Additional scan result of Farbar Recovery Scan Tool (x64) Version:25-07-2015 Ran by Lenovo at 2015-07-25 16:46:56 Running from C:\Users\Lenovo\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-4188537701-513941089-1413458238-500 - Administrator - Disabled) Gość (S-1-5-21-4188537701-513941089-1413458238-501 - Limited - Enabled) => C:\Users\Gość Lenovo (S-1-5-21-4188537701-513941089-1413458238-1001 - Administrator - Enabled) => C:\Users\Lenovo ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) AQQ (HKLM-x32\...\AQQ) (Version: 3.0.1.10 - Creative Team S.A.) BitComet 1.38 (HKLM-x32\...\BitComet) (Version: 1.38 - CometNetwork) Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 8.0.2.14 - Lenovo) Energy Management (x32 Version: 8.0.2.14 - Lenovo) Hidden GOM Player (HKLM-x32\...\GOM Player) (Version: 2.2.69.5227 - Gretech Corporation) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.134 - Google Inc.) Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4176 - Intel Corporation) LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.328 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.328 - LogMeIn, Inc.) Hidden Malwarebytes Anti-Malware wersja 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Microsoft OneDrive (HKU\S-1-5-21-4188537701-513941089-1413458238-1001\...\OneDriveSetup.exe) (Version: 17.3.5860.0512 - Microsoft Corporation) Mozilla Firefox 39.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 39.0 (x86 pl)) (Version: 39.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 39.0 - Mozilla) NHL® 09 (HKLM-x32\...\{F2B5A2A7-2DF9-4361-8BD5-362714528B51}) (Version: 2.0.1.0 - Electronic Arts) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4737.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4737.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4737.1003 - Microsoft Corporation) Hidden Opera Stable 30.0.1835.125 (HKLM-x32\...\Opera 30.0.1835.125) (Version: 30.0.1835.125 - Opera Software) Pakiet sterowników systemu Windows - Lenovo (ACPIVPC) System (02/17/2013 9.52.0.776) (HKLM\...\35DD26BE48DAF4A9F35F969F3CB1E3E1435E661E) (Version: 02/17/2013 9.52.0.776 - Lenovo) Pakiet sterowników systemu Windows - Lenovo (WUDFRd) LenovoVhid (07/25/2013 10.30.0.288) (HKLM\...\6BCA401E9CBEED970D75F55FA5320F60D11984E9) (Version: 07/25/2013 10.30.0.288 - Lenovo) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.39048 - Realtek Semiconductor Corp.) Screenshot Captor 4.10.0 (HKLM-x32\...\ScreenshotCaptor_is1) (Version: - ) Skype™ 7.4 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.4.102 - Skype Technologies S.A.) SpyHunter 4 (HKLM-x32\...\SpyHunter) (Version: 4.20.9.4533 - Enigma Software Group, LLC) WinRAR 5.21 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-4188537701-513941089-1413458238-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation) CustomCLSID: HKU\S-1-5-21-4188537701-513941089-1413458238-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Lenovo\AppData\Local\Microsoft\OneDrive\17.3.5860.0512\amd64\FileSyncApi64.dll (Microsoft Corporation) ==================== Restore Points ========================= 17-07-2015 22:25:44 Zaplanowany punkt kontrolny 19-07-2015 20:40:07 avast! antivirus system restore point 24-07-2015 18:27:41 Operacja przywracania ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {16F10BA1-CD33-49BE-A036-F15794E35E51} - System32\Tasks\Opera N Saturday => C:\Program Files (x86)\Opera\launcher.exe [2015-07-10] (Opera Software) Task: {205D5583-3A54-4D05-89FD-F581AEE37D19} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-07-24] (Microsoft Corporation) Task: {25525132-9873-4820-9DF5-30314EC5BFC7} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-07-01] (Microsoft Corporation) Task: {5AB39CC8-EFB4-40D4-9EC8-CD40D761EF2C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-03] (Google Inc.) Task: {635BA4B5-EDBD-4034-9F7A-EB1784D26E18} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-03] (Google Inc.) Task: {66FDAC17-F5C9-4FAE-B793-0B6789F2006F} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-07-01] (Microsoft Corporation) Task: {A0CA7E3B-5DB4-4B71-8BB2-94801C9A4A5E} - System32\Tasks\Opera scheduled Autoupdate 1435420101 => C:\Program Files (x86)\Opera\launcher.exe [2015-07-10] (Opera Software) Task: {CEEE78F1-4EB9-4EF0-BDCB-C0CEAF434A5E} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-4188537701-513941089-1413458238-1001 => %localappdata%\Microsoft\OneDrive\OneDrive.exe (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2015-04-27 14:05 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2015-07-14 20:18 - 2015-07-13 23:55 - 01281864 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.134\libglesv2.dll 2015-07-14 20:18 - 2015-07-13 23:55 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.134\libegl.dll 2015-07-14 20:18 - 2015-07-13 23:55 - 16308040 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.134\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:CB0AACC9 ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-4188537701-513941089-1413458238-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Lenovo\AppData\Local\Microsoft\Windows\Themes\dreaming\DesktopBackground\images.jpg DNS Servers: 171.25.182.2 - 171.25.182.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is disabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{D8E1023D-D2E2-424D-B722-A574175A4215}] => (Allow) C:\Users\Lenovo\AppData\Local\Microsoft\OneDrive\OneDrive.exe FirewallRules: [{B346A280-292F-4302-BFDE-DA8862C25783}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe FirewallRules: [{7E9F94A7-B570-4E30-AAA5-880EE9035C2F}] => (Allow) C:\Program Files (x86)\BitComet\BitComet.exe FirewallRules: [{D2658448-C1C9-4882-8A61-CB1F546894BD}] => (Allow) C:\Program Files (x86)\BitComet\BitComet.exe FirewallRules: [TCP Query User{CEF3C85B-319B-4CDF-AE61-CD9B3E402C39}C:\program files (x86)\bitcomet\bitcomet.exe] => (Block) C:\program files (x86)\bitcomet\bitcomet.exe FirewallRules: [UDP Query User{574BC1E5-F20A-40D3-8E52-694E33F0E10D}C:\program files (x86)\bitcomet\bitcomet.exe] => (Block) C:\program files (x86)\bitcomet\bitcomet.exe FirewallRules: [{6C0C4E3E-3D31-4A2F-8098-80FA908E11A1}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{D0722EAD-8BCA-427C-A372-5FFA365F3400}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{50B7E668-B312-4A61-8E3B-679C58DEF75A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/25/2015 04:15:48 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC) Description: Aktywacja aplikacji microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Calendar nie powiodła się. Błąd: -2144927142. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (07/25/2015 04:15:38 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: Lenovo-PC) Description: Aplikacja microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe+Microsoft.WindowsLive.Calendar nie została uruchomiona w wyznaczonym czasie. Error: (07/25/2015 01:53:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: mbam.exe, wersja: 2.3.55.0, sygnatura czasowa: 0x557a2a02 Nazwa modułu powodującego błąd: mbam.exe, wersja: 2.3.55.0, sygnatura czasowa: 0x557a2a02 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x001de590 Identyfikator procesu powodującego błąd: 0xaf0 Godzina uruchomienia aplikacji powodującej błąd: 0xmbam.exe0 Ścieżka aplikacji powodującej błąd: mbam.exe1 Ścieżka modułu powodującego błąd: mbam.exe2 Identyfikator raportu: mbam.exe3 Pełna nazwa pakietu powodującego błąd: mbam.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: mbam.exe5 Error: (07/24/2015 11:32:25 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program GWXUX.exe w wersji 6.3.9600.17924 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: f2c Godzina rozpoczęcia: 01d0c6582d6bdd48 Godzina zakończenia: 0 Ścieżka aplikacji: C:\Windows\System32\GWX\GWXUX.exe Identyfikator raportu: 71d03938-324b-11e5-825f-24fd52bc396c Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (07/24/2015 10:35:06 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC) Description: Aktywacja aplikacji microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Calendar nie powiodła się. Błąd: -2144927142. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (07/24/2015 10:32:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC) Description: Aktywacja aplikacji microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Calendar nie powiodła się. Błąd: -2144927142. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (07/24/2015 10:27:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC) Description: Aktywacja aplikacji Microsoft.BingNews_8wekyb3d8bbwe!AppexNews nie powiodła się. Błąd: -2144927142. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (07/24/2015 08:26:29 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: launcher.exe_Opera Internet Browser, wersja: 30.0.1835.125, sygnatura czasowa: 0x559fb336 Nazwa modułu powodującego błąd: launcher.exe, wersja: 30.0.1835.125, sygnatura czasowa: 0x559fb336 Kod wyjątku: 0x80000003 Przesunięcie błędu: 0x000213f9 Identyfikator procesu powodującego błąd: 0x1250 Godzina uruchomienia aplikacji powodującej błąd: 0xlauncher.exe_Opera Internet Browser0 Ścieżka aplikacji powodującej błąd: launcher.exe_Opera Internet Browser1 Ścieżka modułu powodującego błąd: launcher.exe_Opera Internet Browser2 Identyfikator raportu: launcher.exe_Opera Internet Browser3 Pełna nazwa pakietu powodującego błąd: launcher.exe_Opera Internet Browser4 Identyfikator aplikacji względem pakietu powodującego błąd: launcher.exe_Opera Internet Browser5 Error: (07/24/2015 07:00:13 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (1208) SRUJet: Wystąpił błąd -1811 (0xfffff8ed) podczas otwierania pliku dziennika C:\Windows\system32\SRU\SRU0048C.log. Error: (07/24/2015 06:29:41 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC) Description: Aktywacja aplikacji microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Calendar nie powiodła się. Błąd: -2144927141. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. System errors: ============= Error: (07/25/2015 04:33:22 PM) (Source: BTHUSB) (EventID: 5) (User: ) Description: Sterownik Bluetooth oczekiwał zdarzenia HCI o określonym rozmiarze, ale go nie otrzymał. Error: (07/25/2015 04:32:46 PM) (Source: DCOM) (EventID: 10010) (User: Lenovo-PC) Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39} Error: (07/24/2015 11:26:53 PM) (Source: BTHUSB) (EventID: 5) (User: ) Description: Sterownik Bluetooth oczekiwał zdarzenia HCI o określonym rozmiarze, ale go nie otrzymał. Error: (07/24/2015 10:56:09 PM) (Source: BTHUSB) (EventID: 5) (User: ) Description: Sterownik Bluetooth oczekiwał zdarzenia HCI o określonym rozmiarze, ale go nie otrzymał. Error: (07/24/2015 10:55:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Windows Search z powodu następującego błędu: %%1069 Error: (07/24/2015 10:55:46 PM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: Usługa WSearch nie może zalogować się jako NT AUTHORITY\SYSTEM za pomocą obecnie skonfigurowanego hasła z powodu następującego błędu: %%50 Aby upewnić się, że usługa jest skonfigurowana prawidłowo, użyj przystawki Usługi w programie Microsoft Management Console (MMC). Error: (07/24/2015 10:55:16 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Bufor wydruku niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 5000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (07/24/2015 10:55:16 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (07/24/2015 10:55:15 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Instalator modułów systemu Windows niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 300000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (07/24/2015 10:55:15 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa Szybka instalacja pakietu Microsoft Office niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Microsoft Office: ========================= Error: (07/25/2015 04:15:48 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC) Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Calendar-2144927142 Error: (07/25/2015 04:15:38 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: Lenovo-PC) Description: microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe+Microsoft.WindowsLive.Calendar Error: (07/25/2015 01:53:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: mbam.exe2.3.55.0557a2a02mbam.exe2.3.55.0557a2a02c0000005001de590af001d0c6cddadc2c4cC:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exeC:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exeb427eae5-32c3-11e5-825f-24fd52bc396c Error: (07/24/2015 11:32:25 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: GWXUX.exe6.3.9600.17924f2c01d0c6582d6bdd480C:\Windows\System32\GWX\GWXUX.exe71d03938-324b-11e5-825f-24fd52bc396c Error: (07/24/2015 10:35:06 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC) Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Calendar-2144927142 Error: (07/24/2015 10:32:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC) Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Calendar-2144927142 Error: (07/24/2015 10:27:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC) Description: Microsoft.BingNews_8wekyb3d8bbwe!AppexNews-2144927142 Error: (07/24/2015 08:26:29 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: launcher.exe_Opera Internet Browser30.0.1835.125559fb336launcher.exe30.0.1835.125559fb33680000003000213f9125001d0c63bb8c2a1daC:\Program Files (x86)\Opera\launcher.exeC:\Program Files (x86)\Opera\launcher.exe7f9eb4fa-3231-11e5-825c-24fd52bc396c Error: (07/24/2015 07:00:13 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost1208SRUJet: C:\Windows\system32\SRU\SRU0048C.log-1811 (0xfffff8ed) Error: (07/24/2015 06:29:41 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lenovo-PC) Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Calendar-2144927141 CodeIntegrity Error: =================================== Date: 2015-07-24 17:34:20.052 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. Date: 2015-07-24 17:34:19.983 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. Date: 2015-07-24 17:34:19.983 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. Date: 2015-07-24 17:34:19.963 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. Date: 2010-04-01 16:44:23.448 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. Date: 2010-04-01 16:44:23.355 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. Date: 2015-07-23 13:35:32.101 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. Date: 2015-07-23 13:35:32.025 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. Date: 2015-07-23 11:54:08.146 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. Date: 2015-07-23 11:54:07.846 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz Percentage of memory in use: 47% Total physical RAM: 3964.85 MB Available physical RAM: 2085.53 MB Total Virtual: 5628.85 MB Available Virtual: 3763.07 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:200.61 GB) (Free:143.84 GB) NTFS ==>[drive with boot components (obtained from BCD)] Drive d: () (Fixed) (Total:530.29 GB) (Free:502.8 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: B1D75AE8) Partition 1: (Active) - (Size=200.6 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=530.3 GB) - (Type=OF Extended) ==================== End of log ============================