Author Topic: [Inactive] Disappearing background, unresponsive explorer, other issues  (Read 10434 times)

Offline whitescruffydog

  • Bronze Member
  • Posts: 56
Hello.
I am a Lenovo S230u user, and after experiencing a myriad of problems, I posted on their forums and was redirected to here.
I have thoroughly read your directions for posting, but sadly, regardless of what I may try, DSS refuses to run on my 8.1 system.  I downloaded from all three links, tried running it from various locations, and even shut off all other windows open and disabled the internet and anti-virus.  I cannot figure out how to run it as Administrator, for the option does not come up upon right-clicking as it does for other programs.
The full story is linked below, (with the requested xx in place of tt), but as the intro post says to keep it brief, I will include a summary…..but due to the nature of the various problems, I think it would be best if the full story is simply read.
hxxp://forums.lenovo.com/t5/ThinkPad-Edge-S-series/Strange-Reappearing-Issues-Out-of-Ideas-Please-Help/td-p/1733983
Disappearing background
Windows Explorer Stops
No new apps will open
Already open apps continue running
Restarting fixes the issue
These are the base problems…but as mentioned, I’ve had a series of problems amongst two computers with various solutions attempted, (most of which are) included in the link above.  I don’t think I mentioned a moment when Windows Update failed and undid itself.
The computer is also overheating to a small degree (it doesn’t burn me, but it’s definitely hotter than it should be for a one-month old computer) and is occasionally noisy.  I notice sometimes the cursor flashes between its busy and normal modes too, regardless of whether or not what I’m doing should trigger it.
Please help when you have the chance. 
(Also, a question in confusion:  Would you prefer brevity or full detail?)
« Last Edit: October 03, 2014, 02:25:13 PM by kevinf80 »



Offline kevinf80

  • Malware Removal Staff
  • Diamond Member
  • Posts: 7656
Re: Disappearing background, unresponsive explorer, other issues
« Reply #1 on: October 03, 2014, 01:41:27 PM »
Hello whitescruffydog and welcome to SpywareHammer,

I'm kevinf80 and I will be helping with any malware issues you may have with your system.

  • Please be aware that some of the logs I may ask for can be very complex and can take a long time to decipher. I am a volunteer here with a job and family so I ask that you be patient when waiting for replies.
  • Please DO NOT run any scans/tools/fixes on your own as this will conflict with the tools we are going to use.
  • Either print or Save to Notepad all instructions and please follow them carefully, if there's something you don't understand or that will not work please let me know and we will go through it together.
  • Malware is often buggy and can be very unstable, with that in mind it is advisable to backup any important data before we begin. Go Here and follow the instructions specific for your operating system. Or for Windows 8 go Here
DDS is not compatible with Windows 8.1, run the following scans and post the produced logs;

Download Farbar Recovery Scan Tool and save it to your desktop.

Note: You need to run the version compatible with your system (32 bit or 64 bit). If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.
  • Double-click to run it. When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
  • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.
Next,

Please download RogueKiller and save it to your desktop from the following link: http://www.bleepingcomputer.com/download/roguekiller/

  • Quit all running programs.
  • For Windows XP, double-click to start.
  • For Vista,Windows 7/8, Right-click on the program and select Run as Administrator to start and when prompted allow it to run.
  • Read and accept the EULA (End User Licene Agreement)
  • Click Scan to scan the system.
  • When the scan completes select "Report", log will open. Close the program > Don't Fix anything!
  • Post back the report which should also be located here:
    • C:\Programdata\RogueKiller\Logs <-------- W7/8
      C:\Documents and Settings\All Users\Application Data\RogueKiller\Logs <-------XP

      Thanks,

      Kevin...


Offline whitescruffydog

  • Bronze Member
  • Posts: 56
Thank you, Kevin, for taking time from your life to help me with this...  FRST.txt is too long to post as a whole...  do you want it attached or split apart?  Here is Addition.txt and RougeKiller's:

