:\Users\Ashley\AppData\Local\Temp\FXSAPIDebugLogFile.txt
The process cannot access the file because it is being used by another process.
Deleted file - C:\Users\Ashley\AppData\Local\Temp\Guest.bmp
Deleted file - C:\Users\Ashley\AppData\Local\Temp\Kristi.bmp
Deleted file - C:\Users\Ashley\AppData\Local\Temp\SoftonicAssistant_v0-1-6.exe
Deleted file - C:\Users\Ashley\AppData\Local\Temp\Teri.bmp
Deleted file - C:\Users\Ashley\AppData\Local\Temp\tmp7F5C.tmp
Deleted file - C:\Users\Ashley\AppData\Local\Temp\tmp7F5C.xml
Deleted file - C:\Users\Ashley\AppData\Local\Temp\tmp7F5D.tmp
Deleted file - C:\Users\Ashley\AppData\Local\Temp\TWAIN.LOG
Deleted file - C:\Users\Ashley\AppData\Local\Temp\Twain001.Mtx
Deleted file - C:\Users\Ashley\AppData\Local\Temp\Twunk001.MTX
Deleted file - C:\Users\Ashley\AppData\Local\Temp\Twunk002.MTX
Deleted file - C:\Users\Ashley\AppData\Local\Temp\WER6576.tmp.WERInternalMetadata.xml
Deleted file - C:\Users\Ashley\AppData\Local\Temp\WER86FB.tmp.appcompat.txt
Deleted file - C:\Users\Ashley\AppData\Local\Temp\WER874A.tmp.hdmp
Deleted file - C:\Users\Ashley\AppData\Local\Temp\wmplog00.sqm
Deleted file - C:\Users\Ashley\AppData\Local\Temp\{92622AAD-05E8-4459-B256-765CE1E929FB}_NST_17067.exe
C:\Users\Ashley\AppData\Local\Temp\~DFE0E0FD11701AB831.TMP
The process cannot access the file because it is being used by another process.
Deleted file - C:\Users\Ashley\AppData\Local\Temp\~~16B8.tmp
Deleted file - C:\Users\Ashley\AppData\Local\Temp\~~6999.tmp
Deleted file - C:\Users\Ashley\AppData\Local\Temp\~~A053.tmp
Deleted file - C:\Users\Ashley\AppData\Local\Temp\~~C261.tmp
Deleted file - C:\Users\Ashley\AppData\Local\Temp\~~E3F8.tmp
Deleted file - C:\Users\Ashley\AppData\Local\Temp\a2temp\update.ini
Deleted file - C:\Users\Ashley\AppData\Local\Temp\EEK\LastScan.txt
Deleted file - C:\Users\Ashley\AppData\Local\Temp\tmp000070b3\tmp00000000
Deleted file - C:\Windows\Temp\fwtsqmfile00.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile01.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile02.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile03.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile04.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile05.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile06.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile07.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile08.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile09.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile10.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile11.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile12.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile13.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile14.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile15.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile16.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile17.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile18.sqm
Deleted file - C:\Windows\Temp\fwtsqmfile19.sqm
Deleted file - C:\Windows\Temp\FXSAPIDebugLogFile.txt
Deleted file - C:\Windows\Temp\FXSTIFFDebugLogFile.txt
Deleted file - C:\Windows\Temp\MpCmdRun.log
Deleted file - C:\Windows\Temp\MpSigStub.log
C:\Windows\Temp\TMP000001AEF56C868024B8A5DB
The process cannot access the file because it is being used by another process.
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\CbsProvider.dll
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\CompatProvider.dll
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\DismCore.dll
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\DismCorePS.dll
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\DismHost.exe
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\DismProv.dll
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\DmiProvider.dll
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\FolderProvider.dll
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\IntlProvider.dll
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\LogProvider.dll
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\MsiProvider.dll
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\OSProvider.dll
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\SmiProvider.dll
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\TransmogProvider.dll
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\UnattendProvider.dll
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\wdscore.dll
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\WimProvider.dll
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\en-US\CbsProvider.dll.mui
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\en-US\CompatProvider.dll.mui
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\en-US\DismCore.dll.mui
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\en-US\DismProv.dll.mui
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\en-US\DmiProvider.dll.mui
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\en-US\FolderProvider.dll.mui
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\en-US\IntlProvider.dll.mui
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\en-US\LogProvider.dll.mui
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\en-US\MsiProvider.dll.mui
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\en-US\OSProvider.dll.mui
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\en-US\SmiProvider.dll.mui
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\en-US\TransmogProvider.dll.mui
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\en-US\UnattendProvider.dll.mui
Deleted file - C:\Windows\Temp\0B7C371D-4E7F-40BA-B559-F1F6A129049C\en-US\WimProvider.dll.mui
 

Repair Icons

 

Could Not Find C:\Users\Ashley\AppData\Local\Microsoft\Windows\Explorer\iconcache*.db
Deleted file - C:\Users\Ashley\AppData\Local\Microsoft\Windows\Explorer\thumbcache_1024.db
Deleted file - C:\Users\Ashley\AppData\Local\Microsoft\Windows\Explorer\thumbcache_256.db
Deleted file - C:\Users\Ashley\AppData\Local\Microsoft\Windows\Explorer\thumbcache_32.db
Deleted file - C:\Users\Ashley\AppData\Local\Microsoft\Windows\Explorer\thumbcache_96.db
Deleted file - C:\Users\Ashley\AppData\Local\Microsoft\Windows\Explorer\thumbcache_idx.db
Deleted file - C:\Users\Ashley\AppData\Local\Microsoft\Windows\Explorer\thumbcache_sr.db
 

Repair MSI Windows Installer

 

[SC] ChangeServiceConfig SUCCESS
The Windows Installer service is not started.

More help is available by typing NET HELPMSG 3521.

The Windows Installer service is starting.
The Windows Installer service was started successfully.

[SC] ChangeServiceConfig SUCCESS
The Windows Installer service is stopping.
The Windows Installer service was stopped successfully.

The Windows Installer service is starting.
The Windows Installer service was started successfully.
 

Windows Repair Volume Shadow Copy

 

The Volume Shadow Copy service is not started.

More help is available by typing NET HELPMSG 3521.

The Microsoft Software Shadow Copy Provider service is not started.

More help is available by typing NET HELPMSG 3521.

The Volume Shadow Copy service is stopping.
The Volume Shadow Copy service was stopped successfully.

The Microsoft Software Shadow Copy Provider service is stopping.
The Microsoft Software Shadow Copy Provider service was stopped successfully.
 

Repair Firewall

 

The Windows Firewall service is stopping.
The Windows Firewall service was stopped successfully.

The Internet Connection Sharing (ICS) service is not started.

More help is available by typing NET HELPMSG 3521.

The following services are dependent on the Base Filtering Engine service.
Stopping the Base Filtering Engine service will also stop these services.

   IKE and AuthIP IPsec Keying Modules

The IKE and AuthIP IPsec Keying Modules service is stopping.
The IKE and AuthIP IPsec Keying Modules service was stopped successfully.

The Base Filtering Engine service is stopping.
The Base Filtering Engine service was stopped successfully.

[SC] ChangeServiceConfig SUCCESS
[SC] ChangeServiceConfig SUCCESS
[SC] ChangeServiceConfig SUCCESS
[SC] ChangeServiceConfig SUCCESS
The Windows Firewall service is stopping.
The Windows Firewall service was stopped successfully.

The Internet Connection Sharing (ICS) service is not started.

More help is available by typing NET HELPMSG 3521.

The Base Filtering Engine service is stopping.
The Base Filtering Engine service was stopped successfully.

[SC] ChangeServiceConfig SUCCESS
[SC] ChangeServiceConfig SUCCESS
[SC] ChangeServiceConfig SUCCESS
[SC] ChangeServiceConfig SUCCESS

 

Repair_Winsock_and_DNS_Cache

 

Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.

Ok.

Reseting Interface, OK!
Restart the computer to complete this action.


Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.

The following command was not found: int 6to4 reset all.
There's no user specified settings to be reset.

Reseting Interface, OK!
Restart the computer to complete this action.


The following command was not found: int isatap reset all.


Reset of all TCP parameters OK!
Ok.

The following command was not found: int teredo reset all.

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

Windows IP Configuration

Registration of the DNS resource records for all adapters of this computer has been initiated. Any errors will be reported in the Event Viewer in 15 minutes.

Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.

Ok.

There's no user specified settings to be reset.


Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.

The following command was not found: int 6to4 reset all.
There's no user specified settings to be reset.

There's no user specified settings to be reset.


The following command was not found: int isatap reset all.


Reset of all TCP parameters OK!
Ok.

The following command was not found: int teredo reset all.

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

Windows IP Configuration

Registration of the DNS resource records for all adapters of this computer has been initiated. Any errors will be reported in the Event Viewer in 15 minutes.
 

 

Repair Unhidden Files

 

