Additional scan result of Farbar Recovery Scan Tool (x64) Version:20-07-2015 Ran by Lloyd at 2015-07-21 11:32:20 Running from C:\Users\Lloyd\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3125439737-3418779363-418148557-500 - Administrator - Disabled) Guest (S-1-5-21-3125439737-3418779363-418148557-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3125439737-3418779363-418148557-1002 - Limited - Enabled) Lloyd (S-1-5-21-3125439737-3418779363-418148557-1000 - Administrator - Enabled) => C:\Users\Lloyd ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AV: AVG Anti-Virus Free Edition 2011 (Disabled - Up to date) {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0} AS: AVG Anti-Virus Free Edition 2011 (Disabled - Up to date) {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adjustment Pattern software utility (HKLM-x32\...\Adjustment Pattern software utility) (Version: - ) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.5.1.17730 - Adobe Systems Inc.) Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated) Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated) Adobe Photoshop CS5 (HKLM-x32\...\{15FEDA5F-141C-4127-8D7E-B962D1742728}) (Version: 12.0 - Adobe Systems Incorporated) Adobe Photoshop Lightroom 3.4.1 64-bit (HKLM\...\{8BBA6F77-4A79-4E90-BD82-E24669ACF221}) (Version: 3.4.2 - Adobe) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.3.2223 - AVAST Software) AVG 2011 (Version: 10.0.1434 - AVG Technologies) Hidden CANON iMAGE GATEWAY Task for ZoomBrowser EX (HKLM-x32\...\CANON iMAGE GATEWAY Task) (Version: 1.7.2.11 - Canon Inc.) Canon Internet Library for ZoomBrowser EX (HKLM-x32\...\Canon Internet Library for ZoomBrowser EX) (Version: 1.6.3.9 - Canon Inc.) Canon MOV Decoder (HKLM-x32\...\Canon MOV Decoder) (Version: 1.5.0.7 - Canon Inc.) Canon MOV Encoder (HKLM-x32\...\Canon MOV Encoder) (Version: 1.3.1.3 - Canon Inc.) Canon MovieEdit Task for ZoomBrowser EX (HKLM-x32\...\MovieEditTask) (Version: 3.4.1.9 - Canon Inc.) Canon Utilities Digital Photo Professional 3.8 (HKLM-x32\...\DPP) (Version: 3.8.1.0 - Canon Inc.) Canon Utilities EOS Utility (HKLM-x32\...\EOS Utility) (Version: 2.8.1.0 - Canon Inc.) Canon Utilities PhotoStitch (HKLM-x32\...\PhotoStitch) (Version: 3.1.22.46 - Canon Inc.) Canon Utilities Picture Style Editor (HKLM-x32\...\Picture Style Editor) (Version: 1.7.0.0 - Canon Inc.) Canon Utilities WFT Utility (HKLM-x32\...\WFTK) (Version: 3.5.1.1 - Canon Inc.) Canon Utilities ZoomBrowser EX (HKLM-x32\...\ZoomBrowser EX) (Version: 6.5.1.15 - Canon Inc.) Canon ZoomBrowser EX Memory Card Utility (HKLM-x32\...\ZoomBrowser EX Memory Card Utility) (Version: 1.3.0.4 - Canon Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.07 - Piriform) Defraggler (HKLM\...\Defraggler) (Version: 2.19 - Piriform) HL-L2360D series (HKLM-x32\...\{46B58839-2405-48D6-A59D-F8246158A6ED}) (Version: 1.0.1.0 - Brother Industries, Ltd.) Intel(R) Network Connections 15.3.68.0 (HKLM\...\PROSetDX) (Version: 15.3.68.0 - Intel) LG CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.2111 - CyberLink Corp.) LG CyberLink LabelPrint (x32 Version: 2.5.2111 - CyberLink Corp.) Hidden LG CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.2.4009 - CyberLink Corp.) LG CyberLink Power2Go (x32 Version: 6.2.4009 - CyberLink Corp.) Hidden LG CyberLink PowerBackup (HKLM-x32\...\{ADD5DB49-72CF-11D8-9D75-000129760D75}) (Version: 2.5.5529 - CyberLink Corp.) LG CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 2.0.3304a - CyberLink Corp.) LG CyberLink YouCam (x32 Version: 2.0.3304a - CyberLink Corp.) Hidden LG ODD Auto Firmware Update (HKLM-x32\...\{6179550A-3E7C-499E-BCC9-9E8113E0A285}) (Version: 9.01.1124.01 - ) LG Power Tools (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 6.0.3316 - CyberLink Corp.) LG Power Tools (x32 Version: 6.0.3316 - CyberLink Corp.) Hidden Malwarebytes Anti-Malware version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft IntelliPoint 7.1 (HKLM\...\{5EBE0F1F-45DF-4298-AC6B-E8E54EAEC834}) (Version: 7.10.344.0 - Microsoft) Microsoft IntelliType Pro 7.1 (HKLM\...\{E6B7BD80-A921-4C72-A68B-44A9EB438BE4}) (Version: 7.10.344.0 - Microsoft) Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) PDF Settings CS5 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden RealFlight NexSTAR EP Edition (HKLM-x32\...\{4C391C9B-5BE1-4FC0-BC64-3433F1111EEA}) (Version: 1.00.0000 - Knife Edge Software) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6201 - Realtek Semiconductor Corp.) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1200 - SUPERAntiSpyware.com) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-3125439737-3418779363-418148557-1000_Classes\CLSID\{F6BF8414-962C-40FE-90F1-B80A7E72DB9A}\InprocServer32 -> C:\ProgramData\{9A88E103-A20A-4EA5-8636-C73B709A5BF8}\wer.dll (pirsCaooior cotnroMtf) <==== ATTENTION ==================== Restore Points ========================= 16-07-2015 15:10:12 Removed AVG 2015 16-07-2015 15:14:20 Removed AVG 2015 16-07-2015 15:18:55 avast! antivirus system restore point 17-07-2015 03:00:25 Windows Update 17-07-2015 11:50:13 Removed Visual Studio 2008 x64 Redistributables 17-07-2015 11:51:35 Removed Visual Studio 2012 x64 Redistributables 17-07-2015 11:52:19 Removed Visual Studio 2012 x86 Redistributables 17-07-2015 13:14:32 Removed Adobe Reader X (10.1.14). 17-07-2015 15:12:20 Revo Uninstaller's restore point - SpyHunter 4 17-07-2015 15:16:26 Revo Uninstaller's restore point - Cloud System Booster 20-07-2015 16:06:06 Windows Modules Installer 20-07-2015 16:19:41 Windows Modules Installer 20-07-2015 18:20:41 Windows Update ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-13 22:34 - 2009-06-10 17:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {3282B8BB-A4BF-469B-B504-E275BF6C1EAD} - System32\Tasks\{718D57E4-E434-4EA1-A0F5-3C46351CB713} => pcalua.exe -a E:\DetectVista.exe -d E:\ Task: {3F70DACD-E9B0-48D2-8A83-4A1E6C01D8AA} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-06-01] (Piriform Ltd) Task: {47BDE928-EBB5-4060-B3C7-F8840FDA0CF5} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => C:\Program Files\Microsoft IntelliPoint\IPoint.exe [2009-11-05] (Microsoft Corporation) Task: {60C46B19-9AE6-429F-89B8-C97D7D1BB6EC} - System32\Tasks\SUPERAntiSpyware Scheduled Task 87aec259-76f7-49f8-a59c-4b4dbcf5856c => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com) Task: {891BF009-D0D1-420C-B523-E0A112C93E2A} - System32\Tasks\SUPERAntiSpyware Scheduled Task 5f243d05-d2c2-4350-b1f1-062a9d50b338 => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com) Task: {A39EFFB5-254F-4C61-80CD-0AB6C293E55C} - System32\Tasks\{5FE8B9C2-361B-437F-9809-C1F3D7A8D90A} => pcalua.exe -a E:\SETUP.EXE -d E:\ Task: {A969E579-BDAA-4BEC-B8CA-E6CAD8A0FC23} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-07-16] (AVAST Software) Task: {CA641136-CE3F-481E-9683-ED714678F08D} - System32\Tasks\Microsoft_Hardware_Launch_IType_exe => C:\Program Files\Microsoft IntelliType Pro\IType.exe [2009-11-05] (Microsoft Corporation) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 5f243d05-d2c2-4350-b1f1-062a9d50b338.job => C:\Program Files\SUPERAntiSpyware\SASTask.exedC:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 87aec259-76f7-49f8-a59c-4b4dbcf5856c.job => C:\Program Files\SUPERAntiSpyware\SASTask.exedC:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe ==================== Loaded Modules (Whitelisted) ============== 2015-07-16 15:22 - 2015-07-16 15:22 - 00102864 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-07-16 15:22 - 2015-07-16 15:22 - 00123976 