Forums
New posts
Search forums
News
Security News
Technology News
Giveaways
Giveaways, Promotions and Contests
Discounts & Deals
Reviews
Users Reviews
Video Reviews
Support
Windows Malware Removal Help & Support
Mac Malware Removal Help & Support
Mobile Malware Removal Help & Support
Blog
Log in
Register
What's new
Search
Search titles only
By:
Search titles only
By:
Reply to thread
Menu
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Forums
Support
Windows Malware Removal Help & Support
Popup infection that I just cannot get rid of, followed other threads already
Message
<blockquote data-quote="Mnemoch" data-source="post: 379326" data-attributes="member: 36087"><p>Addition.txt:</p><p></p><p>Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-04-2015 01</p><p>Ran by Trevor at 2015-04-30 16:10:34</p><p>Running from C:\Users\Trevor\Downloads</p><p>Boot Mode: Normal</p><p>==========================================================</p><p></p><p></p><p>==================== Accounts: =============================</p><p></p><p>Administrator (S-1-5-21-1217871043-332092552-3241288942-500 - Administrator - Disabled)</p><p>Guest (S-1-5-21-1217871043-332092552-3241288942-501 - Limited - Disabled)</p><p>Trevor (S-1-5-21-1217871043-332092552-3241288942-1001 - Administrator - Enabled) => C:\Users\Trevor</p><p></p><p>==================== Security Center ========================</p><p></p><p>(If an entry is included in the fixlist, it will be removed.)</p><p></p><p>AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}</p><p>AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}</p><p></p><p>==================== Installed Programs ======================</p><p></p><p>(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)</p><p></p><p>7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - )</p><p>Adobe Reader XI (11.0.10) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)</p><p>D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden</p><p>Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden</p><p>Malwarebytes Anti-Malware version 2.1.4.1018 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.4.1018 - Malwarebytes Corporation)</p><p>Microsoft Office 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 15.0.4701.1002 - Microsoft Corporation)</p><p>Microsoft OneDrive (HKU\S-1-5-21-1217871043-332092552-3241288942-1001\...\OneDriveSetup.exe) (Version: 17.3.4726.0226 - Microsoft Corporation)</p><p>Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)</p><p>Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)</p><p>Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)</p><p>Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)</p><p>Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)</p><p>Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)</p><p>Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)</p><p>Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden</p><p>Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4701.1002 - Microsoft Corporation) Hidden</p><p>Office 15 Click-to-Run Licensing Component (Version: 15.0.4701.1002 - Microsoft Corporation) Hidden</p><p>Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4701.1002 - Microsoft Corporation) Hidden</p><p>TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.41459 - TeamViewer)</p><p>TunnelBear (x32 Version: 2.2.31.0 - TunnelBear) Hidden</p><p>Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)</p><p></p><p>==================== Custom CLSID (selected items): ==========================</p><p></p><p>(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)</p><p></p><p>CustomCLSID: HKU\S-1-5-21-1217871043-332092552-3241288942-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Trevor\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\amd64\FileSyncApi64.dll (Microsoft Corporation)</p><p></p><p>==================== Restore Points =========================</p><p></p><p>12-04-2015 05:51:18 Scheduled Checkpoint</p><p>16-04-2015 10:11:10 Windows Update</p><p>23-04-2015 18:02:53 Restore Operation</p><p>30-04-2015 13:24:34 Windows Update</p><p></p><p>==================== Hosts content: ==========================</p><p></p><p>(If needed Hosts: directive could be included in the fixlist to reset Hosts.)</p><p></p><p>2013-08-22 09:25 - 2013-08-22 09:25 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts</p><p></p><p>==================== Scheduled Tasks (whitelisted) =============</p><p></p><p>(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)</p><p></p><p>Task: {10429C76-4BBE-4D5B-89BB-63C58F3B42D3} - System32\Tasks\Microsoft Office 15 Sync Maintenance for MAPOO-Trevor mapoo => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2015-02-10] (Microsoft Corporation)</p><p>Task: {2D2FF638-E9DF-40B5-BBC2-2C008C92E533} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-23] (Microsoft Corporation)</p><p>Task: {38D96737-15E7-4E9E-960C-2239AACD4619} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\windows\system32\MRT.exe [2015-04-01] (Microsoft Corporation)</p><p>Task: {4025DBD4-D919-4593-A385-35B2FAC8B852} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-02-10] (Microsoft Corporation)</p><p>Task: {417C9FB0-0B8A-453F-B08A-10408676F861} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-23] (Microsoft Corporation)</p><p>Task: {8809C372-E03F-4CE2-BC25-53221B165652} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1217871043-332092552-3241288942-1001 => %localappdata%\Microsoft\OneDrive\OneDrive.exe</p><p>Task: {BF613507-9578-4E85-9A7F-BD9B65B63DB4} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-23] (Microsoft Corporation)</p><p>Task: {C048CD38-70A5-4488-A3CC-5184B4E51BD0} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-02-10] (Microsoft Corporation)</p><p>Task: {CEC72886-4996-4AB7-A4B0-130FE6D05443} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-23] (Microsoft Corporation)</p><p>Task: {F2367AA1-B8FA-4490-95AA-C224B46D0340} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-02-10] (Microsoft Corporation)</p><p>Task: {F5B8CC78-C5AD-4A2F-B592-E033466BC5CF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)</p><p></p><p>==================== Loaded Modules (whitelisted) ==============</p><p></p><p>2015-02-03 12:15 - 2014-05-20 08:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll</p><p>2015-03-14 20:53 - 2015-01-27 11:29 - 08898720 _____ () C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\1033\GrooveIntlResource.dll</p><p>2015-02-03 12:15 - 2015-02-03 14:27 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\AppVIsvStream32.dll</p><p>2015-02-03 12:15 - 2015-02-03 14:25 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\Office15\AppVIsvStream32.dll</p><p></p><p>==================== Alternate Data Streams (whitelisted) =========</p><p></p><p>(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)</p><p></p><p>AlternateDataStreams: C:\Users\Trevor\OneDrive:ms-properties</p><p></p><p>==================== Safe Mode (whitelisted) ===================</p><p></p><p>(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)</p><p></p><p></p><p>==================== EXE Association (whitelisted) ===============</p><p></p><p>(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)</p><p></p><p></p><p>==================== Internet Explorer trusted/restricted ===============</p><p></p><p>(If an entry is included in the fixlist, the associated entry will be removed from the registry.)</p><p></p><p></p><p>==================== Other Areas ============================</p><p></p><p>(Currently there is no automatic fix for this section.)</p><p></p><p>HKU\S-1-5-21-1217871043-332092552-3241288942-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Theme1\img2.jpg</p><p>DNS Servers: 31.168.228.248 - 82.166.96.246</p><p></p><p>==================== MSCONFIG/TASK MANAGER disabled items ==</p><p></p><p>(Currently there is no automatic fix for this section.)</p><p></p><p></p><p>==================== FirewallRules (whitelisted) ===============</p><p></p><p>(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)</p><p></p><p>FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139</p><p>FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe</p><p>FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe</p><p>FirewallRules: [{0C1150D7-1E2F-43B3-BE3C-C2DEA686EB9C}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe</p><p>FirewallRules: [{110C257A-5E10-4891-A769-29E810EAB29D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe</p><p>FirewallRules: [{257E2865-5E8C-45A2-86FF-F3A644236F28}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe</p><p>FirewallRules: [{D1AA7FA6-F067-4D9E-B66C-3D3FC71B6B00}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe</p><p>FirewallRules: [{6962DB5E-3575-4B13-9961-BDAC58529264}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe</p><p>FirewallRules: [{FAC930C2-481E-48C7-94F0-986BA0874B7A}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe</p><p>FirewallRules: [{2697A96A-3103-44AE-B96A-FB891D8E3C0F}] => (Allow) LPort=2869</p><p>FirewallRules: [{BB5A1B4E-40FB-4956-8E60-609DBF28ABD4}] => (Allow) LPort=1900</p><p>FirewallRules: [{DCB3371B-9F5A-4681-872B-DF048A1BA8BB}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe</p><p>FirewallRules: [{B5A0984D-1FD1-4377-8066-6ED87817B732}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe</p><p>FirewallRules: [{51A3FA29-8B2D-46DA-B89D-230BB13CA328}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe</p><p>FirewallRules: [{6471FC19-12AF-48E9-84F9-CC8398AB27A2}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe</p><p></p><p>==================== Faulty Device Manager Devices =============</p><p></p><p></p><p>==================== Event log errors: =========================</p><p></p><p>Application errors:</p><p>==================</p><p>Error: (04/30/2015 01:56:40 PM) (Source: ESENT) (EventID: 454) (User: )</p><p>Description: DllHost (3096) IndexedDb: Database recovery/restore failed with unexpected error -1216.</p><p></p><p>Error: (04/30/2015 01:56:40 PM) (Source: ESENT) (EventID: 494) (User: )</p><p>Description: DllHost (3096) IndexedDb: Database recovery failed with error -1216 because it encountered references to a database, 'C:\Users\Trevor\AppData\Local\Microsoft\Internet Explorer\Indexed DB\Internet.edb', which is no longer present. The database was not brought to a Clean Shutdown state before it was removed (or possibly moved or renamed). The database engine will not permit recovery to complete for this instance until the missing database is re-instated. If the database is truly no longer available and no longer required, procedures for recovering from this error are available in the Microsoft Knowledge Base or by following the "more information" link at the bottom of this message.</p><p></p><p>Error: (04/26/2015 01:13:36 AM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: Faulting application name: TeamViewer_Service.exe, version: 10.0.41459.0, time stamp: 0x5530d8ea</p><p>Faulting module name: ntdll.dll, version: 6.3.9600.17668, time stamp: 0x54c846bb</p><p>Exception code: 0xc0000374</p><p>Fault offset: 0x000e5934</p><p>Faulting process id: 0x1230</p><p>Faulting application start time: 0xTeamViewer_Service.exe0</p><p>Faulting application path: TeamViewer_Service.exe1</p><p>Faulting module path: TeamViewer_Service.exe2</p><p>Report Id: TeamViewer_Service.exe3</p><p>Faulting package full name: TeamViewer_Service.exe4</p><p>Faulting package-relative application ID: TeamViewer_Service.exe5</p><p></p><p>Error: (04/24/2015 08:21:52 PM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: Faulting application name: TeamViewer_Service.exe, version: 10.0.41459.0, time stamp: 0x5530d8ea</p><p>Faulting module name: ntdll.dll, version: 6.3.9600.17668, time stamp: 0x54c846bb</p><p>Exception code: 0xc0000374</p><p>Fault offset: 0x000e5934</p><p>Faulting process id: 0x6f0</p><p>Faulting application start time: 0xTeamViewer_Service.exe0</p><p>Faulting application path: TeamViewer_Service.exe1</p><p>Faulting module path: TeamViewer_Service.exe2</p><p>Report Id: TeamViewer_Service.exe3</p><p>Faulting package full name: TeamViewer_Service.exe4</p><p>Faulting package-relative application ID: TeamViewer_Service.exe5</p><p></p><p>Error: (04/23/2015 07:00:00 PM) (Source: ESENT) (EventID: 455) (User: )</p><p>Description: svchost (1296) SRUJet: Error -1811 (0xfffff8ed) occurred while opening logfile C:\windows\system32\SRU\SRU00434.log.</p><p></p><p>Error: (04/23/2015 06:42:53 PM) (Source: ESENT) (EventID: 454) (User: )</p><p>Description: DllHost (3164) IndexedDb: Database recovery/restore failed with unexpected error -1216.</p><p></p><p>Error: (04/23/2015 06:42:53 PM) (Source: ESENT) (EventID: 494) (User: )</p><p>Description: DllHost (3164) IndexedDb: Database recovery failed with error -1216 because it encountered references to a database, 'C:\Users\Trevor\AppData\Local\Microsoft\Internet Explorer\Indexed DB\Internet.edb', which is no longer present. The database was not brought to a Clean Shutdown state before it was removed (or possibly moved or renamed). The database engine will not permit recovery to complete for this instance until the missing database is re-instated. If the database is truly no longer available and no longer required, procedures for recovering from this error are available in the Microsoft Knowledge Base or by following the "more information" link at the bottom of this message.</p><p></p><p>Error: (04/23/2015 06:26:08 PM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: Faulting application name: TeamViewer_Desktop.exe, version: 10.0.40798.0, time stamp: 0x55190bea</p><p>Faulting module name: TeamViewer_Desktop.exe, version: 10.0.40798.0, time stamp: 0x55190bea</p><p>Exception code: 0xc0000409</p><p>Fault offset: 0x0037f6ea</p><p>Faulting process id: 0x2d0</p><p>Faulting application start time: 0xTeamViewer_Desktop.exe0</p><p>Faulting application path: TeamViewer_Desktop.exe1</p><p>Faulting module path: TeamViewer_Desktop.exe2</p><p>Report Id: TeamViewer_Desktop.exe3</p><p>Faulting package full name: TeamViewer_Desktop.exe4</p><p>Faulting package-relative application ID: TeamViewer_Desktop.exe5</p><p></p><p>Error: (04/23/2015 06:22:20 PM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: Faulting application name: chrome.exe, version: 41.0.2272.118, time stamp: 0x55199d5a</p><p>Faulting module name: chrome.dll, version: 41.0.2272.118, time stamp: 0x55199942</p><p>Exception code: 0x80000003</p><p>Fault offset: 0x004fe1b8</p><p>Faulting process id: 0x1280</p><p>Faulting application start time: 0xchrome.exe0</p><p>Faulting application path: chrome.exe1</p><p>Faulting module path: chrome.exe2</p><p>Report Id: chrome.exe3</p><p>Faulting package full name: chrome.exe4</p><p>Faulting package-relative application ID: chrome.exe5</p><p></p><p>Error: (04/23/2015 06:17:05 PM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: Faulting application name: chrome.exe, version: 41.0.2272.118, time stamp: 0x55199d5a</p><p>Faulting module name: chrome.dll, version: 41.0.2272.118, time stamp: 0x55199942</p><p>Exception code: 0x80000003</p><p>Fault offset: 0x004fe1b8</p><p>Faulting process id: 0x10a0</p><p>Faulting application start time: 0xchrome.exe0</p><p>Faulting application path: chrome.exe1</p><p>Faulting module path: chrome.exe2</p><p>Report Id: chrome.exe3</p><p>Faulting package full name: chrome.exe4</p><p>Faulting package-relative application ID: chrome.exe5</p><p></p><p></p><p>System errors:</p><p>=============</p><p>Error: (04/30/2015 04:03:58 PM) (Source: Service Control Manager) (EventID: 7000) (User: )</p><p>Description: The Software Protection service failed to start due to the following error: </p><p>%%1053</p><p></p><p>Error: (04/30/2015 04:03:58 PM) (Source: Service Control Manager) (EventID: 7009) (User: )</p><p>Description: A timeout was reached (30000 milliseconds) while waiting for the Software Protection service to connect.</p><p></p><p>Error: (04/30/2015 04:01:00 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)</p><p>Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable</p><p></p><p>Error: (04/30/2015 04:00:36 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)</p><p>Description: Installation Failure: Windows failed to install the following update with error 0x800f0922: Security Update for Internet Explorer Flash Player for Windows 8.1 for x64-based Systems (KB3049508).</p><p></p><p>Error: (04/30/2015 02:40:30 PM) (Source: Service Control Manager) (EventID: 7011) (User: )</p><p>Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ClickToRunSvc service.</p><p></p><p>Error: (04/30/2015 02:30:53 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)</p><p>Description: Installation Failure: Windows failed to install the following update with error 0x800f0922: Security Update for Internet Explorer Flash Player for Windows 8.1 for x64-based Systems (KB3049508).</p><p></p><p>Error: (04/30/2015 02:14:23 PM) (Source: DCOM) (EventID: 10010) (User: MAPOO)</p><p>Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39}</p><p></p><p>Error: (04/30/2015 02:13:00 PM) (Source: Service Control Manager) (EventID: 7030) (User: )</p><p>Description: The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.</p><p></p><p>Error: (04/30/2015 02:12:59 PM) (Source: Service Control Manager) (EventID: 7030) (User: )</p><p>Description: The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.</p><p></p><p>Error: (04/30/2015 02:12:59 PM) (Source: Service Control Manager) (EventID: 7030) (User: )</p><p>Description: The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.</p><p></p><p></p><p>Microsoft Office Sessions:</p><p>=========================</p><p>Error: (04/30/2015 01:56:40 PM) (Source: ESENT) (EventID: 454) (User: )</p><p>Description: DllHost3096IndexedDb: -1216</p><p></p><p>Error: (04/30/2015 01:56:40 PM) (Source: ESENT) (EventID: 494) (User: )</p><p>Description: DllHost3096IndexedDb: -1216C:\Users\Trevor\AppData\Local\Microsoft\Internet Explorer\Indexed DB\Internet.edb</p><p></p><p>Error: (04/26/2015 01:13:36 AM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: TeamViewer_Service.exe10.0.41459.05530d8eantdll.dll6.3.9600.1766854c846bbc0000374000e5934123001d07eee22bc7e14C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exeC:\windows\SYSTEM32\ntdll.dllfd83265d-ebd2-11e4-8270-60029255d7ee</p><p></p><p>Error: (04/24/2015 08:21:52 PM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: TeamViewer_Service.exe10.0.41459.05530d8eantdll.dll6.3.9600.1766854c846bbc0000374000e59346f001d07e20a6cf6cabC:\Program Files (x86)\TeamViewer\TeamViewer_Service.exeC:\windows\SYSTEM32\ntdll.dll118dd779-eae1-11e4-8270-60029255d7ee</p><p></p><p>Error: (04/23/2015 07:00:00 PM) (Source: ESENT) (EventID: 455) (User: )</p><p>Description: svchost1296SRUJet: C:\windows\system32\SRU\SRU00434.log-1811 (0xfffff8ed)</p><p></p><p>Error: (04/23/2015 06:42:53 PM) (Source: ESENT) (EventID: 454) (User: )</p><p>Description: DllHost3164IndexedDb: -1216</p><p></p><p>Error: (04/23/2015 06:42:53 PM) (Source: ESENT) (EventID: 494) (User: )</p><p>Description: DllHost3164IndexedDb: -1216C:\Users\Trevor\AppData\Local\Microsoft\Internet Explorer\Indexed DB\Internet.edb</p><p></p><p>Error: (04/23/2015 06:26:08 PM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: TeamViewer_Desktop.exe10.0.40798.055190beaTeamViewer_Desktop.exe10.0.40798.055190beac00004090037f6ea2d001d07e12c1aaf50bC:\Program Files (x86)\TeamViewer\TeamViewer_Desktop.exeC:\Program Files (x86)\TeamViewer\TeamViewer_Desktop.exebcaccf59-ea07-11e4-826a-60029255d7ee</p><p></p><p>Error: (04/23/2015 06:22:20 PM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: chrome.exe41.0.2272.11855199d5achrome.dll41.0.2272.1185519994280000003004fe1b8128001d07e13f68d4728C:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\41.0.2272.118\chrome.dll3487907f-ea07-11e4-826a-60029255d7ee</p><p></p><p>Error: (04/23/2015 06:17:05 PM) (Source: Application Error) (EventID: 1000) (User: )</p><p>Description: chrome.exe41.0.2272.11855199d5achrome.dll41.0.2272.1185519994280000003004fe1b810a001d07e133a403c79C:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\41.0.2272.118\chrome.dll78f88847-ea06-11e4-826a-60029255d7ee</p><p></p><p></p><p>==================== Memory info ===========================</p><p></p><p>Processor: Intel(R) Core(TM) i5-4300U CPU @ 1.90GHz</p><p>Percentage of memory in use: 47%</p><p>Total physical RAM: 4001.07 MB</p><p>Available physical RAM: 2118.18 MB</p><p>Total Pagefile: 4705.07 MB</p><p>Available Pagefile: 2640.62 MB</p><p>Total Virtual: 131072 MB</p><p>Available Virtual: 131071.79 MB</p><p></p><p>==================== Drives ================================</p><p></p><p>Drive c: (Windows) (Fixed) (Total:113.5 GB) (Free:63.97 GB) NTFS</p><p></p><p>==================== MBR & Partition Table ==================</p><p></p><p>========================================================</p><p>Disk: 0 (Size: 119.2 GB) (Disk ID: AEDB64B9)</p><p></p><p>Partition: GPT Partition Type.</p><p></p><p>==================== End Of Log ============================</p></blockquote><p></p>
[QUOTE="Mnemoch, post: 379326, member: 36087"] Addition.txt: Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-04-2015 01 Ran by Trevor at 2015-04-30 16:10:34 Running from C:\Users\Trevor\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1217871043-332092552-3241288942-500 - Administrator - Disabled) Guest (S-1-5-21-1217871043-332092552-3241288942-501 - Limited - Disabled) Trevor (S-1-5-21-1217871043-332092552-3241288942-1001 - Administrator - Enabled) => C:\Users\Trevor ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - ) Adobe Reader XI (11.0.10) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Malwarebytes Anti-Malware version 2.1.4.1018 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.4.1018 - Malwarebytes Corporation) Microsoft Office 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 15.0.4701.1002 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1217871043-332092552-3241288942-1001\...\OneDriveSetup.exe) (Version: 17.3.4726.0226 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4701.1002 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4701.1002 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4701.1002 - Microsoft Corporation) Hidden TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.41459 - TeamViewer) TunnelBear (x32 Version: 2.2.31.0 - TunnelBear) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-1217871043-332092552-3241288942-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Trevor\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\amd64\FileSyncApi64.dll (Microsoft Corporation) ==================== Restore Points ========================= 12-04-2015 05:51:18 Scheduled Checkpoint 16-04-2015 10:11:10 Windows Update 23-04-2015 18:02:53 Restore Operation 30-04-2015 13:24:34 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 09:25 - 2013-08-22 09:25 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {10429C76-4BBE-4D5B-89BB-63C58F3B42D3} - System32\Tasks\Microsoft Office 15 Sync Maintenance for MAPOO-Trevor mapoo => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2015-02-10] (Microsoft Corporation) Task: {2D2FF638-E9DF-40B5-BBC2-2C008C92E533} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-23] (Microsoft Corporation) Task: {38D96737-15E7-4E9E-960C-2239AACD4619} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\windows\system32\MRT.exe [2015-04-01] (Microsoft Corporation) Task: {4025DBD4-D919-4593-A385-35B2FAC8B852} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-02-10] (Microsoft Corporation) Task: {417C9FB0-0B8A-453F-B08A-10408676F861} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-23] (Microsoft Corporation) Task: {8809C372-E03F-4CE2-BC25-53221B165652} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1217871043-332092552-3241288942-1001 => %localappdata%\Microsoft\OneDrive\OneDrive.exe Task: {BF613507-9578-4E85-9A7F-BD9B65B63DB4} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-23] (Microsoft Corporation) Task: {C048CD38-70A5-4488-A3CC-5184B4E51BD0} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-02-10] (Microsoft Corporation) Task: {CEC72886-4996-4AB7-A4B0-130FE6D05443} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-23] (Microsoft Corporation) Task: {F2367AA1-B8FA-4490-95AA-C224B46D0340} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-02-10] (Microsoft Corporation) Task: {F5B8CC78-C5AD-4A2F-B592-E033466BC5CF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) ==================== Loaded Modules (whitelisted) ============== 2015-02-03 12:15 - 2014-05-20 08:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2015-03-14 20:53 - 2015-01-27 11:29 - 08898720 _____ () C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\1033\GrooveIntlResource.dll 2015-02-03 12:15 - 2015-02-03 14:27 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\AppVIsvStream32.dll 2015-02-03 12:15 - 2015-02-03 14:25 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\Office15\AppVIsvStream32.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\Trevor\OneDrive:ms-properties ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, the associated entry will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1217871043-332092552-3241288942-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Theme1\img2.jpg DNS Servers: 31.168.228.248 - 82.166.96.246 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (whitelisted) =============== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [{0C1150D7-1E2F-43B3-BE3C-C2DEA686EB9C}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe FirewallRules: [{110C257A-5E10-4891-A769-29E810EAB29D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{257E2865-5E8C-45A2-86FF-F3A644236F28}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{D1AA7FA6-F067-4D9E-B66C-3D3FC71B6B00}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{6962DB5E-3575-4B13-9961-BDAC58529264}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{FAC930C2-481E-48C7-94F0-986BA0874B7A}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{2697A96A-3103-44AE-B96A-FB891D8E3C0F}] => (Allow) LPort=2869 FirewallRules: [{BB5A1B4E-40FB-4956-8E60-609DBF28ABD4}] => (Allow) LPort=1900 FirewallRules: [{DCB3371B-9F5A-4681-872B-DF048A1BA8BB}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{B5A0984D-1FD1-4377-8066-6ED87817B732}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{51A3FA29-8B2D-46DA-B89D-230BB13CA328}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{6471FC19-12AF-48E9-84F9-CC8398AB27A2}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (04/30/2015 01:56:40 PM) (Source: ESENT) (EventID: 454) (User: ) Description: DllHost (3096) IndexedDb: Database recovery/restore failed with unexpected error -1216. Error: (04/30/2015 01:56:40 PM) (Source: ESENT) (EventID: 494) (User: ) Description: DllHost (3096) IndexedDb: Database recovery failed with error -1216 because it encountered references to a database, 'C:\Users\Trevor\AppData\Local\Microsoft\Internet Explorer\Indexed DB\Internet.edb', which is no longer present. The database was not brought to a Clean Shutdown state before it was removed (or possibly moved or renamed). The database engine will not permit recovery to complete for this instance until the missing database is re-instated. If the database is truly no longer available and no longer required, procedures for recovering from this error are available in the Microsoft Knowledge Base or by following the "more information" link at the bottom of this message. Error: (04/26/2015 01:13:36 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: TeamViewer_Service.exe, version: 10.0.41459.0, time stamp: 0x5530d8ea Faulting module name: ntdll.dll, version: 6.3.9600.17668, time stamp: 0x54c846bb Exception code: 0xc0000374 Fault offset: 0x000e5934 Faulting process id: 0x1230 Faulting application start time: 0xTeamViewer_Service.exe0 Faulting application path: TeamViewer_Service.exe1 Faulting module path: TeamViewer_Service.exe2 Report Id: TeamViewer_Service.exe3 Faulting package full name: TeamViewer_Service.exe4 Faulting package-relative application ID: TeamViewer_Service.exe5 Error: (04/24/2015 08:21:52 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: TeamViewer_Service.exe, version: 10.0.41459.0, time stamp: 0x5530d8ea Faulting module name: ntdll.dll, version: 6.3.9600.17668, time stamp: 0x54c846bb Exception code: 0xc0000374 Fault offset: 0x000e5934 Faulting process id: 0x6f0 Faulting application start time: 0xTeamViewer_Service.exe0 Faulting application path: TeamViewer_Service.exe1 Faulting module path: TeamViewer_Service.exe2 Report Id: TeamViewer_Service.exe3 Faulting package full name: TeamViewer_Service.exe4 Faulting package-relative application ID: TeamViewer_Service.exe5 Error: (04/23/2015 07:00:00 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (1296) SRUJet: Error -1811 (0xfffff8ed) occurred while opening logfile C:\windows\system32\SRU\SRU00434.log. Error: (04/23/2015 06:42:53 PM) (Source: ESENT) (EventID: 454) (User: ) Description: DllHost (3164) IndexedDb: Database recovery/restore failed with unexpected error -1216. Error: (04/23/2015 06:42:53 PM) (Source: ESENT) (EventID: 494) (User: ) Description: DllHost (3164) IndexedDb: Database recovery failed with error -1216 because it encountered references to a database, 'C:\Users\Trevor\AppData\Local\Microsoft\Internet Explorer\Indexed DB\Internet.edb', which is no longer present. The database was not brought to a Clean Shutdown state before it was removed (or possibly moved or renamed). The database engine will not permit recovery to complete for this instance until the missing database is re-instated. If the database is truly no longer available and no longer required, procedures for recovering from this error are available in the Microsoft Knowledge Base or by following the "more information" link at the bottom of this message. Error: (04/23/2015 06:26:08 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: TeamViewer_Desktop.exe, version: 10.0.40798.0, time stamp: 0x55190bea Faulting module name: TeamViewer_Desktop.exe, version: 10.0.40798.0, time stamp: 0x55190bea Exception code: 0xc0000409 Fault offset: 0x0037f6ea Faulting process id: 0x2d0 Faulting application start time: 0xTeamViewer_Desktop.exe0 Faulting application path: TeamViewer_Desktop.exe1 Faulting module path: TeamViewer_Desktop.exe2 Report Id: TeamViewer_Desktop.exe3 Faulting package full name: TeamViewer_Desktop.exe4 Faulting package-relative application ID: TeamViewer_Desktop.exe5 Error: (04/23/2015 06:22:20 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: chrome.exe, version: 41.0.2272.118, time stamp: 0x55199d5a Faulting module name: chrome.dll, version: 41.0.2272.118, time stamp: 0x55199942 Exception code: 0x80000003 Fault offset: 0x004fe1b8 Faulting process id: 0x1280 Faulting application start time: 0xchrome.exe0 Faulting application path: chrome.exe1 Faulting module path: chrome.exe2 Report Id: chrome.exe3 Faulting package full name: chrome.exe4 Faulting package-relative application ID: chrome.exe5 Error: (04/23/2015 06:17:05 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: chrome.exe, version: 41.0.2272.118, time stamp: 0x55199d5a Faulting module name: chrome.dll, version: 41.0.2272.118, time stamp: 0x55199942 Exception code: 0x80000003 Fault offset: 0x004fe1b8 Faulting process id: 0x10a0 Faulting application start time: 0xchrome.exe0 Faulting application path: chrome.exe1 Faulting module path: chrome.exe2 Report Id: chrome.exe3 Faulting package full name: chrome.exe4 Faulting package-relative application ID: chrome.exe5 System errors: ============= Error: (04/30/2015 04:03:58 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Software Protection service failed to start due to the following error: %%1053 Error: (04/30/2015 04:03:58 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: A timeout was reached (30000 milliseconds) while waiting for the Software Protection service to connect. Error: (04/30/2015 04:01:00 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable Error: (04/30/2015 04:00:36 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Installation Failure: Windows failed to install the following update with error 0x800f0922: Security Update for Internet Explorer Flash Player for Windows 8.1 for x64-based Systems (KB3049508). Error: (04/30/2015 02:40:30 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ClickToRunSvc service. Error: (04/30/2015 02:30:53 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Installation Failure: Windows failed to install the following update with error 0x800f0922: Security Update for Internet Explorer Flash Player for Windows 8.1 for x64-based Systems (KB3049508). Error: (04/30/2015 02:14:23 PM) (Source: DCOM) (EventID: 10010) (User: MAPOO) Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39} Error: (04/30/2015 02:13:00 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly. Error: (04/30/2015 02:12:59 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly. Error: (04/30/2015 02:12:59 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly. Microsoft Office Sessions: ========================= Error: (04/30/2015 01:56:40 PM) (Source: ESENT) (EventID: 454) (User: ) Description: DllHost3096IndexedDb: -1216 Error: (04/30/2015 01:56:40 PM) (Source: ESENT) (EventID: 494) (User: ) Description: DllHost3096IndexedDb: -1216C:\Users\Trevor\AppData\Local\Microsoft\Internet Explorer\Indexed DB\Internet.edb Error: (04/26/2015 01:13:36 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: TeamViewer_Service.exe10.0.41459.05530d8eantdll.dll6.3.9600.1766854c846bbc0000374000e5934123001d07eee22bc7e14C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exeC:\windows\SYSTEM32\ntdll.dllfd83265d-ebd2-11e4-8270-60029255d7ee Error: (04/24/2015 08:21:52 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: TeamViewer_Service.exe10.0.41459.05530d8eantdll.dll6.3.9600.1766854c846bbc0000374000e59346f001d07e20a6cf6cabC:\Program Files (x86)\TeamViewer\TeamViewer_Service.exeC:\windows\SYSTEM32\ntdll.dll118dd779-eae1-11e4-8270-60029255d7ee Error: (04/23/2015 07:00:00 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost1296SRUJet: C:\windows\system32\SRU\SRU00434.log-1811 (0xfffff8ed) Error: (04/23/2015 06:42:53 PM) (Source: ESENT) (EventID: 454) (User: ) Description: DllHost3164IndexedDb: -1216 Error: (04/23/2015 06:42:53 PM) (Source: ESENT) (EventID: 494) (User: ) Description: DllHost3164IndexedDb: -1216C:\Users\Trevor\AppData\Local\Microsoft\Internet Explorer\Indexed DB\Internet.edb Error: (04/23/2015 06:26:08 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: TeamViewer_Desktop.exe10.0.40798.055190beaTeamViewer_Desktop.exe10.0.40798.055190beac00004090037f6ea2d001d07e12c1aaf50bC:\Program Files (x86)\TeamViewer\TeamViewer_Desktop.exeC:\Program Files (x86)\TeamViewer\TeamViewer_Desktop.exebcaccf59-ea07-11e4-826a-60029255d7ee Error: (04/23/2015 06:22:20 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: chrome.exe41.0.2272.11855199d5achrome.dll41.0.2272.1185519994280000003004fe1b8128001d07e13f68d4728C:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\41.0.2272.118\chrome.dll3487907f-ea07-11e4-826a-60029255d7ee Error: (04/23/2015 06:17:05 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: chrome.exe41.0.2272.11855199d5achrome.dll41.0.2272.1185519994280000003004fe1b810a001d07e133a403c79C:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\41.0.2272.118\chrome.dll78f88847-ea06-11e4-826a-60029255d7ee ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-4300U CPU @ 1.90GHz Percentage of memory in use: 47% Total physical RAM: 4001.07 MB Available physical RAM: 2118.18 MB Total Pagefile: 4705.07 MB Available Pagefile: 2640.62 MB Total Virtual: 131072 MB Available Virtual: 131071.79 MB ==================== Drives ================================ Drive c: (Windows) (Fixed) (Total:113.5 GB) (Free:63.97 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 119.2 GB) (Disk ID: AEDB64B9) Partition: GPT Partition Type. ==================== End Of Log ============================ [/QUOTE]
Insert quotes…
Verification
Post reply
Top