View Single Post
  #8  
Old May 11th, 2022, 02:53 PM
gaesilva's Avatar
gaesilva gaesilva is offline
Senior Member
 
Join Date: Oct 2004
O/S: Windows 10 Home
Location: Naples, FL
Age: 77
Posts: 159
Additional.txt

Additional txt Part II -
==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Min imal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Net work\MBAMService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-3842255837-3436847461-3918225103-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2022-04-01] (Microsoft Corporation -> Microsoft Corporation)
BHO: LastPass Vault -> {95D9ECF5-2A4D-4550-BE49-70D42F71296E} -> C:\Program Files (x86)\LastPass\LPToolbar_x64.dll [2022-04-25] (LogMeIn, Inc. -> LastPass)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2021-05-01] (Google Inc -> Google Inc.)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2022-03-28] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> C:\Program Files (x86)\Nuance\PDF Viewer Plus\Bin\PlusIEContextMenu.dll [2009-02-06] (Zeon Corporation) [File not signed]
BHO-x32: LastPass Vault -> {95D9ECF5-2A4D-4550-BE49-70D42F71296E} -> C:\Program Files (x86)\LastPass\LPToolbar.dll [2022-04-25] (LogMeIn, Inc. -> LastPass)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2021-05-01] (Google Inc -> Google Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2021-05-01] (Google Inc -> Google Inc.)
Toolbar: HKLM - LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar_x64.dll [2022-04-25] (LogMeIn, Inc. -> LastPass)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2021-05-01] (Google Inc -> Google Inc.)
Toolbar: HKLM-x32 - LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar.dll [2022-04-25] (LogMeIn, Inc. -> LastPass)
Toolbar: HKU\S-1-5-21-3842255837-3436847461-3918225103-1001 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2021-05-01] (Google Inc -> Google Inc.)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-04-29] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-04-29] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-04-29] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-04-29] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2021-02-24 09:46 - 2021-02-24 09:46 - 000000027 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 localhost

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3842255837-3436847461-3918225103-1001\Control Panel\Desktop\\Wallpaper -> c:\users\gaele\appdata\local\microsoft\windows\the mes\roamedthemefiles\desktopbackground\venice 6.jpg
HKU\S-1-5-21-3842255837-3436847461-3918225103-1002\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Dell\Win LTBLUE 1920x1200.jpg
DNS Servers: 75.75.75.75 - 75.75.76.76
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Pol icies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer => (SmartScreenEnabled: Warn)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "DellMobileConnectWelcome"
HKLM\...\StartupApproved\Run: => "RtkAudUService"
HKLM\...\StartupApproved\Run: => "WavesSvc"
HKU\S-1-5-21-3842255837-3436847461-3918225103-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3842255837-3436847461-3918225103-1001\...\StartupApproved\Run: => "Opera Browser Assistant"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{1A28B1CB-B26C-44C3-BCC9-D7CE5E00ED9E}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{3E200DE6-FDA9-4859-BAD2-BF5E2A6AD162}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{A94C5B9C-013C-4219-8539-93527AF858E5}C:\program files (x86)\yihomepcclientintl\yihomepcclientintl.exe] => (Allow) C:\program files (x86)\yihomepcclientintl\yihomepcclientintl.exe (Shanghai Xiaoyi Technology Co., Ltd. -> Shanghai Xiaoyi Technology Co., Ltd.)
FirewallRules: [UDP Query User{62B52153-E2C4-4465-844B-F4C4093E42D0}C:\program files (x86)\yihomepcclientintl\yihomepcclientintl.exe] => (Allow) C:\program files (x86)\yihomepcclientintl\yihomepcclientintl.exe (Shanghai Xiaoyi Technology Co., Ltd. -> Shanghai Xiaoyi Technology Co., Ltd.)
FirewallRules: [{15477BC9-DEA6-47C3-AF0E-F866F1BD5254}] => (Allow) C:\Users\gaele\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{34334324-D95C-47AC-A68E-97C6DFEB026B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{D93E9CF4-3FD0-41AB-AD88-9A1CD137A551}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{AC588D91-D469-4D47-90E8-B568D516D4FD}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobi leConnect_3.3.9809.0_x64__0vhbc3ng4wbp0\app\DellMo bileConnectClient.exe (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.) [File not signed]
FirewallRules: [{3F267B2A-4D5D-4425-B533-16B198F2C231}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobi leConnect_3.3.9809.0_x64__0vhbc3ng4wbp0\app\DellMo bileConnectClient.exe (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.) [File not signed]
FirewallRules: [{B76BA867-9DA4-4E9D-ABF1-029893725930}] => (Allow) C:\Users\gaele\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{500C11AD-A43B-469D-B5FD-E3046E3D2E57}] => (Allow) C:\Users\gaele\AppData\Roaming\Zoom\bin\airhost.ex e (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{59939929-1C9A-4948-BF5C-911EEC99B51A}] => (Allow) C:\Users\gaele\AppData\Roaming\Zoom\bin\airhost.ex e (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{4A1CCF83-DE59-4BF0-881D-9F6547B18DCD}] => (Allow) C:\Program Files (x86)\Brother\Brmfl13b\FAXRX.EXE (Brother Industries, Ltd.) [File not signed]
FirewallRules: [{B43A4962-782E-4C62-B917-B298DF466E45}] => (Allow) LPort=54925
FirewallRules: [{B51A9E68-DE5C-4ED9-A05C-100DFEE3454E}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobi leConnectPlus_4.1.8330.0_x64__0vhbc3ng4wbp0\DellMo bileConnect.exe (Screenovate Technologies Ltd.) [File not signed]
FirewallRules: [{8DEEE635-3B1E-4DB1-8C83-5882B746A685}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobi leConnectPlus_4.1.8330.0_x64__0vhbc3ng4wbp0\DellMo bileConnect.exe (Screenovate Technologies Ltd.) [File not signed]
FirewallRules: [{E4AFA020-18E5-4739-84F2-F6F1D6668229}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12123.5.56009.0_ x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{638075B1-8788-441E-9C9E-AAC94B5908BF}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12123.5.56009.0_ x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{560C2EFC-5EB4-4798-9809-5D715C45B4A2}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12123.5.56009.0_ x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{519C8500-6CBD-4928-9242-1B053EE80FF5}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12123.5.56009.0_ x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{8B4F8D07-7D94-4BF3-987A-EC758AC05756}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12123.5.56009.0_ x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess .exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{4F2F9B65-814C-4908-AED7-524554708EAB}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12123.5.56009.0_ x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess .exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{E6DC8748-8887-424E-B306-B6F236152366}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12123.5.56009.0_ x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess .exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{905B6490-D600-4A4E-997B-661E7648E178}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12123.5.56009.0_ x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess .exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{037C74D3-48F0-43DC-951A-AE3B018589A6}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{26505ACB-F74B-465A-832C-1652495F567C}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{7D3F4FCF-A6E5-416D-9830-FEF83F0AF282}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8ABEADA1-D900-49DE-99A5-3CE0A7F980B1}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.83.408.0_x 86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{1020DB83-A909-4EBA-A086-6714AF55D01D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.83.408.0_x 86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{EFA5B476-8147-4FAA-9243-E023B0626044}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.83.408.0_x 86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{579B44B4-7F1E-41B7-AF91-5F33174D28D7}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.83.408.0_x 86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{5E975FB7-DC98-4EA2-8002-D558B85035D8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.184.716 .0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{01EB7588-A1EA-4A1D-9FE7-CFFF8D2821A9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.184.716 .0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{CA72562F-BCA2-44F1-B8E2-AE87382C4830}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.184.716 .0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{AE153621-518C-4868-A067-7241CFCFCE42}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.184.716 .0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{3289FA8E-99DA-4575-8E8F-232C1DA62D1D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.184.716 .0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{1ACCE54F-18FA-49B2-A37C-66D353AD3C59}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.184.716 .0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{A13D6AB8-7287-461E-AB23-EB0749A423C5}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.184.716 .0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{9731D190-E057-4D25-BDC1-60D93B83A3E8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.184.716 .0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{0EEAC7B3-0CE0-485A-A44F-62F8E8F63993}C:\users\gaele\appdata\local\programs \opera\opera.exe] => (Block) C:\users\gaele\appdata\local\programs\opera\opera. exe (Opera Software AS -> Opera Software)
FirewallRules: [UDP Query User{BD3A355E-A78D-41FE-B90D-B83DF3F57D27}C:\users\gaele\appdata\local\programs \opera\opera.exe] => (Block) C:\users\gaele\appdata\local\programs\opera\opera. exe (Opera Software AS -> Opera Software)
FirewallRules: [{7E565303-AC70-4972-A36A-5997738C5178}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{8B728FD8-3824-463B-8B05-03019716ADA4}] => (Allow) C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe (Piriform Software Ltd -> Piriform Software)

