Additional scan result of Farbar Recovery Scan Tool (x64) Version: 08-07-2017 Ran by ТАНЯ (10-07-2017 16:58:26) Running from C:\Users\ТАНЯ\Desktop\Antivirus Windows 7 Ultimate Service Pack 1 (X64) (2012-11-20 20:09:45) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= HomeGroupUser$ (S-1-5-21-1622271281-2739419808-14151015-1002 - Limited - Enabled) Администратор (S-1-5-21-1622271281-2739419808-14151015-500 - Administrator - Disabled) Гость (S-1-5-21-1622271281-2739419808-14151015-501 - Limited - Disabled) ТАНЯ (S-1-5-21-1622271281-2739419808-14151015-1000 - Administrator - Enabled) => C:\Users\ТАНЯ ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) «Такском-Сертификаты» x64 (HKLM\...\{08DA7E30-1400-11E5-B137-DB561E5D46B0}) (Version: 1.9.27 - ООО Такском) µTorrent (HKU\S-1-5-21-1622271281-2739419808-14151015-1000\...\uTorrent) (Version: 3.5.0.43916 - BitTorrent Inc.) 1C Предприятие 7.7 (HKLM-x32\...\1C Предприятие 7.7.27) (Version: 77.27 - ) 1C:Предприятие 8 (8.3.9.2170) (HKLM-x32\...\{371D65CA-9D29-4472-A54F-6325CC552F35}) (Version: 8.3.9.2170 - 1C) 2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0014-0000-0000-0000000FF1CE}_PRO_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) 2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0015-0419-0000-0000000FF1CE}_PRO_{06BBE4EF-FA0F-43D4-8DE6-12B15AE6DC8F}) (Version: - Microsoft) Hidden 2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0016-0419-0000-0000000FF1CE}_PRO_{06BBE4EF-FA0F-43D4-8DE6-12B15AE6DC8F}) (Version: - Microsoft) Hidden 2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0018-0419-0000-0000000FF1CE}_PRO_{06BBE4EF-FA0F-43D4-8DE6-12B15AE6DC8F}) (Version: - Microsoft) Hidden 2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0019-0419-0000-0000000FF1CE}_PRO_{06BBE4EF-FA0F-43D4-8DE6-12B15AE6DC8F}) (Version: - Microsoft) Hidden 2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001A-0419-0000-0000000FF1CE}_PRO_{06BBE4EF-FA0F-43D4-8DE6-12B15AE6DC8F}) (Version: - Microsoft) Hidden 2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001B-0419-0000-0000000FF1CE}_PRO_{06BBE4EF-FA0F-43D4-8DE6-12B15AE6DC8F}) (Version: - Microsoft) Hidden 2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0407-0000-0000000FF1CE}_PRO_{928D7B99-2BEA-49F9-83B8-20FA57860643}) (Version: - Microsoft) Hidden 2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0409-0000-0000000FF1CE}_PRO_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}) (Version: - Microsoft) Hidden 2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0419-0000-0000000FF1CE}_PRO_{EFE123B8-9F0A-4C50-A67B-0BADF3CB00DC}) (Version: - Microsoft) Hidden 2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0422-0000-0000000FF1CE}_PRO_{E23630A0-8B0D-4145-9CEA-9B4967CDDC0E}) (Version: - Microsoft) Hidden 2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_PRO_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}) (Version: - Microsoft) Hidden 2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{90120000-002A-0419-1000-0000000FF1CE}_PRO_{8D43357C-7ED3-4E4C-9804-DB84C67823BC}) (Version: - Microsoft) Hidden 2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{90120000-006E-0419-0000-0000000FF1CE}_PRO_{8D43357C-7ED3-4E4C-9804-DB84C67823BC}) (Version: - Microsoft) Hidden Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.13 - Adobe Systems) Adobe Flash Player 26 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 26.0.0.131 - Adobe Systems Incorporated) Adobe Flash Player 26 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 26.0.0.131 - Adobe Systems Incorporated) Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.10.0.0 - Asmedia Technology) ATI Catalyst Install Manager (HKLM\...\{2A13EF26-4D68-B2D7-A486-DBBD2FDE366B}) (Version: 3.0.765.0 - ATI Technologies, Inc.) Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.5.2302 - AVAST Software) BiPrint-Клиент 4.1.23.0 "Платежные поручения" (HKLM-x32\...\BiPrint-Клиент_is1) (Version: 4.1.23.0 - Компания RIT Plus) ccc-core-static (HKLM-x32\...\{8ADE5280-35CA-CF98-A456-F66B98C77244}) (Version: 2010.0210.2206.39615 - Название организации) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.30 - Piriform) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.46.1.0327 - DT Soft Ltd) EPU (HKLM-x32\...\{9C2AC00C-0C06-4B7E-97A4-A833808D54D6}) (Version: 1.02.21 - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 59.0.3071.115 - Google Inc.) Google Toolbar for Internet Explorer (HKLM-x32\...\{18455581-E099-4BA8-BC6B-F34B2F06600C}) (Version: 1.0.0 - Google Inc.) Hidden Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.8231.2252 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.169 - Google Inc.) Hidden GPU Boost Driver (HKLM-x32\...\{B8887E02-C910-4498-A7C0-186ABFDCD110}) (Version: 1.01.15 - ASUS) HP LaserJet Professional P1100-P1560-P1600 Series (HKLM\...\HP LaserJet Professional P1100-P1560-P1600 Series) (Version: - ) HP Support Assistant (HKLM-x32\...\{79C54A05-F146-4EA0-8A70-D4EFE6181E52}) (Version: 8.4.19.3 - Hewlett-Packard Company) HP Support Solutions Framework (HKLM-x32\...\{50980478-879F-4347-8247-29FF7A78C2EE}) (Version: 12.7.22.13 - Hewlett-Packard Company) hppLaserJetService (HKLM-x32\...\{D371F551-0DB9-4CEC-844B-4C90CE91EA0B}) (Version: 001.001.0.0 - Hewlett-Packard) Hidden hppP1100P1560P1600SeriesLaserJetService (HKLM-x32\...\{0E448256-D515-4C3E-A5BE-0A7B76CED5D4}) (Version: 001.001.0.0 - Hewlett-Packard) Hidden hppusgP1100P1560P1600Series (HKLM-x32\...\{853F464A-B2B8-404E-BA3E-B98FF6862C41}) (Version: 1.0.0.1 - Hewlett-Packard) Hidden HPSSupply (HKLM-x32\...\{7902E313-FF0F-4493-ACB1-A8147B78DCD0}) (Version: 2.1.1.0000 - Hewlett Packard Development Company L.P.) Malwarebytes, версия 3.1.2.1733 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.1.2.1733 - Malwarebytes) MarketResearch (HKLM-x32\...\{175F0111-2968-4935-8F70-33108C6A4DE3}) (Version: 130.0.374.000 - Hewlett-Packard) Hidden Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation) Microsoft Office Excel 2007 Help Обновление (KB963678) (HKLM-x32\...\{90120000-0016-0419-0000-0000000FF1CE}_PRO_{420938DB-BF97-4664-BE29-0C68B4802C00}) (Version: - Microsoft) Microsoft Office Outlook 2007 Help Обновление (KB963677) (HKLM-x32\...\{90120000-001A-0419-0000-0000000FF1CE}_PRO_{E9D6C0F9-9879-4FC4-8E13-BF0D3953E0E6}) (Version: - Microsoft) Microsoft Office Powerpoint 2007 Help Обновление (KB963669) (HKLM-x32\...\{90120000-0018-0419-0000-0000000FF1CE}_PRO_{BD1C2AC7-63F3-4C75-8B44-DE3D700B3BC8}) (Version: - Microsoft) Microsoft Office Word 2007 Help Обновление (KB963665) (HKLM-x32\...\{90120000-001B-0419-0000-0000000FF1CE}_PRO_{D3A002FB-0F62-4840-80AD-2D2C63F83449}) (Version: - Microsoft) Microsoft Office Профессиональный 2007 (HKLM-x32\...\PRO) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 RUS (HKLM\...\{E10C4125-229F-467B-B250-B02C443D2A29}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) pMetro 1.29 (HKLM-x32\...\pMetro_is1) (Version: - Boris Mouradov) PNV (HKLM\...\{B527F090-9B4F-4FE4-AF59-AC22341B5347}) (Version: 3.6.2 - Adicom) PNV (HKLM\...\{EBFAEB3F-6C64-4638-A546-67A2E6980997}) (Version: 2.6.1 - Adicom) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.41.216.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6251 - Realtek Semiconductor Corp.) SafeZone Stable 1.46.1990.55 (HKLM-x32\...\SafeZone 1.46.1990.55) (Version: 1.46.1990.55 - Avast Software) Hidden SafeZone Stable 3.55.2393.609 (HKLM-x32\...\SafeZone 3.55.2393.609) (Version: 3.55.2393.609 - Avast Software) Hidden Samsung Universal Print Driver (HKLM-x32\...\Samsung Universal Print Driver) (Version: 2.03.09.00 - Samsung Electronics Co., Ltd.) Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) Skype™ 7.38 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.38.101 - Skype Technologies S.A.) Speccy (HKLM\...\Speccy) (Version: 1.28 - Piriform) TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.78716 - TeamViewer) Tester 2.87 (HKLM-x32\...\Tester_is1) (Version: 2.87 - ФГУП ГНИВЦ ФНС России) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0014-0000-0000-0000000FF1CE}_PRO_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) WinRAR 5.40 (64-разрядная) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) Yandex (HKU\S-1-5-21-1622271281-2739419808-14151015-1000\...\YandexBrowser) (Version: 17.6.1.749 - ООО «ЯНДЕКС») Бизнес Пак 7.6.0.1715 (HKLM-x32\...