Additional scan result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01 Ran by Edyta (2016-03-27 20:29:25) Running from C:\Users\Edyta\Downloads Windows 10 Home Version 1511 (X64) (2016-02-23 23:52:59) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-4279228227-215742994-1318027649-500 - Administrator - Disabled) => C:\Users\Administrator DefaultAccount (S-1-5-21-4279228227-215742994-1318027649-503 - Limited - Disabled) Edyta (S-1-5-21-4279228227-215742994-1318027649-1001 - Administrator - Enabled) => C:\Users\Edyta Guest (S-1-5-21-4279228227-215742994-1318027649-501 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-4279228227-215742994-1318027649-1001\...\uTorrent) (Version: 3.4.3.40760 - BitTorrent Inc.) AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD) BankID Aplikacja Bezpieczeństwa (HKLM-x32\...\{1BDBF557-BA87-438F-9B28-AE4D836E35BA}) (Version: 7.1.0.20 - Financial ID-Technology) Buzzdock (HKLM-x32\...\{cfd32d46-7d3f-483f-bace-7172aec5592d}) (Version: - Alactro LLC) <==== ATTENTION CrystalDiskInfo 6.5.2 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.5.2 - Crystal Dew World) ETDWare X64 15.7.0.1_WHQL (HKLM\...\Elantech) (Version: 15.7.0.1 - ELAN Microelectronic Corp.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 48.0.2564.116 - Google Inc.) Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4276 - Intel Corporation) Intel® PROSet/Wireless Software (HKLM-x32\...\{c9967fbd-e3c3-4ed0-992a-5b33260f2944}) (Version: 16.1.5 - Intel Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.4.907.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7543 - Realtek Semiconductor Corp.) S Agent (Version: 1.0.9 - Samsung Electronics CO., LTD.) Hidden Samsung Printer Live Update (HKLM-x32\...\Samsung Printer Live Update) (Version: 1.01.00:04(2013-04-22) - Samsung Electronics Co., Ltd.) SW Update (HKLM-x32\...\{577948CC-8675-4766-95EE-49731FDF6DDC}) (Version: 2.1.4 - Samsung Electronics CO., LTD.) Wander Burst (HKLM-x32\...\Wander Burst) (Version: 2.0.5678.6958 - Wander Burst) <==== ATTENTION ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-4279228227-215742994-1318027649-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Edyta\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-4279228227-215742994-1318027649-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {00983364-EC4D-4640-B6BA-7F2B9679F7A3} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION Task: {012DBFBE-3003-46A3-AC90-D6E1C31F873D} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION Task: {08EB5D75-B8B7-431E-909D-FD30D04E62CE} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION Task: {2363E481-2A90-4F36-8E61-CE80E8072648} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION Task: {26374A49-3B60-4D71-B7A1-5A0CE67744D8} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION Task: {3C50A149-FA75-4C0B-B8EE-FC73A9A244BD} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION Task: {5D6652F8-D843-4298-B028-52EAAD6664DD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-08] (Google Inc.) Task: {632E1A9D-B5F0-45B4-A638-2356FDE95481} - System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-4279228227-215742994-1318027649-1001 Task: {7BEB19E1-CBF4-4E83-B63C-520FDC6F0E9E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-08] (Google Inc.) Task: {92C22980-DE9D-41C1-B184-07025C64A105} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION Task: {A2A08ECD-4D0B-467B-98F8-011E6E0FA4E5} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION Task: {AE668968-11DC-4F1E-B6E1-A99C45ACBDEF} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION Task: {BB6AD64B-98A4-4786-8255-C7BB613FD2CD} - System32\Tasks\SAgent => C:\Program Files\Samsung\S Agent\CommonAgent.exe [2012-10-25] (Samsung Electronics CO., LTD.) Task: {C0749BAC-A607-43DA-A670-0D614A99E853} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION Task: {DEC0DFB6-7790-4859-A6BC-BE69CE76D148} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION Task: {E7EF9A87-D1F3-42ED-9E53-4AAF199A23E4} - System32\Tasks\SWUpdateAgent => C:\Program Files (x86)\Samsung\SW Update\SWMAgent.exe [2012-11-09] (Samsung Electronics CO., LTD.) Task: {F6F96355-145B-4D26-A0C8-6B1DE674BB17} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2015-04-08 10:59 - 2015-04-08 10:59 - 00022528 _____ () C:\WINDOWS\System32\ssj1mlm.dll 2016-02-24 01:46 - 2016-02-24 01:46 - 02653816 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2016-02-24 01:46 - 2016-02-24 01:46 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-02-24 01:46 - 2016-02-24 01:46 - 02653816 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-02-24 01:46 - 2016-02-24 01:46 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-02-24 01:46 - 2016-02-24 01:46 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-02-24 01:46 - 2016-02-24 01:46 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-02-24 01:46 - 2016-02-24 01:46 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2016-02-24 01:46 - 2016-02-24 01:46 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2016-02-24 01:46 - 2016-02-24 01:46 - 00674816 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\MtcUvc.dll 2016-02-25 19:34 - 2016-02-25 19:34 - 09789952 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_2016.27.2.0_x64__8wekyb3d8bbwe\WinStore.Entertainment.Mobile.dll 2015-07-19 12:56 - 2016-02-29 22:27 - 01272544 _____ () C:\Program Files (x86)\Common Files\fccb0821-00ee-466c-acb5-2a5cec258511\updater.exe 2015-07-19 12:53 - 2016-02-29 22:32 - 01408224 _____ () C:\ProgramData\fccb0821-00ee-466c-acb5-2a5cec258511\plugincontainer.exe 2016-02-29 22:32 - 2016-02-29 22:32 - 01583328 _____ () C:\ProgramData\fccb0821-00ee-466c-acb5-2a5cec258511\plugins\2\plugin.exe 2016-02-29 22:32 - 2016-02-29 22:32 - 00926944 _____ () C:\ProgramData\fccb0821-00ee-466c-acb5-2a5cec258511\plugins\4\plugin.exe 2016-02-29 22:32 - 2016-02-29 22:32 - 00706784 _____ () C:\ProgramData\fccb0821-00ee-466c-acb5-2a5cec258511\plugins\6\plugin.exe 2016-02-29 22:32 - 2016-02-29 22:32 - 01649376 _____ () C:\ProgramData\fccb0821-00ee-466c-acb5-2a5cec258511\plugins\8\plugin.exe 2016-02-29 22:32 - 2016-02-29 22:32 - 00911072 _____ () C:\ProgramData\fccb0821-00ee-466c-acb5-2a5cec258511\plugins\5\plugin.exe 2016-02-29 22:32 - 2016-02-29 22:32 - 00537312 _____ () C:\ProgramData\fccb0821-00ee-466c-acb5-2a5cec258511\plugins\7\plugin.exe 2016-02-29 22:32 - 2016-02-29 22:32 - 00732896 _____ () C:\ProgramData\fccb0821-00ee-466c-acb5-2a5cec258511\plugins\12\plugin.exe 2016-02-29 22:32 - 2016-02-29 22:32 - 00792288 _____ () C:\ProgramData\fccb0821-00ee-466c-acb5-2a5cec258511\plugins\3\plugin.exe 2015-10-30 09:18 - 2015-10-30 09:18 - 02100064 _____ () C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe 2016-02-25 19:42 - 2016-02-25 19:42 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe 2016-02-20 12:32 - 2016-02-18 06:14 - 01630360 _____ () C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.116\libglesv2.dll 2016-02-20 12:32 - 2016-02-18 06:14 - 00085656 _____ () C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.116\libegl.dll 2016-02-20 12:32 - 2016-02-18 06:15 - 16808600 _____ () C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.116\PepperFlash\pepflashplayer.dll 2016-02-25 19:42 - 2016-02-25 19:42 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll 2016-02-25 19:42 - 2016-02-25 19:42 - 22330368 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-4279228227-215742994-1318027649-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Edyta\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\purpleworld12.