Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-07-2014 01 Ran by owner at 2014-07-15 17:18:56 Running from C:\Users\owner\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Kaspersky Anti-Virus (Disabled - Out of date) {56547CC9-C9B2-849D-8FEF-A496150D6A06} AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Kaspersky Anti-Virus (Disabled - Up to date) {ED359D2D-EF88-8B13-B55F-9FE46E8A20BB} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== Acrobat.com (HKLM-x32\...\{77DCDCE3-2DED-62F3-8154-05E745472D07}) (Version: 1.1.377 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 14.0.0.110 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 14.0.0.110 - Adobe Systems Incorporated) Hidden Adobe Flash Player 14 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Reader XI (11.0.07) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) AOL Toolbar (HKCU\...\AOL Toolbar) (Version: - ) AOL Toolbar (HKLM-x32\...\AOL Toolbar) (Version: - ) AOL Uninstaller (Choose which Products to Remove) (HKLM-x32\...\AOL Uninstaller) (Version: - AOL Inc.) Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.26 - Atheros Communications Inc.) avast! Free Antivirus (HKLM-x32\...\avast) (Version: 9.0.2021 - AVAST Software) Best Buy pc app (HKCU\...\48e4cff94f039634) (Version: 3.2.420.5 - Best Buy) Best Buy pc app (Version: 3.1.1.0 - Best Buy) Hidden Best Buy pc app (x32 Version: 3.1.1.0 - Best Buy) Hidden BioExcess (HKLM-x32\...\InstallShield_{ACF31D9F-70C2-40A1-9C7A-28BA16E64B56}) (Version: 6.0.48.175 - Egis Technology Inc.) BioExcess (x32 Version: 6.0.48.175 - Egis Technology Inc.) Hidden Broadcom 802.11 Wireless Driver (HKLM-x32\...\{8991E763-21F5-4DEA-A938-5D9D77DCB488}) (Version: 1.0.0.0 - ) Creative Memories Memory Manager 3 (HKLM-x32\...\{055C7B5D-B655-495D-BC4B-787994519AAA}) (Version: 3.0 - Caspedia Corporation) Creative Memories StoryBook Creator Plus 3 (HKLM-x32\...\{95ED1AC3-DF2A-4719-B029-909C0875CD8F}) (Version: 3.0 - Caspedia Corporation) Cricut (TM) Driver v2.01 (HKLM-x32\...\Cricut (TM) Driver v2.01) (Version: 2.01 - Provo Craft & Novelty, Inc.) Cricut Craft Room® (HKLM-x32\...\com.cricut.Cricut-CraftRoom) (Version: v1.0 build-187 - Provo Craft & Novelty, Inc.) Cricut Craft Room® (x32 Version: 1.0.187 - Provo Craft & Novelty, Inc.) Hidden CricutSync (HKLM-x32\...\YosemiteSync) (Version: 2.1.27 - Provo Craft & Novelty, Inc.) CricutSync (x32 Version: 2.1.27 - Provo Craft & Novelty, Inc.) Hidden CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.0.2626 - CyberLink Corp.) CyberLink YouCam (x32 Version: 3.0.2626 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Download Updater (AOL LLC) (HKLM-x32\...\SoftwareUpdUtility) (Version: - ) <==== ATTENTION Energy Management (HKLM-x32\...\{0CE226F3-EB27-4ECD-BBF5-F088716779FD}) (Version: 5.4.1.9 - Lenovo) ETDWare PS/2-x64 7.0.4.17_WHQL (HKLM\...\Elantech) (Version: 7.0.4.17 - ELAN Microelectronics Corp.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.) Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Graphics Media Accelerator Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2189 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.0.1014 - Intel Corporation) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Kaspersky Anti-Virus 2011 (HKLM-x32\...\InstallWIX_{66F1F013-008F-4875-B283-5A814B820347}) (Version: 11.0.2.556 - Kaspersky Lab) Kaspersky Anti-Virus 2011 (x32 Version: 11.0.2.556 - Kaspersky Lab) Hidden Lenovo EasyCamera (HKLM-x32\...\{ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0333}) (Version: 1.10.0510.01 - Lenovo EasyCamera) Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 7.0.1628 - CyberLink Corp.) Lenovo OneKey Recovery (Version: 7.0.1628 - CyberLink Corp.) Hidden Lenovo Security Suite (HKLM-x32\...\InstallShield_{0034859F-8E01-4C1D-BE77-F891C4786FBC}) (Version: 2.0.10.0 - Lenovo) Lenovo Security Suite (x32 Version: 2.0.10.0 - Lenovo) Hidden Memory Manager 3 Service Update (HKLM-x32\...\{114AA498-39E6-4229-94DB-1E3777C2F486}) (Version: 1.00.0000 - Your Company Name) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.0.50401.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft VC9 runtime libraries (x32 Version: 1.0.0 - AOL Inc.) Hidden Microsoft VC9 runtime libraries (x32 Version: 2.0.0 - AOL Inc.) Hidden Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden Power2Go (HKLM-x32\...\{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 5.6.0.4809d4 - CyberLink Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6128 - Realtek Semiconductor Corp.) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30117 - Realtek Semiconductor Corp.) RtLED (HKLM\...\{5ACF5427-B4E4-4F85-A512-151E0BECF7E3}) (Version: 1.0.2 - Realtek Semiconductor Corp.) Skype Toolbars (HKLM-x32\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 5.3.7280 - Skype Technologies S.A.) Skype™ 5.3 (HKLM-x32\...\{5335DADB-34BA-4AE8-A519-648D78498846}) (Version: 5.3.111 - Skype Technologies S.A.) StoryBook Creator 4.0 (HKLM\...\{4B5A7ADC-52EB-491C-8824-40466AB844A5}) (Version: 4.0.4462 - Creative Memories) VeriFace (HKLM-x32\...\VeriFace) (Version: 3.6.1.0226 - Lenovo) Viewpoint Media Player (HKLM-x32\...\ViewpointMediaPlayer) (Version: - ) Windows Driver Package - FTDI CDM Driver Package - Bus/D2XX Driver (04/10/2012 2.08.24) (HKLM\...\4C8545EEB6143B6AD3858B5D1E0AEE76040B1435) (Version: 04/10/2012 2.08.24 - FTDI) Windows Driver Package - FTDI CDM Driver Package - VCP Driver (04/10/2012 2.08.24) (HKLM\...\6849F67BACD4DA5A5B9D46803E6850D0BE8B3826) (Version: 04/10/2012 2.08.24 - FTDI) Windows Driver Package - FTDI CDM Driver Package (02/17/2009 2.04.16) (HKLM\...\F2113B6DA5013A2F764FDB4C8A187CF2DB1F025C) (Version: 02/17/2009 2.04.16 - FTDI) Windows Driver Package - FTDI CDM Driver Package (02/17/2009 2.04.16) (HKLM\...\F9F460BE83F391EACD49DEEE78C1D44988396991) (Version: 02/17/2009 2.04.16 - FTDI) Windows Driver Package - Lenovo (ACPIVPC) System (10/19/2009 5.4.0.1) (HKLM\...\0A4175B489A1B4A6E07E11B063A6263480C51D71) (Version: 10/19/2009 5.4.0.1 - Lenovo) Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation) Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4225.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden ==================== Restore Points ========================= 21-05-2014 20:48:01 Windows Update 01-06-2014 04:37:38 Windows Update 01-06-2014 19:52:53 avast! antivirus system restore point 06-06-2014 20:06:19 Windows Update 10-06-2014 15:36:10 Windows Update 12-06-2014 16:43:31 Windows Update 17-06-2014 15:08:41 Windows Update 20-06-2014 21:47:51 Windows Update 24-06-2014 16:29:01 Windows Update 13-07-2014 23:02:36 avast! antivirus system restore point 13-07-2014 23:14:25 Windows Update 14-07-2014 03:53:31 Windows Update ==================== Hosts content: ========================== 2009-07-13 19:34 - 2009-06-10 14:00 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {42957FB5-7231-4877-95EC-3C20381F80FC} - System32\Tasks\{43797CE0-B59F-45A6-AEA6-E782952FDF18} => C:\Program Files (x86)\Skype\\Phone\Skype.exe [2011-04-18] (Skype Technologies S.A.) Task: {431FE4A5-EE71-402C-8E79-1C8FF4A8A23A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-01] (Google Inc.) Task: {A0049093-370A-4D99-AF28-C00C8DC428A1} - System32\Tasks\{1777E334-229C-432F-9995-17711B74FEED} => c:\Program Files (x86)\AOL Desktop 9.6\aol.exe [2011-04-25] (AOL Inc.) Task: {A1B4FE65-E19A-4996-889D-653A901576F3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-01] (Google Inc.) Task: {A6050EEE-0C68-4508-B6E4-0719500B9F83} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-13] (Adobe