\PV_BP_7_is1) (Version: - ProVision) Декларация 2014 (HKLM-x32\...\Декларация 2014) (Version: - ) Декларация 2015 (HKLM-x32\...\Декларация 2015) (Version: - ) КриптоПро CSP (HKLM\...\{54A08450-B343-40B0-924E-68F031450996}) (Version: 3.6.7777 - Компания КРИПТО-ПРО) КриптоПро ЭЦП Browser plug-in (HKLM\...\{E12CC7EE-36B7-4AAA-924E-2F5CD75BCECF}) (Version: 2.0.12888 - Компания КРИПТО-ПРО) Налогоплательщик (HKLM-x32\...\Налогоплательщик) (Version: 2013.12.27 - ЗАО "Служба налогоплательщика") Печать НД с PDF417 3.2.4 (пакет) (HKLM-x32\...\{D9D0E5CE-F386-4A74-B974-BF29485856C1}) (Version: 3.2.4 - ФГУП ГНИВЦ ФНС РФ в ПФО) Плагин пользователя систем электронного правительства (версия 2.0.6) x64 (HKLM\...\{E25F6DBC-745E-4EBB-84B1-76CBC83C809F}) (Version: 2.0.6.0 - Rostelecom) Расширение для мастера выпуска сертификатов x86 (HKLM-x32\...\{A5C614E4-9211-11E6-AE22-56B6B6499611}) (Version: 1.9.10 - Taxcom) Такском - Визор (HKLM-x32\...\Такском - Визор) (Version: 2.0 - ООО "Такском") Языковой пакет клиентского профиля Microsoft.NET Framework 4 - RUS (HKLM\...\Microsoft .NET Framework 4 Client Profile RUS Language Pack) (Version: 4.0.30319 - Корпорация Майкрософт) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-1622271281-2739419808-14151015-1000_Classes\CLSID\{1751D64C-7090-46BA-BEE7-668D425DBB46}\InprocServer32 -> C:\ProgramData\Taxcom\CryptoAx\npTaxcomCryptoAX64.dll (Taxcom) CustomCLSID: HKU\S-1-5-21-1622271281-2739419808-14151015-1000_Classes\CLSID\{301FA147-6CAE-4A58-B25A-A099924253F6}\InprocServer32 -> C:\ProgramData\Taxcom\CryptoAx\npTaxcomCryptoAX64.dll (Taxcom) CustomCLSID: HKU\S-1-5-21-1622271281-2739419808-14151015-1000_Classes\CLSID\{4CAF353D-6A31-4E09-8953-345A00BC2E44}\InprocServer32 -> C:\ProgramData\Taxcom\CryptoAx\npTaxcomCryptoAX64.dll (Taxcom) CustomCLSID: HKU\S-1-5-21-1622271281-2739419808-14151015-1000_Classes\CLSID\{51FA4878-0518-4C7D-9108-F335C698D6E2}\InprocServer32 -> C:\ProgramData\Taxcom\CryptoAx\npTaxcomCryptoAX64.dll (Taxcom) CustomCLSID: HKU\S-1-5-21-1622271281-2739419808-14151015-1000_Classes\CLSID\{72B9E6E8-3962-44D5-942C-E551D4A80BAF}\InprocServer32 -> C:\ProgramData\Taxcom\CryptoAx\npTaxcomCryptoAX64.dll (Taxcom) CustomCLSID: HKU\S-1-5-21-1622271281-2739419808-14151015-1000_Classes\CLSID\{CBD25298-E90B-4EB2-BA6F-CE868B6CD95F}\InprocServer32 -> C:\ProgramData\Taxcom\CryptoAx\npTaxcomCryptoAX64.dll (Taxcom) CustomCLSID: HKU\S-1-5-21-1622271281-2739419808-14151015-1000_Classes\CLSID\{CF00C50D-F95A-46F9-9986-F45E38A9B1B1}\InprocServer32 -> C:\ProgramData\Taxcom\CryptoAx\npTaxcomCryptoAX64.dll (Taxcom) CustomCLSID: HKU\S-1-5-21-1622271281-2739419808-14151015-1000_Classes\CLSID\{D7348A1B-AC1C-4E3E-A5BD-5B9C33827926}\InprocServer32 -> C:\ProgramData\Taxcom\CryptoAx\npTaxcomCryptoAX64.dll (Taxcom) CustomCLSID: HKU\S-1-5-21-1622271281-2739419808-14151015-1000_Classes\CLSID\{E29B289B-F4DD-4037-B25F-6F35EDF26453}\InprocServer32 -> C:\ProgramData\Taxcom\CryptoAx\npTaxcomCryptoAX64.dll (Taxcom) CustomCLSID: HKU\S-1-5-21-1622271281-2739419808-14151015-1000_Classes\CLSID\{E435D681-34E6-496A-A059-870911BC51AF}\InprocServer32 -> C:\ProgramData\Taxcom\CryptoAx\npTaxcomCryptoAX64.dll (Taxcom) CustomCLSID: HKU\S-1-5-21-1622271281-2739419808-14151015-1000_Classes\CLSID\{EB4D81AB-5976-468A-B156-289D672EAD61}\InprocServer32 -> C:\ProgramData\Taxcom\CryptoAx\npTaxcomCryptoAX64.dll (Taxcom) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-03] (AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-03] (AVAST Software) ContextMenuHandlers01: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat Elements\ContextMenuShim64.dll [2012-09-23] (Adobe Systems Inc.) ContextMenuHandlers01: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-03] (AVAST Software) ContextMenuHandlers01: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal) ContextMenuHandlers01: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> No File ContextMenuHandlers03: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-03] (AVAST Software) ContextMenuHandlers03: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-05-09] (Malwarebytes) ContextMenuHandlers04: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal) ContextMenuHandlers04: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> No File ContextMenuHandlers05: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2010-02-10] (Advanced Micro Devices, Inc.) ContextMenuHandlers06: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat Elements\ContextMenuShim64.dll [2012-09-23] (Adobe Systems Inc.) ContextMenuHandlers06: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-03] (AVAST Software) ContextMenuHandlers06: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-05-09] (Malwarebytes) ContextMenuHandlers06: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal) ContextMenuHandlers06: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> No File ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {02495518-51D0-4180-ACE8-E45FC19FEB8E} - System32\Tasks\Системное обновление Браузера Яндекс => C:\Program Files (x86)\Yandex\YandexBrowser\17.6.1.749\service_update.exe [2017-06-22] (YANDEX LLC) Task: {0A52D03B-1837-42DF-897C-611DB6E4255E} - System32\Tasks\Обновление Браузера Яндекс => C:\Users\ТАНЯ\AppData\Local\Yandex\YandexBrowser\Application\browser.exe [2017-06-22] (YANDEX LLC) Task: {1BEAEE81-A8A6-4ABD-8850-CFF224D2C70F} - \Microsoft\Windows\Media Center\PvrScheduleTask -> No File <==== ATTENTION Task: {1DA389DC-6C4A-438B-A694-DA9235B8EDC1} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-07-03] (AVAST Software) Task: {2B4F4CCD-2313-41A6-A70E-7C292B4BF784} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-01] (Google Inc.) Task: {371A1998-D6BE-4546-99BF-E318A7672FA2} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-11-07] (HP Inc.) Task: {3BC49055-1146-40DB-8923-83472CD780E8} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-05-05] (Piriform Ltd) Task: {53BC5264-FDBE-4648-963B-45D228E93F7A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2017-06-22] (HP Inc.) Task: {5C13E09E-B30B-4802-9F22-F9D29E526F7D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-06-17] (Adobe Systems Incorporated) Task: {5C6144B7-F21C-4033-84B6-8EF1C301F6E5} - System32\Tasks\{5D6FAB75-525B-4F05-9737-81D2C1E47928} => C:\Npw\npw.exe [2013-12-27] ( ) Task: {5D30A5F7-047C-49E5-8461-C3EF99529923} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-12-07] (HP Inc.) Task: {66CF4AF4-7730-427B-8C77-6D34B6DBB258} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-12-07] (HP Inc.) Task: {6790DD22-6913-4EC6-ACD8-B5F2E4942ECD} - \Microsoft\Windows\Media Center\ObjectStoreRecoveryTask -> No File <==== ATTENTION Task: {8A80B96A-7C34-4ACB-8EB7-4A7F8710542B} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-04-13] (AVAST Software) Task: {8E6AEB5E-AC1B-4A76-92A5-AFAADD4EAF2C} - System32\Tasks\{9A28DA6B-93A5-4486-90F7-D646D7EFE22D} => C:\Npw\npw.exe [2013-12-27] ( ) Task: {90972E87-AD4D-48CF-8160-3EBCD7F91AF8} - \Microsoft\Windows\Media Center\SqlLiteRecoveryTask -> No File <==== ATTENTION Task: {9E441D00-0739-48D3-BD74-E22666F06EE6} - \{1318701F-4B7A-4765-9CFC-8CC54651CE3B} -> No File <==== ATTENTION Task: {A59945AD-EC2D-4F51-B9F1-D9DF81D92CC0} - \Microsoft\Windows\Media Center\MediaCenterRecoveryTask -> No File <==== ATTENTION Task: {AC4E5ACF-89F7-4220-BA21-81EE183975E2} - System32\Tasks\Microsoft\Windows\Application Experience\AitAgent => C:\Windows\system32\aitagent.exe [2010-11-21] (Корпорация Майкрософт (Microsoft Corp.)) Task: {B6A80CC1-4953-49D4-90EB-7E6D2F875CDA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-01] (Google Inc.) Task: {C471E291-0A06-455A-BFFF-68738B8536D5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2017-05-25] (HP Inc.) Task: {D86900C3-42ED-40AB-8AC3-8C23B3B97B56} - System32\Tasks\SafeZone scheduled Autoupdate 1458728191 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-06-13] (Avast Software) Task: {D8EFC0D8-98F1-4F6F-AB70-89B6CDFE9A04} - System32\Tasks\SafeZone scheduled Autoupdate 1448188748 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-06-13] (Avast Software) Task: {DAB1FCF5-435C-4894-B8A8-0182E3F5E440} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated) Task: {DEDFBF3C-C127-4331-8404-FBB8FD1A800C} - System32\Tasks\HPCeeScheduleForТАНЯ => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2015-06-16] (Hewlett-Packard) Task: {EE1455FD-7C1E-4A5E-9B40-445288D37770} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-04-07] (HP Inc.) Task: {F14860ED-802A-4771-A20F-CF09D682E3CD} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-04-07] (HP Inc.) Task: {FDF277B6-9ADF-4D25-AFC1-722CE031BBFF} - System32\Tasks\ASUS\Gpu Boost Driver => C:\Program Files\ASUS\GPU Boost Driver\GpuBoostServer.exe [2010-03-27] ( ASUSTeK Computer Inc.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\HPCeeScheduleForТАНЯ.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\Windows\Tasks\Обновление Браузера Яндекс.job => C:\Users\ТАНЯ\AppData\Local\Yandex\YandexBrowser\Application\browser.exe Task: C:\Windows\Tasks\Системное обновление Браузера Яндекс.job => C:\Program Files (x86)\Yandex\YandexBrowser\17.6.1.749\service_update.exe ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) Shortcut: C:\Users\ТАНЯ\Desktop\Yаndех.lnk -> C:\Users\ТАНЯ\AppData\Local\Yandex\browser.bat (No File) Shortcut: C:\Users\ТАНЯ\Desktop\Бизнес Пак 7.lnk -> C:\bp7\bp.exe () <==== Cyrillic Shortcut: C:\Users\ТАНЯ\Desktop\Документы - Таня.lnk -> E:\Мои документы () <==== Cyrillic Shortcut: C:\Users\ТАНЯ\Desktop\Мои документы - Ярлык.lnk -> D:\Documents and Settings\Таня\Мои документы () <==== Cyrillic Shortcut: C:\Users\ТАНЯ\Desktop\Налогоплательщик.lnk -> C:\Npw\npw.exe ( ) <==== Cyrillic Shortcut: C:\Users\ТАНЯ\Desktop\Рабочий стол - Ярлык.lnk -> D:\Documents and Settings\Таня\Рабочий стол () <==== Cyrillic Shortcut: C:\Users\ТАНЯ\Desktop\Такском-Визор.lnk -> C:\Taxcom\TaxcomVisor\TaxcomVisor.exe (ООО Такском) <==== Cyrillic Shortcut: C:\Users\ТАНЯ\Desktop\Квартира В.Ф\Декларация 2014.lnk -> C:\Program Files (x86)\Декларация 2014\Decl2014.exe (ФГУП ГНИВЦ ФНС России) <==== Cyrillic Shortcut: C:\Users\ТАНЯ\Desktop\Квартира В.Ф\Декларация 2015.lnk -> C:\Program Files (x86)\Декларация 2015\Decl2015.exe (ФГУП ГНИВЦ ФНС России) <==== Cyrillic Shortcut: C:\Users\ТАНЯ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Налогоплательщик\Налогоплательщик.lnk -> C:\Npw\npw.exe ( ) <==== Cyrillic Shortcut: C:\Users\ТАНЯ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Новости в последней версии.lnk -> C:\Program Files\WinRAR\WhatsNew.txt () <==== Cyrillic Shortcut: C:\Users\ТАНЯ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Руководство по консольной версии RAR.lnk -> C:\Program Files\WinRAR\Rar.txt () <==== Cyrillic Shortcut: C:\Users\ТАНЯ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Справка WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.chm () <==== Cyrillic Shortcut: C:\Users\ТАНЯ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Taxcom\Такском-Визор\Справка.lnk -> C:\Taxcom\TaxcomVisor\Taxcom_Visor_Help.chm () <==== Cyrillic Shortcut: C:\Users\ТАНЯ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Taxcom\Такском-Визор\Такском-Визор.lnk -> C:\Taxcom\TaxcomVisor\TaxcomVisor.exe (ООО Такском) <==== Cyrillic Shortcut: C:\Users\ТАНЯ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Taxcom\Такском-Визор\Удалить.lnk -> C:\Taxcom\TaxcomVisor\Uninstall.exe () <==== Cyrillic Shortcut: C:\Users\ТАНЯ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Intеrnеt Ехplоrеr (Nо Аdd-оns).lnk -> C:\IЕХPLОRЕ.BАT.EXE (No File) <==== Cyrillic Shortcut: C:\Users\ТАНЯ\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Yаndех.lnk -> C:\Users\ТАНЯ\AppData\Local\Yandex\browser.bat (No File) Shortcut: C:\Users\ТАНЯ\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Yаndех.lnk -> C:\Users\ТАНЯ\AppData\Local\Yandex\browser.bat (No File) Shortcut: C:\Users\Public\Desktop\1C Предприятие.lnk -> C:\Program Files (x86)\1cv8\common\1cestart.exe (1C) <==== Cyrillic ShortcutWithArgument: C:\Users\ТАНЯ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Адиком-Системс\ПНВ\Удалить ПНВ.lnk -> C:\Windows\System32\msiexec.exe (Microsoft Corporation) -> /x {B527F090-9B4F-4FE4-AF59-AC22341B5347} <==== Cyrillic ShortcutWithArgument: C:\Users\ТАНЯ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Taxcom\Такском-Визор\Мастер обновления.lnk -> C:\Taxcom\TaxcomVisor\TXUpdater.exe (Taxcom) -> /sc <==== Cyrillic ShortcutWithArgument: C:\Users\ТАНЯ\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\1С Предприятие.lnk -> C:\Program Files (x86)\1Cv77\BIN\1cv7l.exe (1C) -> enterprise <==== Cyrillic ShortcutWithArgument: C:\Users\Public\Desktop\1С Предприятие.lnk -> C:\Program Files (x86)\1Cv77\BIN\1cv7l.exe (1C) -> enterprise <==== Cyrillic ==================== Loaded Modules (Whitelisted) ============== 2015-11-11 20:15 - 2012-08-31 15:03 - 00288768 _____ () C:\Windows\System32\HP1100LM.DLL 2012-11-20 19:56 - 2011-04-11 08:26 - 00034304 _____ () C:\Windows\System32\spd__l.dll 2006-12-04 00:26 - 2006-12-04 00:26 - 00022016 _____ () C:\Windows\System32\sugo3l6.dll 2015-11-11 20:20 - 2012-08-31 15:02 - 00074240 _____ () C:\Windows\system32\spool\PRTPROCS\x64\HP1100PP.DLL 2017-04-07 10:41 - 2017-04-07 10:41 - 00054488 _____ () C:\Program Files\CCleaner\branding.dll 2017-05-05 19:07 - 2017-05-05 19:07 - 00065536 _____ () C:\Program Files\CCleaner\lang\lang-1049.dll 2012-11-20 23:20 - 2012-11-20 23:20 - 00270336 _____ () C:\Windows\assembly\GAC_MSIL\CLI.Aspect.CrossDisplay.Graphics.Dashboard\1.0.0.0__90ba9c70f846762e\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2017-07-03 18:21 - 2017-07-03 18:21 - 00162032 _____ () c:\Program Files\AVAST Software\Avast\x64\vaarclient.dll 2017-07-03 18:21 - 2017-07-03 18:21 - 00831664 _____ () C:\Program Files\AVAST Software\Avast\x64\ffl2.dll 2017-07-03 18:21 - 2017-07-03 18:21 - 00276808 _____ () c:\Program Files\AVAST Software\Avast\x64\StreamBack.dll 2017-07-03 18:21 - 2017-07-03 18:21 - 00170224 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-07-03 18:21 - 2017-07-03 18:21 - 00192664 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll 2017-07-03 18:21 - 2017-07-03 18:21 - 00224256 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2017-07-10 12:37 - 2017-07-10 12:37 - 05785496 _____ () C:\Program Files\AVAST Software\Avast\defs\17071000\algo.dll 2017-07-03 18:21 - 2017-07-03 18:21 - 00689272 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2017-07-03 18:21 - 2017-07-03 18:21 - 00231664 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll 2012-11-20 23:24 - 2010-03-12 04:40 - 04449632 _____ () C:\Program Files\ASUS\GPU Boost Driver\Platform.dll 2012-11-20 23:24 - 2010-03-12 04:40 - 00423256 _____ () C:\Program Files\ASUS\GPU Boost Driver\Device.dll 2017-07-03 18:21 - 2017-07-03 18:21 - 01038952 _____ () C:\Program Files\AVAST Software\Avast\AvChrome.dll 2017-07-03 18:21 - 2017-07-03 18:21 - 67109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2017-07-03 18:21 - 2017-07-03 18:21 - 00292920 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2017-07-03 18:21 - 2017-07-03 18:21 - 02962096 _____ () C:\Program Files\AVAST Software\Avast\aswDataScan.dll 2017-06-20 11:28 - 2017-06-20 11:28 - 01997792 ____R () C:\Program Files (x86)\Skype\Phone\skypert.dll 2012-11-20 23:21 - 2009-04-22 19:20 - 00179712 _____ () C:\Program Files (x86)\ASUS\EPU\ASUSSERVICE.DLL 2012-11-20 23:21 - 2010-01-08 16:17 - 00565248 _____ () C:\Program Files (x86)\ASUS\EPU\pngio.dll 2012-11-20 23:21 - 2010-01-08 16:17 - 00053248 _____ () C:\Program Files (x86)\ASUS\EPU\AsSpindownTimeout.dll 2009-08-04 17:23 - 2009-08-04 17:23 - 00063032 _____ () C:\Program Files (x86)\HP\HP UT LEDM\bin\HPTools.dll 2009-08-04 17:23 - 2009-08-04 17:23 - 00075320 _____ () C:\Program Files (x86)\HP\HP UT LEDM\bin\HPToolkit.dll 2009-08-04 17:22 - 2009-08-04 17:22 - 00136248 _____ () C:\Program Files (x86)\HP\HP UT LEDM\bin\DMBaseObjects.dll 2009-08-04 17:22 - 2009-08-04 17:22 - 00678968 _____ () C:\Program Files (x86)\HP\HP UT LEDM\bin\LEDMXMLObjects.dll 2012-09-23 20:44 - 2012-09-23 20:44 - 00010240 _____ () C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\locale\ru_ru\acrotray.rus ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-1622271281-2739419808-14151015-1000\...\nalog.ru -> hxxps://lkul.nalog.ru IE trusted site: HKU\S-1-5-21-1622271281-2739419808-14151015-1000\...\nalog.ru -> hxxp://lkul.nalog.ru IE trusted site: HKU\S-1-5-21-1622271281-2739419808-14151015-1000\...\taxcom.ru -> hxxps://taxcom.ru ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 05:34 - 2009-06-11 00:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1622271281-2739419808-14151015-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\ТАНЯ\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 212.1.224.6 - 212.1.244.6 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{C1C4F523-8155-44DD-8033-158651BFD72C}] => (Allow) C:\Windows\System32\SUPDSvc2.exe FirewallRules: [{F59E6EB9-697D-4261-ABD7-61E3DD52F0B4}] => (Allow) C:\Windows\System32\SUPDSvc2.exe FirewallRules: [{FF86039C-1357-4C86-92AB-0F2C4C66A4AA}] => (Allow) C:\Windows\system32\hasplms.exe FirewallRules: [{032FC8DC-4794-453F-BE7D-B5D1200C2B46}] => (Allow) C:\Users\ТАНЯ\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{43F9888B-8F01-4CC0-96F5-98A23589BEBE}] => (Allow) C:\Users\ТАНЯ\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{2AEF5718-8CBC-46F7-83DB-0375501B9BF7}] => (Allow) C:\Windows\system32\hasplms.exe FirewallRules: [{A98FC2E1-8C5B-4ABB-A4CF-7441B6CD890A}] => (Allow) C:\Windows\system32\hasplms.exe FirewallRules: [{669A9F4E-6D2C-4422-B418-3C7D20E46F4B}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{2658F5A5-A376-4F8E-B4D4-2721072E0C6E}] => (Allow) C:\Windows\system32\hasplms.exe FirewallRules: [TCP Query User{E90A8CD0-B35C-450C-9FB5-D02526CFE55C}C:\program files (x86)\1cv8\8.3.9.2170\bin\1cv8.exe] => (Allow) C:\program files (x86)\1cv8\8.3.9.2170\bin\1cv8.exe FirewallRules: [UDP Query User{B898F86E-3B47-4ADF-895F-264A4BF187FD}C:\program files (x86)\1cv8\8.3.9.2170\bin\1cv8.exe] => (Allow) C:\program files (x86)\1cv8\8.3.9.2170\bin\1cv8.exe FirewallRules: [{E555AF11-A69A-47E9-9B8E-6CCE104C8ADD}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.607\SZBrowser.exe FirewallRules: [{94E3E3AA-BA4C-4520-AC58-9BBFA6C55A28}] => (Allow) C:\Users\ТАНЯ\AppData\Local\Yandex\YandexBrowser\Application\browser.exe FirewallRules: [{94EAF03E-9B84-4A3D-8391-5BFC41EAF410}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{CF65696B-2D45-4439-9F69-D33594861E16}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{D2215B4E-C577-4985-A0B5-7791D6701E38}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{E9B6BB88-E1B8-414B-8387-FE45C281EC22}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{9A0D861D-7476-4304-A7B4-3264E153B046}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{B9B06456-F514-4618-9BD7-D6AFCF68B62C}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe ==================== Restore Points ========================= ==================== Faulty Device Manager Devices ============= Name: Unknown Device Description: Unknown Device Class Guid: {36fc9e60-c465-11cf-8056-444553540000} Manufacturer: (Стандартный USB хост-контроллер) Service: Problem: : Windows has stopped this device because it has reported problems. (Code 43) Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. ==================== Event log errors: ========================= Application errors: ================== Error: (07/10/2017 04:55:14 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (07/10/2017 04:46:32 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (07/10/2017 12:37:26 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (07/10/2017 09:14:34 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (07/09/2017 05:59:13 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (07/09/2017 12:01:06 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (07/09/2017 09:44:03 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (07/08/2017 08:38:59 PM) (Source: MsiInstaller) (EventID: 1024) (User: ТАНЯ-ПК) Description: Продукт: Adobe Acrobat XI Pro - не удается установить пакет обновлений "{AC76BA86-A440-FFFF-A440-7A8C40011020}". Код ошибки 1603. Установщику Windows не удается создать журналы для помощи при устранении неполадок во время установки пакетов программ. Для получения указаний по включению поддержки журнала воспользуйтесь ссылкой: http://go.microsoft.com/fwlink/?LinkId=23127 Error: (07/08/2017 08:38:59 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Имя сбойного приложения: MsiExec.exe, версия: 5.0.7601.17514, отметка времени: 0x4ce792c4 Имя сбойного модуля: MSI97E4.tmp_unloaded, версия: 0.0.0.0, отметка времени 0x535f8f27 Код исключения: 0xc0000005 Смещение ошибки: 0x59e37c28 Идентификатор сбойного процесса: 0x15bc Время запуска сбойного приложения: 0x01d2f81112b94e83 Путь сбойного приложения: C:\Windows\syswow64\MsiExec.exe Путь сбойного модуля: MSI97E4.tmp Код отчета: 5262a391-6404-11e7-bec9-f46d04cde596 Error: (07/08/2017 01:26:03 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. System errors: ============= Error: (07/10/2017 04:55:12 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Сбой при запуске службы "WebcamMax, WDM Video Capture" из-за ошибки Указанная служба не может быть запущена, поскольку она отключена или все связанные с ней устройства отключены. Error: (07/10/2017 04:54:09 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Служба Служба общих сетевых ресурсов проигрывателя Windows Media была неожиданно завершена. Это произошло 1 раз(а). Следующее корректирующее действие будет предпринято через 30000 мсек: Перезапуск службы. Error: (07/10/2017 04:54:09 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Служба "HP Support Solutions Framework Service" неожиданно прервана. Это произошло (раз): 1. Error: (07/10/2017 04:54:09 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Служба Windows Search была неожиданно завершена. Это произошло 1 раз(а). Следующее корректирующее действие будет предпринято через 30000 мсек: Перезапуск службы. Error: (07/10/2017 04:54:08 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Служба Malwarebytes Service была неожиданно завершена. Это произошло 1 раз(а). Следующее корректирующее действие будет предпринято через 5000 мсек: Перезапуск службы. Error: (07/10/2017 04:54:08 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Служба "Yandex.Browser Update Service" неожиданно прервана. Это произошло (раз): 1. Error: (07/10/2017 04:54:08 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Служба HP SI Service была неожиданно завершена. Это произошло 1 раз(а). Следующее корректирующее действие будет предпринято через 1000 мсек: Перезапуск службы. Error: (07/10/2017 04:54:08 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Служба "HP LaserJet Service" неожиданно прервана. Это произошло (раз): 1. Error: (07/10/2017 04:54:07 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Служба "Adobe Acrobat Update Service" неожиданно прервана. Это произошло (раз): 1. Error: (07/10/2017 04:54:07 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Служба Диспетчер печати была неожиданно завершена. Это произошло 1 раз(а). Следующее корректирующее действие будет предпринято через 60000 мсек: Перезапуск службы. CodeIntegrity: =================================== Date: 2016-09-21 20:35:21.730 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\aswHdsKe.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-09-21 20:35:21.730 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\aswHdsKe.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-09-20 20:34:01.056 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\aswHdsKe.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-09-20 20:34:01.056 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\aswHdsKe.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-09-10 09:31:40.989 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-10 09:31:40.942 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-09 19:19:54.098 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-09 19:19:54.052 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-09 09:09:14.254 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-09 09:09:14.208 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: AMD FX(tm)-6100 Six-Core Processor Percentage of memory in use: 27% Total physical RAM: 7919.11 MB Available physical RAM: 5756.66 MB Total Virtual: 15836.43 MB Available Virtual: 13601.2 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:59.53 GB) (Free:10.07 GB) NTFS Drive d: () (Fixed) (Total:27.49 GB) (Free:1.37 GB) NTFS Drive e: () (Fixed) (Total:9.77 GB) (Free:1.43 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 59.6 GB) (Disk ID: 12B6FBF3) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=59.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 37.3 GB) (Disk ID: 27E027DF) Partition 1: (Active) - (Size=27.5 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=9.8 GB) - (Type=OF Extended) ==================== End of Addition.txt ============================