Skipped: (Symbolic Link or Junction) - C:\Documents and Settings
Skipped: (Symbolic Link or Junction) - C:\hiberfil.sys
Skipped: (Symbolic Link or Junction) - C:\pagefile.sys
1 - C:\MSOCache
1 - C:\ProgramData
1 - C:\Program Files\CanonBJ
1 - C:\Program Files\Uninstall Information
1 - C:\Program Files\CanonBJ\IJPrinter
1 - C:\Program Files\CanonBJ\IJPrinter\Canon MX510 series
1 - C:\Program Files (x86)\InstallShield Installation Information
1 - C:\Program Files (x86)\Temp
1 - C:\Program Files (x86)\Uninstall Information
1 - C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSU.exe
1 - C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\uinstrsc.dll
1 - C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\uninst.ini
1 - C:\Program Files (x86)\Canon\MP Navigator EX 5.1\Maint.exe
1 - C:\Program Files (x86)\Canon\MP Navigator EX 5.1\uinstrsc.dll
1 - C:\Program Files (x86)\Canon\MP Navigator EX 5.1\uninst.ini
1 - C:\Program Files (x86)\Canon\Solution Menu EX\uinstrsc.dll
1 - C:\Program Files (x86)\Canon\Solution Menu EX\uninst.exe
1 - C:\Program Files (x86)\Canon\Solution Menu EX\uninst.ini
1 - C:\Program Files (x86)\Canon\Speed Dial Utility\uinstrsc.dll
1 - C:\Program Files (x86)\Canon\Speed Dial Utility\uninst.exe
1 - C:\Program Files (x86)\Canon\Speed Dial Utility\uninst.ini
Skipped: (Symbolic Link or Junction) - C:\ProgramData\Application Data
Skipped: (Symbolic Link or Junction) - C:\ProgramData\Desktop
Skipped: (Symbolic Link or Junction) - C:\ProgramData\Documents
Skipped: (Symbolic Link or Junction) - C:\ProgramData\Favorites
Skipped: (Symbolic Link or Junction) - C:\ProgramData\Start Menu
Skipped: (Symbolic Link or Junction) - C:\ProgramData\Templates
1 - C:\ProgramData\CanonBJ
1 - C:\ProgramData\CanonEPP
1 - C:\ProgramData\CanonIJEPPEX2
1 - C:\ProgramData\CanonIJFAX
1 - C:\ProgramData\CanonIJMyPrinter
1 - C:\ProgramData\CanonIJSolutionMenuEX
1 - C:\ProgramData\CanonBJ\IJPrinter
1 - C:\ProgramData\CanonBJ\IJPrinter\CNMWindows
1 - C:\ProgramData\CanonBJ\IJPrinter\CNMWindows\Canon MX510 series Printer
1 - C:\ProgramData\CanonIJFAX\Canon MX510 series FAX
1 - C:\ProgramData\CanonIJMyPrinter\MyPrinterCounter.ctr
1 - C:\ProgramData\CanonIJSolutionMenuEX\SolutionMenuEX.ctr
1 - C:\ProgramData\CyberLink\CBE\D8D760AC-ACA2-493e-9623-61E9D47DE89C\CyberLink_PowerDVD_Downloader(1).exe
1 - C:\ProgramData\CyberLink\CBE\D8D760AC-ACA2-493e-9623-61E9D47DE89C\ToGo
1 - C:\ProgramData\Microsoft\WwanSvc
1 - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
1 - C:\ProgramData\Microsoft\Windows Defender\IMpService925A3ACA-C353-458A-AC8D-A7E5EB378092.lock
1 - C:\ProgramData\Microsoft\WwanSvc\Profiles
1 - C:\ProgramData\Microsoft Help\Hx.hxn
1 - C:\ProgramData\Microsoft Help\Hx_1033_MKWD_K.HxW
1 - C:\ProgramData\Microsoft Help\Hx_1033_MKWD_NamedURL.HxW
1 - C:\ProgramData\Microsoft Help\Hx_1033_MTOC_Hx.HxH
1 - C:\ProgramData\Microsoft Help\Hx_1033_MValidator.HxD
1 - C:\ProgramData\Microsoft Help\Hx_1033_MValidator.Lck
1 - C:\ProgramData\Microsoft Help\MS.EXCEL.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.EXCEL.DEV.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.GRAPH.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.GROOVE.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.INFOPATH.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.INFOPATHEDITOR.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.MSACCESS.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.MSACCESS.DEV.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.MSOUC.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.MSPUB.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.MSPUB.DEV.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.MSTORE.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.OIS.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.ONENOTE.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.OUTLOOK.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.OUTLOOK.DEV.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.POWERPNT.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.POWERPNT.DEV.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.SETLANG.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.WINWORD.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\MS.WINWORD.DEV.14.1033.hxn
1 - C:\ProgramData\Microsoft Help\nslist.hxl
Skipped: (Symbolic Link or Junction) - C:\Users\All Users
Skipped: (Symbolic Link or Junction) - C:\Users\Default User
1 - C:\Users\Default
Skipped: (Symbolic Link or Junction) - C:\Users\Account Admin\Application Data
Skipped: (Symbolic Link or Junction) - C:\Users\Account Admin\Cookies
Skipped: (Symbolic Link or Junction) - C:\Users\Account Admin\Local Settings
Skipped: (Symbolic Link or Junction) - C:\Users\Account Admin\My Documents
Skipped: (Symbolic Link or Junction) - C:\Users\Account Admin\NetHood
Skipped: (Symbolic Link or Junction) - C:\Users\Account Admin\PrintHood
Skipped: (Symbolic Link or Junction) - C:\Users\Account Admin\Recent
Skipped: (Symbolic Link or Junction) - C:\Users\Account Admin\SendTo
Skipped: (Symbolic Link or Junction) - C:\Users\Account Admin\Start Menu
Skipped: (Symbolic Link or Junction) - C:\Users\Account Admin\Templates
1 - C:\Users\Account Admin\AppData
Skipped: (Symbolic Link or Junction) - C:\Users\Account Admin\AppData\Local\Application Data
Skipped: (Symbolic Link or Junction) - C:\Users\Account Admin\AppData\Local\History
Skipped: (Symbolic Link or Junction) - C:\Users\Account Admin\AppData\Local\Temporary Internet Files
1 - C:\Users\Account Admin\AppData\Local\IconCache.db
1 - C:\Users\Account Admin\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~
1 - C:\Users\Account Admin\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\WebSlices~
1 - C:\Users\Account Admin\AppData\Local\Microsoft\Windows\UsrClass.dat
1 - C:\Users\Account Admin\AppData\Local\Microsoft\Windows\Burn\Burn
1 - C:\Users\Account Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized
1 - C:\Users\Account Admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned
1 - C:\Users\Account Admin\AppData\Roaming\Microsoft\Windows\DNTException\Low
1 - C:\Users\Account Admin\AppData\Roaming\Microsoft\Windows\IECompatCache\Low
1 - C:\Users\Account Admin\AppData\Roaming\Microsoft\Windows\IECompatUACache\Low
1 - C:\Users\Account Admin\AppData\Roaming\Microsoft\Windows\PrivacIE\Low
Skipped: (Symbolic Link or Junction) - C:\Users\Account Admin\Documents\My Music
Skipped: (Symbolic Link or Junction) - C:\Users\Account Admin\Documents\My Pictures
Skipped: (Symbolic Link or Junction) - C:\Users\Account Admin\Documents\My Videos
1 - C:\Users\Account Admin\Searches\Everywhere.search-ms
1 - C:\Users\Account Admin\Searches\Indexed Locations.search-ms
Skipped: (Symbolic Link or Junction) - C:\Users\Ashley\Application Data
Skipped: (Symbolic Link or Junction) - C:\Users\Ashley\Cookies
Skipped: (Symbolic Link or Junction) - C:\Users\Ashley\Local Settings
Skipped: (Symbolic Link or Junction) - C:\Users\Ashley\My Documents
Skipped: (Symbolic Link or Junction) - C:\Users\Ashley\NetHood
Skipped: (Symbolic Link or Junction) - C:\Users\Ashley\PrintHood
Skipped: (Symbolic Link or Junction) - C:\Users\Ashley\Recent
Skipped: (Symbolic Link or Junction) - C:\Users\Ashley\SendTo
Skipped: (Symbolic Link or Junction) - C:\Users\Ashley\Start Menu
Skipped: (Symbolic Link or Junction) - C:\Users\Ashley\Templates
1 - C:\Users\Ashley\AppData
Skipped: (Symbolic Link or Junction) - C:\Users\Ashley\AppData\Local\Application Data
Skipped: (Symbolic Link or Junction) - C:\Users\Ashley\AppData\Local\History
Skipped: (Symbolic Link or Junction) - C:\Users\Ashley\AppData\Local\Temporary Internet Files
1 - C:\Users\Ashley\AppData\Local\Microsoft\Device Metadata\dmrccache\downloads
1 - C:\Users\Ashley\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~
1 - C:\Users\Ashley\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\WebSlices~
1 - C:\Users\Ashley\AppData\Local\Microsoft\Media Player\Art Cache
1 - C:\Users\Ashley\AppData\Local\Microsoft\Windows\UsrClass.dat
1 - C:\Users\Ashley\AppData\Local\Microsoft\Windows\Burn\Burn
1 - C:\Users\Ashley\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.MSO
1 - C:\Users\Ashley\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word
1 - C:\Users\Ashley\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized
1 - C:\Users\Ashley\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned
1 - C:\Users\Ashley\AppData\Roaming\Microsoft\Office\Recent\index.dat
1 - C:\Users\Ashley\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
1 - C:\Users\Ashley\AppData\Roaming\Microsoft\Windows\DNTException\Low
1 - C:\Users\Ashley\AppData\Roaming\Microsoft\Windows\IECompatCache\Low
1 - C:\Users\Ashley\AppData\Roaming\Microsoft\Windows\IECompatUACache\Low
1 - C:\Users\Ashley\AppData\Roaming\Microsoft\Windows\PrivacIE\Low
Skipped: (Symbolic Link or Junction) - C:\Users\Ashley\Documents\My Music
Skipped: (Symbolic Link or Junction) - C:\Users\Ashley\Documents\My Pictures
Skipped: (Symbolic Link or Junction) - C:\Users\Ashley\Documents\My Videos
1 - C:\Users\Ashley\Documents\~$ffy Season 5 and 6 Angel Season Seasons 2 and 3.docx
1 - C:\Users\Ashley\Documents\~$ffy Season 7 and Angel Season 5.docx
1 - C:\Users\Ashley\Documents\~$ffy Season 9 and Angel and Faith and Distant Future.docx
1 - C:\Users\Ashley\Documents\~$gel After the Fall Comics and Buffy Season 8 Comics.docx
Skipped: (Symbolic Link or Junction) - C:\Users\Ashley\Downloads\Disney Fairies Pixie Hollow Games_
1 - C:\Users\Ashley\Searches\Everywhere.search-ms
1 - C:\Users\Ashley\Searches\Indexed Locations.search-ms
Skipped: (Symbolic Link or Junction) - C:\Users\Chuck\Application Data
Skipped: (Symbolic Link or Junction) - C:\Users\Chuck\Cookies
Skipped: (Symbolic Link or Junction) - C:\Users\Chuck\Local Settings
Skipped: (Symbolic Link or Junction) - C:\Users\Chuck\My Documents
Skipped: (Symbolic Link or Junction) - C:\Users\Chuck\NetHood
Skipped: (Symbolic Link or Junction) - C:\Users\Chuck\PrintHood
Skipped: (Symbolic Link or Junction) - C:\Users\Chuck\Recent
Skipped: (Symbolic Link or Junction) - C:\Users\Chuck\SendTo
Skipped: (Symbolic Link or Junction) - C:\Users\Chuck\Start Menu
Skipped: (Symbolic Link or Junction) - C:\Users\Chuck\Templates
1 - C:\Users\Chuck\AppData
Skipped: (Symbolic Link or Junction) - C:\Users\Chuck\AppData\Local\Application Data
Skipped: (Symbolic Link or Junction) - C:\Users\Chuck\AppData\Local\History
Skipped: (Symbolic Link or Junction) - C:\Users\Chuck\AppData\Local\Temporary Internet Files
1 - C:\Users\Chuck\AppData\Local\IconCache.db
1 - C:\Users\Chuck\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~
1 - C:\Users\Chuck\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\WebSlices~
1 - C:\Users\Chuck\AppData\Local\Microsoft\Windows\UsrClass.dat
1 - C:\Users\Chuck\AppData\Local\Microsoft\Windows\Burn\Burn
1 - C:\Users\Chuck\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned
1 - C:\Users\Chuck\AppData\Roaming\Microsoft\Windows\DNTException\Low
1 - C:\Users\Chuck\AppData\Roaming\Microsoft\Windows\IECompatCache\Low
1 - C:\Users\Chuck\AppData\Roaming\Microsoft\Windows\IECompatUACache\Low
1 - C:\Users\Chuck\AppData\Roaming\Microsoft\Windows\PrivacIE\Low
Skipped: (Symbolic Link or Junction) - C:\Users\Chuck\Documents\My Music
Skipped: (Symbolic Link or Junction) - C:\Users\Chuck\Documents\My Pictures
Skipped: (Symbolic Link or Junction) - C:\Users\Chuck\Documents\My Videos
1 - C:\Users\Chuck\Searches\Everywhere.search-ms
1 - C:\Users\Chuck\Searches\Indexed Locations.search-ms
Skipped: (Symbolic Link or Junction) - C:\Users\Default\Application Data
Skipped: (Symbolic Link or Junction) - C:\Users\Default\Cookies
Skipped: (Symbolic Link or Junction) - C:\Users\Default\Local Settings
Skipped: (Symbolic Link or Junction) - C:\Users\Default\My Documents
Skipped: (Symbolic Link or Junction) - C:\Users\Default\NetHood
Skipped: (Symbolic Link or Junction) - C:\Users\Default\PrintHood
Skipped: (Symbolic Link or Junction) - C:\Users\Default\Recent
Skipped: (Symbolic Link or Junction) - C:\Users\Default\SendTo
Skipped: (Symbolic Link or Junction) - C:\Users\Default\Start Menu
Skipped: (Symbolic Link or Junction) - C:\Users\Default\Templates
1 - C:\Users\Default\AppData
1 - C:\Users\Default\NTUSER.DAT.LOG
1 - C:\Users\Default\NTUSER.DAT.LOG1
1 - C:\Users\Default\NTUSER.DAT.LOG2
Skipped: (Symbolic Link or Junction) - C:\Users\Default\AppData\Local\Application Data
Skipped: (Symbolic Link or Junction) - C:\Users\Default\AppData\Local\History
Skipped: (Symbolic Link or Junction) - C:\Users\Default\AppData\Local\Temporary Internet Files
Skipped: (Symbolic Link or Junction) - C:\Users\Default\Documents\My Music
Skipped: (Symbolic Link or Junction) - C:\Users\Default\Documents\My Pictures
Skipped: (Symbolic Link or Junction) - C:\Users\Default\Documents\My Videos
1 - C:\Users\Public\Desktop
1 - C:\Users\Public\Favorites
1 - C:\Users\Public\Libraries
Skipped: (Symbolic Link or Junction) - C:\Users\Public\Documents\My Music
Skipped: (Symbolic Link or Junction) - C:\Users\Public\Documents\My Pictures
Skipped: (Symbolic Link or Junction) - C:\Users\Public\Documents\My Videos
1 - C:\Windows\WindowsShell.Manifest
1 - C:\Windows\assembly\PublisherPolicy.tme
1 - C:\Windows\assembly\pubpol39.dat
1 - C:\Windows\assembly\pubpol4.dat
1 - C:\Windows\assembly\NativeImages_v2.0.50727_32\index2f0.dat
1 - C:\Windows\assembly\NativeImages_v2.0.50727_32\index349.dat
1 - C:\Windows\assembly\NativeImages_v2.0.50727_32\index34a.dat
1 - C:\Windows\assembly\NativeImages_v2.0.50727_64\index385.dat
1 - C:\Windows\assembly\NativeImages_v2.0.50727_64\index386.dat
1 - C:\Windows\AsusInstAll\Image\Thumbs.db
1 - C:\Windows\AsusInstAll\Image\Image_Old_EeePC\Thumbs.db
1 - C:\Windows\AsusInstAll\Image\Imgage_MB\Thumbs.db
1 - C:\Windows\ServiceProfiles\LocalService\AppData
1 - C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT.LOG
1 - C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT.LOG1
1 - C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT.LOG2
1 - C:\Windows\ServiceProfiles\NetworkService\AppData
1 - C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT.LOG
1 - C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT.LOG1
1 - C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT.LOG2
1 - C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
1 - C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
1 - C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-ums-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
1 - C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
1 - C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-security-lsalookup-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-security-sddl-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-service-core-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-service-management-l1-1-0.dll
1 - C:\Windows\System32\api-ms-win-service-management-l2-1-0.dll
1 - C:\Windows\System32\api-ms-win-service-winsvc-l1-1-0.dll
1 - C:\Windows\System32\CanonIJ Uninstaller Information
1 - C:\Windows\System32\CanonIJ Uninstaller Information\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX510_series
1 - C:\Windows\System32\config\COMPONENTS.LOG
1 - C:\Windows\System32\config\COMPONENTS.LOG1
1 - C:\Windows\System32\config\COMPONENTS.LOG2
1 - C:\Windows\System32\config\DEFAULT.LOG
1 - C:\Windows\System32\config\DEFAULT.LOG1
1 - C:\Windows\System32\config\DEFAULT.LOG2
1 - C:\Windows\System32\config\SAM.LOG
1 - C:\Windows\System32\config\SAM.LOG1
1 - C:\Windows\System32\config\SAM.LOG2
1 - C:\Windows\System32\config\SECURITY.LOG
1 - C:\Windows\System32\config\SECURITY.LOG1
1 - C:\Windows\System32\config\SECURITY.LOG2
1 - C:\Windows\System32\config\SOFTWARE.LOG
1 - C:\Windows\System32\config\SOFTWARE.LOG1
1 - C:\Windows\System32\config\SOFTWARE.LOG2
1 - C:\Windows\System32\config\SYSTEM.LOG
1 - C:\Windows\System32\config\SYSTEM.LOG1
1 - C:\Windows\System32\config\SYSTEM.LOG2
1 - C:\Windows\System32\config\systemprofile\ntuser.dat.LOG
1 - C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Device Metadata\dmrccache\downloads
1 - C:\Windows\System32\config\systemprofile\Searches\Indexed Locations.search-ms
1 - C:\Windows\System32\drivers\Msft_Kernel_iusb3hcs_01009.Wdf
1 - C:\Windows\System32\drivers\Msft_Kernel_point64_01011.Wdf
1 - C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
1 - C:\Windows\System32\SMI\Store\Machine\schema.dat.LOG
1 - C:\Windows\System32\SMI\Store\Machine\SCHEMA.DAT.LOG1
1 - C:\Windows\System32\SMI\Store\Machine\SCHEMA.DAT.LOG2
1 - C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-security-lsalookup-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-security-sddl-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-service-core-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-service-management-l1-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-service-management-l2-1-0.dll
1 - C:\Windows\SysWOW64\api-ms-win-service-winsvc-l1-1-0.dll
1 - C:\Windows\Tasks\SA.DAT
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-console-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-datetime-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-debug-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-delayload-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-errorhandling-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-fibers-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-file-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-handle-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-heap-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-interlocked-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-io-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-libraryloader-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-localization-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-localregistry-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-memory-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-misc-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-namedpipe-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-processenvironment-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-processthreads-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-profile-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-rtlsupport-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-string-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-synch-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-sysinfo-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-threadpool-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-util-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-core-xstate-l1-1-0.dll
1 - C:\Windows\winsxs\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_66a6e19d9580f9e3\api-ms-win-security-base-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-console-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-datetime-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-debug-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-delayload-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-errorhandling-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-fibers-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-file-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-handle-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-heap-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-interlocked-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-io-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-libraryloader-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-localization-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-localregistry-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-memory-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-misc-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-namedpipe-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-processenvironment-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-processthreads-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-profile-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-rtlsupport-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-string-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-synch-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-sysinfo-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-threadpool-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-util-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-core-xstate-l1-1-0.dll
1 - C:\Windows\winsxs\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.1.7600.16385_none_0a884619dd2388ad\api-ms-win-security-base-l1-1-0.dll
 


Edited by jeff matthews, 19 January 2015 - 05:48 PM.


#50 jeff matthews

jeff matthews

    Advanced Member

  • Authentic Member
  • PipPipPipPip
  • 781 posts

Posted 19 January 2015 - 05:52 PM

Some of these logs are extremely long. Hopefully i posted what you can use. I am going to continue monitor it at this point and see if anything was fixed after running that extensive repair application. I just wanted to make note that prior to this scan, the back USB ports were also failing as well. So it is not just the front, how ever it is clearly only the USB 2.0, not the USB 3.0. So far the USB is still having issues after Steps 1-3.


Edited by jeff matthews, 19 January 2015 - 05:54 PM.


#51 LiquidTension

LiquidTension

    SuperMember

  • Retired Classroom Teacher
  • 2,566 posts

Posted 20 January 2015 - 09:12 AM

Hello, 
 
Please rerun FRST (Step 5) and post the two logs. 
 
Please provide an update after you've monitored your computer. Other than the issue with your USB 2.0 ports, is there anything else of concern?
 

Can you also explain to me what this reffers to in the log "Cleaning up 472 unused index entries from index $SII of file 0x9"

See here:
http://www.tomshardw...escriptors.html
 
It's of no concern. The important point is that 0 bad sectors were discovered.


50QfLth.png

 

Would you like to help others with malware removal? Join our Classroom and learn how!


#52 jeff matthews

jeff matthews

    Advanced Member

  • Authentic Member
  • PipPipPipPip
  • 781 posts

Posted 20 January 2015 - 01:38 PM

Ok here is the last two logs:

 

 

Let me know if there is any extra maleware or anything of the sort, because my sister has used the machine in the last couple days with no firewall protection. Though the sites that i looked up don't really seem that harmless. I will continue to check the computer, let you know if i have any other issues with the USB. The catylst error seems to have been fixed as i have not seen it at all since step 3 was finished.

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 19-01-2015
Ran by Ashley (administrator) on ASHLEY-PC on 20-01-2015 11:35:17
Running from C:\Users\Ashley\Desktop
Loaded Profiles: Ashley (Available profiles: Ashley & Chuck & Account Admin)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Panda Security) C:\Program Files (x86)\Panda USB Vaccine\USBVaccine.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(CANON INC.) C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(CANON INC.) C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_257.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_257.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [CCE] => "C:\Users\Ashley\Documents\Virus Utilities\cce_2.5.242177.201_x64\CCE\CCE.exe" -showlog
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6548112 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [CanonMyPrinter] => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2780776 2011-07-19] (CANON INC.)
HKLM-x32\...\Run: [avast] => "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291648 2012-05-20] (Intel Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-09-15] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [439440 2011-09-27] (CANON INC.)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [284440 2012-02-01] (Intel Corporation)
HKLM-x32\...\Run: [CanonSolutionMenuEx] => C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE [1637496 2011-08-04] (CANON INC.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKU\S-1-5-21-2650459626-1003566679-2177798267-1000\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [5622512 2013-05-14] (SUPERAntiSpyware.com)
HKU\S-1-5-21-2650459626-1003566679-2177798267-1000\...\Run: [SoftonicAssistant] => C:\Users\Ashley\AppData\Local\SoftonicAssistant\SoftonicAssistant.exe [1829832 2014-11-11] ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-2650459626-1003566679-2177798267-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKU\S-1-5-21-2650459626-1003566679-2177798267-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: avast! WebRep -> {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll No File
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll No File
Toolbar: HKLM-x32 - No Name - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -  No File
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 205.171.2.65

FireFox:
========
FF ProfilePath: C:\Users\Ashley\AppData\Roaming\Mozilla\Firefox\Profiles\yrwqb25u.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_257.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_257.dll ()
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Extension: WOT - C:\Users\Ashley\AppData\Roaming\Mozilla\Firefox\Profiles\yrwqb25u.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2014-08-19]
FF Extension: Adblock Plus - C:\Users\Ashley\AppData\Roaming\Mozilla\Firefox\Profiles\yrwqb25u.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-08-17]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF

Chrome:
=======
CHR Profile: C:\Users\Ashley\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Ashley\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-13]
CHR Extension: (Docs) - C:\Users\Ashley\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-13]
CHR Extension: (Google Drive) - C:\Users\Ashley\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-13]
CHR Extension: (YouTube) - C:\Users\Ashley\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-13]
CHR Extension: (Google Search) - C:\Users\Ashley\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-13]
CHR Extension: (Google Sheets) - C:\Users\Ashley\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-13]
CHR Extension: (avast! WebRep) - C:\Users\Ashley\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda [2015-01-13]
CHR Extension: (Norton Identity Safe) - C:\Users\Ashley\AppData\Local\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif [2015-01-13]
CHR Extension: (Gmail) - C:\Users\Ashley\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-13]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - No Path
CHR HKLM-x32\...\Chrome\Extension: [icmlaeflemplmjndnaapfdbbnpncnbda] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - No Path

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [143120 2013-05-23] (SUPERAntiSpyware.com)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140456 2011-09-06] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-26] (Microsoft Corporation)
S2 avast! Antivirus; "C:\Program Files\AVAST Software\Avast\AvastSvc.exe" [X]
S2 avast! Firewall; "C:\Program Files\AVAST Software\Avast\afwServ.exe" [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 A2DDA; C:\EEK\BIN\a2ddax64.sys [26176 2015-01-07] (Emsisoft GmbH)
R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [25232 2012-10-30] (AVAST Software)
R1 aswFW; C:\Windows\System32\Drivers\aswFW.sys [132864 2012-10-30] (AVAST Software)
R1 aswKbd; C:\Windows\System32\Drivers\aswKbd.sys [21136 2012-10-30] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [71600 2012-10-30] (AVAST Software)
R0 aswNdis; C:\Windows\System32\DRIVERS\aswNdis.sys [12368 2012-09-21] (ALWIL Software)
R0 aswNdis2; C:\Windows\System32\Drivers\aswNdis2.sys [262656 2012-10-30] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [54072 2012-10-15] (AVAST Software)
S1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [984144 2012-10-30] (AVAST Software)
R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [370288 2012-10-30] (AVAST Software)
R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [59728 2012-10-30] (AVAST Software)
S3 cleanhlp; C:\EEK\bin\cleanhlp64.sys [57024 2015-01-07] (Emsisoft GmbH)
S3 hitmanpro37; C:\Windows\system32\drivers\hitmanpro37.sys [43664 2015-01-07] ()
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-20 11:35 - 2015-01-20 11:35 - 00000000 ____D () C:\Users\Ashley\Desktop\FRST-OlderVersion
2015-01-19 14:56 - 2015-01-19 14:56 - 00003160 _____ () C:\Windows\System32\Tasks\SidebarExecute
2015-01-19 14:43 - 2015-01-19 14:43 - 00000207 _____ () C:\Windows\tweaking.com-regbackup-ASHLEY-PC-Microsoft-Windows-7-Home-Premium-(64-bit).dat
2015-01-19 14:43 - 2015-01-19 14:43 - 00000000 ____D () C:\RegBackup
2015-01-19 14:41 - 2015-01-19 14:41 - 00002163 _____ () C:\Users\Ashley\Desktop\Tweaking.com - Windows Repair (All in One).lnk
2015-01-19 14:41 - 2015-01-19 14:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com
2015-01-19 14:41 - 2015-01-19 14:41 - 00000000 ____D () C:\Program Files (x86)\Tweaking.com
2015-01-19 14:41 - 2015-01-19 14:40 - 09817304 _____ () C:\Users\Ashley\Desktop\tweaking.com_windows_repair_aio_setup.exe
2015-01-19 14:40 - 2015-01-19 14:40 - 09817304 _____ () C:\Users\Ashley\Downloads\tweaking.com_windows_repair_aio_setup.exe
2015-01-19 14:36 - 2015-01-19 14:36 - 00040368 _____ () C:\Users\Ashley\Desktop\sfcresults.txt
2015-01-19 14:32 - 2015-01-19 14:33 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-01-18 14:27 - 2015-01-18 14:27 - 01266068 _____ () C:\Users\Ashley\Desktop\System Summary.nfo
2015-01-17 22:05 - 2015-01-17 22:05 - 00000032 _____ () C:\Users\Account Admin\Desktop\applebee.txt
2015-01-17 16:27 - 2015-01-17 16:27 - 00000000 ____D () C:\Users\Account Admin\AppData\Roaming\Macromedia
2015-01-17 16:27 - 2015-01-17 16:27 - 00000000 ____D () C:\Users\Account Admin\AppData\Local\Macromedia
2015-01-17 16:26 - 2015-01-17 16:26 - 00000000 ____D () C:\Users\Account Admin\AppData\Local\CrashDumps
2015-01-17 12:49 - 2015-01-17 12:49 - 00000000 ____D () C:\Users\Account Admin\AppData\Roaming\Mozilla
2015-01-17 12:49 - 2015-01-17 12:49 - 00000000 ____D () C:\Users\Account Admin\AppData\Roaming\Intel Corporation
2015-01-17 12:49 - 2015-01-17 12:49 - 00000000 ____D () C:\Users\Account Admin\AppData\Local\Mozilla
2015-01-17 12:48 - 2015-01-17 12:48 - 00109688 _____ () C:\Users\Account Admin\AppData\Local\GDIPFONTCACHEV1.DAT
2015-01-17 12:48 - 2015-01-17 12:48 - 00000000 ____D () C:\Users\Account Admin\AppData\Roaming\Canon
2015-01-17 12:48 - 2015-01-17 12:48 - 00000000 ____D () C:\Users\Account Admin\AppData\Roaming\ATI
2015-01-17 12:48 - 2015-01-17 12:48 - 00000000 ____D () C:\Users\Account Admin\AppData\Local\ATI
2015-01-17 12:47 - 2015-01-17 12:47 - 00001377 _____ () C:\Users\Account Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-01-17 12:47 - 2015-01-17 12:47 - 00000020 ___SH () C:\Users\Account Admin\ntuser.ini
2015-01-17 12:47 - 2015-01-17 12:47 - 00000000 ____D () C:\Users\Account Admin\AppData\Roaming\Adobe
2015-01-17 12:47 - 2015-01-17 12:47 - 00000000 ____D () C:\Users\Account Admin\AppData\Local\VirtualStore
2015-01-17 12:47 - 2015-01-17 12:47 - 00000000 ____D () C:\Users\Account Admin
2015-01-17 12:47 - 2014-11-29 03:01 - 00000000 ____D () C:\Users\Account Admin\AppData\Local\Microsoft Help
2015-01-17 12:47 - 2014-11-06 23:57 - 00000000 ____D () C:\Users\Account Admin\AppData\Local\Google
2015-01-17 12:47 - 2009-07-13 20:54 - 00000000 ___RD () C:\Users\Account Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-01-17 12:47 - 2009-07-13 20:49 - 00000000 ___RD () C:\Users\Account Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-01-16 12:48 - 2015-01-16 12:48 - 00050911 _____ () C:\Users\Ashley\Documents\index.txt
2015-01-16 12:41 - 2015-01-19 15:33 - 00000000 ____D () C:\Users\Ashley\AppData\Local\SoftonicAssistant
2015-01-16 12:41 - 2015-01-16 12:41 - 02665188 _____ (Ur I.T. Mate Group ) C:\Users\Ashley\Desktop\idsuite.exe
2015-01-16 12:41 - 2015-01-16 12:41 - 00001977 _____ () C:\Users\Public\Desktop\Index.dat Suite.lnk
2015-01-16 12:41 - 2015-01-16 12:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Index.dat Suite
2015-01-16 12:41 - 2015-01-16 12:41 - 00000000 ____D () C:\Program Files (x86)\Index.dat Suite
2015-01-16 12:39 - 2015-01-16 12:39 - 00372560 _____ () C:\Users\Ashley\Downloads\SoftonicDownloader_for_index-dat-suite.exe
2015-01-16 12:08 - 2015-01-16 12:08 - 00003042 _____ () C:\Windows\System32\Tasks\PandaUSBVaccine
2015-01-16 12:08 - 2015-01-16 12:08 - 00000000 ____D () C:\ProgramData\Panda Security
2015-01-16 12:08 - 2015-01-16 12:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Security
2015-01-16 12:08 - 2015-01-16 12:08 - 00000000 ____D () C:\Program Files (x86)\Panda USB Vaccine
2015-01-16 12:07 - 2015-01-16 12:07 - 00848856 _____ (Panda Security ) C:\Users\Ashley\Downloads\USBVaccineSetup.exe
2015-01-16 12:07 - 2015-01-16 12:07 - 00848856 _____ (Panda Security ) C:\Users\Ashley\Desktop\USBVaccineSetup.exe
2015-01-16 12:06 - 2015-01-16 12:06 - 00000262 _____ () C:\DelFix.txt
2015-01-16 12:06 - 2015-01-16 12:05 - 00709564 _____ () C:\Users\Ashley\Desktop\delfix_10.8.exe
2015-01-16 12:05 - 2015-01-16 12:05 - 00709564 _____ () C:\Users\Ashley\Downloads\delfix_10.8.exe
2015-01-15 13:32 - 2015-01-15 13:32 - 00000000 ____D () C:\Users\Ashley\Documents\burncdcc
2015-01-15 13:32 - 2015-01-15 11:39 - 00182179 _____ () C:\Users\Ashley\Documents\burncdcc.zip
2015-01-15 11:39 - 2015-01-15 11:43 - 137281536 _____ () C:\Users\Ashley\Downloads\lupu-528.004.iso
2015-01-15 11:39 - 2015-01-15 11:39 - 00182179 _____ () C:\Users\Ashley\Downloads\burncdcc.zip
2015-01-14 13:30 - 2015-01-14 13:30 - 00189544 _____ () C:\Users\Ashley\Desktop\ASHLEY-PC.txt
2015-01-14 13:29 - 2015-01-14 13:29 - 05122624 _____ (Piriform Ltd) C:\Users\Ashley\Downloads\spsetup127.exe
2015-01-14 13:29 - 2015-01-14 13:29 - 00000756 _____ () C:\Users\Public\Desktop\Speccy.lnk
