Additional scan result of Farbar Recovery Scan Tool (x86) Version: 02.01.2018 Ran by Юрий (12-01-2018 18:30:58) Running from D:\БЕЗОПАСТНОСТЬ Microsoft Windows 7 Профессиональная Service Pack 1 (X86) (2017-12-20 11:21:53) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Администратор (S-1-5-21-1279751959-806094584-1481306012-500 - Administrator - Disabled) Гость (S-1-5-21-1279751959-806094584-1481306012-501 - Limited - Disabled) Юрий (S-1-5-21-1279751959-806094584-1481306012-1000 - Administrator - Enabled) => C:\Users\Юрий ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Kaspersky Free (Enabled - Up to date) {86367591-4BE4-AE08-2FD9-7FCB8259CD98} AS: Kaspersky Free (Enabled - Up to date) {3D579475-6DDE-A186-1569-44B9F9DE8725} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Acrobat Reader DC - Russian (HKLM\...\{AC76BA86-7AD7-1049-7B44-AC0F074E4100}) (Version: 18.009.20050 - Adobe Systems Incorporated) Adobe Flash Player 28 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 28.0.0.137 - Adobe Systems Incorporated) Adobe Flash Player 28 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 28.0.0.137 - Adobe Systems Incorporated) Adobe Flash Player 28 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 28.0.0.137 - Adobe Systems Incorporated) Canon Easy-PhotoPrint EX (HKLM\...\Easy-PhotoPrint EX) (Version: - ) Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM\...\CANONIJPLM100) (Version: - ) Canon MG5100 series - регистрация пользователя (HKLM\...\Canon MG5100 series - регистрация пользователя) (Version: - ) Canon MG5100 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5100_series) (Version: - ) Canon MP Navigator EX 4.0 (HKLM\...\MP Navigator EX 4.0) (Version: - ) Elcomsoft Distributed Password Recovery (HKLM\...\{547A89A3-C5D2-43E6-8BEC-1D34F98B880E}) (Version: 3.40.1111.3867 - Elcomsoft Co. Ltd.) Extended Asian Language font pack for Adobe Acrobat Reader DC (HKLM\...\{AC76BA86-7AD7-2530-0000-AC0F074E4100}) (Version: 15.007.20033 - Adobe Systems Incorporated) Google Chrome (HKLM\...\Google Chrome) (Version: 63.0.3239.132 - Google Inc.) Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden Kaspersky Free (HKLM\...\{5AAE61FF-858E-453E-B8F3-944618149975}) (Version: 18.0.0.405 - Лаборатория Касперского) Hidden Kaspersky Free (HKLM\...\InstallWIX_{5AAE61FF-858E-453E-B8F3-944618149975}) (Version: 18.0.0.405 - Лаборатория Касперского) Kaspersky Secure Connection (HKLM\...\{F33C0717-8E04-4EB5-90C8-47221287DB4F}) (Version: 18.0.0.405 - Лаборатория Касперского) Hidden Kaspersky Secure Connection (HKLM\...\InstallWIX_{F33C0717-8E04-4EB5-90C8-47221287DB4F}) (Version: 18.0.0.405 - Лаборатория Касперского) K-Lite Codec Pack 13.5.5 Basic (HKLM\...\KLiteCodecPack_is1) (Version: 13.5.5 - KLCP) Microsoft .NET Framework 4.7.1 (HKLM\...\{4CB05D36-1518-395D-8C39-A102343CF661}) (Version: 4.7.02558 - Microsoft Corporation) Microsoft Office Стандартный 2007 (HKLM\...\STANDARD) (Version: 12.0.4518.1014 - Microsoft Corporation) NVIDIA Графический драйвер 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 342.01 - NVIDIA Corporation) Opera Stable 49.0.2725.64 (HKLM\...\Opera 49.0.2725.64) (Version: 49.0.2725.64 - Opera Software) PicPick (HKLM\...\PicPick) (Version: 4.2.1 - NGWIN) Unity Web Player (HKU\S-1-5-21-1279751959-806094584-1481306012-1000\...\UnityWebPlayer) (Version: 5.3.5f1 - Unity Technologies ApS) WinRAR 5.50 (32-разрядная) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH) Версия V5.7.47 (HKLM\...\Main_is1) (Version: - TC Triton) Кнопка "Яндекс" на панели задач (HKU\S-1-5-21-1279751959-806094584-1481306012-1000\...\YaPinLancher) (Version: 2.0.2.2143 - Яндекс) Менеджер браузеров (HKLM\...\{FABA89D9-D588-4770-9F85-F6FF9F064257}) (Version: 3.0.6.829 - Яндекс) Hidden Менеджер браузеров (HKU\S-1-5-21-1279751959-806094584-1481306012-1000\...\{d4bb3741-07a4-443a-8c73-0cfda821c697}) (Version: 3.0.6.829 - Яндекс) Обновления NVIDIA 2.11.4.125 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 2.11.4.125 - NVIDIA Corporation) Панель управления NVIDIA 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 342.01 - NVIDIA Corporation) Hidden Чистилка (HKLM\...\Чистилка) (Version: 2.19.77 - Чистилка) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-1279751959-806094584-1481306012-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\Юрий\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS) ContextMenuHandlers1: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files\Kaspersky Lab\Kaspersky Free 18.0.0\shellex.dll [2017-12-20] (AO Kaspersky Lab) ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers2: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files\Kaspersky Lab\Kaspersky Free 18.0.0\shellex.dll [2017-12-20] (AO Kaspersky Lab) ContextMenuHandlers4: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files\Kaspersky Lab\Kaspersky Free 18.0.0\shellex.dll [2017-12-20] (AO Kaspersky Lab) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2016-11-14] (NVIDIA Corporation) ContextMenuHandlers6: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files\Kaspersky Lab\Kaspersky Free 18.0.0\shellex.dll [2017-12-20] (AO Kaspersky Lab) ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {15164AA0-984A-4010-ABD7-65365549CA2C} - System32\Tasks\Opera scheduled Autoupdate 1513774766 => C:\Program Files\Opera\launcher.exe [2017-12-18] (Opera Software) Task: {199B9B20-F71A-4064-9786-359F61CD2658} - System32\Tasks\klcp_update => C:\Program Files\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2017-09-22] () Task: {583639C1-27AD-40CF-9CE0-0414DCB4FEDD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2017-12-30] (Google Inc.) Task: {79AA58C1-CC17-4899-85CE-FC0396C627C7} - System32\Tasks\update-sys => C:\Program Files\Skillbrains\Updater\Updater.exe [2017-04-12] (TODO: ) Task: {79B58FD0-58F5-4575-B337-6C3E366DE63D} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\system32\Macromed\Flash\FlashUtil32_28_0_0_137_pepper.exe [2018-01-09] (Adobe Systems Incorporated) Task: {B3E63F66-A572-4A02-911A-986EBFADDC56} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2018-01-09] (Adobe Systems Incorporated) Task: {B8FF0C44-0BDD-427C-9401-6A37F1D3017C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2017-12-30] (Google Inc.) Task: {D5A02F91-3ABA-4A79-A688-9A3BD0D86961} - System32\Tasks\update-S-1-5-21-1279751959-806094584-1481306012-1000 => C:\Program Files\Skillbrains\Updater\Updater.exe [2017-04-12] (TODO: ) Task: {F49A2CDC-862C-40DA-86FE-8FAA1BBBC115} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-09-27] (Adobe Systems Incorporated) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\update-S-1-5-21-1279751959-806094584-1481306012-1000.job => C:\Program Files\Skillbrains\Updater\Updater.exe Task: C:\Windows\Tasks\update-sys.job => C:\Program Files\Skillbrains\Updater\Updater.exe ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) Shortcut: C:\Users\Юрий\Desktop\Программатор ТРИТОН.lnk -> C:\Program Files\Triton\Trisoft.exe (TC Triton) <==== Cyrillic Shortcut: C:\Users\Юрий\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Яндекс\Менеджер браузеров\Менеджер браузеров.lnk -> C:\Users\Юрий\AppData\Local\Yandex\BrowserManager\BrowserManager.exe (No File) <==== Cyrillic Shortcut: C:\Users\Юрий\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Новости в последней версии.lnk -> C:\Program Files\WinRAR\WhatsNew.txt () <==== Cyrillic Shortcut: C:\Users\Юрий\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Руководство по консольной версии RAR.lnk -> C:\Program Files\WinRAR\Rar.txt () <==== Cyrillic Shortcut: C:\Users\Юрий\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Справка WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.chm () <==== Cyrillic Shortcut: C:\Users\Юрий\AppData\Roaming\Microsoft\Windows\SendTo\Программатор ТРИТОН.lnk -> C:\Program Files\Triton\Trisoft.exe (TC Triton) <==== Cyrillic Shortcut: C:\Users\Юрий\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Браузер Opera.lnk -> C:\Program Files\Opera\launcher.exe (Opera Software) <==== Cyrillic Shortcut: C:\Users\Юрий\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Программатор ТРИТОН.lnk -> C:\Program Files\Triton\Trisoft.exe (TC Triton) <==== Cyrillic Shortcut: C:\Users\Юрий\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Браузер Opera.lnk -> C:\Program Files\Opera\launcher.exe (Opera Software) <==== Cyrillic Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Браузер Opera.lnk -> C:\Program Files\Opera\launcher.exe (Opera Software) <==== Cyrillic Shortcut: C:\Users\Public\Desktop\Браузер Opera.lnk -> C:\Program Files\Opera\launcher.exe (Opera Software) <==== Cyrillic Shortcut: C:\Users\Public\Desktop\Чистилка.lnk -> C:\ProgramData\Чистилка\Чистилка.exe () <==== Cyrillic ShortcutWithArgument: C:\Users\Public\Desktop\Canon MG5100 series Электронное руководство.lnk -> C:\Program Files\Canon\IJ Manual\Easy Guide Viewer\cmview.exe (CANON INC.) -> "C:\PROGRAM FILES\Canon\IJ Manual\CANON MG5100 SERIES\Russian\Info.egv" <==== Cyrillic ==================== Loaded Modules (Whitelisted) ============== 2017-12-20 16:03 - 2016-11-14 14:00 - 000123448 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll 2017-12-20 19:19 - 2017-12-20 19:19 - 000836968 _____ () C:\Program Files\Kaspersky Lab\Kaspersky Free 18.0.0\kpcengine.2.3.dll 2018-01-10 20:23 - 2017-12-21 12:41 - 002086664 _____ () C:\ProgramData\Чистилка\Чистилка.exe 2017-12-22 18:28 - 2010-04-05 22:55 - 000116104 _____ () C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE 2017-08-09 13:34 - 2017-08-09 13:34 - 000193832 _____ () C:\Program Files\Elcomsoft\Common Files\taccapi.dll 2017-08-09 13:30 - 2017-08-09 13:30 - 006407680 _____ () C:\Program Files\Elcomsoft\Common Files\espr_dashlane.dll 2017-08-09 13:29 - 2017-08-09 13:29 - 002624512 _____ () C:\Program Files\Elcomsoft\Common Files\espr_dmg.dll 2017-08-09 13:29 - 2017-08-09 13:29 - 011324928 _____ () C:\Program Files\Elcomsoft\Common Files\espr_itunes.dll 2017-08-09 13:30 - 2017-08-09 13:30 - 006379520 _____ () C:\Program Files\Elcomsoft\Common Files\espr_lastpass.dll 2017-08-09 13:30 - 2017-08-09 13:30 - 006946816 _____ () C:\Program Files\Elcomsoft\Common Files\espr_onepassword.dll 2017-08-09 13:30 - 2017-08-09 13:30 - 000152064 _____ () C:\Program Files\Elcomsoft\Common Files\openipc.dll 2018-01-06 10:26 - 2018-01-03 11:56 - 003062104 _____ () C:\Program Files\Google\Chrome\Application\63.0.3239.132\libglesv2.dll 2018-01-06 10:26 - 2018-01-03 11:56 - 000085848 _____ () C:\Program Files\Google\Chrome\Application\63.0.3239.132\libegl.dll 2017-12-21 01:45 - 2017-12-18 10:04 - 069364008 _____ () C:\Program Files\Opera\49.0.2725.64\opera_browser.dll 2017-12-21 01:45 - 2017-12-18 10:04 - 003194152 _____ () C:\Program Files\Opera\49.0.2725.64\libglesv2.dll 2017-12-21 01:45 - 2017-12-18 10:04 - 000095528 _____ () C:\Program Files\Opera\49.0.2725.64\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 05:04 - 2018-01-09 12:47 - 000000923 _____ C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 genuine.microsoft.com 127.0.0.1 mpa.one.microsoft.com 127.0.0.1 sls.microsoft.com ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1279751959-806094584-1481306012-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Юрий\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{A8784687-8533-448F-94FC-AB0169BFD57F}] => (Allow) C:\Program Files\Opera\49.0.2725.34\opera.exe FirewallRules: [{E98EE316-6D79-420E-8593-D0151B00D0AB}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [{B4C84053-DB6A-4902-A568-58399CF8EF14}] => (Allow) C:\Program Files\Opera\49.0.2725.64\opera.exe FirewallRules: [{81C9A928-DE49-4517-B0D8-00A88BBCDBBE}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe FirewallRules: [{832D33E3-9B3A-4DA9-8F21-4F8B89FF1DDE}] => (Allow) C:\Program Files\Elcomsoft Password Recovery\Distributed Password Recovery\edpr_server.exe ==================== Restore Points ========================= 08-01-2018 18:20:08 Утилита архивации Windows 10-01-2018 20:44:22 Installed Elcomsoft Distributed Password Recovery ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (01/12/2018 10:23:12 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (01/12/2018 10:20:02 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Ошибка активации лицензии Windows. Ошибка 0x00000000. Error: (01/12/2018 10:20:02 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Сбой активации лицензий (slui.exe). Код ошибки: 0x800401F9 Error: (01/11/2018 09:49:28 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (01/11/2018 09:47:49 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Ошибка активации лицензии Windows. Ошибка 0x00000000. Error: (01/11/2018 09:47:49 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Сбой активации лицензий (slui.exe). Код ошибки: 0x800401F9 Error: (01/11/2018 09:18:56 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (01/11/2018 