Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Windows 8.1 , Internet explorer 11 ref memory 0x9871aa50


  • Please log in to reply
9 replies to this topic

#1 Keithlaurence

Keithlaurence

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:02 PM

Posted 01 June 2015 - 09:04 AM

Hi since I upgraded to windows 8.1 my internet explorer 11 keeps bombing out with the following error message:

 

The instruction at 0xcaffbef7 referenced memory at 0x9871aa50. The memory could not be written.

Click on OK to terminate this program.

 

Please help



BC AdBot (Login to Remove)

 


#2 Aura

Aura

    Bleepin' Special Ops


  • Malware Response Team
  • 19,664 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:05:02 PM

Posted 01 June 2015 - 09:13 AM

Hi Keithlaurence :)

If you launch Internet Explorer 11 without any add-ons, does it works?

http://www.thewindowsclub.com/run-internet-explorer-8-in-no-add-ons-mode

Additionally, follow the instructions below please.

3Al62Pm.pngMiniToolBox
  • Download MiniToolBox and move the executable file to your Desktop;
  • Execute MiniToolBox and check the following options:
    • List Installed Programs;
    • List Last 10 Event Viewer Errors;
    • List Devices - Only Problems;
    • List Users, Partitions and Memory size;
      wNeKMCX.png
  • Once this is done, click on Go and wait for the scan to complete;
  • Once the scan is complete, a log will open. Please copy/paste the content of the output log in your next reply;

unite_blue.png
Security Administrator | Sysnative Windows Update Senior Analyst | Malware Hunter | @SecurityAura
My timezone UTC-05:00 (East. Coast). If I didn't reply to you within 48 hours, please send me a PM.


#3 Keithlaurence

Keithlaurence
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:02 PM

Posted 01 June 2015 - 09:48 AM

Hi Aura

 

details requested.

Thanks

 

MiniToolBox by Farbar  Version: 11-05-2015 01
Ran by keithf (administrator) on 01-06-2015 at 16:47:16
Running from "\\fgmaster\Users\keithf"
Microsoft Windows 8.1 Pro  (X64)
Model: Vostro 3560 Manufacturer: Dell Inc.
Boot Mode: Normal
***************************************************************************

========================= Event log errors: ===============================

Application errors:
==================
Error: (06/01/2015 04:13:37 PM) (Source: Application Error) (User: )
Description: Faulting application name: bcmwltry.exe, version: 6.20.55.49, time stamp: 0x4f60e0ee
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x00007ff97676f0a2
Faulting process ID: 0x1aec
Faulting application start time: 0xbcmwltry.exe0
Faulting application path: bcmwltry.exe1
Faulting module path: bcmwltry.exe2
Report ID: bcmwltry.exe3
Faulting package full name: bcmwltry.exe4
Faulting package-relative application ID: bcmwltry.exe5

Error: (06/01/2015 00:21:34 PM) (Source: Application Error) (User: )
Description: Faulting application name: OUTLOOK.EXE, version: 11.0.8326.0, time stamp: 0x4c1c2372
Faulting module name: OUTLLIB.dll, version: 11.0.8330.0, time stamp: 0x4cb60a62
Exception code: 0xc0000005
Fault offset: 0x002769b5
Faulting process ID: 0x1d50
Faulting application start time: 0xOUTLOOK.EXE0
Faulting application path: OUTLOOK.EXE1
Faulting module path: OUTLOOK.EXE2
Report ID: OUTLOOK.EXE3
Faulting package full name: OUTLOOK.EXE4
Faulting package-relative application ID: OUTLOOK.EXE5

Error: (06/01/2015 11:05:04 AM) (Source: Microsoft Office 11) (User: )
Description: Rejected Safe Mode action : Microsoft Office Excel.

Error: (06/01/2015 09:27:15 AM) (Source: Application Hang) (User: )
Description: The program EXCEL.EXE version 11.0.8404.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 219c

Start Time: 01d09c3bb8b7e8b5

Termination Time: 28042

Application Path: C:\Program Files (x86)\Microsoft Office\OFFICE11\EXCEL.EXE

Report Id: 8af68659-082f-11e5-bfa8-c01885c1af40

Faulting package full name:

Faulting package-relative application ID:

Error: (06/01/2015 08:47:39 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.

System Error:
Access is denied.
.

Error: (05/29/2015 03:42:06 PM) (Source: Application Hang) (User: )
Description: The program WINWORD.EXE version 11.0.8411.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 14dc

Start Time: 01d09a1198ee8d0a

Termination Time: 60000

Application Path: C:\Program Files (x86)\Microsoft Office\OFFICE11\WINWORD.EXE

Report Id: 4c1faad4-0608-11e5-bfa8-c01885c1af40

Faulting package full name:

Faulting package-relative application ID:

Error: (05/29/2015 03:15:20 PM) (Source: Application Hang) (User: )
Description: The program IEXPLORE.EXE version 11.0.9600.17416 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 236c

Start Time: 01d09a1179bc9517

Termination Time: 91

Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE

Report Id: c0e2badc-0604-11e5-bfa8-c01885c1af40

Faulting package full name:

Faulting package-relative application ID:

Error: (05/29/2015 11:53:15 AM) (Source: Application Error) (User: )
Description: Faulting application name: OUTLOOK.EXE, version: 11.0.8326.0, time stamp: 0x4c1c2372
Faulting module name: OUTLLIB.dll, version: 11.0.8330.0, time stamp: 0x4cb60a62
Exception code: 0xc0000005
Fault offset: 0x002769b5
Faulting process ID: 0x2318
Faulting application start time: 0xOUTLOOK.EXE0
Faulting application path: OUTLOOK.EXE1
Faulting module path: OUTLOOK.EXE2
Report ID: OUTLOOK.EXE3
Faulting package full name: OUTLOOK.EXE4
Faulting package-relative application ID: OUTLOOK.EXE5

Error: (05/29/2015 09:22:27 AM) (Source: Microsoft-Windows-LocationProvider) (User: FURMANGLASS)
Description: There was an error communicating to the Orion inference server

Error: (05/29/2015 09:22:22 AM) (Source: Microsoft-Windows-LocationProvider) (User: NT AUTHORITY)
Description: There was an error communicating to the Orion inference server

System errors:
=============
Error: (06/01/2015 02:09:25 PM) (Source: Service Control Manager) (User: )
Description: The Dell Digital Delivery Service service terminated unexpectedly. It has done this 1 time(s).

Error: (06/01/2015 02:03:48 PM) (Source: Schannel) (User: NT AUTHORITY)
Description: A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 80. The Windows SChannel error state is 301.

Error: (06/01/2015 11:02:16 AM) (Source: Schannel) (User: NT AUTHORITY)
Description: A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 80. The Windows SChannel error state is 301.

Error: (06/01/2015 11:01:56 AM) (Source: Schannel) (User: NT AUTHORITY)
Description: A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 80. The Windows SChannel error state is 301.

Error: (06/01/2015 10:29:16 AM) (Source: Service Control Manager) (User: )
Description: The Dell Digital Delivery Service service terminated unexpectedly. It has done this 1 time(s).

Error: (06/01/2015 10:26:41 AM) (Source: Microsoft-Windows-GroupPolicy) (User: NT AUTHORITY)
Description: The processing of Group Policy failed. Windows attempted to read the file \\Furmanglass.local\SysVol\Furmanglass.local\Policies\{810EBA0B-2AC8-4A41-B31A-BE257CF4C581}\gpt.ini from a domain controller and was not successful. Group Policy settings may not be applied until this event is resolved. This issue may be transient and could be caused by one or more of the following:
a) Name Resolution/Network Connectivity to the current domain controller.
B) File Replication Service Latency (a file created on another domain controller has not replicated to the current domain controller).
c) The Distributed File System (DFS) client has been disabled.

Error: (06/01/2015 10:24:44 AM) (Source: DCOM) (User: FURMANGLASS)
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}

Error: (06/01/2015 10:24:42 AM) (Source: DCOM) (User: FURMANGLASS)
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}

Error: (06/01/2015 10:24:41 AM) (Source: DCOM) (User: FURMANGLASS)
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}

Error: (06/01/2015 08:50:49 AM) (Source: DCOM) (User: FURMANGLASS)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}

Microsoft Office Sessions:
=========================
Error: (06/01/2015 04:13:37 PM) (Source: Application Error)(User: )
Description: bcmwltry.exe6.20.55.494f60e0eeunknown0.0.0.000000000c000000500007ff97676f0a21aec01d09c7526ff468eC:\Program Files\Dell\DW WLAN Card\bcmwltry.exeunknown65118866-0868-11e5-bfaa-c01885c1af40

Error: (06/01/2015 00:21:34 PM) (Source: Application Error)(User: )
Description: OUTLOOK.EXE11.0.8326.04c1c2372OUTLLIB.dll11.0.8330.04cb60a62c0000005002769b51d5001d09c4b421a2b38C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXEC:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLLIB.dllf9fe411e-0847-11e5-bfa9-c01885c1af40

Error: (06/01/2015 11:05:04 AM) (Source: Microsoft Office 11)(User: )
Description: Microsoft Office ExcelExcel failed to start correctly last time.  Starting Excel in safe mode will help you correct or isolate a startup problem in order to successfully start the program.  Some functionality may be disabled in this mode.

Do you want to start Excel in safe mode?

Error: (06/01/2015 09:27:15 AM) (Source: Application Hang)(User: )
Description: EXCEL.EXE11.0.8404.0219c01d09c3bb8b7e8b528042C:\Program Files (x86)\Microsoft Office\OFFICE11\EXCEL.EXE8af68659-082f-11e5-bfa8-c01885c1af40

Error: (06/01/2015 08:47:39 AM) (Source: Microsoft-Windows-CAPI2)(User: )
Description:
Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.

System Error:
Access is denied.

Error: (05/29/2015 03:42:06 PM) (Source: Application Hang)(User: )
Description: WINWORD.EXE11.0.8411.014dc01d09a1198ee8d0a60000C:\Program Files (x86)\Microsoft Office\OFFICE11\WINWORD.EXE4c1faad4-0608-11e5-bfa8-c01885c1af40

Error: (05/29/2015 03:15:20 PM) (Source: Application Hang)(User: )
Description: IEXPLORE.EXE11.0.9600.17416236c01d09a1179bc951791C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEc0e2badc-0604-11e5-bfa8-c01885c1af40

Error: (05/29/2015 11:53:15 AM) (Source: Application Error)(User: )
Description: OUTLOOK.EXE11.0.8326.04c1c2372OUTLLIB.dll11.0.8330.04cb60a62c0000005002769b5231801d099f49b10d383C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXEC:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLLIB.dll85f73bb8-05e8-11e5-bfa8-c01885c1af40

Error: (05/29/2015 09:22:27 AM) (Source: Microsoft-Windows-LocationProvider)(User: FURMANGLASS)
Description: -2143485936

Error: (05/29/2015 09:22:22 AM) (Source: Microsoft-Windows-LocationProvider)(User: NT AUTHORITY)
Description: -2143485936

CodeIntegrity Errors:
===================================
  Date: 2015-05-22 09:28:14.187
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

  Date: 2015-05-22 09:28:13.626
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

  Date: 2015-05-22 09:20:33.858
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

  Date: 2015-05-22 09:20:33.776
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements.

  Date: 2015-05-22 09:20:33.112
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

  Date: 2015-05-22 09:20:33.013
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements.

  Date: 2015-05-22 09:20:30.128
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

  Date: 2015-05-22 09:20:20.761
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

  Date: 2015-05-20 16:12:39.652
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

  Date: 2015-05-20 16:12:39.581
  Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume3\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements.

=========================== Installed Programs ============================

Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 15.0.0.249 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.11) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.11 - Adobe Systems Incorporated)
Advanced Audio FX Engine (HKLM-x32\...\Advanced Audio FX Engine) (Version: 1.12.05 - Creative Technology Ltd)
Bing Bar (HKLM-x32\...\{3365E735-48A6-4194-9988-CE59AC5AE503}) (Version: 7.3.132.0 - Microsoft Corporation)
Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Hidden
Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Hidden
Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) Hidden
Classic Client 6.3 for 64 bits (HKLM\...\{D641B12D-CD39-47C2-AAE8-032A0EAF1416}) (Version: 6.30.000.003 - Gemalto)
Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Conexant SmartAudio HD (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.54.29.0 - Conexant)
CyberLink PowerDVD 9.5 (HKLM-x32\...\InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}) (Version: 9.5.1.4822 - CyberLink Corp.)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
Dell DataSafe Local Backup - Support Software (HKLM-x32\...\{A9668246-FB70-4103-A1E3-66C9BC2EFB49}) (Version: 9.4.67 - Dell Inc.)
Dell DataSafe Local Backup (HKLM-x32\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 9.4.67 - Dell Inc.)
Dell DataSafe Online (HKLM-x32\...\{7EC66A95-AC2D-4127-940B-0445A526AB2F}) (Version: 2.1.19634 - Dell)
Dell Digital Delivery (HKLM-x32\...\{9DDFE322-6BA0-4F90-8689-D98382492371}) (Version: 2.1.1002.0 - Dell Products, LP)
Dell Edoc Viewer (HKLM\...\{8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}) (Version: 1.0.0 - Dell Inc)
Dell Support Center (HKLM\...\{0090A87C-3E0E-43D4-AA71-A71B06563A4A}) (Version: 3.1.5907.16 - PC-Doctor, Inc.) Hidden
Dell Support Center (HKLM\...\Dell Support Center) (Version: 3.1.5907.16 - Dell Inc.)
Dell System Detect (HKCU\...\73f463568823ebbe) (Version: 5.14.0.9 - Dell)
Dell Touchpad (HKLM\...\Elantech) (Version: 10.3.2.2 - ELAN Microelectronic Corp.)
Dell Webcam Central (HKLM-x32\...\Dell Webcam Central) (Version: 2.00.44 - Creative Technology Ltd)
DVRCMS 1.3.3.46 (HKLM-x32\...\DVRCMS) (Version: 1.3.3.46 - )
DW WLAN Card Utility (HKLM\...\DW WLAN Card Utility) (Version: 6.20.55.49 - Dell Inc.)
e@syFile-employer (HKLM-x32\...\{B23AC087-BBD0-2D57-BB3F-79C4C82C4D36}) (Version: 6.6.3 - South African Revenue Service) Hidden
e@syFile-employer (HKLM-x32\...\easyFileEmployer.0612E4541602589CA8807A3EA214FDF182FEF49D.1) (Version: 6.6.3 - South African Revenue Service)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.81 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.27.5 - Google Inc.) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden
InfoSlips ForMe Viewer (HKLM-x32\...\{AA79F9DF-BA93-454A-96A4-39C9B7A42224}) (Version: 5.1.01 - InfoSlips)
Intel® Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.1.1399 - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2849 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.1.0.1006 - Intel Corporation)
Intel® Turbo Boost Technology Monitor 2.0 (HKLM\...\{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}) (Version: 2.1.23.0 - Intel)
Intel® Trusted Connect Service Client (HKLM\...\{538B98C3-773F-4F20-9C66-802D104DCBE2}) (Version: 1.23.219.2 - Intel Corporation)
Java 7 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217071FF}) (Version: 7.0.710 - Oracle)
Java 7 Update 79 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417079FF}) (Version: 7.0.790 - Oracle)
Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation)
Junk Mail filter update (HKLM-x32\...\{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Lotus Notes 8.5.1 (HKLM-x32\...\{6ACD1549-274A-491B-A233-2B8B689DD0D3}) (Version: 8.51.9271 - IBM)
Mesh Runtime (HKLM-x32\...\{8C6D6116-B724-4810-8F2D-D047E6B7D68E}) (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft IntelliPoint 8.2 (HKLM\...\Microsoft IntelliPoint 8.2) (Version: 8.20.468.0 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Professional Edition 2003 (HKLM-x32\...\{91110409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{820B6609-4C97-3A2B-B644-573B06A0F0CC}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
MSVC80_x64_v2 (HKLM\...\{4D668D4F-FAA2-4726-834C-31F4614F312E}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC80_x86_v2 (HKLM-x32\...\{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC90_x64 (HKLM\...\{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}) (Version: 1.0.1.2 - Nokia) Hidden
MSVC90_x86 (HKLM-x32\...\{AF111648-99A1-453E-81DD-80DBBF6DAD0D}) (Version: 1.0.1.2 - Nokia) Hidden
NetDvr (HKLM-x32\...\{A67B24FE-7E09-4DD8-BC74-2F9EDE57D323}) (Version: 1.0.0 - NetDvr)
Nokia Connectivity Cable Driver (HKLM-x32\...\{6FE12C01-2FBC-42E2-AEB9-4CA2238C462F}) (Version: 7.1.101.0 - Nokia)
Nokia Suite (HKLM-x32\...\{E3A0C45A-7EDB-48EB-AB86-2445E74FBFBB}) (Version: 3.7.22.0 - Nokia) Hidden
Nokia Suite (HKLM-x32\...\Nokia Suite) (Version: 3.7.22.0 - Nokia)
PC Connectivity Solution (HKLM-x32\...\{6B722793-E77B-41F5-BAB3-6C9832274E75}) (Version: 12.0.76.0 - Nokia)
Playback 2.3.0.4 (HKLM-x32\...\Playback_is1) (Version:  - )
Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 10.15.010 - Dell Inc.)
Rapport (HKLM-x32\...\{1DD81E7D-0D28-4CEB-87B2-C041A4FCB215}) (Version: 3.5.1404.75 - Trusteer) Hidden
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7601.39019 - Realtek Semiconductor Corp.)
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
ST Microelectronics 3 Axis Digital Accelerometer Solution (HKLM-x32\...\{9C24F411-9CA7-4A8A-91F3-F08A4A38EB31}) (Version: 4.11.0018 - ST Microelectronics)
Striata Reader (HKLM-x32\...\{13d868cf-47e9-4b3d-9366-a0c60f82e5aa}) (Version: 2.15-1 - Striata Communication Solutions)
TeamViewer 8 (HKLM-x32\...\TeamViewer 8) (Version: 8.0.22298 - TeamViewer)
Trend Micro OfficeScan Client (HKLM-x32\...\OfficeScanNT) (Version: 10.5 - Trend Micro)
Trusteer Endpoint Protection (HKLM-x32\...\Rapport_msi) (Version: 3.5.1404.75 - Trusteer)
Validity Sensors DDK (HKLM\...\{459CD4B8-A458-4100-91A5-3388354B3F7D}) (Version: 4.3.215.0 - Validity Sensors, Inc.)
Webroot SecureAnywhere (HKLM-x32\...\WRUNINST) (Version: 8.0.3.3 - Webroot)
Windows Driver Package - Nokia pccsmcfd LegacyDriver  (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Phone (HKLM-x32\...\{C88EBBD0-6A44-48C7-8DD2-C10450B88AB9}) (Version: 0.9.3723.2 - Microsoft Corporation)

========================= Devices: ================================

========================= Memory info: ===================================

Percentage of memory in use: 31%
Total physical RAM: 6046.35 MB
Available physical RAM: 4135.66 MB
Total Pagefile: 12190.35 MB
Available Pagefile: 9981.96 MB
Total Virtual: 4095.88 MB
Available Virtual: 3975.8 MB

========================= Partitions: =====================================

1 Drive c: (OS) (Fixed) (Total:450.57 GB) (Free:364.54 GB) NTFS

========================= Users: ========================================

User accounts for \\KEITH-LAP

Administrator            Guest                    Keith                   

**** End of log ****



#4 Aura

Aura

    Bleepin' Special Ops


  • Malware Response Team
  • 19,664 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:05:02 PM

Posted 01 June 2015 - 09:55 AM

Uninstall the following programs:
  • Java 7 Update 71
  • Java 7 Update 79
  • Java 8 Update 25
  • Playback 2.3.0.4 - Unless you need it specifically, you can use VLC instead
Also, did you try running Internet Explorer withotu add-ons like I asked?

unite_blue.png
Security Administrator | Sysnative Windows Update Senior Analyst | Malware Hunter | @SecurityAura
My timezone UTC-05:00 (East. Coast). If I didn't reply to you within 48 hours, please send me a PM.


#5 Keithlaurence

Keithlaurence
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:02 PM

Posted 01 June 2015 - 10:53 AM

Hi Aura

 

I disabled the bing addons

 

I am worried to disable the Java addons as I need them for my banking.

 

I uninstalled Java 7 but have kept java 8

 

I must still uninstall playback.

 

Same problem still exists.

 

Must go home now will continue later.

 

 

Thanks



#6 Aura

Aura

    Bleepin' Special Ops


  • Malware Response Team
  • 19,664 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:05:02 PM

Posted 01 June 2015 - 10:57 AM

I only want you to launch it once without addons to see if it crashes or not. If it does, then the issue isn't the addons. If it doesn't, then the issue can be caused by one of them.

unite_blue.png
Security Administrator | Sysnative Windows Update Senior Analyst | Malware Hunter | @SecurityAura
My timezone UTC-05:00 (East. Coast). If I didn't reply to you within 48 hours, please send me a PM.


#7 Keithlaurence

Keithlaurence
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:02 PM

Posted 03 June 2015 - 12:45 AM

Hi Aura

 

 

deleted Playback and Java programs not required and disabled all add ons.

 

Will revert later today.

 

Thanks

 

Keith



#8 Aura

Aura

    Bleepin' Special Ops


  • Malware Response Team
  • 19,664 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:05:02 PM

Posted 03 June 2015 - 05:20 AM

So did Internet Explorer launch without crashing or it still crashed?

unite_blue.png
Security Administrator | Sysnative Windows Update Senior Analyst | Malware Hunter | @SecurityAura
My timezone UTC-05:00 (East. Coast). If I didn't reply to you within 48 hours, please send me a PM.


#9 Keithlaurence

Keithlaurence
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:02 PM

Posted 03 June 2015 - 10:59 AM

Hi Aura

 

IE still crashing.

 

I have a security flash drive from the bank and when I restart the computer with the flash drive inserted it wont let me in.

When I  remove it and  restart and then insert it the error message does not come up.

 

Please advise.

 

Regards

 

Keith



#10 Aura

Aura

    Bleepin' Special Ops


  • Malware Response Team
  • 19,664 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:05:02 PM

Posted 03 June 2015 - 11:02 AM

It's most likely because your computer is trying to boot from the USB. Just make sure that in the boot order, the USB is below the hard drive and it should be good. Alright, follow the instructions below please.

rONW46K.pngReset Internet Explorer Settings
  • Close every open windows of your web browsers (Internet Explorer, Google Chrome, Mozilla Firefox, Opera, etc.);
  • Click on the Windows Start Menu and select Control Panel;
  • From there, click on Network and Internet and select Internet Options;
  • Go in the Advanced tab and click on Reset...;
  • Check the Delete personal settings checkbox and click on Reset;
  • Once the operation is done, click on the Close button;
3DPGbxe.pngTemp File Cleaner (TFC)
  • Download and execute Temp File Cleaner (TFC);
  • Simply click on Start to launch the clean-up and wait until it completes;
    s5yB2E8.png
  • Depending on which processes are running, all your programs will be closed and explorer.exe (your Windows shell) will be killed, it will however be relaunched shortly after so do not panic;
  • There's no log to give for this tool;

unite_blue.png
Security Administrator | Sysnative Windows Update Senior Analyst | Malware Hunter | @SecurityAura
My timezone UTC-05:00 (East. Coast). If I didn't reply to you within 48 hours, please send me a PM.





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users