Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

PC running slow for some reason.


  • Please log in to reply

#46
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

Some progress anyway.  Let's see what errors VEW sees:


1. Please download the Event Viewer Tool by Vino Rosso
http://images.malwar...om/vino/VEW.exe
and save it to your Desktop:
2. Right-click VEW.exe and Run AS Administrator
3. Under 'Select log to query', select:

* System
4. Under 'Select type to list', select:
* Error
* Warning


Then use the 'Number of events' as follows:


1. Click the radio button for 'Number of events'
Type 20 in the 1 to 20 box
Then click the Run button.
Notepad will open with the output log.


Please post the Output log in your next reply then repeat but select Application.  (Each time you run VEW it overwrites the log so copy the first one to a Reply or rename it before running it a second time.)
 


  • 0

Advertisements


#47
Izzy1665

Izzy1665

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 121 posts

Vino's Event Viewer v01c run on Windows 7 in English
Report run at 13/12/2018 9:27:27 PM

Note: All dates below are in the format dd/mm/yyyy

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 13/12/2018 11:38:03 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 14/12/2018 12:30:07 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 13/12/2018 11:45:12 PM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 13/12/2018 11:41:11 PM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 13/12/2018 11:38:50 PM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  and APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Log: 'System' Date/Time: 13/12/2018 11:38:50 PM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  and APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Log: 'System' Date/Time: 13/12/2018 11:38:25 PM
Type: Error Category: 0
Event: 5003 Source: athur
NETGEAR WNA1100 N150 Wireless USB Adapter : Could not find a network adapter.

Log: 'System' Date/Time: 13/12/2018 11:38:20 PM
Type: Error Category: 0
Event: 6008 Source: EventLog
The previous system shutdown at 6:11:32 PM on ?12/?13/?2018 was unexpected.

Log: 'System' Date/Time: 13/12/2018 10:43:23 PM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 13/12/2018 10:42:40 PM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 13/12/2018 10:41:57 PM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 13/12/2018 10:38:50 PM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 13/12/2018 10:35:15 PM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 13/12/2018 10:33:48 PM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 13/12/2018 10:31:46 PM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID  {C2F03A33-21F5-47FA-B4BB-156362A2F239}  and APPID  {316CDED5-E4AE-4B15-9113-7055D84DCC97}  to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Log: 'System' Date/Time: 13/12/2018 10:31:46 PM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  and APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Log: 'System' Date/Time: 13/12/2018 10:31:46 PM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID  {C2F03A33-21F5-47FA-B4BB-156362A2F239}  and APPID  {316CDED5-E4AE-4B15-9113-7055D84DCC97}  to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Log: 'System' Date/Time: 13/12/2018 10:31:46 PM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  and APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Log: 'System' Date/Time: 13/12/2018 10:31:44 PM
Type: Error Category: 0
Event: 5003 Source: athur
NETGEAR WNA1100 N150 Wireless USB Adapter : Could not find a network adapter.

Log: 'System' Date/Time: 13/12/2018 10:04:12 PM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 13/12/2018 10:02:29 PM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 13/12/2018 11:38:05 PM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 13/12/2018 10:31:44 PM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 13/12/2018 9:42:09 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name star-mini.c10r.facebook.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 13/12/2018 9:41:00 PM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 13/12/2018 9:40:01 PM
Type: Warning Category: 0
Event: 1 Source: Microsoft-Windows-Kernel-Tm
The Transaction (UOW={65FC31B1-FF1D-11E8-BE87-00241D30C279}, Description='') was unable to be committed, and instead rolled back; this was due to an error message returned by CLFS while attempting to write a Prepare or Commit record for the Transaction.  The CLFS error returned was: 0xC0190052.

Log: 'System' Date/Time: 13/12/2018 9:24:27 PM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 13/12/2018 1:24:36 AM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 13/12/2018 12:07:05 AM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 12/12/2018 11:36:49 PM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 12/12/2018 11:19:43 PM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 12/12/2018 10:06:34 PM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

 

 

 

 

Vino's Event Viewer v01c run on Windows 7 in English
Report run at 13/12/2018 9:30:44 PM

Note: All dates below are in the format dd/mm/yyyy

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 14/12/2018 12:30:17 AM
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-AppModel-State
Failure to load the application settings for package microsoft.skypeapp_kzf8qxf38zg5c. Error Code: -2147023887

Log: 'Application' Date/Time: 14/12/2018 12:30:13 AM
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-AppModel-State
Failure to load the application settings for package microsoft.microsoftofficehub_8wekyb3d8bbwe. Error Code: -2147023887

Log: 'Application' Date/Time: 13/12/2018 11:39:07 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x1b2c Faulting application start time: 0x01d4933d0750c470 Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: a450893c-b524-4ce5-8f2f-39bce36a5c25 Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 13/12/2018 10:31:59 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x1b10 Faulting application start time: 0x01d49333a47f0f56 Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: 9a64e999-9914-4775-a4e2-0c47cac39d05 Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 13/12/2018 9:41:32 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x18f8 Faulting application start time: 0x01d4932c9569d77e Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: dfaa606a-97c8-4fb5-b0d4-1360ac241ef8 Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 13/12/2018 9:25:03 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x1aa8 Faulting application start time: 0x01d4932a41ee72f5 Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: 25b700f7-51f8-4920-8ea2-75372ae97667 Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 13/12/2018 9:23:22 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: svchost.exe_WpnUserService, version: 10.0.17134.1, time stamp: 0xa38b9ab2 Faulting module name: NotificationController.dll, version: 10.0.17134.165, time stamp: 0xe0385185 Exception code: 0xc0000005 Fault offset: 0x000000000007c686 Faulting process id: 0xf0c Faulting application start time: 0x01d492a50c450935 Faulting application path: C:\WINDOWS\system32\svchost.exe Faulting module path: C:\Windows\System32\NotificationController.dll Report Id: af2ceb33-f6a0-458d-bbf3-c13e2f1ae2f9 Faulting package full name:  Faulting package-relative application ID:

Log: 'Application' Date/Time: 13/12/2018 4:24:27 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x1d38 Faulting application start time: 0x01d49300481a6d68 Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: 8de32dd7-11cb-4916-8ebf-d64fe2eaad0a Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 13/12/2018 5:30:47 AM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: svchost.exe_WpnUserService, version: 10.0.17134.1, time stamp: 0xa38b9ab2 Faulting module name: NotificationController.dll, version: 10.0.17134.165, time stamp: 0xe0385185 Exception code: 0xc0000005 Fault offset: 0x000000000007c686 Faulting process id: 0x22cc Faulting application start time: 0x01d492a0bd1cf7c7 Faulting application path: C:\WINDOWS\system32\svchost.exe Faulting module path: C:\Windows\System32\NotificationController.dll Report Id: 98a7195c-02b1-4927-8a40-382033dab41d Faulting package full name:  Faulting package-relative application ID:

Log: 'Application' Date/Time: 13/12/2018 1:27:41 AM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x19c0 Faulting application start time: 0x01d4928305e39152 Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: 97ce2840-661f-4d9b-bc66-baabbe514d92 Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 13/12/2018 12:51:36 AM
Type: Error Category: 0
Event: 59 Source: SideBySide
Activation context generation failed for "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll".Error in manifest or policy file "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll" on line 0. Invalid Xml syntax.