09:17:14 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Ошибка активации лицензии Windows. Ошибка 0x00000000. Error: (01/11/2018 09:17:14 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Сбой активации лицензий (slui.exe). Код ошибки: 0x800401F9 Error: (01/11/2018 09:09:33 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. System errors: ============= Error: (01/12/2018 06:26:55 PM) (Source: Disk) (EventID: 7) (User: ) Description: Неверный блок на устройстве \Device\Harddisk0\DR0. Error: (01/12/2018 06:26:53 PM) (Source: Disk) (EventID: 7) (User: ) Description: Неверный блок на устройстве \Device\Harddisk0\DR0. Error: (01/12/2018 06:26:51 PM) (Source: Disk) (EventID: 7) (User: ) Description: Неверный блок на устройстве \Device\Harddisk0\DR0. Error: (01/12/2018 06:26:49 PM) (Source: Disk) (EventID: 7) (User: ) Description: Неверный блок на устройстве \Device\Harddisk0\DR0. Error: (01/12/2018 06:21:48 PM) (Source: Disk) (EventID: 7) (User: ) Description: Неверный блок на устройстве \Device\Harddisk0\DR0. Error: (01/12/2018 06:21:46 PM) (Source: Disk) (EventID: 7) (User: ) Description: Неверный блок на устройстве \Device\Harddisk0\DR0. Error: (01/12/2018 06:21:44 PM) (Source: Disk) (EventID: 7) (User: ) Description: Неверный блок на устройстве \Device\Harddisk0\DR0. Error: (01/12/2018 06:21:42 PM) (Source: Disk) (EventID: 7) (User: ) Description: Неверный блок на устройстве \Device\Harddisk0\DR0. Error: (01/12/2018 06:21:40 PM) (Source: Disk) (EventID: 7) (User: ) Description: Неверный блок на устройстве \Device\Harddisk0\DR0. Error: (01/12/2018 06:21:38 PM) (Source: Disk) (EventID: 7) (User: ) Description: Неверный блок на устройстве \Device\Harddisk0\DR0. CodeIntegrity: =================================== Date: 2018-01-11 16:01:59.991 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Kaspersky Lab\Kaspersky Free 18.0.0\klelam_X86\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2018-01-11 16:01:59.974 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Kaspersky Lab\Kaspersky Free 18.0.0\klelam_X86\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2018-01-11 16:01:59.958 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Kaspersky Lab\Kaspersky Free 18.0.0\klelam_X86\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2018-01-11 16:01:59.932 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Kaspersky Lab\Kaspersky Free 18.0.0\klelam_X86\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2018-01-11 16:01:59.924 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Kaspersky Lab\Kaspersky Free 18.0.0\klelam_X86\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2018-01-11 16:01:59.910 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Kaspersky Lab\Kaspersky Free 18.0.0\klelam_X86\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2018-01-10 21:26:40.740 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Kaspersky Lab\Kaspersky Free 18.0.0\klelam_X86\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2018-01-10 21:26:40.723 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Kaspersky Lab\Kaspersky Free 18.0.0\klelam_X86\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2018-01-10 21:26:40.707 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Kaspersky Lab\Kaspersky Free 18.0.0\klelam_X86\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2018-01-10 21:26:40.682 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Kaspersky Lab\Kaspersky Free 18.0.0\klelam_X86\klelam.sys because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Celeron(R) CPU E1200 @ 1.60GHz Percentage of memory in use: 66% Total physical RAM: 2046.49 MB Available physical RAM: 675.82 MB Total Virtual: 4352.98 MB Available Virtual: 1234.25 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:97.56 GB) (Free:75.99 GB) NTFS Drive d: () (Fixed) (Total:135.23 GB) (Free:105.61 GB) NTFS Drive h: () (Removable) (Total:1.85 GB) (Free:1.84 GB) FAT ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 2ABE2CA8) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=97.6 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=135.2 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 1.8 GB) (Disk ID: 00000000) Partition: GPT. ==================== End of Addition.txt ============================