Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Help I Hate My Computer Now


  • Please log in to reply
33 replies to this topic

#1 lissalynn90

lissalynn90

  • Members
  • 28 posts
  • OFFLINE
  •  
  • Local time:01:17 PM

Posted 28 April 2012 - 11:45 AM

Help, I don't know what happened but my computer started acting funny about a week ago. I tried going back to a restore point but it didn't help. I updated my browsers, adobe, flash, etc but that also did not help. I ran malwarebytes but that did not help.

I can't move items on my desktop around the desktop or into folders. I can't move files within folders or into folders. But that is not the worst thing. I cannot close, minimize, maximize (with the buttons in the upper right corner) or switch between windows without going into task manager and clicking switch. The computer is not completely freezing though. For example: I can continue to type in this window, I can hit the back button, I can click on preview, but I cannot minimize, maximize, or close it without going into task manager and clicking on switch to switch it back to this window. I also can not switch to another open window without going through task manager. This happens with FF, IE, and with windows (like MS Excel) when I am not online.

Can you please help, not sure if this is a virus or if there is something wrong with my computer.

Missy

BC AdBot (Login to Remove)

 


#2 dev00790

dev00790

    Bleeping Chocoholic


  • Members
  • 5,037 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:UK
  • Local time:07:17 PM

Posted 28 April 2012 - 01:20 PM

Hello,

I will be helping you with your problems

Some points for you to keep in mind while I am helping you to make things go easier and faster for both of us

  • Please do not run any tools unless instructed to do so.
    • We ask you to run different tools in a specific order to ensure the malware is completely removed from your machine, and running any additional tools may detect false positives, interfere with our tools, or cause unforeseen damage or system instability.
  • Please do not attach logs or use code boxes, just copy and paste the text.
    • Due to the high volume of logs we receive it helps to receive everything in the same format, and code boxes make the logs very difficult to read. Also, attachments require us to download and open the reports when it is easier to just read the reports in your post.
  • Please read every post completely before doing anything.
    • Pay special attention to the NOTE: lines, these entries identify an individual issue or important step in the cleanup process.
  • Please provide feedback about your experience as we go.
    • A short statement describing how the computer is working helps us understand where to go next, for example: I am still getting redirected, the computer is running normally, etc. Please do not describe the computer as "the same", this requires the extra step of looking back at your previous post.

NOTE: At the top of your post, click on the Watch Topic Button, select Immediate Notification, and click on Proceed. This will send you an e-mail as soon as I reply to your topic, allowing us to resolve the issue faster.

NOTE: Backup any files that cannot be replaced. Removing malware can be unpredictable and this step can save a lot of hartaches if things don't go as planed. You can put them on a CD/DVD, external drive or a pen drive, anywhere except on the computer.

NOTE: It is good practice to copy and paste the instructions into notepad and print them in case it is necessary for you to go offline during the cleanup process. To open notepad, navigate to Start Menu > All Programs > Accessories > Notepad. Please remember to copy the entire post so you do not miss any instructions.

----------------------------------------------

Please do the following:

Step 1

Download Security Check by screen317 from here.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.

Step 2

Please download Farbar Service Scanner to your Desktop and run it on the computer with the issue.
  • Make sure the following options are checked:
    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center/Action Center
    • Windows Update
    • Windows Defender
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log to your reply.

Step 3

Please download MiniToolBox, save it to your desktop and run it.

Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Devices
  • List Users, Partitions and Memory size.
  • List Minidump Files
Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.

NOTE: When using "Reset FF Proxy Settings" option Firefox should be closed.

Step 4

  • Launch Malwarebytes' Anti-Malware (MBAM)
  • Click on the tab update, then click Check for Updates
  • If an update is found, it will download and install the latest version.
  • Then on the Scanner tab select Perform quick scan, then click Scan.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Be sure that everything is checked, and click Remove Selected.
  • When completed, a log will open in Notepad.
  • Post the log in your next reply.

NOTE: Be sure to restart the computer.

The log can also be found here:
C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt
Or at C:\Program Files\Malwarebytes' Anti-Malware\Logs\log-date.txt

Regards, dev00790

---------------------------------------

Marge: "Homer, the plant called. They said if you don't show up tomorrow don't bother showing up on Monday." Homer: "Woo-hoo! Four-day weekend!"I do not reply to Private Messages (PMs) asking for assistance - please use the forums instead. If I have been helping you, and I have not replied to your latest post in 48 hours please send me a PM. My Blog


#3 lissalynn90

lissalynn90
  • Topic Starter

  • Members
  • 28 posts
  • OFFLINE
  •  
  • Local time:01:17 PM

Posted 28 April 2012 - 04:02 PM

Results of screen317's Security Check version 0.99.32
Windows 7 x64 (UAC is enabled)
Internet Explorer 9
``````````````````````````````
Antivirus/Firewall Check:

Windows Firewall Enabled!
avast! Free Antivirus
WMI entry may not exist for antivirus; attempting automatic update.
```````````````````````````````
Anti-malware/Other Utilities Check:

Java™ 6 Update 31
Adobe Reader X (10.1.3)
Mozilla Firefox (12.0.)
Mozilla Thunderbird (x86 en-US..)
````````````````````````````````
Process Check:
objlist.exe by Laurent

Malwarebytes' Anti-Malware mbamservice.exe
Malwarebytes' Anti-Malware mbamgui.exe
AVAST Software Avast AvastUI.exe
``````````End of Log````````````



Farbar Service Scanner Version: 24-04-2012
Ran by Kitchen (administrator) on 28-04-2012 at 15:24:27
Running from "C:\Users\Kitchen\Downloads"
Microsoft Windows 7 Home Premium Service Pack 1 (X64)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Yahoo IP is accessible.


Windows Firewall:
=============

Firewall Disabled Policy:
==================


System Restore:
============

System Restore Disabled Policy:
========================


Action Center:
============

Windows Update:
============

Windows Autoupdate Disabled Policy:
============================


Windows Defender:
==============

File Check:
========
C:\Windows\System32\nsisvc.dll => MD5 is legit
C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit
C:\Windows\System32\dhcpcore.dll => MD5 is legit
C:\Windows\System32\drivers\afd.sys => MD5 is legit
C:\Windows\System32\drivers\tdx.sys => MD5 is legit
C:\Windows\System32\Drivers\tcpip.sys => MD5 is legit
C:\Windows\System32\dnsrslvr.dll => MD5 is legit
C:\Windows\System32\mpssvc.dll => MD5 is legit
C:\Windows\System32\bfe.dll => MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit
C:\Windows\System32\SDRSVC.dll => MD5 is legit
C:\Windows\System32\vssvc.exe => MD5 is legit
C:\Windows\System32\wscsvc.dll => MD5 is legit
C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit
C:\Windows\System32\wuaueng.dll => MD5 is legit
C:\Windows\System32\qmgr.dll => MD5 is legit
C:\Windows\System32\es.dll => MD5 is legit
C:\Windows\System32\cryptsvc.dll => MD5 is legit
C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit


**** End of log ****


MiniToolBox by Farbar Version: 18-01-2012
Ran by Kitchen (administrator) on 28-04-2012 at 15:30:37
Microsoft Windows 7 Home Premium Service Pack 1 (X64)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================


"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================



========================= IP Configuration: ================================

Atheros AR9285 802.11b/g/n WiFi Adapter = Wireless Network Connection (Connected)
Realtek PCIe FE Family Controller = Local Area Connection (Media disconnected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled


popd
# End of IPv4 configuration



Windows IP Configuration

Host Name . . . . . . . . . . . . : Kitchen-PC
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No

Wireless LAN adapter Wireless Network Connection:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Atheros AR9285 802.11b/g/n WiFi Adapter
Physical Address. . . . . . . . . : 90-4C-E5-37-A3-61
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::9c75:9845:5330:13af%11(Preferred)
IPv4 Address. . . . . . . . . . . : 10.0.0.4(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Saturday, April 28, 2012 11:25:53 AM
Lease Expires . . . . . . . . . . : Sunday, April 29, 2012 2:51:30 PM
Default Gateway . . . . . . . . . : 10.0.0.1
DHCP Server . . . . . . . . . . . : 10.0.0.1
DHCPv6 IAID . . . . . . . . . . . : 311446757
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-15-4F-F5-9D-00-26-2D-B3-3A-C5
DNS Servers . . . . . . . . . . . : 10.0.0.1
NetBIOS over Tcpip. . . . . . . . : Enabled

Ethernet adapter Local Area Connection:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Realtek PCIe FE Family Controller
Physical Address. . . . . . . . . : 00-26-2D-B3-3A-C5
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.{884C4951-4D10-4AC7-B539-3233AE375257}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Teredo Tunneling Pseudo-Interface:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv6 Address. . . . . . . . . . . : 2001:0:5ef5:79fb:3c02:1a6c:f5ff:fffb(Preferred)
Link-local IPv6 Address . . . . . : fe80::3c02:1a6c:f5ff:fffb%12(Preferred)
Default Gateway . . . . . . . . . : ::
NetBIOS over Tcpip. . . . . . . . : Disabled

Tunnel adapter 6TO4 Adapter:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft 6to4 Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.{26E0F86D-6398-4E03-A773-CC0DF627DE33}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #3
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Server: UnKnown
Address: 10.0.0.1

Name: google.com
Addresses: 74.125.225.64
74.125.225.65
74.125.225.66
74.125.225.67
74.125.225.68
74.125.225.69
74.125.225.70
74.125.225.71
74.125.225.72
74.125.225.73
74.125.225.78


Pinging google.com [74.125.225.64] with 32 bytes of data:
Reply from 74.125.225.64: bytes=32 time=45ms TTL=56
Reply from 74.125.225.64: bytes=32 time=47ms TTL=56

Ping statistics for 74.125.225.64:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 45ms, Maximum = 47ms, Average = 46ms
Server: UnKnown
Address: 10.0.0.1

Name: yahoo.com
Addresses: 209.191.122.70
72.30.38.140
98.139.183.24


Pinging yahoo.com [209.191.122.70] with 32 bytes of data:
Reply from 209.191.122.70: bytes=32 time=77ms TTL=53
Reply from 209.191.122.70: bytes=32 time=73ms TTL=53

Ping statistics for 209.191.122.70:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 73ms, Maximum = 77ms, Average = 75ms
Server: UnKnown
Address: 10.0.0.1

Name: bleepingcomputer.com
Address: 208.43.87.2


Pinging bleepingcomputer.com [208.43.87.2] with 32 bytes of data:
Request timed out.
Request timed out.

Ping statistics for 208.43.87.2:
Packets: Sent = 2, Received = 0, Lost = 2 (100% loss),

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time=2ms TTL=128
Reply from 127.0.0.1: bytes=32 time=3ms TTL=128

Ping statistics for 127.0.0.1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 2ms, Maximum = 3ms, Average = 2ms
===========================================================================
Interface List
11...90 4c e5 37 a3 61 ......Atheros AR9285 802.11b/g/n WiFi Adapter
10...00 26 2d b3 3a c5 ......Realtek PCIe FE Family Controller
1...........................Software Loopback Interface 1
16...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #2
12...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
14...00 00 00 00 00 00 00 e0 Microsoft 6to4 Adapter
17...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #3
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 10.0.0.1 10.0.0.4 25
10.0.0.0 255.255.255.0 On-link 10.0.0.4 281
10.0.0.4 255.255.255.255 On-link 10.0.0.4 281
10.0.0.255 255.255.255.255 On-link 10.0.0.4 281
127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 10.0.0.4 281
255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
255.255.255.255 255.255.255.255 On-link 10.0.0.4 281
===========================================================================
Persistent Routes:
None

IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
12 58 ::/0 On-link
1 306 ::1/128 On-link
12 58 2001::/32 On-link
12 306 2001:0:5ef5:79fb:3c02:1a6c:f5ff:fffb/128
On-link
11 281 fe80::/64 On-link
12 306 fe80::/64 On-link
12 306 fe80::3c02:1a6c:f5ff:fffb/128
On-link
11 281 fe80::9c75:9845:5330:13af/128
On-link
1 306 ff00::/8 On-link
12 306 ff00::/8 On-link
11 281 ff00::/8 On-link
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (04/28/2012 03:02:06 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.

Error: (04/28/2012 01:00:50 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.

Error: (04/28/2012 00:11:25 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.

Error: (04/28/2012 11:29:49 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.

Error: (04/26/2012 00:07:25 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.

Error: (04/26/2012 11:38:58 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.

Error: (04/26/2012 09:25:35 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.

Error: (04/26/2012 08:02:50 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.

Error: (04/26/2012 07:12:13 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.

Error: (04/26/2012 06:21:26 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.


System errors:
=============
Error: (04/28/2012 02:57:23 PM) (Source: bowser) (User: )
Description: The master browser has received a server announcement from the computer MISSY-PC
that believes that it is the master browser for the domain on transport NetBT_Tcpip_{884C4951-4D10-4AC7-B539-3233AE375257}.
The master browser is stopping or an election is being forced.

Error: (04/28/2012 11:25:33 AM) (Source: EventLog) (User: )
Description: The previous system shutdown at 12:20:27 PM on ?4/?26/?2012 was unexpected.

Error: (04/25/2012 05:35:44 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (04/25/2012 05:35:44 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (04/25/2012 05:35:44 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (04/25/2012 05:33:36 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (04/25/2012 05:33:36 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (04/25/2012 05:33:36 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (04/25/2012 05:33:30 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (04/25/2012 05:33:30 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068


Microsoft Office Sessions:
=========================
Error: (10/01/2011 01:00:01 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 59 seconds with 0 seconds of active time. This session ended with a crash.


=========================== Installed Programs ============================

Update for Microsoft Office 2007 (KB2508958)
Acrobat.com (Version: 1.6.65)
Adobe AIR (Version: 2.7.1.19610)
Adobe Digital Editions
Adobe Flash Player 11 ActiveX 64-bit (Version: 11.2.202.233)
Adobe Flash Player 11 Plugin 64-bit (Version: 11.2.202.233)
Adobe Reader X (10.1.3) (Version: 10.1.3)
Atheros Driver Installation Program (Version: 9.0)
avast! Free Antivirus (Version: 6.0.1367.0)
Big Fish Games: Game Manager (Version: 3.0.1.60)
Choice Guard (Version: 1.2.87.0)
Compatibility Pack for the 2007 Office system (Version: 12.0.6612.1000)
Conexant HD Audio (Version: 4.98.6.51)
CyberLink DVD Suite (Version: 6.0.3101)
CyberLink YouCam (Version: 2.0.3115)
ffdshow [rev 2527] [2008-12-19] (Version: 1.0)
FrostWire 4.21.5 (Version: 4.21.5.0)
HDAUDIO Soft Data Fax Modem with SmartCP (Version: 7.80.4.50)
Hewlett-Packard ACLM.NET v1.1.2.0 (Version: 1.00.0000)
Homepage Protection (Version: )
HP Advisor (Version: 3.2.8946.3086)
HP Customer Experience Enhancements (Version: 6.0.1.7)
HP DVD Play 3.7 (Version: 3.7.0.6623)
HP Games (Version: 1.0.2.5)
HP Quick Launch Buttons (Version: 6.50.15.1)
HP Setup (Version: 1.2.3220.3079)
HP Smart Web Printing (Version: 131.1.35898)
HP Support Assistant (Version: 6.1.12.1)
HP Update (Version: 5.001.000.014)
HP User Guides 0156 (Version: 1.02.0001)
HP Wireless Assistant (Version: 3.50.9.1)
Intel® Graphics Media Accelerator Driver (Version: 8.15.10.1872)
Java Auto Updater (Version: 2.0.5.1)
Java™ 6 Update 31 (Version: 6.0.310)
Jobulator (Version: 3.04)
Junk Mail filter update (Version: 14.0.8064.206)
KODAK Share Button App (Version: 3.01.0000.0000)
LabelPrint (Version: 2.5.1913)
LightScribe System Software (Version: 1.18.6.1)
Malwarebytes Anti-Malware version 1.61.0.1400 (Version: 1.61.0.1400)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Live Search Toolbar (Version: 3.0.560.0)
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Access MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Access Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Communicator 2007 (Version: 2.0.6362.0)
Microsoft Office Enterprise 2007 (Version: 12.0.6612.1000)
Microsoft Office Excel MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Groove MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Groove Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Home and Student 60 day trial
Microsoft Office InfoPath MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000)
Microsoft Office OneNote MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Outlook MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office PowerPoint MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office PowerPoint Viewer 2007 (English) (Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (Spanish) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proofing (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Publisher MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared 64-bit MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Word MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Silverlight (Version: 5.0.61118.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (Version: 8.0.51011)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 (Version: 9.0.21022.218)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Mozilla Firefox 12.0 (x86 en-US) (Version: 12.0)
Mozilla Maintenance Service (Version: 12.0)
Mozilla Thunderbird 12.0 (x86 en-US) (Version: 12.0)
MSVCRT (Version: 14.0.1468.721)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
muvee Reveal (Version: 7.0.40.10061)
Mystery Masterpiece: The Moonstone
Nancy Drew: The Curse of Blackmoor Manor
Penguins! (Version: WT016060)
Pirate Poppers
Power2Go (Version: 6.0.3101)
PowerDirector (Version: 7.0.3101)
PowerRecover (Version: 5.5.1923)
QLBCASL (Version: 6.40.17.2)
RCA Detective™ 3.0.1.1
RCA Digital Voice Manager 5.3.3.0
Realtek 8136 8168 8169 Ethernet Driver (Version: 1.00.0007)
Realtek USB 2.0 Card Reader (Version: 6.1.7100.30093)
Respondus LockDown Browser (Version: 1.02.0001)
Synaptics Pointing Device Driver (Version: 13.2.2.0)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office 2007 suites (KB2596651) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596789) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2598306) 32-Bit Edition
Update for Microsoft Office Access 2007 Help (KB963663)
Update for Microsoft Office Excel 2007 (KB2596596) 32-Bit Edition
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office Infopath 2007 Help (KB963662)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Outlook 2007 Help (KB963677)
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Publisher 2007 Help (KB963667)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
Update Installer for WildTangent Games App
Vivitar Experience Image Manager
Wedding Salon (Version: 2.2.0.98)
WildTangent Games App (HP Games) (Version: 4.0.5.32)
Windows Driver Package - Eastman Kodak KODAK Digital Camera (01/29/2010 1.4.1.0) (Version: 01/29/2010 1.4.1.0)
Windows Live Call (Version: 14.0.8064.0206)
Windows Live Communications Platform (Version: 14.0.8064.206)
Windows Live Essentials (Version: 14.0.8064.0206)
Windows Live Essentials (Version: 14.0.8064.206)
Windows Live Mail (Version: 14.0.8064.0206)
Windows Live Messenger (Version: 14.0.8064.0206)
Windows Live Photo Gallery (Version: 14.0.8064.206)
Windows Live Sign-in Assistant (Version: 5.000.818.5)
Windows Live Sync (Version: 14.0.8064.206)
Windows Live Upload Tool (Version: 14.0.8014.1029)
Windows Live Writer (Version: 14.0.8064.0206)
Xvid 1.2.2 final uninstall (Version: 1.2)

========================= Devices: ================================


========================= Memory info: ===================================

Percentage of memory in use: 38%
Total physical RAM: 3003.19 MB
Available physical RAM: 1840.35 MB
Total Pagefile: 6004.57 MB
Available Pagefile: 4665.7 MB
Total Virtual: 4095.88 MB
Available Virtual: 3954 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:285.98 GB) (Free:223.43 GB) NTFS
2 Drive d: (RECOVERY) (Fixed) (Total:11.91 GB) (Free:2 GB) NTFS
4 Drive f: () (Removable) (Total:3.82 GB) (Free:0.94 GB) FAT32

========================= Users: ========================================

User accounts for \\KITCHEN-PC

Administrator Guest Kitchen

========================= Minidump Files ==================================

No minidump file found

**** End of log ****



Malwarebytes Anti-Malware 1.61.0.1400
www.malwarebytes.org

Database version: v2012.04.28.07

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Kitchen :: KITCHEN-PC [administrator]

Protection: Enabled

4/28/2012 3:33:50 PM
mbam-log-2012-04-28 (15-33-50).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 199543
Time elapsed: 3 minute(s), 20 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)



I am not sure what happened, but things seem to be working now. I can move files and folders around and so far I can close and move between windows without using task manager (this has only been for the last five minutes). I don't understand what was causing the problem or why it is now working because I did not do anything since I posted and it was doing it for over a week before I posted.

#4 dev00790

dev00790

    Bleeping Chocoholic


  • Members
  • 5,037 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:UK
  • Local time:07:17 PM

Posted 28 April 2012 - 07:41 PM

Hi lissalynn,

I can't see any signs of malware in the logs.

We'll do a rootkit scan with tdsskiller, and an scan with ESET just incase:

Step 1

Please download the TDSS Rootkit Removing Tool (TDSSKiller.exe) and save it to your Desktop. <-Important!!!
  • Double-click on TDSSKiller.exe to run the tool for known TDSS variants.
    Vista/Windows 7 users right-click and select Run As Administrator.
  • If TDSSKiller does not run, try renaming it.
  • To do this, right-click on TDSSKiller.exe, select Rename and give it a random name with the .com file extension (i.e. 123abc.com). If you do not see the file extension, please refer to How to change the file extension.
  • Click the Start Scan button.
  • Do not use the computer during the scan
  • If the scan completes with nothing found, click Close to exit.
  • If malicious objects are found, they will show in the Scan results - Select action for found objects and offer three options.
  • Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process.
    Note: If Cure is not an option, Skip instead, do not choose Delete unless instructed.
  • A log file named TDSSKiller_version_date_time_log.txt (i.e. TDSSKiller.2.4.0.0_27.07.2010_09.o7.26_log.txt) will be created and saved to the root directory (usually Local Disk C:).
  • Copy and paste the contents of that file in your next reply.


Step 2

I'd like us to scan your machine with ESET Online Scanner:

Note: You can use either Internet Explorer or Mozilla FireFox for this scan. You will however need to disable your current installed Anti-Virus, how to do so can be read here.

Vista/Windows 7 users: You will need to to right-click on the either the IE or FF icon in the Start Menu or Quick Launch Bar on the Taskbar and select Run as Administrator from the context menu.

  • Hold down Control and click on this link to open ESET OnlineScan in a new window.
  • Click the Posted Image button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
    • Double click on the Posted Image
      icon on your desktop.
  • Check "YES, I accept the Terms of Use."
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Under scan settings, check "Scan Archives" and "Remove found threats"
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, click List Threats
  • Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • On ESET: Click the Back button, then the Finish button.
Note: Do not forget to re-enable your Anti-Virus application after running the above scan!




Step 3

How is your computer running now?

Edited by dev00790, 28 April 2012 - 07:41 PM.

Regards, dev00790

---------------------------------------

Marge: "Homer, the plant called. They said if you don't show up tomorrow don't bother showing up on Monday." Homer: "Woo-hoo! Four-day weekend!"I do not reply to Private Messages (PMs) asking for assistance - please use the forums instead. If I have been helping you, and I have not replied to your latest post in 48 hours please send me a PM. My Blog


#5 lissalynn90

lissalynn90
  • Topic Starter

  • Members
  • 28 posts
  • OFFLINE
  •  
  • Local time:01:17 PM

Posted 29 April 2012 - 12:38 AM

C:\Program Files (x86)\WildGames\Wedding Salon\WeddingSalon.exe a variant of Win32/Kryptik.BCY trojan cleaned by deleting - quarantined
C:\Users\Kitchen\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\24\762072d8-30ed2d75 Java/Exploit.CVE-2011-3544.F trojan deleted - quarantined
C:\Users\Kitchen\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\27\6584d6db-67e06630 multiple threats deleted - quarantined
C:\Users\Kitchen\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\33\53784821-191d10ae a variant of Java/TrojanDownloader.Agent.NDJ trojan deleted - quarantined
C:\Users\Kitchen\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\36\70190024-2c96fb82 a variant of Java/TrojanDownloader.Agent.NDJ trojan deleted - quarantined
C:\Users\Kitchen\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\43\e5a51ab-6731b447 multiple threats deleted - quarantined
C:\Users\Kitchen\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\47\be97b6f-230cadf0 multiple threats deleted - quarantined
C:\Users\Kitchen\AppData\Roaming\FrostWire\.AppSpecialShare\frostwire-4.21.6.windows.exe Win32/OpenCandy application deleted - quarantined
C:\Users\Kitchen\AppData\Roaming\FrostWire\.AppSpecialShare\frostwire-4.21.7.windows.exe Win32/OpenCandy application deleted - quarantined
C:\Users\Kitchen\AppData\Roaming\FrostWire\.AppSpecialShare\frostwire-4.21.8.windows.exe Win32/OpenCandy application deleted - quarantined
C:\Users\Kitchen\AppData\Roaming\FrostWire\.AppSpecialShare\frostwire-5.0.8.windows.exe Win32/OpenCandy application deleted - quarantined
C:\Users\Kitchen\AppData\Roaming\FrostWire\.AppSpecialShare\frostwire-5.1.5.windows.exe Win32/OpenCandy application deleted - quarantined
C:\Users\Kitchen\Downloads\frostwire-4.21.5.windows.exe Win32/OpenCandy application deleted - quarantined
C:\Users\Kitchen\Downloads\XvidSetup.exe Win32/Toolbar.Zugo application deleted - quarantined


It seems to be running okay. I can move things around and I can minimize and reopen this window. I hope that this has removed everything. Is there anything else I should do?

#6 dev00790

dev00790

    Bleeping Chocoholic


  • Members
  • 5,037 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:UK
  • Local time:07:17 PM

Posted 29 April 2012 - 04:17 AM

Hi lissalynn90,

Please post the TDSSkiller log as per step 1 of my previous post in your next reply

Regards, dev00790

---------------------------------------

Marge: "Homer, the plant called. They said if you don't show up tomorrow don't bother showing up on Monday." Homer: "Woo-hoo! Four-day weekend!"I do not reply to Private Messages (PMs) asking for assistance - please use the forums instead. If I have been helping you, and I have not replied to your latest post in 48 hours please send me a PM. My Blog


#7 lissalynn90

lissalynn90
  • Topic Starter

  • Members
  • 28 posts
  • OFFLINE
  •  
  • Local time:01:17 PM

Posted 29 April 2012 - 11:08 AM

Hi, It said nothing was found. Should I run it again?

#8 lissalynn90

lissalynn90
  • Topic Starter

  • Members
  • 28 posts
  • OFFLINE
  •  
  • Local time:01:17 PM

Posted 29 April 2012 - 11:46 AM

Okay, I ran tdskiller again and it said no treats found. However, things are freezing up again and I can't get my antivirus program to work (Avast).

#9 dev00790

dev00790

    Bleeping Chocoholic


  • Members
  • 5,037 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:UK
  • Local time:07:17 PM

Posted 29 April 2012 - 02:13 PM

Hi lissalynn90,

No need to run TDSSkiller again for now.

Step 1

Please clear the Java cache via the instructions on link

Step 2

Since Java has been recently updated:

Important Note: Your version of Java is out of date. Older versions have vulnerabilities that malicious sites can use to exploit and infect your system.
Please follow these steps to remove older version Java components and update:
  • Download the latest version of Java Runtime Environment (JRE) Version 6 and save it to your desktop.
  • Select your Platform.
  • Under Which should I choose?, check the box for Windows Offline Installation and save the file to your desktop.
  • Close any programs you may have running - especially your web browser.
Go to Posted Image > Control Panel, double-click on Add/Remove Programs or Programs and Features in Vista/Windows 7 and remove all older versions of Java.
  • Check (highlight) any item with Java Runtime Environment (JRE or J2SE) in the name.
  • Click the Remove or Change/Remove button and follow the onscreen instructions for the Java uninstaller.
  • Repeat as many times as necessary to remove each Java versions.
  • Reboot your computer once all Java components are removed.
  • Then from your desktop double-click on jre-6u32-windows-i586.exe (or jre-6u32-windows-x64.exe for 64-bit) to install the newest version.
  • If using Windows 7 or Vista and the installer refuses to launch due to insufficient user permissions, then Run As Administrator.
  • When the Java Setup - Welcome window opens, click the Install > button.
  • If offered to install a Toolbar, just uncheck the box before continuing unless you want it.
  • The McAfee Security Scan Plus tool is installed by default unless you uncheck the McAfee installation box when updating Java.
-- Java is updated frequently. If you want to be automatically notified of future updates, just turn on the Java Automatic Update feature and you will not have to remember to update when Java releases a new version.

Note: The Java Quick Starter (JQS.exe) adds a service to improve the initial startup time of Java applets and applications but it's not necessary.
To disable the JQS service if you don't want to use it:
  • Go to Start > Control Panel > Java > Advanced > Miscellaneous and uncheck the box for Java Quick Starter.
  • Click Ok and reboot your computer.

Step 3

How is your computer running now?

Regards, dev00790

---------------------------------------

Marge: "Homer, the plant called. They said if you don't show up tomorrow don't bother showing up on Monday." Homer: "Woo-hoo! Four-day weekend!"I do not reply to Private Messages (PMs) asking for assistance - please use the forums instead. If I have been helping you, and I have not replied to your latest post in 48 hours please send me a PM. My Blog


#10 lissalynn90

lissalynn90
  • Topic Starter

  • Members
  • 28 posts
  • OFFLINE
  •  
  • Local time:01:17 PM

Posted 29 April 2012 - 07:08 PM

I did everything that you asked. When I reinstalled Java it said it installed successfully. I still cannot switch between windows without task manager or minimize, max, or close open windows. Avast still will not work. I cannot uninstall or reinstall it. Nothing happens when I click on restart. When I tried to reinstall it I get an Error that says Error reading product data from "C\Program Files\AVASTSoftware\Avast\setup\part-setup_ais-557.vpx" Setup cannot continue. I get the same message when I try to uninstall it. Also I cannot move items around the desktop again.

#11 dev00790

dev00790

    Bleeping Chocoholic


  • Members
  • 5,037 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:UK
  • Local time:07:17 PM

Posted 29 April 2012 - 08:32 PM

Hi lissalynn90,

Let's try running rkill, as that will terminate a lot of malicious known running processes among others.

Please do the following:

Step 1

Please download Rkill by Grinler and save it to your desktop.Link 1
Link 2
  • Double-click on the Rkill desktop icon to run the tool.
  • If using Vista, right-click on it and Run As Administrator.
  • A black DOS box will briefly flash and then disappear. This is normal and indicates the tool ran successfully.
  • If not, delete the file, then download and use the one provided in Link 2.
  • If it does not work, repeat the process and attempt to use one of the remaining links until the tool runs.
  • If the tool does not run from any of the links provided, please let me know.
Do not reboot your computer after running rkill as the malware programs will start again. Or if rebooting is required run it again.

If you continue having problems running rkill.com, you can download iExplore.exe or eXplorer.exe, which are renamed copies of rkill.com, and try them instead.