2015-01-14 13:29 - 2015-01-14 13:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
2015-01-14 13:29 - 2015-01-14 13:29 - 00000000 ____D () C:\Program Files\Speccy
2015-01-13 20:03 - 2015-01-13 22:11 - 00001268 _____ () C:\Users\Ashley\Desktop\Revo Uninstaller.lnk
2015-01-13 20:03 - 2015-01-13 20:03 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2015-01-13 20:03 - 2015-01-13 20:02 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Ashley\Desktop\revosetup.exe
2015-01-13 20:02 - 2015-01-13 20:02 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Ashley\Downloads\revosetup.exe
2015-01-13 14:48 - 2014-12-18 19:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-01-13 14:48 - 2014-12-18 17:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-01-13 14:48 - 2014-12-11 21:35 - 05553592 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-01-13 14:48 - 2014-12-11 21:31 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-01-13 14:48 - 2014-12-11 21:31 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-01-13 14:48 - 2014-12-11 21:31 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-01-13 14:48 - 2014-12-11 21:11 - 03971512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-01-13 14:48 - 2014-12-11 21:11 - 03916728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-01-13 14:48 - 2014-12-11 21:07 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-01-13 14:48 - 2014-12-11 09:47 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-01-13 14:48 - 2014-12-05 20:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-01-13 14:48 - 2014-12-05 19:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2015-01-13 14:48 - 2014-12-05 19:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-01-13 11:41 - 2015-01-13 11:41 - 05013680 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2015-01-12 00:50 - 2015-01-12 00:50 - 00001728 _____ () C:\Users\Ashley\Desktop\aswMBR.txt
2015-01-12 00:50 - 2015-01-12 00:50 - 00000512 _____ () C:\Users\Ashley\Desktop\MBR.dat
2015-01-11 23:36 - 2015-01-11 23:36 - 05198336 _____ (AVAST Software) C:\Users\Ashley\Downloads\aswMBR.exe
2015-01-11 23:36 - 2015-01-11 23:36 - 05198336 _____ (AVAST Software) C:\Users\Ashley\Desktop\aswMBR.exe
2015-01-11 23:35 - 2015-01-11 23:35 - 00007402 _____ () C:\Users\Ashley\Desktop\a2scan_150111-224231.txt
2015-01-11 22:29 - 2015-01-11 22:32 - 165872416 _____ () C:\Users\Ashley\Downloads\EmsisoftEmergencyKit(1).exe
2015-01-10 22:53 - 2015-01-10 22:53 - 00014095 _____ () C:\Users\Ashley\Desktop\RKreport_SCN_01102015_224919.log
2015-01-10 22:45 - 2015-01-10 22:45 - 18467928 _____ () C:\Users\Ashley\Desktop\RogueKillerX64.exe
2015-01-10 22:45 - 2015-01-10 22:45 - 00037624 _____ () C:\Windows\system32\Drivers\TrueSight.sys
2015-01-10 22:45 - 2015-01-10 22:45 - 00000000 ____D () C:\ProgramData\RogueKiller
2015-01-10 22:44 - 2015-01-10 22:45 - 18467928 _____ () C:\Users\Ashley\Downloads\RogueKillerX64.exe
2015-01-10 22:44 - 2015-01-10 22:44 - 00002401 _____ () C:\Users\Ashley\Desktop\MyEsetScan.txt
2015-01-10 20:16 - 2015-01-10 20:16 - 02347384 _____ (ESET) C:\Users\Ashley\Downloads\esetsmartinstaller_enu.exe
2015-01-10 20:16 - 2015-01-10 20:16 - 02347384 _____ (ESET) C:\Users\Ashley\Desktop\esetsmartinstaller_enu.exe
2015-01-10 20:01 - 2015-01-10 20:02 - 20447176 _____ (Malwarebytes Corporation ) C:\Users\Ashley\Downloads\mbam-setup(1).exe
2015-01-10 19:58 - 2015-01-10 19:58 - 00001424 _____ () C:\Users\Ashley\Desktop\JRT.txt
2015-01-10 19:55 - 2015-01-16 12:06 - 00000000 ____D () C:\Windows\ERUNT
2015-01-10 19:53 - 2015-01-10 19:53 - 01707939 _____ (Thisisu) C:\Users\Ashley\Downloads\JRT.exe
2015-01-10 19:53 - 2015-01-10 19:53 - 01707939 _____ (Thisisu) C:\Users\Ashley\Desktop\JRT.exe
2015-01-10 19:48 - 2015-01-10 19:48 - 00007247 _____ () C:\Users\Ashley\Desktop\AdwCleaner[S0].txt
2015-01-10 19:36 - 2015-01-10 19:42 - 00000000 ____D () C:\AdwCleaner
2015-01-10 19:34 - 2015-01-10 19:33 - 02191360 _____ () C:\Users\Ashley\Desktop\AdwCleaner.exe
2015-01-10 19:33 - 2015-01-10 19:33 - 02191360 _____ () C:\Users\Ashley\Downloads\AdwCleaner.exe
2015-01-08 00:30 - 2015-01-13 11:43 - 00022778 _____ () C:\Users\Ashley\Desktop\Addition.txt
2015-01-08 00:29 - 2015-01-20 11:35 - 02126848 _____ (Farbar) C:\Users\Ashley\Desktop\FRST64.exe
2015-01-08 00:29 - 2015-01-20 11:35 - 00013284 _____ () C:\Users\Ashley\Desktop\FRST.txt
2015-01-08 00:29 - 2015-01-20 11:35 - 00000000 ____D () C:\FRST
2015-01-08 00:29 - 2015-01-08 00:25 - 04187592 _____ (Kaspersky Lab ZAO) C:\Users\Ashley\Desktop\tdsskiller.exe
2015-01-07 19:42 - 2015-01-07 19:42 - 00014009 _____ () C:\Users\Ashley\Desktop\dds.txt
2015-01-07 19:42 - 2015-01-07 19:42 - 00007121 _____ () C:\Users\Ashley\Desktop\attach.txt
2015-01-07 19:41 - 2015-01-07 19:38 - 00688992 ____R (Swearware) C:\Users\Ashley\Desktop\dds.com
2015-01-07 09:17 - 2015-01-07 09:17 - 00000512 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 405fe981-ffa0-480d-8fba-2444e54b8324.job
2015-01-07 09:17 - 2015-01-07 09:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2015-01-07 09:15 - 2015-01-07 09:15 - 00000000 __SHD () C:\Users\Ashley\AppData\Local\EmieBrowserModeList
2015-01-07 09:09 - 2015-01-07 09:09 - 00000000 ____D () C:\SUPERDelete
2015-01-07 09:00 - 2015-01-20 09:57 - 00918390 _____ () C:\Windows\WindowsUpdate.log
2015-01-07 08:56 - 2015-01-19 21:29 - 00006356 _____ () C:\Windows\setupact.log
2015-01-07 08:56 - 2015-01-07 08:56 - 00000000 _____ () C:\Windows\setuperr.log
2015-01-07 08:55 - 2015-01-19 15:31 - 00199560 _____ () C:\Windows\PFRO.log
2015-01-07 08:45 - 2015-01-07 08:45 - 00001332 _____ () C:\Users\Ashley\Desktop\SUPERAntiSpyware Scan Log - 01-07-2015 - 08-44-22.log
2015-01-07 08:14 - 2015-01-07 08:14 - 00000176 _____ () C:\Users\Ashley\Desktop\Scan_150107-081418.txt
2015-01-07 07:41 - 2015-01-11 22:33 - 00000000 ____D () C:\EEK
2015-01-07 07:41 - 2015-01-07 07:41 - 00000743 _____ () C:\Users\Ashley\Desktop\Start Emsisoft Emergency Kit.lnk
2015-01-07 07:39 - 2015-01-07 07:39 - 00043664 _____ () C:\Windows\system32\Drivers\hitmanpro37.sys
2015-01-07 07:38 - 2015-01-07 07:38 - 00004722 _____ () C:\Users\Ashley\Desktop\HitmanPro_20150107_0738.log
2015-01-07 07:37 - 2015-01-07 07:37 - 00001714 _____ () C:\Windows\system32\.crusader
2015-01-07 04:43 - 2015-01-07 07:38 - 00000000 ____D () C:\ProgramData\HitmanPro
2015-01-07 04:38 - 2015-01-07 04:42 - 165090088 _____ () C:\Users\Ashley\Downloads\EmsisoftEmergencyKit.exe
2015-01-07 04:16 - 2015-01-07 04:16 - 04166770 _____ () C:\Users\Ashley\Downloads\tdsskiller.zip
2015-01-07 03:27 - 2015-01-11 22:15 - 00000000 ____D () C:\Users\Ashley\Documents\Virus Utilities
2015-01-07 03:20 - 2015-01-07 03:24 - 25543261 _____ () C:\Users\Ashley\Downloads\cce_2.5.242177.201_x64.zip
2015-01-07 00:26 - 2013-06-18 17:12 - 26190240 _____ (SUPERAntiSpyware.com) C:\Users\Ashley\Desktop\SUPERAntiSpyware.exe
2015-01-07 00:19 - 2015-01-13 22:14 - 00000000 ____D () C:\Windows\pss
2014-12-29 22:43 - 2014-12-29 22:43 - 00003118 _____ () C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe
2014-12-29 22:43 - 2014-12-29 22:43 - 00003092 _____ () C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe
2014-12-29 22:43 - 2014-12-29 22:43 - 00003090 _____ () C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_itype_exe
2014-12-29 22:43 - 2014-12-29 22:43 - 00003062 _____ () C:\Windows\System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe
2014-12-29 22:43 - 2014-12-29 22:43 - 00003060 _____ () C:\Windows\System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe
2014-12-29 22:43 - 2014-12-29 22:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mouse and Keyboard Center
2014-12-29 22:43 - 2014-12-29 22:43 - 00000000 ____D () C:\Program Files\Microsoft Mouse and Keyboard Center
2014-12-29 22:43 - 2014-12-29 22:43 - 00000000 _____ () C:\Windows\system32\Drivers\Msft_Kernel_point64_01011.Wdf
2014-12-29 01:31 - 2014-12-29 01:31 - 00000000 ____D () C:\Windows\SysWOW64\X86
2014-12-29 01:31 - 2014-12-29 01:31 - 00000000 ____D () C:\Windows\SysWOW64\AMD64
2014-12-29 01:30 - 2014-12-29 01:30 - 00000000 ____D () C:\Program Files (x86)\Ghostery
2014-12-29 01:00 - 2014-12-29 00:52 - 504015269 _____ () C:\Users\Ashley\Desktop\wolfblood.s03e08.720p.webrip.x264-failed.mkv
2014-12-29 01:00 - 2014-12-29 00:51 - 498921497 _____ () C:\Users\Ashley\Desktop\wolfblood.s03e07.720p.webrip.x264-failed.mkv
2014-12-28 23:56 - 2014-12-31 17:34 - 00000000 ____D () C:\Users\Ashley\Downloads\Wolfblood S3

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-20 11:15 - 2014-08-17 18:03 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-01-20 10:41 - 2014-08-17 17:33 - 00000898 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-01-20 05:46 - 2009-07-13 20:45 - 00028928 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-20 05:46 - 2009-07-13 20:45 - 00028928 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-19 21:41 - 2014-08-17 17:33 - 00000894 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-01-19 15:36 - 2009-07-13 21:13 - 00781298 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-19 15:32 - 2009-07-13 21:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-19 15:31 - 2009-07-13 20:45 - 00409568 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-01-19 15:29 - 2014-08-17 17:52 - 00109688 _____ () C:\Users\Ashley\AppData\Local\GDIPFONTCACHEV1.DAT
2015-01-19 14:54 - 2009-07-13 18:34 - 00000514 _____ () C:\Windows\win.ini
2015-01-19 14:53 - 2014-08-20 02:26 - 00781298 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2015-01-19 11:57 - 2014-11-13 12:33 - 00000000 ____D () C:\Users\Ashley\AppData\Local\CrashDumps
2015-01-15 11:42 - 2014-10-20 01:58 - 00002042 _____ () C:\Users\Public\Desktop\Google Slides.lnk
2015-01-15 11:42 - 2014-10-20 01:58 - 00002040 _____ () C:\Users\Public\Desktop\Google Sheets.lnk
2015-01-15 11:42 - 2014-10-20 01:58 - 00002030 _____ () C:\Users\Public\Desktop\Google Docs.lnk
2015-01-15 11:42 - 2014-10-20 01:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-01-14 03:03 - 2014-08-21 01:39 - 00000000 ____D () C:\Windows\system32\MRT
2015-01-14 03:01 - 2014-08-21 01:39 - 113365784 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-01-13 22:14 - 2014-10-20 01:53 - 00000000 ____D () C:\Program Files\AVAST Software
2015-01-13 20:02 - 2014-08-17 17:33 - 00000000 ____D () C:\Program Files (x86)\Google
2015-01-13 11:41 - 2014-11-07 16:36 - 00000000 ____D () C:\Users\Chuck\AppData\Local\CrashDumps
2015-01-13 11:41 - 2014-08-17 18:03 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-01-13 11:41 - 2014-08-17 18:03 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-01-13 11:41 - 2014-08-17 18:03 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-01-11 22:24 - 2014-08-17 17:40 - 00000000 ____D () C:\Program Files (x86)\ASM104xUSB3
2015-01-10 20:13 - 2014-08-23 22:32 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-01-10 20:11 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\Globalization
2015-01-10 19:35 - 2014-08-20 15:01 - 00000000 ____D () C:\Users\Ashley\AppData\Roaming\uTorrent
2015-01-07 09:17 - 2014-08-23 22:37 - 00001768 _____ () C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
2015-01-07 09:17 - 2014-08-23 22:37 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2015-01-07 08:54 - 2014-10-22 01:16 - 00000000 ____D () C:\Windows\Minidump
2015-01-07 08:54 - 2014-08-18 09:14 - 00000000 ____D () C:\Windows\Panther
2015-01-07 04:06 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\Web
2015-01-07 03:15 - 2014-08-23 22:31 - 00001106 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-01-07 03:15 - 2014-08-23 22:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-01-07 03:15 - 2014-08-23 22:31 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-01-07 00:21 - 2014-08-26 17:38 - 00000000 ____D () C:\ProgramData\CanonIJPLM
2015-01-06 04:36 - 2010-11-20 19:27 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-01-01 21:21 - 2014-08-17 17:29 - 00000000 ____D () C:\ProgramData\Norton
2014-12-30 00:49 - 2014-08-23 12:12 - 00109688 _____ () C:\Users\Chuck\AppData\Local\GDIPFONTCACHEV1.DAT

==================== Files in the root of some directories =======
2014-08-22 22:35 - 2014-08-22 23:04 - 0099384 _____ () C:\Users\Ashley\AppData\Roaming\inst.exe
2014-08-22 22:35 - 2014-08-22 23:04 - 0007859 _____ () C:\Users\Ashley\AppData\Roaming\pcouffin.cat
2014-08-22 22:35 - 2014-08-22 23:04 - 0001167 _____ () C:\Users\Ashley\AppData\Roaming\pcouffin.inf
2014-08-22 22:35 - 2014-08-22 23:04 - 0000055 _____ () C:\Users\Ashley\AppData\Roaming\pcouffin.log
2014-08-22 22:35 - 2014-08-22 23:04 - 0082816 _____ (VSO Software) C:\Users\Ashley\AppData\Roaming\pcouffin.sys

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-01-14 01:01

==================== End Of Log ============================

 

 

 

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-01-2015
Ran by Ashley at 2015-01-20 11:35:36
Running from C:\Users\Ashley\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.257 - Adobe Systems Incorporated)
AMD Catalyst Install Manager (HKLM\...\{C2956908-53A3-88FC-B795-B16508296FC4}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.2.0 - Asmedia Technology)
ASUS Product Register Program (HKLM-x32\...\{49BE9B8A-E858-4533-A74A-64306C13DB59}) (Version: 1.0.014 - ASUS)
Canon Easy-PhotoPrint EX (HKLM-x32\...\Easy-PhotoPrint EX) (Version:  - )
Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version:  - )
Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version:  - )
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version:  - )
Canon MP Navigator EX 5.1 (HKLM-x32\...\MP Navigator EX 5.1) (Version:  - )
Canon MX510 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX510_series) (Version:  - )
Canon MX510 series On-screen Manual (HKLM-x32\...\Canon MX510 series On-screen Manual) (Version:  - )
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version:  - )
Canon Solution Menu EX (HKLM-x32\...\CanonSolutionMenuEX) (Version:  - )
Canon Speed Dial Utility (HKLM-x32\...\Speed Dial Utility) (Version:  - )
CBR Reader (HKLM-x32\...\{EDAAC216-AC73-4152-9654-E12FE5A69F5D}_is1) (Version:  - cbrreader.com)
Core Temp 1.0 RC6 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.0 - Alcpu)
DVDFab 9.0.4.2 (27/05/2013) (HKLM-x32\...\DVDFab 9_is1) (Version:  - Fengtao Software Inc.)
Google Drive (HKLM-x32\...\{240D2B48-E06E-446F-A806-01CF36882EB7}) (Version: 1.19.8268.4572 - Google, Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Index.dat Suite (HKLM-x32\...\{B8971880-0060-11D8-87CB-C2A1A3E71907}_is1) (Version: 2.9.11 - Ur I.T. Mate Group)
Intel® Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.1.0.1006 - Intel Corporation)
Intel® USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.5.235 - Intel Corporation)
KCP-0.5.4.0 (HKLM-x32\...\Kawaii Codec Pack_is1) (Version: 0.5.4.0 - Haruhichan.com)
Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Mozilla Firefox 35.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 35.0 (x86 en-US)) (Version: 35.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.0 - Mozilla)
Panda USB Vaccine 1.0.1.4 (HKLM-x32\...\{55A41219-9B22-4098-BAE7-AE289B3C569A}_is1) (Version:  - Panda Security)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.61.612.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6657 - Realtek Semiconductor Corp.)
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Softonic Assistant (HKU\S-1-5-21-2650459626-1003566679-2177798267-1000\...\SoftonicAssistant) (Version: 0.1.6 - Softonic International S.A.) <==== ATTENTION
Speccy (HKLM\...\Speccy) (Version: 1.27 - Piriform)
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 5.6.1020 - SUPERAntiSpyware.com)
Tweaking.com - Windows Repair (All in One) (HKLM-x32\...\Tweaking.com - Windows Repair (All in One)) (Version: 2.10.2 - Tweaking.com)
VSO ConvertXToDVD (HKLM-x32\...\{CE1F93C0-4353-4C9D-84DA-AB4E7C63ED32}_is1) (Version: 5.0.0.74 - VSO Software)
WinRAR 5.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)
Wizard101 (HKLM-x32\...\{A9E27FF5-6294-46A8-B8FD-77B1DECA3021}) (Version: 1.0.0 - KingsIsle Entertainment, Inc.)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

10-01-2015 19:54:39 Before JRT Scan
13-01-2015 12:04:16 Windows Update
14-01-2015 03:00:26 Windows Update
17-01-2015 12:45:41 CLEAN PC Default Configuration
19-01-2015 12:04:16 CLEAN PC
19-01-2015 12:32:44 FIX DAMAGE MBAM
19-01-2015 14:42:39 Tweaking.com - Windows Repair
19-01-2015 14:43:27 Tweaking.com - Windows Repair
20-01-2015 05:42:01 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-13 18:34 - 2015-01-19 14:54 - 00000855 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1       localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {1D4568D6-E7ED-4FD4-81D4-9E06C08D619A} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
Task: {221FC5EB-5B77-4B20-A537-8507A5FB3A9C} - System32\Tasks\PandaUSBVaccine => C:\Program Files (x86)\Panda USB Vaccine\RunInteractiveWin.exe [2009-09-23] ()
Task: {2383CADB-BC8D-4B03-B1A7-15B2FB86CBC7} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {3E12A637-10FC-47A1-9B4A-3F2CF0945231} - System32\Tasks\Norton Identity Safe\Norton Error Analyzer => C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.8.23\SymErr.exe
Task: {56F93B1D-8557-4713-9DC9-9C4AF49842B8} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation)
Task: {664DDD14-3249-429B-A4C1-40969E91B163} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2014-03-19] (Microsoft)
Task: {6B801873-B3A2-4C74-9CED-08B4638255B5} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-01-13] (Adobe Systems Incorporated)
Task: {6D58477C-6572-4645-86EA-089A577D9752} - System32\Tasks\Norton Identity Safe\Norton Error Processor => C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.8.23\SymErr.exe
Task: {733874A1-2C90-47B6-8205-029879364D7D} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation)
Task: {7BD730F5-2D2C-414D-A96B-028036691365} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-23] (Google Inc.)
Task: {7DE2E9BE-06FC-4B78-AE19-C87EBB01D6BB} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation)
Task: {8D2A1FB9-D9D6-4FCC-93A6-B4440188F340} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation)
Task: {99F973DB-AE0B-4CC3-B8A6-9B202955A605} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-23] (Google Inc.)
Task: {A0AC1C28-4F3E-427F-BF24-99605D8FEDDF} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-20] (Microsoft Corporation)
Task: {D1B6C965-176F-4907-8FB2-CC155BB3EEA1} - System32\Tasks\{BA9F18D4-E395-4EAF-AA1F-E68AC28632A5} => pcalua.exe -a "C:\Program Files\AVAST Software\Avast\aswRunDll.exe" -c "C:\Program Files\AVAST Software\Avast\Setup\setiface.dll" RunSetup
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 405fe981-ffa0-480d-8fba-2444e54b8324.job => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

==================== Loaded Modules (whitelisted) =============

2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2010-10-20 15:23 - 2010-10-20 15:23 - 08801632 _____ () C:\Program Files\Microsoft Office\Office14\1033\GrooveIntlResource.dll
2014-08-26 17:38 - 2011-09-06 03:32 - 00140456 _____ () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
2015-01-19 14:32 - 2015-01-19 14:33 - 03925104 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2014-10-15 03:34 - 2014-10-15 03:34 - 00172544 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\1eeea3ab8d69ec722bdcb28b8eb8dd75\IsdiInterop.ni.dll
2014-08-17 17:41 - 2012-02-01 15:25 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IsdiInterop.dll
2014-08-17 17:39 - 2012-06-25 09:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\ACE.dll
2015-01-13 11:41 - 2015-01-13 11:41 - 16844464 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_257.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp.sys => ""="Driver"

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: serverca => 2
MSCONFIG\Services: servervo => 2
MSCONFIG\Services: SWUpdater => 2

========================= Accounts: ==========================

Account Admin (S-1-5-21-2650459626-1003566679-2177798267-1004 - Administrator - Enabled) => C:\Users\Account Admin
Administrator (S-1-5-21-2650459626-1003566679-2177798267-500 - Administrator - Disabled)
Ashley (S-1-5-21-2650459626-1003566679-2177798267-1000 - Administrator - Enabled) => C:\Users\Ashley
Chuck (S-1-5-21-2650459626-1003566679-2177798267-1001 - Administrator - Enabled) => C:\Users\Chuck
Guest (S-1-5-21-2650459626-1003566679-2177798267-501 - Limited - Enabled)
Kristi (S-1-5-21-2650459626-1003566679-2177798267-1002 - Limited - Enabled)
Teri (S-1-5-21-2650459626-1003566679-2177798267-1003 - Limited - Enabled)

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (01/19/2015 03:33:07 PM) (Source: .NET Runtime Optimization Service) (EventID: 1103) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown

Error: (01/19/2015 03:33:07 PM) (Source: .NET Runtime Optimization Service) (EventID: 1103) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown

Error: (01/19/2015 02:54:55 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (01/19/2015 02:51:57 PM) (Source: Windows Search Service) (EventID: 7042) (User: )
Description: The Windows Search Service is being stopped because there is a problem with the indexer: The catalog is corrupt.

Context: Windows Application, SystemIndex Catalog


Details:
    The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (01/19/2015 02:51:57 PM) (Source: Windows Search Service) (EventID: 7040) (User: )
Description: The search service has detected corrupted data files in the index {id=3800}. The service will attempt to automatically correct this problem by rebuilding the index.

Context: Windows Application, SystemIndex Catalog


Details:
    The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (01/19/2015 02:51:57 PM) (Source: Windows Search Service) (EventID: 7042) (User: )
Description: The Windows Search Service is being stopped because there is a problem with the indexer: The catalog is corrupt.


Details:
    The content index catalog is corrupt.   0xc0041801 (0xc0041801)

Error: (01/19/2015 02:51:57 PM) (Source: Windows Search Service) (EventID: 7040) (User: )
Description: The search service has detected corrupted data files in the index {id=3501}. The service will attempt to automatically correct this problem by rebuilding the index.


Details:
    The content index catalog is corrupt.   0xc0041801 (0xc0041801)

Error: (01/19/2015 02:41:01 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (01/19/2015 01:31:22 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (01/19/2015 00:09:08 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


System errors:
=============
Error: (01/19/2015 03:35:28 PM) (Source: BROWSER) (EventID: 8032) (User: )
Description: The browser service has failed to retrieve the backup list too many times on transport \Device\NetBT_Tcpip_{7D96FBD0-0833-4217-8B3A-B0673E8F6CD4}.
The backup browser is stopping.

Error: (01/19/2015 03:33:07 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
aswSnx

Error: (01/19/2015 03:33:07 PM) (Source: WMPNetworkSvc) (EventID: 14332) (User: )
Description: Service 'WMPNetworkSvc' did not start correctly because CoCreateInstance(CLSID_UPnPDeviceFinder) encountered error '0x80004005'. Verify that the UPnPHost service is running and that the UPnPHost component of Windows is installed properly.

Error: (01/19/2015 03:32:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The avast! Firewall service failed to start due to the following error:
%%2

Error: (01/19/2015 03:32:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The avast! Antivirus service failed to start due to the following error:
%%2

Error: (01/19/2015 02:57:27 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {995C996E-D918-4A8C-A302-45719A6F4EA7}

Error: (01/19/2015 02:55:39 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Modules Installer service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 120000 milliseconds: Restart the service.

Error: (01/19/2015 01:29:44 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
aswSnx

Error: (01/19/2015 01:29:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The avast! Firewall service failed to start due to the following error:
%%2

Error: (01/19/2015 01:29:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The avast! Antivirus service failed to start due to the following error:
%%2


Microsoft Office Sessions:
=========================
Error: (01/19/2015 03:33:07 PM) (Source: .NET Runtime Optimization Service) (EventID: 1103) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown

Error: (01/19/2015 03:33:07 PM) (Source: .NET Runtime Optimization Service) (EventID: 1103) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown

Error: (01/19/2015 02:54:55 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Ashley\Desktop\esetsmartinstaller_enu.exe

Error: (01/19/2015 02:51:57 PM) (Source: Windows Search Service) (EventID: 7042) (User: )
Description: Context: Windows Application, SystemIndex Catalog


Details:
    The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)
The catalog is corrupt

Error: (01/19/2015 02:51:57 PM) (Source: Windows Search Service) (EventID: 7040) (User: )
Description: Context: Windows Application, SystemIndex Catalog


Details:
    The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)
3800

Error: (01/19/2015 02:51:57 PM) (Source: Windows Search Service) (EventID: 7042) (User: )
Description:
Details:
    The content index catalog is corrupt.   0xc0041801 (0xc0041801)
The catalog is corrupt

Error: (01/19/2015 02:51:57 PM) (Source: Windows Search Service) (EventID: 7040) (User: )
Description:
Details:
    The content index catalog is corrupt.   0xc0041801 (0xc0041801)
3501

Error: (01/19/2015 02:41:01 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Ashley\Downloads\SoftonicDownloader_for_index-dat-suite.exe

Error: (01/19/2015 01:31:22 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (01/19/2015 00:09:08 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


==================== Memory info ===========================

Processor: Intel® Core™ i3-3220 CPU @ 3.30GHz
Percentage of memory in use: 30%
Total physical RAM: 8134.5 MB
Available physical RAM: 5644.32 MB
Total Pagefile: 16267.18 MB
Available Pagefile: 13295.45 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:232.66 GB) (Free:118.9 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 232.9 GB) (Disk ID: 7C7BECB8)

Partition: GPT Partition Type.

==================== End Of Log ============================



#53 LiquidTension

LiquidTension

    SuperMember

  • Retired Classroom Teacher
  • 2,566 posts

Posted 20 January 2015 - 02:09 PM

Hello, 
 
Looks like a Potentially Unwanted Programme (PUP) was picked up when some software was installed. It's not particularly serious, or something you should be concerned by. Lets remove it. 
 
STEP 1
EtQetiM.png Uninstall Software

  • Press the Windows Key pdKOQKY.png + r on your keyboard at the same time. Type appwiz.cpl and click OK.
  • Search for the following programmes, right-click and click Uninstall.
  • Note: Ensure you decline offers of additional software if applicable.
    • Softonic Assistant
  • Follow the prompts.
  • Reboot if necessary.
     

STEP 2
xlK5Hdb.png Farbar Recovery Scan Tool (FRST) Script

  • Press the Windows Key pdKOQKY.png + r on your keyboard at the same time. Type Notepad and click OK.
  • Copy the entire contents of the codebox below and paste into the Notepad document.
    start
    HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
    HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
    HKU\S-1-5-21-2650459626-1003566679-2177798267-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
    CMD: ipconfig /flushdns
    EmptyTemp:
    end
  • Click FileSave As and type fixlist.txt as the File Name
  • Important: The file must be saved in the same location as FRST64.exe. 

NOTICE: This script is intended for use on this particular machine. Do not use this script on any other machine; doing so may cause damage to your Operating System.

  • Right-Click FRST64.exe and select AVOiBNU.jpg Run as administrator to run the programme.
  • Click Fix.
  • A log (Fixlog.txt) will open on your desktop. Copy the contents of the log and paste in your next reply.
     

------------------------
 
Now do the following.

  • Download the avast! Uninstall Utility. Follow the instructions to run the programme. 
  • Download and install avast! Internet Security. You must be connected to the Internet in order to install avast!. 
  • Using your license information, activate the product.
  • Confirm the programme functions correctly, and the Firewall component is enabled. 
  • Ensure avast! is fully updated, and run a scan. 
     

------------------------
 
Please let me know how the machine is behaving after you've done the above.


50QfLth.png

 

Would you like to help others with malware removal? Join our Classroom and learn how!


#54 jeff matthews

jeff matthews

    Advanced Member

  • Authentic Member
  • PipPipPipPip
  • 781 posts

Posted 20 January 2015 - 08:21 PM

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 19-01-2015
Ran by Ashley at 2015-01-20 17:41:39 Run:4
Running from C:\Users\Ashley\Desktop
Loaded Profiles: Ashley (Available profiles: Ashley & Chuck & Account Admin)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
start
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-2650459626-1003566679-2177798267-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
CMD: ipconfig /flushdns
EmptyTemp:
end
*****************

"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
"HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
"HKU\S-1-5-21-2650459626-1003566679-2177798267-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.

=========  ipconfig /flushdns =========


Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========= End of CMD: =========

EmptyTemp: => Removed 845.9 MB temporary data.


The system needed a reboot.

==== End of Fixlog 17:41:44 ====



#55 jeff matthews

jeff matthews

    Advanced Member

  • Authentic Member
  • PipPipPipPip
  • 781 posts

Posted 20 January 2015 - 09:09 PM

Hi i see your on here now. I have a serous issue now. I don't know if this happened when i ran the Fix or if it happened after i Rebooted after installing the lisence code to activate AVast. But now ALL keyboard functionally is broken. I have tried different keyboards that i know work, both via USB and PS2. Nothing works. The mouse seems to work fine.

 

Though on the machine i did have some similar lags with the mouse like i did before when the mouse and keyboard USB went out. But this is different. The mouse is working but all keyboards are disabled or something. I tried using a Windows 7 disk to repair it but it was telling me it was incompatible version? I did see last known good configuration but i am having a bit of an issue accessing that system menu manually. I tried pressing down F8, it just takes me to the boot priority mode.

 

In any case, i think one of the applications I ran deleted one of the important DLL files or something of that nature that was directly connected to the functionality of the keyboards. But it is a problem cause just do not know what to do now, i can't access anything if i am unable to login. Thankfully i did create an extra admin account that was not password protected so i am able to login to there and access some things via mouse. But its kind of hard to do anything with no keyboard functionality. This may be something that i might have to fix with a thumb drive repair or Disk repair.

 

 

I also rebooted the machine several times and one such time, the machine turned off completely. Is it bad to restart the machine to many times.?

 

Hopefully you can reply tonight, that would be nice.


Edited by jeff matthews, 20 January 2015 - 09:16 PM.

    Advertisements

Register to Remove


#56 LiquidTension

LiquidTension

    SuperMember

  • Retired Classroom Teacher
  • 2,566 posts

Posted 21 January 2015 - 12:19 PM

Hello,

The continual problems are symptomatic of deep seated problems in the OS.

Before we consider an R/R, I think it would be beneficial to test Linux further. Despite your Linux test being successful, I think this test was relatively short. I'm inclined to say a 3 day test or longer, working the machine hard testing various things (surfing, composing documents, rebooting, etc) is the best course of action. We may well find there are indeed issues with your hardware.

If not - a reformat/reinstall of your HDD/OS is going to be the best way forward, and resolution to what appears to be issue after issue.

50QfLth.png

 

Would you like to help others with malware removal? Join our Classroom and learn how!


#57 jeff matthews

jeff matthews

    Advanced Member

  • Authentic Member
  • PipPipPipPip
  • 781 posts

Posted 21 January 2015 - 03:16 PM

I will test out linux more extensively for sure and find out if this is a hardware related issue or a software. But i have to ask, is there away we can use repair recovery console or by using the system restore from the system set up menu to restore the machine to an early date? I am almost possible this method may work if there was any DLL or important file replaced/delete, in the OS due to all of the extensive cleaning operations we ran, then that should fix it. Of course doing so will reset some of the operations we performed, but will have to complete them again. I am just having an issue accessing the system setup for some reason.

 

I am not sure if it will root out the problem permanently, but if i can gain access to my keyboard again, then i can see bout fixing the related issue more easily with out having to reformat/partition my drive. That is the very last case scenario and that is going to be quite alot of work to accomplish with all the data that is on here and all of the configurations and software/drivers i need to re-install.

 

First of all i am going to test linux and if the mouse and keyboard work fine in linux, then i think we can rule out the hardware issue, if it doesn't then its most definitely related to hardware.

 

EDIT: Ok well after running Linux, the mouse and keyboard work perfectly. There are no issue's but i will continue to play around with it for a bit. On the windows OS, the mouse lags some what but is still operational, but the keyboard does not work in the windows platform at all. How ever and i should of known this before, but the keyboard does work during system start up, other wise i would not be able to even access the bios. This is clearly a software issue with windows it self and not a related hardware problem that i can see.

 

Like i mentioned in my above post, if i can access system restore "system repair with the windows file settings" in the system set up menu, i may be able to undo what ever damage took place during the use of applications or what ever it was that suddenly cause the keyboard to malfunction. Even maybe windows re-install of primary system files only but by leaving all the data intact may fix the issue. It may of not been related to any of the tools we ran but is a deep rooted malware infection that caused corruption to a system file but im not sure. This definitely does not seem like a hardware issue. If it was i would be having connection problems regardless of what OS i am running, isn't that right?

 

What is your whole take on this and the operations we should perform?


Edited by jeff matthews, 21 January 2015 - 03:43 PM.


#58 LiquidTension

LiquidTension

    SuperMember

  • Retired Classroom Teacher
  • 2,566 posts

Posted 22 January 2015 - 10:04 AM

Hello, 
 
Before completely ruling out hardware as the culprit, I suggest you continue testing the machine in Linux for a couple more days. 
 
Some questions to consider -

  • When you replaced your motherboard, did you reinstall Windows?
  • Where does your Windows installation come from? 
  • If you did reinstall Windows after the replacement, did you download and install all relevant drivers, including chipset, video, audio, etc, or did you just rely on the drivers from your Windows 7 installation? 
     

Run this programme in Windows. 
 
DmqaAZx.png MGADiag

  • Please download MGADiag and save the file to your Desktop.
  • Right-Click MGADiag.exe and select AVOiBNU.jpg Run as administrator to run the programme.
  • Click continue.png.
  • Click copy.png.
  • Press the Windows Key pdKOQKY.png + r on your keyboard at the same time. Type Notepad and click OK.
  • Click Edit followed by Paste in Notepad.
  • Copy the contents of the log and paste in your next reply.

50QfLth.png

 

Would you like to help others with malware removal? Join our Classroom and learn how!


#59 jeff matthews

jeff matthews

    Advanced Member

  • Authentic Member
  • PipPipPipPip
  • 781 posts

Posted 22 January 2015 - 09:53 PM

Your trying to see if this windows format is a legitimate copy? Well i see your point, as certain pirated OS's can cause certain problems. But this version of windows is a Genuine copy but here is the log anyways. Also i had to go bout these instructions a bit differently, i had to use a thumb drive to copy and paste since your Copy and paste feature is disabled on your website with the mouse. Cause the keyboard does not work. The mouse also went out again, and i had to unplug it and plug it into the back USB slots and that fixed it for the time being. I want to make note that i have never ever had an issue like this with the keyboard not working to this extent. I am almost inclined to believe it could be a hardware issue, give all of the diagnostics we have done but then why would it work on linux? I am totally stumped.

 

I will continue to check it out though on Linux.

 

Diagnostic Report (1.9.0027.0):
-----------------------------------------
Windows Validation Data-->

Validation Code: 0
Cached Online Validation Code: 0x0
Windows Product Key: *****-*****-4BP6G-FCW64-M7JCQ
Windows Product Key Hash: N1BcWm0K4qm8ApBCQTaoId+nIw4=
Windows Product ID: 00359-OEM-8704385-01432
Windows Product ID Type: 3
Windows License Type: OEM System Builder
Windows OS version: 6.1.7601.2.00010300.1.0.003
ID: {ED6A7709-2D55-4832-80D8-1D438C59A6E5}(1)
Is Admin: Yes
TestCab: 0x0
LegitcheckControl ActiveX: N/A, hr = 0x80070002
Signed By: N/A, hr = 0x80070002
Product Name: Windows 7 Home Premium
Architecture: 0x00000009
Build lab: 7601.win7sp1_gdr.141211-1742
TTS Error:
Validation Diagnostic:
Resolution Status: N/A

Vista WgaER Data-->
ThreatID(s): N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002

Windows XP Notifications Data-->
Cached Result: N/A, hr = 0x80070002
File Exists: No
Version: N/A, hr = 0x80070002
WgaTray.exe Signed By: N/A, hr = 0x80070002
WgaLogon.dll Signed By: N/A, hr = 0x80070002

OGA Notifications Data-->
Cached Result: N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002
OGAExec.exe Signed By: N/A, hr = 0x80070002
OGAAddin.dll Signed By: N/A, hr = 0x80070002

OGA Data-->
Office Status: 109 N/A
OGA Version: N/A, 0x80070002
Signed By: N/A, hr = 0x80070002
Office Diagnostics: 025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3

Browser Data-->
Proxy settings: N/A
User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
Default Browser: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
Download signed ActiveX controls: Prompt
Download unsigned ActiveX controls: Disabled
Run ActiveX controls and plug-ins: Allowed
Initialize and script ActiveX controls not marked as safe: Disabled
Allow scripting of Internet Explorer Webbrowser control: Disabled
Active scripting: Allowed
Script ActiveX controls marked as safe for scripting: Allowed

File Scan Data-->

Other data-->
Office Details: <GenuineResults><MachineData><UGUID>{ED6A7709-2D55-4832-80D8-1D438C59A6E5}</UGUID><Version>1.9.0027.0</Version><OS>6.1.7601.2.00010300.1.0.003</OS><Architecture>x64</Architecture><PKey>*****-*****-*****-*****-M7JCQ</PKey><PID>00359-OEM-8704385-01432</PID><PIDType>3</PIDType><SID>S-1-5-21-2650459626-1003566679-2177798267</SID><SYSTEM><Manufacturer>System manufacturer</Manufacturer><Model>System Product Name</Model></SYSTEM><BIOS><Manufacturer>American Megatrends Inc.</Manufacturer><Version>1301</Version><SMBIOSVersion major="2" minor="7"/><Date>20131107000000.000000+000</Date></BIOS><HWID>10FE3807018400FE</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Pacific Standard Time(GMT-08:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM/><GANotification/></MachineData><Software><Office><Result>109</Result><Products/><Applications/></Office></Software></GenuineResults>  

Spsys.log Content: 0x80070002

Licensing Data-->
Software licensing service version: 6.1.7601.17514

Name: Windows® 7, HomePremium edition
Description: Windows Operating System - Windows® 7, OEM_COA_NSLP channel
Activation ID: 586bc076-c93d-429a-afe5-a69fbc644e88
Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
Extended PID: 00359-00174-043-801432-02-1033-7601.0000-2302014
Installation ID: 015985776710677652897501244055578145772094109426216981
Processor Certificate URL: http://go.microsoft....k/?LinkID=88338
Machine Certificate URL: http://go.microsoft....k/?LinkID=88339
Use License URL: http://go.microsoft....k/?LinkID=88341
Product Key Certificate URL: http://go.microsoft....k/?LinkID=88340
Partial Product Key: M7JCQ
License Status: Licensed
Remaining Windows rearm count: 3
Trusted time: 1/22/2015 7:40:24 PM

Windows Activation Technologies-->
HrOffline: 0x00000000
HrOnline: N/A
HealthStatus: 0x0000000000000000
Event Time Stamp: N/A
ActiveX: Registered, Version: 7.1.7600.16395
Admin Service: Registered, Version: 7.1.7600.16395
HealthStatus Bitmask Output:


HWID Data-->
HWID Hash Current: LAAAAAEAAQABAAEAAAACAAAAAQABAAEAln3MeJS1ClNOemIZYj0+kxjylmM=

OEM Activation 1.0 Data-->
N/A

OEM Activation 2.0 Data-->
BIOS valid for OA 2.0: yes, but no SLIC table
Windows marker version: N/A
OEMID and OEMTableID Consistent: N/A
BIOS Information:
  ACPI Table Name    OEMID Value    OEMTableID Value
  APIC            ALASKA        A M I
  FACP            ALASKA        A M I
  HPET            ALASKA        A M I
  MCFG            ALASKA        A M I
  FPDT            ALASKA        A M I
  SSDT            SataRe        SataTabl
  BGRT            ALASKA        A M I
  SSDT            SataRe        SataTabl
  SSDT            SataRe        SataTabl

 

 

To answer your questions?

 

  • When you replaced your motherboard, did you reinstall Windows? YES
  • Where does your Windows installation come from? I purchased an OEM copy off of amazon, 64bit
  • If you did reinstall Windows after the replacement, did you download and install all relevant drivers, including chipset, video, audio, etc, or did you just rely on the drivers from your Windows 7 installation? No of course not, i installed are related drivers and chipset drivers for the motherboard and all hardware components. You can check if you want? But i think we already ran tests that gave my driver information.

Edited by jeff matthews, 22 January 2015 - 09:55 PM.


#60 LiquidTension

LiquidTension

    SuperMember

  • Retired Classroom Teacher
  • 2,566 posts

Posted 23 January 2015 - 12:48 AM

Hello, 
 
The questions are simply to cover all bases. That all checks out. 
 
I think it would be worth performing a more thorough check on your hard drive before we start considering the reality of a reformat/reinstall.
 
Let me know how you get on with the the following, including your additional testing in Linux over the last day or so.

  • Please download SeaTools for DOS and create a bootable CD as instructed here and save it to your desktop
  • NOTE: If you have any difficulty booting up with this version, please use one of the legacy versions of SeaTools for DOS
  • If you do not have ISO burning software on your computer download and install Active@ ISO Burner then create a bootable disk with the downloaded file
  • Boot your troubled computer using the CD you just created. If necessary see here for instructions about how to boot to CD
  • After the program loads click I Accept
  • Left Click on your hard drive listed under Drive List (if you have a Seagate hard drive take special note of the caution below)
  • Click Basic Tests, then select Long Generic
  • Allow the process to run, which may take up to 3 hours, and report the findings in your reply
  • If the results indicate your hard drive failed the test and you have a Seagate hard drive installed DO NOT follow up on the suggestion to allow the program to attempt to resolve the issue. Doing so may cause permanent loss of data

50QfLth.png

 

Would you like to help others with malware removal? Join our Classroom and learn how!

Related Topics




Also tagged with one or more of these keywords: Viruses, Maleware, Infection, CCcleaner, Internet connection issue, Rootkits, trovi search bar

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users