Solved Slow boot up and then Windows not responding. Running Toshiba Satellite S50A Windows 10 upgrade

macetcd

Posts: 10   +0
I started having issues with various programs causing freeze ups but now when I turn the computer on, it takes a long time to get to windows and then everything is frozen. I tried getting to task manager and it takes forever and when it finally does something it will just go back to the frozen screen. I have tried the troubleshooting (press 0 at start up,), Tried to do the system restore but it says it needs to do a scan on \\?\volume{4679b0e2-c05d-4876-aef0-510cbc5e2b0}\, starts the scan and then freezes up again.
 

Broni

Posts: 55,992   +509
Please, observe forum rules. All logs have to be pasted, not attached. Also, FRST produces two logs. I'll need to see second log as well.
=====================================

Please, observe following rules:
  • Read all of my instructions very carefully. Your mistakes during cleaning process may have very serious consequences, like unbootable computer.
  • If you're stuck, or you're not sure about certain step, always ask before doing anything else.
  • Please refrain from running any tools, fixes or applying any changes to your computer other than those I suggest.
  • Never run more than one scan at a time.
  • Keep updating me regarding your computer behavior, good, or bad.
  • The cleaning process, once started, has to be completed. Even if your computer appears to act better, it may still be infected. Once the computer is totally clean, I'll certainly let you know.
  • If you leave the topic without explanation in the middle of a cleaning process, you may not be eligible to receive any more help in malware removal forum.
  • I close my topics if you have not replied in 5 days. If you need more time, simply let me know. If I closed your topic and you need it to be reopened, simply PM me.
 

macetcd

Posts: 10   +0
Computer is back to freezing up. I just have to keep waiting and see if it will start cooperating again. I had left it alone for months and it let me do that little bit this time but now it is back to coming on and freezing up again. I will wait to see if it decides to let me do anything again.
Are there multiple ways to run FRST?
 

Broni

Posts: 55,992   +509
You can try to run it from USB.

NOTE 1. Use another working computer to download Farbar Recovery Scan Tool and save it to USB flash drive.
NOTE 2. Install Panda USB Vaccine, or BitDefender’s USB Immunizer on GOOD computer to protect it from any infected USB device.

For x32 (x86) bit systems download Farbar Recovery Scan Tool 32-Bit and save it to a flash drive.
For x64 bit systems download Farbar Recovery Scan Tool 64-Bit and save it to a flash drive.

Plug the flashdrive into the infected PC.

If you are using Windows 10 If you're having problems accessing System Recovery Options create Windows 10 USB or DVD as described here: http://betanews.com/2015/07/29/how-...your-own-installation-usb-flash-drive-or-dvd/ and boot from it.

If you are using Windows 8 consult How to use the Windows 8 System Recovery Environment Command Prompt to enter System Recovery Command prompt. To access Advanced Boot Options start and shut down computer TWICE. On third start you should see Advanced Boot Options.

If you are using Vista or Windows 7 enter System Recovery Options.

To enter System Recovery Options from the Advanced Boot Options:
  • Restart the computer.
  • As soon as the BIOS is loaded begin tapping the F8 key until Advanced Boot Options appears.
  • Use the arrow keys to select the Repair your computer menu item.
  • Select US as the keyboard language settings, and then click Next.
  • Select the operating system you want to repair, and then click Next.
  • Select your user account an click Next.

To enter System Recovery Options by using Windows installation disc:
  • Insert the installation disc.
  • Restart your computer.
  • If prompted, press any key to start Windows from the installation disc. If your computer is not configured to start from a CD or DVD, check your BIOS settings.
  • Click Repair your computer.
  • Select US as the keyboard language settings, and then click Next.
  • Select the operating system you want to repair, and then click Next.
  • Select your user account and click Next.

On the System Recovery Options menu you will get the following options:

  • Startup Repair
  • System Restore
  • Windows Complete PC Restore
  • Windows Memory Diagnostic Tool
  • Command Prompt
  • Select Command Prompt
  • In the command window type in notepad and press Enter.
  • The notepad opens. Under File menu select Open.
  • Select "Computer" and find your flash drive letter and close the notepad.
  • In the command window type e:\frst (for x64 bit version type e:\frst64) and press Enter
    Note: Replace letter e with the drive letter of your flash drive.
  • The tool will start to run.
  • When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will make a log (FRST.txt) on the flash drive. Please copy and paste it to your reply.
 

macetcd

Posts: 10   +0
Still only seeing one txt file

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-04-2017 01 (ATTENTION: ====> FRSTversion is 1748 days old and could be outdated)
Ran by SYSTEM on MININT-HSL6039 (29-01-2022 11:20:00)
Running from D:\
Platform: Windows 10 Home Version 2009 (X64) Language: English (United States)
Internet Explorer Version 11
Boot Mode: Recovery
Default: ControlSet001
ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.

Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Windows\system32\SecurityHealthSystray.exe [86016 2019-12-07] (Microsoft Corporation)
HKLM\...\Run: [TSSSrv] => C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe [296520 2013-09-11] (TOSHIBA Corporation)
HKLM\...\Run: [TecoResident] => C:\Program Files\TOSHIBA\Teco\TecoResident.exe [178016 2013-08-21] (TOSHIBA Corporation)
HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2556768 2013-08-17] (TOSHIBA Corporation)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] ()
HKLM-x32\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [383768 2002-04-12] (Alcor Micro Corp.)
HKLM-x32\...\Run: [1.TPUReg] => C:\Program Files (x86)\TOSHIBA\PasswordUtility\readLM.exe [2216800 2013-03-27] (TOSHIBA)
HKLM-x32\...\Run: [ToshibaAppPlace] => C:\Program Files (x86)\Toshiba\Toshiba App Place\ToshibaAppPlace.exe [552960 2010-09-23] (Toshiba)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [ScanSnap WIA Service Checker] => C:\Windows\SSDriver\fi5110\SsWiaChecker.exe [86016 2009-09-30] (PFU LIMITED)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [7991528 2021-04-24] (Dropbox, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597016 2016-03-31] (Oracle Corporation)
HKLM-x32\...\Run: [Dit] => C:\Windows\Dit.exe [65536 2003-02-19] ()
HKLM-x32\...\Run: [QBWinClient] => C:\ProgramData\SquirrelMachineInstalls\QBWinClient.exe [40813000 2016-12-05] (Intuit Inc.)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
Winlogon\Notify\igfxcui: igfxdev.dll [X]
Startup: C:\Users\CM\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Screen Clipper and Launcher.lnk [2020-06-16]
ShortcutTarget: OneNote 2010 Screen Clipper and Launcher.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation)

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AarSvc; C:\Windows\System32\AarSvc.dll [443904 2020-11-12] (Microsoft Corporation)
S3 AarSvc; C:\Windows\SysWOW64\AarSvc.dll [339456 2020-11-12] (Microsoft Corporation)
S3 AarSvc_b2bd4; C:\WINDOWS\system32\svchost.exe [57360 2020-10-24] (Microsoft Corporation)
S3 AarSvc_b2bd4; C:\WINDOWS\SysWOW64\svchost.exe [47016 2020-10-24] (Microsoft Corporation)
S2 AdobeActiveFileMonitor6.0; C:\Program Files (x86)\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe [124832 2007-09-10] ()
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-08] (Adobe)
S2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [312448 2013-08-22] (Windows (R) Win 7 DDK provider)
S3 autotimesvc; C:\Windows\System32\autotimesvc.dll [114176 2019-12-07] (Microsoft Corporation)
S3 BcastDVRUserService; C:\Windows\System32\BcastDVRUserService.dll [1386496 2020-09-30] (Microsoft Corporation)
S3 BcastDVRUserService_b2bd4; C:\WINDOWS\system32\svchost.exe [57360 2020-10-24] (Microsoft Corporation)
S3 BcastDVRUserService_b2bd4; C:\WINDOWS\SysWOW64\svchost.exe [47016 2020-10-24] (Microsoft Corporation)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1404936 2016-08-09] ()
S3 BluetoothUserService; C:\Windows\System32\Microsoft.Bluetooth.UserService.dll [500224 2020-09-30] (Microsoft Corporation)
S3 BluetoothUserService_b2bd4; C:\WINDOWS\system32\svchost.exe [57360 2020-10-24] (Microsoft Corporation)
S3 BluetoothUserService_b2bd4; C:\WINDOWS\SysWOW64\svchost.exe [47016 2020-10-24] (Microsoft Corporation)
S2 BrokerInfrastructure; C:\Windows\System32\psmsrv.dll [247296 2020-10-24] (Microsoft Corporation)
S3 BTAGService; C:\Windows\System32\BTAGService.dll [1021952 2020-09-30] (Microsoft Corporation)
S3 BTAGService; C:\Windows\SysWOW64\BTAGService.dll [733184 2020-09-30] (Microsoft Corporation)
S3 BthAvctpSvc; C:\Windows\System32\BthAvctpSvc.dll [392192 2020-09-30] (Microsoft Corporation)
S3 camsvc; C:\Windows\system32\CapabilityAccessManager.dll [389632 2020-09-30] (Microsoft Corporation)
S3 CaptureService; C:\Windows\System32\CaptureService.dll [130048 2020-09-30] (Microsoft Corporation)
S3 CaptureService_b2bd4; C:\WINDOWS\system32\svchost.exe [57360 2020-10-24] (Microsoft Corporation)
S3 CaptureService_b2bd4; C:\WINDOWS\SysWOW64\svchost.exe [47016 2020-10-24] (Microsoft Corporation)
S3 cbdhsvc; C:\Windows\System32\cbdhsvc.dll [1022976 2020-09-30] (Microsoft Corporation)
S3 cbdhsvc_b2bd4; C:\WINDOWS\system32\svchost.exe [57360 2020-10-24] (Microsoft Corporation)
S3 cbdhsvc_b2bd4; C:\WINDOWS\SysWOW64\svchost.exe [47016 2020-10-24] (Microsoft Corporation)
S3 ConsentUxUserSvc; C:\Windows\System32\ConsentUxClient.dll [169984 2020-09-30] (Microsoft Corporation)
S3 ConsentUxUserSvc_b2bd4; C:\WINDOWS\system32\svchost.exe [57360 2020-10-24] (Microsoft Corporation)
S3 ConsentUxUserSvc_b2bd4; C:\WINDOWS\SysWOW64\svchost.exe [47016 2020-10-24] (Microsoft Corporation)
S3 CredentialEnrollmentManagerUserSvc; C:\Windows\system32\CredentialEnrollmentManager.exe [385240 2020-10-24] (Microsoft Corporation)
S3 CredentialEnrollmentManagerUserSvc_b2bd4; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [385240 2020-10-24] (Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-05] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-05] (Dropbox, Inc.)
S2 DbxSvc; C:\Windows\system32\DbxSvc.exe [44272 2021-04-24] (Dropbox, Inc.)
S3 DeviceAssociationBrokerSvc; C:\Windows\System32\deviceaccess.dll [240176 2020-09-30] (Microsoft Corporation)
S3 DeviceAssociationBrokerSvc; C:\Windows\SysWOW64\deviceaccess.dll [188000 2020-09-30] (Microsoft Corporation)
S3 DeviceAssociationBrokerSvc_b2bd4; C:\WINDOWS\system32\svchost.exe [57360 2020-10-24] (Microsoft Corporation)
S3 DeviceAssociationBrokerSvc_b2bd4; C:\WINDOWS\SysWOW64\svchost.exe [47016 2020-10-24] (Microsoft Corporation)
S3 DevicePickerUserSvc; C:\Windows\System32\Windows.Devices.Picker.dll [478208 2020-09-30] (Microsoft Corporation)
S3 DevicePickerUserSvc; C:\Windows\SysWOW64\Windows.Devices.Picker.dll [338944 2020-09-30] (Microsoft Corporation)
S3 DevicePickerUserSvc_b2bd4; C:\WINDOWS\system32\svchost.exe [57360 2020-10-24] (Microsoft Corporation)
S3 DevicePickerUserSvc_b2bd4; C:\WINDOWS\SysWOW64\svchost.exe [47016 2020-10-24] (Microsoft Corporation)
S3 DevicesFlowUserSvc; C:\Windows\System32\DevicesFlowBroker.dll [598016 2020-11-12] (Microsoft Corporation)
S3 DevicesFlowUserSvc_b2bd4; C:\WINDOWS\system32\svchost.exe [57360 2020-10-24] (Microsoft Corporation)
S3 DevicesFlowUserSvc_b2bd4; C:\WINDOWS\SysWOW64\svchost.exe [47016 2020-10-24] (Microsoft Corporation)
S3 diagsvc; C:\Windows\system32\DiagSvc.dll [203264 2020-09-30] (Microsoft Corporation)
S2 DispBrokerDesktopSvc; C:\Windows\System32\DispBroker.Desktop.dll [379392 2020-10-24] (Microsoft Corporation)
S3 DisplayEnhancementService; C:\Windows\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll [1188352 2020-09-30] (Microsoft Corporation)
S2 DSDFunctionKeyCtlService; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_4d5c54c80b005163\DSDFunctionKeyCtlService.exe [615776 2021-02-22] (Dynabook Inc.)
S3 dts_apo_service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [19960 2015-05-27] ()
S2 DusmSvc; C:\Windows\System32\dusmsvc.dll [341504 2019-12-07] (Microsoft Corporation)
S2 ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [416408 2016-03-09] ()
S2 GFNEXSrv; C:\Program Files (x86)\Toshiba\PasswordUtility\GFNEXSrv.exe [163168 2013-03-27] ()
S3 GraphicsPerfSvc; C:\Windows\System32\GraphicsPerfSvc.dll [106496 2019-12-07] (Microsoft Corporation)
S2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [288392 2021-04-09] (HP Inc.)
S2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [372280 2020-04-28] (Intel Corporation)
S3 InstallService; C:\Windows\system32\InstallService.dll [2428416 2020-10-24] (Microsoft Corporation)
S3 InstallService; C:\Windows\SysWOW64\InstallService.dll [1836544 2020-10-24] (Microsoft Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
S2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-09-03] (Intel Corporation)
S3 IpxlatCfgSvc; C:\Windows\System32\IpxlatCfg.dll [66048 2019-12-07] (Microsoft Corporation)
S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-03] (Intel Corporation)
S3 LxpSvc; C:\Windows\System32\LanguageOverlayServer.dll [302592 2019-12-07] (Microsoft Corporation)
S3 MixedRealityOpenXRSvc; C:\Windows\System32\MixedRealityRuntime.dll [134248 2019-12-07] (Microsoft Corporation)
S3 MixedRealityOpenXRSvc; C:\Windows\SysWOW64\MixedRealityRuntime.dll [104808 2019-12-07] (Microsoft Corporation)
S3 NaturalAuthentication; C:\Windows\System32\NaturalAuth.dll [454144 2020-09-30] (Microsoft Corporation)
S3 NETGEARGenieDaemon; C:\Program Files (x86)\NETGEAR Genie\bin\NETGEARGenieDaemon64.exe [232192 2016-03-09] (NETGEAR)
S3 perceptionsimulation; C:\Windows\system32\PerceptionSimulation\PerceptionSimulationService.exe [105984 2020-09-30] (Microsoft Corporation)
S3 PrintWorkflowUserSvc; C:\Windows\System32\PrintWorkflowService.dll [181760 2020-09-30] (Microsoft Corporation)
S3 PrintWorkflowUserSvc; C:\Windows\SysWOW64\PrintWorkflowService.dll [138752 2020-09-30] (Microsoft Corporation)
S3 PrintWorkflowUserSvc_b2bd4; C:\WINDOWS\system32\svchost.exe [57360 2020-10-24] (Microsoft Corporation)
S3 PrintWorkflowUserSvc_b2bd4; C:\WINDOWS\SysWOW64\svchost.exe [47016 2020-10-24] (Microsoft Corporation)
S3 PushToInstall; C:\Windows\system32\PushToInstall.dll [281088 2020-10-24] (Microsoft Corporation)
S2 SamsungCloudPrintSvc; C:\Program Files\Samsung\Samsung Cloud Print PC Agent\SCP_Svc.exe [922928 2016-06-14] ()
S2 SamsungUPDUtilSvc; C:\WINDOWS\SysWoW64\SecUPDUtilSvc.exe [143664 2016-11-01] ()
S3 SecurityHealthService; C:\Windows\system32\SecurityHealthService.exe [983408 2020-11-12] (Microsoft Corporation)
S3 SEMgrSvc; C:\Windows\system32\SEMgrSvc.dll [1222656 2020-09-30] (Microsoft Corporation)
S2 SgrmBroker; C:\Windows\system32\SgrmBroker.exe [329504 2020-10-24] (Microsoft Corporation)
S3 SharedRealitySvc; C:\Windows\System32\SharedRealitySvc.dll [306688 2019-12-07] (Microsoft Corporation)
S3 spectrum; C:\Windows\system32\spectrum.exe [875008 2020-10-24] (Microsoft Corporation)
S4 ssh-agent; C:\Windows\System32\OpenSSH\ssh-agent.exe [384512 2019-10-15] ()
S2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784 2016-01-08] (DEVGURU Co., LTD.)
S2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [350224 2015-07-22] (Tempo Semiconductor Inc.)
S2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [278616 2017-05-04] (Synaptics Incorporated)
S2 SystemUsageReportSvc_WILLAMETTE; C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe [118424 2016-03-09] ()
S3 TokenBroker; C:\Windows\System32\TokenBroker.dll [1531904 2020-10-24] (Microsoft Corporation)
S3 TokenBroker; C:\Windows\SysWOW64\TokenBroker.dll [1240064 2020-10-24] (Microsoft Corporation)
S3 TroubleshootingSvc; C:\Windows\system32\MitigationClient.dll [417792 2020-09-30] (Microsoft Corporation)
S2 TSDSettingService; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_4d5c54c80b005163\dynabookSystemService.exe [44767048 2021-02-22] (Dynabook Inc.)
S2 TSDTabletControlService; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_4d5c54c80b005163\TOSTABSYSSVC.exe [296272 2021-02-22] (Dynabook Inc.)
S2 TSDWirelessLEDCtlService; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_4d5c54c80b005163\RMService.exe [446248 2021-02-22] (Dynabook Inc.)
S4 tzautoupdate; C:\Windows\SysWOW64\tzautoupdate.dll [73216 2019-12-07] (Microsoft Corporation)
S3 UdkUserSvc; C:\Windows\System32\windowsudk.shellcommon.dll [2102784 2020-09-30] (Microsoft Corporation)
S3 UdkUserSvc_b2bd4; C:\WINDOWS\system32\svchost.exe [57360 2020-10-24] (Microsoft Corporation)
S3 UdkUserSvc_b2bd4; C:\WINDOWS\SysWOW64\svchost.exe [47016 2020-10-24] (Microsoft Corporation)
S4 uhssvc; C:\Program Files\Microsoft Update Health Tools\uhssvc.exe [331064 2021-03-22] (Microsoft Corporation)
S3 USER_ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [416408 2016-03-09] ()
S2 UsoSvc; C:\Windows\system32\usosvc.dll [567296 2020-11-12] (Microsoft Corporation)
S3 VacSvc; C:\Windows\System32\vac.dll [383224 2020-09-30] (Microsoft Corporation)
S3 WaaSMedicSvc; C:\Windows\System32\WaaSMedicSvc.dll [363008 2020-11-12] (Microsoft Corporation)
S3 WarpJITSvc; C:\Windows\System32\Windows.WARP.JITService.dll [65536 2019-12-07] (Microsoft Corporation)
S3 WFDSConMgrSvc; C:\Windows\System32\wfdsconmgrsvc.dll [675840 2019-12-07] (Microsoft Corporation)
S2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MsMpEng.exe [128376 2021-04-11] (Microsoft Corporation)
S3 wisvc; C:\Windows\SysWOW64\flightsettings.dll [751496 2020-10-24] (Microsoft Corporation)
S3 wlpasvc; C:\Windows\System32\lpasvc.dll [1253376 2020-09-30] (Microsoft Corporation)
S3 WManSvc; C:\Windows\system32\Windows.Management.Service.dll [934912 2020-09-30] (Microsoft Corporation)
S3 WpcMonSvc; C:\Windows\System32\WpcDesktopMonSvc.dll [1905664 2020-09-30] (Microsoft Corporation)
S3 XboxGipSvc; C:\Windows\System32\XboxGipSvc.dll [72704 2019-12-07] (Microsoft Corporation)
S3 WdNisSvc; "%ProgramData%\Microsoft\Windows Defender\Platform\4.18.2103.7-0\NisSrv.exe" [X]

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 Acx01000; C:\Windows\System32\drivers\Acx01000.sys [415232 2019-12-07] (Microsoft Corporation)
S1 afunix; C:\Windows\system32\drivers\afunix.sys [41984 2020-09-30] (Microsoft Corporation)
S1 afunix; C:\Windows\SysWOW64\drivers\afunix.sys [29696 2020-09-30] (Microsoft Corporation)
S3 amdgpio2; C:\Windows\System32\drivers\amdgpio2.sys [18432 2019-12-07] (Advanced Micro Devices, Inc)
S3 amdi2c; C:\Windows\System32\drivers\amdi2c.sys [45568 2019-12-07] (Advanced Micro Devices, Inc)
S0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [73976 2015-06-04] (Advanced Micro Devices, Inc.)
S1 bam; C:\Windows\System32\drivers\bam.sys [78136 2019-12-07] (Microsoft Corporation)
S1 BasicDisplay; C:\Windows\System32\DriverStore\FileRepository\basicdisplay.inf_amd64_62ba5773ba05edee\BasicDisplay.sys [68608 2019-12-07] (Microsoft Corporation)
S1 BasicRender; C:\Windows\System32\DriverStore\FileRepository\basicrender.inf_amd64_49a8589f00d970d9\BasicRender.sys [38912 2020-09-30] (Microsoft Corporation)
S2 bindflt; C:\Windows\system32\drivers\bindflt.sys [143160 2020-09-30] (Microsoft Corporation)
S3 BthLEEnum; C:\Windows\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [106496 2020-09-30] (Microsoft Corporation)
S3 BthMini; C:\Windows\System32\drivers\BTHMINI.sys [45568 2020-09-30] (Microsoft Corporation)
S0 bttflt; C:\Windows\System32\drivers\bttflt.sys [43832 2019-12-07] (Microsoft Corporation)
S3 CAD; C:\Windows\System32\drivers\CAD.sys [66576 2019-12-07] (Microsoft Corporation)
S1 CimFS; C:\Windows\System32\Drivers\CimFS.sys [91136 2019-12-07] ()
S2 CldFlt; C:\Windows\System32\drivers\cldflt.sys [491520 2020-09-30] (Microsoft Corporation)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [159600 2020-11-11] (Samsung Electronics Co., Ltd.)
S3 evserial7; C:\Windows\System32\drivers\evserial7.sys [71472 2012-05-23] (ELTIMA Software)
S3 genericusbfn; C:\Windows\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_53931f0ae21d6d2c\genericusbfn.sys [23040 2019-12-07] (Microsoft Corporation)
S3 hidspi; C:\Windows\System32\drivers\hidspi.sys [66560 2019-12-07] (Microsoft Corporation)
S4 hvcrash; C:\Windows\System32\drivers\hvcrash.sys [35128 2019-12-07] (Microsoft Corporation)
S3 HwNClx0101; C:\Windows\System32\Drivers\mshwnclx.sys [30208 2019-12-07] (Microsoft Corporation)
S3 iaLPSS2i_GPIO2_BXT_P; C:\Windows\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184 2019-12-07] (Intel Corporation)
S3 iaLPSS2i_GPIO2_CNL; C:\Windows\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128 2019-12-07] (Intel Corporation)
S3 iaLPSS2i_GPIO2_GLK; C:\Windows\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256 2019-12-07] (Intel Corporation)
S3 iaLPSS2i_I2C_BXT_P; C:\Windows\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104 2019-12-07] (Intel Corporation)
S3 iaLPSS2i_I2C_CNL; C:\Windows\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152 2019-12-07] (Intel Corporation)
S3 iaLPSS2i_I2C_GLK; C:\Windows\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664 2019-12-07] (Intel Corporation)
S0 iaStorAVC; C:\Windows\System32\drivers\iaStorAVC.sys [884752 2019-12-07] (Intel Corporation)
S3 intelpmax; C:\Windows\System32\drivers\intelpmax.sys [30720 2019-12-07] (Microsoft Corporation)
S3 IPT; C:\Windows\System32\drivers\ipt.sys [59704 2019-12-07] (Microsoft Corporation)
S0 ItSas35i; C:\Windows\System32\drivers\ItSas35i.sys [172344 2019-12-07] (Avago Technologies)
S3 massfilter_brcm; C:\Windows\System32\drivers\massfilter_brcm.sys [20232 2012-06-07] (Handset Incorporated)
S3 mausbhost; C:\Windows\System32\drivers\mausbhost.sys [537608 2019-12-07] (Microsoft Corporation)
S3 mausbip; C:\Windows\System32\drivers\mausbip.sys [64016 2019-12-07] (Microsoft Corporation)
S3 MbbCx; C:\Windows\System32\drivers\MbbCx.sys [386048 2020-09-30] (Microsoft Corporation)
S0 megasas35i; C:\Windows\System32\drivers\megasas35i.sys [105480 2019-12-07] (Avago Technologies)
S3 Microsoft_Bluetooth_AvrcpTransport; C:\Windows\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [65024 2019-12-07] (Microsoft Corporation)
S3 MpKsl24832392; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{90E0B081-EF45-4E08-89A7-F74E9C287E2E}\MpKslDrv.sys [47336 2021-08-02] (Microsoft Corporation)
S3 MsQuic; C:\Windows\System32\drivers\msquic.sys [322376 2020-09-30] (Microsoft Corporation)
S3 NDKPing; C:\Windows\System32\drivers\NDKPing.sys [72720 2019-12-07] (Microsoft Corporation)
S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [207360 2020-10-24] (Microsoft Corporation)
S2 NPF; C:\WINDOWS\system32\drivers\npf.sys [35344 2017-07-26] (CACE Technologies, Inc.)
S0 nvdimm; C:\Windows\System32\drivers\nvdimm.sys [168464 2019-12-07] (Microsoft Corporation)
S2 PEGAGFN; C:\Program Files (x86)\Toshiba\PasswordUtility\PEGAGFN.sys [14344 2009-09-11] (PEGATRON)
S3 PktMon; C:\Windows\System32\drivers\PktMon.sys [104760 2020-11-12] (Microsoft Corporation)
S0 pmem; C:\Windows\System32\drivers\pmem.sys [138040 2019-12-07] (Microsoft Corporation)
S3 portcfg; C:\Windows\System32\drivers\portcfg.sys [27136 2019-12-07] (Microsoft Corporation)
S0 Ramdisk; C:\Windows\System32\DRIVERS\ramdisk.sys [42296 2019-12-07] (Microsoft Corporation)
S3 rhproxy; C:\Windows\System32\drivers\rhproxy.sys [115712 2019-12-07] (Microsoft Corporation)
S3 RimVSerPort; C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys [44544 2012-12-10] (Research in Motion Ltd)
S3 SDFRd; C:\Windows\System32\drivers\SDFRd.sys [35128 2019-12-07] (Microsoft Corporation)
S3 semav6msr64; C:\Windows\system32\drivers\semav6msr64.sys [21984 2016-03-09] ()
S0 SgrmAgent; C:\Windows\System32\drivers\SgrmAgent.sys [88080 2019-12-07] (Microsoft Corporation)
S0 SmartSAMD; C:\Windows\System32\drivers\SmartSAMD.sys [209720 2019-12-07] (Microsemi Corportation)
S3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [72792 2017-05-04] (Synaptics Incorporated)
S3 spaceparser; C:\Windows\System32\drivers\spaceparser.sys [26624 2019-12-07] (Microsoft Corporation)
S3 SpatialGraphFilter; C:\Windows\System32\drivers\SpatialGraphFilter.sys [90936 2019-12-07] (Microsoft Corporation)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [166760 2020-04-23] (Samsung Electronics Co., Ltd.)
S3 STHDA; C:\Windows\system32\DRIVERS\stwrt64.sys [561680 2015-07-22] (Tempo Semiconductor Inc.)
S0 Telemetry; C:\Windows\System32\drivers\IntelTA.sys [26608 2020-10-24] (Microsoft Corporation)
S3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [47816 2020-07-21] (Dynabook Inc.)
S3 tosrfec; C:\Windows\System32\drivers\tosrfec.sys [37808 2019-04-30] (Dynabook Inc.)
S1 TosSrvCtlDrv; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_4d5c54c80b005163\TosSrvCtlDrv.sys [25816 2021-02-22] (Dynabook Inc.)
S0 TVALZ; C:\Windows\System32\drivers\TVALZ_O.SYS [46088 2019-04-30] (Dynabook Inc.)
S0 TVALZ_O; C:\Windows\System32\drivers\TVALZ_O.SYS [46088 2019-04-30] (Dynabook Inc.)
S3 UcmUcsiAcpiClient; C:\Windows\System32\drivers\UcmUcsiAcpiClient.sys [36864 2019-12-07] (Microsoft Corporation)
S3 UcmUcsiCx0101; C:\Windows\System32\Drivers\UcmUcsiCx.sys [113152 2020-09-30] (Microsoft Corporation)
S3 UEFI; C:\Windows\System32\DriverStore\FileRepository\uefi.inf_amd64_c1628ffa62c8e54c\UEFI.sys [34104 2019-12-07] (Microsoft Corporation)
S3 UfxChipidea; C:\Windows\System32\DriverStore\FileRepository\ufxchipidea.inf_amd64_1c78775fffab6a0a\UfxChipidea.sys [110608 2019-12-07] (Microsoft Corporation)
S3 umbus; C:\Windows\System32\DriverStore\FileRepository\umbus.inf_amd64_b78a9c5b6fd62c27\umbus.sys [58368 2019-12-07] (Microsoft Corporation)
S3 UrsChipidea; C:\Windows\System32\DriverStore\FileRepository\urschipidea.inf_amd64_78ad1c14e33df968\urschipidea.sys [32056 2019-12-07] (Microsoft Corporation)
S3 UrsSynopsys; C:\Windows\System32\DriverStore\FileRepository\urssynopsys.inf_amd64_057fa37902020500\urssynopsys.sys [29496 2019-12-07] (Microsoft Corporation)
S3 usbaudio2; C:\Windows\System32\drivers\usbaudio2.sys [260608 2019-12-07] (Microsoft Corporation)
S3 VirtualRender; C:\Windows\System32\DriverStore\FileRepository\vrd.inf_amd64_81fbd405ff2470fc\vrd.sys [11264 2019-12-07] (Microsoft Corporation)
S3 VSBC7; C:\Windows\System32\drivers\evsbc7.sys [36656 2012-05-23] (ELTIMA Software)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49560 2021-04-11] (Microsoft Corporation)
S0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [421088 2021-04-11] (Microsoft Corporation)
S3 WdmCompanionFilter; C:\Windows\System32\drivers\WdmCompanionFilter.sys [23560 2019-12-07] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [72928 2021-04-11] (Microsoft Corporation)
S3 WinNat; C:\Windows\System32\drivers\winnat.sys [259584 2020-09-30] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

NETSVC: InstallService -> C:\Windows\system32\InstallService.dll (Microsoft Corporation)
NETSVC: PushToInstall -> C:\Windows\system32\PushToInstall.dll (Microsoft Corporation)
NETSVC: TroubleshootingSvc -> C:\Windows\system32\MitigationClient.dll (Microsoft Corporation)
NETSVC: LxpSvc -> C:\Windows\System32\LanguageOverlayServer.dll (Microsoft Corporation)
NETSVC: WManSvc -> C:\Windows\system32\Windows.Management.Service.dll (Microsoft Corporation)
NETSVC: TokenBroker -> C:\Windows\System32\TokenBroker.dll (Microsoft Corporation)
NETSVC: NaturalAuthentication -> C:\Windows\System32\NaturalAuth.dll (Microsoft Corporation)
NETSVC: XboxGipSvc -> C:\Windows\System32\XboxGipSvc.dll (Microsoft Corporation)
NETSVCx32: TokenBroker -> C:\Windows\SysWOW64\TokenBroker.dll (Microsoft Corporation)

==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-01-29 11:10 - 2022-01-29 11:10 - 00000000 __HDC C:\$SysReset
2022-01-28 11:00 - 2022-01-28 11:29 - 00768284 _____ C:\Windows\Minidump\012822-61859-01.dmp
2022-01-27 20:40 - 2022-01-27 20:40 - 00000000 ___DC C:\$Windows.~BT
2022-01-27 16:35 - 2022-01-27 16:35 - 00000000 __SHD C:\found.006
2022-01-27 09:13 - 2022-01-27 09:13 - 00000000 __SHD C:\found.005
2022-01-26 21:36 - 2022-01-26 21:36 - 00000000 ___DC C:\FRST
2022-01-26 18:46 - 2022-01-29 11:11 - 00000000 ____C C:\Recovery.txt

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-01-29 06:20 - 2019-12-07 01:14 - 00000000 ___DC C:\ProgramData\regid.1991-06.com.microsoft
2022-01-29 01:54 - 2020-09-30 16:19 - 00004210 _____ C:\Windows\System32\Tasks\CCleaner Update
2022-01-28 23:31 - 2017-09-03 14:33 - 00000180 _____ C:\Windows\System32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2022-01-28 23:31 - 2016-05-22 20:06 - 00000000 __SHD C:\Users\CM\IntelGraphicsProfiles
2022-01-28 23:03 - 2020-09-30 16:19 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2022-01-28 23:03 - 2020-09-30 15:11 - 00000000 ____D C:\Windows\System32\SleepStudy
2022-01-28 23:03 - 2020-09-30 15:10 - 00008192 ___SH C:\DumpStack.log.tmp
2022-01-28 11:30 - 2020-12-01 14:10 - 00000000 ____D C:\Windows\Minidump
2022-01-28 11:00 - 2020-12-31 12:57 - 555435986 _____ C:\Windows\MEMORY.DMP
2022-01-27 15:01 - 2014-02-25 20:57 - 00000000 ___DC C:\Temp

Some files in TEMP:
====================
2021-04-23 18:44 - 2021-04-23 18:44 - 2799480 ____C (Google LLC) C:\Users\CM\AppData\Local\Temp\{CB4DC955-52B7-456F-925C-CA6C1C23DE66}-90.0.4430.93_90.0.4430.85_chrome_updater.exe

==================== Known DLLs (Whitelisted) =========================

C:\Windows\System32\_wowarmhw.dll IS MISSING <==== ATTENTION
C:\Windows\SysWOW64\_wowarmhw.dll IS MISSING <==== ATTENTION
C:\Windows\System32\_xtajit.dll IS MISSING <==== ATTENTION
C:\Windows\SysWOW64\_xtajit.dll IS MISSING <==== ATTENTION
[2020-11-12 10:21] - [2020-11-12 10:21] - 0705008 ____A (Microsoft Corporation) C:\Windows\System32\SHCORE.dll
[2020-11-12 10:23] - [2020-11-12 10:23] - 0546968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SHCORE.dll

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe
[2020-10-24 02:14] - [2020-10-24 02:14] - 0907776 ____A (Microsoft Corporation) 790D2A6C194038513919DA17C6B91549

C:\Windows\System32\wininit.exe
[2020-10-24 02:13] - [2020-10-24 02:13] - 0419432 ____A (Microsoft Corporation) DB516676B9D40004985E6D25A74943D7

C:\Windows\explorer.exe
[2020-11-12 10:21] - [2020-11-12 10:21] - 4651032 ____A (Microsoft Corporation) 3EAF5EA1C929922873016439091C21A0

C:\Windows\SysWOW64\explorer.exe
[2020-11-12 10:23] - [2020-11-12 10:23] - 4069992 ____A (Microsoft Corporation) 0E43AA24BF23EAEC5F4A4A77B318AD58

C:\Windows\System32\svchost.exe
[2020-10-24 02:13] - [2020-10-24 02:13] - 0057360 ____A (Microsoft Corporation) F586835082F632DC8D9404D83BC16316

C:\Windows\SysWOW64\svchost.exe
[2020-10-24 02:17] - [2020-10-24 02:17] - 0047016 ____A (Microsoft Corporation) B7C999040D80E5BF87886D70D992C51E

C:\Windows\System32\services.exe
[2020-11-12 10:22] - [2020-11-12 10:22] - 0712296 ____A (Microsoft Corporation) 448CC197BC3B10D3E36A2CD30CF32DFE

C:\Windows\System32\User32.dll
[2020-11-12 10:21] - [2020-11-12 10:21] - 1702392 ____A (Microsoft Corporation) 123D3E401EFA07BBAA395DB996FA18EB

C:\Windows\SysWOW64\User32.dll
[2020-11-12 10:23] - [2020-11-12 10:23] - 1664160 ____A (Microsoft Corporation) ADFCF768FDFCAD0B8EEADD3D9CC6CE30

C:\Windows\System32\userinit.exe
[2019-12-07 01:08] - [2019-12-07 01:08] - 0034816 ____A (Microsoft Corporation) 582A919CA5F944AA83895A5C633C122C

C:\Windows\SysWOW64\userinit.exe
[2019-12-07 01:09] - [2019-12-07 01:09] - 0028160 ____A (Microsoft Corporation) 05D02F412A916B7322AB94E5D8EA9767

C:\Windows\System32\rpcss.dll
[2020-10-24 02:13] - [2020-10-24 02:13] - 1330688 ____A (Microsoft Corporation) D0C11ABFD6C7E4C58CED7B12953565E8

C:\Windows\System32\dnsapi.dll
[2020-11-12 10:22] - [2020-11-12 10:22] - 0828432 ____A (Microsoft Corporation) C1D0F62643FB7B87BB44B705754B8B86

C:\Windows\SysWOW64\dnsapi.dll
[2020-11-12 10:23] - [2020-11-12 10:23] - 0586240 ____A (Microsoft Corporation) 35CC261A565BF54BA739024040559ED8

C:\Windows\System32\Drivers\volsnap.sys
[2020-09-30 17:37] - [2020-09-30 17:37] - 0429880 ____A (Microsoft Corporation) 988A7A685BB51BAC62F4E176BE5432AC

C:\Windows\System32\codeintegrity\Bootcat.cache IS MISSING <==== ATTENTION

==================== Association (Whitelisted) =============


==================== Restore Points =========================

Restore point date: 2021-05-03 04:01
Restore point date: 2021-09-19 17:55
Restore point date: 2022-01-26 21:36
Restore point date: 2022-01-26 21:36

==================== Memory info ===========================

Percentage of memory in use: 12%
Total physical RAM: 8104.14 MB
Available physical RAM: 7082.27 MB
Total Virtual: 8104.14 MB
Available Virtual: 7137.9 MB

==================== Drives ================================

Drive c: (local Dsk) (Fixed) (Total:920.26 GB) (Free:236.31 GB) NTFS
Drive d: (USB DISK) (Removable) (Total:3.73 GB) (Free:2.74 GB) FAT32
Drive x: (Boot) (Fixed) (Total:0.49 GB) (Free:0.49 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 00000000)

Partition: GPT.

========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 3.7 GB) (Disk ID: C3072E18)
Partition 1: (Not Active) - (Size=3.7 GB) - (Type=0C)

==================== End of FRST.txt ============================
 

macetcd

Posts: 10   +0
Tried that but it tells me that it can't fix it.
Can't save the ISO because this computer does not have a dvd drive.
 

macetcd

Posts: 10   +0
On the good computer, I followed the instructions. I try to save to a flash drive (32G) and after it does the preparations, when it gets done, it says I need more space. I saved it to the computer but it will not let me move it and says I have to save to a media (DVD) drive
 

macetcd

Posts: 10   +0
I did the installation and it says it can't fix it. The last link you mentioned was for a page for:
Andre Da Costa
Created on July 28, 2015
[HEADING=2]How to: Perform a Repair Upgrade Using the Windows 10 ISO file [/HEADING]
 

macetcd

Posts: 10   +0
Ok. I can at least backup my files to do a clean install. I wasn't able to get that far before so at least that is a plus. I appreciate your input and guidance in determining the issue!!!
 

Broni

Posts: 55,992   +509
You're very welcome
file.php