Jump to content

reedst

Members
  • Posts

    1
  • Joined

  • Last visited

Reputation

0 Neutral
  1. Hi, I'm busy cleaning up my nephew's computer, and I ran Malwarebytes scan(mbam) to clean it up, which usually work fine. Many infections were found and removed. However, now every time the computer is rebooted or a program is run, Windows is throwing a "Bad Image" error. Clicking OK closes the error, and the programs work, but the errors are very annoying and pop up every few seconds. Any help would be greatly appreciated, thank you for your time. Here is an example of the error message: "Whatever.exe - Bad Image C:\WINDOWS\SYSTEM32\WEBWATCHERLSP.DLL is either not designed to run on Windows or it contains an error. Try installing the program again using the original installation media or contact your system administrator or the software vendor for support." Here are the logs requested from the Farbar Tool: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-04-2015 Ran by logan (administrator) on LOGAN on 26-04-2015 00:32:42 Running from C:\Users\logan\Desktop Loaded Profiles: logan (Available profiles: logan) Platform: Windows 8 (X64) OS Language: English (United States) Internet Explorer Version 10 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe (Qualcomm Atheros Commnucations) C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\AdminService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (Atheros) C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Qualcomm Atheros Commnucations) C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe () C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\ActivateDesktop.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (i-Funbox.com) C:\Program Files (x86)\i-Funbox DevTeam\iFunBox.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Qualcomm Atheros) C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtTray.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe (SoftThinks SAS) C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe (SoftThinks - Dell) C:\Program Files (x86)\Dell Backup and Recovery\Components\DBRUpdate\DBRUpd.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Dell Products, LP.) C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7191768 2013-06-27] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321176 2013-06-28] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321176 2013-06-28] (Realtek Semiconductor) HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [5762408 2013-03-05] (Dell Inc.) HKLM\...\Run: [btPreLoad] => C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtPreLoad.exe [64640 2012-12-28] () HKLM-x32\...\Run: [iAStorIcon] => C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [285240 2012-11-19] (Intel Corporation) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [102928 2012-10-23] (CyberLink Corp.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.) HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware (cleanup)] => C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe [54072 2015-04-14] (Malwarebytes Corporation) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer\Run: [btvStack] => C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe [129664 2012-12-28] (Qualcomm Atheros Commnucations) HKLM\...\Policies\Explorer: [NoFolderOptions] 0 HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-909959381-1521198263-1176217292-1001\...\Run: [iFunBox Fast App Install Handler] => C:\Program Files (x86)\i-Funbox DevTeam\iFunBox.exe [2591744 2015-01-28] (i-Funbox.com) ShellIconOverlayIdentifiers: [DBARFileBackuped] -> {831cebdd-6baf-4432-be76-9e0989c14aef} => C:\WINDOWS\system32\mscoree.dll [2012-06-02] (Microsoft Corporation) ShellIconOverlayIdentifiers: [DBARFileNotBackuped] -> {275e4fd7-21ef-45cf-a836-832e5d2cc1b3} => C:\WINDOWS\system32\mscoree.dll [2012-06-02] (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\S-1-5-21-909959381-1521198263-1176217292-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-909959381-1521198263-1176217292-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://dell13.msn.com/?pc=DCJB HKU\S-1-5-21-909959381-1521198263-1176217292-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://dell13.msn.com/?pc=DCJB SearchScopes: HKU\S-1-5-21-909959381-1521198263-1176217292-1001 -> DefaultScope {EFCB8FAC-172B-4CCE-A7F8-DA33D1F41BAD} URL = SearchScopes: HKU\S-1-5-21-909959381-1521198263-1176217292-1001 -> {EFCB8FAC-172B-4CCE-A7F8-DA33D1F41BAD} URL = BHO: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\IEPlugIn.dll [2012-12-28] (Qualcomm Atheros Commnucations) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\logan\AppData\Roaming\Mozilla\Firefox\Profiles\resybnhq.default FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_17_0_0_134.dll [2015-03-28] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-03-28] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-02-18] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation) FF user.js: detected! => C:\Users\logan\AppData\Roaming\Mozilla\Firefox\Profiles\resybnhq.default\user.js [2015-03-28] FF Extension: No Name - C:\Program Files (x86)\ver2TheBestDeals\190.xpi [Not Found] FF Extension: No Name - C:\Program Files (x86)\Consumer Input\Firefox\ciff-3.2.0-12099.xpi [Not Found] FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\healthcare@healthcaregovtool.com.xpi [Not Found] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AtherosSvc; C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\adminservice.exe [226944 2012-12-28] (Qualcomm Atheros Commnucations) [File not signed] S2 DellUpdate; C:\Program Files (x86)\Dell Update\DellUpService.exe [125440 2013-04-30] (Dell Inc.) [File not signed] R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] () R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488 2013-06-18] (Realtek Semiconductor) R2 SftService; C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe [1915480 2013-05-23] (SoftThinks SAS) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16048 2013-11-13] (Microsoft Corporation) R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe [81536 2012-12-26] (Atheros) [File not signed] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2012-12-28] (Qualcomm Atheros) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-25] (Microsoft Corporation) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink) S3 DellRbtn; C:\Windows\System32\drivers\DellRbtn.sys [10752 2013-01-24] (OSR Open Systems Resources, Inc.) S3 mbamchameleon; C:\WINDOWS\system32\drivers\mbamchameleon.sys [107736 2015-04-14] (Malwarebytes Corporation) U0 pbrlf; C:\Windows\System32\drivers\kgjdc.sys [79064 2015-04-26] (Malwarebytes Corporation) S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [28040 2012-12-21] (Synaptics Incorporated) R3 SmbDrvI; C:\Windows\System32\drivers\Smb_driver_Intel.sys [32136 2012-12-21] (Synaptics Incorporated) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-04-26 00:32 - 2015-04-26 00:32 - 00000000 ____D () C:\FRST 2015-04-26 00:31 - 2015-04-26 00:28 - 02099712 _____ (Farbar) C:\Users\logan\Desktop\FRST64.exe 2015-04-26 00:29 - 2015-04-26 00:29 - 00079064 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\kgjdc.sys 2015-04-25 23:52 - 2015-04-25 23:52 - 00000000 ___RD () C:\Users\logan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices 2015-04-25 23:18 - 2015-04-25 23:18 - 00000000 ____D () C:\ProgramData\AVAST Software 2015-04-25 18:26 - 2015-04-26 00:16 - 00136408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-04-25 18:26 - 2015-04-25 18:26 - 00001104 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2015-04-25 18:26 - 2015-04-25 18:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2015-04-25 18:26 - 2015-04-25 18:26 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-04-25 18:26 - 2015-04-25 18:26 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware 2015-04-25 18:26 - 2015-04-14 10:38 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-04-25 18:26 - 2015-04-14 10:37 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2015-04-25 18:21 - 2015-04-14 10:37 - 00107736 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-04-23 21:49 - 2015-04-23 21:49 - 00000000 ____D () C:\Users\logan\AppData\Local\Macromedia 2015-03-31 21:15 - 2015-03-31 21:36 - 00291856 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2015-03-28 03:13 - 2015-03-28 03:13 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2015-03-28 01:32 - 2015-04-25 23:24 - 00000000 ____D () C:\ProgramData\McAfee Security Scan 2015-03-28 01:27 - 2015-03-28 01:32 - 00000000 ____D () C:\Users\logan\AppData\Local\Adobe 2015-03-28 01:21 - 2015-03-28 01:21 - 00000000 _____ () C:\end 2015-03-27 22:05 - 2015-03-27 22:05 - 00000000 ____D () C:\Users\logan\AppData\Roaming\TaiG 2015-03-27 21:57 - 2015-03-27 21:57 - 