Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Problem with the driver for Local Area Connection adapter

AdapterNetwork Drivers Windows7 Local Area Connection

  • Please log in to reply

#31
MCMSBre

MCMSBre

    Member

  • Topic Starter
  • Member
  • PipPip
  • 19 posts

It was on Serbian, but i changed it to english to have an easier time searching trough these files, and to be easier for you :D


VEW For System:

Vino's Event Viewer v01c run on Windows 2008 in English
Report run at 17/03/2016 12:25:21 AM

Note: All dates below are in the format dd/mm/yyyy

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 16/03/2016 10:37:31 AM
Type: Error Category: 0
Event: 14332 Source: Microsoft-Windows-WMPNSS-Service
Service 'WMPNetworkSvc' did not start correctly because CoCreateInstance(CLSID_UPnPDeviceFinder) encountered error '0x80004005'. Verify that the UPnPHost service is running and that the UPnPHost component of Windows is installed properly.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 16/03/2016 11:22:58 PM
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad.home timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 16/03/2016 11:22:05 PM
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.

Log: 'System' Date/Time: 16/03/2016 8:55:31 PM
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name isatap.home timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 16/03/2016 8:51:42 PM
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WUDFRd failed to load for the device WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_KINGSTON&PROD_DATATRAVELER_111&REV_PMAP#070728DB31D7A600&0#.

Log: 'System' Date/Time: 16/03/2016 8:24:15 PM
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad.home timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 16/03/2016 8:23:20 PM
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.

Log: 'System' Date/Time: 16/03/2016 8:06:00 PM
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad.home timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 16/03/2016 8:05:03 PM
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.

Log: 'System' Date/Time: 16/03/2016 10:44:33 AM
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WUDFRd failed to load for the device WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_KINGSTON&PROD_DATATRAVELER_111&REV_PMAP#070728DB31D7A600&0#.

Log: 'System' Date/Time: 16/03/2016 10:38:10 AM
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.

Log: 'System' Date/Time: 16/03/2016 10:35:58 AM
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.




VEW For Application:

Vino's Event Viewer v01c run on Windows 2008 in English
Report run at 17/03/2016 12:28:18 AM

Note: All dates below are in the format dd/mm/yyyy

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 16/03/2016 11:22:58 PM
Type: Warning Category: 1
Event: 1000 Source: ISCTAgent
ISCT - CAgentService::AgentServiceInit   iSCT 3.0 BIOS implementation was not detected - fall back to support 2.x functionality

Log: 'Application' Date/Time: 16/03/2016 11:22:58 PM
Type: Warning Category: 1
Event: 1000 Source: ISCTAgent
ISCT - CAgentService::AgentServiceInit   NetDetect is now disabled since this is not a mobile platform

Log: 'Application' Date/Time: 16/03/2016 11:22:04 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.     DETAIL -   11 user registry handles leaked from \Registry\User\S-1-5-21-2278087175-315393774-4205556306-1000:
Process 1896 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000
Process 1896 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000
Process 1896 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000
Process 1896 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000
Process 1896 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\Root
Process 1896 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\trust
Process 1896 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 1896 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\My
Process 1896 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\CA
Process 1896 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\TrustedPeople
Process 1896 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\Disallowed


Log: 'Application' Date/Time: 16/03/2016 8:24:14 PM
Type: Warning Category: 1
Event: 1000 Source: ISCTAgent
ISCT - CAgentService::AgentServiceInit   iSCT 3.0 BIOS implementation was not detected - fall back to support 2.x functionality

Log: 'Application' Date/Time: 16/03/2016 8:24:14 PM
Type: Warning Category: 1
Event: 1000 Source: ISCTAgent
ISCT - CAgentService::AgentServiceInit   NetDetect is now disabled since this is not a mobile platform

