Additional scan result of Farbar Recovery Scan Tool (x64) Version:17-12-2015 Ran by Evenix (2015-12-17 12:25:25) Running from C:\Users\Evenix\Desktop Windows 8.1 Enterprise Evaluation (X64) (2015-06-21 22:54:09) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1644087666-2204009049-2821983492-500 - Administrator - Disabled) Evenix (S-1-5-21-1644087666-2204009049-2821983492-1001 - Administrator - Enabled) => C:\Users\Evenix Guest (S-1-5-21-1644087666-2204009049-2821983492-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1644087666-2204009049-2821983492-1003 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) ACE Online (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001\...\{A84EF2EA-FA7E-495C-9581-933496C9B9E9}}_is1) (Version: - Suba Games) ACE Online (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\{A84EF2EA-FA7E-495C-9581-933496C9B9E9}}_is1) (Version: - Suba Games) ACE Online (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\{A84EF2EA-FA7E-495C-9581-933496C9B9E9}}_is1) (Version: - Suba Games) ACE Online (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\{A84EF2EA-FA7E-495C-9581-933496C9B9E9}}_is1) (Version: - Suba Games) Active@ KillDisk 9.2 (HKLM\...\{81B939C1-0219-42B6-A352-D5E43F2BDFAE}_is1) (Version: 9.2 - LSoft Technologies Inc) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 15.009.20079 - Adobe Systems Incorporated) AirRivals PL (HKLM-x32\...\AirRivals PL_is1) (Version: - Gameforge 4D GmbH) Alien: Isolation (HKLM-x32\...\Steam App 214490) (Version: - Creative Assembly) Arma 2 (HKLM-x32\...\Steam App 33910) (Version: - Bohemia Interactive) Arma 2: DayZ Mod (HKLM-x32\...\Steam App 224580) (Version: - Bohemia Interactive) Arma 2: Operation Arrowhead (HKLM-x32\...\Steam App 33930) (Version: - Bohemia Interactive) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.15.129 - Avira Operations GmbH & Co. KG) Avira Launcher (HKLM-x32\...\{5b07d59f-99e0-4c52-ad25-965f7e38d6ac}) (Version: 1.1.51.19070 - Avira Operations GmbH & Co. KG) Avira Launcher (x32 Version: 1.1.51.19070 - Avira Operations GmbH & Co. KG) Hidden BattlEye for OA Uninstall (HKLM-x32\...\BattlEye for OA) (Version: - ) Car Mechanic Simulator 2015 (HKLM-x32\...\Steam App 320300) (Version: - Red Dot Games) CCleaner (HKLM\...\CCleaner) (Version: 5.09 - Piriform) ChrisPC Win Experience Index 3.30 (HKLM-x32\...\{1116089C-14B5-1A23-8113-6124567ABCDE}_is1) (Version: - Chris P.C. srl) ClickOnceSetup (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001\...\5b017c06d007acff) (Version: 1.0.0.0 - ClickOnceSetup) ClickOnceSetup (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\5b017c06d007acff) (Version: 1.0.0.0 - ClickOnceSetup) ClickOnceSetup (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\5b017c06d007acff) (Version: 1.0.0.0 - ClickOnceSetup) ClickOnceSetup (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\5b017c06d007acff) (Version: 1.0.0.0 - ClickOnceSetup) Clownfish for Skype (HKLM-x32\...\Clownfish) (Version: - ) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) CPUID CPU-Z 1.73 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) CPUID HWMonitor 1.28 (HKLM\...\CPUID HWMonitor_is1) (Version: - ) Creative Live! Cam Sync (VF0520) Driver (1.01.04.00) (HKLM\...\Creative VF0520) (Version: - Creative Technology Ltd.) DayZ (HKLM-x32\...\Steam App 221100) (Version: - Bohemia Interactive) Don't Starve (HKLM-x32\...\Steam App 219740) (Version: - Klei Entertainment) Don't Starve Together Beta (HKLM-x32\...\Steam App 322330) (Version: - Klei Entertainment) Eraser 6.2.0.2969 (HKLM\...\{66AB13EA-E7D2-4CFC-9B66-8E9EE44C89EE}) (Version: 6.2.2969 - The Eraser Project) ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) FallenGears version 4.4.0.16 (HKLM-x32\...\{0313B4DA-5ADD-49E8-930F-63D1A5E1E5B7}_is1) (Version: 4.4.0.16 - FallenGears) Fallout 3 - Game of the Year Edition (HKLM-x32\...\Steam App 22370) (Version: - Bethesda Game Studios) Fallout 4 (HKLM-x32\...\Steam App 377160) (Version: - Bethesda Game Studios) Fractured Space (HKLM-x32\...\Steam App 310380) (Version: - Edge Case Games Ltd.) Gaming Mouse (HKLM-x32\...\$REGNAME) (Version: 1.0 - ) Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios) GG (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001\...\GG) (Version: 12 - GG Network S.A.) GG (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\GG) (Version: 12 - GG Network S.A.) GG (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\GG) (Version: 12 - GG Network S.A.) GG (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\GG) (Version: 12 - GG Network S.A.) GIGABYTE OC_GURU II (HKLM-x32\...\InstallShield_{EA298EC1-2B8F-4DA9-8C5B-BC1FCBBAD72F}) (Version: 1.69.0000 - GIGABYTE Technology Co.,Ltd.) GIGABYTE OC_GURU II (x32 Version: 1.69.0000 - GIGABYTE Technology Co.,Ltd.) Hidden GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.106 - Google Inc.) Google Earth Plug-in (HKLM-x32\...\{57BB4801-61C8-4E74-9672-2160728A461E}) (Version: 7.1.5.1557 - Google) Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.6904.2028 - Google Inc.) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden Inkscape 0.91 (HKLM\...\{81922150-317E-4BB0-A31D-FF1C14F707C5}) (Version: 0.91 - inkscape.org) Intel(R) Chipset Device Software (x32 Version: 10.0.21 - Intel(R) Corporation) Hidden Intel(R) Network Connections 19.0.27.0 (HKLM\...\PROSetDX) (Version: 19.0.27.0 - Intel) Intel(R) Smart Connect Technology (HKLM\...\{3CC1CC76-AB3A-4360-AB6F-1355D05A2A17}) (Version: 5.0.10.2907 - Intel Corporation) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden Malwarebytes Anti-Malware wersja 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.226.1 - McAfee, Inc.) Microsoft SkyDrive (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001\...\SkyDriveSetup.exe) (Version: 16.4.6012.0828 - Microsoft Corporation) Microsoft SkyDrive (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\SkyDriveSetup.exe) (Version: 16.4.6012.0828 - Microsoft Corporation) Microsoft SkyDrive (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\SkyDriveSetup.exe) (Version: 16.4.6012.0828 - Microsoft Corporation) Microsoft SkyDrive (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\SkyDriveSetup.exe) (Version: 16.4.6012.0828 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Word 2013 - pl-pl (HKLM\...\WordRetail - pl-pl) (Version: 15.0.4433.1507 - Microsoft Corporation) My Game Long Name (HKLM\...\UDK-40312dcd-4b03-4b62-9c58-ee78c598c0d4) (Version: - Epic Games, Inc.) NVIDIA 3D Vision Controller Driver 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) NVIDIA 3D Vision Driver 358.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 358.50 - NVIDIA Corporation) NVIDIA GeForce Experience 2.5.15.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.15.54 - NVIDIA Corporation) NVIDIA Graphics Driver 358.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 358.50 - NVIDIA Corporation) NVIDIA HD Audio Driver 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation) NVIDIA Miracast Virtual Audio 358.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 358.50 - NVIDIA Corporation) NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4433.1507 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4433.1507 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4433.1507 - Microsoft Corporation) Hidden Opera Stable 32.0.1948.89 (HKLM-x32\...