00000000 ____D () C:\Users\logan\AppData\Local\pangu 2015-03-27 21:11 - 2015-03-04 17:24 - 00791496 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-03-27 21:11 - 2015-03-04 17:24 - 00177608 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-04-26 00:29 - 2012-07-26 04:12 - 00000000 ____D () C:\WINDOWS\tracing 2015-04-26 00:24 - 2015-01-22 17:16 - 00000000 ____D () C:\Users\logan\AppData\Roaming\uTorrent 2015-04-26 00:15 - 2015-01-26 01:21 - 00000000 ____D () C:\Users\logan\AppData\Local\CrashDumps 2015-04-26 00:15 - 2013-11-13 09:55 - 00000000 ____D () C:\Program Files (x86)\Dell Backup and Recovery 2015-04-26 00:00 - 2012-07-26 04:12 - 00000000 ____D () C:\WINDOWS\system32\sru 2015-04-25 23:51 - 2013-11-13 10:00 - 00000000 ____D () C:\ProgramData\McAfee 2015-04-25 23:51 - 2013-11-13 09:08 - 00031792 _____ () C:\WINDOWS\PFRO.log 2015-04-25 23:51 - 2012-07-26 03:22 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2015-04-25 23:51 - 2012-07-26 01:26 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2015-04-25 23:31 - 2013-11-13 09:22 - 01329570 _____ () C:\WINDOWS\WindowsUpdate.log 2015-04-25 23:23 - 2012-07-26 04:12 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP 2015-04-25 22:14 - 2012-07-26 01:26 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2015-04-25 22:13 - 2015-01-29 23:30 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2015-04-25 22:12 - 2012-07-26 03:59 - 00000000 ____D () C:\WINDOWS\CbsTemp 2015-04-25 18:21 - 2012-07-26 03:21 - 00018659 _____ () C:\WINDOWS\setupact.log 2015-04-25 01:06 - 2012-07-26 04:12 - 00000000 ____D () C:\WINDOWS\rescache 2015-04-25 00:53 - 2015-01-22 17:19 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-909959381-1521198263-1176217292-1001 2015-03-31 21:33 - 2012-07-26 04:12 - 00000000 ___RD () C:\WINDOWS\ToastData 2015-03-31 21:33 - 2012-07-26 04:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-03-31 21:33 - 2012-07-26 04:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-03-31 21:33 - 2012-07-26 04:12 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates 2015-03-31 21:32 - 2012-07-26 04:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-03-31 21:32 - 2012-07-26 04:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-03-31 21:32 - 2012-07-26 04:12 - 00000000 ____D () C:\WINDOWS\WinStore 2015-03-31 21:32 - 2012-07-26 04:12 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions 2015-03-31 21:32 - 2012-07-26 04:12 - 00000000 ____D () C:\Program Files\Windows Defender 2015-03-31 21:32 - 2012-07-26 04:12 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2015-03-31 21:32 - 2012-07-26 04:12 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2015-03-31 21:32 - 2012-07-26 01:38 - 00000000 ____D () C:\WINDOWS\system32\oobe 2015-03-28 12:10 - 2015-01-26 17:57 - 00000000 ____D () C:\Users\logan\AppData\Roaming\PCDr 2015-03-28 04:53 - 2015-01-26 18:10 - 00000000 ____D () C:\WINDOWS\system32\MRT 2015-03-28 03:38 - 2012-07-26 04:12 - 00000000 ____D () C:\WINDOWS\AUInstallAgent 2015-03-27 21:48 - 2015-01-30 00:03 - 00000000 ____D () C:\Users\logan\AppData\Roaming\iFunbox_UserCache ==================== Files in the root of some directories ======= 2013-11-13 09:54 - 2013-11-13 09:55 - 0000119 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log 2013-11-13 09:50 - 2013-11-13 09:51 - 0000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log 2013-11-13 09:51 - 2013-11-13 09:53 - 0000111 _____ () C:\ProgramData\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}.log 2013-11-13 09:50 - 2013-11-13 09:50 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log 2013-11-13 09:53 - 2013-11-13 09:54 - 0000108 _____ () C:\ProgramData\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}.log Some content of TEMP: ==================== C:\Users\logan\AppData\Local\Temp\0056131430018527mcinst.exe C:\Users\logan\AppData\Local\Temp\25B50D55-4894-BF5C-76A8-E121A392CC67.exe C:\Users\logan\AppData\Local\Temp\5596.exe C:\Users\logan\AppData\Local\Temp\B4D162BF-8BB9-B9A5-C076-A3CAB2859443.dll C:\Users\logan\AppData\Local\Temp\B4D162BF-8BB9-B9A5-C076-A3CAB2859443.exe C:\Users\logan\AppData\Local\Temp\compete.exe C:\Users\logan\AppData\Local\Temp\cw.exe C:\Users\logan\AppData\Local\Temp\mccspuninstall.exe C:\Users\logan\AppData\Local\Temp\SpOrder.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-04-25 17:24 ==================== End Of Log ============================ Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-04-2015 Ran by logan at 2015-04-26 00:33:20 Running from C:\Users\logan\Desktop Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-909959381-1521198263-1176217292-500 - Administrator - Disabled) Guest (S-1-5-21-909959381-1521198263-1176217292-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-909959381-1521198263-1176217292-1003 - Limited - Enabled) logan (S-1-5-21-909959381-1521198263-1176217292-1001 - Administrator - Enabled) => C:\Users\logan ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.134 - Adobe Systems Incorporated) Apple Application Support (HKLM-x32\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}) (Version: 8.0.5.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) CyberLink Media Suite Essentials (HKLM-x32\...\InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}) (Version: 10.0 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dell Backup and Recovery - Support Software (HKLM-x32\...\{A9668246-FB70-4103-A1E3-66C9BC2EFB49}) (Version: 1.5.0.0 - Dell Inc.) Dell Backup and Recovery (HKLM-x32\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 1.5.0.0 - Dell Inc.) Dell Digital Delivery (HKLM-x32\...\{98CB551E-EDB1-4535-82A6-E3258597F64E}) (Version: 2.7.1000.0 - Dell Products, LP) Dell Product Registration (HKLM-x32\...\{2A0F2CC5-3065-492C-8380-B03AA7106B1A}) (Version: 1.16.1 - Dell Inc.) Dell Touchpad (HKLM\...\SynTPDeinstKey) (Version: 16.3.7.0 - Synaptics Incorporated) Dell Update (HKLM-x32\...\{713A4123-9417-4FF7-AC14-F000D6C0C7AD}) (Version: 0.9.1115.0 - Dell Inc.) Dell WLAN and Bluetooth Client Installation (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Dell Inc.) DSC/AA Factory Installer (Version: 3.4.6299.48 - PC-Doctor, Inc.) Hidden iFunbox (v2.93.2440.749), iFunbox DevTeam (HKLM-x32\...\iFunbox_is1) (Version: v2.93.2440.749 - ) Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation) Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2867 - Intel Corporation) Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.7.0.1013 - Intel Corporation) iTunes (HKLM\...\{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}) (Version: 12.0.1.26 - Apple Inc.) Malwarebytes Anti-Malware version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation) Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Mozilla Firefox 36.0.4 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 36.0.4 (x86 en-US)) (Version: 36.0.4 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 35.0.1 - Mozilla) My Dell (HKLM\...\PC-Doctor for Windows) (Version: 3.4.6299.48 - PC-Doctor, Inc.) Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.218 - Qualcomm Atheros Communications) Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 10.15.018 - Dell Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6959 - Realtek Semiconductor Corp.) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.8400.39030 - Realtek Semiconductor Corp.) Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) Wondershare Dr.Fone for iOS(Build 5.5.1.2) (HKLM-x32\...\{A26F8BBD-EC10-4bdc-8AD8-F146825A8A63}_is1) (Version: 5.5.1.2 - Wondershare Software Co.,Ltd.) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= Could not list restore points. Check "winmgmt" service or repair WMI. ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2012-07-26 01:26 - 2012-07-26 01:26 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {033538E7-2A01-444C-BCE9-2CBD957C9216} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe Task: {0852207E-B9B1-47A9-8E10-1A0F4A06185B} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2012-12-03] (CyberLink Corp.) Task: {2CB6EC46-A9D8-447E-BFE9-4773BCE9B7BD} - \ConsumerInputUpdateTaskMachineCore No Task File <==== ATTENTION Task: {2E74947B-11EA-4C4E-A95E-75DF10D66F6B} - \Startup Time Check No Task File <==== ATTENTION Task: {4C11057B-3D35-4048-B716-5031E3A55769} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\My Dell\sessionchecker.exe [2013-08-21] (PC-Doctor, Inc.) Task: {4FC30A11-17E9-4804-87A9-128160336C55} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-02-26] (Microsoft Corporation) Task: {515FA85B-0F3A-443A-B3E7-0E4BA099C04D} - \ObronaCleanerUacSkip No Task File <==== ATTENTION Task: {8509A93A-3C6A-4936-81D1-8E675CC54CBE} - \Crossbrowse No Task File <==== ATTENTION Task: {8A52873D-75CA-45CA-8DCD-5EA9C12453FF} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-12-03] (CyberLink) Task: {B9C30DA5-DF9C-49E5-9A80-1AB9ADCBBCED} - \CIMT_daily_S-1-5-21-909959381-1521198263-1176217292-1001 No Task File <==== ATTENTION Task: {D8A52578-77D6-414E-AAD0-10F0DD9A7A6E} - \ConsumerInputUpdateTaskMachineUA No Task File <==== ATTENTION Task: {E316340B-D759-4F3F-A3A5-6D384B404A5B} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\My Dell\uaclauncher.exe [2013-08-21] (PC-Doctor, Inc.) Task: {E321F9A7-397C-4B98-91B0-393D6E3FEC05} - System32\Tasks\Synaptics TouchPad Enhancements => \Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-12-21] (Synaptics Incorporated) Task: {E908D733-CF12-4DE3-A182-161157D645EC} - System32\Tasks\Dell\Dell System Registration => C:\Program Files (x86)\System Registration\prodreg.exe [2012-07-09] (Dell, Inc.) Task: {FC50A81A-ABBB-4999-8C83-C7E1B81C2035} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {FD708DCA-3AC6-417B-9246-34980FF54819} - \SysHealth_Controller_Mon No Task File <==== ATTENTION ==================== Loaded Modules (whitelisted) ============== 2013-11-13 09:53 - 2012-04-24 22:43 - 00254512 _____ () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe 2013-11-13 09:56 - 2013-04-19 19:51 - 00020256 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBROverlayIcon.dll 2013-11-13 09:56 - 2013-04-19 19:52 - 00049440 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\STCommonShellIntegration.dll 2013-11-13 09:56 - 2013-04-19 19:51 - 00019232 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBROverlayNotBackuped.dll 2013-11-13 09:56 - 2013-04-19 19:51 - 00034080 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBRShellExtension.dll 2012-12-28 17:39 - 2012-12-28 17:39 - 00011264 _____ () C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll 2012-12-28 17:36 - 2012-12-28 17:36 - 00084480 _____ () C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\Modules\Map\MAP.dll 2012-12-28 17:41 - 2012-12-28 17:41 - 00012928 _____ () C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\ActivateDesktop.exe 2013-11-13 08:30 - 2012-10-16 06:38 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2012-12-28 17:42 - 2012-12-28 17:42 - 00384128 _____ () C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\ContactsApi.dll 2015-01-30 00:03 - 2014-12-11 19:33 - 07045632 _____ () C:\Program Files (x86)\i-Funbox DevTeam\libcef.dll 2014-10-11 15:06 - 2014-10-11 15:06 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-10-11 15:05 - 2014-10-11 15:05 - 01044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2014-10-11 15:05 - 2014-10-11 15:05 - 00237352 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxslt.dll 2013-11-13 09:42 - 2012-06-25 14:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\ACE.dll ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WebWatcherProxy => ""="service" ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, the associated entry will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-909959381-1521198263-1176217292-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Dell\Win LTBLUE 1920x1200.jpg DNS Servers: 192.168.1.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== Faulty Device Manager Devices ============= Could not list Devices. Check "winmgmt" service or repair WMI. ==================== Event log errors: ========================= Application errors: ================== Error: (04/26/2015 00:33:29 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Failed to schedule Software Protection service for re-start at 2115-04-02T04:33:29Z. Error Code: 0x80040154. Error: (04/26/2015 00:33:26 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: DeliveryService.exe, version: 2.7.1000.0, time stamp: 0x52029f5d Faulting module name: ServiceTagPlusPlus.dll, version: 0.0.0.0, time stamp: 0x52029f62 Exception code: 0xc0000005 Fault offset: 0x00001227 Faulting process id: 0x%9 Faulting application start time: 0xDeliveryService.exe0 Faulting application path: DeliveryService.exe1 Faulting module path: DeliveryService.exe2 Report Id: DeliveryService.exe3 Faulting package full name: DeliveryService.exe4 Faulting package-relative application ID: DeliveryService.exe5 Error: (04/26/2015 00:33:17 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: DeliveryService.exe, version: 2.7.1000.0, time stamp: 0x52029f5d Faulting module name: ServiceTagPlusPlus.dll, version: 0.0.0.0, time stamp: 0x52029f62 Exception code: 0xc0000005 Fault offset: 0x00001227 Faulting process id: 0x%9 Faulting application start time: 0xDeliveryService.exe0 Faulting application path: DeliveryService.exe1 Faulting module path: DeliveryService.exe2 Report Id: DeliveryService.exe3 Faulting package full name: DeliveryService.exe4 Faulting package-relative application ID: DeliveryService.exe5 Error: (04/26/2015 00:33:08 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: DeliveryService.exe, version: 2.7.1000.0, time stamp: 0x52029f5d Faulting module name: ServiceTagPlusPlus.dll, version: 0.0.0.0, time stamp: 0x52029f62 Exception code: 0xc0000005 Fault offset: 0x00001227 Faulting process id: 0x%9 Faulting application start time: 0xDeliveryService.exe0 Faulting application path: DeliveryService.exe1 Faulting module path: DeliveryService.exe2 Report Id: DeliveryService.exe3 Faulting package full name: DeliveryService.exe4 Faulting package-relative application ID: DeliveryService.exe5 Error: (04/26/2015 00:33:00 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: DeliveryService.exe, version: 2.7.1000.0, time stamp: 0x52029f5d Faulting module name: ServiceTagPlusPlus.dll, version: 0.0.0.0, time stamp: 0x52029f62 Exception code: 0xc0000005 Fault offset: 0x00001227 Faulting process id: 0x%9 Faulting application start time: 0xDeliveryService.exe0 Faulting application path: DeliveryService.exe1 Faulting module path: DeliveryService.exe2 Report Id: DeliveryService.exe3 Faulting package full name: DeliveryService.exe4 Faulting package-relative application ID: DeliveryService.exe5 Error: (04/26/2015 00:32:59 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Failed to schedule Software Protection service for re-start at 2115-04-02T04:32:59Z. Error Code: 0x80040154. Error: (04/26/2015 00:32:52 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: DeliveryService.exe, version: 2.7.1000.0, time stamp: 0x52029f5d Faulting module name: ServiceTagPlusPlus.dll, version: 0.0.0.0, time stamp: 0x52029f62 Exception code: 0xc0000005 Fault offset: 0x00001227 Faulting process id: 0x%9 Faulting application start time: 0xDeliveryService.exe0 Faulting application path: DeliveryService.exe1 Faulting module path: DeliveryService.exe2 Report Id: DeliveryService.exe3 Faulting package full name: DeliveryService.exe4 Faulting package-relative application ID: DeliveryService.exe5 Error: (04/26/2015 00:32:44 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: DeliveryService.exe, version: 2.7.1000.0, time stamp: 0x52029f5d Faulting module name: ServiceTagPlusPlus.dll, version: 0.0.0.0, time stamp: 0x52029f62 Exception code: 0xc0000005 Fault offset: 0x00001227 Faulting process id: 0x%9 Faulting application start time: 0xDeliveryService.exe0 Faulting application path: DeliveryService.exe1 Faulting module path: DeliveryService.exe2 Report Id: DeliveryService.exe3 Faulting package full name: DeliveryService.exe4 Faulting package-relative application ID: DeliveryService.exe5 Error: (04/26/2015 00:32:36 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: DeliveryService.exe, version: 2.7.1000.0, time stamp: 0x52029f5d Faulting module name: ServiceTagPlusPlus.dll, version: 0.0.0.0, time stamp: 0x52029f62 Exception code: 0xc0000005 Fault offset: 0x00001227 Faulting process id: 0x%9 Faulting application start time: 0xDeliveryService.exe0 Faulting application path: DeliveryService.exe1 Faulting module path: DeliveryService.exe2 Report Id: DeliveryService.exe3 Faulting package full name: DeliveryService.exe4 Faulting package-relative application ID: DeliveryService.exe5 Error: (04/26/2015 00:32:29 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Failed to schedule Software Protection service for re-start at 2115-04-02T04:32:29Z. Error Code: 0x80040154. System errors: ============= Error: (04/26/2015 00:33:26 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Dell Digital Delivery Service service terminated unexpectedly. It has done this 336 time(s). The following corrective action will be taken in 1000 milliseconds: Restart the service. Error: (04/26/2015 00:33:17 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Dell Digital Delivery Service service terminated unexpectedly. It has done this 335 time(s). The following corrective action will be taken in 1000 milliseconds: Restart the service. Error: (04/26/2015 00:33:08 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Dell Digital Delivery Service service terminated unexpectedly. It has done this 334 time(s). The following corrective action will be taken in 1000 milliseconds: Restart the service. Error: (04/26/2015 00:33:00 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Dell Digital Delivery Service service terminated unexpectedly. It has done this 333 time(s). The following corrective action will be taken in 1000 milliseconds: Restart the service. Error: (04/26/2015 00:32:52 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Dell Digital Delivery Service service terminated unexpectedly. It has done this 332 time(s). The following corrective action will be taken in 1000 milliseconds: Restart the service. Error: (04/26/2015 00:32:44 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Dell Digital Delivery Service service terminated unexpectedly. It has done this 331 time(s). The following corrective action will be taken in 1000 milliseconds: Restart the service. Error: (04/26/2015 00:32:36 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Dell Digital Delivery Service service terminated unexpectedly. It has done this 330 time(s). The following corrective action will be taken in 1000 milliseconds: Restart the service. Error: (04/26/2015 00:32:27 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Dell Digital Delivery Service service terminated unexpectedly. It has done this 329 time(s). The following corrective action will be taken in 1000 milliseconds: Restart the service. Error: (04/26/2015 00:32:19 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Dell Digital Delivery Service service terminated unexpectedly. It has done this 328 time(s). The following corrective action will be taken in 1000 milliseconds: Restart the service. Error: (04/26/2015 00:32:11 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Dell Digital Delivery Service service terminated unexpectedly. It has done this 327 time(s). The following corrective action will be taken in 1000 milliseconds: Restart the service. Microsoft Office Sessions: ========================= Error: (04/26/2015 00:33:29 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542115-04-02T04:33:29Z Error: (04/26/2015 00:33:26 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: DeliveryService.exe2.7.1000.052029f5dServiceTagPlusPlus.dll0.0.0.052029f62c000000500001227 Error: (04/26/2015 00:33:17 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: DeliveryService.exe2.7.1000.052029f5dServiceTagPlusPlus.dll0.0.0.052029f62c000000500001227 Error: (04/26/2015 00:33:08 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: DeliveryService.exe2.7.1000.052029f5dServiceTagPlusPlus.dll0.0.0.052029f62c000000500001227 Error: (04/26/2015 00:33:00 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: DeliveryService.exe2.7.1000.052029f5dServiceTagPlusPlus.dll0.0.0.052029f62c000000500001227 Error: (04/26/2015 00:32:59 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542115-04-02T04:32:59Z Error: (04/26/2015 00:32:52 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: DeliveryService.exe2.7.1000.052029f5dServiceTagPlusPlus.dll0.0.0.052029f62c000000500001227 Error: (04/26/2015 00:32:44 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: DeliveryService.exe2.7.1000.052029f5dServiceTagPlusPlus.dll0.0.0.052029f62c000000500001227 Error: (04/26/2015 00:32:36 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: DeliveryService.exe2.7.1000.052029f5dServiceTagPlusPlus.dll0.0.0.052029f62c000000500001227 Error: (04/26/2015 00:32:29 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542115-04-02T04:32:29Z ==================== Memory info =========================== Processor: Intel® Pentium® CPU 2127U @ 1.90GHz Percentage of memory in use: 30% Total physical RAM: 3977.27 MB Available physical RAM: 2763.19 MB Total Pagefile: 5193.27 MB Available Pagefile: 3962.4 MB Total Virtual: 8192 MB Available Virtual: 8191.78 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:451.95 GB) (Free:395.38 GB) NTFS Drive e: () (Removable) (Total:1.86 GB) (Free:1.82 GB) FAT Drive y: (WINRETOOLS) (Fixed) (Total:0.48 GB) (Free:0.2 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 0C34A2D3) Partition: GPT Partition Type. ======================================================== Disk: 1 (Size: 1.9 GB) (Disk ID: 00000000) Partition: GPT Partition Type. ==================== End Of Log ============================
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.