Log: 'Application' Date/Time: 16/03/2016 8:23:18 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.     DETAIL -   18 user registry handles leaked from \Registry\User\S-1-5-21-2278087175-315393774-4205556306-1000:
Process 2136 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000
Process 2136 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000
Process 2136 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000
Process 2136 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000
Process 2136 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\Root
Process 2136 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\trust
Process 1160 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Policies
Process 2136 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 1160 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 1160 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 1160 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\Internet Explorer\Main\FeatureControl
Process 1160 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\Internet Explorer\Main
Process 2136 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\My
Process 2136 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\CA
Process 1160 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software
Process 2136 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\TrustedPeople
Process 1160 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Process 2136 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\Disallowed


Log: 'Application' Date/Time: 16/03/2016 8:06:11 PM
Type: Warning Category: 1
Event: 1000 Source: ISCTAgent
ISCT - CAgentService::AgentServiceInit   iSCT 3.0 BIOS implementation was not detected - fall back to support 2.x functionality

Log: 'Application' Date/Time: 16/03/2016 8:06:11 PM
Type: Warning Category: 1
Event: 1000 Source: ISCTAgent
ISCT - CAgentService::AgentServiceInit   NetDetect is now disabled since this is not a mobile platform

Log: 'Application' Date/Time: 16/03/2016 8:05:01 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.     DETAIL -   7 user registry handles leaked from \Registry\User\S-1-5-21-2278087175-315393774-4205556306-1000:
Process 1108 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Policies
Process 1108 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 1108 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 1108 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\Internet Explorer\Main\FeatureControl
Process 1108 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\Internet Explorer\Main
Process 1108 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software
Process 1108 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings


Log: 'Application' Date/Time: 16/03/2016 10:39:17 AM
Type: Warning Category: 1
Event: 1000 Source: ISCTAgent
ISCT - CAgentService::AgentServiceInit   iSCT 3.0 BIOS implementation was not detected - fall back to support 2.x functionality

Log: 'Application' Date/Time: 16/03/2016 10:39:17 AM
Type: Warning Category: 1
Event: 1000 Source: ISCTAgent
ISCT - CAgentService::AgentServiceInit   NetDetect is now disabled since this is not a mobile platform

Log: 'Application' Date/Time: 16/03/2016 10:38:08 AM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.     DETAIL -   7 user registry handles leaked from \Registry\User\S-1-5-21-2278087175-315393774-4205556306-1000:
Process 1096 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Policies
Process 1096 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 1096 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 1096 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\Internet Explorer\Main\FeatureControl
Process 1096 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\Internet Explorer\Main
Process 1096 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software
Process 1096 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings


Log: 'Application' Date/Time: 16/03/2016 10:36:48 AM
Type: Warning Category: 1
Event: 1000 Source: ISCTAgent
ISCT - CAgentService::AgentServiceInit   iSCT 3.0 BIOS implementation was not detected - fall back to support 2.x functionality

Log: 'Application' Date/Time: 16/03/2016 10:36:48 AM
Type: Warning Category: 1
Event: 1000 Source: ISCTAgent
ISCT - CAgentService::AgentServiceInit   NetDetect is now disabled since this is not a mobile platform

Log: 'Application' Date/Time: 16/03/2016 10:35:57 AM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.     DETAIL -   12 user registry handles leaked from \Registry\User\S-1-5-21-2278087175-315393774-4205556306-1000:
Process 1792 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000
Process 1792 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000
Process 1792 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000
Process 1792 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000
Process 776 (\Device\HarddiskVolume2\Windows\System32\wininit.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000
Process 1792 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\Root
Process 1792 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\trust
Process 1792 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\SmartCardRoot
Process 1792 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\My
Process 1792 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\CA
Process 1792 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\TrustedPeople
Process 1792 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000\Software\Microsoft\SystemCertificates\Disallowed

 


  • 0

Advertisements


#32
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,010 posts
  • MVP

Search for services.msc and hit Enter to bring up the services window.  Find:

 

Windows Driver Foundation - User-mode Driver Framework

 

right click on it and select Properties then change the Startup Type to Automatic.  That should fix these errors:

 

Log: 'System' Date/Time: 16/03/2016 10:44:33 AM

Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WUDFRd failed to load for the device WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_KINGSTON&PROD_DATATRAVELER_111&REV_PMAP#070728DB31D7A600&0#.