Addition.txt:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-10-2014
Ran by whitescruffydog at 2014-10-03 19:18:13
Running from C:\Users\whitescruffydog\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Symantec Endpoint Protection (Enabled - Up to date) {53C7D717-52E2-B95E-FA61-6F32ECC805DB}
AS: Symantec Endpoint Protection (Enabled - Up to date) {E8A636F3-74D8-B6D0-C0D1-5440974F4F66}
FW: Symantec Endpoint Protection (Enabled) {6BFC5632-188D-B806-D13E-C607121B42A0}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Absolute Reminder (HKLM-x32\...\{40F4FF7A-B214-4453-B973-080B09CED019}) (Version: 2.1.0.9 - Absolute Software)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.4.0.2710 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 3.4.0.2710 - Adobe Systems Incorporated) Hidden
Akamai NetSession Interface (HKCU\...\Akamai) (Version:  - Akamai Technologies, Inc)
Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: 6.30.59.91 - Broadcom Corporation)
Dependency Package Update (Version: 1.6.29.00 - Lenovo Inc.) Hidden
Dependency Package Update (x32 Version: 1.6.26.00 - Lenovo Group Limited) Hidden
Dependency Package Update (x32 Version: 1.6.30.00 - Lenovo Group Limited) Hidden
Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.8000.17 - Dolby Laboratories Inc)
ExpressCache (HKLM\...\{C123584F-9C84-45E8-AE5F-522328BB79A0}) (Version: 1.0.100.0 - Condusiv Technologies)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 37.0.2062.124 - Google Inc.)
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
Integrated Camera (HKLM-x32\...\Sunplus SPUVCb) (Version: 3.4.7.2 - SunplusIT)
Intel AppUp(R) center (HKLM-x32\...\Intel AppUp(R) center 41651) (Version: 3.8.0.41651.58 - Intel)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3621 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Intel(R) Update Manager (x32 Version: 1.0.0.34813 - Intel Corporation) Hidden
Intel® Trusted Connect Service Client (Version: 1.24.738.1 - Intel Corporation) Hidden
Java 7 Update 67 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417067FF}) (Version: 7.0.670 - Oracle)
Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
Java Auto Updater (x32 Version: 2.1.67.1 - Oracle, Inc.) Hidden
Lenovo Auto Scroll Utility (HKLM\...\LenovoAutoScrollUtility) (Version: 2.01 - )
Lenovo Bluetooth with Enhanced Data Rate Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.4900 - Broadcom Corporation)
Lenovo Dependency Package (HKLM\...\Lenovo Dependency Package_is1) (Version: 1.6.29.00 - Lenovo Group Limited)
Lenovo Experience Improvement (HKLM\...\LenovoExperienceImprovement) (Version: 1.0.3.0 - Lenovo)
Lenovo Patch Utility (HKLM-x32\...\{AD32F5E9-6BDD-480A-8B7B-95571D04691C}) (Version: 1.3.1.1 - Lenovo Group Limited)
Lenovo Patch Utility 64 bit (HKLM\...\{ABE4638D-D208-4061-9F26-E3E11E3A1E0C}) (Version: 1.3.1.1 - Lenovo Group Limited)
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.66.00.21 - )
Lenovo Settings - Camera Audio (HKLM\...\{88C6A6D9-324C-46E8-BA87-563D14021442}_is1) (Version: 4.0.96.0 - Lenovo Corporation)
Lenovo Settings Dependency Package (HKLM\...\{3694BA2E-BE31-4B7E-886B-A0B559E69D4D}_is1) (Version: 1.1.0.20 - Lenovo Group Limited)
Lenovo Settings Mobile Hotspot (HKLM\...\{42603F7D-B08D-436B-B0D8-3E2DEF1AFD41}_is1) (Version: 1.1.0.55 - Lenovo)
Lenovo Solution Center (HKLM\...\{F02F4A8B-1A5F-45B8-9B74-AAF21A2B1BCC}) (Version: 2.1.002.00 - Lenovo Group Limited)
Lenovo Solutions for Small Business (HKLM-x32\...\{6A6D86CD-B004-46b7-8951-7BB75A776F8C}) (Version: 1.1.22.3687 - Intel(R) Corporation)
Lenovo Solutions for Small Business Customizations (HKLM-x32\...\{AFD7B869-3B70-40C7-8983-769256BA3BD2}) (Version: 1.1.0005.00 - Lenovo Group Limited)
Lenovo System Update (HKLM-x32\...\{25C64847-B900-48AD-A164-1B4F9B774650}) (Version: 5.06.0016 - Lenovo)
Lenovo Tablet Service (HKLM-x32\...\{5805D341-F14B-4341-AF30-911B1919E46F}) (Version: 1.0.0.9 - Lenovo)
Lenovo User Guide (HKLM-x32\...\{13F59938-C595-479C-B479-F171AB9AF64F}) (Version: 1.0.0012.00 - Lenovo Group Limited)
Lenovo Warranty Information (HKLM-x32\...\{FD4EC278-C1B1-4496-99ED-C0BE1B0AA521}) (Version: 1.0.0011.00 - Lenovo)
Malwarebytes Anti-Malware version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
Metric Collection SDK (x32 Version: 1.1.0005.00 - Lenovo Group Limited) Hidden
Microsoft Office 365 ProPlus - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 15.0.4454.1510 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Nitro Pro 8 (HKLM\...\{35E1FF5F-E8E1-4DE2-B3EC-BBE296B27336}) (Version: 8.5.2.10 - Nitro)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4454.1510 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4454.1510 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4454.1510 - Microsoft Corporation) Hidden
On Screen Display (HKLM\...\OnScreenDisplay) (Version: 7.11.20 - )
Pharos (HKLM-x32\...\Pharos) (Version:  - )
Python 3.4.1 (64-bit) (HKLM\...\{d54842cb-f761-30ba-881f-1ff821dc44df}) (Version: 3.4.1150 - Python Software Foundation)
RapidBoot HDD Accelerator (HKLM-x32\...\Fastboot) (Version: 2.1.1.0 - Lenovo)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.2.612.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6728 - Realtek Semiconductor Corp.)
Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.2.8400.29034 - Realtek Semiconductor Corp.)
Skype™ 6.20 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.20.104 - Skype Technologies S.A.)
SugarSync Manager (HKLM-x32\...\SugarSync) (Version: 1.9.80.99066 - SugarSync, Inc.)
Symantec Endpoint Protection (HKLM\...\{827E3EA6-85D1-4413-96D8-24B0F9B49967}) (Version: 12.1.4112.4156 - Symantec Corporation)
ThinkPad UltraNav Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.19.8 - )
ThinkVantage Active Protection System (HKLM\...\{46A84694-59EC-48F0-964C-7E76E9F8A2ED}) (Version: 1.77.0.11 - Lenovo)
Unity Web Player (HKCU\...\UnityWebPlayer) (Version: 4.5.4f1 - Unity Technologies ApS)
Update for Microsoft en-us Dictionary (Version: 16.1.1125.1 - Microsoft Corporation) Hidden
Windows Driver Package - Intel Corporation (iaStorA) HDC  (09/01/2012 11.6.0.1030) (HKLM\...\C5447D3383070620C3892FF393F522D6225CBA13) (Version: 09/01/2012 11.6.0.1030 - Intel Corporation)
Windows Driver Package - Lenovo 1.66.00.21 (11/16/2012 1.66.00.21) (HKLM\...\777DC70C7638303674E35FC4B1027AE68AD8371B) (Version: 11/16/2012 1.66.00.21 - Lenovo)
Windows Driver Package - Synaptics (SmbDrv) System  (05/10/2013 16.2.19.8) (HKLM\...\FE6FC3E60816DFD115D57CB9DD07A503C216F3CF) (Version: 05/10/2013 16.2.19.8 - Synaptics)
Windows Driver Package - Synaptics (SynTP) Mouse  (05/10/2013 16.2.19.8) (HKLM\...\6AE0C13F7A6D71F245D01F4B5B025708A91C64FE) (Version: 05/10/2013 16.2.19.8 - Synaptics)
WordWeb (HKLM-x32\...\WordWeb) (Version: 7 - WordWeb Software)
Yahoo! Messenger (HKLM-x32\...\Yahoo! Messenger) (Version:  - Yahoo! Inc.)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-268481371-3801525021-4262393789-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
CustomCLSID: HKU\S-1-5-21-268481371-3801525021-4262393789-1001_Classes\CLSID\{9E506282-69D3-5ABA-9C1D-15994B37F4AC}\InprocServer32 -> C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp_x64.dll (Intel)
CustomCLSID: HKU\S-1-5-21-268481371-3801525021-4262393789-1001_Classes\CLSID\{9E506282-69D3-5ABA-9C1D-15994B37F4AD}\InprocServer32 -> C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp_x64.dll (Intel)

