Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-08-2016 01 Ran by fisioterapia (26-08-2016 15:14:49) Running from C:\Users\fisioterapia\Desktop Windows 8.1 Single Language (X64) (2015-10-19 23:13:15) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrador (S-1-5-21-4080409232-1409504885-1139174345-500 - Administrator - Disabled) fisioterapia (S-1-5-21-4080409232-1409504885-1139174345-1001 - Administrator - Enabled) => C:\Users\fisioterapia Invitado (S-1-5-21-4080409232-1409504885-1139174345-501 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Acrobat Reader DC - Español (HKLM-x32\...\{AC76BA86-7AD7-1034-7B44-AC0F074E4100}) (Version: 15.017.20053 - Adobe Systems Incorporated) Avira Launcher (HKLM-x32\...\{6052a753-acc6-4c02-b5a8-70962ff8e0a4}) (Version: 1.2.69.16114 - Avira Operations GmbH & Co. KG) Avira Launcher (x32 Version: 1.2.69.16114 - Avira Operations GmbH & Co. KG) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.20 - Piriform) CyberLink PhotoDirector 3 (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.1.4107 - CyberLink Corp.) CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.0.2810 - CyberLink Corp.) CyberLink PowerDirector 10 (Version: 10.0.0.2810 - CyberLink Corp.) Hidden Dolby Digital Plus Advanced Audio (HKLM\...\{B0BFC63F-EA07-419E-960B-3FB2ED5DD0B2}) (Version: 7.5.1.1 - Dolby Laboratories Inc) Genesys USB Mass Storage Device (HKLM-x32\...\{959B7F35-2819-40C5-A0CD-3C53B5FCC935}) (Version: 4.3.0.7 - Genesys Logic) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 52.0.2743.116 - Google Inc.) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Guía del usuario (x32 Version: 1.0.0.15 - Lenovo) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.14.1724 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3379 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.2.1000 - Intel Corporation) Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.9200.10250 - Realtek Semiconductor Corp.) Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.2105 - CyberLink Corp.) Lenovo OneKey Recovery (Version: 8.0.0.2105 - CyberLink Corp.) Hidden Malwarebytes Anti-Malware versión 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Microsoft Office Professional Plus 2013 - es-es (HKLM\...\ProPlusRetail - es-es) (Version: 15.0.4849.1003 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Nitro Pro 8 (HKLM\...\{584690FC-ED0D-420C-A2F1-6E61B7BDDCFD}) (Version: 8.5.6.5 - Nitro) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4849.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4849.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4849.1003 - Microsoft Corporation) Hidden Paquete de idioma de Microsoft Visual Studio 2010 Tools para Office Runtime (x64) - ESN (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - ESN) (Version: 10.0.50903 - Microsoft Corporation) Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.305 - Qualcomm Atheros Communications) Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.18.621.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7121 - Realtek Semiconductor Corp.) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 17.0.6.51 - Synaptics Incorporated) UserGuide (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 1.0.0.15 - Lenovo) ZHPFix 2015 (HKLM-x32\...\ZHPFix_is1) (Version: 2015 - Nicolas Coolman) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {25ED922A-5610-45F8-A5B9-9BED3C43CDD4} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-06-25] (Adobe Systems Incorporated) Task: {308B3EAE-845E-45D9-A6DF-40B0F0B843AF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-11-03] (Microsoft Corporation) Task: {4918E5C5-6B57-4C4D-BFFF-9C5CBE4AEA67} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-07-05] (Microsoft Corporation) Task: {527AAAE5-BDCE-4F3D-B3D0-DDA567E0E9D4} - System32\Tasks\UMonitor Task => C:\WINDOWS\SysWOW64\UMonit64.exe [2013-08-06] () Task: {58F01DCB-DCF7-4C26-BFE5-BD2809F9A0DF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-11-03] (Microsoft Corporation) Task: {6D079BA3-6B14-4818-BB64-663F099BAE0D} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-07-05] (Microsoft Corporation) Task: {758A1C6A-39E8-41E7-89C9-F7FFF84BEAE6} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-09-10] (Synaptics Incorporated) Task: {77F7900C-EFD6-4F80-A88E-045F871B7426} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-29] (Google Inc.) Task: {7E34E6DF-542E-4841-82DF-15F9E1EB1C47} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-29] (Google Inc.) Task: {BC3EDE7E-38D3-4353-97C6-B57B9DDA58F2} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {F295AEB1-6628-43CC-B53F-B2079527C76F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-07-13] (Piriform Ltd) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2016-04-07 14:28 - 2013-04-15 11:50 - 00198144 _____ () C:\WINDOWS\System32\HP1006LM.DLL 2016-04-07 14:28 - 2013-04-15 11:50 - 00065024 _____ () C:\WINDOWS\system32\spool\PRTPROCS\x64\HP1006PP.dll 2015-11-03 15:50 - 2016-05-24 09:51 - 00116416 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2014-04-26 13:46 - 2012-04-24 21:43 - 00390632 _____ () C:\Program Files\CyberLink\Shared files\RichVideo64.exe 2013-09-06 18:48 - 2013-09-06 18:48 - 00011264 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll 2013-09-06 18:45 - 2013-09-06 18:45 - 00086016 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\Map\MAP.dll 2013-09-06 18:52 - 2013-09-06 18:52 - 00012928 _____ () C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe 2014-04-26 13:17 - 2013-09-04 10:53 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2016-08-09 16:12 - 2016-08-02 19:24 - 01771336 _____ () C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.116\libglesv2.dll 2016-08-09 16:12 - 2016-08-02 19:23 - 00094024 _____ () C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.116\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfemms => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 08:25 - 2016-07-14 14:44 - 00000838 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-4080409232-1409504885-1139174345-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\fisioterapia\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 190.157.8.33 - 181.48.0.232 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{D99A809E-8675-4399-A88C-C80BFC1E1C17}] => (Allow) C:\Program Files\CyberLink\PowerDirector10\PDR10.EXE FirewallRules: [{BE047B06-3FC5-481D-85AF-E3E20BBEC1BD}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe FirewallRules: [{788C6559-1D92-478B-A68B-CDFFA778A5BE}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe FirewallRules: [{0C65956F-DFCA-46B2-80CB-E288E3D1F222}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe FirewallRules: [{DEEB6B3B-E621-4B49-A870-781A7D402495}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe FirewallRules: [{4126828C-AB40-49B5-9B06-3002959424C4}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe FirewallRules: [{732930FA-84D9-4472-94DE-193D0BEAC6E1}] => (Allow) LPort=1688 FirewallRules: [{BD17D5DA-B105-48C2-A931-D2A22FC7A0D1}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Restore Points ========================= 11-08-2016 11:14:17 Windows Update 14-08-2016 20:12:16 Windows Update 17-08-2016 23:05:55 Windows Update 22-08-2016 10:49:04 Windows Update 25-08-2016 16:30:34 Windows Update ==================== Faulty Device Manager Devices ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (08/25/2016 05:22:11 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/24/2016 04:13:09 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/24/2016 11:18:46 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/23/2016 11:23:15 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/22/2016 03:09:59 PM) (Source: SideBySide) (EventID: 35) (User: ) Description: Error al generar el contexto de activación para "UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"1". Error en el archivo de manifiesto o directiva "UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"2" en la línea UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"3. La identidad de componente encontrada en el manifiesto no coincide con la del componente solicitado. La referencia es UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0". La definición es UccApi,processorArchitecture="x86",type="win32",version="15.0.0.0". Use sxstrace.exe para obtener un diagnóstico detallado. Error: (08/22/2016 03:07:08 PM) (Source: SideBySide) (EventID: 35) (User: ) Description: Error al generar el contexto de activación para "UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"1". Error en el archivo de manifiesto o directiva "UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"2" en la línea UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"3. La identidad de componente encontrada en el manifiesto no coincide con la del componente solicitado. La referencia es UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0". La definición es UccApi,processorArchitecture="x86",type="win32",version="15.0.0.0". Use sxstrace.exe para obtener un diagnóstico detallado. Error: (08/19/2016 03:41:18 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nombre de la aplicación con errores: WINWORD.EXE, versión: 15.0.4841.1000, marca de tiempo: 0x575fd3a9 Nombre del módulo con errores: wwlib.dll, versión: 15.0.4849.1000, marca de tiempo: 0x5784efdf Código de excepción: 0xc0000005 Desplazamiento de errores: 0x000b9f31 Identificador del proceso con errores: 0x1124 Hora de inicio de la aplicación con errores: 0xWINWORD.EXE0 Ruta de acceso de la aplicación con errores: WINWORD.EXE1 Ruta de acceso del módulo con errores: WINWORD.EXE2 Identificador del informe: WINWORD.EXE3 Nombre completo del paquete con errores: WINWORD.EXE4 Identificador de aplicación relativa del paquete con errores: WINWORD.EXE5 Error: (08/19/2016 01:27:44 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/19/2016 10:12:50 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/18/2016 10:04:16 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 System errors: ============= Error: (08/26/2016 03:04:54 PM) (Source: NetBT) (EventID: 4321) (User: ) Description: No se pudo registrar el nombre "LENOVO-PC :0" en la interfaz con dirección IP 192.168.0.16. El equipo la con dirección IP 192.168.0.4 no admite el nombre reclamado por este equipo. Error: (08/26/2016 03:04:53 PM) (Source: NetBT) (EventID: 4321) (User: ) Description: No se pudo registrar el nombre "LENOVO-PC :20" en la interfaz con dirección IP 192.168.0.16. El equipo la con dirección IP 192.168.0.4 no admite el nombre reclamado por este equipo. Error: (08/26/2016 03:04:53 PM) (Source: Server) (EventID: 2505) (User: ) Description: El servidor no pudo enlazarse al transporte \Device\NetBT_Tcpip_{044378CC-3093-4F0A-A76B-DD5EF5F563FE} debido a que otro equipo en la red tiene el mismo nombre. No se puede iniciar el servidor. Error: (08/26/2016 01:01:15 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY) Description: {752073A1-23F2-4396-85F0-8FDB879ED0ED} Error: (08/26/2016 12:58:35 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY) Description: {752073A1-23F2-4396-85F0-8FDB879ED0ED} Error: (08/26/2016 12:55:57 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY) Description: {752073A1-23F2-4396-85F0-8FDB879ED0ED} Error: (08/26/2016 12:53:20 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY) Description: {752073A1-23F2-4396-85F0-8FDB879ED0ED} Error: (08/26/2016 12:42:12 PM) (Source: WMPNetworkSvc) (EventID: 14349) (User: ) Description: 0x80070005 Error: (08/26/2016 12:42:12 PM) (Source: WMPNetworkSvc) (EventID: 14353) (User: ) Description: 00x80070005http://+:10243/WMPNSSv4/3375899673/ Error: (08/26/2016 12:42:12 PM) (Source: WMPNetworkSvc) (EventID: 14349) (User: ) Description: 0x80070005 CodeIntegrity: =================================== Date: 2016-05-27 08:36:36.102 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-27 08:36:34.834 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-10-31 09:40:12.092 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Celeron(R) 2955U @ 1.40GHz Percentage of memory in use: 42% Total physical RAM: 4008.27 MB Available physical RAM: 2295.75 MB Total Virtual: 8104.27 MB Available Virtual: 6303.93 MB ==================== Drives ================================ Drive c: (Windows8_OS) (Fixed) (Total:425.75 GB) (Free:369.42 GB) NTFS ==>[system with boot components (obtained from drive)] Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:19.58 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 7A9AB06F) Partition: GPT. ==================== End of Addition.txt ============================