Log: 'Application' Date/Time: 13/12/2018 12:51:36 AM
Type: Error Category: 0
Event: 59 Source: SideBySide
Activation context generation failed for "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll".Error in manifest or policy file "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll" on line 0. Invalid Xml syntax.

Log: 'Application' Date/Time: 13/12/2018 12:51:36 AM
Type: Error Category: 0
Event: 59 Source: SideBySide
Activation context generation failed for "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll".Error in manifest or policy file "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll" on line 0. Invalid Xml syntax.

Log: 'Application' Date/Time: 12/12/2018 11:37:24 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x1a04 Faulting application start time: 0x01d4927393f6607d Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: e03b49d8-8411-442e-9907-b5cdd749a5bf Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 12/12/2018 11:20:32 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x11f4 Faulting application start time: 0x01d4927132be516b Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: 2c55dee5-2ecc-4b2e-9cc1-0a85ab9c89f9 Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 12/12/2018 10:08:20 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x1aa8 Faulting application start time: 0x01d492672801ea3e Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: 7124b96d-2779-46d6-8542-733785de0f73 Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 


  • 0

#48
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

Go to

 

https://support.micr...a-hotfix-or-a-s

 

 Follow the: Let me fix it myself  instructions (I know it says for Vista but nothing has changed in this area so it should work.  If you want to be super safe you could copy the folder to a temp location or your desktop so you have a backup if something happens)

 

Then reboot and try your update.  If it still doesn't work then run VEW again.


  • 0

#49
Izzy1665

Izzy1665

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 121 posts

Tried the "Let me fix it myself" but no luck.

 

 

Vino's Event Viewer v01c run on Windows 7 in English
Report run at 15/12/2018 10:45:18 PM

Note: All dates below are in the format dd/mm/yyyy

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 15/12/2018 12:01:59 AM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 14/12/2018 3:07:49 AM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 13/12/2018 11:38:03 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 16/12/2018 3:45:20 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:45:17 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:45:15 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:45:14 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:45:14 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:45:12 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:45:10 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:45:09 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:45:08 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:45:07 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:45:04 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:45:03 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:45:01 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:44:59 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:44:59 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:44:59 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:44:57 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:44:56 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:44:54 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 16/12/2018 3:44:53 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 16/12/2018 3:40:40 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name img-prod-cms-rt-microsoft-com.akamaized.net timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 16/12/2018 3:39:16 AM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 16/12/2018 2:04:43 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name 1-edge-chat.facebook.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 16/12/2018 2:04:41 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name login.live.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 16/12/2018 2:04:37 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 15/12/2018 12:02:07 AM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 14/12/2018 4:04:12 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name delivery.h.switchadhub.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 14/12/2018 3:07:57 AM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 13/12/2018 11:38:05 PM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 13/12/2018 10:31:44 PM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 13/12/2018 9:42:09 PM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name star-mini.c10r.facebook.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 13/12/2018 9:41:00 PM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 13/12/2018 9:40:01 PM
Type: Warning Category: 0
Event: 1 Source: Microsoft-Windows-Kernel-Tm
The Transaction (UOW={65FC31B1-FF1D-11E8-BE87-00241D30C279}, Description='') was unable to be committed, and instead rolled back; this was due to an error message returned by CLFS while attempting to write a Prepare or Commit record for the Transaction.  The CLFS error returned was: 0xC0190052.

Log: 'System' Date/Time: 13/12/2018 9:24:27 PM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 13/12/2018 1:24:36 AM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 13/12/2018 12:07:05 AM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 12/12/2018 11:36:49 PM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 12/12/2018 11:19:43 PM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 12/12/2018 10:06:34 PM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

 

 

 

 

Vino's Event Viewer v01c run on Windows 7 in English
Report run at 15/12/2018 10:45:43 PM

Note: All dates below are in the format dd/mm/yyyy

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 16/12/2018 3:40:02 AM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x1a08 Faulting application start time: 0x01d494f0fd884d2a Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: 861410be-f5a7-408c-b00f-b7e5634f0e32 Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 16/12/2018 3:12:12 AM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: svchost.exe_WpnUserService, version: 10.0.17134.1, time stamp: 0xa38b9ab2 Faulting module name: NotificationController.dll, version: 10.0.17134.165, time stamp: 0xe0385185 Exception code: 0xc0000005 Fault offset: 0x000000000007a24d Faulting process id: 0x1f70 Faulting application start time: 0x01d494eacb97b64d Faulting application path: C:\WINDOWS\system32\svchost.exe Faulting module path: C:\Windows\System32\NotificationController.dll Report Id: 8583aa96-995d-4bd9-ac14-b61ddaf7b594 Faulting package full name:  Faulting package-relative application ID:

Log: 'Application' Date/Time: 16/12/2018 2:04:49 AM
Type: Error Category: 0
Event: 10031 Source: Microsoft-Windows-COMRuntime
An unmarshaling policy check was performed when unmarshaling a custom marshaled object and the class {41FD88F7-F295-4D39-91AC-A85F3149A05B} was rejected

Log: 'Application' Date/Time: 16/12/2018 2:04:49 AM
Type: Error Category: 0
Event: 10031 Source: Microsoft-Windows-COMRuntime
An unmarshaling policy check was performed when unmarshaling a custom marshaled object and the class {41FD88F7-F295-4D39-91AC-A85F3149A05B} was rejected

Log: 'Application' Date/Time: 15/12/2018 12:44:20 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x6e4 Faulting application start time: 0x01d49473e4748a54 Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: 57887c3d-b475-467a-abf2-7fb0ae0185ba Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 15/12/2018 2:03:13 AM
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-AppModel-State
Failure to load the application settings for package microsoft.skypeapp_kzf8qxf38zg5c. Error Code: -2147023887

Log: 'Application' Date/Time: 15/12/2018 2:03:10 AM
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-AppModel-State
Failure to load the application settings for package microsoft.microsoftofficehub_8wekyb3d8bbwe. Error Code: -2147023887

Log: 'Application' Date/Time: 15/12/2018 12:04:42 AM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x1a50 Faulting application start time: 0x01d49409bf5f4af7 Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: da69d72f-deea-4ec8-a7f0-5779093dcc19 Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 14/12/2018 3:08:41 AM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x1b98 Faulting application start time: 0x01d4935a4efd5312 Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: 4623e4ab-7dfa-48c7-8c0b-eed4e49f8375 Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 14/12/2018 3:08:15 AM
Type: Error Category: 3
Event: 454 Source: ESENT
svchost (2208,R,98) SRUJet: Database recovery/restore failed with unexpected error -543.

Log: 'Application' Date/Time: 14/12/2018 3:08:15 AM
Type: Error Category: 3
Event: 453 Source: ESENT
svchost (2208,R,98) SRUJet: Database C:\WINDOWS\system32\SRU\SRUDB.dat requires logfiles 10568-10573 (C:\WINDOWS\system32\SRU\SRU02948.log - C:\WINDOWS\system32\SRU\SRU.log) in order to recover successfully. Recovery could only locate logfiles up to 10572 (C:\WINDOWS\system32\SRU\SRU0294C.log).

Log: 'Application' Date/Time: 14/12/2018 12:30:17 AM
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-AppModel-State
Failure to load the application settings for package microsoft.skypeapp_kzf8qxf38zg5c. Error Code: -2147023887

Log: 'Application' Date/Time: 14/12/2018 12:30:13 AM
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-AppModel-State
Failure to load the application settings for package microsoft.microsoftofficehub_8wekyb3d8bbwe. Error Code: -2147023887

Log: 'Application' Date/Time: 13/12/2018 11:39:07 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x1b2c Faulting application start time: 0x01d4933d0750c470 Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: a450893c-b524-4ce5-8f2f-39bce36a5c25 Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 13/12/2018 10:31:59 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x1b10 Faulting application start time: 0x01d49333a47f0f56 Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: 9a64e999-9914-4775-a4e2-0c47cac39d05 Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 13/12/2018 9:41:32 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x18f8 Faulting application start time: 0x01d4932c9569d77e Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: dfaa606a-97c8-4fb5-b0d4-1360ac241ef8 Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 13/12/2018 9:25:03 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x1aa8 Faulting application start time: 0x01d4932a41ee72f5 Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: 25b700f7-51f8-4920-8ea2-75372ae97667 Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 13/12/2018 9:23:22 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: svchost.exe_WpnUserService, version: 10.0.17134.1, time stamp: 0xa38b9ab2 Faulting module name: NotificationController.dll, version: 10.0.17134.165, time stamp: 0xe0385185 Exception code: 0xc0000005 Fault offset: 0x000000000007c686 Faulting process id: 0xf0c Faulting application start time: 0x01d492a50c450935 Faulting application path: C:\WINDOWS\system32\svchost.exe Faulting module path: C:\Windows\System32\NotificationController.dll Report Id: af2ceb33-f6a0-458d-bbf3-c13e2f1ae2f9 Faulting package full name:  Faulting package-relative application ID:

Log: 'Application' Date/Time: 13/12/2018 4:24:27 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x1d38 Faulting application start time: 0x01d49300481a6d68 Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: 8de32dd7-11cb-4916-8ebf-d64fe2eaad0a Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 13/12/2018 5:30:47 AM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: svchost.exe_WpnUserService, version: 10.0.17134.1, time stamp: 0xa38b9ab2 Faulting module name: NotificationController.dll, version: 10.0.17134.165, time stamp: 0xe0385185 Exception code: 0xc0000005 Fault offset: 0x000000000007c686 Faulting process id: 0x22cc Faulting application start time: 0x01d492a0bd1cf7c7 Faulting application path: C:\WINDOWS\system32\svchost.exe Faulting module path: C:\Windows\System32\NotificationController.dll Report Id: 98a7195c-02b1-4927-8a40-382033dab41d Faulting package full name:  Faulting package-relative application ID:

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 15/12/2018 12:13:37 AM
Type: Warning Category: 7
Event: 508 Source: ESENT
taskhostw (3380,D,0) WebCacheLocal: A request to write to the file "C:\Users\Bob\AppData\Local\Microsoft\Windows\WebCache\V01.log" at offset 94208 (0x0000000000017000) for 4096 (0x00001000) bytes succeeded, but took an abnormally long time (36 seconds) to be serviced by the OS. This problem is likely due to faulty hardware. Please contact your hardware vendor for further assistance diagnosing the problem.

Log: 'Application' Date/Time: 15/12/2018 12:13:37 AM
Type: Warning Category: 7
Event: 508 Source: ESENT
taskhostw (3380,D,0) WebCacheLocal: A request to write to the file "C:\Users\Bob\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.jfm" at offset 0 (0x0000000000000000) for 8192 (0x00002000) bytes succeeded, but took an abnormally long time (36 seconds) to be serviced by the OS. This problem is likely due to faulty hardware. Please contact your hardware vendor for further assistance diagnosing the problem.

Log: 'Application' Date/Time: 15/12/2018 12:13:37 AM
Type: Warning Category: 1
Event: 533 Source: ESENT
taskhostw (3380,D,0) WebCacheLocal: A request to write to the file "C:\Users\Bob\AppData\Local\Microsoft\Windows\WebCache\V01.log" at offset 94208 (0x0000000000017000) for 4096 (0x00001000) bytes has not completed for 36 second(s). This problem is likely due to faulty hardware. Please contact your hardware vendor for further assistance diagnosing the problem.

Log: 'Application' Date/Time: 15/12/2018 12:13:37 AM
Type: Warning Category: 1
Event: 533 Source: ESENT
taskhostw (3380,D,0) WebCacheLocal: A request to write to the file "C:\Users\Bob\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.jfm" at offset 0 (0x0000000000000000) for 8192 (0x00002000) bytes has not completed for 36 second(s). This problem is likely due to faulty hardware. Please contact your hardware vendor for further assistance diagnosing the problem.

Log: 'Application' Date/Time: 15/12/2018 12:04:38 AM
Type: Warning Category: 3
Event: 472 Source: ESENT
Video.UI (6736,R,98) {B68B87F6-5F09-4311-81D4-738D26FC6522}: The shadow header page of file C:\Users\Bob\AppData\Local\Packages\Microsoft.ZuneVideo_8wekyb3d8bbwe\LocalState\Database\a396c4eacf5f58ba\EntClientDb.edb was damaged. The primary header page (8192 bytes) was used instead.

 


Edited by Izzy1665, 15 December 2018 - 09:48 PM.

  • 0

#50
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

The fix probably did what it was supposed to since we don't see:
 

 

Log: 'System' Date/Time: 13/12/2018 9:40:01 PM
Type: Warning Category: 0
Event: 1 Source: Microsoft-Windows-Kernel-Tm
The Transaction (UOW={65FC31B1-FF1D-11E8-BE87-00241D30C279}, Description='') was unable to be committed, and instead rolled back; this was due to an error message returned by CLFS while attempting to write a Prepare or Commit record for the Transaction.  The CLFS error returned was: 0xC0190052.

 

 

any more.  That just didn't help with the update problem.

 

Why are we getting so many:

 

Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

 

 

 

Are you having problems shutting it down or does it crash hard?

 

In the FRST Search Box put:

 

Video.UI.exe;EntPlat.dl;NotificationController.dll

 

then hit Search Files.  You will get one file.  Please post it.


  • 0

#51
Izzy1665

Izzy1665

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 121 posts

It does occasionally crash, I believe I have another hard drive going bad. Replaced it a year or so ago but I get a few squeaks every once in awhile and it does come from the front of the computer where the drive is located although I haven't noticed it anytime around a crash. I purchased a new hard drive this past week and will look into imaging this hard drive onto the new one sometime after Christmas. Any recommendation on doing that on the cheap?

 

 

 

Farbar Recovery Scan Tool (x64) Version: 09.12.2018
Ran by Bob (16-12-2018 19:38:19)
Running from C:\Users\Bob\Desktop\RKinner Repairs
Boot Mode: Normal

================== Search Files: "Video.UI.exe;EntPlat.dl;NotificationController.dll" =============

C:\Windows\WinSxS\amd64_microsoft-onecore-notificationcontroller_31bf3856ad364e35_10.0.17134.1_none_e88b65d2a2a819ef\NotificationController.dll
[2018-04-11 18:34][2018-04-11 18:34] 001214976 _____ (Microsoft Corporation) F3E13B617538BE9360095499D2337FB7 [File is digitally signed]

C:\Windows\WinSxS\amd64_microsoft-onecore-notificationcontroller_31bf3856ad364e35_10.0.17134.165_none_e49f88768fa0acb2\NotificationController.dll
[2018-08-25 00:44][2018-07-06 01:54] 001214976 _____ (Microsoft Corporation) 28EC6113CEF09F1976C4483373B74F68 [File is digitally signed]

C:\Windows\System32\NotificationController.dll
[2018-08-25 00:44][2018-07-06 01:54] 001214976 _____ (Microsoft Corporation) 28EC6113CEF09F1976C4483373B74F68 [File is digitally signed]

C:\Windows\InfusedApps\Packages\Microsoft.ZuneVideo_10.17112.19011.0_x64__8wekyb3d8bbwe\Video.UI.exe
[2018-04-12 04:22][2018-04-12 04:22] 026934272 _____ () BEA19F0655789B224CEF4C5AFCE49AD1 [File not signed]

C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
[2018-06-25 23:52][2018-06-25 23:52] 027126784 _____ () 63BC7D61578DE1517657A8C100607CA6 [File not signed]


====== End of Search ======


  • 0

#52
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

I had a typo on the last File Search.

 

Should have been

 

EntPlat.dll

 

Can you repeat with just the above?  Do you use ZuneVideo?

 

I use the free version of Macrium for Home Users to clone hard drives:

 

https://www.macrium.com/reflectfree

 

(Not the trial)  Seems to work fairly well.

 

and a USB to SATA adapter

Amazon has lots.  Here is one for $12

StarTech USB 3.0 to 2.5" SATA III Hard Drive Adapter Cable w/ UASP - SATA to USB 3.0 Converter for SSD/HDD - Hard Drive Adapter Cable

 

 

Let's run Speccy again and see if the SMART info shows the drive failing.

 

Get the free version of Speccy:

http://www.filehippo...ownload_speccy/ 

(Look in the upper right for the Download
Latest Version button  - Do NOT press the large Start Download button on the upper left!)  
Download, Save and Install it.  Tell it you do not need CCLEANER.    Run Speccy.  When it finishes (the little icon in the bottom left will stop moving),
File, Save as Text File,  (to your desktop) note the name it gives. OK.  Open the file in notepad and delete the line that gives the serial number of your Operating System.  
(It will be near the top,  10-20  lines down.) Save the file.  Attach the file to your next post.  Attaching the log is the best option as it is too big for the forum.  Attaching is a multi step process.

First click on More Reply Options
Then scroll down to where you see
Choose File and click on it.  Point it at the file and hit Open.
Now click on Attach this file.


  • 0

#53
Izzy1665

Izzy1665

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 121 posts

I'll check out Macrium and the SATA adapter, thanks for the recommendations.

 

 

Here is the new FRST log.

 

Farbar Recovery Scan Tool (x64) Version: 09.12.2018
Ran by Bob (16-12-2018 23:56:34)
Running from C:\Users\Bob\Desktop\RKinner Repairs
Boot Mode: Normal

================== Search Files: "Video.UI.exe;EntPlat.dll;NotificationController.dll" =============

C:\Windows\WinSxS\amd64_microsoft-onecore-notificationcontroller_31bf3856ad364e35_10.0.17134.1_none_e88b65d2a2a819ef\NotificationController.dll
[2018-04-11 18:34][2018-04-11 18:34] 001214976 _____ (Microsoft Corporation) F3E13B617538BE9360095499D2337FB7 [File is digitally signed]

C:\Windows\WinSxS\amd64_microsoft-onecore-notificationcontroller_31bf3856ad364e35_10.0.17134.165_none_e49f88768fa0acb2\NotificationController.dll
[2018-08-25 00:44][2018-07-06 01:54] 001214976 _____ (Microsoft Corporation) 28EC6113CEF09F1976C4483373B74F68 [File is digitally signed]

C:\Windows\System32\NotificationController.dll
[2018-08-25 00:44][2018-07-06 01:54] 001214976 _____ (Microsoft Corporation) 28EC6113CEF09F1976C4483373B74F68 [File is digitally signed]

C:\Windows\InfusedApps\Packages\Microsoft.ZuneVideo_10.17112.19011.0_x64__8wekyb3d8bbwe\EntPlat.dll
[2018-04-12 04:22][2018-04-12 04:22] 010077184 _____ () 2CB789282AAABA5BC0E9B9044A5A3E69 [File not signed]

C:\Windows\InfusedApps\Packages\Microsoft.ZuneVideo_10.17112.19011.0_x64__8wekyb3d8bbwe\Video.UI.exe
[2018-04-12 04:22][2018-04-12 04:22] 026934272 _____ () BEA19F0655789B224CEF4C5AFCE49AD1 [File not signed]

C:\Windows\InfusedApps\Packages\Microsoft.ZuneMusic_10.17112.19011.0_x64__8wekyb3d8bbwe\EntPlat.dll
[2018-04-12 04:22][2018-04-12 04:22] 010077184 _____ () 2CB789282AAABA5BC0E9B9044A5A3E69 [File not signed]

C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll
[2018-06-25 23:52][2018-06-25 23:52] 009360384 _____ () 408C78F277797921AD78BE4C222E295B [File not signed]

C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
[2018-06-25 23:52][2018-06-25 23:52] 027126784 _____ () 63BC7D61578DE1517657A8C100607CA6 [File not signed]

C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.18052.11111.0_x64__8wekyb3d8bbwe\EntPlat.dll
[2018-06-19 15:07][2018-06-19 15:07] 009347584 _____ () 76BA1F1D163CF83B284BE4DC57171A6A [File not signed]

C:\Program Files\WindowsApps\Microsoft.XboxCompanion_1.4.3.0_x64__8wekyb3d8bbwe\EntPlat.dll
[2018-05-19 11:26][2018-05-19 11:27] 009019008 _____ (Microsoft Corporation) 6DDF52CA778C67D5F586D6DB53D0BAE7 [File is digitally signed]


====== End of Search ======

 

 

 

 

Attached Files


  • 0

#54
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

SMART is not showing a problem with the drive other than UltraDMA CRC Error Count.  This is usually caused by bad cabling on a desktop.  Perhaps on a laptop you should reseat the hard drive.  Perhaps there is a little corrosion on the connector.

 

Go back into Services.msc and change the notification service that we disabled back to Manual.  OK

 

Then:

 

Download OOSU10.exe:

https://www.oo-softw...com/en/shutup10

Save it then Right click and Run As Admin.

Change each item in the first column to green if the column on the far right says Yes.

Close the program and reboot.

 

Run VEW and post both logs.


  • 0

#55
Izzy1665

Izzy1665

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 121 posts

I went back through and reviewed our notes from this session and the only thing you had me disable this time was the Delivery Optimization which Windows has already reset to Automatic at some point.

 

 

Vino's Event Viewer v01c run on Windows 7 in English
Report run at 19/12/2018 11:10:10 AM

Note: All dates below are in the format dd/mm/yyyy

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 18/12/2018 3:49:23 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 16/12/2018 3:50:21 AM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 15/12/2018 12:01:59 AM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 14/12/2018 3:07:49 AM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

Log: 'System' Date/Time: 13/12/2018 11:38:03 PM
Type: Critical Category: 63
Event: 41 Source: Microsoft-Windows-Kernel-Power
The system has rebooted without cleanly shutting down first. This error could be caused if the system stopped responding, crashed, or lost power unexpectedly.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 19/12/2018 4:09:00 PM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  and APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Log: 'System' Date/Time: 19/12/2018 4:09:00 PM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  and APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Log: 'System' Date/Time: 19/12/2018 4:08:52 PM
Type: Error Category: 0
Event: 5003 Source: athur
NETGEAR WNA1100 N150 Wireless USB Adapter : Could not find a network adapter.

Log: 'System' Date/Time: 19/12/2018 4:03:41 PM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 19/12/2018 4:59:06 AM
Type: Error Category: 1
Event: 20 Source: Microsoft-Windows-WindowsUpdateClient
Installation Failure: Windows failed to install the following update with error 0x8024200D: 2018-12 Cumulative Update for Windows 10 Version 1803 for x64-based Systems (KB4471324).

Log: 'System' Date/Time: 19/12/2018 4:40:23 AM
Type: Error Category: 0
Event: 5003 Source: athur
NETGEAR WNA1100 N150 Wireless USB Adapter : Could not find a network adapter.

Log: 'System' Date/Time: 19/12/2018 4:40:16 AM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  and APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Log: 'System' Date/Time: 19/12/2018 4:40:16 AM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  and APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Log: 'System' Date/Time: 19/12/2018 4:38:37 AM
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The Microsoft Account Sign-in Assistant service failed to start due to the following error:  The service did not start due to a logon failure.

Log: 'System' Date/Time: 19/12/2018 4:38:37 AM
Type: Error Category: 0
Event: 7038 Source: Service Control Manager
The wlidsvc service was unable to log on as NT AUTHORITY\SYSTEM with the currently configured password due to the following error:  The request is not supported.  To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).

Log: 'System' Date/Time: 19/12/2018 3:53:59 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 19/12/2018 1:19:26 AM
Type: Error Category: 0
Event: 7031 Source: Service Control Manager
The WpnUserService_3173d service terminated unexpectedly.  It has done this 2 time(s).  The following corrective action will be taken in 10000 milliseconds: Restart the service.

Log: 'System' Date/Time: 19/12/2018 12:37:44 AM
Type: Error Category: 0
Event: 7031 Source: Service Control Manager
The WpnUserService_3173d service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 10000 milliseconds: Restart the service.

Log: 'System' Date/Time: 18/12/2018 11:21:42 PM
Type: Error Category: 0
Event: 7023 Source: Service Control Manager
The Peer Name Resolution Protocol service terminated with the following error:  Unable to access a key.

Log: 'System' Date/Time: 18/12/2018 11:21:42 PM
Type: Error Category: 0
Event: 102 Source: Microsoft-Windows-PNRPSvc
The Peer Name Resolution Protocol cloud did not start because the creation of the default identity failed with error code: 0x80630203.

Log: 'System' Date/Time: 18/12/2018 4:08:05 PM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 18/12/2018 4:08:00 PM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 18/12/2018 4:07:58 PM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 18/12/2018 4:07:57 PM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 18/12/2018 4:07:56 PM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 19/12/2018 4:08:31 PM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 19/12/2018 4:40:02 AM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 18/12/2018 3:49:24 PM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 18/12/2018 3:17:08 PM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 18/12/2018 5:21:38 AM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 18/12/2018 1:10:24 AM
Type: Warning Category: 0
Event: 134 Source: Microsoft-Windows-Time-Service
NtpClient was unable to set a manual peer to use as a time source because of DNS resolution error on 'time.windows.com,0x9'. NtpClient will try again in 15 minutes and double the reattempt interval thereafter. The error was: No such host is known. (0x80072AF9)

Log: 'System' Date/Time: 17/12/2018 4:36:26 AM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 17/12/2018 12:21:26 AM
Type: Warning Category: 0
Event: 134 Source: Microsoft-Windows-Time-Service
NtpClient was unable to set a manual peer to use as a time source because of DNS resolution error on 'time.windows.com,0x9'. NtpClient will try again in 15 minutes and double the reattempt interval thereafter. The error was: No such host is known. (0x80072AF9)

Log: 'System' Date/Time: 16/12/2018 2:21:23 PM
Type: Warning Category: 0
Event: 134 Source: Microsoft-Windows-Time-Service
NtpClient was unable to set a manual peer to use as a time source because of DNS resolution error on 'time.windows.com,0x9'. NtpClient will try again in 15 minutes and double the reattempt interval thereafter. The error was: No such host is known. (0x80072AF9)

Log: 'System' Date/Time: 16/12/2018 4:50:43 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name delivery.h.switchadhub.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 16/12/2018 3:50:23 AM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 16/12/2018 3:40:40 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name img-prod-cms-rt-microsoft-com.akamaized.net timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 16/12/2018 3:39:16 AM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 16/12/2018 2:04:43 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name 1-edge-chat.facebook.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 16/12/2018 2:04:41 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name login.live.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 16/12/2018 2:04:37 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name wpad timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 15/12/2018 12:02:07 AM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 14/12/2018 4:04:12 AM
Type: Warning Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
Name resolution for the name delivery.h.switchadhub.com timed out after none of the configured DNS servers responded.

Log: 'System' Date/Time: 14/12/2018 3:07:57 AM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

Log: 'System' Date/Time: 13/12/2018 11:38:05 PM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

 

 

 

Vino's Event Viewer v01c run on Windows 7 in English
Report run at 19/12/2018 11:11:04 AM

Note: All dates below are in the format dd/mm/yyyy

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 19/12/2018 4:09:27 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x1894 Faulting application start time: 0x01d497b5304145f3 Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: be0a1c3a-52be-4fd9-afa7-2d082df9b8f1 Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 19/12/2018 4:03:09 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x18e8 Faulting application start time: 0x01d497b44d9e1bff Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: 928f0bc6-babe-42f4-a122-b63b7d59180d Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 19/12/2018 4:41:02 AM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x17c4 Faulting application start time: 0x01d49754f73770f5 Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: ec4dec82-03dd-4050-a0d9-b2bd6f562857 Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

Log: 'Application' Date/Time: 19/12/2018 4:38:33 AM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: svchost.exe_WpnUserService, version: 10.0.17134.1, time stamp: 0xa38b9ab2 Faulting module name: NotificationController.dll, version: 10.0.17134.165, time stamp: 0xe0385185 Exception code: 0xc0000005 Fault offset: 0x000000000007c686 Faulting process id: 0x48c Faulting application start time: 0x01d4973b83cb7d7e Faulting application path: C:\WINDOWS\system32\svchost.exe Faulting module path: C:\Windows\System32\NotificationController.dll Report Id: 4170d786-7c7b-4387-a407-98e3ca93e94e Faulting package full name:  Faulting package-relative application ID:

Log: 'Application' Date/Time: 19/12/2018 3:54:13 AM
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-AppModel-State
Failure to load the application settings for package microsoft.skypeapp_kzf8qxf38zg5c. Error Code: -2147023887

Log: 'Application' Date/Time: 19/12/2018 3:54:10 AM
Type: Error Category: 0
Event: 10 Source: Microsoft-Windows-AppModel-State
Failure to load the application settings for package microsoft.microsoftofficehub_8wekyb3d8bbwe. Error Code: -2147023887

Log: 'Application' Date/Time: 19/12/2018 1:19:25 AM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: svchost.exe_WpnUserService, version: 10.0.17134.1, time stamp: 0xa38b9ab2 Faulting module name: NotificationController.dll, version: 10.0.17134.165, time stamp: 0xe0385185 Exception code: 0xc0000005 Fault offset: 0x000000000007c686 Faulting process id: 0x11c0 Faulting application start time: 0x01d49733146666da Faulting application path: C:\WINDOWS\system32\svchost.exe Faulting module path: C:\Windows\System32\NotificationController.dll Report Id: d9a2ab6a-4c6f-4968-9262-16397d7b68a3 Faulting package full name:  Faulting package-relative application ID:

Log: 'Application' Date/Time: 19/12/2018 12:37:34 AM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: svchost.exe_WpnUserService, version: 10.0.17134.1, time stamp: 0xa38b9ab2 Faulting module name: NotificationController.dll, version: 10.0.17134.165, time stamp: 0xe0385185 Exception code: 0xc0000005 Fault offset: 0x000000000007c686 Faulting process id: 0x19c4 Faulting application start time: 0x01d4972ff78a8991 Faulting application path: C:\WINDOWS\system32\svchost.exe Faulting module path: C:\Windows\System32\NotificationController.dll Report Id: 4e217c6d-9d75-4d6c-8f5c-144f7170d3ab Faulting package full name:  Faulting package-relative application ID:

Log: 'Application' Date/Time: 18/12/2018 11:21:44 PM
Type: Error Category: 0
Event: 59 Source: SideBySide
Activation context generation failed for "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll".Error in manifest or policy file "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll" on line 0. Invalid Xml syntax.

Log: 'Application' Date/Time: 18/12/2018 11:21:44 PM
Type: Error Category: 0
Event: 59 Source: SideBySide
Activation context generation failed for "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll".Error in manifest or policy file "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll" on line 0. Invalid Xml syntax.

Log: 'Application' Date/Time: 18/12/2018 11:21:44 PM
Type: Error Category: 0
Event: 59 Source: SideBySide
Activation context generation failed for "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll".Error in manifest or policy file "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll" on line 0. Invalid Xml syntax.

Log: 'Application' Date/Time: 18/12/2018 11:21:44 PM
Type: Error Category: 0
Event: 59 Source: SideBySide
Activation context generation failed for "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll".Error in manifest or policy file "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll" on line 0. Invalid Xml syntax.

Log: 'Application' Date/Time: 18/12/2018 11:21:44 PM
Type: Error Category: 0
Event: 59 Source: SideBySide
Activation context generation failed for "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll".Error in manifest or policy file "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll" on line 0. Invalid Xml syntax.

Log: 'Application' Date/Time: 18/12/2018 11:21:44 PM
Type: Error Category: 0
Event: 59 Source: SideBySide
Activation context generation failed for "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll".Error in manifest or policy file "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll" on line 0. Invalid Xml syntax.

Log: 'Application' Date/Time: 18/12/2018 11:21:44 PM
Type: Error Category: 0
Event: 59 Source: SideBySide
Activation context generation failed for "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll".Error in manifest or policy file "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll" on line 0. Invalid Xml syntax.

Log: 'Application' Date/Time: 18/12/2018 11:21:44 PM
Type: Error Category: 0
Event: 59 Source: SideBySide
Activation context generation failed for "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll".Error in manifest or policy file "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll" on line 0. Invalid Xml syntax.

Log: 'Application' Date/Time: 18/12/2018 11:21:44 PM
Type: Error Category: 0
Event: 59 Source: SideBySide
Activation context generation failed for "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll".Error in manifest or policy file "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll" on line 0. Invalid Xml syntax.

Log: 'Application' Date/Time: 18/12/2018 11:21:44 PM
Type: Error Category: 0
Event: 59 Source: SideBySide
Activation context generation failed for "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll".Error in manifest or policy file "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll" on line 0. Invalid Xml syntax.

Log: 'Application' Date/Time: 18/12/2018 11:21:44 PM
Type: Error Category: 0
Event: 59 Source: SideBySide
Activation context generation failed for "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll".Error in manifest or policy file "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll" on line 0. Invalid Xml syntax.

Log: 'Application' Date/Time: 18/12/2018 11:21:44 PM
Type: Error Category: 0
Event: 59 Source: SideBySide
Activation context generation failed for "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll".Error in manifest or policy file "C:\WINDOWS\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll" on line 0. Invalid Xml syntax.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 15/12/2018 12:13:37 AM
Type: Warning Category: 7
Event: 508 Source: ESENT
taskhostw (3380,D,0) WebCacheLocal: A request to write to the file "C:\Users\Bob\AppData\Local\Microsoft\Windows\WebCache\V01.log" at offset 94208 (0x0000000000017000) for 4096 (0x00001000) bytes succeeded, but took an abnormally long time (36 seconds) to be serviced by the OS. This problem is likely due to faulty hardware. Please contact your hardware vendor for further assistance diagnosing the problem.

Log: 'Application' Date/Time: 15/12/2018 12:13:37 AM
Type: Warning Category: 7
Event: 508 Source: ESENT
taskhostw (3380,D,0) WebCacheLocal: A request to write to the file "C:\Users\Bob\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.jfm" at offset 0 (0x0000000000000000) for 8192 (0x00002000) bytes succeeded, but took an abnormally long time (36 seconds) to be serviced by the OS. This problem is likely due to faulty hardware. Please contact your hardware vendor for further assistance diagnosing the problem.

Log: 'Application' Date/Time: 15/12/2018 12:13:37 AM
Type: Warning Category: 1
Event: 533 Source: ESENT
taskhostw (3380,D,0) WebCacheLocal: A request to write to the file "C:\Users\Bob\AppData\Local\Microsoft\Windows\WebCache\V01.log" at offset 94208 (0x0000000000017000) for 4096 (0x00001000) bytes has not completed for 36 second(s). This problem is likely due to faulty hardware. Please contact your hardware vendor for further assistance diagnosing the problem.

Log: 'Application' Date/Time: 15/12/2018 12:13:37 AM
Type: Warning Category: 1
Event: 533 Source: ESENT
taskhostw (3380,D,0) WebCacheLocal: A request to write to the file "C:\Users\Bob\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.jfm" at offset 0 (0x0000000000000000) for 8192 (0x00002000) bytes has not completed for 36 second(s). This problem is likely due to faulty hardware. Please contact your hardware vendor for further assistance diagnosing the problem.

Log: 'Application' Date/Time: 15/12/2018 12:04:38 AM
Type: Warning Category: 3
Event: 472 Source: ESENT
Video.UI (6736,R,98) {B68B87F6-5F09-4311-81D4-738D26FC6522}: The shadow header page of file C:\Users\Bob\AppData\Local\Packages\Microsoft.ZuneVideo_8wekyb3d8bbwe\LocalState\Database\a396c4eacf5f58ba\EntClientDb.edb was damaged. The primary header page (8192 bytes) was used instead.

 


Edited by Izzy1665, 19 December 2018 - 10:13 AM.

  • 0

Advertisements


#56
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

Sorry for the delay.  Internet has not been cooperative.  Keeps going down every time I get on the PC.

 

Did you install OOSU10.exe?

 

In FRST put

PrintConfig.dll

 

in the Search Box and Search Files.  We are getting an error that complains about PrintConfig.dll

 

Follow the instructions here:

 

https://support.micr...blems-with-apps

 

When you get to Step 2 see if it can repair or reset Microsoft.ZuneVideo

 

Then clear the alarms:

 

Copy the next line:

FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i"
 

 

Then open an Elevated Command Prompt and right click and Paste (or Edit then Paste) and the copied line should appear.  Press Enter.

 

Reboot and run VEW as before.


  • 0

#57
Izzy1665

Izzy1665

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 121 posts

Yes, I did install OOSU10.exe and checked those you said to check.

 

 

 

Here is the result of the FRST "PrintConfig.dll" search

 

Farbar Recovery Scan Tool (x64) Version: 19.12.2018 01
Ran by Bob (19-12-2018 20:17:15)
Running from C:\Users\Bob\Desktop\RKinner Repairs
Boot Mode: Normal

================== Search Files: "PrintConfig.dll" =============

C:\Windows\WinSxS\x86_dual_prnms003.inf_31bf3856ad364e35_10.0.17134.1_none_9ff852eef331d2b3\I386\PrintConfig.dll
[2018-04-11 18:33][2018-04-11 18:33] 002752000 _____ (Microsoft Corporation) 829FAC2F733406C1F8DE54B2BC0B1D4A [File is digitally signed]

C:\Windows\WinSxS\amd64_dual_prnms003.inf_31bf3856ad364e35_10.0.17134.1_none_fc16ee72ab8f43e9\Amd64\PrintConfig.dll
[2018-04-11 18:33][2018-04-11 18:33] 003441152 _____ () F85923A5DD6C11DCD91788DCBFBBC3D0 [File not signed]

C:\Windows\SysWOW64\PrintConfig.dll
[2018-05-20 02:10][2018-04-11 18:33] 002752000 _____ (Microsoft Corporation) 829FAC2F733406C1F8DE54B2BC0B1D4A [File is digitally signed]

C:\Windows\System32\spool\drivers\x64\{27D82447-5711-4A60-B1E2-C24B3F7EBE7D}\PrintConfig.dll
[2018-04-11 18:33][2018-04-11 18:33] 003441152 _____ () F85923A5DD6C11DCD91788DCBFBBC3D0 [File not signed]

C:\Windows\System32\spool\drivers\x64\3\PrintConfig.dll
[2018-04-11 18:33][2018-04-11 18:33] 003441152 _____ (Microsoft Corporation) AD62FCEC1CB8ECD7C0E3DFD2FA79FDE4 [File is digitally signed]

C:\Windows\System32\spool\drivers\W32X86\3\PrintConfig.dll
[2018-04-11 18:33][2018-04-11 18:33] 002752000 _____ (Microsoft Corporation) 829FAC2F733406C1F8DE54B2BC0B1D4A [File is digitally signed]

C:\Windows\System32\DriverStore\FileRepository\prnms003.inf_x86_1b73e82904a4452d\I386\PrintConfig.dll
[2018-04-11 18:33][2018-04-11 18:33] 002752000 _____ (Microsoft Corporation) 829FAC2F733406C1F8DE54B2BC0B1D4A [File is digitally signed]

C:\Windows\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll
[2018-04-11 18:33][2018-04-11 18:33] 003441152 _____ () F85923A5DD6C11DCD91788DCBFBBC3D0 [File not signed]


====== End of Search ======

 

 

 

 

Microsoft.ZuneVideo does not show because it is built into the Microsoft XBox software per a little Googling I did. I did reset each XBox listing in the apps section in hopes of getting to that Zunvideo.

 

My Microsoft store currently looks like the following:

2cmu00o.jpg

 

 

 

 

 

 

For some reason, I'm only getting these logs out of VEW now.

 

 

Vino's Event Viewer v01c run on Windows 7 in English
Report run at 19/12/2018 9:38:48 PM

Note: All dates below are in the format dd/mm/yyyy

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 20/12/2018 2:06:18 AM
Type: Error Category: 0
Event: 7024 Source: Service Control Manager
The event description cannot be found.

Log: 'System' Date/Time: 20/12/2018 2:04:11 AM
Type: Error Category: 0
Event: 5003 Source: athur
NETGEAR WNA1100 N150 Wireless USB Adapter : Could not find a network adapter.

Log: 'System' Date/Time: 20/12/2018 2:04:09 AM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  and APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Log: 'System' Date/Time: 20/12/2018 2:04:09 AM
Type: Error Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  and APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 20/12/2018 2:03:47 AM
Type: Warning Category: 0
Event: 28 Source: BTHUSB
The local adapter does not support Bluetooth Low Energy.

 

 

 

Vino's Event Viewer v01c run on Windows 7 in English
Report run at 19/12/2018 9:39:07 PM

Note: All dates below are in the format dd/mm/yyyy

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 20/12/2018 2:04:43 AM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Video.UI.exe, version: 10.18052.1061.0, time stamp: 0x5b10981a Faulting module name: EntPlat.dll, version: 10.18052.1061.0, time stamp: 0x5b10876c Exception code: 0xc0000005 Fault offset: 0x00000000003b62e0 Faulting process id: 0x1b70 Faulting application start time: 0x01d4980855aa199b Faulting application path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe Faulting module path: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll Report Id: 953de32b-3fcc-442f-89f2-0236eda54c78 Faulting package full name: Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.ZuneVideo

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 


Edited by Izzy1665, 19 December 2018 - 08:42 PM.

  • 0

#58
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

We just cleared the old alarms so that we only see new ones.

 

The Zune can be removed:

 

https://www.laptopma...10-builtin-apps

 

It's under Movies in the list they give.  If it's something you use then you can reboot then restore it using their method.

 

The second entry in your search Files list
 

C:\Windows\WinSxS\amd64_dual_prnms003.inf_31bf3856ad364e35_10.0.17134.1_none_fc16ee72ab8f43e9\Amd64\PrintConfig.dll
[2018-04-11 18:33][2018-04-11 18:33] 003441152 _____ () F85923A5DD6C11DCD91788DCBFBBC3D0 [File not signed]

 

 

is defective.

 

It should say:


 

C:\Windows\WinSxS\amd64_dual_prnms003.inf_31bf3856ad364e35_10.0.17134.1_none_fc16ee72ab8f43e9\Amd64\PrintConfig.dll
[2018-04-11 18:33][2018-04-11 18:33] 003441152 _____ (Microsoft Corporation) AD62FCEC1CB8ECD7C0E3DFD2FA79FDE4 [File is digitally signed]
 

 

 

so you probably got a bad download.  I would have expected SFC to complain.  It wouldn't be able to fix it because there is no good copy of the file available. 

 

There are two other instances of the bad file. 


 

C:\Windows\System32\spool\drivers\x64\{27D82447-5711-4A60-B1E2-C24B3F7EBE7D}\PrintConfig.dll
[2018-04-11 18:33][2018-04-11 18:33] 003441152 _____ () F85923A5DD6C11DCD91788DCBFBBC3D0 [File not signed]

...
C:\Windows\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll
[2018-04-11 18:33][2018-04-11 18:33] 003441152 _____ () F85923A5DD6C11DCD91788DCBFBBC3D0 [File not signed]

 

 

 

We need to replace them all at once and usually the owner is TrustedInstaller and we don't have permission to replace them.  You will need to go in and Take Ownership of the file as Administrator then give Administrator Full Control of all three.

https://www.laptopma...g-file-explorer

 

I can't upload a good file through the forum as it's too big.  I will have to use a file sharing site.  Will give you a link in my next post.

 

 

 

 


  • 0

#59
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

Link to zip file:

 

https://wetransfer.com/downloads/ac659b08c3eca208691e75e904f239e420181220044954/a96f6c05177ed652af8f41695fbcbca020181220044954/83dac9

 

Save and right click and ExtractAll, Extract.  Rerun the last FRST File Search so we can verify that you got a good copy.


  • 0

#60
Izzy1665

Izzy1665

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 121 posts

Ok, I took ownership of all 3 files.

 

 

Downloaded the Zip file and extracted it.

 

FRST Result:

 

Farbar Recovery Scan Tool (x64) Version: 19.12.2018 01
Ran by Bob (20-12-2018 11:17:13)
Running from C:\Users\Bob\Desktop\RKinner Repairs
Boot Mode: Normal

================== Search Files: "Printconfig.dll" =============

C:\Windows\WinSxS\x86_dual_prnms003.inf_31bf3856ad364e35_10.0.17134.1_none_9ff852eef331d2b3\I386\PrintConfig.dll
[2018-04-11 18:33][2018-04-11 18:33] 002752000 _____ (Microsoft Corporation) 829FAC2F733406C1F8DE54B2BC0B1D4A [File is digitally signed]

C:\Windows\WinSxS\amd64_dual_prnms003.inf_31bf3856ad364e35_10.0.17134.1_none_fc16ee72ab8f43e9\Amd64\PrintConfig.dll
[2018-04-11 18:33][2018-04-11 18:33] 003441152 _____ () F85923A5DD6C11DCD91788DCBFBBC3D0 [File not signed]

C:\Windows\SysWOW64\PrintConfig.dll
[2018-05-20 02:10][2018-04-11 18:33] 002752000 _____ (Microsoft Corporation) 829FAC2F733406C1F8DE54B2BC0B1D4A [File is digitally signed]

C:\Windows\System32\spool\drivers\x64\{27D82447-5711-4A60-B1E2-C24B3F7EBE7D}\PrintConfig.dll
[2018-04-11 18:33][2018-04-11 18:33] 003441152 _____ () F85923A5DD6C11DCD91788DCBFBBC3D0 [File not signed]

C:\Windows\System32\spool\drivers\x64\3\PrintConfig.dll
[2018-04-11 18:33][2018-04-11 18:33] 003441152 _____ (Microsoft Corporation) AD62FCEC1CB8ECD7C0E3DFD2FA79FDE4 [File is digitally signed]

C:\Windows\System32\spool\drivers\W32X86\3\PrintConfig.dll
[2018-04-11 18:33][2018-04-11 18:33] 002752000 _____ (Microsoft Corporation) 829FAC2F733406C1F8DE54B2BC0B1D4A [File is digitally signed]

C:\Windows\System32\DriverStore\FileRepository\prnms003.inf_x86_1b73e82904a4452d\I386\PrintConfig.dll
[2018-04-11 18:33][2018-04-11 18:33] 002752000 _____ (Microsoft Corporation) 829FAC2F733406C1F8DE54B2BC0B1D4A [File is digitally signed]

C:\Windows\System32\DriverStore\FileRepository\prnms003.inf_amd64_995df3a27d527cea\Amd64\PrintConfig.dll
[2018-04-11 18:33][2018-04-11 18:33] 003441152 _____ () F85923A5DD6C11DCD91788DCBFBBC3D0 [File not signed]

C:\Users\Bob\Downloads\PrintConfig\PrintConfig.dll
[2018-12-20 10:23][2018-04-11 18:33] 003441152 _____ (Microsoft Corporation) AD62FCEC1CB8ECD7C0E3DFD2FA79FDE4 [File is digitally signed]


====== End of Search ======


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP