Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Help BSOD need to recover so I can unlock my ipod


  • Please log in to reply
5 replies to this topic

#1 whisper2me111783

whisper2me111783

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:03:51 PM

Posted 15 November 2016 - 08:57 PM

I seem to have forgotten my Ipod passcode and the last computer it was synced to has since had the BSOD. It has been a long time since I have used this computer but it would be nice to recover it and my ipod. Help figuring out why this is giving me a BSOD would be great. I think it is infected from an at home job I was using it for. EDIT to add that this is blue screen on start up. The operating system does not load and recovery errors out. I tried to use recovery CD's as well and it doesn't allow me to recover anything. I have had it successfully revert to a restore point but won't revert any farther.

 

Computer.

Asus G73 with windows 7

 

I ran FRST and this is the log it is giving me but I don't know what to do with it from here.

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 12-11-2016
Ran by SYSTEM on MININT-LHLK7MU (16-11-2016 15:35:00)
Running from h:\
Platform: Windows 7 Home Premium (X64) Language: English (United States)
Internet Explorer Version 11
Boot Mode: Recovery
Default: ControlSet001
ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.

Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Registry (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

ATTENTION: Software hive is not loaded.
GroupPolicy\User: Restriction <======= ATTENTION
GroupPolicyUsers\S-1-5-21-2877314478-368339641-1558485590-1001\User: Restriction <======= ATTENTION

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AdobeActiveFileMonitor5.0; C:\Program Files (x86)\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe [102400 2006-09-14] ()
S2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-01-27] (AVAST Software)
S3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2015-01-27] (Avast Software)
S2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [487960 2014-12-15] (Sony Corporation)
S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-26] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-13] (Microsoft Corporation)
S2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-01-27] ()
S2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [87912 2015-01-27] (AVAST Software)
S1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-01-27] (AVAST Software)
S0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-01-27] ()
S1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-01-27] (AVAST Software)
S1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-01-27] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-01-27] (AVAST Software)
S0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-01-27] ()
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
S3 Nbdrv; no ImagePath
S3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1806400 2009-06-05] ()
S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16152 2014-09-20] ()
S2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13784 2009-08-06] ()
S2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2015-01-27] (Avast Software)
S1 DfsC; System32\Drivers\dfsc.sys [X]
S3 scfilter; System32\DRIVERS\scfilter.sys [X]
S3 Tablet2k; "%SystemRoot%\System32\Drivers\Tablet2k.sys" [X]
S3 tmlwf; no ImagePath
S3 tmwfp; no ImagePath
S3 tunnel; system32\DRIVERS\tunnel.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-11-16 15:34 - 2016-11-16 15:35 - 00000000 ____D C:\FRST

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-11-04 03:46 - 2012-07-30 10:14 - 00000000 ____D C:\users\ABH
2016-11-04 03:46 - 2012-07-30 08:59 - 00000000 ____D C:\users\Desiree
2016-11-04 03:45 - 2015-01-22 09:37 - 00000000 ____D C:\Users\ABH\AppData\Roaming\MyHeritage
2016-11-04 03:45 - 2015-01-22 09:33 - 00000000 ____D C:\Users\ABH\AppData\Roaming\Raptr
2016-11-04 03:45 - 2014-06-27 13:46 - 00000000 ____D C:\Users\Desiree\AppData\Roaming\Raptr
2016-11-04 03:45 - 2014-06-17 16:52 - 00000000 ____D C:\Users\Desiree\AppData\Roaming\Battle.net
2016-11-04 03:45 - 2014-03-17 18:21 - 00000000 ____D C:\Users\Desiree\Documents\flash drive
2016-11-04 03:45 - 2013-11-19 15:01 - 00000000 ____D C:\Users\Desiree\AppData\Roaming\MyHeritage
2016-11-04 03:45 - 2013-11-19 15:00 - 00000000 ____D C:\Users\Desiree\AppData\Local\gtk-2.0
2016-11-04 03:45 - 2013-09-06 12:01 - 00000000 ____D C:\Users\Desiree\AppData\Roaming\IrfanView
2016-11-04 03:45 - 2013-06-01 18:54 - 00000000 ____D C:\Users\Desiree\AppData\LocalLow\Sony Online Entertainment
2016-11-04 03:45 - 2013-05-13 09:20 - 00000000 ____D C:\Users\Desiree\AppData\LocalLow\WebEx
2016-11-04 03:45 - 2013-04-11 11:11 - 00000000 ___SD C:\Users\Desiree\Documents\My Shapes
2016-11-04 03:45 - 2013-01-11 14:22 - 00000000 ____D C:\Users\Desiree\AppData\Roaming\Skype
2016-11-04 03:45 - 2013-01-05 21:41 - 00000000 ____D C:\Users\Desiree\AppData\Local\Microsoft Help
2016-11-04 03:45 - 2012-11-15 14:19 - 00000000 ____D C:\Users\Desiree\AppData\Local\Unity
2016-11-04 03:45 - 2012-09-15 02:33 - 00000000 ____D C:\Users\Desiree\Documents\Autoruns
2016-11-04 03:45 - 2012-08-28 15:08 - 00000000 ____D C:\Users\Desiree\AppData\Local\Apple
2016-11-04 03:45 - 2012-08-09 09:34 - 00000000 ____D C:\Users\Desiree\Documents\UserTesting
2016-11-04 03:45 - 2012-07-30 15:11 - 00000000 ____D C:\Users\Desiree\AppData\Local\HRSToolbar
2016-11-04 03:45 - 2012-07-30 14:25 - 00000000 ____D C:\Users\Desiree\AppData\Local\HP
2016-11-04 03:45 - 2012-07-30 11:54 - 00000000 ____D C:\Users\ABH\AppData\Local\HRSToolbar
2016-11-04 03:45 - 2012-07-30 11:38 - 00000000 ____D C:\Users\ABH\Desktop\Toolbar_v3.8.0
2016-11-04 03:45 - 2012-07-30 09:29 - 00000000 ____D C:\Users\Desiree\AppData\Roaming\CoreFTP
2016-11-04 03:45 - 2012-07-30 09:27 - 00000000 ____D C:\Users\Desiree\AppData\Roaming\Mozilla
2016-11-04 03:45 - 2012-07-30 09:00 - 00000000 ____D C:\Users\Desiree\AppData\Local\VirtualStore
2016-11-04 03:45 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\inf
2016-11-04 03:45 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\AppCompat
2016-11-04 03:44 - 2014-09-27 11:32 - 00000000 ____D C:\Users\Desiree\Documents\Electronic Arts
2016-11-04 03:44 - 2013-11-19 15:01 - 00000000 ____D C:\Users\Desiree\Documents\MyHeritage
2016-11-04 03:44 - 2012-07-31 12:40 - 00000000 ____D C:\Users\Desiree\AppData\Roaming\Yahoo!
2016-11-04 03:44 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\registration
2016-11-04 03:43 - 2015-01-31 23:14 - 00000000 ____D C:\Users\Desiree\AppData\Roaming\Sony Corporation
2016-11-04 03:43 - 2014-09-20 19:31 - 00000000 ____D C:\Users\Desiree\AppData\Local\SlimWare Utilities Inc
2016-11-04 03:43 - 2014-04-11 19:38 - 00000000 ____D C:\Users\Desiree\AppData\Roaming\Gogii
2016-11-04 03:43 - 2014-02-09 20:43 - 00000000 ____D C:\Users\Desiree\AppData\LocalLow\Google
2016-11-04 03:43 - 2012-11-15 14:19 - 00000000 ____D C:\Users\Desiree\AppData\LocalLow\Unity
2016-11-04 03:43 - 2012-08-09 09:29 - 00000000 ____D C:\Users\Desiree\AppData\LocalLow\Sun
2016-11-04 03:43 - 2012-07-30 09:23 - 00000000 ____D C:\Users\Desiree\AppData\Roaming\Adobe
2016-11-04 03:42 - 2014-03-02 10:49 - 00000000 ____D C:\Users\Desiree\AppData\Local\Skype
2016-11-04 03:42 - 2012-09-23 18:11 - 00000000 ____D C:\Users\Desiree\AppData\Local\Facebook
2016-11-04 03:42 - 2012-09-11 15:51 - 00000000 ____D C:\Users\ABH\AppData\Local\Microsoft Games
2016-11-04 03:42 - 2012-09-11 06:35 - 00000000 ____D C:\Users\Desiree\AppData\Local\Amazon
2016-11-04 03:42 - 2012-08-14 08:43 - 00000000 ____D C:\Users\Desiree\AppData\Local\Microsoft Games
2016-11-04 03:42 - 2012-08-13 21:58 - 00000000 ____D C:\Users\Desiree\AppData\Local\ASUS
2016-11-04 03:42 - 2012-08-09 16:35 - 00000000 ____D C:\Users\ABH\AppData\LocalLow\Sun
2016-11-04 03:42 - 2012-08-01 09:26 - 00000000 ____D C:\Users\ABH\AppData\Roaming\Malwarebytes
2016-11-04 03:42 - 2012-07-30 12:03 - 00000000 ____D C:\Users\ABH\AppData\Roaming\Mozilla
2016-11-04 03:42 - 2012-07-30 12:03 - 00000000 ____D C:\Users\ABH\AppData\Local\Mozilla
2016-11-04 03:42 - 2012-07-30 11:06 - 00000000 ____D C:\Users\ABH\AppData\Roaming\Adobe
2016-11-04 03:42 - 2012-07-30 09:27 - 00000000 ____D C:\Users\Desiree\AppData\Local\Mozilla
2016-11-04 03:42 - 2012-07-30 09:23 - 00000000 ____D C:\Users\Desiree\AppData\Local\Adobe

Files to move or delete:
====================
C:\Users\Desiree\jobq.dat


Some files in TEMP:
====================
C:\Users\ABH\AppData\Local\Temp\fp_pl_pfs_installer-1.exe
C:\Users\ABH\AppData\Local\Temp\fp_pl_pfs_installer.exe
C:\Users\ABH\AppData\Local\Temp\ose00000.exe
C:\Users\ABH\AppData\Local\Temp\SpotifyUninstall.exe
C:\Users\Desiree\AppData\Local\Temp\13-4_mobility_vista_win7_win8_64_dd_ccc_whql.exe
C:\Users\Desiree\AppData\Local\Temp\AskSLib.dll
C:\Users\Desiree\AppData\Local\Temp\atl80.dll
C:\Users\Desiree\AppData\Local\Temp\AutoRun.exe
C:\Users\Desiree\AppData\Local\Temp\AutoRunGUI.dll
C:\Users\Desiree\AppData\Local\Temp\catalyst_mobility_64-bit_util.exe
C:\Users\Desiree\AppData\Local\Temp\firefoxjre_exe-1.exe
C:\Users\Desiree\AppData\Local\Temp\firefoxjre_exe.exe
C:\Users\Desiree\AppData\Local\Temp\fp_pl_pfs_installer.exe
C:\Users\Desiree\AppData\Local\Temp\install_reader11_en_mssd_aaa_aih.exe
C:\Users\Desiree\AppData\Local\Temp\jre-7u21-windows-i586-iftw.exe
C:\Users\Desiree\AppData\Local\Temp\mfc80.dll
C:\Users\Desiree\AppData\Local\Temp\mfc80u.dll
C:\Users\Desiree\AppData\Local\Temp\mfcm80.dll
C:\Users\Desiree\AppData\Local\Temp\mfcm80u.dll
C:\Users\Desiree\AppData\Local\Temp\msvcm80.dll
C:\Users\Desiree\AppData\Local\Temp\msvcp80.dll
C:\Users\Desiree\AppData\Local\Temp\msvcr80.dll
C:\Users\Desiree\AppData\Local\Temp\ose00000.exe
C:\Users\Desiree\AppData\Local\Temp\raptrpatch.exe
C:\Users\Desiree\AppData\Local\Temp\raptr_stub.exe
C:\Users\Desiree\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Desiree\AppData\Local\Temp\som_fs.exe
C:\Users\Desiree\AppData\Local\Temp\som_mp4_encoder.exe
C:\Users\Desiree\AppData\Local\Temp\TmDbg32.dll
C:\Users\Desiree\AppData\Local\Temp\TmDbg64.dll
C:\Users\Desiree\AppData\Local\Temp\_isCBCA.exe


==================== Known DLLs (Whitelisted) =========================

C:\Windows\SysWOW64\IMM32.dll IS MISSING <==== ATTENTION

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\dnsapi.dll => MD5 is legit
C:\Windows\SysWOW64\dnsapi.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== Restore Points =========================

Restore point date: 2015-01-17 15:03
Restore point date: 2015-01-20 17:05
Restore point date: 2015-01-20 17:12
Restore point date: 2015-01-21 15:26
Restore point date: 2015-01-21 15:50
Restore point date: 2015-01-22 06:16
Restore point date: 2015-01-22 06:19
Restore point date: 2015-01-22 06:22
Restore point date: 2015-01-22 09:33
Restore point date: 2015-01-22 19:43
Restore point date: 2015-01-23 10:04
Restore point date: 2015-01-25 17:29
Restore point date: 2015-01-26 10:05
Restore point date: 2015-01-27 11:55
Restore point date: 2015-01-27 12:00
Restore point date: 2015-01-27 15:30
Restore point date: 2015-01-27 15:54
Restore point date: 2015-01-27 16:09
Restore point date: 2015-01-27 16:13
Restore point date: 2015-01-31 23:09
Restore point date: 2015-01-31 23:15
Restore point date: 2015-02-04 08:45
Restore point date: 2015-02-10 17:41
Restore point date: 2015-02-10 20:38
Restore point date: 2015-02-11 17:21
Restore point date: 2015-02-11 20:15
Restore point date: 2015-02-14 19:58
Restore point date: 2015-02-17 17:04
Restore point date: 2015-02-19 09:48
Restore point date: 2015-02-24 09:32
Restore point date: 2015-02-28 19:10
Restore point date: 2015-03-04 07:56
Restore point date: 2015-03-04 08:00
Restore point date: 2016-11-04 07:14

==================== Memory info ===========================

Percentage of memory in use: 10%
Total physical RAM: 8116.55 MB
Available physical RAM: 7298.62 MB
Total Virtual: 8114.7 MB
Available Virtual: 7290.48 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:232.88 GB) (Free:76.08 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:232.88 GB) (Free:198.79 GB) NTFS
Drive e: (DATA) (Fixed) (Total:213.34 GB) (Free:212.95 GB) NTFS
Drive f: () (Fixed) (Total:232.88 GB) (Free:210.92 GB) NTFS
Drive h: () (Removable) (Total:7.45 GB) (Free:5.75 GB) FAT32
Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 465.8 GB) (Disk ID: 76692CA8)
Partition 1: (Not Active) - (Size=19.5 GB) - (Type=1C)
Partition 2: (Active) - (Size=232.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=213.3 GB) - (Type=OF Extended)

========================================================
Disk: 1 (Size: 465.8 GB) (Disk ID: BBC58B91)
Partition 1: (Not Active) - (Size=232.9 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=232.9 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (Size: 7.5 GB) (Disk ID: 00000000)

Partition: GPT.


LastRegBack: 2015-02-23 19:10

==================== End of FRST.txt ============================


Edited by whisper2me111783, 15 November 2016 - 09:29 PM.


BC AdBot (Login to Remove)

 


#2 whisper2me111783

whisper2me111783
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:03:51 PM

Posted 18 November 2016 - 02:39 PM

Is there a way to get event viewer when the bluescreen occurs on start up? The error on the screen is 0x0000007B which doesnt help much from what I can find.Is there other information I should include to help troubleshoot this?

#3 JohnC_21

JohnC_21

  • Members
  • 22,636 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:05:51 PM

Posted 18 November 2016 - 03:34 PM

That stop code usually indicates a problem with the Mass Storage Control driver. Access your UEFI/BIOS settings and look for a setting called AHCI. Change the mode to IDE and see if the computer can boot.

 

You have a restore point dated 11/04. Did the BSOD occur after this date? There is also a Restore Point dated 3/4/2015. If you did not install any programs since that date or added any data you could try the 2015 restore data.

 

Another thing you may want to try. Tap F8 at boot and under the Advanced Boot Options select Use Last Known Good Configuration. If Last Known Good Configuration does not help then do a Startup Repair. It may take up to three attempts to complete the repair. I would try the following in order.

 

Last Know Good Configuration

Startup Repair

IDE mode in BIOS

System Restore



#4 whisper2me111783

whisper2me111783
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:03:51 PM

Posted 18 November 2016 - 06:35 PM

BSOD occurred around the 3/4/15 date. I messed with it around that time trying to fix it and got no where but did not try real hard as I just got a new computer. I tried to restore on 11/4/16 and it successfully restored but still bluescreens.  I have tried to go farther back but it errors and can not successfully complete the restore. I would love for this computer to work again as it is way faster than the newer one but not sure its possible.

 

Last Known Good Configuration- Blue Screens

Startup Repair- Gives message that it cannot repair automatically-Problem details give Problem Event Name: StartupRepairOffline

IDE Mode-I just tried this and it didn't change anything

System Restore- It will not restore. I have tried wiping this clean with disks provided by ASUS but it gave some error. I have not tried this recently so not sure if there was code with error, I tried before I got locked out of my Ipod somehow but now I need to access my itunes so I don't want to completely wipe this.



#5 JohnC_21

JohnC_21

  • Members
  • 22,636 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:05:51 PM

Posted 18 November 2016 - 06:56 PM

Sorry, those are the only ideas I can come up with. Hopefully other people with some additional ideas can chime in.



#6 usasma

usasma

    Still visually handicapped (avatar is memory developed by my Dad


  • BSOD Kernel Dump Expert
  • 25,089 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Southeastern CT, USA
  • Local time:05:51 PM

Posted 19 November 2016 - 08:54 AM

Sorry for the delay in responding.  I just don't have enough time to do everything I need to do :(

 

Here's some info on the STOP error:  http://www.carrona.org/bsodindx.html#0x0000007B

In short, it means that the system can't access your boot device (hard drive).
Start with these free, bootable diagnostics:  http://www.carrona.org/initdiag.html


My browser caused a flood of traffic, sio my IP address was banned. Hope to fix it soon. Will get back to posting as soon as Im able.

- John  (my website: http://www.carrona.org/ )**If you need a more detailed explanation, please ask for it. I have the Knack. **  If I haven't replied in 48 hours, please send me a message. My eye problems have recently increased and I'm having difficult reading posts. (23 Nov 2017)FYI - I am completely blind in the right eye and ~30% blind in the left eye.<p>If the eye problems get worse suddenly, I may not be able to respond.If that's the case and help is needed, please PM a staff member for assistance.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users