Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-10-2016 Ran by Damian (24-10-2016 16:09:38) Running from C:\Users\Damian\Desktop\New folder (2) Windows 7 Professional Service Pack 1 (X64) (2016-10-19 11:15:30) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-938549846-2126480309-1688900008-500 - Administrator - Disabled) Damian (S-1-5-21-938549846-2126480309-1688900008-1001 - Administrator - Enabled) => C:\Users\Damian Guest (S-1-5-21-938549846-2126480309-1688900008-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-938549846-2126480309-1688900008-1002 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-938549846-2126480309-1688900008-1001\...\uTorrent) (Version: 3.4.9.42606 - BitTorrent Inc.) ACP Application (Version: 2016.1004.2140.45 - Advanced Micro Devices, Inc.) Hidden Adobe Flash Player 23 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 23.0.0.185 - Adobe Systems Incorporated) AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB) Catalyst Control Center Next Localization BR (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (Version: 2016.1004.2153.37567 - Advanced Micro Devices, Inc.) Hidden Cheat Engine 6.6 (HKLM-x32\...\Cheat Engine 6.6_is1) (Version: - Cheat Engine) Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve) DAEMON Tools Pro (HKLM-x32\...\DAEMON Tools Pro) (Version: 5.1.0.0333 - DT Soft Ltd) Demolish.and.Build.Company.2017.REPACK-KaOs Uninstaller v3.0 (HKLM-x32\...\Demolish.and.Build.Company.2017.REPACK-KaOs_is1) (Version: 3.0 - KaOsKrew) Dota 2 (HKLM\...\Steam App 570) (Version: - Valve) GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.59 - Google Inc.) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) KHOLAT (HKLM\...\Steam App 343710) (Version: - IMGN.PRO) League of Legends (HKLM-x32\...\League of Legends 4.1.2) (Version: 4.1.2 - Riot Games) League of Legends (x32 Version: 4.1.2 - Riot Games) Hidden Malwarebytes Anti-Malware wersja 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft) Origin (HKLM-x32\...\Origin) (Version: 10.1.1.35466 - Electronic Arts, Inc.) Pro Evolution Soccer 2016 myClub (HKLM\...\Steam App 407250) (Version: - Konami Digital Entertainment) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7910 - Realtek Semiconductor Corp.) Rust (HKLM\...\Steam App 252490) (Version: - Facepunch Studios) SHU (HKLM-x32\...\{DF11DD92-DBB8-4F3F-9564-A8BBDBE986F5}_is1) (Version: 1.0 - ScreenShu Software) Spotify (HKU\S-1-5-21-938549846-2126480309-1688900008-1001\...\Spotify) (Version: 1.0.39.157.g674ae377 - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKU\S-1-5-21-938549846-2126480309-1688900008-1001\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH) The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.0.732.20 - Electronic Arts Inc.) The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.0.0.0 - GOG.com) WinRAR 5.01 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) Worms W.M.D. (HKLM-x32\...\Worms W.M.D._is1) (Version: - ) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {41BE66A4-A49C-4BE1-AAA3-9B94EEE82D70} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-19] (Google Inc.) Task: {B9D80BAB-D9B2-4D75-BC4E-420A4D6A0AFA} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-24] (Adobe Systems Incorporated) Task: {D8D9656E-EB32-44EA-88C1-77841E0EDF28} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-10-04] (Advanced Micro Devices, Inc.) Task: {DD522736-F3D0-49FC-9179-506C4B1FC4CC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-19] (Google Inc.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ShortcutWithArgument: C:\Users\Damian\Desktop\Biczu - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 1" ShortcutWithArgument: C:\Users\Damian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Dingit Infinite HD App.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 1" --app-id=llnhnfikffkjbdnfallfpgikamegbbag ShortcutWithArgument: C:\Users\Damian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Infinite HD App.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 1" --app-id=laealigljflmglcgncipdbmbjgjdpiim ==================== Loaded Modules (Whitelisted) ============== 2016-10-20 22:40 - 2016-10-20 22:40 - 00076152 _____ () C:\Windows\system32\PnkBstrA.exe 2016-09-13 21:51 - 2016-09-13 21:51 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll 2016-09-13 21:51 - 2016-09-13 21:51 - 00739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll 2016-09-13 21:51 - 2016-09-13 21:51 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll 2016-09-13 21:51 - 2016-09-13 21:51 - 00071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll 2016-09-13 21:48 - 2016-09-13 21:48 - 00011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll 2016-09-13 21:48 - 2016-09-13 21:48 - 02013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 2016-10-21 14:53 - 2016-10-12 16:51 - 01058472 _____ () D:\Program Files (x86)\SHU\SHU.exe 2016-10-21 14:53 - 2016-10-12 16:51 - 00017064 _____ () D:\Program Files (x86)\SHU\QtWebEngineProcess.exe 2016-10-19 13:43 - 2016-10-12 07:56 - 02367080 _____ () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.59\libglesv2.dll 2016-10-19 13:43 - 2016-10-12 07:56 - 00107112 _____ () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.59\libegl.dll 2016-10-22 19:36 - 2006-06-06 06:06 - 00002560 _____ () d:\Program Files (x86)\DAEMON Tools Pro\MSIMG32.dll 2016-10-19 14:10 - 2016-10-19 19:03 - 51889264 _____ () C:\Users\Damian\AppData\Roaming\Spotify\libcef.dll 2016-10-21 14:53 - 2016-10-12 16:51 - 00140800 _____ () D:\Program Files (x86)\SHU\quazip.dll 2016-10-21 14:53 - 2016-08-02 17:48 - 01574912 _____ () D:\Program Files (x86)\SHU\libGLESv2.dll 2016-10-21 14:53 - 2016-08-02 17:49 - 00011264 _____ () D:\Program Files (x86)\SHU\libEGL.dll 2016-10-21 14:53 - 2016-10-12 16:49 - 00140288 _____ () D:\Program Files (x86)\SHU\SGM32.dll 2016-10-21 14:53 - 2016-10-12 16:49 - 00081408 _____ () D:\Program Files (x86)\SHU\SVM32.dll 2016-10-19 14:10 - 2016-10-19 19:03 - 01803888 _____ () C:\Users\Damian\AppData\Roaming\Spotify\libglesv2.dll 2016-10-19 14:10 - 2016-10-19 19:03 - 00086128 _____ () C:\Users\Damian\AppData\Roaming\Spotify\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2016-10-24 16:02 - 00000035 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-938549846-2126480309-1688900008-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Damian\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 92.63.32.2 - 92.63.32.3 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [TCP Query User{3F8CA7E4-C7CB-4D2E-8439-5828FD70191C}C:\users\damian\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\damian\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{A959BA8E-B328-4C98-8C26-18C7781BBB6B}C:\users\damian\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\damian\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{768C6A52-5FC1-42C3-AAD9-3A93FD6C0840}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe FirewallRules: [UDP Query User{48B33FE8-84B0-4829-AA97-8FC93FC4D551}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe ==================== Restore Points ========================= 23-10-2016 20:02:20 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 23-10-2016 20:02:32 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 23-10-2016 20:02:38 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 23-10-2016 20:29:28 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 23-10-2016 20:30:41 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 23-10-2016 20:31:22 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 23-10-2016 20:36:28 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 23-10-2016 21:31:43 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 23-10-2016 21:33:51 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 23-10-2016 21:34:36 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 23-10-2016 21:35:59 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 23-10-2016 21:36:14 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 23-10-2016 21:36:58 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 24-10-2016 15:50:16 RepairDNS Restore Point 2016-10-24 15:50:15 24-10-2016 16:02:00 Restore Point Created by FRST ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (10/24/2016 04:04:37 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (10/24/2016 04:02:00 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied. . This is often caused by incorrect security settings in either the writer or requestor process. Operation: Gathering Writer Data Context: Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220} Writer Name: System Writer Writer Instance ID: {86e8b832-640c-4fe6-ac2b-974d5a489150} Error: (10/24/2016 04:00:11 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (10/24/2016 03:08:49 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (10/24/2016 02:16:54 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: wfjdcgwn.exe, version: 2.2.19882.0, time stamp: 0x56e2cdca Faulting module name: wfjdcgwn.exe, version: 2.2.19882.0, time stamp: 0x56e2cdca Exception code: 0xc0000005 Fault offset: 0x0008dbb4 Faulting process id: 0x8a4 Faulting application start time: 0x01d22defa5ac6cf4 Faulting application path: C:\Users\Damian\Downloads\wfjdcgwn.exe Faulting module path: C:\Users\Damian\Downloads\wfjdcgwn.exe Report Id: bfe79bfc-99e3-11e6-a056-6c626de0e9f1 Error: (10/24/2016 01:11:32 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: witcher3.exe, version: 3.0.9.26022, time stamp: 0x575adba7 Faulting module name: ntdll.dll, version: 6.1.7601.23418, time stamp: 0x5708a857 Exception code: 0xc0000005 Fault offset: 0x000000000001815d Faulting process id: 0x54c Faulting application start time: 0x01d22de557d5ffaa Faulting application path: D:\GOG Games\The Witcher 3 Wild Hunt\bin\x64\witcher3.exe Faulting module path: C:\Windows\SYSTEM32\ntdll.dll Report Id: 9e37d61c-99da-11e6-a056-6c626de0e9f1 Error: (10/24/2016 12:02:57 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (10/24/2016 05:20:29 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (10/24/2016 12:46:34 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: steamwebhelper.exe, version: 3.65.13.80, time stamp: 0x57fed9f2 Faulting module name: steamwebhelper.exe, version: 3.65.13.80, time stamp: 0x57fed9f2 Exception code: 0xc0000005 Fault offset: 0x00037b59 Faulting process id: 0xb14 Faulting application start time: 0x01d22d7584bb1fd4 Faulting application path: D:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe Faulting module path: D:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe Report Id: 8c2007ab-9972-11e6-bdca-6c626de0e9f1 Error: (10/23/2016 10:07:14 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: svchost.exe_SysMain, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1 Faulting module name: sysmain.dll, version: 6.1.7601.18933, time stamp: 0x55a6a1d1 Exception code: 0xc0000005 Fault offset: 0x0000000000017ee1 Faulting process id: 0x80 Faulting application start time: 0x01d22d472afaaaaf Faulting application path: C:\Windows\System32\svchost.exe Faulting module path: c:\windows\system32\sysmain.dll Report Id: 49eb350c-995c-11e6-bdca-6c626de0e9f1 System errors: ============= Error: (10/24/2016 04:03:29 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Origin Web Helper Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion. Error: (10/24/2016 04:03:29 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: A timeout was reached (30000 milliseconds) while waiting for the Origin Web Helper Service service to connect. Error: (10/24/2016 04:02:00 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Software Protection service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 120000 milliseconds: Restart the service. Error: (10/24/2016 04:02:00 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Windows Modules Installer service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 120000 milliseconds: Restart the service. Error: (10/24/2016 04:02:00 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The PnkBstrA service terminated unexpectedly. It has done this 1 time(s). Error: (10/24/2016 04:02:00 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Windows Media Player Network Sharing Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service. Error: (10/24/2016 04:02:00 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Windows Search service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service. Error: (10/24/2016 04:01:59 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The Hi-Rez Studios Authenticate and Update Service service terminated unexpectedly. It has done this 1 time(s). Error: (10/24/2016 04:01:59 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The ACP User Service service terminated unexpectedly. It has done this 1 time(s). Error: (10/24/2016 04:01:59 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Print Spooler service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service. ==================== Memory info =========================== Processor: AMD Phenom(tm) II X4 840 Processor Percentage of memory in use: 49% Total physical RAM: 8191.18 MB Available physical RAM: 4163.34 MB Total Virtual: 16380.54 MB Available Virtual: 12325.83 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:119.14 GB) (Free:62.08 GB) NTFS ==>[drive with boot components (obtained from BCD)] Drive d: () (Fixed) (Total:465.76 GB) (Free:369.21 GB) NTFS Drive f: (GRMSP1.1_DVD) (CDROM) (Total:1.91 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 6CC06CC0) Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 119.2 GB) (Disk ID: 0FC97FB4) Partition 1: (Active) - (Size=119.1 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================