==================== Restore Points  =========================

21-09-2014 02:20:45 Installed Java 7 Update 67
24-09-2014 20:38:16 Windows Update
27-09-2014 22:05:13 Installed Python 3.4.1 (64-bit)

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 09:25 - 2013-08-22 09:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {0ACE32CD-5C57-4D8D-B411-443E6533E561} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2014-09-21] (Microsoft Corporation)
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {0DFADE1A-713E-4673-9E8B-9938AF031D4D} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-03-18] (Microsoft Corporation)
Task: {0FC35F45-A1FF-4235-BB4F-F14C2C9160F6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-20] (Google Inc.)
Task: {10D138FD-D21C-4A94-9B12-50BD4DC57F89} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2014-06-18] ()
Task: {1DB2DCED-D1C0-4C10-91C4-A9FF9F85F77F} - System32\Tasks\Microsoft\Windows\SysResetLogSuccess => Rundll32.exe ResetEng.dll,RjvLogSuccessEntryPoint
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {33F7EF5C-F077-4408-99AB-C170038F12B5} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {42F55DDA-DE78-43DC-8763-CC39DE235389} - System32\Tasks\Lenovo\Rotate Info => C:\ProgramData\Lenovo\RotateInfo\RotateInfo.exe [2012-12-12] (Lenovo)
Task: {4378F1F9-0C3A-48AD-851E-3FA2912FA0DE} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2013-05-15] ()
Task: {48B0972F-D1A1-4497-ACB3-65D505BDCE1E} - System32\Tasks\Lenovo\LSC\RebootCountTask => C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCService.exe [2013-05-15] (Lenovo)
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {53DB929D-F20C-468E-8BEB-279CA45F0F9D} - System32\Tasks\Lenovo\Experience Improvement => C:\Program Files\Lenovo\ExperienceImprovement\LenovoExperienceImprovement.exe [2013-03-13] (Lenovo)
Task: {5FBFEAA7-67E6-4F11-B685-0B6705C68476} - System32\Tasks\RtHDVBg_Dolby => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2012-08-16] (Realtek Semiconductor)
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {6D02298D-3523-48BA-B519-A88D0D31C18A} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-08-30] (Realtek Semiconductor)
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task
Task: {71317277-126B-4C52-9F88-D96CBE8C765C} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics
Task: {737431D4-0F35-452B-A329-080121B5F637} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2014-09-21] (Microsoft Corporation)
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {787A10D5-F53E-4796-9CAA-CABCBE95322F} - System32\Tasks\TVT\LenovoWERMonitor => C:\Program Files (x86)\Common Files\lenovo\SUP\sup_wermonitor.exe [2014-05-27] (Lenovo)
Task: {7915C66A-9B6F-4AF1-B10C-0181B1B3B865} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv
Task: {837105D9-9CF7-4487-A114-0F78F8B181F2} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2012-12-07] (Microsoft Corporation)
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {8A6E1AF0-823E-434B-BBC8-D911C3CF71B7} - System32\Tasks\Synaptics TouchPad Enhancements => \Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-05-09] (Synaptics Incorporated)
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {A08CAA66-1D00-479E-86EE-B42E4D42C208} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management
Task: {B060D600-DBAB-4E9B-A850-0ECD72D00E57} - System32\Tasks\Absolute Reminder => C:\Program Files (x86)\Absolute Software\Absolute Reminder\AbsoluteReminder.exe [2012-07-06] (Absolute Software)
Task: {B0CD26A8-9A40-4588-B92F-7C3A540A9293} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2014-09-21] (Microsoft Corporation)
Task: {B1C98C80-78DE-4280-ACC4-8DD514F1999D} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2014-08-18] (Lenovo)
Task: {BA2AFCE5-1A23-4CAF-B481-053BFD646D0B} - System32\Tasks\Microsoft Office 15 Sync Maintenance for JESSICA2-whitescruffydog Jessica2 => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-09-21] (Microsoft Corporation)
Task: {BBE7C2F1-9071-43AA-8B46-2A2A7E668654} - System32\Tasks\Lenovo\LSC\Time72Task => C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCService.exe [2013-05-15] (Lenovo)
Task: {BDDEAB4E-8647-4D5B-8D9B-6F438119B657} - System32\Tasks\Intel\Intel Service Manager => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [2012-12-14] (Intel Corporation)
Task: {C5511CAF-1880-42F4-A0FC-ADC8F1633642} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {DCF0779B-A6DB-474A-8888-A4E21006D0C6} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2013-05-15] (Lenovo)
Task: {E07DD667-C6E0-4FB0-8D22-761229B51691} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-08-29] (Microsoft Corporation)
Task: {E624DE6A-6164-46E7-AE8B-41F92BE71342} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-20] (Google Inc.)
Task: {E691CB6F-6182-455F-B8A4-4EE1A2E9C3E9} - System32\Tasks\Dolby Selector => C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [2012-08-31] (Dolby Laboratories Inc.)
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: {EB673D19-6AF6-4FED-9607-D5698991907F} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2013-05-15] (Lenovo)
Task: {F8BCC124-6FB0-47A7-ADD6-5AB83812A986} - System32\Tasks\Lenovo\Dependency Package Auto Update => C:\Program Files\Lenovo\iMController\AutoUpdate.exe [2014-08-18] ()
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Loaded Modules (whitelisted) =============

2012-12-14 17:27 - 2012-12-14 17:27 - 00049520 _____ () C:\Program Files\Lenovo\Bluetooth Software\btwleapi.dll
2014-09-21 01:21 - 2012-11-24 17:13 - 00373312 _____ () C:\Program Files\Microsoft Office 15\ClientX64\c2rui.dll
2014-09-21 01:21 - 2012-12-07 07:04 - 00513616 _____ () C:\Program Files\Microsoft Office 15\ClientX64\c2r64.dll
2014-09-21 01:21 - 2012-12-07 07:05 - 00607312 _____ () C:\Program Files\Microsoft Office 15\ClientX64\StreamServer.dll
2014-09-21 01:23 - 2014-09-21 01:23 - 06522944 _____ () C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2013-10-21 00:07 - 2013-03-07 10:25 - 00103424 _____ () C:\Program Files (x86)\ThinkPad\Utilities\US\PWMRT64V.DLL
2012-08-10 06:48 - 2012-08-10 06:48 - 01841528 _____ () C:\Program Files (x86)\Integrated Camera\Monitor.exe
2014-09-30 12:56 - 2014-09-30 12:56 - 01259520 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Windows.Networking\8f6e236cd6041c81411f85852722670b\Windows.Networking.ni.dll
2013-02-22 23:55 - 2013-02-22 23:55 - 00462840 _____ () C:\Program Files (x86)\Lenovo\LocationAware\loctaskmgr.exe
2013-02-22 23:55 - 2013-02-22 23:55 - 00014328 _____ () C:\Program Files (x86)\Lenovo\LocationAware\lpdagent.exe
2013-08-22 03:19 - 2013-08-22 02:54 - 00174592 _____ () C:\WINDOWS\system32\WinMetadata\Windows.UI.winmd
2013-08-22 03:19 - 2013-08-22 02:54 - 00050176 _____ () C:\WINDOWS\system32\WinMetadata\Windows.Data.winmd
2014-09-30 12:56 - 2014-09-30 12:56 - 00363520 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Windows.Foundation\057b7043f4868b76c209d9c426b80743\Windows.Foundation.ni.dll
2014-06-12 04:08 - 2014-08-21 19:01 - 00320216 _____ () C:\Users\whitescruffydog\Desktop\9-3\eclipse-standard-luna-R-win32-x86_64-1\eclipse\eclipse.exe
2014-06-04 00:16 - 2014-08-21 19:01 - 00057344 _____ () C:\Users\whitescruffydog\Desktop\9-3\eclipse-standard-luna-R-win32-x86_64-1\eclipse\plugins\org.eclipse.equinox.launcher.win32.win32.x86_64_1.1.200.v20140603-1326\eclipse_1603.dll
2014-08-21 19:05 - 2014-08-21 19:05 - 00055296 _____ () C:\Users\whitescruffydog\Desktop\9-3\eclipse-standard-luna-R-win32-x86_64-1\eclipse\configuration\org.eclipse.osgi\45\0\.cp\os\win32\x86_64\localfile_1_0_0.dll
2014-08-21 19:02 - 2014-08-21 19:02 - 00044032 _____ () C:\Users\whitescruffydog\Desktop\9-3\eclipse-standard-luna-R-win32-x86_64-1\eclipse\configuration\org.eclipse.osgi\48\0\.cp\jWinHttp-1.0.0.dll
2013-10-20 23:54 - 2012-03-20 23:05 - 00051776 _____ () C:\Program Files\Realtek\Audio\HDA\FMAPP.exe
2013-10-21 00:04 - 2013-10-21 00:04 - 00033520 _____ () C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBServiceps.dll
2014-09-21 01:21 - 2014-09-21 01:23 - 06522944 _____ () C:\Program Files\Microsoft Office 15\root\Office15\1033\GrooveIntlResource.dll
2014-09-20 16:03 - 2012-05-25 04:25 - 00921600 _____ () C:\Program Files (x86)\Yahoo!\Messenger\yui.dll
2014-09-20 16:03 - 2012-05-25 04:25 - 00078336 _____ () C:\Program Files (x86)\Yahoo!\Messenger\pcre.dll
2014-09-21 01:21 - 2014-09-21 01:21 - 00312896 _____ () C:\Program Files\Microsoft Office 15\root\office15\AppVIsvStream32.dll
2014-09-21 01:21 - 2014-09-21 01:21 - 00354368 _____ () C:\Program Files\Microsoft Office 15\root\office15\c2r32.dll
2014-09-24 22:53 - 2014-09-23 00:06 - 01098056 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\libglesv2.dll
2014-09-24 22:53 - 2014-09-23 00:06 - 00174408 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\libegl.dll
2014-09-24 22:53 - 2014-09-23 00:07 - 08577864 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\pdf.dll
2014-09-24 22:53 - 2014-09-23 00:07 - 00331592 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\ppGoogleNaClPluginChrome.dll
2014-09-24 22:53 - 2014-09-23 00:06 - 01660232 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\ffmpegsumo.dll
2014-09-24 22:53 - 2014-09-23 00:07 - 14891848 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.124\PepperFlash\pepflashplayer.dll
2014-10-02 18:50 - 2014-10-02 18:50 - 02107464 _____ () C:\Users\whitescruffydog\AppData\LocalLow\Unity\WebPlayer\mono\Beta-4.63.x.x\mono-1-vc.dll
2013-10-21 00:03 - 2012-07-12 13:30 - 00030472 _____ () C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\ProcessPrivileges.dll
2013-10-21 00:03 - 2012-07-12 13:30 - 00215304 _____ () C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\System.ComponentModel.Composition.dll
2013-10-21 00:03 - 2012-07-12 13:30 - 00051464 _____ () C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage\Service\Interop.TaskScheduler.dll
2014-09-25 12:31 - 2014-09-25 12:31 - 00797696 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Networking\66db718389f1cd2503053c09b3de857f\Windows.Networking.ni.dll
2014-09-25 12:29 - 2014-09-25 12:29 - 00228864 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Foundation\cf021988965369c551bb0987fe019862\Windows.Foundation.ni.dll
2013-10-20 23:51 - 2012-07-18 15:55 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2013-10-21 00:07 - 2013-02-28 17:35 - 02201088 _____ () C:\Program Files\Lenovo\Communications Utility\cxcore210.dll
2013-10-21 00:07 - 2013-02-28 17:35 - 02085888 _____ () C:\Program Files\Lenovo\Communications Utility\cv210.dll
2014-09-21 01:21 - 2014-09-21 01:21 - 00312896 _____ () C:\Program Files\Microsoft Office 15\Root\Office15\AppVIsvStream32.dll
2014-09-21 01:21 - 2014-09-21 01:21 - 00354368 _____ () C:\Program Files\Microsoft Office 15\Root\Office15\c2r32.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Users\whitescruffydog\OneDrive:ms-properties
AlternateDataStreams: C:\Users\whitescruffydog\OneDrive.old:ms-properties

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)


========================= Accounts: ==========================

Administrator (S-1-5-21-268481371-3801525021-4262393789-500 - Administrator - Disabled) => C:\Users\Administrator
Guest (S-1-5-21-268481371-3801525021-4262393789-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-268481371-3801525021-4262393789-1005 - Limited - Enabled)
whitescruffydog (S-1-5-21-268481371-3801525021-4262393789-1001 - Administrator - Enabled) => C:\Users\whitescruffydog

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (10/03/2014 02:57:52 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetUserLpd()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\whitescruffydog\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (10/03/2014 02:57:47 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetUserLpd()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\whitescruffydog\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (10/03/2014 02:00:28 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetUserLpd()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\whitescruffydog\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (10/03/2014 02:00:26 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (CheckLpdVersion()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\whitescruffydog\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (10/03/2014 02:00:23 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetHomepage()): Failed to open preferences file for Mozilla Firefox. Check if it is properly installed.

Error: (10/03/2014 02:00:21 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (CheckLpdVersion()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\whitescruffydog\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (10/03/2014 02:00:19 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetHomepage()): Failed to open preferences file for Mozilla Firefox. Check if it is properly installed.

Error: (10/03/2014 01:52:01 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetUserLpd()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\whitescruffydog\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (10/03/2014 01:52:01 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (CheckLpdVersion()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\whitescruffydog\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (10/03/2014 01:51:58 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetHomepage()): Failed to open preferences file for Mozilla Firefox. Check if it is properly installed.


System errors:
=============
Error: (10/03/2014 02:57:47 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: machine-defaultLocalActivation{7160A13D-73DA-4CEA-95B9-37356478588A}UnavailableNT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailable

Error: (10/03/2014 02:57:47 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: machine-defaultLocalActivation{7160A13D-73DA-4CEA-95B9-37356478588A}UnavailableNT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailable

Error: (10/03/2014 01:46:51 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Windows Error Reporting Service service to connect.

Error: (10/03/2014 01:44:07 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: machine-defaultLocalActivation{7160A13D-73DA-4CEA-95B9-37356478588A}UnavailableNT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailable

Error: (10/03/2014 01:44:07 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: machine-defaultLocalActivation{7160A13D-73DA-4CEA-95B9-37356478588A}UnavailableNT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailable

Error: (10/03/2014 00:46:58 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: machine-defaultLocalActivation{7160A13D-73DA-4CEA-95B9-37356478588A}UnavailableNT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailable

Error: (10/03/2014 00:46:58 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: machine-defaultLocalActivation{7160A13D-73DA-4CEA-95B9-37356478588A}UnavailableNT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailable

Error: (10/03/2014 00:43:40 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Windows Error Reporting Service service to connect.

Error: (10/03/2014 00:42:49 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Windows Error Reporting Service service to connect.

Error: (10/03/2014 11:57:57 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: machine-defaultLocalActivation{7160A13D-73DA-4CEA-95B9-37356478588A}UnavailableNT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailable


Microsoft Office Sessions:
=========================
Error: (10/03/2014 02:57:52 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetUserLpd()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\whitescruffydog\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (10/03/2014 02:57:47 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetUserLpd()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\whitescruffydog\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (10/03/2014 02:00:28 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetUserLpd()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\whitescruffydog\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (10/03/2014 02:00:26 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (CheckLpdVersion()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\whitescruffydog\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (10/03/2014 02:00:23 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetHomepage()): Failed to open preferences file for Mozilla Firefox. Check if it is properly installed.

Error: (10/03/2014 02:00:21 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (CheckLpdVersion()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\whitescruffydog\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (10/03/2014 02:00:19 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetHomepage()): Failed to open preferences file for Mozilla Firefox. Check if it is properly installed.

Error: (10/03/2014 01:52:01 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetUserLpd()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\whitescruffydog\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (10/03/2014 01:52:01 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (CheckLpdVersion()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\whitescruffydog\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

Error: (10/03/2014 01:51:58 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (GetHomepage()): Failed to open preferences file for Mozilla Firefox. Check if it is properly installed.


CodeIntegrity Errors:
===================================
  Date: 2014-10-03 11:59:06.102
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-10-03 11:59:06.020
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-10-01 14:55:43.687
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-10-01 14:55:43.635
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-09-29 22:05:02.955
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-09-29 22:05:02.737
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-09-26 21:08:09.630
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-09-26 21:08:09.526
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-09-25 21:26:00.814
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-09-25 21:26:00.741
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i7-3537U CPU @ 2.00GHz
Percentage of memory in use: 71%
Total physical RAM: 8009.52 MB
Available physical RAM: 2309.84 MB
Total Pagefile: 9289.52 MB
Available Pagefile: 3000.31 MB
Total Virtual: 131072 MB
Available Virtual: 131071.79 MB

==================== Drives ================================

Drive c: (Windows8_OS) (Fixed) (Total:452.03 GB) (Free:404.3 GB) NTFS ==>[System with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 69677AFB)

Partition: GPT Partition Type.

========================================================
Disk: 1 (Size: 22.4 GB) (Disk ID: C0AE208E)

Partition: GPT Partition Type.

==================== End Of Log ============================


ROUGEKILLER

RogueKiller V9.2.13.0 [Sep 25 2014] by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Website : http://www.adlice.com/softwares/roguekiller/
Blog : http://www.adlice.com

Operating System : Windows 8.1 (6.3.9200 ) 64 bits version
Started in : Normal mode
User : whitescruffydog [Admin rights]
Mode : Scan -- Date : 10/03/2014  19:40:40

¤¤¤ Bad processes : 2 ¤¤¤
[Suspicious.Path] eclipse.exe -- C:\Users\whitescruffydog\Desktop\9-3\eclipse-standard-luna-R-win32-x86_64-1\eclipse\eclipse.exe[7] -> KILLED [TermProc]
[Suspicious.Path] (SVC) rpcld -- C:\ProgramData\Rpcnet\Bin\rpcld.exe[7] -> STOPPED

¤¤¤ Registry Entries : 12 ¤¤¤
[Suspicious.Path] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\rpcld (C:\ProgramData\Rpcnet\Bin\rpcld.exe) -> FOUND
[Suspicious.Path] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\rpcld (C:\ProgramData\Rpcnet\Bin\rpcld.exe) -> FOUND
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters | DhcpNameServer : 136.142.57.10 136.142.188.73 136.142.188.76  -> FOUND
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters | DhcpNameServer : 136.142.57.10 136.142.188.73 136.142.188.76  -> FOUND
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{9D80AB36-BA6E-4605-94D8-8145765C195F} | DhcpNameServer : 136.142.57.10 136.142.188.73 136.142.188.76  -> FOUND
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{9D80AB36-BA6E-4605-94D8-8145765C195F} | DhcpNameServer : 136.142.57.10 136.142.188.73 136.142.188.76  -> FOUND
[PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1  -> FOUND
[PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1  -> FOUND
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1  -> FOUND
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1  -> FOUND
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-268481371-3801525021-4262393789-1001\Software\Microsoft\Internet Explorer\Main | Start Page : https://www.yahoo.com?fr=hp-avast&type=avastbcl  -> FOUND
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-268481371-3801525021-4262393789-1001\Software\Microsoft\Internet Explorer\Main | Start Page : https://www.yahoo.com?fr=hp-avast&type=avastbcl  -> FOUND

¤¤¤ Scheduled tasks : 1 ¤¤¤
[Suspicious.Path] \Lenovo\Rotate Info -- C:\ProgramData\Lenovo\RotateInfo\RotateInfo.exe (/StartMonitor) -> FOUND

¤¤¤ Files : 0 ¤¤¤

¤¤¤ HOSTS File : 0 ¤¤¤

¤¤¤ Antirootkit : 0 (Driver: NOT LOADED [0xc000036b]) ¤¤¤

¤¤¤ Web browsers : 0 ¤¤¤

¤¤¤ MBR Check : ¤¤¤
+++++ PhysicalDrive0: HGST HTS725050A7E630 +++++
--- User ---
[MBR] 54ea9385f5bf9b9b59d7920a56ad7ae4
[BSP] edfbecae817ad3da96911389894f8dcf : Empty MBR Code
Partition table:
0 - [XXXXXX] UNKNOWN (0x0) [VISIBLE] Offset (sectors): 1 | Size: 2097151 MB
User = LL1 ... OK
User = LL2 ... OK

+++++ PhysicalDrive1: SAMSUNG MZMPA024HMCD-000L1 +++++
--- User ---
[MBR] e6ad85c3d8c29c9ed2072d8a2cbf35e1
[BSP] a4d363382120c84ee0bb8838758c96f0 : Empty MBR Code
Partition table:
0 - [XXXXXX] UNKNOWN (0x0) [VISIBLE] Offset (sectors): 1 | Size: 2097151 MB
User = LL1 ... OK
User = LL2 ... OK



Offline kevinf80

  • Malware Removal Staff
  • Diamond Member
  • Posts: 7656
If any logs exceed forum character limits zip them up and attach to your reply..

Thanks,

Kevin..

Offline whitescruffydog

  • Bronze Member
  • Posts: 56
Here you go, Kevin.  Sorry for the delay.

Offline kevinf80

  • Malware Removal Staff
  • Diamond Member
  • Posts: 7656
Thanks for the logs, no obvious malware/infection showing up to now. Continue as follows:

Open Malwarebytes Anti-Malware, from the Dashboard please Check for Updates by clicking the Update Now... link
When the update completes select > Settings > Detection and Protection > Enable Scan for rootkit and Under Non Malware Protection set both PUP and PUM to Treat detections as malware.


Click on the SCAN button and run a Threat Scan with Malwarebytes Anti-Malware by clicking the Scan Now>> button.

When the scan is complete, if there have been detections, click Apply Actions to allow MBAM to clean what was detected.


In most cases, a restart will be required.


Wait for the prompt to restart the computer to appear, then click on Yes.


Once completed please click on the History > Application Logs and find your scan log and open it and then click on the "copy to clipboard" button and post back the results on your next reply.

Next,

Download AdwCleaner by Xplode onto your Desktop.
  • Double click on Adwcleaner.exe to run the tool.
  • Click on Scan
  • Once the scan is done, click on the Clean button.
  • You will get a prompt asking to close all programs. Click OK.
  • Click OK again to reboot your computer.
  • A text file will open after the restart. Please post the content of that logfile in your reply.
  • You can also find the logfile at C:\AdwCleaner[Sn].txt. Where n in the scan reference number
Next,

Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts. (re-enable when done)
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.

Next,

Download Microsoft's " Malicious Software Removal Tool" and save direct to the desktop
Ensure to get the correct version for your system....
32 Bit version:
https://www.microsoft.com/downloads/en/confirmation.aspx?FamilyId=AD724AE0-E72D-4F54-9AB3-75B8EB148356&displaylang=en
64 Bit version:
https://www.microsoft.com/downloads/en/confirmation.aspx?FamilyId=585D2BDE-367F-495E-94E7-6349F4EFFC74&displaylang=en

Right click on the Tool, select “Run as Administrator” the tool will expand to the options Window
In the "Scan Type" window, select Quick Scan
Perform a scan and  Click Finish when the scan is done.
Retrieve the MSRT log as follows, and post it in your next reply:

1) Select the Windows key and R key together to open the "Run" function
2) Type or Copy/Paste the following command to the "Run Line" and Press Enter:

notepad c:\windows\debug\mrt.log

Let me see those logs....

If the is nothing found with these scans and subsequently no improvement, we will continue and  run an "All in one" repair by tweaking.com...

Kevin...

Offline whitescruffydog

  • Bronze Member
  • Posts: 56
First, MBAM (This is the Premium, not sure if that was ever stated.)
Malwarebytes Anti-Malware
http://www.malwarebytes.org

Scan Date: 10/4/2014
Scan Time: 3:48:16 PM
Logfile:
Administrator: Yes

Version: 2.00.2.1012
Malware Database: v2014.10.04.11
Rootkit Database: v2014.09.19.01
License: Premium
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled

OS: Windows 8.1
CPU: x64
File System: NTFS
User: whitescruffydog

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 366616
Time Elapsed: 23 min, 23 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)

Offline whitescruffydog

  • Bronze Member
  • Posts: 56
# AdwCleaner v3.311 - Report created 04/10/2014 at 16:15:47
# Updated 30/09/2014 by Xplode
# Operating System : Windows 8.1 Pro  (64 bits)
# Username : whitescruffydog - JESSICA2
# Running from : C:\Users\whitescruffydog\Desktop\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

File Deleted : C:\Users\whitescruffydog\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage
File Deleted : C:\Users\whitescruffydog\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage-journal

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17278


-\\ Google Chrome v37.0.2062.124
Second:  AdwCleaner


[ File : C:\Users\whitescruffydog\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [1088 octets] - [04/10/2014 16:14:46]
AdwCleaner[S0].txt - [1014 octets] - [04/10/2014 16:15:47]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1074 octets] ##########

Offline whitescruffydog

  • Bronze Member
  • Posts: 56
Thirdly, JRT:  When I downloaded and ran it, it told me to update, so I let it do so and it downloaded FT_NEW.  When I tried to run it, it told me it needed to update, so I let it do so, and it said that it couldn't do so, to do so myself...I just reopened it and ran it as it was, though.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.2.8 (10.04.2014:1)
OS: Windows 8.1 Pro x64
Ran by whitescruffydog on Sat 10/04/2014 at 16:23:13.62
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sat 10/04/2014 at 16:25:50.01
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Offline whitescruffydog

  • Bronze Member
  • Posts: 56
And finally, the Microsoft Malicious Software Removal Tool...... 


---------------------------------------------------------------------------------------
Microsoft Windows Malicious Software Removal Tool v5.16, September 2014 (build 5.16.10602.0)
Started On Sun Sep 21 12:11:14 2014

Engine: 1.1.10904.0
Signatures: 1.183.882.0
Microsoft Windows Malicious Software Removal Tool Finished On Sun Sep 21 12:11:38 2014


Return code: 0 (0x0)

---------------------------------------------------------------------------------------
Microsoft Windows Malicious Software Removal Tool v5.16, September 2014 (build 5.16.10602.0)
Started On Sun Sep 21 13:14:55 2014

Engine: 1.1.10904.0
Signatures: 1.183.882.0
Microsoft Windows Malicious Software Removal Tool Finished On Sun Sep 21 13:15:00 2014


Return code: 0 (0x0)

---------------------------------------------------------------------------------------
Microsoft Windows Malicious Software Removal Tool v5.16, September 2014 (build 5.16.10602.0)
Started On Mon Sep 22 16:34:05 2014

Engine: 1.1.10904.0
Signatures: 1.183.882.0
Microsoft Windows Malicious Software Removal Tool Finished On Mon Sep 22 16:35:22 2014


Return code: 0 (0x0)

---------------------------------------------------------------------------------------
Microsoft Windows Malicious Software Removal Tool v5.16, September 2014 (build 5.16.10602.0)
Started On Tue Sep 23 19:46:44 2014


---------------------------------------------------------------------------------------
Microsoft Windows Malicious Software Removal Tool v5.16, September 2014 (build 5.16.10602.0)
Started On Wed Sep 24 16:38:08 2014

Engine: 1.1.10904.0
Signatures: 1.183.882.0
Microsoft Windows Malicious Software Removal Tool Finished On Wed Sep 24 16:39:31 2014


Return code: 0 (0x0)

---------------------------------------------------------------------------------------
Microsoft Windows Malicious Software Removal Tool v5.16, September 2014 (build 5.16.10602.0)
Started On Mon Sep 29 13:48:59 2014

Engine: 1.1.10904.0
Signatures: 1.183.882.0
Microsoft Windows Malicious Software Removal Tool Finished On Mon Sep 29 13:50:21 2014


Return code: 0 (0x0)

---------------------------------------------------------------------------------------
Microsoft Windows Malicious Software Removal Tool v5.16, September 2014 (build 5.16.10602.0)
Started On Tue Sep 30 12:55:46 2014

Engine: 1.1.10904.0
Signatures: 1.183.882.0
Microsoft Windows Malicious Software Removal Tool Finished On Tue Sep 30 12:55:55 2014


Return code: 0 (0x0)

---------------------------------------------------------------------------------------
Microsoft Windows Malicious Software Removal Tool v5.16, September 2014 (build 5.16.10602.0)
Started On Tue Sep 30 13:19:09 2014

Engine: 1.1.10904.0
Signatures: 1.183.882.0
Microsoft Windows Malicious Software Removal Tool Finished On Tue Sep 30 13:19:15 2014


Return code: 0 (0x0)

---------------------------------------------------------------------------------------
Microsoft Windows Malicious Software Removal Tool v5.16, September 2014 (build 5.16.10602.0)
Started On Tue Sep 30 20:33:39 2014

Engine: 1.1.10904.0
Signatures: 1.183.882.0
Microsoft Windows Malicious Software Removal Tool Finished On Tue Sep 30 20:34:00 2014


Return code: 0 (0x0)

---------------------------------------------------------------------------------------
Microsoft Windows Malicious Software Removal Tool v5.16, September 2014 (build 5.16.10602.0)
Started On Wed Oct 01 08:55:45 2014

Engine: 1.1.10904.0
Signatures: 1.183.882.0
Microsoft Windows Malicious Software Removal Tool Finished On Wed Oct 01 08:56:02 2014