 

 

 

The  ISCTAgent errors:  First one seems to think you need a newer BIOS so check with your PC maker and see if there is a newer version.  Second one should not be in the warning category as it's more informational.

 

Do you even need Intel Smart Connect Technology?

 

What is Intel Smart Connect Technology?  (from Intel)
With Intel® Smart Connect Technology,1 stay current with automatic, no-wait updates to your e-mail, social networks, news, and more. While your system is in standby, it will periodically wake up to update the applications that are open. When you return to your system and open the lid, the latest content will be at your...  

 

Seems a rather foolish thing to me.  I would uninstall it.

 

 

Errors like these:

 

Log: 'System' Date/Time: 16/03/2016 8:24:15 PM
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad.home timed out after none of the configured DNS servers responded.

 

 

Are supposed to be easily fixed.  Open Control Panel, (View by Large Icons) -> Connections -> LAN Settings, you’ll find an option called “Automatically detect settings” which defaults to on."

 
Uncheck it.
 
 
Finally these alarms:
 
Log: 'Application' Date/Time: 16/03/2016 10:35:57 AM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.     DETAIL -   12 user registry handles leaked from \Registry\User\S-1-5-21-2278087175-315393774-4205556306-1000:
Process 1792 (\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 16.0.1\avp.exe) has opened key \REGISTRY\USER\S-1-5-21-2278087175-315393774-4205556306-1000

...

 

are a problem caused by Kaspersky.  Probably not as dire as they sound.  Pretty common type of error.  About all you can do is see if there is a newer version of Kaspersky


  • 0

#33
MCMSBre

MCMSBre

    Member

  • Topic Starter
  • Member
  • PipPip
  • 19 posts

I didn't install Intel Smart Connect Technology myself, it was installed with a driver, i just thought it was needed because of that. I deinstalled it now.

There was a newer version of kaspersky, i don't know why it didn't update automaticaly...

I wont bother with updating my bios quite yet, maybe in the near future.


  • 0

#34
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,010 posts
  • MVP
OK.  Let's see how it looks now:
 
Right click on (My) Computer and select Manage (Continue) Then click on the arrow in front of Event Viewer. Next Click on the arrow in front of Windows Logs Right click on System and Clear Log, Clear. Repeat for Application.
 
Reboot. 
 
2. Right-click VEW.exe and Run AS Administrator
3. Under 'Select log to query', select:
 
* System
4. Under 'Select type to list', select:
* Error
* Warning
 
 
Then use the 'Number of events' as follows:
 
 
1. Click the radio button for 'Number of events'
Type 20 in the 1 to 20 box
Then click the Run button.
Notepad will open with the output log.
 
 
Please post the Output log in your next reply then repeat but select Application.  (Each time you run VEW it overwrites the log so copy the first one to a Reply or rename it before running it a second time.)
 

  • 0

#35
MCMSBre

MCMSBre

    Member

  • Topic Starter
  • Member
  • PipPip
  • 19 posts

VEW Application:

Vino's Event Viewer v01c run on Windows 2008 in English
Report run at 18/03/2016 11:00:33 AM

Note: All dates below are in the format dd/mm/yyyy

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~



VEW System:

Vino's Event Viewer v01c run on Windows 2008 in English
Report run at 18/03/2016 11:01:35 AM

Note: All dates below are in the format dd/mm/yyyy

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 18/03/2016 9:58:52 AM
Type: Warning Category: 0
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad.home timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 18/03/2016 9:58:03 AM
Type: Warning Category: 0
Event: 4001 Source: Microsoft-Windows-WLAN-AutoConfig
WLAN AutoConfig service has successfully stopped.
 


  • 0

#36
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,010 posts
  • MVP

I see we still have a wpad.home error but it's nothing important.  The warning about the WLAN is a mistake on Microsoft's part.  It should be just info.  Looks pretty good now.  How is it running?


  • 0

#37
MCMSBre

MCMSBre

    Member

  • Topic Starter
  • Member
  • PipPip
  • 19 posts

Well i've been using it for a couple of days now and i haven't noticed any problems.

I think everything is working now.

Thank you very much for your help, i have no idea what i would've done otherwise. Probably take it to a PC service where they would just reinstall my windows, lose all my data and call that a fix (talking from experience unfortunately).

So thank you so much for this, and i hope i haven't taken too much of your time.


  • 0

#38
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,010 posts
  • MVP

I'm retired so I have lots of time.  This is what I do for fun.  We should probably cleanup:

 

We usually clean up with Delfix.  This removes our tools and their logs and quarantines and also removes all but the latest System Restore point so there is no chance of the malware coming back with a system restore. Delfix has been a tad too aggressive recently and seems to dislike pdf files in the Downloads folder so if you have any you should move them to a different folder before running Delfix.
 
Ensure Remove disinfection tools is ticked
Also tick:
Create registry backup
Purge system restore
 
Click Run
The program will run for a few moments and then notepad will open with a log. Please paste the log in your next reply
 
 
Also make sure you have the latest versions of any adobe.com products you use like Shockwave, Flash or Acrobat.  Flash is now the most malware targeted program so it must be kept up to date.  Be careful with Adobe.  They are fond of offering optional downloads like yahoo or Ask toolbars or that worthless McAfee Security Scan.  Go slow and uncheck the optional stuff.
 
Whether you use adobe reader, acrobat or fox-it to read pdf files you need to disable Javascript in the program.  There is an exploit out there now that can use it to get on your PC.  For Adobe Reader:  Start, All Programs, Adobe Reader, Edit, Preferences, Click on Javascript in the left column and uncheck Enable Acrobat Javascript.  OK Close program.  It's the same for Foxit reader except you uncheck Enable Javascript Actions. 
 
 
If you use Chrome/Firefox/IE then get the AdBlock Plus Add-on.  Go to adblockplus.org with each browser and get the add-on.  (It's actually a program for IE)
 
If Chrome/Firefox is slow loading make sure it only has the current Java add-on.  Then download and run Speedy Fox.
http://www.crystalidea.com/speedyfox.  Close Chrome/Firefox/Skpe. Hit Optimize.   You can run it any time that Chrome/Firefox seems slow starting..
 
Be warned:  If you use Limewire, utorrent or any of the other P2P programs you will probably be coming back to the Malware Removal forum.  If you must use P2P then submit any files you get to http://virustotal.combeforeyou open them.
 
Due to a recent rise in the number of Crytolocker infections I am now recommending you install:
 
CryptoPrevent
 
 
Last time I downloaded it you had to give them your IP address and they would send you the link to download it.  When it ran it asked if you were sure your PC was clean then it would try to allow everything on your PC to continue running.  The free version does not update on its own so you should check for updated versions once in a while.  If you have problems after installing CryptoPrevent you can just uninstall it.
 
If you have a router, log on to it today and change the default password!  If using a Wireless router you really should be using encryption on the link.  Use the strongest (newest) encryption method that your router and PC wireless adapter support especially if you own a business.  See http://www.king5.com...0637284.htmlandhttp://www.seattlepi...ted-1344185.php for why encryption is important.  If you don't know how, visit the router maker's website.  They all have detailed step by step instructions or a wizard you can download.
 
Special note on Java.  Old Java versions should be removed after first clearing the Java Cache by following the instructions in:
Then remove the old versions by going to Control Panel, Programs and Features and Uninstall all Java programs which are not Java Version 7 update 25 or better.  These may call themselves: Java Runtime, Runtime Environment, Runtime, JRE, Java Virtual Machine, Virtual Machine, Java VM, JVM, VM, J2RE, J2SE.  Get the latest version from Java.com.  They will usually attempt to foist some garbage like the Ask toolbar, Yahoo toolbar or McAfee Security Scan on you as part of the download.  Just uncheck the garbage before the download (or install) starts.  If you use a 64-bit browser and want the 64-bit version of Java you need to use it to visit java.com.
Due to multiple security problems with Java we are now recommending that it not be installed unless you absolutely know you need it.  IF that is the case then go to Control Panel, Java, Security and slide it up to the highest level.  OK.

  • 0






Similar Topics


Also tagged with one or more of these keywords: AdapterNetwork, Drivers, Windows7, Local Area Connection

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP