Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

TCP/IP NetBIOS Helper Service - Error 1068


  • Please log in to reply
29 replies to this topic

#1 BCTurtle

BCTurtle

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Local time:05:32 AM

Posted 11 February 2013 - 02:07 AM

TCP/IP NetBIOS Helper Service isn't running.  Here's the error when I try to start:
Error 1068: The dependency service or group failed to start.
Dependencies:
AFD
NetBT
 - NetIO Legacy TDI Support Driver
   - TCP/IP Protocol Driver
 - TCP/IP Protocol Driver

 

Device Manager (Show Hidden)

- Ancillary Function Driver for Winsock
- NetIO Legacy TDI Support Driver
- TCP/IP Protocol Driver
 
All started and Startup type Boot


BC AdBot (Login to Remove)

 


#2 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:08:32 AM

Posted 11 February 2013 - 02:53 AM

Multiple topics were not required.Everything is network related and we could have continued there.

 

Go to device manager-Hidden devices-non plug and play drivers

 

What is the status of NETBT? Ignore NETIO TDI driver.

 

Run Farbar service scanner again and

 

  • Make sure the following options are checked:

    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center/Action Center
    • Windows Update
    • Windows Defender
    • Other Services
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log to your reply.


Edited by narenxp, 11 February 2013 - 02:56 AM.


#3 BCTurtle

BCTurtle
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Local time:05:32 AM

Posted 11 February 2013 - 10:51 AM

I don't have NetBT in the device manager under Non-Plug and Play Drivers.

 

Here's the FSS log:

Farbar Service Scanner Version: 30-01-2013
Ran by Ivan (administrator) on 11-02-2013 at 07:47:03
Running from "C:\FSS"
Windows 7 Ultimate Service Pack 1 (X64)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Attempt to access Local Host IP returned error: Localhost is blocked: Other errors
There is no connection to network.
Attempt to access Google IP returned error. 
Attempt to access Google.com returned error: Other errors
Attempt to access Yahoo IP returned error. 
Attempt to access Yahoo.com returned error: Other errors


Windows Firewall:
=============

Firewall Disabled Policy: 
==================


System Restore:
============

System Restore Disabled Policy: 
========================


Action Center:
============

Windows Update:
============
wuauserv Service is not running. Checking service configuration:
The start type of wuauserv service is OK.
The ImagePath of wuauserv service is OK.
The ServiceDll of wuauserv service is OK.


Windows Autoupdate Disabled Policy: 
============================


Windows Defender:
==============

Other Services:
==============


File Check:
========
C:\Windows\System32\nsisvc.dll => MD5 is legit
C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit
C:\Windows\System32\dhcpcore.dll => MD5 is legit
C:\Windows\System32\drivers\afd.sys => MD5 is legit
C:\Windows\System32\drivers\tdx.sys => MD5 is legit
C:\Windows\System32\Drivers\tcpip.sys => MD5 is legit
C:\Windows\System32\dnsrslvr.dll => MD5 is legit
C:\Windows\System32\mpssvc.dll => MD5 is legit
C:\Windows\System32\bfe.dll => MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit
C:\Windows\System32\SDRSVC.dll => MD5 is legit
C:\Windows\System32\vssvc.exe => MD5 is legit
C:\Windows\System32\wscsvc.dll => MD5 is legit
C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit
C:\Windows\System32\wuaueng.dll => MD5 is legit
C:\Windows\System32\qmgr.dll => MD5 is legit
C:\Windows\System32\es.dll => MD5 is legit
C:\Windows\System32\cryptsvc.dll => MD5 is legit
C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
C:\Windows\System32\ipnathlp.dll => MD5 is legit
C:\Windows\System32\iphlpsvc.dll => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit


**** End of log ****


#4 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:08:32 AM

Posted 11 February 2013 - 12:21 PM

Download

 

NETBT

 

Launch it and click YES

 

Restart the PC and see if you can find it in device manager



#5 BCTurtle

BCTurtle
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Local time:05:32 AM

Posted 11 February 2013 - 10:49 PM

Merged, but still not showing up.



#6 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:08:32 AM

Posted 11 February 2013 - 11:02 PM

Can you post a screenshot of non plug and play drivers?

 

Do you see Netbios over TCPIP?


Edited by narenxp, 11 February 2013 - 11:02 PM.


#7 BCTurtle

BCTurtle
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Local time:05:32 AM

Posted 11 February 2013 - 11:08 PM

Here's a screenshot of the Device Manager.

Attached File  DeviceMgr.png   79.74KB   7 downloads



#8 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:08:32 AM

Posted 11 February 2013 - 11:11 PM

Launch Farbar service scanner again and type

 

netbt.sys and click on search files

 

Post the generated log



#9 BCTurtle

BCTurtle
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Local time:05:32 AM

Posted 11 February 2013 - 11:20 PM

Farbar Service Scanner Version: 30-01-2013
Ran by xyz(administrator) on 11-02-2013 at 20:14:36
Windows 7 Ultimate Service Pack 1 (X64)

************************************************
======== Search: "netbt.sys" =========

C:\Windows\System32\drivers\netbt.sys
[2012-05-23 19:02] - [2010-11-20 01:23] - 0261632 ____A (Microsoft Corporation) 09594D1089C523423B32A4229263F068

C:\Windows\winsxs\amd64_microsoft-windows-netbt_31bf3856ad364e35_6.1.7601.17514_none_be8acdd10de3b1a6\netbt.sys
[2012-05-23 19:02] - [2010-11-20 01:23] - 0261632 ____A (Microsoft Corporation) 09594D1089C523423B32A4229263F068

C:\Windows\winsxs\amd64_microsoft-windows-netbt_31bf3856ad364e35_6.1.7600.16385_none_bc59ba0910f52e0c\netbt.sys
[2009-07-13 15:21] - [2009-07-13 15:21] - 0259072 ____A (Microsoft Corporation) 9162B273A44AB9DCE5B44362731D062A

====== End Of Search ======


#10 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:08:32 AM

Posted 12 February 2013 - 08:59 AM

Lets look at the registry key

 

Launch Farbar service scanner again and type

 

lmhosts and click on Export service,post the log



#11 BCTurtle

BCTurtle
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Local time:05:32 AM

Posted 12 February 2013 - 11:07 PM

lmhosts export:

 

Note: The export is in "Windows Registry Editor Version 5.00" format.

================== Result for "lmhosts" ==================

[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\lmhosts]
"Type"=dword:00000020
"Start"=dword:00000002
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
  74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,\
  00,76,00,63,00,68,00,6f,00,73,00,74,00,2e,00,65,00,78,00,65,00,20,00,2d,00,\
  6b,00,20,00,4c,00,6f,00,63,00,61,00,6c,00,53,00,65,00,72,00,76,00,69,00,63,\
  00,65,00,4e,00,65,00,74,00,77,00,6f,00,72,00,6b,00,52,00,65,00,73,00,74,00,\
  72,00,69,00,63,00,74,00,65,00,64,00,00,00
"DisplayName"="@%SystemRoot%\\system32\\lmhsvc.dll,-101"
"Group"="TDI"
"DependOnService"=hex(7):4e,00,65,00,74,00,42,00,54,00,00,00,41,00,66,00,64,00,\
  00,00,00,00
"ObjectName"="NT AUTHORITY\\LocalService"
"Description"="@%SystemRoot%\\system32\\lmhsvc.dll,-102"

[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\lmhosts\Parameters]
"ServiceDll"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
  00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
  6c,00,6d,00,68,00,73,00,76,00,63,00,2e,00,64,00,6c,00,6c,00,00,00



================== End Of Export =============


#12 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:08:32 AM

Posted 13 February 2013 - 02:32 AM

NETBT is not getting detected by windows.Were you infected?

 

Press Windows+R key and type

 

regedit and click ok

 

Go to

 

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LmHosts

 

On right side,double click on DependOnService

 

Delete NetBT value alone and click ok

 

Can you start the TCP/IP netbios helper service now?



#13 BCTurtle

BCTurtle
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Local time:05:32 AM

Posted 13 February 2013 - 09:45 AM

It didn't start, but I rebooted just in case and it started automatically.



#14 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:08:32 AM

Posted 13 February 2013 - 10:04 AM

Registry changes needs a reboot  to work.

 

When did this issue start? after uninstalling Jetico Personal Firewall?

 

 

  • Please download MiniToolBox, save it to your desktop
  • Please close any Firefox browsers you may have open
  • Double click the MiniToolBox.jpg icon to launch the program
  • Make sure the following options are checked:

     
  • Flush DNS
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log

     

     

  • Click Go and once the scan is completed a Result.txt Notepad document will open on your desktop
  • Please copy and paste the contents in your reply

Edited by narenxp, 13 February 2013 - 10:04 AM.


#15 BCTurtle

BCTurtle
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Local time:05:32 AM

Posted 13 February 2013 - 10:08 AM

Yes it started when I installed and uninstalled Jetico PF.  Here's the results.txt:

 

MiniToolBox by Farbar  Version:10-01-2013
Ran by Ivan (administrator) on 13-02-2013 at 07:06:11
Running from "C:\JeticoFix\MiniToolBox"
Windows 7 Ultimate Service Pack 1 (X64)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.
========================= IP Configuration: ================================

Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller(NDIS6.20) = Local Area Connection (Connected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset


popd
# End of IPv4 configuration



Windows IP Configuration

   Host Name . . . . . . . . . . . . : ivan-pc
   Primary Dns Suffix  . . . . . . . : 
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No

Ethernet adapter Local Area Connection:

   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller(NDIS6.20)
   Physical Address. . . . . . . . . : 00-23-54-A1-D1-58
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   Link-local IPv6 Address . . . . . : fe80::6560:afb7:a7e6:c07%14(Preferred) 
   Autoconfiguration IPv4 Address. . : 169.254.12.7(Preferred) 
   Subnet Mask . . . . . . . . . . . : 255.255.0.0
   Default Gateway . . . . . . . . . : 
   DHCPv6 IAID . . . . . . . . . . . : 234890068
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-17-47-B7-D7-00-23-54-A1-D1-58
   DNS Servers . . . . . . . . . . . : fec0:0:0:ffff::1%1
                                       fec0:0:0:ffff::2%1
                                       fec0:0:0:ffff::3%1
   NetBIOS over Tcpip. . . . . . . . : Disabled

Tunnel adapter isatap.{D813EA44-5C1E-447B-85FF-76F06871C92F}:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Teredo Tunneling Pseudo-Interface:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Server:  UnKnown
Address:  fec0:0:0:ffff::1

Ping request could not find host google.com. Please check the name and try again.
Server:  UnKnown
Address:  fec0:0:0:ffff::1

Ping request could not find host yahoo.com. Please check the name and try again.

Pinging 127.0.0.1 with 32 bytes of data:
General failure.
General failure.

Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 0, Lost = 2 (100% loss),
===========================================================================
Interface List
 14...00 23 54 a1 d1 58 ......Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller(NDIS6.20)
  1...........................Software Loopback Interface 1
 12...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
 10...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
      169.254.0.0      255.255.0.0         On-link      169.254.12.7    266
     169.254.12.7  255.255.255.255         On-link      169.254.12.7    266
  169.254.255.255  255.255.255.255         On-link      169.254.12.7    266
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link      169.254.12.7    266
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link      169.254.12.7    266
===========================================================================
Persistent Routes:
  None

IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
  1    306 ::1/128                  On-link
 14    266 fe80::/64                On-link
 14    266 fe80::6560:afb7:a7e6:c07/128
                                    On-link
  1    306 ff00::/8                 On-link
 14    266 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (02/13/2013 07:03:27 AM) (Source: Bonjour Service) (User: )
Description: ERROR: udsserver_init: 0 (The operation completed successfully.)

Error: (02/13/2013 07:03:27 AM) (Source: Bonjour Service) (User: )
Description: ERROR: bind(listenfd, (struct sockaddr *) &laddr, sizeof(laddr)); failed: 10048 (Only one usage of each socket address (protocol/network address/port) is normally permitted.)

Error: (02/13/2013 06:58:27 AM) (Source: Bonjour Service) (User: )
Description: ERROR: udsserver_init: 0 (The operation completed successfully.)

Error: (02/13/2013 06:58:27 AM) (Source: Bonjour Service) (User: )
Description: ERROR: bind(listenfd, (struct sockaddr *) &laddr, sizeof(laddr)); failed: 10048 (Only one usage of each socket address (protocol/network address/port) is normally permitted.)

Error: (02/13/2013 06:53:27 AM) (Source: Bonjour Service) (User: )
Description: ERROR: udsserver_init: 0 (The operation completed successfully.)

Error: (02/13/2013 06:53:27 AM) (Source: Bonjour Service) (User: )
Description: ERROR: bind(listenfd, (struct sockaddr *) &laddr, sizeof(laddr)); failed: 10048 (Only one usage of each socket address (protocol/network address/port) is normally permitted.)

Error: (02/13/2013 06:48:27 AM) (Source: Bonjour Service) (User: )
Description: ERROR: udsserver_init: 0 (The operation completed successfully.)

Error: (02/13/2013 06:48:27 AM) (Source: Bonjour Service) (User: )
Description: ERROR: bind(listenfd, (struct sockaddr *) &laddr, sizeof(laddr)); failed: 10048 (Only one usage of each socket address (protocol/network address/port) is normally permitted.)

Error: (02/13/2013 06:43:41 AM) (Source: MSSQL$SQLEXPRESS) (User: )
Description: SQL Server could not spawn FRunCM thread. Check the SQL Server error log and the Windows event logs for information about possible related problems.

Error: (02/13/2013 06:43:41 AM) (Source: MSSQL$SQLEXPRESS) (User: )
Description: Could not start the network library because of an internal error in the network library. To determine the cause, review the errors immediately preceding this one in the error log.


System errors:
=============
Error: (02/13/2013 06:43:42 AM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load: 
NetBT

Error: (02/13/2013 06:43:41 AM) (Source: Service Control Manager) (User: )
Description: The SQL Server (SQLEXPRESS) service terminated with service-specific error %%10013.

Error: (02/13/2013 06:41:58 AM) (Source: Service Control Manager) (User: )
Description: The Bonjour Service service terminated with service-specific error %%-1.

Error: (02/13/2013 06:41:43 AM) (Source: Service Control Manager) (User: )
Description: The TCP/IP NetBIOS Helper service depends on the NetBT service which failed to start because of the following error: 
%%1058

Error: (02/13/2013 06:41:43 AM) (Source: Service Control Manager) (User: )
Description: The NetBT service failed to start due to the following error: 
%%1058

Error: (02/13/2013 06:40:26 AM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load: 
NetBT

Error: (02/13/2013 06:40:24 AM) (Source: Service Control Manager) (User: )
Description: The SQL Server (SQLEXPRESS) service terminated with service-specific error %%10013.

Error: (02/13/2013 06:40:05 AM) (Source: Service Control Manager) (User: )
Description: The TCP/IP NetBIOS Helper service depends on the NetBT service which failed to start because of the following error: 
%%31

Error: (02/12/2013 10:08:40 PM) (Source: Service Control Manager) (User: )
Description: The Bonjour Service service terminated with service-specific error %%-1.

Error: (02/12/2013 08:06:00 PM) (Source: Disk) (User: )
Description: The driver detected a controller error on \Device\Harddisk4\DR4.


Microsoft Office Sessions:
=========================
Error: (09/28/2012 08:30:05 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6661.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 214121 seconds with 5580 seconds of active time.  This session ended with a crash.

Error: (05/24/2012 10:36:17 AM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 1025 seconds with 960 seconds of active time.  This session ended with a crash.

Error: (05/22/2012 01:02:31 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 2490 seconds with 360 seconds of active time.  This session ended with a crash.

Error: (05/20/2012 07:22:45 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 723 seconds with 360 seconds of active time.  This session ended with a crash.


CodeIntegrity Errors:
===================================
  Date: 2013-02-08 12:16:31.546
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\netbt.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2013-02-08 12:16:31.453
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\netbt.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2013-01-22 13:36:37.321
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\l3codecp.acm because the set of per-page image hashes could not be found on the system.

  Date: 2013-01-22 01:15:46.820
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\l3codecp.acm because the set of per-page image hashes could not be found on the system.

  Date: 2013-01-20 22:24:49.191
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\l3codecp.acm because the set of per-page image hashes could not be found on the system.

  Date: 2013-01-20 22:17:08.968
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\l3codecp.acm because the set of per-page image hashes could not be found on the system.

  Date: 2013-01-20 21:48:25.058
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\l3codecp.acm because the set of per-page image hashes could not be found on the system.

  Date: 2013-01-19 21:41:39.008
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\l3codecp.acm because the set of per-page image hashes could not be found on the system.

  Date: 2013-01-19 18:02:45.760
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\l3codecp.acm because the set of per-page image hashes could not be found on the system.

  Date: 2013-01-18 03:33:11.918
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\l3codecp.acm because the set of per-page image hashes could not be found on the system.


**** End of log ****






1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users