Return code: 0 (0x0)

---------------------------------------------------------------------------------------
Microsoft Windows Malicious Software Removal Tool v5.16, September 2014 (build 5.16.10602.0)
Started On Thu Oct 02 12:40:23 2014

Engine: 1.1.10904.0
Signatures: 1.183.882.0
Microsoft Windows Malicious Software Removal Tool Finished On Thu Oct 02 12:41:20 2014


Return code: 0 (0x0)

---------------------------------------------------------------------------------------
Microsoft Windows Malicious Software Removal Tool v5.16, September 2014 (build 5.16.10602.0)
Started On Thu Oct 02 23:40:57 2014

Engine: 1.1.10904.0
Signatures: 1.183.882.0
Microsoft Windows Malicious Software Removal Tool Finished On Thu Oct 02 23:41:05 2014


Return code: 0 (0x0)

---------------------------------------------------------------------------------------
Microsoft Windows Malicious Software Removal Tool v5.16, September 2014 (build 5.16.10602.0)
Started On Sat Oct 04 01:19:29 2014


---------------------------------------------------------------------------------------
Microsoft Windows Malicious Software Removal Tool v5.16, September 2014 (build 5.16.10602.0)
Started On Sat Oct 04 01:24:38 2014

Engine: 1.1.10904.0
Signatures: 1.183.882.0
Microsoft Windows Malicious Software Removal Tool Finished On Sat Oct 04 01:26:53 2014


Return code: 0 (0x0)

---------------------------------------------------------------------------------------
Microsoft Windows Malicious Software Removal Tool v5.16, September 2014 (build 5.16.10602.0)
Started On Sat Oct 04 13:51:46 2014

Engine: 1.1.10904.0
Signatures: 1.183.882.0
Microsoft Windows Malicious Software Removal Tool Finished On Sat Oct 04 13:52:42 2014


Return code: 0 (0x0)

---------------------------------------------------------------------------------------
Microsoft Windows Malicious Software Removal Tool v5.16, September 2014 (build 5.16.10602.0)
Started On Sat Oct 04 16:28:29 2014

Engine: 1.1.10904.0
Signatures: 1.183.882.0
Microsoft Windows Malicious Software Removal Tool Finished On Sat Oct 04 16:28:38 2014


Return code: 0 (0x0)

---------------------------------------------------------------------------------------
Microsoft Windows Malicious Software Removal Tool v5.16, September 2014 (build 5.16.10602.0)
Started On Sat Oct 04 16:28:42 2014

Engine: 1.1.10904.0
Signatures: 1.183.882.0

Offline kevinf80

  • Malware Removal Staff
  • Diamond Member
  • Posts: 7656
Thanks for the latest logs, no surprises there for sure... If this system is as you state only 1 month old, depending on your warranty specifics i`d definitely consider taking it back to the place of purchase...

Let me know your thoughts...

Offline whitescruffydog

  • Bronze Member
  • Posts: 56
The issue here is that this computer, while new, is an older version that I purchased over the internet from Amazon.  It does still have warranty left, so before I came onto here, I tried to get into contact with Lenovo, though the only options are to really browse their online help articles, post to their forum, or to submit a repair request.  (Their website honestly seems intent on making sure you don't get into contact with them...)  The articles were no help, the forum directed me to here, and I don't think I can submit a request without knowing the exact problem....

And even then, I've had similar issues across two machines (the older of which, not this one, hasn't been fixed either), so I find it difficult to believe that it's just this computer...

Do you have any ideas what the problem could be?

Offline Bugbatter

  • Microsoft® MVP
  • Administrator
  • Diamond Member
  • Posts: 10077

Consumer Security 2006-2016
Microsoft Windows Insider MVP 2006

Offline kevinf80

  • Malware Removal Staff
  • Diamond Member
  • Posts: 7656
@Bugbatter - thanks for the link...

@whitescruffydog - The logs produced by the scans we have run do not indicate a malware/infection issue. Looking at the eventviewer logs produced by FRST do indicate two repetative issues that need attention...

Quote
Error: (10/03/2014 01:52:01 PM) (Source: Location Task Manager) (EventID: 0) (User: )
Description: (CheckLpdVersion()): Cannot find user_lpd.xml, check if Lenovo Settings is installed: C:\Users\whitescruffydog\AppData\Local\Packages\LenovoCorporation.LenovoSettings_4642shxvsv8s2\LocalState\user_lpd.xml

That would seem to indicate the lenovo settings metro app is'nt installed, or possible corrupt.

Quote
Error: (10/03/2014 11:57:57 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: machine-defaultLocalActivation{7160A13D-73DA-4CEA-95B9-37356478588A}UnavailableNT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailable

That is possibly related to poor configuration by third party applications or software installations...

This is a Malware removal forum, as your issues are not down to malware/infection maybe an operating system specific forum is a better forum for you to post to.

If you want to continue here let me know.

Regarding the two quotes from EV logs, for the first one you will have to check with lenova forum, possibly a common problem?

For the second one, tell me what 3rd party aaplication/software has been installed since you acquired this system...

Kevin..
 

Offline Hoov

  • Malware Removal Mentors
  • Administrator
  • Diamond Member
  • Posts: 27043
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
whitescruffydog, as it does not appear to be malware related, I am going to take over for Kevinf80, that is if you want to keep working at this. Let me know.

If you do I would like to look at some of your event viewer logs.

I need you to go to the administration tools in Vista / Windows 7 / 8 / 8.1 . They are in the Control Panel. Open the Admin tools, then open the event viewer. Over on the left hand side expand the window category and then click on  System. Then up at the top click on Action and then click on Save Events As, type in system as the file name,  make sure file type EVTX is selected, and then navigate so it will save the file to your desktop, then click save. Over on the left hand side and click on Application. Then up at the top click on Action and then click on Save Events As, type in application as the file name,  make sure file type EVTX is selected, and then navigate so it will save the file to your desktop, then click save. Zip them both up into a single zip file, post them back here in your next reply as attachments.

Former Consumer Security MVP
2011-2014

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

 

Click Here