Computer hangs on aswRvrt.sys
I have done the first steps stated in this article:
http://www.geekstogo...tsys-windows-7/
I have tried windows startup repair and nothing worked. I have tried chkdsk and that did not work either. I can boot to "safe mode" and "safe mode with networking" with no problems ( aside from it hangin on aswRvrt.sys but login is available). Please Help.
Here is the text file:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 28-01-2015
Ran by SYSTEM on MININT-EVD8OQ7 on 29-01-2015 09:47:31
Running from F:\
Platform: Windows 7 Professional (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Recovery
The current controlset is ControlSet001
ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6463592 2012-02-02] (Realtek Semiconductor)
HKLM\...\Run: [tvncontrol] => C:\Program Files\TightVNC\tvnserver.exe [2122224 2013-06-06] (GlavSoft LLC.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [Super-Charger] => C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [502288 2012-01-03] (MSI)
HKLM-x32\...\Run: [Intuit SyncManager] => C:\Program Files (x86)\Common Files\Intuit\Sync\IntuitSyncManager.exe [2771832 2012-12-22] (Intuit Inc. All rights reserved.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2014-10-11] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3890208 2014-08-08] (AVAST Software)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-04-17] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [55568 2014-12-08] (Raptr, Inc)
HKLM\...\RunOnce: [*WerKernelReporting] => C:\Windows\SYSTEM32\WerFault.exe [415232 2009-07-13] (Microsoft Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\cboyce\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2013-01-22] (Google Inc.)
HKU\cboyce\...\Run: [Spotify] => C:\Users\cboyce\AppData\Roaming\Spotify\Spotify.exe [6737976 2014-12-12] (Spotify Ltd)
HKU\cboyce\...\Run: [Spark] => C:\Program Files (x86)\Spark\Spark.exe [433664 2011-07-01] (Jive Software)
HKU\cboyce\...\Run: [Spotify Web Helper] => C:\Users\cboyce\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1676344 2014-12-12] (Spotify Ltd)
HKU\cboyce\...\Policies\system: [DisableLockWorkstation] 0
HKU\nicole\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2013-01-22] (Google Inc.)
HKU\nicole\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\system32\Macromed\Flash\FlashUtil64_11_7_700_224_ActiveX.exe -update activex
HKU\qgrigson\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2013-01-22] (Google Inc.)
Startup: C:\Users\cboyce\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> (No File)
Startup: C:\Users\test\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> (No File)
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-05-27] (AVAST Software)
S2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [138768 2012-01-03] (MSI)
S2 tvnserver; C:\Program Files\TightVNC\tvnserver.exe [2122224 2013-06-06] (GlavSoft LLC.)
S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-26] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-05-27] ()
S2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-05-27] (AVAST Software)
S1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-05-27] (AVAST Software)
S0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-05-27] ()
S1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1039096 2014-05-28] (AVAST Software)
S1 aswSP; C:\Windows\system32\drivers\aswSP.sys [423240 2014-05-28] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [85328 2014-05-28] (AVAST Software)
S0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [208416 2014-05-27] ()
S3 ipadtst; C:\Program Files (x86)\MSI\Super-Charger\ipadtst_64.sys [17936 2011-12-12] (Windows ® Win 7 DDK provider)
S3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [14136 2010-01-18] (MSI)
S3 MSICDSetup; \??\D:\CDriver64.sys [X]
S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-29 09:47 - 2015-01-29 09:47 - 00000000 ____D () C:\FRST
2015-01-29 07:41 - 2015-01-29 07:41 - 00825280 _____ () C:\Windows\Minidump\012915-10420-01.dmp
2015-01-29 07:40 - 2015-01-29 07:40 - 00825280 _____ () C:\Windows\Minidump\012915-10280-01.dmp
2015-01-29 07:39 - 2015-01-29 07:39 - 00825280 _____ () C:\Windows\Minidump\012915-10530-01.dmp
2015-01-29 07:38 - 2015-01-29 07:38 - 00825280 _____ () C:\Windows\Minidump\012915-10467-01.dmp
2015-01-29 07:36 - 2015-01-29 07:36 - 00825280 _____ () C:\Windows\Minidump\012915-10389-01.dmp
2015-01-29 07:35 - 2015-01-29 07:35 - 00825280 _____ () C:\Windows\Minidump\012915-10233-01.dmp
2015-01-29 07:34 - 2015-01-29 07:34 - 00825280 _____ () C:\Windows\Minidump\012915-10296-01.dmp
2015-01-29 07:32 - 2015-01-29 07:32 - 00825280 _____ () C:\Windows\Minidump\012915-10545-01.dmp
2015-01-29 07:31 - 2015-01-29 07:31 - 00006144 ____N () C:\bootex.log
2015-01-29 07:31 - 2015-01-29 07:31 - 00003536 ____N () C:\bootsqm.dat
2015-01-29 06:57 - 2015-01-29 06:57 - 00826064 _____ () C:\Windows\Minidump\012915-11076-01.dmp
2015-01-29 06:56 - 2015-01-29 07:41 - 589989826 _____ () C:\Windows\MEMORY.DMP
2015-01-29 06:56 - 2015-01-29 07:41 - 00000000 ____D () C:\Windows\Minidump
2015-01-29 06:56 - 2015-01-29 06:56 - 00825280 _____ () C:\Windows\Minidump\012915-11216-01.dmp
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-29 08:55 - 2014-12-12 10:08 - 00000000 ____D () C:\Users\cboyce\AppData\Roaming\Raptr
2015-01-29 08:55 - 2013-12-27 09:26 - 00000000 ___RD () C:\Users\cboyce\Dropbox
2015-01-29 08:55 - 2013-11-05 14:14 - 00000000 ____D () C:\Users\cboyce\AppData\Roaming\Spark
2015-01-29 08:55 - 2013-04-16 06:07 - 00000000 ____D () C:\users\nicole
2015-01-29 08:55 - 2013-03-02 06:30 - 00000000 ____D () C:\users\qgrigson
2015-01-29 08:55 - 2013-01-22 14:55 - 00000000 ____D () C:\Users\cboyce\AppData\Roaming\ESC
2015-01-29 08:55 - 2013-01-22 14:43 - 00000000 ____D () C:\Users\cboyce\AppData\Local\Microsoft Help
2015-01-29 08:55 - 2013-01-22 14:43 - 00000000 ____D () C:\Users\cboyce\AppData\Local\Intuit
2015-01-29 08:55 - 2013-01-17 14:34 - 00000000 ____D () C:\Windows\System32\Macromed
2015-01-29 08:55 - 2013-01-17 10:26 - 00000000 ___HD () C:\SuperChargerProfile
2015-01-29 08:55 - 2013-01-17 10:17 - 00000000 ____D () C:\users\test
2015-01-29 08:55 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\registration
2015-01-29 08:55 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\AppCompat
2015-01-29 07:42 - 2013-01-18 11:10 - 00000144 _____ () C:\Windows\System32\config\netlogon.ftl
2015-01-29 07:42 - 2009-07-13 21:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-29 07:42 - 2009-07-13 20:51 - 00042228 _____ () C:\Windows\setupact.log
2015-01-29 07:07 - 2013-01-22 14:43 - 00000000 ____D () C:\users\cboyce
2015-01-29 07:01 - 2009-07-13 21:13 - 00782470 _____ () C:\Windows\System32\PerfStringBackup.INI
2015-01-29 06:03 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\LiveKernelReports
2015-01-29 05:57 - 2013-08-05 10:12 - 00000000 ____D () C:\Users\cboyce\AppData\Local\Spotify
2015-01-26 09:24 - 2013-03-15 13:16 - 00000000 ____D () C:\Users\cboyce\AppData\Local\CutePDF Writer
2015-01-26 07:53 - 2014-03-17 12:19 - 00000000 ____D () C:\ProgramData\GeoLink Data
2015-01-26 07:53 - 2014-03-17 09:43 - 00000000 ____D () C:\Users\cboyce\AppData\Local\GeoLink Data
2015-01-26 07:48 - 2013-12-10 15:53 - 00000000 ____D () C:\Users\cboyce\Desktop\PASS
2015-01-22 13:53 - 2014-08-14 10:23 - 00000000 ____D () C:\Users\cboyce\Desktop\3% Report
2015-01-14 01:05 - 2013-08-14 00:00 - 00000000 ____D () C:\Windows\System32\MRT
2015-01-13 06:17 - 2013-10-25 10:22 - 00000000 ____D () C:\Users\cboyce\Desktop\PRICE BOOKS
2015-01-06 00:28 - 2013-01-17 10:16 - 01977173 _____ () C:\Windows\WindowsUpdate.log
2015-01-06 00:28 - 2009-07-13 20:45 - 00030848 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-06 00:28 - 2009-07-13 20:45 - 00030848 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-06 00:25 - 2013-01-17 14:34 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-01-06 00:18 - 2013-01-21 13:10 - 00000898 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-01-05 23:36 - 2014-02-07 11:29 - 00000568 _____ () C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-267548574-2364914391-3758079054-1165.job
2015-01-05 23:03 - 2013-08-05 10:11 - 00000000 ____D () C:\Users\cboyce\AppData\Roaming\Spotify
2015-01-05 22:18 - 2013-01-21 13:10 - 00000894 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-01-04 22:48 - 2014-02-07 11:29 - 00003602 _____ () C:\Windows\System32\Tasks\G2MUpdateTask-S-1-5-21-267548574-2364914391-3758079054-1165
Some content of TEMP:
====================
C:\Users\cboyce\AppData\Local\Temp\AskSLib.dll
C:\Users\cboyce\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp4n0ybc.dll
C:\Users\cboyce\AppData\Local\Temp\i4jdel0.exe
C:\Users\cboyce\AppData\Local\Temp\jna2088670861661711489.dll
C:\Users\cboyce\AppData\Local\Temp\jna2196706482641150460.dll
C:\Users\cboyce\AppData\Local\Temp\jna2300628855652655965.dll
C:\Users\cboyce\AppData\Local\Temp\jna2453770588519381396.dll
C:\Users\cboyce\AppData\Local\Temp\jna2791726021743283358.dll
C:\Users\cboyce\AppData\Local\Temp\jna2887647167180123828.dll
C:\Users\cboyce\AppData\Local\Temp\jna2978172464699581903.dll
C:\Users\cboyce\AppData\Local\Temp\jna3318851346465133678.dll
C:\Users\cboyce\AppData\Local\Temp\jna3830004279974061563.dll
C:\Users\cboyce\AppData\Local\Temp\jna4415125022241433168.dll
C:\Users\cboyce\AppData\Local\Temp\jna7176988125935855288.dll
C:\Users\cboyce\AppData\Local\Temp\jna8254568544824390502.dll
C:\Users\cboyce\AppData\Local\Temp\jre-7u21-windows-i586-iftw.exe
C:\Users\cboyce\AppData\Local\Temp\jre-7u25-windows-i586-iftw.exe
C:\Users\cboyce\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe
C:\Users\cboyce\AppData\Local\Temp\raptrpatch.exe
C:\Users\cboyce\AppData\Local\Temp\raptr_stub.exe
C:\Users\cboyce\AppData\Local\Temp\tmp7273.exe
C:\Users\cboyce\AppData\Local\Temp\tmpF8C0.exe
C:\Users\test\AppData\Local\Temp\Abspdf.exe
C:\Users\test\AppData\Local\Temp\acfpdfu.dll
C:\Users\test\AppData\Local\Temp\acfpdfuamd64.dll
C:\Users\test\AppData\Local\Temp\acfpdfui.dll
C:\Users\test\AppData\Local\Temp\acfpdfuia64.dll
C:\Users\test\AppData\Local\Temp\acfpdfuiamd64.dll
C:\Users\test\AppData\Local\Temp\acfpdfuiia64.dll
C:\Users\test\AppData\Local\Temp\cdintf.dll
C:\Users\test\AppData\Local\Temp\devcon64.exe
C:\Users\test\AppData\Local\Temp\PDFPRT400.exe
C:\Users\test\AppData\Local\Temp\xmllite.dll
==================== Known DLLs (Whitelisted) ================
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
==================== Restore Points =========================
Restore point made on: 2015-01-13 20:37:43
Restore point made on: 2015-01-14 01:00:17
Restore point made on: 2015-01-20 02:54:59
Restore point made on: 2015-01-23 02:55:20
Restore point made on: 2015-01-27 01:24:20
Restore point made on: 2015-01-29 06:36:10
Restore point made on: 2015-01-29 06:56:36
Restore point made on: 2015-01-29 07:31:51
Restore point made on: 2015-01-29 07:33:09
Restore point made on: 2015-01-29 07:34:29
Restore point made on: 2015-01-29 07:35:47
Restore point made on: 2015-01-29 07:37:05
Restore point made on: 2015-01-29 07:38:23
Restore point made on: 2015-01-29 07:39:42
Restore point made on: 2015-01-29 07:41:01
Restore point made on: 2015-01-29 07:42:18
==================== BCD ================================
Windows Boot Manager
--------------------
identifier {bootmgr}
device partition=Y:
description Windows Boot Manager
locale en-US
inherit {globalsettings}
default {default}
resumeobject {189db53d-608d-11e2-915a-eb10b1019901}
displayorder {default}
toolsdisplayorder {memdiag}
timeout 30
Windows Boot Loader
-------------------
identifier {default}
device partition=C:
path \Windows\system32\winload.exe
description Windows 7
locale en-US
inherit {bootloadersettings}
recoverysequence {189db53f-608d-11e2-915a-eb10b1019901}
recoveryenabled Yes
osdevice partition=C:
systemroot \Windows
resumeobject {189db53d-608d-11e2-915a-eb10b1019901}
nx OptIn
Windows Boot Loader
-------------------
identifier {189db53f-608d-11e2-915a-eb10b1019901}
device ramdisk=[C:]\Recovery\189db53f-608d-11e2-915a-eb10b1019901\Winre.wim,{189db540-608d-11e2-915a-eb10b1019901}
path \windows\system32\winload.exe
description Windows Recovery Environment
inherit {bootloadersettings}
osdevice ramdisk=[C:]\Recovery\189db53f-608d-11e2-915a-eb10b1019901\Winre.wim,{189db540-608d-11e2-915a-eb10b1019901}
systemroot \windows
nx OptIn
winpe Yes
Resume from Hibernate
---------------------
identifier {189db53d-608d-11e2-915a-eb10b1019901}
device partition=C:
path \Windows\system32\winresume.exe
description Windows Resume Application
locale en-US
inherit {resumeloadersettings}
filedevice partition=C:
filepath \hiberfil.sys
debugoptionenabled No
Windows Memory Tester
---------------------
identifier {memdiag}
device partition=Y:
path \boot\memtest.exe
description Windows Memory Diagnostic
locale en-US
inherit {globalsettings}
badmemoryaccess Yes
EMS Settings
------------
identifier {emssettings}
bootems Yes
Debugger Settings
-----------------
identifier {dbgsettings}
debugtype Serial
debugport 1
baudrate 115200
RAM Defects
-----------
identifier {badmemory}
Global Settings
---------------
identifier {globalsettings}
inherit {dbgsettings}
{emssettings}
{badmemory}
Boot Loader Settings
--------------------
identifier {bootloadersettings}
inherit {globalsettings}
{hypervisorsettings}
Hypervisor Settings
-------------------
identifier {hypervisorsettings}
hypervisordebugtype Serial
hypervisordebugport 1
hypervisorbaudrate 115200
Resume Loader Settings
----------------------
identifier {resumeloadersettings}
inherit {globalsettings}
Device options
--------------
identifier {189db540-608d-11e2-915a-eb10b1019901}
description Ramdisk Options
ramdisksdidevice partition=C:
ramdisksdipath \Recovery\189db53f-608d-11e2-915a-eb10b1019901\boot.sdi
==================== Memory info ===========================
Percentage of memory in use: 7%
Total physical RAM: 16335.68 MB
Available physical RAM: 15126.89 MB
Total Pagefile: 16333.82 MB
Available Pagefile: 15133.23 MB
Total Virtual: 8192 MB
Available Virtual: 8191.88 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:238.37 GB) (Free:110.58 GB) NTFS
Drive f: (Repair USB Windows 7 64-bit) (Removable) (Total:7.45 GB) (Free:7.23 GB) NTFS
Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
Drive y: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)]
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 238.5 GB) (Disk ID: FC75F093)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=238.4 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (Size: 7.5 GB) (Disk ID: 2D66C2FE)
Partition 1: (Active) - (Size=7.5 GB) - (Type=07 NTFS)
LastRegBack: 2015-01-23 22:55
==================== End Of Log ============================