Additional scan result of Farbar Recovery Scan Tool (x64) Version: 22-03-2020
Ran by Jeqn (25-03-2020 14:43:41)
Running from C:\Users\Jeqn\Desktop
Windows 10 Pro Version 1909 18363.752 (X64) (2020-02-23 18:48:22)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

aboeg (S-1-5-21-3736719023-2009225824-1820632589-1003 - Limited - Enabled) => C:\Users\aboeg
Administrator (S-1-5-21-3736719023-2009225824-1820632589-500 - Administrator - Disabled)
Arnaud (S-1-5-21-3736719023-2009225824-1820632589-1001 - Limited - Enabled) => C:\Users\Arnaud
DefaultAccount (S-1-5-21-3736719023-2009225824-1820632589-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-3736719023-2009225824-1820632589-1000 - Limited - Disabled) => C:\Users\defaultuser0
Guest (S-1-5-21-3736719023-2009225824-1820632589-501 - Limited - Disabled)
Jeqn (S-1-5-21-3736719023-2009225824-1820632589-1004 - Administrator - Enabled) => C:\Users\Jeqn
WDAGUtilityAccount (S-1-5-21-3736719023-2009225824-1820632589-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov)
Android Studio (HKLM\...\Android Studio) (Version: 1.0 - Google Inc.)
Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Application de bureau Autodesk (HKLM-x32\...\Autodesk Desktop App) (Version: 6.2.0.174 - Autodesk)
ASUS Live Update (HKLM-x32\...\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}) (Version: 3.3.7 - ASUS)
Auto Mouse Click by MurGee.com v97.2 (HKLM-x32\...\{F5E3859D-0720-41F0-BAF5-4CBCDFD8F406}_is1) (Version: - MurGee.com)
Autodesk 3ds Max 2014 (HKLM\...\{52B37EC7-D836-0409-0064-3C24BCED2010}) (Version: 16.0.420.0 - Autodesk) Hidden
Autodesk 3ds Max 2014 (HKLM\...\Autodesk 3ds Max 2014) (Version: 16.0.420.0 - Autodesk)
Autodesk 3ds Max 2017 (HKLM\...\{52B37EC7-D836-0410-0664-3C24BCED2010}) (Version: 19.0.1072.0 - Autodesk) Hidden
Autodesk 3ds Max 2017 (HKLM\...\Autodesk 3ds Max 2017) (Version: 19.0.1072.0 - Autodesk)
Autodesk 3ds Max 2017 Populate Data (HKLM\...\{2B07E17E-A072-43BD-9DCC-369B56C16698}) (Version: 19.0.0.0 - Autodesk)
Autodesk Advanced Material Library Image Library 2017 (HKLM-x32\...\{8ED2ED41-4455-449D-993C-751C039089B9}) (Version: 15.11.3.0 - Autodesk)
Autodesk Backburner 2017.0 (HKLM-x32\...\{0038F5AA-8482-4BB2-8A28-3FEA1D58D780}) (Version: 17.0.0.0 - Autodesk)
Autodesk Civil View for 3ds Max 2017 64-bit (HKLM\...\{1C4FFAF0-7DBB-4F7A-A386-46747D060826}) (Version: 19.0.0.0 - Autodesk)
Autodesk DirectConnect 2014 64-bit (HKLM\...\{8FC7C2B2-0F64-4B35-AA3D-2B051D009243}) (Version: 8.0.56.1 - Autodesk) Hidden
Autodesk DirectConnect 2014 64-bit (HKLM\...\Autodesk DirectConnect 2014 64-bit) (Version: 8.0.56.1 - Autodesk)
Autodesk DWG TrueView 2018 - English (HKLM\...\DWG TrueView 2018 - English) (Version: 22.0.50.0 - Autodesk)
Autodesk Essential Skills Movies for 3ds Max 2014 64-bit (HKLM\...\{E8814D63-BB76-4C89-A25E-264ECF11D00D}) (Version: 1.2.0.0 - Autodesk)
Autodesk Inventor Server Engine for 3ds Max 2014 64-bit (HKLM\...\{009751C6-22D7-4548-A313-AD48FA57076F}) (Version: 16.0 - Autodesk)
Autodesk Inventor Server Engine for 3ds Max 2017 (HKLM\...\{9167CA34-4E68-49E3-8892-3C439739D2D3}) (Version: 19.0 - Autodesk)
Autodesk License Service (x64) - 3.1 (HKLM\...\{EB6FE58F-8576-4272-BB9C-6B47D9EDFA4D}) (Version: 3.1.26.0 - Autodesk)
Autodesk Material Library 2014 (HKLM-x32\...\{644F9B19-A462-499C-BF4D-300ABC2A28B1}) (Version: 4.0.19.0 - Autodesk)
Autodesk Material Library 2017 (HKLM-x32\...\{8FB9F735-D64C-4991-8D91-4CDDAB1ABDEE}) (Version: 15.11.3.0 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2014 (HKLM-x32\...\{51BF3210-B825-4092-8E0D-66D689916E02}) (Version: 4.0.19.0 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2017 (HKLM-x32\...\{3FBFBC43-9882-43FA-B979-2D53896747B3}) (Version: 15.11.3.0 - Autodesk)
Autodesk Material Library Medium Resolution Image Library 2014 (HKLM-x32\...\{A0633D4E-5AF2-4E3E-A70A-FE9C2BD8A958}) (Version: 4.0.19.0 - Autodesk)
Autodesk Material Library Medium Resolution Image Library 2017 (HKLM-x32\...\{CB6E007E-701D-42CD-AF0E-4BE9C36C7F7C}) (Version: 15.11.3.0 - Autodesk)
Autodesk Mudbox 2014 (HKLM\...\{F9BE7B54-D322-43D6-83DD-CD132E4B8EEE}) (Version: 8.0.0.1010 - Autodesk) Hidden
Autodesk Mudbox 2014 (HKLM\...\Autodesk Mudbox 2014) (Version: 8.0.0.1010 - Autodesk)
Autodesk Revit Interoperability for 3ds Max 2014 (HKLM\...\{0BB716E0-1400-0610-0000-097DC2F354DF}) (Version: 13.02.15161 - Autodesk) Hidden
Autodesk Revit Interoperability for 3ds Max 2014 (HKLM\...\Autodesk Revit Interoperability for 3ds Max 2014) (Version: 13.02.15161 - Autodesk)
Autodesk Revit Interoperability for 3ds Max 2017 (HKLM\...\{0BB716E0-1700-0610-0000-097DC2F354DF}) (Version: 17.0.411.0 - Autodesk) Hidden
Autodesk Revit Interoperability for 3ds Max 2017 (HKLM\...\Autodesk Revit Interoperability for 3ds Max 2017) (Version: 17.0.411.0 - Autodesk)
AutoHotkey 1.1.30.03 (HKLM\...\AutoHotkey) (Version: 1.1.30.03 - Lexikos)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
CCleaner (HKLM\...\CCleaner) (Version: 5.64 - Piriform)
CPUID HWMonitor 1.40 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.40 - CPUID, Inc.)
cURL (HKLM\...\{DC2F8A88-4D91-4896-8C39-2A3BF0A4BAC6}) (Version: 7.46.0 - Confused by Code)
Dark Age of Camelot (HKLM-x32\...\Dark Age of Camelot) (Version: - Electronic Arts)
Discord (HKU\S-1-5-21-3736719023-2009225824-1820632589-1004\...\Discord) (Version: 0.0.306 - Discord Inc.)
DriversCloud.com (64 bits) (HKLM\...\{BD4AC883-4AF5-40BB-91F0-31A061F9588E}) (Version: 10.0.11.0 - Cybelsoft)
DWG TrueView 2018 - English (HKLM\...\{28B89EEF-1028-0409-0100-CF3F3A09B77D}) (Version: 22.0.50.0 - Autodesk) Hidden
FileZilla Client 3.46.0 (HKLM-x32\...\FileZilla Client) (Version: 3.46.0 - Tim Kosse)
Git version 2.13.3 (HKLM\...\Git_is1) (Version: 2.13.3 - The Git Development Community)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 80.0.3987.149 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
Icecream Screen Recorder version 4.58 (HKLM-x32\...\{7ADEC622-3230-4C9A-9DCE-9BD462B74095}_is1) (Version: 4.58 - Icecream Apps)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.6.1194 - Intel Corporation)
Intel® Hardware Accelerated Execution Manager (HKLM\...\{55669453-883A-4F15-9D3B-BC990F5C9A32}) (Version: 6.0.6 - Intel Corporation)
Java 8 Update 241 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180241F0}) (Version: 8.0.2410.7 - Oracle Corporation)
Java SE Development Kit 8 Update 131 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180131}) (Version: 8.0.1310.11 - Oracle Corporation)
JetBrains PhpStorm 2016.3.2 (HKLM-x32\...\PhpStorm 2016.3.2) (Version: 163.10504.2 - JetBrains s.r.o.)
JetBrains WebStorm 2016.3.1 (HKLM-x32\...\WebStorm 2016.3.1) (Version: 163.7743.51 - JetBrains s.r.o.)
Microsoft OneDrive (HKU\S-1-5-21-3736719023-2009225824-1820632589-1004\...\OneDriveSetup.exe) (Version: 19.232.1124.0010 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.22.27821 (HKLM-x32\...\{6361b579-2795-4886-b2a8-53d5239b6452}) (Version: 14.22.27821.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.22.27821 (HKLM-x32\...\{5bfc1380-fd35-4b85-9715-7351535d077e}) (Version: 14.22.27821.0 - Microsoft Corporation)
MSI Afterburner 4.6.0 (HKLM-x32\...\Afterburner) (Version: 4.6.0 - MSI Co., LTD)
Node.js (HKLM\...\{35E398AF-1D21-4271-AE1E-7F0F487553B0}) (Version: 7.10.1 - Node.js Foundation)
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.2.2 - Notepad++ Team)
Opera Stable 65.0.3467.78 (HKLM-x32\...\Opera 65.0.3467.78) (Version: 65.0.3467.78 - Opera Software)
Paladium Launcher 0.0.1-beta.8 (HKLM\...\{47e8ef43-675f-53e8-b279-dc37a3f5eb19}) (Version: 0.0.1-beta.8 - Paladium)
RaiderIO 1.2.0 (HKLM\...\ea53c16d-4ef5-533f-83dc-5b0c5bb40cb2) (Version: 1.2.0 - jah@raider.io)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8844.1 - Realtek Semiconductor Corp.)
Registrar Registry Manager 8.60 (HKLM\...\RegistrarHome_is1) (Version: - Resplendence Software Projects Sp.)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.17.199 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.0.4.3 - Rockstar Games)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TAP-Windows 9.21.2 (HKLM\...\TAP-Windows) (Version: 9.21.2 - )
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.3.8497 - TeamViewer)
Twitch (HKU\S-1-5-21-3736719023-2009225824-1820632589-1004\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden
Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{3BAE4496-6F6C-4330-A8AA-B93D3D346FA5}) (Version: 2.53.0.0 - Microsoft Corporation)
UpdateAssistant (HKLM\...\{F339C545-24DC-4870-AA32-6EB6B0500B95}) (Version: 1.24.0.0 - Microsoft Corporation) Hidden
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.0 - VideoLAN)
Warcraft Logs Uploader 4.0.5 (HKLM\...\{bcc11bd8-bf2f-5f00-925b-921594bc2ca4}) (Version: 4.0.5 - warcraftlogs)
WhatsApp (HKU\S-1-5-21-3736719023-2009225824-1820632589-1004\...\WhatsApp) (Version: 0.3.9309 - WhatsApp)
WhoCrashed 6.65 (HKLM\...\WhoCrashed_is1) (Version: - Resplendence Software Projects Sp.)
WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 3.2.10.0 - ASUSTeK COMPUTER INC.)
WinRAR 5.70 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment)
World of Warcraft Classic (HKLM-x32\...\World of Warcraft Classic) (Version: - Blizzard Entertainment)
Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org)

Packages:
=========
Candy Crush Friends -> C:\Program Files\WindowsApps\king.com.CandyCrushFriends_1.33.4.0_x86__kgqvnymyfvs32 [2020-03-20] (king.com)
Candy Crush Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSaga_1.1720.1.0_x86__kgqvnymyfvs32 [2020-03-14] (king.com)
Composant additionnel Photos Media Engine -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-02-23] (Microsoft Corporation)
EdgeDevtoolsPlugin -> C:\Windows\SystemApps\Microsoft.EdgeDevtoolsPlugin_cw5n1h2txyewy [2020-03-25] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-04-25] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-04-25] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.6.1224.0_x64__8wekyb3d8bbwe [2020-02-27] (Microsoft Studios) [MS Ad]
MSN Météo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20503.0_x64__8wekyb3d8bbwe [2020-03-05] (Microsoft Corporation) [MS Ad]
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0 [2020-03-14] (Spotify AB) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\WINDOWS\system32\AcSignIcon.dll [2017-02-15] (Autodesk, Inc -> Autodesk, Inc.)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2017-02-15] (Autodesk, Inc -> Autodesk)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2016-11-27] (Notepad++ -> )
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.FPS1] => C:\WINDOWS\system32\frapsv64.dll [105984 2015-09-05] (Beepa P/L) [File not signed]
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\SysWOW64\frapsvid.dll [94208 2015-09-05] (Beepa P/L) [File not signed]

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2013-04-27 10:24 - 2013-04-27 10:24 - 000071680 _____ () [File not signed] C:\Program Files (x86)\ASUS\ASUS Live Update\checkmetro.dll
2017-03-04 15:11 - 2014-09-03 01:29 - 000950272 _____ () [File not signed] C:\Program Files (x86)\Autodesk\Autodesk Desktop App\acwebbrowser\ffmpegsumo.dll
2017-03-04 15:11 - 2014-09-03 01:29 - 000134144 _____ () [File not signed] C:\Program Files (x86)\Autodesk\Autodesk Desktop App\acwebbrowser\libegl.dll
2017-03-04 15:12 - 2014-09-03 01:29 - 000912384 _____ () [File not signed] C:\Program Files (x86)\Autodesk\Autodesk Desktop App\acwebbrowser\libglesv2.dll
2015-10-13 16:48 - 2015-10-13 16:48 - 000291328 _____ (ASUSTek Computer Inc.) [File not signed] C:\Program Files (x86)\ASUS\ASUS Live Update\alvupdt.dll
2016-12-11 14:28 - 2016-10-04 15:51 - 000076800 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2017-03-04 15:11 - 2014-09-03 01:29 - 009994752 _____ (The ICU Project) [File not signed] C:\Program Files (x86)\Autodesk\Autodesk Desktop App\acwebbrowser\icudt.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2016-07-16 12:47 - 2017-03-03 16:59 - 000001229 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 activate.adobe.com
127.0.0.1 practivate.adobe.com
127.0.0.1 lmlicenses.wip4.adobe.com
127.0.0.1 lm.licenses.adobe.com
127.0.0.1 lmlicenses.wip4.adobe.com
127.0.0.1 lm.licenses.adobe.com
127.0.0.1 na1r.services.adobe.com
127.0.0.1 hlrcv.stage.adobe.com
127.0.0.1 practivate.adobe.com
127.0.0.1 activate.adobe.com

2017-09-29 17:30 - 2017-10-10 19:55 - 000000445 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Program Files\Common Files\Autodesk Shared\;C:\Program Files (x86)\EasyPHP-Devserver-16.1\eds-binaries\php\php5619vc11x86x161216120607;C:\Program Files (x86)\Autodesk\Backburner\;C:\Program Files\Git\cmd;C:\Program Files\nodejs\;C:\WINDOWS\System32\OpenSSH\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-3736719023-2009225824-1820632589-1004\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 212.27.40.240 - 212.27.40.241
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Windows Firewall is enabled.

Network Binding:
=============
Ethernet 3: Hyper-V Extensible Virtual Switch -> vms_pp (disabled)
Ethernet 5: Hyper-V Extensible Virtual Switch -> vms_pp (disabled)
Wi-Fi: Hyper-V Extensible Virtual Switch -> vms_pp (disabled)
Ethernet: Hyper-V Extensible Virtual Switch -> vms_pp (disabled)

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [OpenSSH-Server-In-TCP] => (Allow) %SystemRoot%\system32\OpenSSH\sshd.exe No File
FirewallRules: [{82E484B4-EC50-4728-859D-8D91300FCA15}] => (Allow) C:\Users\Jeqn\AppData\Local\Temp\DriverPack-20200222170405\tools\aria2c.exe No File
FirewallRules: [{322D2B62-3A51-4DF3-86F4-9873F90AC6EA}] => (Allow) C:\Program Files\DriversCloud.com\DriversCloud.exe (CYBELSOFT -> CybelSoft)
FirewallRules: [{1D1ACCC1-ADC6-4D73-B621-75FB55D37C72}] => (Allow) C:\Program Files\DriversCloud.com\DriversCloud.exe (CYBELSOFT -> CybelSoft)
FirewallRules: [UDP Query User{BEA5CFCB-5360-4B21-AF60-1A316290DBFE}F:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) F:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [TCP Query User{2110C85C-1768-4838-8230-1C0C9FF3CE8A}F:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) F:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{FFE9B0E6-ED21-45E4-A10B-2ABE08D7C78F}] => (Allow) F:\SteamLibrary\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{A912E8FB-1BC6-4326-A943-50C356D85D31}] => (Allow) F:\SteamLibrary\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [UDP Query User{AB9CB969-72D2-4907-B9AC-92BFC33EE862}C:\program files (x86)\steam\steamapps\common\conqueror's blade\gamecenter\gamecenter.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\conqueror's blade\gamecenter\gamecenter.exe No File
FirewallRules: [TCP Query User{7385E41B-B1AC-4C34-9727-B4011613180F}C:\program files (x86)\steam\steamapps\common\conqueror's blade\gamecenter\gamecenter.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\conqueror's blade\gamecenter\gamecenter.exe No File
FirewallRules: [UDP Query User{137DAD7D-F707-4818-9E4F-71A1A7730F19}C:\program files\java\jdk1.8.0_131\bin\javaw.exe] => (Allow) C:\program files\java\jdk1.8.0_131\bin\javaw.exe
FirewallRules: [TCP Query User{2D791963-FBFF-4996-B097-3B71E201B212}C:\program files\java\jdk1.8.0_131\bin\javaw.exe] => (Allow) C:\program files\java\jdk1.8.0_131\bin\javaw.exe
FirewallRules: [UDP Query User{4DD4ADC4-45F1-43FA-82C9-49147A271D45}C:\users\jeqn\downloads\runtime\jre-x64\bin\javaw.exe] => (Allow) C:\users\jeqn\downloads\runtime\jre-x64\bin\javaw.exe
FirewallRules: [TCP Query User{BF1C2345-48E1-4BED-B57B-01011E4F1538}C:\users\jeqn\downloads\runtime\jre-x64\bin\javaw.exe] => (Allow) C:\users\jeqn\downloads\runtime\jre-x64\bin\javaw.exe
FirewallRules: [{7070D228-B4AA-4B4E-9864-739084203AB7}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{18B31ED3-1621-490F-8518-8898218B8596}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{35757CDF-5065-46F2-B255-25B9F697FEFF}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{F2120021-1310-4B34-97A4-6A3CD1BFBD60}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [UDP Query User{F46C2471-36F3-4ED1-B3F4-6A0ABAEA40D6}C:\program files (x86)\diablo iii\x64\diablo iii64.exe] => (Allow) C:\program files (x86)\diablo iii\x64\diablo iii64.exe No File
FirewallRules: [TCP Query User{98C03B6D-00CD-47F6-BE94-0D41FBBF8017}C:\program files (x86)\diablo iii\x64\diablo iii64.exe] => (Allow) C:\program files (x86)\diablo iii\x64\diablo iii64.exe No File
FirewallRules: [{50BAC1D0-9FAE-4684-89F9-95C2B8D01296}] => (Allow) C:\Program Files (x86)\Opera\65.0.3467.78\opera.exe No File
FirewallRules: [{9B308B07-4681-465F-8525-334A70B33B42}] => (Allow) C:\Program Files (x86)\Opera\65.0.3467.72\opera.exe No File
FirewallRules: [UDP Query User{CD69739D-A218-4D12-A0EF-3FD8021A08A9}C:\program files (x86)\world of warcraft\_classic_\utils\wowvoiceproxy.exe] => (Allow) C:\program files (x86)\world of warcraft\_classic_\utils\wowvoiceproxy.exe No File
FirewallRules: [TCP Query User{E251CBC7-C13A-4ABC-899D-40249CE637A9}C:\program files (x86)\world of warcraft\_classic_\utils\wowvoiceproxy.exe] => (Allow) C:\program files (x86)\world of warcraft\_classic_\utils\wowvoiceproxy.exe No File
FirewallRules: [{64126DB8-7B43-4549-A355-5CC83F87FC48}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [UDP Query User{6F581724-808D-4F5A-A827-811250B49537}F:\world of warcraft\_classic_\utils\wowvoiceproxy.exe] => (Allow) F:\world of warcraft\_classic_\utils\wowvoiceproxy.exe No File
FirewallRules: [TCP Query User{36ECBDD8-8AE2-442B-A231-5CFC0CB61D58}F:\world of warcraft\_classic_\utils\wowvoiceproxy.exe] => (Allow) F:\world of warcraft\_classic_\utils\wowvoiceproxy.exe No File
FirewallRules: [{D6ECE761-6694-4DCC-8FF3-673E726C149F}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{69A58B87-29BA-4E91-9019-BA5D17AD8E30}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{2B57ED3A-F743-464F-B03E-B72E4159E88D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{377A5817-C6B7-4ED2-928D-A42520EFC496}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{8A62BA16-9B67-4140-8BAC-959A7FE97E07}] => (Allow) C:\Users\Arnaud\renderbeamer\jre8\bin\renderbeamer.exe (Oracle America, Inc. -> Oracle Corporation)
FirewallRules: [{716E92E8-A938-444C-B574-21822B980A76}] => (Allow) C:\Users\Arnaud\renderbeamer\jre8\bin\renderbeamer.exe (Oracle America, Inc. -> Oracle Corporation)
FirewallRules: [UDP Query User{0EECF955-2A94-4D2A-97B5-1404815A1CFD}C:\program files (x86)\autodesk\backburner\server.exe] => (Allow) C:\program files (x86)\autodesk\backburner\server.exe (Autodesk, Inc.) [File not signed]
FirewallRules: [TCP Query User{8CDD828A-FB12-4560-8089-92BE7F2F1140}C:\program files (x86)\autodesk\backburner\server.exe] => (Allow) C:\program files (x86)\autodesk\backburner\server.exe (Autodesk, Inc.) [File not signed]
FirewallRules: [UDP Query User{1F2EC20B-3532-4E49-8E6C-9B0EEC3845D1}C:\program files (x86)\autodesk\backburner\monitor.exe] => (Allow) C:\program files (x86)\autodesk\backburner\monitor.exe (Autodesk, Inc.) [File not signed]
FirewallRules: [TCP Query User{30BE8C5D-BC28-4780-9371-C01867AEBAAF}C:\program files (x86)\autodesk\backburner\monitor.exe] => (Allow) C:\program files (x86)\autodesk\backburner\monitor.exe (Autodesk, Inc.) [File not signed]
FirewallRules: [UDP Query User{C5F4C747-8642-4BF2-BC00-67ED3CB68547}C:\program files (x86)\autodesk\backburner\manager.exe] => (Allow) C:\program files (x86)\autodesk\backburner\manager.exe (Autodesk, Inc.) [File not signed]
FirewallRules: [TCP Query User{24DE40C5-482A-4E58-92F9-503095FDB95B}C:\program files (x86)\autodesk\backburner\manager.exe] => (Allow) C:\program files (x86)\autodesk\backburner\manager.exe (Autodesk, Inc.) [File not signed]
FirewallRules: [UDP Query User{57D7F6A5-A645-4AD3-96E1-2851AA310256}C:\program files\autodesk\3ds max 2014\3dsmax.exe] => (Allow) C:\program files\autodesk\3ds max 2014\3dsmax.exe (Autodesk, Inc -> Autodesk, Inc.)
FirewallRules: [TCP Query User{92044A30-5921-495D-BBFB-A86DC691BA1A}C:\program files\autodesk\3ds max 2014\3dsmax.exe] => (Allow) C:\program files\autodesk\3ds max 2014\3dsmax.exe (Autodesk, Inc -> Autodesk, Inc.)
FirewallRules: [UDP Query User{7EA6CCF1-6225-4808-A41D-F4410C34C1E6}C:\program files (x86)\surfeasy vpn\client\surfeasyvpn.exe] => (Allow) C:\program files (x86)\surfeasy vpn\client\surfeasyvpn.exe No File
FirewallRules: [TCP Query User{3D4F7060-3F00-4704-943B-574470539DCE}C:\program files (x86)\surfeasy vpn\client\surfeasyvpn.exe] => (Allow) C:\program files (x86)\surfeasy vpn\client\surfeasyvpn.exe No File
FirewallRules: [{C14083A9-A65C-4D85-B9FF-29A690D2D0EA}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{8FA71AB4-4061-47FF-8313-596D4F3DB07E}] => (Allow) LPort=443
FirewallRules: [UDP Query User{A13F5B65-F40E-4672-8234-30F3E1267E52}C:\program files\nodejs\node.exe] => (Allow) C:\program files\nodejs\node.exe (Node.js Foundation -> Node.js)
FirewallRules: [TCP Query User{62F08F81-7105-4621-BF56-A17C5C82ECC6}C:\program files\nodejs\node.exe] => (Allow) C:\program files\nodejs\node.exe (Node.js Foundation -> Node.js)
FirewallRules: [UDP Query User{34A21BD7-F46C-477B-8778-F69E0755D699}C:\cygwin64\bin\ruby.exe] => (Allow) C:\cygwin64\bin\ruby.exe (hxxp://www.ruby-lang.org/) [File not signed]
FirewallRules: [TCP Query User{2140BBF7-2DF3-41F5-A37F-F48B971CFB67}C:\cygwin64\bin\ruby.exe] => (Allow) C:\cygwin64\bin\ruby.exe (hxxp://www.ruby-lang.org/) [File not signed]
FirewallRules: [UDP Query User{CE596D96-39BF-4648-B399-0D12ADFA9EF5}C:\ruby23-x64\bin\ruby.exe] => (Allow) C:\ruby23-x64\bin\ruby.exe No File
FirewallRules: [TCP Query User{08485CE9-E0F6-4748-A945-DFB4161896A0}C:\ruby23-x64\bin\ruby.exe] => (Allow) C:\ruby23-x64\bin\ruby.exe No File
FirewallRules: [UDP Query User{5921270D-56B9-4ECF-8BAD-DF1C9B594484}C:\cygwin64\usr\sbin\sshd.exe] => (Allow) C:\cygwin64\usr\sbin\sshd.exe () [File not signed]
FirewallRules: [TCP Query User{6FF6BA36-DFFA-47BD-B480-450CF7D32676}C:\cygwin64\usr\sbin\sshd.exe] => (Allow) C:\cygwin64\usr\sbin\sshd.exe () [File not signed]
FirewallRules: [TCP Query User{9320C0F3-3A9C-4B1C-9751-FA72433A79D6}C:\program files\android\android studio\jre\bin\java.exe] => (Allow) C:\program files\android\android studio\jre\bin\java.exe No File
FirewallRules: [UDP Query User{F9CF2190-421A-496B-826F-1DC82C40E667}C:\program files\android\android studio\jre\bin\java.exe] => (Allow) C:\program files\android\android studio\jre\bin\java.exe No File
FirewallRules: [TCP Query User{D333FC7E-F87A-4B67-91B2-319DE4CA80D0}C:\program files\java\jdk1.8.0_131\bin\java.exe] => (Allow) C:\program files\java\jdk1.8.0_131\bin\java.exe
FirewallRules: [UDP Query User{BCC998A5-4DD3-4B3D-9FD8-4877B4EB5E3E}C:\program files\java\jdk1.8.0_131\bin\java.exe] => (Allow) C:\program files\java\jdk1.8.0_131\bin\java.exe
FirewallRules: [{0B99ACD1-4E43-46CC-B25E-BDC46358E999}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{5D58E3F9-37AC-4F49-9B7F-5173CADB1155}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{4FDD6FA2-9943-4C35-B9A1-FBF766A02EA8}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [{C24652A8-BDB6-43D9-AFD3-F0B42EB5802B}] => (Allow) %systemroot%\system32\alg.exe No File
FirewallRules: [TCP Query User{5CE2B4F0-D7AB-4CC0-8CB5-C57D87D215EC}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{BA42C69C-46B6-4BEA-98D1-7707688D4627}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{B3E19C3C-6697-4DAD-85CC-0C472A101515}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{AAF84EDA-92C4-4304-ABBF-2AF6C4200D8F}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{3A045B02-E617-41D6-A86A-8C9BAC6D5046}F:\world of warcraft\_retail_\utils\wowvoiceproxy.exe] => (Allow) F:\world of warcraft\_retail_\utils\wowvoiceproxy.exe No File
FirewallRules: [UDP Query User{4FC0C0A3-4090-4D4C-8779-A23F66FC63BF}F:\world of warcraft\_retail_\utils\wowvoiceproxy.exe] => (Allow) F:\world of warcraft\_retail_\utils\wowvoiceproxy.exe No File
FirewallRules: [{E048B381-0195-467B-BD32-31C92E0FADB2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{42C67ECC-84C9-4D75-BD93-2D881AEC3AFD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{BA378869-852A-4635-B267-CEB630898E63}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{7C2109CB-DCBC-4B70-9FC5-2B066E72E73A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{A0383E37-9AA5-48A1-99E0-3470ACF15DF1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{CFDE973B-FC9C-4B4A-8055-2FA36755F588}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{470ED8DD-9DC3-4663-BC15-030CE1BC9493}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{D7E403D4-EF33-445F-8524-D6B0265F54FD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{9B488717-F1B6-4DAA-BE63-EFAE1C1FF26F}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{55874211-E16C-4932-9461-5B1F2587DF39}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{AFF86BFC-F989-445E-9663-3ADDEC7CF0AE}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{BB351C26-608F-4418-BF0F-8589E5B1D553}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{708F3F93-7733-4FE2-8938-F8D5375E29B5}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

24-03-2020 23:38:06 Windows Modules Installer

==================== Faulty Device Manager Devices ============

Name: Bluetooth Module
Description: Bluetooth Module
Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
Manufacturer: Qualcomm Atheros Communications
Service: BTHUSB
Problem: : Windows has stopped this device because it has reported problems. (Code 43)
Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation.

Name: NVIDIA GeForce GTX 590
Description: NVIDIA GeForce GTX 590
Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: nvlddmkm
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: NVIDIA GeForce GTX 590
Description: NVIDIA GeForce GTX 590
Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: nvlddmkm
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: ========================

Application errors:
==================
Error: (03/24/2020 11:38:36 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x8007045b, A system shutdown is in progress.
.

Error: (03/24/2020 11:38:36 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (03/24/2020 11:38:36 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x8007045b, A system shutdown is in progress.
.

Error: (03/24/2020 11:38:36 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (03/24/2020 11:34:03 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0x8007007B
Command-line arguments:
RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=NetworkAvailable

Error: (03/24/2020 11:34:01 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0x8007007B
Command-line arguments:
RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=UserLogon;SessionId=1

Error: (03/24/2020 07:26:14 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1020) (User: NT AUTHORITY)
Description: The required buffer size is greater than the buffer size passed to the Collect function of the "C:\Windows\System32\perfts.dll" Extensible Counter DLL for the "LSM" service. The given buffer size was 31304 and the required size was 31752.

Error: (03/24/2020 07:19:50 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: game.dll, version: 1.1.2.5, time stamp: 0x5cd0aea8
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x6c587f9d
Faulting process id: 0x2938
Faulting application start time: 0x01d60203e5afed84
Faulting application path: C:\Program Files (x86)\Electronic Arts\Dark Age of Camelot\game.dll
Faulting module path: unknown
Report Id: c58c7923-0f00-485d-b037-f79ea66285da
Faulting package full name:
Faulting package-relative application ID:


System errors:
=============
Error: (03/25/2020 08:58:13 AM) (Source: BTHUSB) (EventID: 17) (User: )
Description: The local Bluetooth adapter has failed in an undetermined manner and will not be used. The driver has been unloaded.

Error: (03/25/2020 08:58:01 AM) (Source: BTHUSB) (EventID: 17) (User: )
Description: The local Bluetooth adapter has failed in an undetermined manner and will not be used. The driver has been unloaded.

Error: (03/25/2020 08:57:42 AM) (Source: BTHUSB) (EventID: 17) (User: )
Description: The local Bluetooth adapter has failed in an undetermined manner and will not be used. The driver has been unloaded.

Error: (03/25/2020 08:57:37 AM) (Source: BTHUSB) (EventID: 17) (User: )
Description: The local Bluetooth adapter has failed in an undetermined manner and will not be used. The driver has been unloaded.

Error: (03/25/2020 08:57:30 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The luafv service failed to start due to the following error:
This driver has been blocked from loading

Error: (03/25/2020 08:57:30 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 2:07:00 AM on ‎3/‎25/‎2020 was unexpected.

Error: (03/25/2020 08:57:07 AM) (Source: Microsoft-Windows-Kernel-Boot) (EventID: 29) (User: NT AUTHORITY)
Description: 3221225684A fatal error occurred processing the restoration data.

Error: (03/25/2020 12:47:35 AM) (Source: BTHUSB) (EventID: 17) (User: )
Description: The local Bluetooth adapter has failed in an undetermined manner and will not be used. The driver has been unloaded.


Windows Defender:
===================================
Date: 2020-03-22 19:14:51.197
Description:
Antivirus Windows Defender a détecté un logiciel malveillant ou potentiellement indésirable.
Pour plus d’informations, reportez-vous aux éléments suivants :
https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win32/AutoKMS&threatid=2147685180&enterprise=0
Nom : HackTool:Win32/AutoKMS
ID : 2147685180
Gravité : High
Catégorie : Tool
Chemin : file:_\Device\HarddiskVolumeShadowCopy5\Program Files\KMSpico\cert\installAll.cmd
Origine de la détection : Inconnu
Type de détection : Concret
Source de détection : Protection en temps réel
Utilisateur : NT AUTHORITY\SYSTEM
Nom du processus : C:\WINDOWS\System32\svchost.exe
Version de la veille de sécurité : AV: 1.311.1719.0, AS: 1.311.1719.0, NIS: 1.311.1719.0
Version du moteur : AM: 1.1.16800.2, NIS: 1.1.16800.2

Date: 2020-03-16 17:40:57.239
Description:
Antivirus Windows Defender a détecté un logiciel malveillant ou potentiellement indésirable.
Pour plus d’informations, reportez-vous aux éléments suivants :
https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win32/AutoKMS&threatid=2147685180&enterprise=0
Nom : HackTool:Win32/AutoKMS
ID : 2147685180
Gravité : High
Catégorie : Tool
Chemin : file:_\Device\HarddiskVolumeShadowCopy4\Program Files\KMSpico\cert\installAll.cmd
Origine de la détection : Inconnu
Type de détection : Concret
Source de détection : Protection en temps réel
Utilisateur : NT AUTHORITY\SYSTEM
Nom du processus : C:\WINDOWS\System32\svchost.exe
Version de la veille de sécurité : AV: 1.311.1335.0, AS: 1.311.1335.0, NIS: 1.311.1335.0
Version du moteur : AM: 1.1.16800.2, NIS: 1.1.16800.2

Date: 2020-03-08 19:19:12.498
Description:
Antivirus Windows Defender a détecté un logiciel malveillant ou potentiellement indésirable.
Pour plus d’informations, reportez-vous aux éléments suivants :
https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win32/AutoKMS&threatid=2147685180&enterprise=0
Nom : HackTool:Win32/AutoKMS
ID : 2147685180
Gravité : High
Catégorie : Tool
Chemin : file:_\Device\HarddiskVolumeShadowCopy4\Program Files\KMSpico\cert\installAll.cmd
Origine de la détection : Inconnu
Type de détection : Concret
Source de détection : Protection en temps réel
Utilisateur : NT AUTHORITY\SYSTEM
Nom du processus : C:\WINDOWS\System32\svchost.exe
Version de la veille de sécurité : AV: 1.311.776.0, AS: 1.311.776.0, NIS: 1.311.776.0
Version du moteur : AM: 1.1.16800.2, NIS: 1.1.16800.2

Date: 2020-03-01 19:39:00.761
Description:
Antivirus Windows Defender a détecté un logiciel malveillant ou potentiellement indésirable.
Pour plus d’informations, reportez-vous aux éléments suivants :
https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win32/AutoKMS&threatid=2147685180&enterprise=0
Nom : HackTool:Win32/AutoKMS
ID : 2147685180
Gravité : High
Catégorie : Tool
Chemin : file:_\Device\HarddiskVolumeShadowCopy22\Program Files\KMSpico\cert\installAll.cmd
Origine de la détection : Inconnu
Type de détection : Concret
Source de détection : Protection en temps réel
Utilisateur : NT AUTHORITY\SYSTEM
Nom du processus : C:\WINDOWS\System32\svchost.exe
Version de la veille de sécurité : AV: 1.311.348.0, AS: 1.311.348.0, NIS: 1.311.348.0
Version du moteur : AM: 1.1.16800.2, NIS: 1.1.16800.2

Date: 2020-03-25 00:45:39.746
Description:
La fonctionnalité de protection en temps réel Antivirus Windows Defender a rencontré une erreur et échoué.
Fonctionnalité : Sur accès
Code d’erreur : 0x8007043c
Description de l’erreur : This service cannot be started in Safe Mode
Raison : La veille de sécurité contre les logiciels malveillants a cessé de fonctionner pour une raison inconnue. Dans certains cas, le redémarrage du service peut résoudre le problème.

Date: 2020-03-25 00:31:53.978
Description:
La fonctionnalité de protection en temps réel Antivirus Windows Defender a rencontré une erreur et échoué.
Fonctionnalité : Sur accès
Code d’erreur : 0x8007043c
Description de l’erreur : This service cannot be started in Safe Mode
Raison : La veille de sécurité contre les logiciels malveillants a cessé de fonctionner pour une raison inconnue. Dans certains cas, le redémarrage du service peut résoudre le problème.

Date: 2020-03-23 23:04:37.085
Description:
La fonctionnalité de protection en temps réel Antivirus Windows Defender a rencontré une erreur et échoué.
Fonctionnalité : Sur accès
Code d’erreur : 0x8007043c
Description de l’erreur : This service cannot be started in Safe Mode
Raison : La veille de sécurité contre les logiciels malveillants a cessé de fonctionner pour une raison inconnue. Dans certains cas, le redémarrage du service peut résoudre le problème.

Date: 2020-03-23 22:36:46.125
Description:
La fonctionnalité de protection en temps réel Antivirus Windows Defender a rencontré une erreur et échoué.
Fonctionnalité : Sur accès
Code d’erreur : 0x8007043c
Description de l’erreur : This service cannot be started in Safe Mode
Raison : La veille de sécurité contre les logiciels malveillants a cessé de fonctionner pour une raison inconnue. Dans certains cas, le redémarrage du service peut résoudre le problème.

Date: 2020-03-22 22:22:20.287
Description:
Antivirus Windows Defender a rencontré une erreur lors de la mise à jour de la veille de sécurité.
Nouvelle version de la veille de sécurité :
Version précédente de la veille de sécurité : 1.311.1719.0
Source de mise à jour : Serveur Microsoft Update
Type de veille de sécurité : Anti-virus
Type de mise à jour : Complet
Utilisateur : NT AUTHORITY\SYSTEM
Version actuelle du moteur :
Version précédente du moteur : 1.1.16800.2
Code d’erreur : 0x80240016
Description de l’erreur : An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support.

==================== Memory info ===========================

BIOS: American Megatrends Inc. 4701 05/07/2014
Motherboard: ASUSTeK COMPUTER INC. P9X79 DELUXE
Processor: Intel(R) Core(TM) i7-3960X CPU @ 3.30GHz
Percentage of memory in use: 12%
Total physical RAM: 32707 MB
Available physical RAM: 28641.57 MB
Total Virtual: 37571 MB
Available Virtual: 33916.61 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:237.47 GB) (Free:70.84 GB) NTFS
Drive d: (ARCHIVE) (Fixed) (Total:2794.39 GB) (Free:2710.34 GB) NTFS
Drive e: (BACKUP) (Fixed) (Total:2794.39 GB) (Free:568.01 GB) NTFS
Drive f: (WORKING) (Fixed) (Total:465.76 GB) (Free:374.73 GB) NTFS
Drive i: (My CDROM) (CDROM) (Total:0.01 GB) (Free:0 GB) CDFS

\\?\Volume{46738aa6-0000-0000-0000-100000000000}\ (System Reserved) (Fixed) (Total:0.49 GB) (Free:0.46 GB) NTFS
\\?\Volume{46738aa6-0000-0000-0000-a07d3b000000}\ () (Fixed) (Total:0.51 GB) (Free:0.08 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 238.5 GB) (Disk ID: 46738AA6)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=237.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=522 MB) - (Type=27)

==========================================================
Disk: 1 (Protective MBR) (Size: 238.5 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 2 (Protective MBR) (Size: 2794.5 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 3 (Protective MBR) (Size: 2794.5 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 4 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 91812AE2)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================