Additional scan result of Farbar Recovery Scan Tool (x86) Version: 29-02-2015 Ran by Mayheme1 at 2015-02-28 19:18:08 Running from C:\Users\Mayheme1\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Microsoft Security Essentials (Enabled - Up to date) {4F35CFC4-45A3-FC37-EF17-759A02E39AB1} AS: Microsoft Security Essentials (Enabled - Up to date) {F4542E20-6399-F3B9-D5A7-4EE87964D00C} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 4.65 (HKLM\...\7-Zip) (Version: - ) Adobe AIR (HKLM\...\Adobe AIR) (Version: 2.6.0.19140 - Adobe Systems Incorporated) Adobe Flash Player 11 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 11.8.800.175 - Adobe Systems Incorporated) Adobe Flash Player 11 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 11.8.800.168 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) Arena 3.0 (HKLM\...\Arena 3.0_is1) (Version: - ) ATT-PRT22 (HKLM\...\ATT-PRT22) (Version: - ) AVG 2011 (Version: 10.0.1204 - AVG Technologies) Hidden AVG 2011 (Version: 10.0.1435 - AVG Technologies) Hidden BBmail - Email Spider Free Version (HKLM\...\BBmail - Email Spider Free VersionV2.7) (Version: V2.7 - Bulk Email Software) CryptoPrevent (HKLM\...\{5C5B24E7-4694-4049-A222-CCE7D3FAC63F}_is1) (Version: - Foolish IT LLC) DivX Plus Web Player (HKLM\...\{B7050CBDB2504B34BC2A9CA0A692CC29}) (Version: 2.0.0 - DivX,Inc.) EaseUS Data Recovery Wizard 8.6 (HKLM\...\EaseUS Data Recovery Wizard 8.6_is1) (Version: - EaseUS) Emsisoft Anti-Malware (HKLM\...\{BC30E5E7-047D-4232-A7E8-F2CB7CC7B2E0}_is1) (Version: 6.5 - Emsisoft GmbH) ESET Online Scanner v3 (HKLM\...\ESET Online Scanner) (Version: - ) HijackThis 2.0.2 (HKLM\...\HijackThis) (Version: 2.0.2 - TrendMicro) History Viewer v5.1 (HKLM\...\History Viewer_is1) (Version: - Digital Forensics Studio) Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1930 - Intel Corporation) Java 7 Update 55 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217055FF}) (Version: 7.0.550 - Oracle) JavaFX 2.1.1 (HKLM\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation) Logitech Harmony Remote Software 7 (HKLM\...\{5C6F884D-680C-448B-B4C9-22296EE1B206}) (Version: 7.7.0.0 - Logitech) Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation) MCShield ::Anti-Malware Tool:: (HKLM\...\MCShield) (Version: 3.0.5.28 - MyCity) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-0012-0000-0000-0000000FF1CE}_STANDARDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Standard 2007 (HKLM\...\STANDARDR) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.6.305.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Windows Debugging Symbols (HKLM\...\{0E8D886F-3205-4472-848E-990F400FF218}) (Version: 7601 - Microsoft) Mozilla Firefox 12.0 (x86 en-US) (HKLM\...\Mozilla Firefox 12.0 (x86 en-US)) (Version: 12.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 12.0 - Mozilla) Nexus® (HKLM\...\supportdotcom Nexus) (Version: 44.0.1.0 - Support.com, Inc.) Office Depot Solutions Toolkit (HKLM\...\officedepot_stk_sop_stk) (Version: 46.0.11.0 - Support.com, Inc.) OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0 - Microsoft Corporation) Hidden PrivaZer (HKLM\...\PrivaZer) (Version: 2.23.0.0 - Goversoft LLC) Realtek Ethernet Controller All-In-One Windows Driver (HKLM\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 1.12.0016 - Realtek) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - ) Remote Control USB Driver (HKLM\...\{8471021C-F529-43DE-84DF-3612E10F58C4}) (Version: 2.3.2.317 - ) RICOH Media Driver (HKLM\...\{F5CC2EF8-20A4-4366-A681-3FE849E65809}) (Version: 2.10.00.04 - RICOH) ShadowExplorer 0.9 (HKLM\...\ShadowExplorer_is1) (Version: 0.9.462.0 - ShadowExplorer.com) smartmontools (HKLM\...\smartmontools) (Version: 5.42 2011-10-20 r3458 (sf-win32-5.42-1) - ) Subliminal Messages (HKLM\...\{5583D2D0-C960-441C-ACA7-3A0E06C471EC}) (Version: 1.0.2.0 - Mind of Winner) TFCleanup v2.3 (HKLM\...\{A46E0A58-0077-4EA5-928E-BD2A8FAFE6B4}_is1) (Version: - Phaedrus Software) TreeSize Free V3.2.1 (HKLM\...\TreeSize Free_is1) (Version: 3.2.1 - JAM Software) Tweaking.com - Windows Repair (All in One) (HKLM\...\Tweaking.com - Windows Repair (All in One)) (Version: 2.9.2 - Tweaking.com) Unlocker 1.9.1 (HKLM\...\Unlocker) (Version: 1.9.1 - Cedrick Collomb) Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-0012-0000-0000-0000000FF1CE}_STANDARDR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update Installer for WildTangent Games App (Version: - WildTangent) Hidden VC80CRTRedist - 8.0.50727.4053 (Version: 1.1.0 - DivX, Inc) Hidden WildTangent Games App (HKLM\...\{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-wildgames) (Version: 4.0.9.7 - WildTangent) WOT for Internet Explorer (HKLM\...\{C0DA129B-1E45-494D-A362-5CD0109C306B}) (Version: 11.11.7.0 - WOT Services Oy) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 02-01-2015 01:07:00 Windows Update 05-01-2015 14:25:25 Windows Update 09-01-2015 06:47:34 Windows Update 12-01-2015 14:30:37 Windows Update 16-01-2015 09:37:25 Windows Update 20-01-2015 02:40:15 Windows Update 24-01-2015 07:01:12 Windows Update 27-01-2015 10:04:09 Windows Update 30-01-2015 18:30:17 Windows Update 02-02-2015 20:22:18 Windows Update 06-02-2015 14:25:13 Windows Update 09-02-2015 22:13:58 Windows Update 14-02-2015 01:55:53 Windows Update 18-02-2015 18:02:36 Windows Update 22-02-2015 18:26:54 Windows Update 26-02-2015 09:54:08 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-13 20:04 - 2014-11-08 09:25 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {61FE66C2-1BA3-49DB-873E-C8BF94980B7F} - System32\Tasks\{1EFAA877-D5BF-4D7B-9DE5-9DD1DD166466} => pcalua.exe -a C:\Users\Mayheme1\Downloads\HJTInstall.exe -d C:\Users\Mayheme1\Desktop Task: {63B08126-940C-4E13-8CB2-16F5372C2B94} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {D408A118-612E-437B-A457-74D05CFFCFF9} - System32\Tasks\{5F4D3477-CAE6-410C-BE33-EA1A01F1EE08} => pcalua.exe -a C:\Users\Mayheme1\Downloads\LogitechHarmonyRemote7.7.0-WIN-x86.exe -d C:\Users\Mayheme1\Downloads (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Loaded Modules (whitelisted) ============== 2014-11-10 01:31 - 2014-11-10 01:31 - 00775400 _____ () C:\Program Files\Emsisoft Anti-Malware\fw32.dll 2010-07-04 15:32 - 2010-07-04 15:32 - 00010752 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll 2014-04-06 21:45 - 2014-04-06 21:45 - 00958976 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\SubliminalMessages.exe 2013-04-17 20:18 - 2013-04-17 20:18 - 00544817 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\libgcc_s_dw2-1.dll 2013-04-17 20:19 - 2013-04-17 20:19 - 00989805 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\libstdc++-6.dll 2013-04-22 18:03 - 2013-04-22 18:03 - 03369922 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\icuin51.dll 2013-04-22 18:03 - 2013-04-22 18:03 - 01978690 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\icuuc51.dll 2013-04-22 18:03 - 2013-04-22 18:03 - 22378434 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\icudt51.dll 2013-12-08 20:14 - 2013-12-08 20:14 - 01269760 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\plugins\platforms\qwindows.dll 2013-12-08 20:13 - 2013-12-08 20:13 - 00052224 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\plugins\imageformats\qico.dll 2013-12-08 20:13 - 2013-12-08 20:13 - 00051200 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\plugins\imageformats\qgif.dll 2013-12-08 20:13 - 2013-12-08 20:13 - 00261120 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\plugins\imageformats\qjpeg.dll 2013-12-08 20:23 - 2013-12-08 20:23 - 00381952 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\plugins\imageformats\qmng.dll 2013-12-08 20:23 - 2013-12-08 20:23 - 00046592 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\plugins\imageformats\qtga.dll 2013-12-08 20:23 - 2013-12-08 20:23 - 00442368 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\plugins\imageformats\qtiff.dll 2013-12-08 20:23 - 2013-12-08 20:23 - 00045056 _____ () C:\Users\Mayheme1\AppData\Roaming\Mind of Winner\Subliminal Messages\plugins\imageformats\qwbmp.dll 2012-12-20 22:59 - 2012-04-20 19:19 - 01952696 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll 2011-04-29 12:53 - 2011-04-29 12:53 - 01275904 _____ () C:\WinBoard-4.5.2\WinBoard\winboard.exe 2011-04-29 12:53 - 2011-04-29 12:53 - 01275904 _____ () C:\WinBoard-4.5.2\WinBoard\WinBoard.exe 2013-09-29 10:42 - 2013-09-29 10:46 - 16177544 _____ () C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_168.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Office Depot PC Support Agent => ""="Office Depot PC Support Agent" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Office Depot PC Support Agent => ""="Office Depot PC Support Agent" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SMPCHelper => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\tvnserver => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vsmon => ""="Service" ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3105599382-3656226746-3736112976-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Mayheme1\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.254 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\startupreg: MCShield Monitor => C:\Program Files\MCShield\mcshieldrtm.exe ==================== Accounts: ============================= Administrator (S-1-5-21-3105599382-3656226746-3736112976-500 - Administrator - Disabled) Guest (S-1-5-21-3105599382-3656226746-3736112976-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3105599382-3656226746-3736112976-1002 - Limited - Enabled) Mayheme1 (S-1-5-21-3105599382-3656226746-3736112976-1001 - Administrator - Enabled) => C:\Users\Mayheme1 ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/28/2015 05:54:49 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program iexplore.exe version 11.0.9600.17420 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 7bd8 Start Time: 01d051d9567f5577 Termination Time: 691 Application Path: C:\Program Files\Internet Explorer\iexplore.exe Report Id: Error: (02/26/2015 09:31:19 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iexplore.exe, version: 11.0.9600.17420, time stamp: 0x545ad233 Faulting module name: Flash32_11_8_800_175.ocx, version: 11.8.800.175, time stamp: 0x52366fda Exception code: 0xc0000005 Fault offset: 0x00125487 Faulting process id: 0x12194 Faulting application start time: 0xiexplore.exe0 Faulting application path: iexplore.exe1 Faulting module path: iexplore.exe2 Report Id: iexplore.exe3 Error: (02/25/2015 05:49:16 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program FRST.exe version 25.2.2015.1 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 4634 Start Time: 01d0515547cc68f5 Termination Time: 115 Application Path: C:\Users\Mayheme1\Desktop\FRST.exe Report Id: Error: (02/22/2015 06:23:35 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iexplore.exe, version: 11.0.9600.17420, time stamp: 0x545ad233 Faulting module name: Flash32_11_8_800_175.ocx, version: 11.8.800.175, time stamp: 0x52366fda Exception code: 0xc0000005 Fault offset: 0x00654424 Faulting process id: 0x10e4c Faulting application start time: 0xiexplore.exe0 Faulting application path: iexplore.exe1 Faulting module path: iexplore.exe2 Report Id: iexplore.exe3 Error: (02/21/2015 04:13:46 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: winboard.exe, version: 4.5.2.1, time stamp: 0x4dbb0918 Faulting module name: winboard.exe, version: 4.5.2.1, time stamp: 0x4dbb0918 Exception code: 0xc0000005 Fault offset: 0x00025c8e Faulting process id: 0x12e84 Faulting application start time: 0xwinboard.exe0 Faulting application path: winboard.exe1 Faulting module path: winboard.exe2 Report Id: winboard.exe3 Error: (02/21/2015 04:12:16 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: winboard.exe, version: 4.5.2.1, time stamp: 0x4dbb0918 Faulting module name: winboard.exe, version: 4.5.2.1, time stamp: 0x4dbb0918 Exception code: 0xc0000005 Fault offset: 0x00025c8e Faulting process id: 0x8a1c Faulting application start time: 0xwinboard.exe0 Faulting application path: winboard.exe1 Faulting module path: winboard.exe2 Report Id: winboard.exe3 Error: (02/21/2015 04:11:29 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: winboard.exe, version: 4.5.2.1, time stamp: 0x4dbb0918 Faulting module name: winboard.exe, version: 4.5.2.1, time stamp: 0x4dbb0918 Exception code: 0xc0000005 Fault offset: 0x00025c8e Faulting process id: 0xe414 Faulting application start time: 0xwinboard.exe0 Faulting application path: winboard.exe1 Faulting module path: winboard.exe2 Report Id: winboard.exe3 Error: (02/20/2015 00:50:16 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: FlashPlayerPlugin_11_8_800_168.exe, version: 11.8.800.168, time stamp: 0x52223bb7 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x00000000 Faulting process id: 0x4458 Faulting application start time: 0xFlashPlayerPlugin_11_8_800_168.exe0 Faulting application path: FlashPlayerPlugin_11_8_800_168.exe1 Faulting module path: FlashPlayerPlugin_11_8_800_168.exe2 Report Id: FlashPlayerPlugin_11_8_800_168.exe3 Error: (02/17/2015 11:44:28 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iexplore.exe, version: 11.0.9600.17420, time stamp: 0x545ad233 Faulting module name: igd10umd32.dll, version: 8.14.10.1930, time stamp: 0x4aba7282 Exception code: 0xc0000005 Fault offset: 0x0001195c Faulting process id: 0x8e88 Faulting application start time: 0xiexplore.exe0 Faulting application path: iexplore.exe1 Faulting module path: iexplore.exe2 Report Id: iexplore.exe3 Error: (01/29/2015 04:51:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iexplore.exe, version: 11.0.9600.17420, time stamp: 0x545ad233 Faulting module name: Flash32_11_8_800_175.ocx, version: 11.8.800.175, time stamp: 0x52366fda Exception code: 0xc0000005 Fault offset: 0x005a0099 Faulting process id: 0xb0f0 Faulting application start time: 0xiexplore.exe0 Faulting application path: iexplore.exe1 Faulting module path: iexplore.exe2 Report Id: iexplore.exe3 System errors: ============= Error: (02/28/2015 07:08:00 PM) (Source: DCOM) (EventID: 10016) (User: Mayheme1-PC) Description: machine-defaultLocalActivation{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}Mayheme1-PCMayheme1S-1-5-21-3105599382-3656226746-3736112976-1001LocalHost (Using LRPC) Error: (02/28/2015 06:49:32 PM) (Source: DCOM) (EventID: 10016) (User: Mayheme1-PC) Description: machine-defaultLocalActivation{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}Mayheme1-PCMayheme1S-1-5-21-3105599382-3656226746-3736112976-1001LocalHost (Using LRPC) Error: (02/28/2015 06:27:25 PM) (Source: DCOM) (EventID: 10016) (User: Mayheme1-PC) Description: machine-defaultLocalActivation{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}Mayheme1-PCMayheme1S-1-5-21-3105599382-3656226746-3736112976-1001LocalHost (Using LRPC) Error: (02/28/2015 05:57:01 PM) (Source: DCOM) (EventID: 10016) (User: Mayheme1-PC) Description: machine-defaultLocalActivation{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}Mayheme1-PCMayheme1S-1-5-21-3105599382-3656226746-3736112976-1001LocalHost (Using LRPC) Error: (02/28/2015 05:54:19 PM) (Source: DCOM) (EventID: 10016) (User: Mayheme1-PC) Description: machine-defaultLocalActivation{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}Mayheme1-PCMayheme1S-1-5-21-3105599382-3656226746-3736112976-1001LocalHost (Using LRPC) Error: (02/28/2015 05:52:55 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Netman service. Error: (02/28/2015 09:16:21 AM) (Source: DCOM) (EventID: 10016) (User: Mayheme1-PC) Description: machine-defaultLocalActivation{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}Mayheme1-PCMayheme1S-1-5-21-3105599382-3656226746-3736112976-1001LocalHost (Using LRPC) Error: (02/28/2015 09:14:24 AM) (Source: DCOM) (EventID: 10016) (User: Mayheme1-PC) Description: machine-defaultLocalActivation{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}Mayheme1-PCMayheme1S-1-5-21-3105599382-3656226746-3736112976-1001LocalHost (Using LRPC) Error: (02/28/2015 09:07:13 AM) (Source: DCOM) (EventID: 10016) (User: Mayheme1-PC) Description: machine-defaultLocalActivation{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}Mayheme1-PCMayheme1S-1-5-21-3105599382-3656226746-3736112976-1001LocalHost (Using LRPC) Error: (02/28/2015 08:24:55 AM) (Source: DCOM) (EventID: 10016) (User: Mayheme1-PC) Description: machine-defaultLocalActivation{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}Mayheme1-PCMayheme1S-1-5-21-3105599382-3656226746-3736112976-1001LocalHost (Using LRPC) Microsoft Office Sessions: ========================= CodeIntegrity Errors: =================================== Date: 2014-06-21 11:53:25.692 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\Temp\PendingDeletes\$$DeleteMe.bcrypt.dll.01ca9b08143790f0.0023 because the set of per-page image hashes could not be found on the system. Date: 2014-06-21 11:53:25.630 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\Temp\PendingDeletes\$$DeleteMe.bcrypt.dll.01ca9b08143790f0.0023 because the set of per-page image hashes could not be found on the system. Date: 2014-06-21 11:53:25.552 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\Temp\PendingDeletes\$$DeleteMe.bcrypt.dll.01ca9b08143790f0.0023 because the set of per-page image hashes could not be found on the system. Date: 2014-06-21 11:48:47.544 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\x86_microsoft-windows-tpm-driver-wmi_31bf3856ad364e35_6.0.6001.18000_none_6f8d0e60c043c672\Win32_Tpm.dll because the set of per-page image hashes could not be found on the system. Date: 2014-06-21 11:48:47.481 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\x86_microsoft-windows-tpm-driver-wmi_31bf3856ad364e35_6.0.6001.18000_none_6f8d0e60c043c672\Win32_Tpm.dll because the set of per-page image hashes could not be found on the system. Date: 2014-06-21 11:48:47.419 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\x86_microsoft-windows-tpm-driver-wmi_31bf3856ad364e35_6.0.6001.18000_none_6f8d0e60c043c672\Win32_Tpm.dll because the set of per-page image hashes could not be found on the system. Date: 2014-06-21 11:41:44.986 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\x86_microsoft-windows-bcrypt-dll_31bf3856ad364e35_6.0.6002.18005_none_f0780c78ec8773db\bcrypt.dll because the set of per-page image hashes could not be found on the system. Date: 2014-06-21 11:41:44.923 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\x86_microsoft-windows-bcrypt-dll_31bf3856ad364e35_6.0.6002.18005_none_f0780c78ec8773db\bcrypt.dll because the set of per-page image hashes could not be found on the system. Date: 2014-06-21 11:41:44.861 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\x86_microsoft-windows-bcrypt-dll_31bf3856ad364e35_6.0.6002.18005_none_f0780c78ec8773db\bcrypt.dll because the set of per-page image hashes could not be found on the system. Date: 2014-06-21 11:41:44.705 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows.old\Windows\winsxs\x86_microsoft-windows-bcrypt-dll_31bf3856ad364e35_6.0.6001.18000_none_ee8c936cef65a88f\bcrypt.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM)2 Duo CPU T5550 @ 1.83GHz Percentage of memory in use: 50% Total physical RAM: 3062.43 MB Available physical RAM: 1507.57 MB Total Pagefile: 7719.44 MB Available Pagefile: 5002.14 MB Total Virtual: 2047.88 MB Available Virtual: 1927.49 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:174.62 GB) (Free:122.41 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (HP_RECOVERY) (Fixed) (Total:11.68 GB) (Free:11.39 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 186.3 GB) (Disk ID: 4446FE98) Partition 1: (Active) - (Size=174.6 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=11.7 GB) - (Type=07 NTFS) ==================== End Of Log ============================