Additional scan result of Farbar Recovery Scan Tool (x64) Version: 07-12-2014 01 Ran by WiolaWiola at 2014-12-07 15:14:54 Running from C:\Users\WiolaWiola\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.239 - Adobe Systems Incorporated) Adobe Reader XI (11.0.09) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated) COMODO Internet Security Premium (HKLM\...\{2736B6BD-31EC-4FC8-A48C-F0A5C914C0B6}) (Version: 7.0.55655.4142 - COMODO Security Solutions Inc.) doPDF (Version: 8.0.915 - Softland) Hidden doPDF 8 (HKLM-x32\...\{a54197ad-113d-41df-8f35-ad06151b4d42}) (Version: 8.0.915 - Softland) Microsoft Office Professional Plus 2013 (HKLM-x32\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Mozilla Firefox 33.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 33.1 (x86 pl)) (Version: 33.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.2.0 - Mozilla) Mozilla Thunderbird 31.2.0 (x86 pl) (HKLM-x32\...\Mozilla Thunderbird 31.2.0 (x86 pl)) (Version: 31.2.0 - Mozilla) Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden novaPDF 8 add-in for Microsoft Office (x64) (HKLM\...\{F46F1A63-39F8-4678-BFDF-1D340A356323}) (Version: 8.0.915 - Softland) novaPDF 8 add-in for Microsoft Office (x86) (HKLM-x32\...\{F5435F65-CFCE-4938-97BB-69BC67C56CA7}) (Version: 8.0.915 - Softland) novaPDF 8 Printer Driver (HKLM\...\{5ED19569-C344-4C55-983F-AAF03CE33723}) (Version: 8.0.915 - Softland) Office 15 Click-to-Run Extensibility Component (HKLM-x32\...\{90150000-008C-0000-0000-0000000FF1CE}) (Version: - ) PrivDog (HKLM-x32\...\PrivDog) (Version: 1.8.0.15 - privdog.com) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= Could not list Restore Points. Check "winmgmt" service or repair WMI. ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {05219AB6-2AB4-46CF-B8D9-71177D5C12B6} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-25] (Adobe Systems Incorporated) Task: {104C8B4C-E7EC-44DE-A7F5-92E2C2F5BA6A} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {2DEEE03B-F7D8-4BEF-A60E-C2B651DD1A4E} - System32\Tasks\RtHDVBg => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2013-05-20] (Realtek Semiconductor) Task: {2E6094A8-C5BC-4AE5-990D-D71C5D86BC6D} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-11-13] (Microsoft Corporation) Task: {2E8BE1C3-DACD-4035-81B0-BC6C5BD3D9DA} - System32\Tasks\SAgent => C:\Program Files\Samsung\S Agent\CommonAgent.exe [2013-06-04] (Samsung Electronics CO., LTD.) Task: {4892833A-8F5D-46F3-8085-0833907AB073} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {54DDBCF0-4A7E-4F79-A545-BB755763286F} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe Task: {5959AE02-64D4-4427-B217-A1C851BE4D18} - System32\Tasks\COMODO\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {62AAF865-1B71-4E53-868D-7F8DB058DA9F} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe Task: {6358FEC7-0E0B-4B5C-BA71-F55F35F41815} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {803A2A45-8F2C-487A-AE75-3EA3C4328182} - System32\Tasks\COMODO\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {9281DF3C-3C0F-4AF2-819F-701411EFF810} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-05-30] (Realtek Semiconductor) Task: {9879D529-86ED-4777-9955-ED0B87CF8D02} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe Task: {B08278C4-8B13-4FD6-A61C-69BF602B1DB0} - System32\Tasks\advRecovery => C:\Program Files\Samsung\Recovery\WCScheduler.exe [2013-06-14] (SEC) Task: {CD22D919-45E9-4B5E-982D-91A3780253B0} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2014-04-16] (COMODO) Task: {D97600DC-0181-4FE8-A589-900A63D724B6} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe Task: {E4C8946C-EF12-4C61-9F1E-C66F6656CB50} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-05-20] (Piriform Ltd) Task: {EB3F61A6-F8E3-408B-B707-C5D616A35C74} - System32\Tasks\LaunchSettings => C:\Program Files (x86)\Samsung\Settings\Settings.exe [2013-06-14] () Task: {ECFEF78D-6153-445F-B767-A67081B6F9A3} - System32\Tasks\SamsungHomeSyncPC => C:\Program Files (x86)\Samsung\HomeSync Lite\RefreshToken.exe [2013-07-11] () Task: {F0E06326-519F-4ED5-9F9B-69AC1DB87BF0} - System32\Tasks\doPDF Update => C:\Program Files\Softland\novaPDF 8\Driver\UpdateApplication.exe [2014-08-01] () Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2013-07-23 17:10 - 2013-06-06 05:15 - 00288720 _____ () C:\Program Files\Bitcasa\ExplorerMenu.dll 2013-07-23 17:10 - 2013-06-06 05:23 - 01645056 _____ () C:\Program Files\Bitcasa\bitcasaui.dll 2013-07-23 17:16 - 2013-07-09 20:16 - 00012800 _____ () C:\Program Files\Samsung\Samsung Link\JniSys.dll 2013-07-23 17:16 - 2013-07-09 20:16 - 00042496 _____ () C:\Program Files\Samsung\Samsung Link\JniIO.dll 2013-06-18 05:51 - 2013-06-18 05:51 - 00036864 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\64bit\JNIInterface.dll 2013-06-18 05:51 - 2013-06-18 05:51 - 00144384 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\64bit\ASFAPI.dll 2013-06-18 05:54 - 2013-06-18 05:54 - 00018944 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\64bit\MediaDB_Manager.dll 2013-02-14 11:41 - 2013-02-14 11:41 - 00030720 _____ () C:\WINDOWS\SYSTEM32\MediaDB64.dll 2013-02-14 11:41 - 2013-02-14 11:41 - 00905216 _____ () C:\WINDOWS\SYSTEM32\ContentDirectoryPresenter64.dll 2013-06-18 05:55 - 2013-06-18 05:55 - 00521728 _____ () C:\Program Files\Samsung\AllShare Framework DMS\1.3.14\64bit\DMS_Manager.dll 2013-04-15 10:52 - 2013-04-15 10:52 - 00049152 _____ () C:\WINDOWS\SYSTEM32\boost_date_time-vc90-mt-1_47.dll 2013-04-15 10:52 - 2013-04-15 10:52 - 00016896 _____ () C:\WINDOWS\SYSTEM32\boost_system-vc90-mt-1_47.dll 2013-04-15 10:52 - 2013-04-15 10:52 - 00058880 _____ () C:\WINDOWS\SYSTEM32\boost_thread-vc90-mt-1_47.dll 2013-04-15 10:52 - 2013-04-15 10:52 - 00299520 _____ () C:\WINDOWS\SYSTEM32\boost_serialization-vc90-mt-1_47.dll 2013-06-04 23:28 - 2013-06-04 23:28 - 00088624 _____ () C:\Program Files\Samsung\S Agent\ToastX64.dll 2013-04-24 08:09 - 2013-04-24 08:09 - 00011264 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll 2013-04-24 08:07 - 2013-04-24 08:07 - 00086016 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\Map\MAP.dll 2013-04-24 08:12 - 2013-04-24 08:12 - 00012928 _____ () C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\StartupFolder: => "McAfee Security Scan Plus.lnk" HKLM\...\StartupApproved\Run32: => "Adobe ARM" HKLM\...\StartupApproved\Run32: => "PrivDogService" HKLM\...\StartupApproved\Run32: => "SDTray" HKU\S-1-5-21-204455593-1543837664-2498303104-1001\...\StartupApproved\Run: => "DAEMON Tools Lite" ========================= Accounts: ========================== Administrator (S-1-5-21-204455593-1543837664-2498303104-500 - Administrator - Disabled) Gość (S-1-5-21-204455593-1543837664-2498303104-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-204455593-1543837664-2498303104-1005 - Limited - Enabled) WiolaWiola (S-1-5-21-204455593-1543837664-2498303104-1001 - Administrator - Enabled) => C:\Users\WiolaWiola ==================== Faulty Device Manager Devices ============= Could not list Devices. Check "winmgmt" service or repair WMI. ==================== Event log errors: ========================= Application errors: ================== Error: (12/07/2014 01:24:35 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: Wiola) Description: Pomijanie: nie można zweryfikować Eap method DLL path. Błąd: identyfikator typu=254, identyfikator autora=311, identyfikator dostawcy=14122, typ dostawcy=1 Error: (12/07/2014 00:32:28 PM) (Source: Windows Search Service) (EventID: 7010) (User: ) Description: Nie można zainicjować indeksu. Szczegóły: Nie można odnaleźć określonego obiektu. Określ nazwę istniejącego obiektu. (HRESULT : 0x80040d06) (0x80040d06) Error: (12/07/2014 00:32:28 PM) (Source: Windows Search Service) (EventID: 3058) (User: ) Description: Nie można zainicjować aplikacji. Kontekst: aplikacja Windows Szczegóły: Nie można odnaleźć określonego obiektu. Określ nazwę istniejącego obiektu. (HRESULT : 0x80040d06) (0x80040d06) Error: (12/07/2014 00:32:28 PM) (Source: Windows Search Service) (EventID: 3028) (User: ) Description: Nie można zainicjować obiektu programu zbierającego. Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Nie można odnaleźć określonego obiektu. Określ nazwę istniejącego obiektu. (HRESULT : 0x80040d06) (0x80040d06) Error: (12/07/2014 00:32:28 PM) (Source: Windows Search Service) (EventID: 3029) (User: ) Description: Nie można zainicjować wtyczki w . Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Nie można odnaleźć określonego obiektu. Określ nazwę istniejącego obiektu. (HRESULT : 0x80040d06) (0x80040d06) Error: (12/07/2014 00:32:28 PM) (Source: Windows Search Service) (EventID: 3057) (User: ) Description: Nie można zainicjować menedżera wtyczek . Kontekst: aplikacja Windows Szczegóły: (HRESULT : 0x8e5e0210) (0x8e5e0210) Error: (12/07/2014 00:32:28 PM) (Source: Windows Search Service) (EventID: 7042) (User: ) Description: Usługa Windows Search jest zatrzymywana, ponieważ wystąpił problem z indeksatorem: The catalog is corrupt. Szczegóły: Wykaz indeksów zawartości jest uszkodzony. 0xc0041801 (0xc0041801) Error: (12/07/2014 00:32:28 PM) (Source: Windows Search Service) (EventID: 7040) (User: ) Description: Usługa wyszukiwania wykryła uszkodzone pliki danych w indeksie {id=4810 - enduser\mssearch2\search\ytrip\common\util\jetutil.cpp (167)}. Usługa podejmie próbę automatycznego rozwiązania tego problemu przez odbudowanie indeksu. Szczegóły: 0x8e5e0210 (0x8e5e0210) Error: (12/07/2014 00:32:28 PM) (Source: ESENT) (EventID: 455) (User: ) Description: SearchIndexer (6956) Windows: Wystąpił błąd -1811 (0xfffff8ed) podczas otwierania pliku dziennika C:\ProgramData\Microsoft\Search\Data\Applications\Windows\edb0001A.log. Error: (12/06/2014 03:39:28 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 System errors: ============= Error: (12/07/2014 01:30:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi AppEx Networks Accelerator LWF z powodu następującego błędu: %%31 Error: (12/07/2014 01:30:25 PM) (Source: APXACC) (EventID: 1003) (User: ) Description: The NDIS6 LWF initialization has failed. (0xC0000001) Error: (12/07/2014 01:24:01 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Routing i dostęp zdalny zależy od usługi Menedżer połączeń usługi Dostęp zdalny, której nie można uruchomić z powodu następującego błędu: %%1068 Error: (12/07/2014 01:24:01 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Menedżer połączeń usługi Dostęp zdalny zależy od usługi Usługa Protokół SSTP, której nie można uruchomić z powodu następującego błędu: %%0 Error: (12/07/2014 00:33:01 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi AppEx Networks Accelerator LWF z powodu następującego błędu: %%31 Error: (12/07/2014 00:33:01 PM) (Source: APXACC) (EventID: 1003) (User: ) Description: The NDIS6 LWF initialization has failed. (0xC0000001) Error: (12/07/2014 00:32:35 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa udostępniania w sieci programu Windows Media Player zależy od usługi Windows Search, której nie można uruchomić z powodu następującego błędu: %%1069 Error: (12/07/2014 00:32:35 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Windows Search z powodu następującego błędu: %%1069 Error: (12/07/2014 00:32:35 PM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: Usługa WSearch nie może zalogować się jako NT AUTHORITY\SYSTEM za pomocą obecnie skonfigurowanego hasła z powodu następującego błędu: %%50 Aby upewnić się, że usługa jest skonfigurowana prawidłowo, użyj przystawki Usługi w programie Microsoft Management Console (MMC). Error: (12/07/2014 00:32:35 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Windows Search z powodu następującego błędu: %%1069 Microsoft Office Sessions: ========================= Error: (12/07/2014 01:24:35 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: Wiola) Description: Eap method DLL path254311141221 Error: (12/07/2014 00:32:28 PM) (Source: Windows Search Service) (EventID: 7010) (User: ) Description: Szczegóły: Nie można odnaleźć określonego obiektu. Określ nazwę istniejącego obiektu. (HRESULT : 0x80040d06) (0x80040d06) Error: (12/07/2014 00:32:28 PM) (Source: Windows Search Service) (EventID: 3058) (User: ) Description: Kontekst: aplikacja Windows Szczegóły: Nie można odnaleźć określonego obiektu. Określ nazwę istniejącego obiektu. (HRESULT : 0x80040d06) (0x80040d06) Error: (12/07/2014 00:32:28 PM) (Source: Windows Search Service) (EventID: 3028) (User: ) Description: Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Nie można odnaleźć określonego obiektu. Określ nazwę istniejącego obiektu. (HRESULT : 0x80040d06) (0x80040d06) Error: (12/07/2014 00:32:28 PM) (Source: Windows Search Service) (EventID: 3029) (User: ) Description: Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Nie można odnaleźć określonego obiektu. Określ nazwę istniejącego obiektu. (HRESULT : 0x80040d06) (0x80040d06) Search.TripoliIndexer Error: (12/07/2014 00:32:28 PM) (Source: Windows Search Service) (EventID: 3057) (User: ) Description: Kontekst: aplikacja Windows Szczegóły: (HRESULT : 0x8e5e0210) (0x8e5e0210) Search.TripoliIndexer Error: (12/07/2014 00:32:28 PM) (Source: Windows Search Service) (EventID: 7042) (User: ) Description: Szczegóły: Wykaz indeksów zawartości jest uszkodzony. 0xc0041801 (0xc0041801) The catalog is corrupt Error: (12/07/2014 00:32:28 PM) (Source: Windows Search Service) (EventID: 7040) (User: ) Description: Szczegóły: 0x8e5e0210 (0x8e5e0210) 4810 - enduser\mssearch2\search\ytrip\common\util\jetutil.cpp (167) Error: (12/07/2014 00:32:28 PM) (Source: ESENT) (EventID: 455) (User: ) Description: SearchIndexer6956Windows: C:\ProgramData\Microsoft\Search\Data\Applications\Windows\edb0001A.log-1811 (0xfffff8ed) Error: (12/06/2014 03:39:28 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 CodeIntegrity Errors: =================================== Date: 2014-12-07 15:07:47.282 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-12-07 14:08:08.364 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-12-07 13:48:44.053 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-12-07 13:36:28.950 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-12-07 13:15:33.090 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-12-07 13:08:35.456 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-12-07 12:56:17.636 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-12-07 12:38:29.130 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-12-07 12:20:26.927 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2014-12-07 12:09:29.151 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Quad-Core Processor (up to 1.4GHz) Percentage of memory in use: 42% Total physical RAM: 3526.7 MB Available physical RAM: 2042.07 MB Total Pagefile: 4694.7 MB Available Pagefile: 1546.93 MB Total Virtual: 131072 MB Available Virtual: 131071.8 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:98.49 GB) (Free:57.06 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 119.2 GB) (Disk ID: 91AAE69A) Partition: GPT Partition Type. ==================== End Of Log ============================