\Opera 32.0.1948.89) (Version: 32.0.1948.89 - Opera Software) Origin (HKLM-x32\...\Origin) (Version: 9.10.2.4863 - Electronic Arts, Inc.) Pirates of the Caribbean (HKLM-x32\...\{C1157104-1574-4BD2-99C7-0AAB5DF4275F}) (Version: - ) PlanetSide 2 (HKLM-x32\...\Steam App 218230) (Version: - Daybreak Games) PlanetSide 2 (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001\...\DG0-PlanetSide 2) (Version: - Sony Online Entertainment) PlanetSide 2 (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\DG0-PlanetSide 2) (Version: - Sony Online Entertainment) PlanetSide 2 (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\DG0-PlanetSide 2) (Version: - Sony Online Entertainment) PlanetSide 2 (HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\DG0-PlanetSide 2) (Version: - Sony Online Entertainment) Portal 2 (HKLM-x32\...\Steam App 620) (Version: - Valve) PowerISO (HKLM-x32\...\PowerISO) (Version: 6.3 - Power Software Ltd) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7004 - Realtek Semiconductor Corp.) SHIELD Streaming (Version: 4.1.500 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.5.15.54 - NVIDIA Corporation) Hidden ShredIt for Windows (HKLM-x32\...\{5C67F690-A83D-4415-9639-0105719219B8}) (Version: 1.0.0 - The Mireth Technology Corporation) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.5.0.9082 - Microsoft Corporation) Skype™ 7.16 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.16.102 - Skype Technologies S.A.) Sniper Elite V2 (HKLM-x32\...\Steam App 63380) (Version: - Rebellion) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Strike Vector (HKLM-x32\...\Steam App 246700) (Version: - Ragequit Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios) Thief (HKLM-x32\...\Steam App 239160) (Version: - Eidos-Montréal) War Thunder (HKLM-x32\...\Steam App 236390) (Version: - Gaijin Entertainment) XCOM: Enemy Unknown (HKLM-x32\...\Steam App 200510) (Version: - Firaxis Games) XFast LAN v9.05 (HKLM\...\XFast LAN) (Version: 9.05 - cFos Software GmbH, Bonn) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-1644087666-2204009049-2821983492-1001_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Evenix\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll (GG Network S.A.) ==================== Restore Points ========================= 01-12-2015 20:35:24 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 09-12-2015 00:49:45 Windows Update 17-12-2015 05:00:21 Scheduled Checkpoint ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0A750F04-4E23-4412-9A58-8715AE0CDC79} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-08-20] (Piriform Ltd) Task: {12140F62-1FA1-41F7-96F7-62259F4A26B6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-12-15] (Microsoft Corporation) Task: {264FE258-426B-46CF-84F9-4C496A892504} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {477F5FCB-65C3-4ED9-AB77-24DF6D7A41FE} - System32\Tasks\Opera scheduled Autoupdate 1444565485 => C:\Program Files (x86)\Opera\launcher.exe [2015-10-07] (Opera Software) Task: {72CFCA8D-8FF4-4911-AE20-996C3B478F59} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-10-13] (Microsoft Corporation) Task: {7786CE85-9449-4D8D-A2AF-5E948A2AE4B8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {7AD1B008-CA85-4200-8A74-3059CB2D2F59} - System32\Tasks\{E0DC0DF8-36E7-48CC-866F-32CBB3FCBB12} => Iexplore.exe hxxp://ui.skype.com/ui/0/7.6.0.103/pl/abandoninstall?source=lightinstaller&page=tsInstall Task: {9EEDA9B8-926A-4BCE-8012-B85E01030F2D} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-12-09] (Microsoft Corporation) Task: {ABB2FB11-903F-48A0-BDE4-FB600897C2A3} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-10-13] (Microsoft Corporation) Task: {D19490E5-00DD-47E5-8D92-2ABD619490AB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated) Task: {E8D93BAB-F593-4457-9AFD-1104BE1EF99A} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-12-15] (Microsoft Corporation) Task: {F730514A-36E0-4736-8386-7D1A4E4DFD41} - System32\Tasks\Microsoft Office 15 Sync Maintenance for BlueShadow-Evenix BlueShadow => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2015-12-15] (Microsoft Corporation) Task: {F942C242-D309-4D8E-B6A4-02F56EF1DC06} - System32\Tasks\{B221FAC5-B5C2-4414-AE50-680F251D3579} => Chrome.exe hxxp://ui.skype.com/ui/0/7.6.0.105/pl/abandoninstall?page=tsProgressBar (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2015-06-21 14:03 - 2015-10-03 03:49 - 00116344 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-08-26 00:01 - 2014-08-26 00:01 - 00209712 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe 2014-08-26 00:01 - 2014-08-26 00:01 - 00057648 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll 2014-08-26 00:01 - 2014-08-26 00:01 - 00057648 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTEncryptionCheck.dll 2014-08-26 00:01 - 2014-08-26 00:01 - 00037168 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTNetMon.dll 2015-12-16 17:05 - 2015-10-13 04:34 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2015-12-17 12:19 - 2015-12-17 12:19 - 00380416 _____ () C:\Users\Evenix\Downloads\xv36svcx.exe 2015-06-21 16:55 - 2015-10-12 04:05 - 00013088 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-11-16 12:38 - 2015-11-16 12:38 - 03715648 _____ () C:\Users\Evenix\AppData\Local\GG\Application\xulrunner\mozjs.dll 2015-11-16 12:38 - 2015-11-16 12:38 - 00122432 _____ () C:\Users\Evenix\AppData\Local\GG\Application\ggdrive\ZLIB1.dll 2015-12-16 21:39 - 2015-12-11 04:54 - 01583432 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.106\libglesv2.dll 2015-12-16 21:39 - 2015-12-11 04:54 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.106\libegl.dll 2015-11-25 20:18 - 2015-11-25 20:18 - 00147136 ____R () C:\Program Files (x86)\Skype\Phone\ssScreenVVS2.dll 2015-12-16 21:39 - 2015-12-11 04:54 - 16573256 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.106\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WLMS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WLMS => ""="Service" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-1644087666-2204009049-2821983492-1001\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-1644087666-2204009049-2821983492-1001\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-1644087666-2204009049-2821983492-1001\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-1644087666-2204009049-2821983492-1001\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\sony.com -> sony.com ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1644087666-2204009049-2821983492-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Evenix\AppData\Roaming\Microsoft\Windows Photo Viewer\Windows Photo Viewer Wallpaper.jpg HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Users\Evenix\AppData\Roaming\Microsoft\Windows Photo Viewer\Windows Photo Viewer Wallpaper.jpg HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Control Panel\Desktop\\Wallpaper -> C:\Users\Evenix\AppData\Roaming\Microsoft\Windows Photo Viewer\Windows Photo Viewer Wallpaper.jpg HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\Control Panel\Desktop\\Wallpaper -> C:\Users\Evenix\AppData\Roaming\Microsoft\Windows Photo Viewer\Windows Photo Viewer Wallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: ) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run32: => "$REGNAME" HKU\S-1-5-21-1644087666-2204009049-2821983492-1001\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-1644087666-2204009049-2821983492-1001\...\StartupApproved\Run: => "Clownfish" HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "Clownfish" HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\StartupApproved\Run: => "Clownfish" HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-1644087666-2204009049-2821983492-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\StartupApproved\Run: => "Clownfish" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{E2356BC9-A740-4E6C-89CA-998E16985FEA}] => (Allow) C:\Users\Evenix\Steam\Steam.exe FirewallRules: [{214FD5C1-BB51-4EA2-AABC-3AE61D3CB495}] => (Allow) C:\Users\Evenix\Steam\Steam.exe FirewallRules: [{F8D94F38-53D5-4A42-9604-B7D0882B4BF3}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{293A251D-55F2-42BE-B89F-B8DF7DF8DE5D}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{70307A2F-CD6F-4F25-990F-0AA0BF5356B8}] => (Allow) C:\Users\Evenix\Steam\bin\steamwebhelper.exe FirewallRules: [{7EBAFC78-900D-45BB-A7E6-84B9686211E5}] => (Allow) C:\Users\Evenix\Steam\bin\steamwebhelper.exe FirewallRules: [TCP Query User{54F12812-B38F-45D5-B72D-146FCDFDDAA4}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{EABAADC9-4C9F-4386-A573-7BADEAE835BA}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{76AD815F-A9E2-4CAE-89F3-24D19F8DB5B3}] => (Allow) X:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{76E9BCE6-5D75-4E46-8E5B-6D6986F12F5A}] => (Allow) X:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{B4516995-A9C7-4E35-A4B8-3750EB937343}] => (Allow) T:\SteamLibrary2\steamapps\common\Skyrim\SkyrimLauncher.exe FirewallRules: [{26A5D6D6-2681-4E0D-8C36-2121AA5625B2}] => (Allow) T:\SteamLibrary2\steamapps\common\Skyrim\SkyrimLauncher.exe FirewallRules: [{C2024063-3B58-48BF-86B8-EEC90C31EC2D}] => (Allow) T:\SteamLibrary2\steamapps\common\Arma 2\arma2.exe FirewallRules: [{A99F9D83-931A-4A32-B8FF-CBA7C7E57BEC}] => (Allow) T:\SteamLibrary2\steamapps\common\Arma 2\arma2.exe FirewallRules: [{29F6154A-276C-4763-89F2-89A030BD39F7}] => (Allow) T:\SteamLibrary2\steamapps\common\Portal 2\portal2.exe FirewallRules: [{695C5EA9-294F-4335-B36D-AD11B9810892}] => (Allow) T:\SteamLibrary2\steamapps\common\Portal 2\portal2.exe FirewallRules: [{C8ECC55A-E11D-4248-8128-75BD91F9E3B9}] => (Allow) T:\SteamLibrary2\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{908E644A-C3D3-46CF-B3D9-610B39DFBC44}] => (Allow) T:\SteamLibrary2\steamapps\common\GarrysMod\hl2.exe FirewallRules: [TCP Query User{C3367B30-D9AE-43E6-87A5-6A98C56A3486}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{A32AFE4A-8940-4ACF-986A-88E9700B026C}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{84D61EE9-58DB-4DF7-BE38-ED9EF93417E6}] => (Allow) T:\SteamLibrary2\steamapps\common\DayZ\DayZ_BE.exe FirewallRules: [{0F486640-49D6-405B-9FA3-2E4708FF1296}] => (Allow) T:\SteamLibrary2\steamapps\common\DayZ\DayZ_BE.exe FirewallRules: [{8E0CFF34-349F-4810-B4BC-1A0CD9AE020A}] => (Allow) T:\SteamLibrary2\steamapps\common\Sniper Elite V2\Launcher\SniperV2Launcher.exe FirewallRules: [{FA52C715-E1C4-40B7-9F07-FE6DFFD68FBF}] => (Allow) T:\SteamLibrary2\steamapps\common\Sniper Elite V2\Launcher\SniperV2Launcher.exe FirewallRules: [{5F028343-A068-4EF5-A3C6-1A610CAB412F}] => (Allow) T:\SteamLibrary2\steamapps\common\Alien Isolation\AI.exe FirewallRules: [{ECD17064-3F48-4D2F-A935-5A572114ECAA}] => (Allow) T:\SteamLibrary2\steamapps\common\Alien Isolation\AI.exe FirewallRules: [{ABEAFB87-A008-4B7C-8098-91B33CB43ADE}] => (Allow) T:\SteamLibrary2\steamapps\common\Thief\Binaries\Win64\Shipping-ThiefGame.exe