Step 2

  • Launch Malwarebytes' Anti-Malware (MBAM)
  • Click on the tab update, then click Check for Updates
  • If an update is found, it will download and install the latest version.
  • Then on the Scanner tab select Perform full scan, then click Scan.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Be sure that everything is checked, and click Remove Selected.
  • When completed, a log will open in Notepad.
  • Post the log in your next reply.

Note: if MBAM says a reboot is needed, then reboot. However please ensure that rkill is run again after the reboot, as malicious programs may have started again (if any)

The log can also be found here:
C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt
Or at C:\Program Files\Malwarebytes' Anti-Malware\Logs\log-date.txt

Regards, dev00790

---------------------------------------

Marge: "Homer, the plant called. They said if you don't show up tomorrow don't bother showing up on Monday." Homer: "Woo-hoo! Four-day weekend!"I do not reply to Private Messages (PMs) asking for assistance - please use the forums instead. If I have been helping you, and I have not replied to your latest post in 48 hours please send me a PM. My Blog


#12 lissalynn90

lissalynn90
  • Topic Starter

  • Members
  • 28 posts
  • OFFLINE
  •  
  • Local time:01:17 PM

Posted 30 April 2012 - 12:00 AM

okay the first time I ran rkill it found nothing to stop. Then I ran malwarebytes and it found 6 things that I know I have removed before. Here is the log.Malwarebytes Anti-Malware 1.61.0.1400
www.malwarebytes.org

Database version: v2012.04.28.07

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Kitchen :: KITCHEN-PC [administrator]

Protection: Enabled

4/29/2012 10:39:58 PM
mbam-log-2012-04-29 (22-39-58).txt

Scan type: Full scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 504734
Time elapsed: 1 hour(s), 10 minute(s), 17 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 6
C:\System Volume Information\SystemRestore\FRStaging\Users\Kitchen\AppData\Local\Temp\208.1745.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\SystemRestore\FRStaging\Users\Kitchen\AppData\Local\Temp\ICReinstall_Setup.exe (PUP.FunMoods) -> Quarantined and deleted successfully.
C:\System Volume Information\SystemRestore\FRStaging\Users\Kitchen\AppData\Local\Temp\kna0.20012476189403838.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\SystemRestore\FRStaging\Users\Kitchen\AppData\LocalLow\TelevisionFanaticEI\Installr\Cache\124B3E66.exe (PUP.MyWebSearch) -> Quarantined and deleted successfully.
C:\System Volume Information\SystemRestore\FRStaging\Users\Kitchen\Downloads\Setup.exe (PUP.FunMoods) -> Quarantined and deleted successfully.
C:\System Volume Information\SystemRestore\FRStaging\Users\Kitchen\Downloads\TranslateLite.exe (PUP.FunWebProducts) -> Quarantined and deleted successfully.

(end)


It said to restart so I did and ran rkill again.

This time it stopped C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe.

Nothing has changes as far as how the computer is working. I still cannot switch between windows without task manager or minimize, max, or close open windows. Avast still will not work. I cannot uninstall or reinstall it. Nothing happens when I click on restart. When I tried to reinstall it I get an Error that says Error reading product data from "C\Program Files\AVASTSoftware\Avast\setup\part-setup_ais-557.vpx" Setup cannot continue. I get the same message when I try to uninstall it. Also I cannot move items around the desktop again.

Missy

#13 dev00790

dev00790

    Bleeping Chocoholic


  • Members
  • 5,037 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:UK
  • Local time:07:17 PM

Posted 30 April 2012 - 06:55 AM

Hi lissalynn90,

Step 1

Please follow the instructions under "Option 2" and "Option 3" on link
You may need a Windows 7 64bit disc to hand.

Post the contents of the sfcdetails.txt file on your desktop in your next reply.

Step 2

Please run the following:

  • Click Start > Run... then type in CMD and click on OK.
  • At the Command Prompt C:\ > type the following: chkdsk c: /r and hit the Enter/Return key.
    Note: chkdsk c: /r presumes that the disk upon which you wish to run Error Checking is your C: Drive (most often)
  • When prompted with:

CHKDSK cannot run because the volume is in use by another process
Would you like to schedule this volume to be checked next time the system
restarts (Y/N)

  • Hit the Y key then at the Command Prompt C:\ >
  • Type in EXIT and and hit the Enter/Return key.
  • Now Reboot(Restart) your computer.
Note: Upon Reboot(Restart), CHKDSK will start and carry out the repairs required.

Step 3

On you desktop click the Windows "Orb" button.
In the search box type "eventvwr.msc" without the quotes.
Press Enter.
Under Windows Logs, click on Application.
In the Source column double click on the most recent winlogon entry.
Click the button Copy
Paste (Ctrl and V) this in your next reply.

Step 4

How is your computer running now?

Regards, dev00790

---------------------------------------

Marge: "Homer, the plant called. They said if you don't show up tomorrow don't bother showing up on Monday." Homer: "Woo-hoo! Four-day weekend!"I do not reply to Private Messages (PMs) asking for assistance - please use the forums instead. If I have been helping you, and I have not replied to your latest post in 48 hours please send me a PM. My Blog


#14 lissalynn90

lissalynn90
  • Topic Starter

  • Members
  • 28 posts
  • OFFLINE
  •  
  • Local time:01:17 PM

Posted 30 April 2012 - 08:32 PM

2012-04-30 17:56:06, Info CSI 00000009 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:56:06, Info CSI 0000000a [SR] Beginning Verify and Repair transaction
2012-04-30 17:56:10, Info CSI 0000000c [SR] Verify complete
2012-04-30 17:56:10, Info CSI 0000000d [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:56:10, Info CSI 0000000e [SR] Beginning Verify and Repair transaction
2012-04-30 17:56:13, Info CSI 00000010 [SR] Verify complete
2012-04-30 17:56:14, Info CSI 00000011 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:56:14, Info CSI 00000012 [SR] Beginning Verify and Repair transaction
2012-04-30 17:56:20, Info CSI 00000014 [SR] Verify complete
2012-04-30 17:56:20, Info CSI 00000015 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:56:20, Info CSI 00000016 [SR] Beginning Verify and Repair transaction
2012-04-30 17:56:24, Info CSI 00000018 [SR] Verify complete
2012-04-30 17:56:24, Info CSI 00000019 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:56:24, Info CSI 0000001a [SR] Beginning Verify and Repair transaction
2012-04-30 17:56:28, Info CSI 0000001c [SR] Verify complete
2012-04-30 17:56:28, Info CSI 0000001d [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:56:28, Info CSI 0000001e [SR] Beginning Verify and Repair transaction
2012-04-30 17:56:34, Info CSI 00000020 [SR] Verify complete
2012-04-30 17:56:34, Info CSI 00000021 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:56:34, Info CSI 00000022 [SR] Beginning Verify and Repair transaction
2012-04-30 17:56:37, Info CSI 00000024 [SR] Verify complete
2012-04-30 17:56:37, Info CSI 00000025 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:56:37, Info CSI 00000026 [SR] Beginning Verify and Repair transaction
2012-04-30 17:56:40, Info CSI 00000028 [SR] Verify complete
2012-04-30 17:56:40, Info CSI 00000029 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:56:40, Info CSI 0000002a [SR] Beginning Verify and Repair transaction
2012-04-30 17:56:47, Info CSI 0000002d [SR] Verify complete
2012-04-30 17:56:48, Info CSI 0000002e [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:56:48, Info CSI 0000002f [SR] Beginning Verify and Repair transaction
2012-04-30 17:56:55, Info CSI 00000034 [SR] Verify complete
2012-04-30 17:56:55, Info CSI 00000035 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:56:55, Info CSI 00000036 [SR] Beginning Verify and Repair transaction
2012-04-30 17:57:01, Info CSI 00000038 [SR] Verify complete
2012-04-30 17:57:01, Info CSI 00000039 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:57:01, Info CSI 0000003a [SR] Beginning Verify and Repair transaction
2012-04-30 17:57:07, Info CSI 0000003d [SR] Verify complete
2012-04-30 17:57:07, Info CSI 0000003e [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:57:07, Info CSI 0000003f [SR] Beginning Verify and Repair transaction
2012-04-30 17:57:13, Info CSI 00000047 [SR] Verify complete
2012-04-30 17:57:14, Info CSI 00000048 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:57:14, Info CSI 00000049 [SR] Beginning Verify and Repair transaction
2012-04-30 17:57:23, Info CSI 00000068 [SR] Verify complete
2012-04-30 17:57:23, Info CSI 00000069 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:57:23, Info CSI 0000006a [SR] Beginning Verify and Repair transaction
2012-04-30 17:57:31, Info CSI 0000006c [SR] Verify complete
2012-04-30 17:57:31, Info CSI 0000006d [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:57:31, Info CSI 0000006e [SR] Beginning Verify and Repair transaction
2012-04-30 17:57:37, Info CSI 00000070 [SR] Verify complete
2012-04-30 17:57:38, Info CSI 00000071 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:57:38, Info CSI 00000072 [SR] Beginning Verify and Repair transaction
2012-04-30 17:57:44, Info CSI 00000074 [SR] Verify complete
2012-04-30 17:57:45, Info CSI 00000075 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:57:45, Info CSI 00000076 [SR] Beginning Verify and Repair transaction
2012-04-30 17:57:50, Info CSI 00000078 [SR] Verify complete
2012-04-30 17:57:50, Info CSI 00000079 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:57:50, Info CSI 0000007a [SR] Beginning Verify and Repair transaction
2012-04-30 17:58:00, Info CSI 0000007e [SR] Verify complete
2012-04-30 17:58:00, Info CSI 0000007f [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:58:00, Info CSI 00000080 [SR] Beginning Verify and Repair transaction
2012-04-30 17:58:11, Info CSI 000000a1 [SR] Verify complete
2012-04-30 17:58:11, Info CSI 000000a2 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:58:11, Info CSI 000000a3 [SR] Beginning Verify and Repair transaction
2012-04-30 17:58:21, Info CSI 000000a5 [SR] Verify complete
2012-04-30 17:58:21, Info CSI 000000a6 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:58:21, Info CSI 000000a7 [SR] Beginning Verify and Repair transaction
2012-04-30 17:58:36, Info CSI 000000ab [SR] Verify complete
2012-04-30 17:58:36, Info CSI 000000ac [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:58:36, Info CSI 000000ad [SR] Beginning Verify and Repair transaction
2012-04-30 17:58:39, Info CSI 000000af [SR] Verify complete
2012-04-30 17:58:40, Info CSI 000000b0 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:58:40, Info CSI 000000b1 [SR] Beginning Verify and Repair transaction
2012-04-30 17:58:42, Info CSI 000000b3 [SR] Verify complete
2012-04-30 17:58:42, Info CSI 000000b4 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:58:42, Info CSI 000000b5 [SR] Beginning Verify and Repair transaction
2012-04-30 17:58:46, Info CSI 000000b7 [SR] Verify complete
2012-04-30 17:58:46, Info CSI 000000b8 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:58:46, Info CSI 000000b9 [SR] Beginning Verify and Repair transaction
2012-04-30 17:58:56, Info CSI 000000cc [SR] Verify complete
2012-04-30 17:58:56, Info CSI 000000cd [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:58:56, Info CSI 000000ce [SR] Beginning Verify and Repair transaction
2012-04-30 17:58:59, Info CSI 000000d0 [SR] Verify complete
2012-04-30 17:59:00, Info CSI 000000d1 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:59:00, Info CSI 000000d2 [SR] Beginning Verify and Repair transaction
2012-04-30 17:59:03, Info CSI 000000d4 [SR] Verify complete
2012-04-30 17:59:04, Info CSI 000000d5 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:59:04, Info CSI 000000d6 [SR] Beginning Verify and Repair transaction
2012-04-30 17:59:07, Info CSI 000000d8 [SR] Verify complete
2012-04-30 17:59:07, Info CSI 000000d9 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:59:07, Info CSI 000000da [SR] Beginning Verify and Repair transaction
2012-04-30 17:59:13, Info CSI 000000dc [SR] Verify complete
2012-04-30 17:59:14, Info CSI 000000dd [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:59:14, Info CSI 000000de [SR] Beginning Verify and Repair transaction
2012-04-30 17:59:24, Info CSI 000000e2 [SR] Verify complete
2012-04-30 17:59:25, Info CSI 000000e3 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:59:25, Info CSI 000000e4 [SR] Beginning Verify and Repair transaction
2012-04-30 17:59:29, Info CSI 000000e6 [SR] Verify complete
2012-04-30 17:59:29, Info CSI 000000e7 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:59:29, Info CSI 000000e8 [SR] Beginning Verify and Repair transaction
2012-04-30 17:59:33, Info CSI 000000ea [SR] Verify complete
2012-04-30 17:59:34, Info CSI 000000eb [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:59:34, Info CSI 000000ec [SR] Beginning Verify and Repair transaction
2012-04-30 17:59:42, Info CSI 000000ee [SR] Verify complete
2012-04-30 17:59:42, Info CSI 000000ef [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:59:42, Info CSI 000000f0 [SR] Beginning Verify and Repair transaction
2012-04-30 17:59:50, Info CSI 000000f2 [SR] Verify complete
2012-04-30 17:59:50, Info CSI 000000f3 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:59:50, Info CSI 000000f4 [SR] Beginning Verify and Repair transaction
2012-04-30 17:59:57, Info CSI 000000f6 [SR] Verify complete
2012-04-30 17:59:58, Info CSI 000000f7 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 17:59:58, Info CSI 000000f8 [SR] Beginning Verify and Repair transaction
2012-04-30 18:00:11, Info CSI 00000110 [SR] Verify complete
2012-04-30 18:00:11, Info CSI 00000111 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:00:11, Info CSI 00000112 [SR] Beginning Verify and Repair transaction
2012-04-30 18:00:18, Info CSI 00000114 [SR] Verify complete
2012-04-30 18:00:19, Info CSI 00000115 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:00:19, Info CSI 00000116 [SR] Beginning Verify and Repair transaction
2012-04-30 18:00:35, Info CSI 00000118 [SR] Verify complete
2012-04-30 18:00:35, Info CSI 00000119 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:00:35, Info CSI 0000011a [SR] Beginning Verify and Repair transaction
2012-04-30 18:00:47, Info CSI 0000011d [SR] Verify complete
2012-04-30 18:00:48, Info CSI 0000011e [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:00:48, Info CSI 0000011f [SR] Beginning Verify and Repair transaction
2012-04-30 18:00:58, Info CSI 00000121 [SR] Verify complete
2012-04-30 18:00:58, Info CSI 00000122 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:00:58, Info CSI 00000123 [SR] Beginning Verify and Repair transaction
2012-04-30 18:01:05, Info CSI 00000125 [SR] Verify complete
2012-04-30 18:01:05, Info CSI 00000126 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:01:05, Info CSI 00000127 [SR] Beginning Verify and Repair transaction
2012-04-30 18:01:12, Info CSI 00000129 [SR] Verify complete
2012-04-30 18:01:13, Info CSI 0000012a [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:01:13, Info CSI 0000012b [SR] Beginning Verify and Repair transaction
2012-04-30 18:01:19, Info CSI 0000012f [SR] Verify complete
2012-04-30 18:01:19, Info CSI 00000130 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:01:19, Info CSI 00000131 [SR] Beginning Verify and Repair transaction
2012-04-30 18:01:24, Info CSI 00000133 [SR] Verify complete
2012-04-30 18:01:24, Info CSI 00000134 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:01:24, Info CSI 00000135 [SR] Beginning Verify and Repair transaction
2012-04-30 18:01:40, Info CSI 00000137 [SR] Verify complete
2012-04-30 18:01:41, Info CSI 00000138 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:01:41, Info CSI 00000139 [SR] Beginning Verify and Repair transaction
2012-04-30 18:01:49, Info CSI 0000013c [SR] Verify complete
2012-04-30 18:01:50, Info CSI 0000013d [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:01:50, Info CSI 0000013e [SR] Beginning Verify and Repair transaction
2012-04-30 18:01:56, Info CSI 00000141 [SR] Verify complete
2012-04-30 18:01:56, Info CSI 00000142 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:01:56, Info CSI 00000143 [SR] Beginning Verify and Repair transaction
2012-04-30 18:02:04, Info CSI 00000145 [SR] Verify complete
2012-04-30 18:02:05, Info CSI 00000146 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:02:05, Info CSI 00000147 [SR] Beginning Verify and Repair transaction
2012-04-30 18:02:15, Info CSI 0000014a [SR] Verify complete
2012-04-30 18:02:16, Info CSI 0000014b [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:02:16, Info CSI 0000014c [SR] Beginning Verify and Repair transaction
2012-04-30 18:02:22, Info CSI 0000014e [SR] Verify complete
2012-04-30 18:02:22, Info CSI 0000014f [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:02:22, Info CSI 00000150 [SR] Beginning Verify and Repair transaction
2012-04-30 18:02:29, Info CSI 00000152 [SR] Verify complete
2012-04-30 18:02:29, Info CSI 00000153 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:02:29, Info CSI 00000154 [SR] Beginning Verify and Repair transaction
2012-04-30 18:02:36, Info CSI 00000157 [SR] Verify complete
2012-04-30 18:02:36, Info CSI 00000158 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:02:36, Info CSI 00000159 [SR] Beginning Verify and Repair transaction
2012-04-30 18:02:44, Info CSI 0000015b [SR] Verify complete
2012-04-30 18:02:44, Info CSI 0000015c [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:02:44, Info CSI 0000015d [SR] Beginning Verify and Repair transaction
2012-04-30 18:02:51, Info CSI 00000160 [SR] Verify complete
2012-04-30 18:02:51, Info CSI 00000161 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:02:51, Info CSI 00000162 [SR] Beginning Verify and Repair transaction
2012-04-30 18:03:00, Info CSI 00000164 [SR] Verify complete
2012-04-30 18:03:01, Info CSI 00000165 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:03:01, Info CSI 00000166 [SR] Beginning Verify and Repair transaction
2012-04-30 18:03:08, Info CSI 0000016a [SR] Verify complete
2012-04-30 18:03:08, Info CSI 0000016b [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:03:08, Info CSI 0000016c [SR] Beginning Verify and Repair transaction
2012-04-30 18:03:17, Info CSI 0000016e [SR] Verify complete
2012-04-30 18:03:17, Info CSI 0000016f [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:03:17, Info CSI 00000170 [SR] Beginning Verify and Repair transaction
2012-04-30 18:03:26, Info CSI 00000173 [SR] Verify complete
2012-04-30 18:03:26, Info CSI 00000174 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:03:26, Info CSI 00000175 [SR] Beginning Verify and Repair transaction
2012-04-30 18:03:34, Info CSI 00000177 [SR] Verify complete
2012-04-30 18:03:34, Info CSI 00000178 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:03:34, Info CSI 00000179 [SR] Beginning Verify and Repair transaction
2012-04-30 18:03:37, Info CSI 0000017b [SR] Verify complete
2012-04-30 18:03:37, Info CSI 0000017c [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:03:37, Info CSI 0000017d [SR] Beginning Verify and Repair transaction
2012-04-30 18:03:43, Info CSI 0000017f [SR] Verify complete
2012-04-30 18:03:44, Info CSI 00000180 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:03:44, Info CSI 00000181 [SR] Beginning Verify and Repair transaction
2012-04-30 18:03:49, Info CSI 00000183 [SR] Verify complete
2012-04-30 18:03:50, Info CSI 00000184 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:03:50, Info CSI 00000185 [SR] Beginning Verify and Repair transaction
2012-04-30 18:03:57, Info CSI 00000187 [SR] Verify complete
2012-04-30 18:03:57, Info CSI 00000188 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:03:57, Info CSI 00000189 [SR] Beginning Verify and Repair transaction
2012-04-30 18:04:02, Info CSI 0000018b [SR] Verify complete
2012-04-30 18:04:02, Info CSI 0000018c [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:04:02, Info CSI 0000018d [SR] Beginning Verify and Repair transaction
2012-04-30 18:04:09, Info CSI 0000018f [SR] Verify complete
2012-04-30 18:04:09, Info CSI 00000190 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:04:09, Info CSI 00000191 [SR] Beginning Verify and Repair transaction
2012-04-30 18:04:22, Info CSI 00000193 [SR] Verify complete
2012-04-30 18:04:22, Info CSI 00000194 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:04:22, Info CSI 00000195 [SR] Beginning Verify and Repair transaction
2012-04-30 18:04:40, Info CSI 00000197 [SR] Verify complete
2012-04-30 18:04:40, Info CSI 00000198 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:04:40, Info CSI 00000199 [SR] Beginning Verify and Repair transaction
2012-04-30 18:04:48, Info CSI 0000019b [SR] Verify complete
2012-04-30 18:04:48, Info CSI 0000019c [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:04:48, Info CSI 0000019d [SR] Beginning Verify and Repair transaction
2012-04-30 18:04:54, Info CSI 0000019f [SR] Verify complete
2012-04-30 18:04:54, Info CSI 000001a0 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:04:54, Info CSI 000001a1 [SR] Beginning Verify and Repair transaction
2012-04-30 18:04:57, Info CSI 000001a3 [SR] Verify complete
2012-04-30 18:04:57, Info CSI 000001a4 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:04:57, Info CSI 000001a5 [SR] Beginning Verify and Repair transaction
2012-04-30 18:05:02, Info CSI 000001a7 [SR] Verify complete
2012-04-30 18:05:03, Info CSI 000001a8 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:05:03, Info CSI 000001a9 [SR] Beginning Verify and Repair transaction
2012-04-30 18:05:11, Info CSI 000001ab [SR] Verify complete
2012-04-30 18:05:11, Info CSI 000001ac [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:05:11, Info CSI 000001ad [SR] Beginning Verify and Repair transaction
2012-04-30 18:05:19, Info CSI 000001b5 [SR] Verify complete
2012-04-30 18:05:19, Info CSI 000001b6 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:05:19, Info CSI 000001b7 [SR] Beginning Verify and Repair transaction
2012-04-30 18:05:25, Info CSI 000001b9 [SR] Verify complete
2012-04-30 18:05:25, Info CSI 000001ba [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:05:25, Info CSI 000001bb [SR] Beginning Verify and Repair transaction
2012-04-30 18:05:29, Info CSI 000001bd [SR] Verify complete
2012-04-30 18:05:30, Info CSI 000001be [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:05:30, Info CSI 000001bf [SR] Beginning Verify and Repair transaction
2012-04-30 18:05:35, Info CSI 000001c1 [SR] Verify complete
2012-04-30 18:05:35, Info CSI 000001c2 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:05:35, Info CSI 000001c3 [SR] Beginning Verify and Repair transaction
2012-04-30 18:05:43, Info CSI 000001c5 [SR] Verify complete
2012-04-30 18:05:44, Info CSI 000001c6 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:05:44, Info CSI 000001c7 [SR] Beginning Verify and Repair transaction
2012-04-30 18:05:52, Info CSI 000001ca [SR] Verify complete
2012-04-30 18:05:53, Info CSI 000001cb [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:05:53, Info CSI 000001cc [SR] Beginning Verify and Repair transaction
2012-04-30 18:05:56, Info CSI 000001ce [SR] Verify complete
2012-04-30 18:05:56, Info CSI 000001cf [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:05:56, Info CSI 000001d0 [SR] Beginning Verify and Repair transaction
2012-04-30 18:06:01, Info CSI 000001d2 [SR] Verify complete
2012-04-30 18:06:01, Info CSI 000001d3 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:06:01, Info CSI 000001d4 [SR] Beginning Verify and Repair transaction
2012-04-30 18:06:16, Info CSI 000001d9 [SR] Verify complete
2012-04-30 18:06:16, Info CSI 000001da [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:06:16, Info CSI 000001db [SR] Beginning Verify and Repair transaction
2012-04-30 18:06:24, Info CSI 000001e0 [SR] Verify complete
2012-04-30 18:06:25, Info CSI 000001e1 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:06:25, Info CSI 000001e2 [SR] Beginning Verify and Repair transaction
2012-04-30 18:06:34, Info CSI 000001e5 [SR] Verify complete
2012-04-30 18:06:34, Info CSI 000001e6 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:06:34, Info CSI 000001e7 [SR] Beginning Verify and Repair transaction
2012-04-30 18:06:43, Info CSI 000001f3 [SR] Verify complete
2012-04-30 18:06:44, Info CSI 000001f4 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:06:44, Info CSI 000001f5 [SR] Beginning Verify and Repair transaction
2012-04-30 18:06:51, Info CSI 000001fa [SR] Verify complete
2012-04-30 18:06:52, Info CSI 000001fb [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:06:52, Info CSI 000001fc [SR] Beginning Verify and Repair transaction
2012-04-30 18:06:58, Info CSI 000001fe [SR] Verify complete
2012-04-30 18:06:58, Info CSI 000001ff [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:06:58, Info CSI 00000200 [SR] Beginning Verify and Repair transaction
2012-04-30 18:07:04, Info CSI 00000204 [SR] Verify complete
2012-04-30 18:07:04, Info CSI 00000205 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:07:04, Info CSI 00000206 [SR] Beginning Verify and Repair transaction
2012-04-30 18:07:12, Info CSI 0000021c [SR] Verify complete
2012-04-30 18:07:12, Info CSI 0000021d [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:07:12, Info CSI 0000021e [SR] Beginning Verify and Repair transaction
2012-04-30 18:07:19, Info CSI 0000022f [SR] Verify complete
2012-04-30 18:07:19, Info CSI 00000230 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:07:19, Info CSI 00000231 [SR] Beginning Verify and Repair transaction
2012-04-30 18:07:25, Info CSI 00000233 [SR] Verify complete
2012-04-30 18:07:25, Info CSI 00000234 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:07:25, Info CSI 00000235 [SR] Beginning Verify and Repair transaction
2012-04-30 18:07:32, Info CSI 00000237 [SR] Verify complete
2012-04-30 18:07:32, Info CSI 00000238 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:07:32, Info CSI 00000239 [SR] Beginning Verify and Repair transaction
2012-04-30 18:07:38, Info CSI 00000247 [SR] Verify complete
2012-04-30 18:07:39, Info CSI 00000248 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:07:39, Info CSI 00000249 [SR] Beginning Verify and Repair transaction
2012-04-30 18:07:49, Info CSI 0000024b [SR] Verify complete
2012-04-30 18:07:49, Info CSI 0000024c [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:07:49, Info CSI 0000024d [SR] Beginning Verify and Repair transaction
2012-04-30 18:07:57, Info CSI 0000025b [SR] Verify complete
2012-04-30 18:07:57, Info CSI 0000025c [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:07:57, Info CSI 0000025d [SR] Beginning Verify and Repair transaction
2012-04-30 18:08:00, Info CSI 0000025f [SR] Verify complete
2012-04-30 18:08:00, Info CSI 00000260 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:08:00, Info CSI 00000261 [SR] Beginning Verify and Repair transaction
2012-04-30 18:08:07, Info CSI 00000263 [SR] Verify complete
2012-04-30 18:08:07, Info CSI 00000264 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:08:07, Info CSI 00000265 [SR] Beginning Verify and Repair transaction
2012-04-30 18:08:13, Info CSI 00000268 [SR] Verify complete
2012-04-30 18:08:14, Info CSI 00000269 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:08:14, Info CSI 0000026a [SR] Beginning Verify and Repair transaction
2012-04-30 18:08:17, Info CSI 0000026c [SR] Verify complete
2012-04-30 18:08:17, Info CSI 0000026d [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:08:17, Info CSI 0000026e [SR] Beginning Verify and Repair transaction
2012-04-30 18:08:25, Info CSI 00000270 [SR] Verify complete
2012-04-30 18:08:25, Info CSI 00000271 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:08:25, Info CSI 00000272 [SR] Beginning Verify and Repair transaction
2012-04-30 18:08:31, Info CSI 00000274 [SR] Verify complete
2012-04-30 18:08:31, Info CSI 00000275 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:08:31, Info CSI 00000276 [SR] Beginning Verify and Repair transaction
2012-04-30 18:08:40, Info CSI 0000027f [SR] Verify complete
2012-04-30 18:08:40, Info CSI 00000280 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:08:40, Info CSI 00000281 [SR] Beginning Verify and Repair transaction
2012-04-30 18:08:48, Info CSI 00000294 [SR] Verify complete
2012-04-30 18:08:49, Info CSI 00000295 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:08:49, Info CSI 00000296 [SR] Beginning Verify and Repair transaction
2012-04-30 18:09:05, Info CSI 00000298 [SR] Verify complete
2012-04-30 18:09:05, Info CSI 00000299 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:09:05, Info CSI 0000029a [SR] Beginning Verify and Repair transaction
2012-04-30 18:09:11, Info CSI 0000029c [SR] Verify complete
2012-04-30 18:09:11, Info CSI 0000029d [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:09:11, Info CSI 0000029e [SR] Beginning Verify and Repair transaction
2012-04-30 18:09:16, Info CSI 000002a1 [SR] Verify complete
2012-04-30 18:09:17, Info CSI 000002a2 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:09:17, Info CSI 000002a3 [SR] Beginning Verify and Repair transaction
2012-04-30 18:09:21, Info CSI 000002a6 [SR] Verify complete
2012-04-30 18:09:21, Info CSI 000002a7 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:09:21, Info CSI 000002a8 [SR] Beginning Verify and Repair transaction
2012-04-30 18:09:27, Info CSI 000002aa [SR] Verify complete
2012-04-30 18:09:27, Info CSI 000002ab [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:09:27, Info CSI 000002ac [SR] Beginning Verify and Repair transaction
2012-04-30 18:09:34, Info CSI 000002ae [SR] Verify complete
2012-04-30 18:09:34, Info CSI 000002af [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:09:34, Info CSI 000002b0 [SR] Beginning Verify and Repair transaction
2012-04-30 18:09:40, Info CSI 000002b3 [SR] Verify complete
2012-04-30 18:09:41, Info CSI 000002b4 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:09:41, Info CSI 000002b5 [SR] Beginning Verify and Repair transaction
2012-04-30 18:09:46, Info CSI 000002b7 [SR] Verify complete
2012-04-30 18:09:46, Info CSI 000002b8 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:09:46, Info CSI 000002b9 [SR] Beginning Verify and Repair transaction
2012-04-30 18:09:49, Info CSI 000002bb [SR] Cannot repair member file [l:26{13}]"WinSATAPI.dll" of Microsoft-Windows-WindowsSystemAssessmentToolAPI, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:09:51, Info CSI 000002bd [SR] Cannot repair member file [l:26{13}]"WinSATAPI.dll" of Microsoft-Windows-WindowsSystemAssessmentToolAPI, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:09:51, Info CSI 000002be [SR] This component was referenced by [l:242{121}]"Microsoft-Windows-Client-Features-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.Microsoft-Windows-Client-Features-Update"
2012-04-30 18:09:51, Info CSI 000002c1 [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:26{13}]"WinSATAPI.dll"; source file in store is also corrupted
2012-04-30 18:09:52, Info CSI 000002c3 [SR] Verify complete
2012-04-30 18:09:52, Info CSI 000002c4 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:09:52, Info CSI 000002c5 [SR] Beginning Verify and Repair transaction
2012-04-30 18:09:52, Info CSI 000002c7 [SR] Cannot repair member file [l:24{12}]"wiadefui.dll" of Microsoft-Windows-WindowsImageAcquisition-UIComponents, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:09:53, Info CSI 000002c9 [SR] Cannot repair member file [l:24{12}]"audiodev.dll" of Microsoft-Windows-WPD-LegacyWmdmShellExtension, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:09:55, Info CSI 000002cb [SR] Cannot repair member file [l:22{11}]"wimgapi.dll" of Microsoft-Windows-Wimgapi, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:09:55, Info CSI 000002cd [SR] Cannot repair member file [l:22{11}]"ReAgent.dll" of Microsoft-Windows-WinRE-RecoveryAgent, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:09:56, Info CSI 000002cf [SR] Cannot repair member file [l:24{12}]"wlanpref.dll" of Microsoft-Windows-WLANPref, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:09:57, Info CSI 000002d1 [SR] Cannot repair member file [l:24{12}]"wlanpref.dll" of Microsoft-Windows-WLANPref, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:09:57, Info CSI 000002d2 [SR] This component was referenced by [l:242{121}]"Microsoft-Windows-Client-Features-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.Microsoft-Windows-Client-Features-Update"
2012-04-30 18:09:57, Info CSI 000002d5 [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:24{12}]"wlanpref.dll"; source file in store is also corrupted
2012-04-30 18:09:57, Info CSI 000002d7 [SR] Cannot repair member file [l:24{12}]"audiodev.dll" of Microsoft-Windows-WPD-LegacyWmdmShellExtension, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:09:57, Info CSI 000002d8 [SR] This component was referenced by [l:206{103}]"Microsoft-Windows-Media-Format-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsMediaFormatRuntime"
2012-04-30 18:09:57, Info CSI 000002db [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:24{12}]"audiodev.dll"; source file in store is also corrupted
2012-04-30 18:09:58, Info CSI 000002dd [SR] Cannot repair member file [l:22{11}]"ReAgent.dll" of Microsoft-Windows-WinRE-RecoveryAgent, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:09:58, Info CSI 000002de [SR] This component was referenced by [l:202{101}]"Microsoft-Windows-Foundation-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsFoundationDelivery"
2012-04-30 18:09:58, Info CSI 000002e1 [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:22{11}]"ReAgent.dll"; source file in store is also corrupted
2012-04-30 18:09:58, Info CSI 000002e3 [SR] Cannot repair member file [l:24{12}]"wiadefui.dll" of Microsoft-Windows-WindowsImageAcquisition-UIComponents, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:09:58, Info CSI 000002e4 [SR] This component was referenced by [l:242{121}]"Microsoft-Windows-Client-Features-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.Microsoft-Windows-Client-Features-Update"
2012-04-30 18:09:58, Info CSI 000002e7 [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:24{12}]"wiadefui.dll"; source file in store is also corrupted
2012-04-30 18:09:58, Info CSI 000002e9 [SR] Cannot repair member file [l:22{11}]"wimgapi.dll" of Microsoft-Windows-Wimgapi, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:09:58, Info CSI 000002ea [SR] This component was referenced by [l:202{101}]"Microsoft-Windows-Foundation-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsFoundationDelivery"
2012-04-30 18:09:58, Info CSI 000002ed [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:22{11}]"wimgapi.dll"; source file in store is also corrupted
2012-04-30 18:09:58, Info CSI 000002ef [SR] Verify complete
2012-04-30 18:09:59, Info CSI 000002f0 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:09:59, Info CSI 000002f1 [SR] Beginning Verify and Repair transaction
2012-04-30 18:10:00, Info CSI 000002f3 [SR] Cannot repair member file [l:24{12}]"WMVSDECD.DLL" of Microsoft-Windows-WMVSDECD, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:01, Info CSI 000002f5 [SR] Cannot repair member file [l:38{19}]"WPDShServiceObj.dll" of Microsoft-Windows-WPD-ShellExtension, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:01, Info CSI 000002f7 [SR] Cannot repair member file [l:48{24}]"PortableDeviceStatus.dll" of Microsoft-Windows-WPD-Status, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:01, Info CSI 000002f9 [SR] Cannot repair member file [l:24{12}]"wsdchngr.dll" of Microsoft-Windows-WSD-ChallengeComponent, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:07, Info CSI 000002fc [SR] Cannot repair member file [l:38{19}]"WPDShServiceObj.dll" of Microsoft-Windows-WPD-ShellExtension, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:07, Info CSI 000002fd [SR] This component was referenced by [l:206{103}]"Microsoft-Windows-Media-Format-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsMediaFormatRuntime"
2012-04-30 18:10:07, Info CSI 00000300 [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:38{19}]"WPDShServiceObj.dll"; source file in store is also corrupted
2012-04-30 18:10:07, Info CSI 00000302 [SR] Cannot repair member file [l:24{12}]"wsdchngr.dll" of Microsoft-Windows-WSD-ChallengeComponent, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:07, Info CSI 00000303 [SR] This component was referenced by [l:202{101}]"Microsoft-Windows-Foundation-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsFoundationDelivery"
2012-04-30 18:10:07, Info CSI 00000306 [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:24{12}]"wsdchngr.dll"; source file in store is also corrupted
2012-04-30 18:10:07, Info CSI 00000308 [SR] Cannot repair member file [l:24{12}]"WMVSDECD.DLL" of Microsoft-Windows-WMVSDECD, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:07, Info CSI 00000309 [SR] This component was referenced by [l:206{103}]"Microsoft-Windows-Media-Format-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsMediaFormatRuntime"
2012-04-30 18:10:07, Info CSI 0000030c [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:24{12}]"WMVSDECD.DLL"; source file in store is also corrupted
2012-04-30 18:10:07, Info CSI 0000030e [SR] Cannot repair member file [l:48{24}]"PortableDeviceStatus.dll" of Microsoft-Windows-WPD-Status, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:07, Info CSI 0000030f [SR] This component was referenced by [l:206{103}]"Microsoft-Windows-Media-Format-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsMediaFormatRuntime"
2012-04-30 18:10:07, Info CSI 00000312 [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:48{24}]"PortableDeviceStatus.dll"; source file in store is also corrupted
2012-04-30 18:10:07, Info CSI 00000314 [SR] Verify complete
2012-04-30 18:10:08, Info CSI 00000315 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:10:08, Info CSI 00000316 [SR] Beginning Verify and Repair transaction
2012-04-30 18:10:12, Info CSI 00000318 [SR] Cannot repair member file [l:24{12}]"NAPCRYPT.DLL" of napcrypt, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:12, Info CSI 0000031a [SR] Cannot repair member file [l:24{12}]"NAPCRYPT.DLL" of napcrypt, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:12, Info CSI 0000031b [SR] This component was referenced by [l:202{101}]"Microsoft-Windows-Foundation-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsFoundationDelivery"
2012-04-30 18:10:12, Info CSI 0000031e [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:24{12}]"NAPCRYPT.DLL"; source file in store is also corrupted
2012-04-30 18:10:12, Info CSI 00000320 [SR] Verify complete
2012-04-30 18:10:13, Info CSI 00000321 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:10:13, Info CSI 00000322 [SR] Beginning Verify and Repair transaction
2012-04-30 18:10:15, Info CSI 00000324 [SR] Cannot repair member file [l:26{13}]"netfxperf.dll" of NetFx-FW_NETFXPERF_DLL, Version = 6.2.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:16, Info CSI 00000326 [SR] Cannot repair member file [l:24{12}]"mscories.dll" of NetFx-MSCORIES_DLL, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:17, Info CSI 00000328 [SR] Cannot repair member file [l:26{13}]"netfxperf.dll" of NetFx-FW_NETFXPERF_DLL, Version = 6.2.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:17, Info CSI 00000329 [SR] This component was referenced by [l:202{101}]"Microsoft-Windows-Foundation-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsFoundationDelivery"
2012-04-30 18:10:17, Info CSI 0000032c [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:26{13}]"netfxperf.dll"; source file in store is also corrupted
2012-04-30 18:10:17, Info CSI 0000032e [SR] Cannot repair member file [l:24{12}]"mscories.dll" of NetFx-MSCORIES_DLL, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:17, Info CSI 0000032f [SR] This component was referenced by [l:202{101}]"Microsoft-Windows-Foundation-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsFoundationDelivery"
2012-04-30 18:10:17, Info CSI 00000332 [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:24{12}]"mscories.dll"; source file in store is also corrupted
2012-04-30 18:10:18, Info CSI 00000334 [SR] Verify complete
2012-04-30 18:10:18, Info CSI 00000335 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:10:18, Info CSI 00000336 [SR] Beginning Verify and Repair transaction
2012-04-30 18:10:23, Info CSI 00000338 [SR] Verify complete
2012-04-30 18:10:23, Info CSI 00000339 [SR] Verifying 100 (0x0000000000000064) components
2012-04-30 18:10:23, Info CSI 0000033a [SR] Beginning Verify and Repair transaction
2012-04-30 18:10:30, Info CSI 0000033c [SR] Verify complete
2012-04-30 18:10:31, Info CSI 0000033d [SR] Verifying 56 (0x0000000000000038) components
2012-04-30 18:10:31, Info CSI 0000033e [SR] Beginning Verify and Repair transaction
2012-04-30 18:10:33, Info CSI 00000340 [SR] Verify complete
2012-04-30 18:10:33, Info CSI 00000341 [SR] Repairing 13 (0x000000000000000d) components
2012-04-30 18:10:33, Info CSI 00000342 [SR] Beginning Verify and Repair transaction
2012-04-30 18:10:33, Info CSI 00000344 [SR] Cannot repair member file [l:26{13}]"WinSATAPI.dll" of Microsoft-Windows-WindowsSystemAssessmentToolAPI, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:33, Info CSI 00000346 [SR] Cannot repair member file [l:24{12}]"wlanpref.dll" of Microsoft-Windows-WLANPref, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:33, Info CSI 00000348 [SR] Cannot repair member file [l:24{12}]"audiodev.dll" of Microsoft-Windows-WPD-LegacyWmdmShellExtension, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:33, Info CSI 0000034a [SR] Cannot repair member file [l:22{11}]"ReAgent.dll" of Microsoft-Windows-WinRE-RecoveryAgent, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:33, Info CSI 0000034c [SR] Cannot repair member file [l:24{12}]"wiadefui.dll" of Microsoft-Windows-WindowsImageAcquisition-UIComponents, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:33, Info CSI 0000034e [SR] Cannot repair member file [l:22{11}]"wimgapi.dll" of Microsoft-Windows-Wimgapi, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:33, Info CSI 00000350 [SR] Cannot repair member file [l:38{19}]"WPDShServiceObj.dll" of Microsoft-Windows-WPD-ShellExtension, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:33, Info CSI 00000352 [SR] Cannot repair member file [l:24{12}]"wsdchngr.dll" of Microsoft-Windows-WSD-ChallengeComponent, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:33, Info CSI 00000354 [SR] Cannot repair member file [l:24{12}]"WMVSDECD.DLL" of Microsoft-Windows-WMVSDECD, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:33, Info CSI 00000356 [SR] Cannot repair member file [l:48{24}]"PortableDeviceStatus.dll" of Microsoft-Windows-WPD-Status, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:33, Info CSI 00000358 [SR] Cannot repair member file [l:24{12}]"NAPCRYPT.DLL" of napcrypt, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:33, Info CSI 0000035a [SR] Cannot repair member file [l:26{13}]"netfxperf.dll" of NetFx-FW_NETFXPERF_DLL, Version = 6.2.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:33, Info CSI 0000035c [SR] Cannot repair member file [l:24{12}]"mscories.dll" of NetFx-MSCORIES_DLL, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:33, Info CSI 0000035e [SR] Cannot repair member file [l:24{12}]"wiadefui.dll" of Microsoft-Windows-WindowsImageAcquisition-UIComponents, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:33, Info CSI 0000035f [SR] This component was referenced by [l:242{121}]"Microsoft-Windows-Client-Features-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.Microsoft-Windows-Client-Features-Update"
2012-04-30 18:10:33, Info CSI 00000362 [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:24{12}]"wiadefui.dll"; source file in store is also corrupted
2012-04-30 18:10:33, Info CSI 00000364 [SR] Cannot repair member file [l:26{13}]"netfxperf.dll" of NetFx-FW_NETFXPERF_DLL, Version = 6.2.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:33, Info CSI 00000365 [SR] This component was referenced by [l:202{101}]"Microsoft-Windows-Foundation-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsFoundationDelivery"
2012-04-30 18:10:34, Info CSI 00000368 [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:26{13}]"netfxperf.dll"; source file in store is also corrupted
2012-04-30 18:10:34, Info CSI 0000036a [SR] Cannot repair member file [l:26{13}]"WinSATAPI.dll" of Microsoft-Windows-WindowsSystemAssessmentToolAPI, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:34, Info CSI 0000036b [SR] This component was referenced by [l:242{121}]"Microsoft-Windows-Client-Features-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.Microsoft-Windows-Client-Features-Update"
2012-04-30 18:10:34, Info CSI 0000036e [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:26{13}]"WinSATAPI.dll"; source file in store is also corrupted
2012-04-30 18:10:34, Info CSI 00000370 [SR] Cannot repair member file [l:38{19}]"WPDShServiceObj.dll" of Microsoft-Windows-WPD-ShellExtension, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:34, Info CSI 00000371 [SR] This component was referenced by [l:206{103}]"Microsoft-Windows-Media-Format-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsMediaFormatRuntime"
2012-04-30 18:10:34, Info CSI 00000374 [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:38{19}]"WPDShServiceObj.dll"; source file in store is also corrupted
2012-04-30 18:10:34, Info CSI 00000376 [SR] Cannot repair member file [l:48{24}]"PortableDeviceStatus.dll" of Microsoft-Windows-WPD-Status, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:34, Info CSI 00000377 [SR] This component was referenced by [l:206{103}]"Microsoft-Windows-Media-Format-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsMediaFormatRuntime"
2012-04-30 18:10:34, Info CSI 0000037a [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:48{24}]"PortableDeviceStatus.dll"; source file in store is also corrupted
2012-04-30 18:10:34, Info CSI 0000037c [SR] Cannot repair member file [l:22{11}]"wimgapi.dll" of Microsoft-Windows-Wimgapi, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:34, Info CSI 0000037d [SR] This component was referenced by [l:202{101}]"Microsoft-Windows-Foundation-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsFoundationDelivery"
2012-04-30 18:10:34, Info CSI 00000380 [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:22{11}]"wimgapi.dll"; source file in store is also corrupted
2012-04-30 18:10:34, Info CSI 00000382 [SR] Cannot repair member file [l:24{12}]"wsdchngr.dll" of Microsoft-Windows-WSD-ChallengeComponent, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:34, Info CSI 00000383 [SR] This component was referenced by [l:202{101}]"Microsoft-Windows-Foundation-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsFoundationDelivery"
2012-04-30 18:10:34, Info CSI 00000386 [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:24{12}]"wsdchngr.dll"; source file in store is also corrupted
2012-04-30 18:10:34, Info CSI 00000388 [SR] Cannot repair member file [l:24{12}]"mscories.dll" of NetFx-MSCORIES_DLL, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:34, Info CSI 00000389 [SR] This component was referenced by [l:202{101}]"Microsoft-Windows-Foundation-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsFoundationDelivery"
2012-04-30 18:10:34, Info CSI 0000038c [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:24{12}]"mscories.dll"; source file in store is also corrupted
2012-04-30 18:10:34, Info CSI 0000038e [SR] Cannot repair member file [l:22{11}]"ReAgent.dll" of Microsoft-Windows-WinRE-RecoveryAgent, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:34, Info CSI 0000038f [SR] This component was referenced by [l:202{101}]"Microsoft-Windows-Foundation-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsFoundationDelivery"
2012-04-30 18:10:34, Info CSI 00000392 [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:22{11}]"ReAgent.dll"; source file in store is also corrupted
2012-04-30 18:10:34, Info CSI 00000394 [SR] Cannot repair member file [l:24{12}]"WMVSDECD.DLL" of Microsoft-Windows-WMVSDECD, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:34, Info CSI 00000395 [SR] This component was referenced by [l:206{103}]"Microsoft-Windows-Media-Format-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsMediaFormatRuntime"
2012-04-30 18:10:34, Info CSI 00000398 [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:24{12}]"WMVSDECD.DLL"; source file in store is also corrupted
2012-04-30 18:10:34, Info CSI 0000039a [SR] Cannot repair member file [l:24{12}]"wlanpref.dll" of Microsoft-Windows-WLANPref, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:34, Info CSI 0000039b [SR] This component was referenced by [l:242{121}]"Microsoft-Windows-Client-Features-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.Microsoft-Windows-Client-Features-Update"
2012-04-30 18:10:34, Info CSI 0000039e [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:24{12}]"wlanpref.dll"; source file in store is also corrupted
2012-04-30 18:10:34, Info CSI 000003a0 [SR] Cannot repair member file [l:24{12}]"audiodev.dll" of Microsoft-Windows-WPD-LegacyWmdmShellExtension, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:34, Info CSI 000003a1 [SR] This component was referenced by [l:206{103}]"Microsoft-Windows-Media-Format-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsMediaFormatRuntime"
2012-04-30 18:10:34, Info CSI 000003a4 [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:24{12}]"audiodev.dll"; source file in store is also corrupted
2012-04-30 18:10:34, Info CSI 000003a6 [SR] Cannot repair member file [l:24{12}]"NAPCRYPT.DLL" of napcrypt, Version = 6.1.7601.17514, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral in the store, hash mismatch
2012-04-30 18:10:34, Info CSI 000003a7 [SR] This component was referenced by [l:202{101}]"Microsoft-Windows-Foundation-Package~31bf3856ad364e35~amd64~~6.1.7601.17514.WindowsFoundationDelivery"
2012-04-30 18:10:34, Info CSI 000003aa [SR] Could not reproject corrupted file [ml:48{24},l:46{23}]"\??\C:\Windows\SysWOW64"\[l:24{12}]"NAPCRYPT.DLL"; source file in store is also corrupted
2012-04-30 18:10:34, Info CSI 000003ac [SR] Repair complete
2012-04-30 18:10:34, Info CSI 000003ad [SR] Committing transaction
2012-04-30 18:10:34, Info CSI 000003b1 [SR] Verify and Repair Transaction completed. All files and registry keys listed in this transaction have been successfully repaired


Log Name: Application
Source: Microsoft-Windows-Winlogon
Date: 4/30/2012 8:25:11 PM
Event ID: 6000
Task Category: None
Level: Information
Keywords: Classic
User: N/A
Computer: Kitchen-PC
Description:
The winlogon notification subscriber <SessionEnv> was unavailable to handle a notification event.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<System>
<Provider Name="Microsoft-Windows-Winlogon" Guid="{DBE9B383-7CF3-4331-91CC-A3CB16A3B538}" EventSourceName="Wlclntfy" />
<EventID Qualifiers="32768">6000</EventID>
<Version>0</Version>
<Level>4</Level>
<Task>0</Task>
<Opcode>0</Opcode>
<Keywords>0x80000000000000</Keywords>
<TimeCreated SystemTime="2012-05-01T01:25:11.000000000Z" />
<EventRecordID>20947</EventRecordID>
<Correlation />
<Execution ProcessID="0" ThreadID="0" />
<Channel>Application</Channel>
<Computer>Kitchen-PC</Computer>
<Security />
</System>
<EventData>
<Data>SessionEnv</Data>
<Binary>D9060000</Binary>
</EventData>
</Event>

I still cannot switch between windows without task manager or minimize, max, or close open windows. Avast still will not work. I cannot uninstall or reinstall it. Nothing happens when I click on restart. When I tried to reinstall it I get an Error that says Error reading product data from "C\Program Files\AVASTSoftware\Avast\setup\part-setup_ais-557.vpx" Setup cannot continue. I get the same message when I try to uninstall it. Also I cannot move items around the desktop again.

#15 dev00790

dev00790

    Bleeping Chocoholic


  • Members
  • 5,037 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:UK
  • Local time:07:17 PM

Posted 01 May 2012 - 08:38 AM

Hi lissalynn90,

Do you have a Windows 7 64bit disc to hand?

Regards, dev00790

---------------------------------------

Marge: "Homer, the plant called. They said if you don't show up tomorrow don't bother showing up on Monday." Homer: "Woo-hoo! Four-day weekend!"I do not reply to Private Messages (PMs) asking for assistance - please use the forums instead. If I have been helping you, and I have not replied to your latest post in 48 hours please send me a PM. My Blog





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users