Additional scan result of Farbar Recovery Scan Tool (x86) Version: 03-06-2015 Ran by nazareno at 2015-06-04 13:12:06 Running from C:\Users\TEMP\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrador (S-1-5-21-358191537-1252923797-762656075-500 - Administrator - Disabled) Convidado (S-1-5-21-358191537-1252923797-762656075-501 - Limited - Disabled) nazareno (S-1-5-21-358191537-1252923797-762656075-1000 - Administrator - Enabled) => C:\Users\TEMP ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 17 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 17.0.0.188 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) aTube Catcher versão 3.8 (HKLM\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp) Avira (HKLM\...\{7bbb1cfc-958f-4118-8d23-7189d637f941}) (Version: 1.1.38.50000 - Avira Operations GmbH & Co. KG) Avira (Version: 1.1.38.50000 - Avira Operations GmbH & Co. KG) Hidden Avira Antivirus (HKLM\...\Avira Antivirus) (Version: 15.0.10.434 - Avira Operations GmbH & Co. KG) BurnAware Free 8.1 (HKLM\...\BurnAware Free_is1) (Version: - Burnaware) GBBD Caixa Economica Federal (HKLM\...\{5d01f486-f32d-462e-8830-cc1d116e8ece}_is1) (Version: 3.12.0.2 - ) Google Chrome (HKLM\...\Google Chrome) (Version: 43.0.2357.81 - Google Inc.) Google Update Helper (Version: 1.3.27.5 - Google Inc.) Hidden Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation) Pacote de Idiomas do Microsoft .NET Framework 4 Client Profile - Português (Brasil) (HKLM\...\Microsoft .NET Framework 4 Client Profile PTB Language Pack) (Version: 4.0.30319 - Microsoft Corporation) PhotoScape (HKLM\...\PhotoScape) (Version: - ) Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform) WinRAR 5.21 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Restore Points ========================= 27-05-2015 08:56:32 avast! antivirus system restore point 27-05-2015 09:05:03 avast! antivirus system restore point 27-05-2015 09:18:59 avast! antivirus system restore point 27-05-2015 09:25:01 avast! antivirus system restore point 27-05-2015 09:30:14 Operação de restauração 27-05-2015 09:34:23 avast! antivirus system restore point 27-05-2015 10:15:51 avast! antivirus system restore point 27-05-2015 10:27:23 avast! antivirus system restore point 27-05-2015 18:13:50 avast! antivirus system restore point 27-05-2015 18:16:25 Operação de restauração 27-05-2015 18:21:01 avast! antivirus system restore point 27-05-2015 18:22:19 Operação de restauração 27-05-2015 18:26:52 avast! antivirus system restore point 28-05-2015 10:12:27 avast! antivirus system restore point 28-05-2015 10:41:24 avast! antivirus system restore point 30-05-2015 07:57:02 Installed Adobe Reader XI. ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-13 23:04 - 2015-05-21 07:52 - 00000921 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 genuine.microsoft.com 127.0.0.1 mpa.one.microsoft.com 127.0.0.1 sls.microsoft.com ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {18787380-F0AF-41F4-B6A1-B96C54447E7F} - System32\Tasks\GoogleUpdateTaskMachineUA1d093c9e685a44 => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-05-21] (Google Inc.) Task: {21DDC04F-9523-4978-9F7E-6E89DDE2210D} - System32\Tasks\LaunchPreSignup => C:\Program Files\OLBPre\OLBPre.exe <==== ATTENTION Task: {259E280E-B913-498D-8C39-CD4424848F4C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-05-21] (Google Inc.) Task: {25BD678C-D3C9-44EE-897A-071BBA7C053A} - System32\Tasks\GoogleUpdateTaskMachineCore1d093c9d8f3e20 => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-05-21] (Google Inc.) Task: {3896EFC7-EC96-4906-B6FE-A76D2994AB68} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-05-17] (Adobe Systems Incorporated) Task: {39742125-382B-455A-A5A1-061B815E30C5} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation) Task: {4CA4DC51-0690-4EF7-8EB0-C0CEA8E9C1F8} - System32\Tasks\SuperClick Auto Updater 1.10.0.16 Core => C:\Program Files\SuperClick_1.10.0.16\Update\SuperClickAutoUpdateClient.exe Task: {7105E85A-1F5A-4AEA-BB16-6657A0320A9F} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-24] (Microsoft Corporation) Task: {855AD017-2136-4647-B2F4-7430097D8F68} - System32\Tasks\SMupdate1 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update1 <==== ATTENTION Task: {8FDA2553-1B49-439E-AE1B-30A0749AEB2D} - System32\Tasks\{2A6A6C0A-6DF1-4478-807F-2FF9BF46B935} => C:\Users\nazareno\AppData\Roaming\{2F3AA0F6-976C-4b02-A66A-5D1DEA00811F}\InstallHelp.exe [2015-05-15] () Task: {98360674-FB01-45CB-B92C-1C130C0269A2} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {9CF78918-C84B-4532-92C2-278E687FEB6D} - System32\Tasks\SuperClick Auto Updater 1.10.0.16 Pending Update => C:\Program Files\SuperClick_1.10.0.16\Update\SuperClickAutoUpdateClient.exe Task: {B684F485-7A41-428D-94BA-3ED999F328C4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-05-21] (Google Inc.) Task: {B6E0A435-C0CD-436C-96D7-2A9341D0C6F6} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation) Task: {D14FA1E5-8BB5-4A29-8ABB-D29C1C069BFC} - System32\Tasks\Microsoft\Windows\Maintenance\SMupdate2 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update2 <==== ATTENTION Task: {E76F5295-4400-4C77-BEBB-2D435746E883} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation) Task: {F116B1CE-E6E2-4D52-B501-A96DEB4E6199} - System32\Tasks\Microsoft\Windows\Multimedia\SMupdate3 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update3 <==== ATTENTION (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d093c9d8f3e20.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d093c9e685a44.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\{2A6A6C0A-6DF1-4478-807F-2FF9BF46B935}.job => C:\Users\nazareno\AppData\Roaming\{2F3AA0F6-976C-4b02-A66A-5D1DEA00811F}\InstallHelp.exe›-RunCheckUpdate C:\Users\nazareno\AppData\Roaming\{2F3AA0F6-976C-4b02-A66A-5D1DEA00811F}\CheckUpdate.exe ==================== Loaded Modules (Whitelisted) ============== ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) DNS Servers: 192.168.0.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{72492DE1-DA2E-4F25-BCCD-CDA0BFAD6A29}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{2FBCCC8C-6B2E-41B7-9B63-9961E325EB22}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{7BF1B16D-9DE9-419D-93C9-C736C871250E}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= Name: avnetflt Description: avnetflt Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: avnetflt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Teredo Tunneling Pseudo-Interface Description: Adaptador de Túnel Teredo da Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: scfd_1_10_0_16 Description: scfd_1_10_0_16 Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: scfd_1_10_0_16 Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Dispositivo do sistema básico Description: Dispositivo do sistema básico Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: ssmdrv Description: ssmdrv Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: ssmdrv Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Dispositivo do sistema básico Description: Dispositivo do sistema básico Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: tbfd_1_10_0_16 Description: tbfd_1_10_0_16 Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: tbfd_1_10_0_16 Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: avipbb Description: avipbb Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: avipbb Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: avkmgr Description: avkmgr Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: avkmgr Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (06/04/2015 00:29:14 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Falha de ativação da licença do Windows. Erro 0x00000000. Error: (06/04/2015 00:29:14 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Falha da Ativação de Licença (slui.exe) com o seguinte código de erro: 0x800401F9 Error: (06/04/2015 00:29:10 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1511) (User: nazareno-PC) Description: O Windows não pode localizar o perfil local e está fazendo seu logon com um perfil temporário. As alterações que você fizer nesse perfil serão perdidas quando você fizer logoff. Error: (06/04/2015 00:29:10 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1515) (User: nazareno-PC) Description: O Windows fez o backup deste perfil de usuário. O Windows tentará usar automaticamente esse perfil na próxima vez em que o usuário fizer logon. Error: (06/04/2015 00:29:10 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1502) (User: nazareno-PC) Description: O Windows não pode carregar o perfil armazenado localmente. As possíveis causas do erro são direitos de segurança insuficientes ou um perfil local corrompido. DETALHE - Uma operação de E/S iniciada pelo Registro falhou de forma irrecuperável. O Registro não pôde ler, gravar ou liberar um dos arquivos com a imagem no sistema do Registro. Error: (06/04/2015 00:29:10 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: AUTORIDADE NT) Description: O Windows não pôde carregar o Registro. Isso geralmente é causado por memória insuficiente ou direitos de segurança insuficientes. DETALHE - Uma operação de E/S iniciada pelo Registro falhou de forma irrecuperável. O Registro não pôde ler, gravar ou liberar um dos arquivos com a imagem no sistema do Registro. para C:\Users\nazareno\ntuser.dat Error: (06/04/2015 00:23:25 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Falha de ativação da licença do Windows. Erro 0x00000000. Error: (06/04/2015 00:23:25 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Falha da Ativação de Licença (slui.exe) com o seguinte código de erro: 0x800401F9 Error: (06/04/2015 00:22:55 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1511) (User: nazareno-PC) Description: O Windows não pode localizar o perfil local e está fazendo seu logon com um perfil temporário. As alterações que você fizer nesse perfil serão perdidas quando você fizer logoff. Error: (06/04/2015 00:22:55 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1515) (User: nazareno-PC) Description: O Windows fez o backup deste perfil de usuário. O Windows tentará usar automaticamente esse perfil na próxima vez em que o usuário fizer logon. System errors: ============= Error: (06/04/2015 01:12:09 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: AUTORIDADE NT) Description: 0x8000002a171\??\Volume{95d6d770-dfd2-11e4-9f00-806e6f6e6963}\System Volume Information\SPP\SppCbsHiveStore\{cd42efe1-f6f1-427c-b004-033192c625a4}{EE8AF346-9E87-4A37-B71E-3EED9BCB8175} Error: (06/04/2015 01:11:58 PM) (Source: Disk) (EventID: 7) (User: ) Description: O dispositivo, \Device\Harddisk0\DR0, possui um bloco defeituoso. Error: (06/04/2015 01:11:46 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: AUTORIDADE NT) Description: 0x8000002a171\??\Volume{95d6d770-dfd2-11e4-9f00-806e6f6e6963}\System Volume Information\SPP\SppCbsHiveStore\{cd42efe1-f6f1-427c-b004-033192c625a4}{C1052C6D-AD36-4FDB-81BF-6737604160AB} Error: (06/04/2015 01:10:35 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: AUTORIDADE NT) Description: 0x8000002a171\??\Volume{95d6d770-dfd2-11e4-9f00-806e6f6e6963}\System Volume Information\SPP\SppCbsHiveStore\{cd42efe1-f6f1-427c-b004-033192c625a4}{D7CD5E28-FE42-4B8E-B310-E8E843506E22} Error: (06/04/2015 01:10:14 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: AUTORIDADE NT) Description: 0x8000002a171\??\Volume{95d6d770-dfd2-11e4-9f00-806e6f6e6963}\System Volume Information\SPP\SppCbsHiveStore\{cd42efe1-f6f1-427c-b004-033192c625a4}{16FD3D8F-038D-43A0-84F6-41F64BBDB65B} Error: (06/04/2015 01:10:01 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: AUTORIDADE NT) Description: 0x8000002a171\??\Volume{95d6d770-dfd2-11e4-9f00-806e6f6e6963}\System Volume Information\SPP\SppCbsHiveStore\{cd42efe1-f6f1-427c-b004-033192c625a4}{8556B4BC-A50B-44DE-99AB-6B55B4C41569} Error: (06/04/2015 01:09:14 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: AUTORIDADE NT) Description: 0x8000002a171\??\Volume{95d6d770-dfd2-11e4-9f00-806e6f6e6963}\System Volume Information\SPP\SppCbsHiveStore\{cd42efe1-f6f1-427c-b004-033192c625a4}{E92DD8E4-9BBB-467F-9E36-F30D17D1F40E} Error: (06/04/2015 01:09:03 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: AUTORIDADE NT) Description: 0x8000002a171\??\Volume{95d6d770-dfd2-11e4-9f00-806e6f6e6963}\System Volume Information\SPP\SppCbsHiveStore\{cd42efe1-f6f1-427c-b004-033192c625a4}{32FBCC1A-A16B-4AA5-9A62-2C374DD5E607} Error: (06/04/2015 01:08:51 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: AUTORIDADE NT) Description: 0x8000002a171\??\Volume{95d6d770-dfd2-11e4-9f00-806e6f6e6963}\System Volume Information\SPP\SppCbsHiveStore\{cd42efe1-f6f1-427c-b004-033192c625a4}{54B52869-37E3-4178-84D4-5146B4BD8E39} Error: (06/04/2015 01:08:07 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: AUTORIDADE NT) Description: 0x8000002a171\??\Volume{95d6d770-dfd2-11e4-9f00-806e6f6e6963}\System Volume Information\SPP\SppCbsHiveStore\{cd42efe1-f6f1-427c-b004-033192c625a4}{58F925AA-6BC5-45E9-9163-A083F955327E} Microsoft Office: ========================= CodeIntegrity Errors: =================================== Date: 2015-05-14 17:36:03.763 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\BubbleSound\BubbleSound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-14 17:36:03.638 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\BubbleSound\BubbleSound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-14 17:35:00.176 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\BubbleSound\BubbleSound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-14 17:34:59.958 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\BubbleSound\BubbleSound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-14 17:34:03.332 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\BubbleSound\BubbleSound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-14 17:34:03.160 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\BubbleSound\BubbleSound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-14 17:33:00.034 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\BubbleSound\BubbleSound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-14 17:32:59.893 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\BubbleSound\BubbleSound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-14 17:32:16.541 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\BubbleSound\BubbleSound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-14 17:24:58.534 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\BubbleSound\BubbleSound.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Pentium(R) Dual-Core CPU T4200 @ 2.00GHz Percentage of memory in use: 50% Total physical RAM: 1917.17 MB Available physical RAM: 952.57 MB Total Pagefile: 3834.34 MB Available Pagefile: 3106.65 MB Total Virtual: 2047.88 MB Available Virtual: 1880.61 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:298.08 GB) (Free:269.83 GB) NTFS ==>[Drive with boot components (obtained from BCD)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: E18469E4) Partition 1: (Active) - (Size=298.1 GB) - (Type=07 NTFS) ==================== End of log ============================