FirewallRules: [{66F83EA8-F2FC-4A00-B52E-3047D1577938}] => (Allow) T:\SteamLibrary2\steamapps\common\Thief\Binaries\Win64\Shipping-ThiefGame.exe FirewallRules: [{08974D33-00F8-4728-AB86-490382BD9DA4}] => (Allow) T:\SteamLibrary2\steamapps\common\Fallout 3 goty\FalloutLauncher.exe FirewallRules: [{6ABFA1AA-64BE-4D83-AE88-D08A0347504C}] => (Allow) T:\SteamLibrary2\steamapps\common\Fallout 3 goty\FalloutLauncher.exe FirewallRules: [{416EDEF1-D5FE-43DC-AAAC-9F5FAA2141E5}] => (Allow) T:\SteamLibrary2\steamapps\common\XCom-Enemy-Unknown\Binaries\Win32\XComGame.exe FirewallRules: [{D86B2E0E-7DCA-40A8-9E3F-2D5A0AA8A493}] => (Allow) T:\SteamLibrary2\steamapps\common\XCom-Enemy-Unknown\Binaries\Win32\XComGame.exe FirewallRules: [TCP Query User{47497B8F-9F44-4D32-ADEC-66EADEB0632A}T:\steamlibrary2\steamapps\common\dayz\dayz.exe] => (Block) T:\steamlibrary2\steamapps\common\dayz\dayz.exe FirewallRules: [UDP Query User{4D2B36C9-DCCB-41E4-9E8C-28BBBB57EB07}T:\steamlibrary2\steamapps\common\dayz\dayz.exe] => (Block) T:\steamlibrary2\steamapps\common\dayz\dayz.exe FirewallRules: [{559DCA9C-1662-48AE-866D-AB8F6E8BFF29}] => (Allow) T:\SteamLibrary2\steamapps\common\StrikeVector\Binaries\Win32\UDK.exe FirewallRules: [{71C648E3-DEFD-4D2C-BEC6-655D0602E981}] => (Allow) T:\SteamLibrary2\steamapps\common\StrikeVector\Binaries\Win32\UDK.exe FirewallRules: [{42F5144B-47A8-42BF-A691-0A13094A43EF}] => (Allow) T:\SteamLibrary2\steamapps\common\PlanetSide 2\LaunchPad.exe FirewallRules: [{3C57549F-208E-4BDC-A563-50674AAD75CA}] => (Allow) T:\SteamLibrary2\steamapps\common\PlanetSide 2\LaunchPad.exe FirewallRules: [{824B91F0-DFBC-445E-B65E-F1140EF1B42C}] => (Allow) T:\SteamLibrary2\steamapps\common\War Thunder\launcher.exe FirewallRules: [{85BE41E3-DC66-4EF2-B5CF-A7822501486B}] => (Allow) T:\SteamLibrary2\steamapps\common\War Thunder\launcher.exe FirewallRules: [{BBC99334-CA6C-466B-A8EE-762E3408FC96}] => (Allow) T:\SteamLibrary2\steamapps\common\Space\spacegame\Binaries\Win64\spacegame-Win64-Shipping.exe FirewallRules: [{A035109A-4C40-455E-9FDF-7A01CD77C754}] => (Allow) T:\SteamLibrary2\steamapps\common\Space\spacegame\Binaries\Win64\spacegame-Win64-Shipping.exe FirewallRules: [TCP Query User{E8D608BF-AA54-4520-990F-FAC826924F74}C:\users\evenix\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Block) C:\users\evenix\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{1E1C9FDF-1BD9-4D79-8F6B-AEE4251CFBFC}C:\users\evenix\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Block) C:\users\evenix\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [{B7B81B53-5E79-44C4-9653-ADCFA3BE2EAC}] => (Allow) T:\SteamLibrary2\steamapps\common\dont_starve\bin\dontstarve_steam.exe FirewallRules: [{C5043407-D3FC-42AB-8A3E-18F8B6DCC054}] => (Allow) T:\SteamLibrary2\steamapps\common\dont_starve\bin\dontstarve_steam.exe FirewallRules: [{7A032EF3-760E-4C30-9BCF-DE44EAEF29CD}] => (Allow) T:\SteamLibrary2\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe FirewallRules: [{B8640688-9C92-49CB-9343-EC6A64F4AF7E}] => (Allow) T:\SteamLibrary2\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe FirewallRules: [{6470658C-D970-4799-BB8E-4D7CE9214EC9}] => (Allow) T:\SteamLibrary2\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{67DEB9E0-1758-4B7E-97FD-6283EBDF7B3A}] => (Allow) T:\SteamLibrary2\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{145C1386-9162-45E1-85EB-DA665483A1BA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{13B2C996-FF31-496D-B1DD-D62713BBD306}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{D3976A52-E292-46F9-B199-792555026AFB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{91B233EB-0D82-4309-ACBF-F843E382BDE3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{795D68BB-2317-44D1-8443-643975EA44C8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{FBF1DB00-A824-41D2-B433-23C877372ECF}] => (Allow) T:\SteamLibrary2\steamapps\common\Car Mechanic Simulator 2015\cms2015.exe FirewallRules: [{6915B157-9847-4BCD-809F-0AB2AC096969}] => (Allow) T:\SteamLibrary2\steamapps\common\Car Mechanic Simulator 2015\cms2015.exe FirewallRules: [{68E63598-4C8B-4DB2-8DB9-EB115DE031C3}] => (Allow) T:\SteamLibrary2\steamapps\common\Fallout 4\Fallout4Launcher.exe FirewallRules: [{595325C2-9807-4B64-AF47-0FBA0EA4DC6C}] => (Allow) T:\SteamLibrary2\steamapps\common\Fallout 4\Fallout4Launcher.exe FirewallRules: [{1A57892A-D0ED-4FD1-A907-A63384CDDAAD}] => (Allow) C:\Users\Evenix\Steam\steamapps\common\PlanetSide 2\LaunchPad.exe FirewallRules: [{95CD569D-3C6A-47D3-8401-FCCDC3AEB3FC}] => (Allow) C:\Users\Evenix\Steam\steamapps\common\PlanetSide 2\LaunchPad.exe FirewallRules: [TCP Query User{8B1893CE-87B2-44BC-8337-E0870FB0453E}C:\users\evenix\steam\steamapps\common\planetside 2\planetside2_x64.exe] => (Allow) C:\users\evenix\steam\steamapps\common\planetside 2\planetside2_x64.exe FirewallRules: [UDP Query User{19B52CF4-2135-4375-B910-0CAB815151D8}C:\users\evenix\steam\steamapps\common\planetside 2\planetside2_x64.exe] => (Allow) C:\users\evenix\steam\steamapps\common\planetside 2\planetside2_x64.exe FirewallRules: [{FB392C9F-E943-437C-8E00-7F4756E72F4C}] => (Allow) C:\Users\Evenix\Steam\steamapps\common\Arma 2\arma2.exe FirewallRules: [{B9622F34-BA1A-49BF-88A4-DCF3EE86F70D}] => (Allow) C:\Users\Evenix\Steam\steamapps\common\Arma 2\arma2.exe FirewallRules: [{5A1A39CC-F10D-441D-B0CF-FF6A16800A0E}] => (Allow) C:\Users\Evenix\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA_BE.exe FirewallRules: [{F64DFE8A-4EB7-4941-9EC9-331F4A87B708}] => (Allow) C:\Users\Evenix\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA_BE.exe FirewallRules: [{A8442983-C43C-4A00-B9FB-86F70483B8FA}] => (Allow) C:\Users\Evenix\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA.exe FirewallRules: [{3960C2CF-93B0-49FC-A411-C37BBEF01C15}] => (Allow) C:\Users\Evenix\Steam\steamapps\common\Arma 2 Operation Arrowhead\ArmA2OA.exe FirewallRules: [{E2B610DB-7D1F-4678-84B9-D252C591E090}] => (Allow) C:\Users\Evenix\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{2D40486B-0A2B-4BFA-A961-76066465B491}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (12/17/2015 11:20:09 AM) (Source: SideBySide) (EventID: 78) (User: ) Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest3. A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest. Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_a9ec6aab013aafee.manifest. Error: (12/17/2015 11:20:09 AM) (Source: SideBySide) (EventID: 78) (User: ) Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest3. A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest. Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_a9ec6aab013aafee.manifest. Error: (12/17/2015 11:20:07 AM) (Source: SideBySide) (EventID: 78) (User: ) Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest3. A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest. Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_a9ec6aab013aafee.manifest. Error: (12/17/2015 11:20:05 AM) (Source: SideBySide) (EventID: 78) (User: ) Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest3. A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest. Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_a9ec6aab013aafee.manifest. Error: (12/17/2015 11:06:39 AM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2005) (User: NT AUTHORITY) Description: There was an error communicating to the Orion DCS server Error: (12/17/2015 05:00:22 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Access is denied. . Error: (12/16/2015 08:05:44 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT AUTHORITY) Description: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The first DWORD in the Data section contains the error code. Error: (12/16/2015 08:05:44 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT AUTHORITY) Description: The performance strings in the Performance registry value is corrupted when process Performance extension counter provider. The BaseIndex value from the Performance registry is the first DWORD in the Data section, LastCounter value is the second DWORD in the Data section, and LastHelp value is the third DWORD in the Data section. Error: (12/16/2015 04:26:37 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT AUTHORITY) Description: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The first DWORD in the Data section contains the error code. Error: (12/16/2015 04:26:37 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT AUTHORITY) Description: The performance strings in the Performance registry value is corrupted when process Performance extension counter provider. The BaseIndex value from the Performance registry is the first DWORD in the Data section, LastCounter value is the second DWORD in the Data section, and LastHelp value is the third DWORD in the Data section. System errors: ============= Error: (12/17/2015 11:21:57 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The eapihdrv service failed to start due to the following error: %%1275 Error: (12/17/2015 11:21:57 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\Evenix\AppData\Local\Temp\ehdrv.sys Error: (12/17/2015 11:21:57 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The eapihdrv service failed to start due to the following error: %%1275 Error: (12/17/2015 11:21:57 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\Evenix\AppData\Local\Temp\ehdrv.sys Error: (12/17/2015 11:21:57 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The eapihdrv service failed to start due to the following error: %%1275 Error: (12/17/2015 11:21:57 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\Evenix\AppData\Local\Temp\ehdrv.sys Error: (12/17/2015 05:00:20 AM) (Source: DCOM) (EventID: 10010) (User: BlueShadow) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (12/17/2015 04:59:50 AM) (Source: DCOM) (EventID: 10010) (User: BlueShadow) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (12/16/2015 04:20:37 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 9:14:43 AM on ‎12/‎16/‎2015 was unexpected. Error: (12/16/2015 04:41:15 AM) (Source: DCOM) (EventID: 10010) (User: BlueShadow) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-4790K CPU @ 4.00GHz Percentage of memory in use: 29% Total physical RAM: 16332.08 MB Available physical RAM: 11504.17 MB Total Virtual: 18764.08 MB Available Virtual: 13199.4 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:111.79 GB) (Free:3.47 GB) NTFS Drive t: (New Volume) (Fixed) (Total:931.51 GB) (Free:854.71 GB) NTFS Drive x: (New Volume) (Fixed) (Total:167.34 GB) (Free:167.22 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 04DA04DA) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 167.7 GB) (Disk ID: 8E4705CA) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=167.3 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: 8E4705C2) Partition 1: (Not Active) - (Size=111.8 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================