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{82905CD5-5831-4DEA-AB6E-3C87F9CB51F9}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{9E54E72E-D735-4537-A3A0-82F784B8D432}] => (Allow) C:\Users\Edyta\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B3510DB3-94CE-474C-B205-0A82B52D1259}] => (Allow) C:\Users\Edyta\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{98D092D4-EA57-4F5B-950D-F370BB050078}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe ==================== Restore Points ========================= 25-02-2016 18:57:45 Windows Update 14-03-2016 17:15:55 Windows Modules Installer ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (03/27/2016 08:16:48 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: SkypeHost.exe, version: 10.1.2123.10, time stamp: 0x569054dc Faulting module name: combase.dll, version: 10.0.10586.103, time stamp: 0x56a84cbb Exception code: 0xc000027b Fault offset: 0x00166fb1 Faulting process ID: 0x2084 Faulting application start time: 0xSkypeHost.exe0 Faulting application path: SkypeHost.exe1 Faulting module path: SkypeHost.exe2 Report ID: SkypeHost.exe3 Faulting package full name: SkypeHost.exe4 Faulting package-relative application ID: SkypeHost.exe5 Error: (03/27/2016 08:15:33 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: EDYTKA) Description: Activation of application Microsoft.Windows.Photos_8wekyb3d8bbwe!App failed with error: -2147023170 See the Microsoft-Windows-TWinUI/Operational log for additional information. Error: (03/14/2016 05:16:22 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Access is denied. . Error: (03/14/2016 05:13:31 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: MicrosoftEdge.exe, version: 11.0.10586.103, time stamp: 0x56a84dc4 Faulting module name: eModel.dll, version: 11.0.10586.103, time stamp: 0x56a84b41 Exception code: 0xc0000409 Fault offset: 0x0000000000129def Faulting process ID: 0x1110 Faulting application start time: 0xMicrosoftEdge.exe0 Faulting application path: MicrosoftEdge.exe1 Faulting module path: MicrosoftEdge.exe2 Report ID: MicrosoftEdge.exe3 Faulting package full name: MicrosoftEdge.exe4 Faulting package-relative application ID: MicrosoftEdge.exe5 Error: (02/29/2016 10:38:49 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: SkypeHost.exe, version: 10.1.2123.10, time stamp: 0x569054dc Faulting module name: combase.dll, version: 10.0.10586.103, time stamp: 0x56a84cbb Exception code: 0xc000027b Fault offset: 0x00166fb1 Faulting process ID: 0x104c Faulting application start time: 0xSkypeHost.exe0 Faulting application path: SkypeHost.exe1 Faulting module path: SkypeHost.exe2 Report ID: SkypeHost.exe3 Faulting package full name: SkypeHost.exe4 Faulting package-relative application ID: SkypeHost.exe5 Error: (02/29/2016 10:38:43 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: SkypeHost.exe, version: 10.1.2123.10, time stamp: 0x569054dc Faulting module name: combase.dll, version: 10.0.10586.103, time stamp: 0x56a84cbb Exception code: 0xc000027b Fault offset: 0x00166fb1 Faulting process ID: 0x2520 Faulting application start time: 0xSkypeHost.exe0 Faulting application path: SkypeHost.exe1 Faulting module path: SkypeHost.exe2 Report ID: SkypeHost.exe3 Faulting package full name: SkypeHost.exe4 Faulting package-relative application ID: SkypeHost.exe5 Error: (02/29/2016 10:38:40 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: SkypeHost.exe, version: 10.1.2123.10, time stamp: 0x569054dc Faulting module name: combase.dll, version: 10.0.10586.103, time stamp: 0x56a84cbb Exception code: 0xc000027b Fault offset: 0x00166fb1 Faulting process ID: 0x26e4 Faulting application start time: 0xSkypeHost.exe0 Faulting application path: SkypeHost.exe1 Faulting module path: SkypeHost.exe2 Report ID: SkypeHost.exe3 Faulting package full name: SkypeHost.exe4 Faulting package-relative application ID: SkypeHost.exe5 Error: (02/29/2016 10:38:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: SkypeHost.exe, version: 10.1.2123.10, time stamp: 0x569054dc Faulting module name: combase.dll, version: 10.0.10586.103, time stamp: 0x56a84cbb Exception code: 0xc000027b Fault offset: 0x00166fb1 Faulting process ID: 0x27b4 Faulting application start time: 0xSkypeHost.exe0 Faulting application path: SkypeHost.exe1 Faulting module path: SkypeHost.exe2 Report ID: SkypeHost.exe3 Faulting package full name: SkypeHost.exe4 Faulting package-relative application ID: SkypeHost.exe5 Error: (02/29/2016 10:38:32 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: SkypeHost.exe, version: 10.1.2123.10, time stamp: 0x569054dc Faulting module name: combase.dll, version: 10.0.10586.103, time stamp: 0x56a84cbb Exception code: 0xc000027b Fault offset: 0x00166fb1 Faulting process ID: 0x23c8 Faulting application start time: 0xSkypeHost.exe0 Faulting application path: SkypeHost.exe1 Faulting module path: SkypeHost.exe2 Report ID: SkypeHost.exe3 Faulting package full name: SkypeHost.exe4 Faulting package-relative application ID: SkypeHost.exe5 Error: (02/29/2016 10:38:28 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: SkypeHost.exe, version: 10.1.2123.10, time stamp: 0x569054dc Faulting module name: combase.dll, version: 10.0.10586.103, time stamp: 0x56a84cbb Exception code: 0xc000027b Fault offset: 0x00166fb1 Faulting process ID: 0x1774 Faulting application start time: 0xSkypeHost.exe0 Faulting application path: SkypeHost.exe1 Faulting module path: SkypeHost.exe2 Report ID: SkypeHost.exe3 Faulting package full name: SkypeHost.exe4 Faulting package-relative application ID: SkypeHost.exe5 System errors: ============= Error: (03/14/2016 05:30:32 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable Error: (03/14/2016 05:14:49 PM) (Source: DCOM) (EventID: 10016) (User: EDYTKA) Description: machine-defaultLocalActivation{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}EdytkaEdytaS-1-5-21-4279228227-215742994-1318027649-1001LocalHost (Using LRPC)Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewyS-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742 Error: (02/29/2016 10:46:28 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable Error: (02/25/2016 08:20:41 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable Error: (02/25/2016 07:48:21 PM) (Source: DCOM) (EventID: 10016) (User: EDYTKA) Description: application-specificLocalActivation{9E175B6D-F52A-11D8-B9A5-505054503030}{9E175B9C-F52A-11D8-B9A5-505054503030}EdytkaEdytaS-1-5-21-4279228227-215742994-1318027649-1001LocalHost (Using LRPC)Microsoft.MicrosoftEdge_25.10586.0.0_neutral__8wekyb3d8bbweS-1-15-2-3624051433-2125758914-1423191267-1740899205-1073925389-3782572162-737981194 Error: (02/25/2016 07:04:11 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Installation Failure: Windows failed to install the following update with error 0x80073cf3: Twitter. Error: (02/24/2016 02:12:43 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable Error: (02/24/2016 01:28:59 AM) (Source: NETLOGON) (EventID: 3095) (User: ) Description: This computer is configured as a member of a workgroup, not as a member of a domain. The Netlogon service does not need to run in this configuration. Error: (02/24/2016 01:27:15 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Workstation service which failed to start because of the following error: %%1058 Error: (02/24/2016 01:27:15 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Workstation service which failed to start because of the following error: %%1058 CodeIntegrity: =================================== Date: 2016-03-14 16:18:17.672 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-02-29 21:03:47.793 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\amdhdl64.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-02-25 18:02:03.392 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-02-25 17:55:06.317 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-02-24 00:23:26.456 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-02-24 00:23:25.836 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-02-23 23:59:03.479 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-3210M CPU @ 2.50GHz Percentage of memory in use: 48% Total physical RAM: 8077.6 MB Available physical RAM: 4156.23 MB Total Virtual: 9997.6 MB Available Virtual: 5650.98 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:905.18 GB) (Free:401.72 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 0B1EA754) Partition: GPT. ==================== End of Addition.txt ============================