Additional scan result of Farbar Recovery Scan Tool (x86) Version: 10-01-2015 Ran by xcc at 2015-01-10 16:55:28 Running from N:\Users\TEMP\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) "Mass Effect 3" (HKLM\...\{46E776B9-37DE-4B71-8DF2-F4C75112CA27}_is1) (Version: - ) 22M WLAN Adapter (HKLM\...\{E36DB292-0D68-4E43-91CD-F2651A72332A}) (Version: - ) Adobe Flash Player 15 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 15.0.0.246 - Adobe Systems Incorporated) Adobe Flash Player 15 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 15.0.0.246 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) - Polish (HKLM\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) Aktualizacje NVIDIA 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden Archiwizator WinRAR (HKLM\...\WinRAR archiver) (Version: - ) Arcomage (HKLM\...\{131D11EC-4335-4B35-B779-F41A1F156689}) (Version: 1.00.0000 - 3DO) Ashampoo Undeleter v.1.1.0 (HKLM\...\Ashampoo Undeleter_is1) (Version: 1.1.0 - Ashampoo GmbH & Co. KG) Battle.net (HKLM\...\Battle.net) (Version: - Blizzard Entertainment) Call of Pripyat Complete v1.0.2 (HKLM\...\Call of Pripyat Complete_is1) (Version: - ) Crysis® 2 (HKLM\...\{6033673D-2530-4587-8AD0-EB059FC263F9}) (Version: 1.0.0.0 - Electronic Arts) CWK (Czasowy Wyłącznik Komputera) (HKLM\...\CWK) (Version: 2.52.3.43 - Damian Pasternak) DAEMON Tools Pro (HKLM\...\DAEMON Tools Pro) (Version: 5.0.0316.0317 - DT Soft Ltd) Deus Ex - Invisible War (HKLM\...\DXIW_is1) (Version: - Cenega) Deus Ex Human Revolution Augmented Edition (HKLM\...\{B102FE6E-AE3C-4EEC-8F33-B36A8033A32D}_is1) (Version: 1.2633.0 - Square Enix) Ďŕň÷ S.T.A.L.K.E.R. - Çîâ Ďđčď˙ňč 1.6.0.2 (HKLM\...\{5AABA586-927A-4B25-B87E-C92E08ED4639}_is1) (Version: - sanya007) EasyBCD 2.2 (HKLM\...\EasyBCD) (Version: 2.2 - NeoSmart Technologies) Etherlords (HKLM\...\{E2729A36-33EB-4094-9759-2C7A666DE296}) (Version: - ) Google Chrome (HKLM\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.) Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden Gothic (HKLM\...\{1B5A737F-ADEC-46DF-9539-B49D0828A175}) (Version: 1.00.000 - Piranha Bytes) Gothic II - Noc Kruka (HKLM\...\{6FB6D550-DDC4-4996-9CDF-91C34F0A4C4A}) (Version: 2.60.000 - ) Java 7 Update 67 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle) K-Lite Mega Codec Pack 10.5.0 (HKLM\...\KLiteCodecPack_is1) (Version: 10.5.0 - ) Little Fighter (HKLM\...\Little Fighter) (Version: - ) Mass Effect (HKLM\...\{1B0FBB9A-995D-47cd-87CD-13E68B676E4F}) (Version: 1.00 - Electronic Arts, Inc.) Mass Effect 2 (HKLM\...\{D85A387E-6EC0-40E5-9D89-A148B3E93968}_is1) (Version: - ) MegaTrainer eXperience V1.2.3.0 (HKLM\...\MegaTrainer eXperience_is1) (Version: - ) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) NVIDIA 3D Vision Controller Driver 335.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 335.21 - NVIDIA Corporation) NVIDIA 3D Vision Driver 335.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 335.23 - NVIDIA Corporation) NVIDIA GeForce Experience 2.1.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation) NVIDIA Graphics Driver 335.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 335.23 - NVIDIA Corporation) NVIDIA HD Audio Driver 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation) NVIDIA PhysX System Software 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) PLAY ONLINE (HKLM\...\{AEFF9E60-3E93-41EE-9895-311F7D1C5FFD}) (Version: 1.0.0.2 - ZTE Corporation) Postal 2 - Share the Pain (HKLM\...\Postal 2 - Share the Pain) (Version: - ) Prince of Persia: Dusza Wojownika (HKLM\...\PoPWW_is1) (Version: - Cenega Poland Sp. z o. o.) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6029 - Realtek Semiconductor Corp.) Risen (HKLM\...\{155F4A0E-76ED-45A2-91FB-FF2A2133C31A}) (Version: 1.00.0000 - Deep Silver) S.T.A.L.K.E.R. - Çîâ Ďđčď˙ňč [v1.6.00] (HKLM\...\{406FB8A4-F539-48A9-809C-F94706F9C9F6}_is1) (Version: 1.6.00 - GSC World Publishing) S.T.A.L.K.E.R. Cień Czarnobyla (HKLM\...\S.T.A.L.K.E.R. Cień Czarnobyla_is1) (Version: S.T.A.L.K.E.R. Cień Czarnobyla - ) SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.16.0 - SAMSUNG Electronics Co., Ltd.) SBP (HKLM\...\{619298EB-D2D1-49C1-8096-88A75CC92E5F}) (Version: 1.0.0.0 - ) SHIELD Streaming (Version: 3.1.100 - NVIDIA Corporation) Hidden Sothink FLV Player (HKLM\...\{CAAB0192-5704-469F-A0BE-2D842D70E93B}_is1) (Version: 2.3 - SourceTec Software Co., LTD) Spellforce (HKLM\...\{85DAE0C8-B3BB-11D8-88E4-0004769F25D1}) (Version: 1.52.000 - Phenomic) Stalker Complete 2009 (HKLM\...\{Stalker Complete 2009 v1.4.4}}_is1) (Version: - ) StarCraft II (HKLM\...\StarCraft II) (Version: 1.4.3.21029 - Blizzard Entertainment) Starcraft II Heart of the Swarm wersja 2.0.11 (HKLM\...\Starcraft II Heart of the Swarm_is1) (Version: 2.0.11 - Blizzard) Testy Bplus 5.1.3.69 (HKLM\...\{81999787-A518-4218-86D5-C5D25E6808F5}_is1) (Version: 5.1.3.69 - Grupa IMAGE sp. z o.o.) Thief - Deadly Shadows (HKLM\...\{FC123EEA-330A-4685-911C-95B8F5E9DE68}) (Version: 1.0 - ) Thief: Deadly Shadows (HKLM\...\InstallShield_{7CE3498C-866B-427E-8273-9CA67B24BA01}) (Version: 1.10.0000 - Nazwa firmy) Thief: Deadly Shadows (Version: 1.10.0000 - Nazwa firmy) Hidden TrueCrypt (HKLM\...\TrueCrypt) (Version: 7.1a - TrueCrypt Foundation) Worms World Party (HKLM\...\{AD309EDF-17A6-4968-9CE9-35887D9E1871}) (Version: 1.00.000 - ) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 10-01-2015 16:53:08 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2014-04-05 06:09 - 2014-08-14 16:50 - 00000890 ____A N:\Windows\system32\Drivers\etc\hosts 96.8.113.203 karachan.org 96.8.113.203 www.karachan.org ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {04E752C9-11CD-4881-97B0-FA90634D0998} - System32\Tasks\{08593034-40D7-4FCB-A580-D6DF3D50A557} => pcalua.exe -a P:\HTCDrivers\HTCDriverInstaller.exe -d P:\HTCDrivers Task: {0BD0552F-8911-4A3A-8994-5649FD0103A7} - System32\Tasks\{948B652B-2C32-4C4A-8DD2-81F1F87DB3B7} => pcalua.exe -a N:\Users\xcc\Downloads\EL107_pl.exe -d N:\Users\xcc\Downloads Task: {1008B6E8-95ED-49C8-B09B-101BD840CC8A} - System32\Tasks\{FE08E1CF-CFC6-4F18-A176-8F627BEAF143} => pcalua.exe -a P:\Data\Setup.exe -d P:\Data Task: {3E407D29-4C72-4DF2-9A6A-A250310CDB62} - System32\Tasks\{9B03E261-C44E-4781-A05B-15FC893427A8} => pcalua.exe -a "Y:\Mass Effect 3\Support\readme\Setup.exe" -d "Y:\Mass Effect 3\Support\readme" Task: {414F0463-17AA-4A34-A699-F7C88EC3B4C6} - System32\Tasks\Opera scheduled Autoupdate 1408029461 => N:\Program Files\Opera\launcher.exe [2014-12-17] (Opera Software) Task: {666B0D98-A385-40ED-A6CD-B63ACC345632} - System32\Tasks\{AB1E6085-83F2-4AC4-B5DD-8AFFD55FC6FD} => pcalua.exe -a "Q:\gothic 1\Materiały Dodatkowe\gothic1_playerkit-1.08k.exe" -d "Q:\gothic 1\Materiały Dodatkowe" Task: {75A76617-2DD2-4CA9-9EC9-370F43F44DE0} - System32\Tasks\{5223BE43-B777-4775-B2D6-ECCF102D1949} => pcalua.exe -a "N:\Users\xcc\Downloads\STALKER - Shadow of Chernobyl - Spolszczenie.exe" -d N:\Users\xcc\Downloads Task: {7A013F3D-59E1-4738-9712-6E6019613B36} - System32\Tasks\{F967F937-27A1-420D-979E-BD416AE0C9C8} => pcalua.exe -a P:\Data\UninstallSelf.exe -d P:\Data Task: {A21240AE-6BDE-4B6D-B9F6-C72ACBA942AC} - System32\Tasks\Adobe Flash Player Updater => N:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-10] (Adobe Systems Incorporated) Task: {B62567F0-1519-4685-9242-C4D95EBB0C07} - System32\Tasks\GoogleUpdateTaskMachineUA => N:\Program Files\Google\Update\GoogleUpdate.exe [2014-03-10] (Google Inc.) Task: {CEFEBFDE-BB99-4E13-BC57-4E069E878715} - System32\Tasks\{53DC1283-C17C-4B63-88E1-9F6EB11EC7C0} => pcalua.exe -a M:\setup.exe -d M:\ Task: {EDEDA7EB-3B81-412E-AB6C-35340A6C8099} - System32\Tasks\GoogleUpdateTaskMachineCore => N:\Program Files\Google\Update\GoogleUpdate.exe [2014-03-10] (Google Inc.) Task: {EFAFCCA9-F285-49E3-ADDF-608E42234280} - System32\Tasks\Adobe Acrobat Update Task => N:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {F5B67004-83B9-42AF-B5A0-CF8665E198BB} - System32\Tasks\Opera scheduled Autoupdate 1384106433 => D:\Program Files\Opera\launcher.exe [2014-12-17] (Opera Software) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: N:\Windows\Tasks\Adobe Flash Player Updater.job => N:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: N:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => N:\Program Files\Google\Update\GoogleUpdate.exe Task: N:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => N:\Program Files\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-03-09 18:12 - 2014-03-04 13:34 - 00109000 _____ () N:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll 2014-05-29 19:44 - 2013-07-26 19:21 - 00459008 _____ () N:\Program Files\4G Hostless Modem\PLAY ONLINE\CheckNDISPort_df.exe 2014-05-29 19:44 - 2013-07-26 19:21 - 00446208 _____ () N:\Program Files\4G Hostless Modem\PLAY ONLINE\CancelAutoPlay_df.exe 2014-12-11 05:11 - 2014-12-06 02:50 - 01077064 _____ () N:\Program Files\Google\Chrome\Application\39.0.2171.95\libglesv2.dll 2014-12-11 05:11 - 2014-12-06 02:50 - 00211272 _____ () N:\Program Files\Google\Chrome\Application\39.0.2171.95\libegl.dll 2014-12-11 05:11 - 2014-12-06 02:50 - 09009480 _____ () N:\Program Files\Google\Chrome\Application\39.0.2171.95\pdf.dll 2014-12-11 05:11 - 2014-12-06 02:50 - 01677128 _____ () N:\Program Files\Google\Chrome\Application\39.0.2171.95\ffmpegsumo.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-1276304395-2965494823-3744321566-500 - Administrator - Enabled) => N:\Users\Administrator Guest (S-1-5-21-1276304395-2965494823-3744321566-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1276304395-2965494823-3744321566-1004 - Limited - Enabled) xcc (S-1-5-21-1276304395-2965494823-3744321566-1000 - Administrator - Enabled) => N:\Users\TEMP xxxx (S-1-5-21-1276304395-2965494823-3744321566-1005 - Administrator - Enabled) => N:\Users\xxxx ==================== Faulty Device Manager Devices ============= Name: Universal Serial Bus (USB) Controller Description: Universal Serial Bus (USB) Controller Class Guid: {36fc9e60-c465-11cf-8056-444553540000} Manufacturer: Etron Technology Inc. Service: EtronXHCI Problem: : Windows cannot load the device driver for this hardware. The driver may be corrupted or missing. (Code 39) Resolution: Reasons for this error include a driver that is not present; a binary file that is corrupt; a file I/O problem, or a driver that references an entry point in another binary file that could not be loaded. Uninstall the driver, and then click "Scan for hardware changes" to reinstall or upgrade the driver. Name: 22M WLAN Adapter Description: 22M WLAN Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: PLANET Service: TIACXLN Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: SM Bus Controller Description: SM Bus Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (01/10/2015 04:53:08 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddCoreCsiFiles : GetNextFileMapContent() failed. System Error: The parameter is incorrect. . Error: (01/10/2015 04:53:08 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddCoreCsiFiles : GetNextFileMapContent() failed. System Error: The parameter is incorrect. . Error: (01/10/2015 04:53:08 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Volume Shadow Copy Service error: Unexpected error calling routine ConvertStringSidToSid(S-1-5-21-1276304395-2965494823-3744321566-1000.bak). hr = 0x80070539, The security ID structure is invalid. . Operation: OnIdentify event Gathering Writer Data Context: Execution Context: Shadow Copy Optimization Writer Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Writer Name: Shadow Copy Optimization Writer Writer Instance ID: {1a491ea8-5921-4fa7-9bcd-32bf021d7ca9} Error: (01/10/2015 04:53:05 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Volume Shadow Copy Service error: Unexpected error calling routine ConvertStringSidToSid(S-1-5-21-1276304395-2965494823-3744321566-1000.bak). hr = 0x80070539, The security ID structure is invalid. . Operation: OnIdentify event Gathering Writer Data Context: Execution Context: Shadow Copy Optimization Writer Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Writer Name: Shadow Copy Optimization Writer Writer Instance ID: {1a491ea8-5921-4fa7-9bcd-32bf021d7ca9} Error: (01/10/2015 04:53:01 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/10/2015 04:51:36 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1511) (User: xcc-PC) Description: Windows cannot find the local profile and is logging you on with a temporary profile. Changes you make to this profile will be lost when you log off. Error: (01/10/2015 04:51:36 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1515) (User: xcc-PC) Description: Windows has backed up this user profile. Windows will automatically try to use the backup profile the next time this user logs on. Error: (01/08/2015 11:27:06 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/08/2015 11:25:30 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1511) (User: xcc-PC) Description: Windows cannot find the local profile and is logging you on with a temporary profile. Changes you make to this profile will be lost when you log off. Error: (01/08/2015 11:25:30 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1515) (User: xcc-PC) Description: Windows has backed up this user profile. Windows will automatically try to use the backup profile the next time this user logs on. System errors: ============= Error: (01/10/2015 04:51:20 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The I2P Service service failed to start due to the following error: %%2 Error: (01/08/2015 11:25:25 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The I2P Service service failed to start due to the following error: %%2 Error: (01/08/2015 11:21:02 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error: (01/08/2015 11:21:02 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error: (01/08/2015 11:21:02 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error: (01/08/2015 11:21:02 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error: (01/08/2015 11:21:02 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error: (01/08/2015 11:21:02 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error: (01/08/2015 11:21:01 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Error: (01/08/2015 11:21:01 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: %%1068 Microsoft Office Sessions: ========================= Error: (01/10/2015 04:53:08 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddCoreCsiFiles : GetNextFileMapContent() failed. System Error: The parameter is incorrect. Error: (01/10/2015 04:53:08 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddCoreCsiFiles : GetNextFileMapContent() failed. System Error: The parameter is incorrect. Error: (01/10/2015 04:53:08 PM) (Source: VSS) (EventID: 8193) (User: ) Description: ConvertStringSidToSid(S-1-5-21-1276304395-2965494823-3744321566-1000.bak)0x80070539, The security ID structure is invalid. Operation: OnIdentify event Gathering Writer Data Context: Execution Context: Shadow Copy Optimization Writer Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Writer Name: Shadow Copy Optimization Writer Writer Instance ID: {1a491ea8-5921-4fa7-9bcd-32bf021d7ca9} Error: (01/10/2015 04:53:05 PM) (Source: VSS) (EventID: 8193) (User: ) Description: ConvertStringSidToSid(S-1-5-21-1276304395-2965494823-3744321566-1000.bak)0x80070539, The security ID structure is invalid. Operation: OnIdentify event Gathering Writer Data Context: Execution Context: Shadow Copy Optimization Writer Writer Class Id: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Writer Name: Shadow Copy Optimization Writer Writer Instance ID: {1a491ea8-5921-4fa7-9bcd-32bf021d7ca9} Error: (01/10/2015 04:53:01 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/10/2015 04:51:36 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1511) (User: xcc-PC) Description: Error: (01/10/2015 04:51:36 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1515) (User: xcc-PC) Description: Error: (01/08/2015 11:27:06 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/08/2015 11:25:30 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1511) (User: xcc-PC) Description: Error: (01/08/2015 11:25:30 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1515) (User: xcc-PC) Description: ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-2500K CPU @ 3.30GHz Percentage of memory in use: 39% Total physical RAM: 3563.77 MB Available physical RAM: 2147.64 MB Total Pagefile: 7125.82 MB Available Pagefile: 5423.83 MB Total Virtual: 2047.88 MB Available Virtual: 1871.01 MB ==================== Drives ================================ Drive d: (D) (Fixed) (Total:11.97 GB) (Free:1.72 GB) NTFS Drive e: () (Fixed) (Total:7.29 GB) (Free:0.17 GB) NTFS Drive g: (szpile) (Fixed) (Total:97.65 GB) (Free:6.9 GB) NTFS Drive h: (muzaa) (Fixed) (Total:27.81 GB) (Free:0.88 GB) NTFS Drive n: () (Fixed) (Total:97.65 GB) (Free:11.45 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 37.3 GB) (Disk ID: CE36CE36) Partition 1: (Active) - (Size=18 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=7.3 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=12 GB) - (Type=OF Extended) ======================================================== Disk: 1 (Size: 232.9 GB) (Disk ID: 9929E564) Partition 1: (Active) - (Size=48.8 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=97.7 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=27.8 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=23.4 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 232.9 GB) (Disk ID: 446A446A) No partition Table on disk 2. ==================== End Of Log ============================