Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Network adapter works on laptop but no longer works on pc after bsod


  • Please log in to reply

#16
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

Interesting errors you have.

 

Log: 'System' Date/Time: 23-May-16 7:31:47 PM
Type: Warning Category: 0
Event: 2511 Source: Server
The server service was unable to recreate the share BLES02070- KINGDOM HEARTS HD 25 ReMIX because the directory E:\USER\Downloads\Kingdom.Hearts.HD.2.5.ReMIX.PS3-DUPLEX\BLES02070-[KINGDOM HEARTS HD 25 ReMIX] no longer exists.  Please run "net share BLES02070- KINGDOM HEARTS HD 25 ReMIX /delete" to delete the share, or recreate the directory E:\USER\Downloads\Kingdom.Hearts.HD.2.5.ReMIX.PS3-DUPLEX\BLES02070-[KINGDOM HEARTS HD 25 ReMIX].
 

 

 

Copy the next iine:

net share BLES02070- KINGDOM HEARTS HD 25 ReMIX /delete

Start, All Programs, Accessories, right click on Command Prompt and Run as Administrator, Continue.  Right click and Paste or Edit then Paste and the copied line should appear.  Hit Enter.  If the command succeeds that will fix the above error.  Leave the Command Prompt Open.

 

Log: 'System' Date/Time: 23-May-16 7:34:32 PM
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WUDFRd failed to load for the device USB\VID_04E8&PID_6860&MS_COMP_MTP&SAMSUNG_Android\6&38278062&0&0000.
 

 

 

This one is more a nuisance.

 

Copy the next line:

sc config wudfsvc start= auto

 Right click and Paste or Edit then Paste and the copied line should appear.  Hit Enter.  If the command succeeds that will fix the above error. 

 

 
Log: 'Application' Date/Time: 23-May-16 7:32:55 PM
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

 

 

 

 

This one is in all Windows 7's.  There is a Microsoft FixIt:

https://support.microsoft.com/en-us/kb/2545227

Click on Download then save. Double click to run.

 

Log: 'Application' Date/Time: 23-May-16 7:13:10 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.     DETAIL -   2 user registry handles leaked from \Registry\User\S-1-5-21-2885869400-3036127734-3621894309-1000:
Process 5368 (\Device\HarddiskVolume3\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-2885869400-3036127734-3621894309-1000\Software\Microsoft\Windows\CurrentVersion\Explorer
Process 5368 (\Device\HarddiskVolume3\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-2885869400-3036127734-3621894309-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts
 
 

 

 

This one may indicate an install is stuck.  That may be why your adapter isn't being detected.

 

Let's run the 

System Update Readiness Tool for Windows 7 for x64-based Systems (KB947821) [October 2014]

 

 

 https://www.microsof...s.aspx?id=20858

 

Click on the Download.  Save it then Double click to install .  will take a few minutes to finish.  Be patient.

 

Log: 'System' Date/Time: 23-May-16 7:31:50 PM
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load:  ElRawDisk SASDIFSV SASKUTIL
 

 

 

SASDIFSV & SASKUTIL are part of SuperAntiSpyware/  See if you can uninstall it.

 

ElRawDisk is from Eldos' RawDisk.  See if you can uninstall it.

 
 
Once you have done the above,  
 
Right click on (My) Computer and select Manage (Continue) Then click on the arrow in front of Event Viewer. Next Click on the arrow in front of Windows Logs Right click on System and Clear Log, Clear. Repeat for Application.
 
Reboot. 
 
 
Then run VEW again as before for both System & Applications.
 
Also let's run Process explorer:
 
Get Process Explorer
 
Save it to your desktop then run it (Vista or Win7 - right click and Run As Administrator).  
 
View, Select Column, check Verified Signer, OK
Options, Verify Image Signatures
 
 
Click twice on the CPU column header  to sort things by CPU usage with the big hitters at the top.  
 
Wait a full minute then:
 
File, Save As, Save.  Open the file Procexp.txt on your desktop and copy and paste the text to a reply.
 
 

  • 1

Advertisements


#17
liamdonnelly

liamdonnelly

    Member

  • Member
  • PipPip
  • 26 posts

 

Interesting errors you have.

 

Log: 'System' Date/Time: 23-May-16 7:31:47 PM
Type: Warning Category: 0
Event: 2511 Source: Server
The server service was unable to recreate the share BLES02070- KINGDOM HEARTS HD 25 ReMIX because the directory E:\USER\Downloads\Kingdom.Hearts.HD.2.5.ReMIX.PS3-DUPLEX\BLES02070-[KINGDOM HEARTS HD 25 ReMIX] no longer exists.  Please run "net share BLES02070- KINGDOM HEARTS HD 25 ReMIX /delete" to delete the share, or recreate the directory E:\USER\Downloads\Kingdom.Hearts.HD.2.5.ReMIX.PS3-DUPLEX\BLES02070-[KINGDOM HEARTS HD 25 ReMIX].
 

 

 

Copy the next iine:

net share BLES02070- KINGDOM HEARTS HD 25 ReMIX /delete

Start, All Programs, Accessories, right click on Command Prompt and Run as Administrator, Continue.  Right click and Paste or Edit then Paste and the copied line should appear.  Hit Enter.  If the command succeeds that will fix the above error.  Leave the Command Prompt Open.

 

Log: 'System' Date/Time: 23-May-16 7:34:32 PM
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WUDFRd failed to load for the device USB\VID_04E8&PID_6860&MS_COMP_MTP&SAMSUNG_Android\6&38278062&0&0000.
 

 

 

This one is more a nuisance.

 

Copy the next line:

sc config wudfsvc start= auto

 Right click and Paste or Edit then Paste and the copied line should appear.  Hit Enter.  If the command succeeds that will fix the above error. 

 

 
Log: 'Application' Date/Time: 23-May-16 7:32:55 PM
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-WMI
Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

 

 

 

 

This one is in all Windows 7's.  There is a Microsoft FixIt:

https://support.microsoft.com/en-us/kb/2545227

Click on Download then save. Double click to run.

 

Log: 'Application' Date/Time: 23-May-16 7:13:10 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.     DETAIL -   2 user registry handles leaked from \Registry\User\S-1-5-21-2885869400-3036127734-3621894309-1000:
Process 5368 (\Device\HarddiskVolume3\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-2885869400-3036127734-3621894309-1000\Software\Microsoft\Windows\CurrentVersion\Explorer
Process 5368 (\Device\HarddiskVolume3\Windows\System32\msiexec.exe) has opened key \REGISTRY\USER\S-1-5-21-2885869400-3036127734-3621894309-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts
 
 

 

 

This one may indicate an install is stuck.  That may be why your adapter isn't being detected.

 

Let's run the 

System Update Readiness Tool for Windows 7 for x64-based Systems (KB947821) [October 2014]

 

 

 https://www.microsof...s.aspx?id=20858

 

Click on the Download.  Save it then Double click to install .  will take a few minutes to finish.  Be patient.

 

Log: 'System' Date/Time: 23-May-16 7:31:50 PM
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load:  ElRawDisk SASDIFSV SASKUTIL
 

 

 

SASDIFSV & SASKUTIL are part of SuperAntiSpyware/  See if you can uninstall it.

 

ElRawDisk is from Eldos' RawDisk.  See if you can uninstall it.

 
 
Once you have done the above,  
 
Right click on (My) Computer and select Manage (Continue) Then click on the arrow in front of Event Viewer. Next Click on the arrow in front of Windows Logs Right click on System and Clear Log, Clear. Repeat for Application.
 
Reboot. 
 
 
Then run VEW again as before for both System & Applications.
 
Also let's run Process explorer:
 
Get Process Explorer
 
Save it to your desktop then run it (Vista or Win7 - right click and Run As Administrator).  
 
View, Select Column, check Verified Signer, OK
Options, Verify Image Signatures
 
 
Click twice on the CPU column header  to sort things by CPU usage with the big hitters at the top.  
 
Wait a full minute then:
 
File, Save As, Save.  Open the file Procexp.txt on your desktop and copy and paste the text to a reply.
 
 

 

Hey, 

So, it couldn't find the kingdom hearts file for some reason or something along those lines. 

Everything else worked perfectly except for eldos rawdisk, which i couldn't find on control panel or any remnants in my folders or files.

I've attached all the files you requested and posted the process explorer log below, thanks a lot buddy :).

Edit: forgot to say that although I'm sure the windows update helped, my adapter is still not been detected. When I manually try to install it through DM I get an error saying that it finds compatible software, but it can't install it because "a device attached to the system is not functioning". I think I may have stated that already so if so, just ignore it because i'm sure you've already thought about that ^^. 

 

explorer log- 

Process CPU Private Bytes Working Set PID Description Company Name
System Idle Process 86.55 0 K 24 K 0
svchost.exe 12.50 509,768 K 298,872 K 1172 Host Process for Windows Services Microsoft Corporation
procexp64.exe 0.37 33,384 K 54,348 K 1780 Sysinternals Process Explorer Sysinternals - www.sysinternals.com
Interrupts 0.13 0 K 0 K n/a Hardware Interrupts and DPCs
ManyCam.exe 0.11 100,536 K 102,972 K 4360 ManyCam Virtual Webcam Visicom Media Inc.
csrss.exe 0.08 20,532 K 16,948 K 740 Client Server Runtime Process Microsoft Corporation
Monitor.exe 0.05 11,372 K 16,136 K 2004 Performance Monitor IObit
Skype.exe 0.04 149,364 K 160,496 K 4680 Skype Skype Technologies S.A.
audiodg.exe 0.04 20,444 K 20,480 K 1268 Windows Audio Device Graph Isolation Microsoft Corporation
RATM_Profiler.exe 0.02 70,768 K 58,324 K 4144 R.A.T.M Profiler Mad Catz Inc
svchost.exe 0.02 6,536 K 11,860 K 904 Host Process for Windows Services Microsoft Corporation
System 0.01 208 K 3,572 K 4
egui.exe 0.01 21,856 K 32,160 K 2552 ESET Main GUI ESET
AppleMobileDeviceService.exe 0.01 3,372 K 9,804 K 1968 MobileDeviceService Apple Inc.
explorer.exe 0.01 99,408 K 99,692 K 3932 Windows Explorer Microsoft Corporation
WifiSvc.exe 0.01 2,668 K 6,448 K 2992 Wifi Service
TotalVPN.exe 0.01 95,588 K 69,164 K 4716 GUI.Win
CCleaner64.exe 0.01 12,068 K 23,124 K 4352 CCleaner Piriform Ltd
MOM.exe < 0.01 28,336 K 5,636 K 4944 Catalyst Control Center: Monitoring program Advanced Micro Devices Inc.
svchost.exe < 0.01 10,568 K 18,828 K 1112 Host Process for Windows Services Microsoft Corporation
wmpnetwk.exe < 0.01 32,028 K 5,960 K 3676 Windows Media Player Network Sharing Service Microsoft Corporation
A6210.EXE < 0.01 7,208 K 13,076 K 5036 A6210 Genie MFC Application NETGEAR
ekrn.exe < 0.01 133,784 K 145,332 K 1012 ESET Service ESET
NetgearSwitchUSB.exe < 0.01 1,924 K 5,192 K 2332 MediatekSw Application
taskhost.exe < 0.01 12,648 K 12,144 K 1532 Host Process for Windows Tasks Microsoft Corporation
MsMpEng.exe < 0.01 86,692 K 52,736 K 672 Antimalware Service Executable Microsoft Corporation
DiscSoftBusService.exe < 0.01 5,576 K 10,320 K 4576 Disc Soft Bus Service Disc Soft Ltd
officeclicktorun.exe < 0.01 27,632 K 34,152 K 2072 Microsoft Office Click-to-Run Microsoft Corporation
wcmmon.exe < 0.01 1,868 K 6,684 K 4656
SearchIndexer.exe < 0.01 75,448 K 67,388 K 6040 Microsoft Windows Search Indexer Microsoft Corporation
sqlservr.exe < 0.01 207,224 K 84,448 K 2264 SQL Server Windows NT - 64 Bit Microsoft Corporation
svchost.exe < 0.01 12,144 K 13,648 K 1608 Host Process for Windows Services Microsoft Corporation
svchost.exe < 0.01 10,540 K 16,512 K 1140 Host Process for Windows Services Microsoft Corporation
csrss.exe < 0.01 2,976 K 5,616 K 652 Client Server Runtime Process Microsoft Corporation
CCC.exe < 0.01 89,468 K 7,136 K 4120 Catalyst Control Center: Host application Advanced Micro Devices Inc.
svchost.exe < 0.01 11,824 K 16,560 K 1712 Host Process for Windows Services Microsoft Corporation
WUDFHost.exe 4,196 K 9,036 K 5484 Windows Driver Foundation - User-mode Driver Framework Host Process Microsoft Corporation
WR_Tray_Icon.exe 1,944 K 6,372 K 3016 Tweaking.com - Windows Repair Tray Icon Tweaking.com
WmiPrvSE.exe 3,588 K 7,456 K 2316 WMI Provider Host Microsoft Corporation
WLIDSVCM.EXE 2,092 K 4,204 K 2680 Microsoft® Windows Live ID Service Monitor Microsoft Corp.
WLIDSVC.EXE 6,672 K 13,396 K 2844 Microsoft® Windows Live ID Service Microsoft Corp.
winlogon.exe 4,216 K 8,752 K 940 Windows Logon Application Microsoft Corporation
wininit.exe 2,076 K 5,092 K 732 Windows Start-Up Application Microsoft Corporation
UninstallMonitor.exe 9,052 K 11,776 K 3608 IObit
UI0Detect.exe 2,916 K 7,568 K 2760 Interactive services detection Microsoft Corporation
TrustedInstaller.exe 5,132 K 10,204 K 5436 Windows Modules Installer Microsoft Corporation
taskeng.exe 2,704 K 6,132 K 1808 Task Scheduler Engine Microsoft Corporation
svchost.exe 5,244 K 9,052 K 184 Host Process for Windows Services Microsoft Corporation
svchost.exe 23,900 K 22,136 K 1076 Host Process for Windows Services Microsoft Corporation
svchost.exe 6,412 K 10,840 K 2124 Host Process for Windows Services Microsoft Corporation
svchost.exe 2,192 K 5,424 K 1092 Host Process for Windows Services Microsoft Corporation
svchost.exe 2,776 K 6,032 K 1308 Host Process for Windows Services Microsoft Corporation
svchost.exe 5,672 K 10,736 K 3964 Host Process for Windows Services Microsoft Corporation
svchost.exe 7,520 K 11,000 K 2796 Host Process for Windows Services Microsoft Corporation
svchost.exe 5,460 K 9,992 K 1948 Host Process for Windows Services Microsoft Corporation
svchost.exe 4,680 K 8,908 K 2732 Host Process for Windows Services Microsoft Corporation
svchost.exe 2,476 K 5,920 K 3776 Host Process for Windows Services Microsoft Corporation
sqlwriter.exe 2,780 K 6,916 K 2700 SQL Server VSS Writer - 64 Bit Microsoft Corporation
spoolsv.exe 9,056 K 15,660 K 1816 Spooler SubSystem App Microsoft Corporation
SMSvcHost.exe 26,636 K 25,276 K 2364 SMSvcHost.exe Microsoft Corporation
smss.exe 2,168 K 2,452 K 460 Windows Session Manager Microsoft Corporation
services.exe 6,752 K 10,628 K 780 Services and Controller app Microsoft Corporation
RtkNGUI64.exe 13,744 K 10,788 K 4188 Realtek HD Audio Manager Realtek Semiconductor
procexp.exe 2,708 K 6,396 K 3516 Sysinternals Process Explorer Sysinternals - www.sysinternals.com
PresentationFontCache.exe 32,016 K 27,836 K 5392 PresentationFontCache.exe Microsoft Corporation
ovpnagent.exe 1,360 K 4,904 K 2560
OSPPSVC.EXE 3,988 K 12,532 K 5428 Microsoft Office Software Protection Platform Service Microsoft Corporation
msseces.exe 6,480 K 14,260 K 4220 Microsoft Security Client User Interface Microsoft Corporation
mDNSResponder.exe 3,216 K 6,700 K 1596 Bonjour Service Apple Inc.
lync.exe 85,112 K 77,336 K 4420 Skype for Business Microsoft Corporation
lsm.exe 3,116 K 4,976 K 812 Local Session Manager Service Microsoft Corporation
lsass.exe 5,964 K 13,268 K 804 Local Security Authority Process Microsoft Corporation
Locator.exe 1,312 K 2,732 K 2608 Rpc Locator Microsoft Corporation
GyStation.exe 1,768 K 5,324 K 4312 Gyazo Station Nota Inc.
dwm.exe 2,180 K 5,852 K 1512 Desktop Window Manager Microsoft Corporation
atiesrxx.exe 2,096 K 5,376 K 1036 AMD External Events Service Module AMD
atieclxx.exe 2,796 K 7,188 K 1380 AMD External Events Client Module AMD
AdobeARM.exe 2,440 K 8,612 K 4820 Adobe Reader and Acrobat Manager Adobe Systems Incorporated
 
Process: System Idle Process Pid: 0
 
Name Description Company Name Path

Attached Files


Edited by liamdonnelly, 23 May 2016 - 05:13 PM.

  • 0

#18
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP
Log: 'System' Date/Time: 23-May-16 10:46:01 PM
Type: Error Category: 0
Event: 7026 Source: Service Control Manager
The following boot-start or system-start driver(s) failed to load:  ElRawDisk

 

 

 

Copy the next line:

sc config ElRawDisk start= disabled
Right click and Paste or Edit then Paste and the copied line should appear.  Hit Enter.  If the command succeeds that will fix the above error. 
 
 
Log: 'System' Date/Time: 23-May-16 10:46:12 PM
Type: Error Category: 0
Event: 25 Source: volsnap
The shadow copies of volume E: were deleted because the shadow copy storage could not grow in time.  Consider reducing the IO load on the system or choose a shadow copy storage volume that is not being shadow copied.
 

 

 

This is telling you that it deleted all of your backups.  I think it's cause by a slow USB connection.  Don't know how to fix it but  you are not alone.  See:

https://social.techn...m=windowsbackup

https://www.veritas....icle.TECH153951

 

This may be causing  problem with detecting your WiFi adapter as it may be using up all of the memory.  You might try typing services.msc and hitting Enter then find Volume 

Shadow Copy and right clicking and select Properties then change Startup Type: to Disabled.  OK.  Repeat for Windows Backup then reboot and see if it can detect the adapter.

Log: 'System' Date/Time: 23-May-16 10:16:05 PM
Type: Error Category: 0
Event: 7030 Source: Service Control Manager
The WSWNDA3100v2 service is marked as an interactive service.  However, the system is configured to not allow interactive services.  This service may not function properly.

 

 

Generally the above error indicates that your WSWNDA3100v2 driver is out of date and meant for XP and earlier.  Win 7 does not allow interactive services.
 
Make sure you have downloaded Version 2.0 or newer.  http://www.netgear.c...=gwmng#SoftwareVersion 2.0
 
 
 
Looking at Process Explorer there is a SVChost.exe entry that is using up too much CPU.  
 
svchost.exe 12.50 509,768 K 298,872 K 1172 Host Process for Windows Services Microsoft Corporation

 

 

 
If you hover over it it should tell you the services that are riding on it.  What are they?  

  • 1

#19
liamdonnelly

liamdonnelly

    Member

  • Member
  • PipPip
  • 26 posts

That line disabled it successfully. 

Both services set to disabled. 

Not sure why i'm getting that error because I swear that I was using the latest one, but I downloaded it again from the link you gave me and installed it, it still couldn't detect the adapter though :/. Tried my other adapter again as well after disabling those services, but that still didn't work either :(.

Services displayed for svchost:

-Dcom server process launcher [dcomlaunch]

-power[power]

-plug and play[plugplay]

 

Thanks a lot for the help though, I really do appreciate the effort you're putting in :).


Edited by liamdonnelly, 23 May 2016 - 07:05 PM.

  • 0

#20
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

Do you have an external  hard drive in E:  ?  

 

Right click on Computer and select Manage then Device Manager, View, Show Hidden Devices.  Do you see any yellow flagged entries?

 

Can your remove all USB devices except the WiFi adapter and reboot?  Does Process Explorer still show SVCHost with about 12%  ?


  • 1

#21
liamdonnelly

liamdonnelly

    Member

  • Member
  • PipPip
  • 26 posts

Do you have an external  hard drive in E:  ?  

 

Right click on Computer and select Manage then Device Manager, View, Show Hidden Devices.  Do you see any yellow flagged entries?

 

Can your remove all USB devices except the WiFi adapter and reboot?  Does Process Explorer still show SVCHost with about 12%  ?

No, but I believe at some point I partitioned it slightly.

Well except for my a6210 adapter theres a new one called 'saitek sst programmable device interface' under other devices with a grey question mark next to it, which is to do with the programmable buttons for my mouse. 

Will restart now 1 sec. 

Edit: unplugged all the usb devices except wifi adapter and rebooted. Navigated to process explorer with my keyboard, none of the svchosts are higher than 0.xx now :).


Edited by liamdonnelly, 23 May 2016 - 07:32 PM.

  • 0

#22
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

If you plug in the mouse does svchost go high?


  • 1

#23
liamdonnelly

liamdonnelly

    Member

  • Member
  • PipPip
  • 26 posts

If you plug in the mouse does svchost go high?

No, which is odd. But if I go on the device properties for the saitek sst programmable thing it says you need to restart your computer before the changes you made to this device will take effect 'location mad catz rat 3 mouse'. Not sure if that helps or not.


  • 0

#24
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

Any change in recognizing the  WiFi?

 

There is a long thread on your rat and its drivers.  Apparently it never works very well.  http://forums.eagle....ead.php?t=84295

 

If you don't have a hard drive in the E:\ then your backup software is very confused.  

 

Do you have the desktop hooked up to the Internet via a cable?  


  • 1

#25
liamdonnelly

liamdonnelly

    Member

  • Member
  • PipPip
  • 26 posts

Any change in recognizing the  WiFi?

 

There is a long thread on your rat and its drivers.  Apparently it never works very well.  http://forums.eagle....ead.php?t=84295

 

If you don't have a hard drive in the E:\ then your backup software is very confused.  

 

Do you have the desktop hooked up to the Internet via a cable?  

No the wifi-adapter still isn't been detected by the setup software, it is detected by windows, but it shows up as a driver that has no driver software installed on it on dm. Tried manually installing it through dm, but I get the error that 'a device attatced to the system is not functioning'. I'm posting all this from my laptop with my old wifi-adapter btw. 

 

Sorry I do have a hard drive in e:\\, but it's not an external Hdd it's inside the pc.

No.


  • 0

Advertisements


#26
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP
Get the free version of Speccy:
 
http://www.filehippo...download_speccy (Look in the upper right for the Download
Latest Version button  - Do NOT press the large Start Download button on the upper left!)  Download, Save and Install it.  Run Speccy.  When it finishes (the little icon in the bottom left will stop moving), File, Save as Text File,  (to your desktop) note the name it gives. OK.  Open the file in notepad and delete the line that gives the serial number of your Operating System.  (It will be near the top about 10 lines down.) Attach the file to your next post.
 
 
Run VEW again as before.
 
Also can I see the  setupapi.dev.log again?  

  • 1

#27
liamdonnelly

liamdonnelly

    Member

  • Member
  • PipPip
  • 26 posts

 

Get the free version of Speccy:
 
http://www.filehippo...download_speccy (Look in the upper right for the Download
Latest Version button  - Do NOT press the large Start Download button on the upper left!)  Download, Save and Install it.  Run Speccy.  When it finishes (the little icon in the bottom left will stop moving), File, Save as Text File,  (to your desktop) note the name it gives. OK.  Open the file in notepad and delete the line that gives the serial number of your Operating System.  (It will be near the top about 10 lines down.) Attach the file to your next post.
 
 
Run VEW again as before.
 
Also can I see the  setupapi.dev.log again?  

 

Yep here you go. :) 

Edit: I'm going to bed now, will reply to your next post when I wake up ^^.

Attached Files


Edited by liamdonnelly, 23 May 2016 - 08:40 PM.

  • 0

#28
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

Speccy says you are out of space on the E: drive.  You are down to 5% free.  You want at least 11%.  Perhaps that's the problem.  Can you free up some space?  Start out by uninstalling Microsoft Security Essentials.  You don't need it if you have ESET.  Just slows your PC down.

 

Copy the next 2 lines:

 

reg query HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\WSWNDA3100v2 /s > \junk.txt
notepad \junk.txt
Start, All Programs, Accessories, right click on Command Prompt and Run as Administrator, Continue.  Right click and Paste or Edit then Paste and the copied line should appear.
Hit Enter if notepad does not open.  Copy and paste the text from notepad into a reply.  

  • 1

#29
liamdonnelly

liamdonnelly

    Member

  • Member
  • PipPip
  • 26 posts

 

Speccy says you are out of space on the E: drive.  You are down to 5% free.  You want at least 11%.  Perhaps that's the problem.  Can you free up some space?  Start out by uninstalling Microsoft Security Essentials.  You don't need it if you have ESET.  Just slows your PC down.

 

Copy the next 2 lines:

 

reg query HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\WSWNDA3100v2 /s > \junk.txt
notepad \junk.txt
Start, All Programs, Accessories, right click on Command Prompt and Run as Administrator, Continue.  Right click and Paste or Edit then Paste and the copied line should appear.
Hit Enter if notepad does not open.  Copy and paste the text from notepad into a reply.  

 

Space freed up!

junk txt- 

 
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\WSWNDA3100v2
    Type    REG_DWORD    0x110
    Start    REG_DWORD    0x2
    ErrorControl    REG_DWORD    0x1
    DisplayName    REG_SZ    WSWNDA3100v2
    WOW64    REG_DWORD    0x1
    ObjectName    REG_SZ    LocalSystem
    FailureActions    REG_BINARY    00000000000000000000000001000000140000000100000088130000

  • 0

#30
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP
This is from the equivalent Registry entry for my wifi:
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\RTL8192cu]
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"Tag"=dword:0000001b
"ImagePath"=hex(2):73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,44,00,\
  52,00,49,00,56,00,45,00,52,00,53,00,5c,00,52,00,54,00,4c,00,38,00,31,00,39,\
  00,32,00,63,00,75,00,2e,00,73,00,79,00,73,00,00,00
"DisplayName"="Realtek RTL8192CU Wireless LAN 802.11n USB 2.0 Network Adapter"
"Group"="NDIS"
"NdisMajorVersion"=dword:00000006
"NdisMinorVersion"=dword:00000014
"BootFlags"=dword:00000001
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\RTL8192cu\Parameters]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\RTL8192cu\Parameters\Wdf]
"WdfMajorVersion"=dword:00000001
"WdfMinorVersion"=dword:00000009
"TimeOfLastSqmLog"=hex(b):e9,6b,a8,cf,1b,b3,d1,01
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\RTL8192cu\Enum]
"0"="USB\\VID_0BDA&PID_8178\\00e04c000001"
"Count"=dword:00000001
"NextInstance"=dword:00000001
 
We have to have the ImagePath or it won't know how to start the driver.  I'm hoping it ran out of space and that's why it couldn't finish the install.
 

 Now that we have some space how about uninstalling the netgear, disconnecting the adapter, reboot and install the driver, connect the adapter.

 

If it fails let's see the setupapidev.log again and also a new junk.txt file.  See if anything has changed.


  • 1






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP