Additional scan result of Farbar Recovery Scan Tool (x86) Version: 09-11-2014 Ran by Mayheme1 at 2014-11-09 12:05:47 Running from C:\Users\Mayheme1\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Microsoft Security Essentials (Enabled - Up to date) {4F35CFC4-45A3-FC37-EF17-759A02E39AB1} AS: Microsoft Security Essentials (Enabled - Up to date) {F4542E20-6399-F3B9-D5A7-4EE87964D00C} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 4.65 (HKLM\...\7-Zip) (Version: - ) Adobe AIR (HKLM\...\Adobe AIR) (Version: 2.6.0.19140 - Adobe Systems Incorporated) Adobe Flash Player 11 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 11.8.800.175 - Adobe Systems Incorporated) Adobe Flash Player 11 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 11.8.800.168 - Adobe Systems Incorporated) Adobe Reader XI (11.0.09) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated) Arena 3.0 (HKLM\...\Arena 3.0_is1) (Version: - ) ATT-PRT22 (HKLM\...\ATT-PRT22) (Version: - ) AVG 2011 (Version: 10.0.1204 - AVG Technologies) Hidden AVG 2011 (Version: 10.0.1435 - AVG Technologies) Hidden BBmail - Email Spider Free Version (HKLM\...\BBmail - Email Spider Free VersionV2.7) (Version: V2.7 - Bulk Email Software) DivX Plus Web Player (HKLM\...\{B7050CBDB2504B34BC2A9CA0A692CC29}) (Version: 2.0.0 - DivX,Inc.) Emsisoft Anti-Malware (HKLM\...\{BC30E5E7-047D-4232-A7E8-F2CB7CC7B2E0}_is1) (Version: 6.5 - Emsisoft GmbH) ESET Online Scanner v3 (HKLM\...\ESET Online Scanner) (Version: - ) HijackThis 2.0.2 (HKLM\...\HijackThis) (Version: 2.0.2 - TrendMicro) History Viewer v5.1 (HKLM\...\History Viewer_is1) (Version: - Digital Forensics Studio) Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1930 - Intel Corporation) Itibiti RTC (Version: 0.0.1 - Itibiti Inc) Hidden Java 7 Update 55 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217055FF}) (Version: 7.0.550 - Oracle) JavaFX 2.1.1 (HKLM\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation) Logitech Harmony Remote Software 7 (HKLM\...\{5C6F884D-680C-448B-B4C9-22296EE1B206}) (Version: 7.7.0.0 - Logitech) Malwarebytes Anti-Malware version 2.0.3.1025 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.3.1025 - Malwarebytes Corporation) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-0012-0000-0000-0000000FF1CE}_STANDARDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Standard 2007 (HKLM\...\STANDARDR) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.6.305.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Windows Debugging Symbols (HKLM\...\{0E8D886F-3205-4472-848E-990F400FF218}) (Version: 7601 - Microsoft) Mozilla Firefox 12.0 (x86 en-US) (HKLM\...\Mozilla Firefox 12.0 (x86 en-US)) (Version: 12.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 12.0 - Mozilla) Nexus® (HKLM\...\supportdotcom Nexus) (Version: 44.0.1.0 - Support.com, Inc.) Office Depot Solutions Toolkit (HKLM\...\officedepot_stk_sop_stk) (Version: 46.0.11.0 - Support.com, Inc.) OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0 - Microsoft Corporation) Hidden Realtek Ethernet Controller All-In-One Windows Driver (HKLM\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 1.12.0016 - Realtek) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - ) Remote Control USB Driver (HKLM\...\{8471021C-F529-43DE-84DF-3612E10F58C4}) (Version: 2.3.2.317 - ) RICOH Media Driver (HKLM\...\{F5CC2EF8-20A4-4366-A681-3FE849E65809}) (Version: 2.10.00.04 - RICOH) ShadowExplorer 0.9 (HKLM\...\ShadowExplorer_is1) (Version: 0.9.462.0 - ShadowExplorer.com) smartmontools (HKLM\...\smartmontools) (Version: 5.42 2011-10-20 r3458 (sf-win32-5.42-1) - ) Subliminal Messages (HKLM\...\{5583D2D0-C960-441C-ACA7-3A0E06C471EC}) (Version: 1.0.2.0 - Mind of Winner) TreeSize Free V3.2.1 (HKLM\...\TreeSize Free_is1) (Version: 3.2.1 - JAM Software) Tweaking.com - Windows Repair (All in One) (HKLM\...\Tweaking.com - Windows Repair (All in One)) (Version: 2.9.2 - Tweaking.com) Unlocker 1.9.1 (HKLM\...\Unlocker) (Version: 1.9.1 - Cedrick Collomb) Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-0012-0000-0000-0000000FF1CE}_STANDARDR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update Installer for WildTangent Games App (Version: - WildTangent) Hidden VC80CRTRedist - 8.0.50727.4053 (Version: 1.1.0 - DivX, Inc) Hidden WildTangent Games App (HKLM\...\{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-wildgames) (Version: 4.0.9.7 - WildTangent) WOT for Internet Explorer (HKLM\...\{C0DA129B-1E45-494D-A362-5CD0109C306B}) (Version: 11.11.7.0 - WOT Services Oy) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-3105599382-3656226746-3736112976-1001_Classes\CLSID\{56CBD3CF-BF99-4DF5-851F-F5B9B57496A1}\InprocServer32 -> C:\ProgramData\{D9E629DC-CB1C-4A97-9900-81922B4EFFD4}\apphelp.dll No File ==================== Restore Points ========================= 09-10-2014 14:01:19 Windows Update 10-10-2014 00:49:00 Restore Operation 19-10-2014 01:25:29 ComboFix created restore point 19-10-2014 14:58:21 Windows Update 30-10-2014 00:21:04 ComboFix created restore point 31-10-2014 02:50:10 Restore Operation 07-11-2014 01:27:50 Windows Update 07-11-2014 01:36:28 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-13 20:04 - 2014-11-08 09:25 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Loaded Modules (whitelisted) ============= 2010-07-04 15:32 - 2010-07-04 15:32 - 00010752 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll 2014-04-06 21:45 - 2014-04-06 21:45 - 00958976 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\SubliminalMessages.exe 2013-04-17 20:18 - 2013-04-17 20:18 - 00544817 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\libgcc_s_dw2-1.dll 2013-04-17 20:19 - 2013-04-17 20:19 - 00989805 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\libstdc++-6.dll 2013-04-22 18:03 - 2013-04-22 18:03 - 03369922 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\icuin51.dll 2013-04-22 18:03 - 2013-04-22 18:03 - 01978690 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\icuuc51.dll 2013-04-22 18:03 - 2013-04-22 18:03 - 22378434 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\icudt51.dll 2013-12-08 20:14 - 2013-12-08 20:14 - 01269760 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\plugins\platforms\qwindows.dll 2013-12-08 20:13 - 2013-12-08 20:13 - 00052224 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\plugins\imageformats\qico.dll 2013-12-08 20:13 - 2013-12-08 20:13 - 00051200 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\plugins\imageformats\qgif.dll 2013-12-08 20:13 - 2013-12-08 20:13 - 00261120 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\plugins\imageformats\qjpeg.dll 2013-12-08 20:23 - 2013-12-08 20:23 - 00381952 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\plugins\imageformats\qmng.dll 2013-12-08 20:23 - 2013-12-08 20:23 - 00046592 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\plugins\imageformats\qtga.dll 2013-12-08 20:23 - 2013-12-08 20:23 - 00442368 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\plugins\imageformats\qtiff.dll 2013-12-08 20:23 - 2013-12-08 20:23 - 00045056 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\plugins\imageformats\qwbmp.dll 2011-11-03 09:41 - 2011-11-03 09:41 - 01516576 _____ () C:\Program Files\WOT\WOT.dll 2011-04-29 12:53 - 2011-04-29 12:53 - 01275904 _____ () C:\WinBoard-4.5.2\WinBoard\WinBoard.exe ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Office Depot PC Support Agent => ""="Office Depot PC Support Agent" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Office Depot PC Support Agent => ""="Office Depot PC Support Agent" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SMPCHelper => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\tvnserver => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vsmon => ""="Service" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\Services: ehRecvr => 2 MSCONFIG\startupreg: emsisoft anti-malware => "C:\Program Files\Emsisoft Anti-Malware\a2guard.exe" /d=60 ========================= Accounts: ========================== Administrator (S-1-5-21-3105599382-3656226746-3736112976-500 - Administrator - Disabled) Guest (S-1-5-21-3105599382-3656226746-3736112976-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3105599382-3656226746-3736112976-1002 - Limited - Enabled) Mayheme1 (S-1-5-21-3105599382-3656226746-3736112976-1001 - Administrator - Enabled) => C:\Users\Mayheme1 ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (11/08/2014 07:46:42 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: RtHDVCpl.exe, version: 1.0.0.128, time stamp: 0x478c27d7 Faulting module name: ntdll.dll, version: 6.1.7601.18247, time stamp: 0x521ea91c Exception code: 0xc0000005 Fault offset: 0x00056f30 Faulting process id: 0xc60 Faulting application start time: 0xRtHDVCpl.exe0 Faulting application path: RtHDVCpl.exe1 Faulting module path: RtHDVCpl.exe2 Report Id: RtHDVCpl.exe3 Error: (11/07/2014 10:30:59 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program iexplore.exe version 11.0.9600.17126 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 17b8 Start Time: 01cffa3bd29c966d Termination Time: 85 Application Path: C:\Program Files\Internet Explorer\iexplore.exe Report Id: Error: (11/06/2014 00:41:59 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iexplore.exe, version: 11.0.9600.17126, time stamp: 0x53882e30 Faulting module name: MSHTML.dll, version: 11.0.9600.17126, time stamp: 0x53884c7d Exception code: 0xc0000005 Fault offset: 0x0027cd99 Faulting process id: 0x12b0 Faulting application start time: 0xiexplore.exe0 Faulting application path: iexplore.exe1 Faulting module path: iexplore.exe2 Report Id: iexplore.exe3 Error: (11/06/2014 11:21:11 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "Microsoft.Windows.Networking.RtcDll,language="*",processorArchitecture="X86",publicKeyToken="6595b64144ccf1df",type="win32",version="5.2.1002.3"1". Dependent Assembly Microsoft.Windows.Networking.RtcDll,language="*",processorArchitecture="X86",publicKeyToken="6595b64144ccf1df",type="win32",version="5.2.1002.3" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (11/06/2014 11:21:11 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "Microsoft.Windows.Networking.RtcDll,language="*",processorArchitecture="X86",publicKeyToken="6595b64144ccf1df",type="win32",version="5.2.1002.3"1". Dependent Assembly Microsoft.Windows.Networking.RtcDll,language="*",processorArchitecture="X86",publicKeyToken="6595b64144ccf1df",type="win32",version="5.2.1002.3" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (11/06/2014 07:40:40 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iexplore.exe, version: 11.0.9600.17126, time stamp: 0x53882e30 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x0c850fc0 Faulting process id: 0x504 Faulting application start time: 0xiexplore.exe0 Faulting application path: iexplore.exe1 Faulting module path: iexplore.exe2 Report Id: iexplore.exe3 System errors: ============= Error: (11/09/2014 05:32:45 AM) (Source: Ntfs) (EventID: 55) (User: ) Description: The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume \Device\HarddiskVolumeShadowCopy7. Error: (11/09/2014 05:21:04 AM) (Source: DCOM) (EventID: 10016) (User: Mayheme1-PC) Description: machine-defaultLocalActivation{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}Mayheme1-PCMayheme1S-1-5-21-3105599382-3656226746-3736112976-1001LocalHost (Using LRPC) Error: (11/09/2014 05:20:54 AM) (Source: DCOM) (EventID: 10016) (User: Mayheme1-PC) Description: machine-defaultLocalActivation{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}Mayheme1-PCMayheme1S-1-5-21-3105599382-3656226746-3736112976-1001LocalHost (Using LRPC) Error: (11/09/2014 05:20:53 AM) (Source: DCOM) (EventID: 10016) (User: Mayheme1-PC) Description: machine-defaultLocalActivation{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}Mayheme1-PCMayheme1S-1-5-21-3105599382-3656226746-3736112976-1001LocalHost (Using LRPC) Error: (11/09/2014 05:20:47 AM) (Source: DCOM) (EventID: 10016) (User: Mayheme1-PC) Description: machine-defaultLocalActivation{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}Mayheme1-PCMayheme1S-1-5-21-3105599382-3656226746-3736112976-1001LocalHost (Using LRPC) Error: (11/09/2014 05:17:41 AM) (Source: Ntfs) (EventID: 55) (User: ) Description: The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume \Device\HarddiskVolumeShadowCopy7. Error: (11/09/2014 05:05:49 AM) (Source: Ntfs) (EventID: 55) (User: ) Description: The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume \Device\HarddiskVolumeShadowCopy7. Error: (11/09/2014 04:06:45 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Offline Files service terminated with the following error: %%3 Error: (11/09/2014 03:39:47 AM) (Source: DCOM) (EventID: 10016) (User: Mayheme1-PC) Description: machine-defaultLocalActivation{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}Mayheme1-PCMayheme1S-1-5-21-3105599382-3656226746-3736112976-1001LocalHost (Using LRPC) Error: (11/09/2014 03:39:41 AM) (Source: DCOM) (EventID: 10016) (User: Mayheme1-PC) Description: machine-defaultLocalActivation{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}Mayheme1-PCMayheme1S-1-5-21-3105599382-3656226746-3736112976-1001LocalHost (Using LRPC) Microsoft Office Sessions: ========================= Error: (07/31/2014 10:56:28 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6665.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 2 seconds with 0 seconds of active time. This session ended with a crash. CodeIntegrity Errors: =================================== Date: 2014-06-21 11:53:25.692 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\Temp\PendingDeletes\$$DeleteMe.bcrypt.dll.01ca9b08143790f0.0023 because the set of per-page image hashes could not be found on the system. Date: 2014-06-21 11:53:25.630 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\Temp\PendingDeletes\$$DeleteMe.bcrypt.dll.01ca9b08143790f0.0023 because the set of per-page image hashes could not be found on the system. Date: 2014-06-21 11:53:25.552 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\Temp\PendingDeletes\$$DeleteMe.bcrypt.dll.01ca9b08143790f0.0023 because the set of per-page image hashes could not be found on the system. Date: 2014-06-21 11:48:47.544 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\x86_microsoft-windows-tpm-driver-wmi_31bf3856ad364e35_6.0.6001.18000_none_6f8d0e60c043c672\Win32_Tpm.dll because the set of per-page image hashes could not be found on the system. Date: 2014-06-21 11:48:47.481 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\x86_microsoft-windows-tpm-driver-wmi_31bf3856ad364e35_6.0.6001.18000_none_6f8d0e60c043c672\Win32_Tpm.dll because the set of per-page image hashes could not be found on the system. Date: 2014-06-21 11:48:47.419 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\x86_microsoft-windows-tpm-driver-wmi_31bf3856ad364e35_6.0.6001.18000_none_6f8d0e60c043c672\Win32_Tpm.dll because the set of per-page image hashes could not be found on the system. Date: 2014-06-21 11:41:44.986 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\x86_microsoft-windows-bcrypt-dll_31bf3856ad364e35_6.0.6002.18005_none_f0780c78ec8773db\bcrypt.dll because the set of per-page image hashes could not be found on the system. Date: 2014-06-21 11:41:44.923 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\x86_microsoft-windows-bcrypt-dll_31bf3856ad364e35_6.0.6002.18005_none_f0780c78ec8773db\bcrypt.dll because the set of per-page image hashes could not be found on the system. Date: 2014-06-21 11:41:44.861 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\x86_microsoft-windows-bcrypt-dll_31bf3856ad364e35_6.0.6002.18005_none_f0780c78ec8773db\bcrypt.dll because the set of per-page image hashes could not be found on the system. Date: 2014-06-21 11:41:44.705 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\x86_microsoft-windows-bcrypt-dll_31bf3856ad364e35_6.0.6001.18000_none_ee8c936cef65a88f\bcrypt.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM)2 Duo CPU T5550 @ 1.83GHz Percentage of memory in use: 55% Total physical RAM: 3062.43 MB Available physical RAM: 1362.11 MB Total Pagefile: 6123.15 MB Available Pagefile: 4432.42 MB Total Virtual: 2047.88 MB Available Virtual: 1930.02 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:174.62 GB) (Free:97.44 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (HP_RECOVERY) (Fixed) (Total:11.68 GB) (Free:11.39 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 186.3 GB) (Disk ID: 4446FE98) Partition 1: (Active) - (Size=174.6 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=11.7 GB) - (Type=07 NTFS) ==================== End Of Log ============================