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-07-21 11:04 - 2015-07-21 11:04 - 02957312 _____ () C:\Program Files\AVAST Software\Avast\defs\15072100\algo.dll 2009-12-15 14:46 - 2009-12-15 14:46 - 00619816 ____N () C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll 2009-12-15 14:49 - 2009-12-15 14:49 - 00013096 ____N () C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll 2015-04-05 21:49 - 2009-02-27 16:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll 2015-07-16 15:22 - 2015-07-16 15:22 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3125439737-3418779363-418148557-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Lloyd\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.111.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\startupreg: AVG-Secure-Search-Update_0913a => C:\Users\Lloyd\AppData\Roaming\AVG 0913a Campaign\AVG-Secure-Search-Update-0913a.exe /PROMPT --mid c6f54d4b7c8047d6b7c7a138faa73938-146b1f750ab9cc066fb35e5bceed9486ef55759f --CMPID 0913a MSCONFIG\startupreg: AVG_TRAY => C:\Program Files (x86)\AVG\AVG10\avgtray.exe MSCONFIG\startupreg: LGODDFU => "C:\Program Files (x86)\lg_fwupdate\fwupdate.exe" blrun MSCONFIG\startupreg: ROC_ROC_APR2013_AV => C:\Users\Lloyd\AppData\Roaming\AVG April 2013 Campaign\AVG-Secure-Search-Update.exe /PROMPT --mid c6f54d4b7c8047d6b7c7a138faa73938-146b1f750ab9cc066fb35e5bceed9486ef55759f --CMPID ROC_APR2013_AV ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{7D490D38-C701-4954-A80B-607320021C1F}] => (Allow) C:\Program Files (x86)\AVG\AVG10\avgmfapx.exe FirewallRules: [{859F2274-5E6D-40BD-A470-393AB8BF55D6}] => (Allow) C:\Program Files (x86)\AVG\AVG10\avgmfapx.exe FirewallRules: [{C4D44525-BF02-44B0-A3C1-3D4CB76B3E0D}] => (Allow) C:\Program Files (x86)\AVG\AVG10\avgdiagex.exe FirewallRules: [{730AF223-2BC3-4B1A-BF1C-071CEF246253}] => (Allow) C:\Program Files (x86)\AVG\AVG10\avgdiagex.exe FirewallRules: [{5C0C2130-FFFF-47F4-A124-AB01E7BA1FB8}] => (Allow) C:\Program Files (x86)\AVG\AVG10\avgnsa.exe FirewallRules: [{CC4B3BCD-BCA7-407F-ABBB-D0D6849DCEAF}] => (Allow) C:\Program Files (x86)\AVG\AVG10\avgnsa.exe FirewallRules: [{E854422F-D26C-4ABF-B942-3DFD52524FF9}] => (Allow) C:\Program Files (x86)\AVG\AVG10\avgemca.exe FirewallRules: [{F6AE95A1-9E45-4D78-978F-1B00E5FD5A24}] => (Allow) C:\Program Files (x86)\AVG\AVG10\avgemca.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/17/2015 03:16:26 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddLegacyDriverFiles: Unable to back up image of binary esgiguard. System Error: The system cannot find the file specified. . Error: (07/17/2015 03:14:39 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program sh_installer.exe version 0.0.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 5ec Start Time: 01d0c0c49e998722 Termination Time: 0 Application Path: C:\Users\Lloyd\AppData\Roaming\Enigma Software Group\sh_installer.exe Report Id: Error: (07/16/2015 03:14:21 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddLegacyDriverFiles: Unable to back up image of binary AVGIDSDriver. System Error: The system cannot find the file specified. . Error: (07/10/2015 07:35:10 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: 555.exe, version: 1.0.0.1, time stamp: 0x414d9e64 Faulting module name: 555.exe, version: 1.0.0.1, time stamp: 0x414d9e64 Exception code: 0xc0000005 Fault offset: 0x00008e21 Faulting process id: 0x19d0 Faulting application start time: 0x555.exe0 Faulting application path: 555.exe1 Faulting module path: 555.exe2 Report Id: 555.exe3 Error: (07/10/2015 07:35:10 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: 555.exe, version: 1.0.0.1, time stamp: 0x414d9e64 Faulting module name: 555.exe, version: 1.0.0.1, time stamp: 0x414d9e64 Exception code: 0xc0000005 Fault offset: 0x00008e21 Faulting process id: 0x1f1c Faulting application start time: 0x555.exe0 Faulting application path: 555.exe1 Faulting module path: 555.exe2 Report Id: 555.exe3 Error: (07/10/2015 07:35:10 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: 555.exe, version: 1.0.0.1, time stamp: 0x414d9e64 Faulting module name: 555.exe, version: 1.0.0.1, time stamp: 0x414d9e64 Exception code: 0xc0000005 Fault offset: 0x00008e21 Faulting process id: 0x504 Faulting application start time: 0x555.exe0 Faulting application path: 555.exe1 Faulting module path: 555.exe2 Report Id: 555.exe3 Error: (07/10/2015 07:32:57 AM) (Source: MsiInstaller) (EventID: 11704) (User: NT AUTHORITY) Description: SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2015 -- Error 1704. SA_Error1704: StandardAction(0xC00706A8): An installation for AVG 2011 is currently suspended. You must undo the changes made by that installation to continue. Do you want to undo those changes? Error: (07/09/2015 11:01:49 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program IEXPLORE.EXE version 11.0.9600.17840 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 2968 Start Time: 01d0ba580652b378 Termination Time: 50 Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Report Id: 6aae9b5e-264b-11e5-9174-7071bc43d0cb Error: (07/09/2015 11:00:41 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program IEXPLORE.EXE version 11.0.9600.17840 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 1028 Start Time: 01d0ba55fd22a72f Termination Time: 80 Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Report Id: 3d575801-264b-11e5-9174-7071bc43d0cb Error: (06/26/2015 09:42:02 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program IEXPLORE.EXE version 11.0.9600.17840 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 1d08 Start Time: 01d0b015ade5bb9f Termination Time: 60 Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Report Id: System errors: ============= Error: (07/20/2015 06:10:03 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly. Error: (07/20/2015 06:08:04 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly. Error: (07/17/2015 03:23:13 PM) (Source: volmgr) (EventID: 46) (User: ) Description: Crash dump initialization failed! Error: (07/17/2015 03:23:13 PM) (Source: volmgr) (EventID: 46) (User: ) Description: Crash dump initialization failed! Error: (07/17/2015 03:16:46 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The Anvi Cloud System Booster Speed Service service terminated unexpectedly. It has done this 1 time(s). Error: (07/17/2015 03:10:53 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The MBAMService service failed to start due to the following error: %%1053 Error: (07/17/2015 03:10:53 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: A timeout was reached (30000 milliseconds) while waiting for the MBAMService service to connect. Error: (07/17/2015 03:09:53 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 3:08:55 PM on ‎7/‎17/‎2015 was unexpected. Error: (07/17/2015 03:08:06 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the WerSvc service. Error: (07/17/2015 01:37:12 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: The following fatal alert was received: 20. Microsoft Office: ========================= ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7 CPU 870 @ 2.93GHz Percentage of memory in use: 47% Total physical RAM: 8125.95 MB Available physical RAM: 4291.05 MB Total Virtual: 16250.1 MB Available Virtual: 11691.3 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:931.41 GB) (Free:863.75 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 33DBD09D) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS) ==================== End of log ============================