Systems Incorporated) Task: {B3D4A60E-3805-4D50-9713-B838858BB081} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-07-13] (AVAST Software) Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2010-05-27 20:15 - 2010-05-27 20:15 - 01407344 _____ () C:\Program Files (x86)\EgisTec BioExcess\x64\LIBEAY32.dll 2011-03-10 22:14 - 2011-03-10 22:14 - 01502720 _____ () C:\windows\system32\IcnOvrly.dll 2014-07-13 16:06 - 2014-07-13 16:06 - 00301152 _____ () C:\Program Files\AVAST Software\Avast\aswProperty.dll 2014-07-15 16:30 - 2014-07-15 16:30 - 02793472 _____ () C:\Program Files\AVAST Software\Avast\defs\14071501\algo.dll 2014-07-13 16:06 - 2014-07-13 16:07 - 19329904 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2014-04-05 16:40 - 2014-04-05 16:40 - 00170496 _____ () C:\windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\bfd5296be62268bc7a31a424f0d1ad5f\IsdiInterop.ni.dll 2011-03-10 21:34 - 2010-03-03 13:08 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2014-06-16 09:18 - 2014-06-05 06:58 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\libglesv2.dll 2014-06-16 09:18 - 2014-06-05 06:58 - 00126280 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\libegl.dll 2014-06-16 09:18 - 2014-06-05 06:58 - 04217672 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll 2014-06-16 09:18 - 2014-06-05 06:58 - 00414536 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll 2014-06-16 09:18 - 2014-06-05 06:58 - 01732424 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ffmpegsumo.dll 2014-07-13 18:41 - 2014-07-08 08:18 - 14663856 _____ () C:\Users\owner\AppData\Local\Google\Chrome\User Data\PepperFlash\14.0.0.145\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" ==================== EXE Association (whitelisted) ============= ==================== MSCONFIG/TASK MANAGER disabled items ========= MSCONFIG\Services: Fax => 3 MSCONFIG\startupreg: 332BigDog => C:\Program Files (x86)\USB Camera2\VM332_STI.EXE MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" MSCONFIG\startupreg: EgisTecPMMUpdate => "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe" MSCONFIG\startupreg: EgisUpdate => "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d MSCONFIG\startupreg: Energy Management => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe MSCONFIG\startupreg: EnergyUtility => C:\Program Files (x86)\Lenovo\Energy Management\utility.exe MSCONFIG\startupreg: ETDWare => %ProgramFiles%\Elantech\ETDCtrl.exe MSCONFIG\startupreg: HotKeysCmds => C:\windows\system32\hkcmd.exe MSCONFIG\startupreg: IAStorIcon => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe MSCONFIG\startupreg: IgfxTray => C:\windows\system32\igfxtray.exe MSCONFIG\startupreg: IMSS => "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe" MSCONFIG\startupreg: Persistence => C:\windows\system32\igfxpers.exe MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized MSCONFIG\startupreg: UCam_Menu => "C:\Program Files (x86)\Lenovo\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\3.0" MSCONFIG\startupreg: UpdateP2GShortCut => "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0" MSCONFIG\startupreg: UpdatePRCShortCut => "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery" MSCONFIG\startupreg: VeriFaceManager => C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe MSCONFIG\startupreg: VitaKeyTSR => "C:\Program Files (x86)\EgisTec BioExcess\EgisTSR.exe" MSCONFIG\startupreg: YouCam Mirror Tray icon => "C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/15/2014 05:06:32 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: svchost.exe_DcomLaunch, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1 Faulting module name: ole32.dll, version: 6.1.7601.17514, time stamp: 0x4ce7c92c Exception code: 0xc0000005 Fault offset: 0x000000000000d89e Faulting process id: 0x310 Faulting application start time: 0xsvchost.exe_DcomLaunch0 Faulting application path: svchost.exe_DcomLaunch1 Faulting module path: svchost.exe_DcomLaunch2 Report Id: svchost.exe_DcomLaunch3 Error: (07/14/2014 09:09:18 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: Cricut-Craft Room.exe, version: 0.0.0.0, time stamp: 0x4ca30b7b Faulting module name: ntdll.dll, version: 6.1.7601.18247, time stamp: 0x521ea8e7 Exception code: 0x4000001f Fault offset: 0x0005805d Faulting process id: 0x1a94 Faulting application start time: 0xCricut-Craft Room.exe0 Faulting application path: Cricut-Craft Room.exe1 Faulting module path: Cricut-Craft Room.exe2 Report Id: Cricut-Craft Room.exe3 Error: (07/14/2014 09:07:21 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: Cricut-Craft Room.exe, version: 0.0.0.0, time stamp: 0x4ca30b7b Faulting module name: ntdll.dll, version: 6.1.7601.18247, time stamp: 0x521ea8e7 Exception code: 0x80000003 Fault offset: 0x0005805d Faulting process id: 0x152c Faulting application start time: 0xCricut-Craft Room.exe0 Faulting application path: Cricut-Craft Room.exe1 Faulting module path: Cricut-Craft Room.exe2 Report Id: Cricut-Craft Room.exe3 Error: (07/13/2014 06:28:25 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x800706ba, The RPC server is unavailable. . Error: (07/13/2014 06:28:25 PM) (Source: VSS) (EventID: 13) (User: ) Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x800706ba, The RPC server is unavailable. ] Error: (07/13/2014 06:28:25 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x800706ba, The RPC server is unavailable. . Error: (07/13/2014 06:28:25 PM) (Source: VSS) (EventID: 13) (User: ) Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x800706ba, The RPC server is unavailable. ] Error: (07/13/2014 04:53:55 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: svchost.exe_RpcEptMapper, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1 Faulting module name: rpcss.dll, version: 6.1.7601.17514, time stamp: 0x4ce7c970 Exception code: 0xc0000005 Fault offset: 0x00000000000646ac Faulting process id: 0x398 Faulting application start time: 0xsvchost.exe_RpcEptMapper0 Faulting application path: svchost.exe_RpcEptMapper1 Faulting module path: svchost.exe_RpcEptMapper2 Report Id: svchost.exe_RpcEptMapper3 Error: (06/25/2014 10:42:22 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program waol.exe version 9.6.0.1 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: d58 Start Time: 01cf9094d1d18c19 Termination Time: 490 Application Path: C:\Program Files (x86)\AOL Desktop 9.6\waol.exe Report Id: 0a0ad991-fc90-11e3-820b-00038a000015 Error: (06/23/2014 00:27:42 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1". Dependent Assembly Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. System errors: ============= Error: (07/15/2014 05:08:43 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Power service terminated with the following error: %%4203 Error: (07/15/2014 05:07:08 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Superfetch service terminated with the following error: %%13 Error: (07/15/2014 05:06:38 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: The Service Control Manager tried to take a corrective action (Reboot the machine) after the unexpected termination of the Plug and Play service, but this action failed with the following error: %%1190 Error: (07/15/2014 05:06:38 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Plug and Play service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Reboot the machine. Error: (07/15/2014 05:06:38 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The DCOM Server Process Launcher service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Reboot the machine. Error: (07/15/2014 05:06:26 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Power service terminated with the following error: %%4203 Error: (07/15/2014 05:06:00 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 5:04:43 PM on ‎7/‎15/‎2014 was unexpected. Error: (07/15/2014 04:46:52 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: The ScRegSetValueExW call failed for Start with the following error: %%5 Error: (07/15/2014 04:29:06 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Power service terminated with the following error: %%4203 Error: (07/14/2014 09:13:10 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Power service terminated with the following error: %%4203 Microsoft Office Sessions: ========================= Error: (07/15/2014 05:06:32 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: svchost.exe_DcomLaunch6.1.7600.163854a5bc3c1ole32.dll6.1.7601.175144ce7c92cc0000005000000000000d89e31001cfa089b9b2bd56C:\windows\system32\svchost.exeC:\windows\system32\ole32.dll0ac20f72-0c7d-11e4-a809-00038a000015 Error: (07/14/2014 09:09:18 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Cricut-Craft Room.exe0.0.0.04ca30b7bntdll.dll6.1.7601.18247521ea8e74000001f0005805d1a9401cf9f7dea8a8f60C:\Program Files (x86)\Cricut-Craft Room\Cricut-Craft Room.exeC:\windows\SysWOW64\ntdll.dll34eb712d-0b71-11e4-9e7c-00038a000015 Error: (07/14/2014 09:07:21 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Cricut-Craft Room.exe0.0.0.04ca30b7bntdll.dll6.1.7601.18247521ea8e7800000030005805d152c01cf9f7d8b4aa634C:\Program Files (x86)\Cricut-Craft Room\Cricut-Craft Room.exeC:\windows\SysWOW64\ntdll.dlleeeb277e-0b70-11e4-9e7c-00038a000015 Error: (07/13/2014 06:28:25 PM) (Source: VSS) (EventID: 8193) (User: ) Description: CoCreateInstance0x800706ba, The RPC server is unavailable. Error: (07/13/2014 06:28:25 PM) (Source: VSS) (EventID: 13) (User: ) Description: {4e14fba2-2e22-11d1-9964-00c04fbbb345}CEventSystem0x800706ba, The RPC server is unavailable. Error: (07/13/2014 06:28:25 PM) (Source: VSS) (EventID: 8193) (User: ) Description: CoCreateInstance0x800706ba, The RPC server is unavailable. Error: (07/13/2014 06:28:25 PM) (Source: VSS) (EventID: 13) (User: ) Description: {4e14fba2-2e22-11d1-9964-00c04fbbb345}CEventSystem0x800706ba, The RPC server is unavailable. Error: (07/13/2014 04:53:55 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: svchost.exe_RpcEptMapper6.1.7600.163854a5bc3c1rpcss.dll6.1.7601.175144ce7c970c000000500000000000646ac39801cf9eede57102e0C:\windows\system32\svchost.exec:\windows\system32\rpcss.dllf2c40401-0ae8-11e4-850d-00038a000015 Error: (06/25/2014 10:42:22 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: waol.exe9.6.0.1d5801cf9094d1d18c19490C:\Program Files (x86)\AOL Desktop 9.6\waol.exe0a0ad991-fc90-11e3-820b-00038a000015 Error: (06/23/2014 00:27:42 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="ia64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"c:\program files (x86)\cricutsync\Drivers\Cricut Expression Drivers ia64.exe ==================== Memory info =========================== Percentage of memory in use: 70% Total physical RAM: 1844.51 MB Available physical RAM: 549.94 MB Total Pagefile: 3689.02 MB Available Pagefile: 1999.62 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:254.14 GB) (Free:159.87 GB) NTFS Drive d: (LENOVO) (Fixed) (Total:29 GB) (Free:27.84 GB) NTFS Drive f: (Jun 02 2014) (CDROM) (Total:4.38 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: 3D6DA558) Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=254 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=29 GB) - (Type=OF Extended) Partition 4: (Not Active) - (Size=15 GB) - (Type=12) ==================== End Of Log ============================