==================== Restore Points =========================

06-05-2022 14:48:03 Scheduled Checkpoint

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (05/11/2022 07:55:21 AM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.


Operation:
Gathering Writer Data

Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {429aab44-4cf8-46e8-a9e9-50ac00569ff4}

Error: (05/11/2022 07:48:39 AM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.


Operation:
Gathering Writer Data

Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {429aab44-4cf8-46e8-a9e9-50ac00569ff4}

Error: (05/10/2022 07:47:46 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.


Operation:
Gathering Writer Data

Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {429aab44-4cf8-46e8-a9e9-50ac00569ff4}

Error: (05/10/2022 07:41:03 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.


Operation:
Gathering Writer Data

Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {429aab44-4cf8-46e8-a9e9-50ac00569ff4}

Error: (05/10/2022 06:37:45 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: The storage optimizer couldn't complete retrim on OS (E because: The operation requested is not supported by the hardware backing the volume. (0x8900002A)

Error: (05/10/2022 06:36:41 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: The storage optimizer couldn't complete retrim on RECOVERY (D because: The operation requested is not supported by the hardware backing the volume. (0x8900002A)

Error: (05/10/2022 01:40:27 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.


Operation:
Gathering Writer Data

Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {429aab44-4cf8-46e8-a9e9-50ac00569ff4}

Error: (05/10/2022 01:34:40 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.


Operation:
Gathering Writer Data

Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {429aab44-4cf8-46e8-a9e9-50ac00569ff4}


System errors:
=============
Error: (05/11/2022 09:10:51 AM) (Source: disk) (EventID: 154) (User: )
Description: The IO operation at logical block address 0x0 for Disk 1 (PDO name: \Device\0000010b) failed due to a hardware error.

Error: (05/11/2022 09:10:51 AM) (Source: disk) (EventID: 154) (User: )
Description: The IO operation at logical block address 0x0 for Disk 1 (PDO name: \Device\0000010b) failed due to a hardware error.

Error: (05/11/2022 09:10:46 AM) (Source: disk) (EventID: 154) (User: )
Description: The IO operation at logical block address 0x0 for Disk 1 (PDO name: \Device\0000010b) failed due to a hardware error.

Error: (05/11/2022 09:10:46 AM) (Source: disk) (EventID: 154) (User: )
Description: The IO operation at logical block address 0x0 for Disk 1 (PDO name: \Device\0000010b) failed due to a hardware error.

Error: (05/11/2022 09:10:41 AM) (Source: disk) (EventID: 154) (User: )
Description: The IO operation at logical block address 0x0 for Disk 1 (PDO name: \Device\0000010b) failed due to a hardware error.

Error: (05/11/2022 09:10:41 AM) (Source: disk) (EventID: 154) (User: )
Description: The IO operation at logical block address 0x0 for Disk 1 (PDO name: \Device\0000010b) failed due to a hardware error.

Error: (05/11/2022 09:10:36 AM) (Source: disk) (EventID: 154) (User: )
Description: The IO operation at logical block address 0x0 for Disk 1 (PDO name: \Device\0000010b) failed due to a hardware error.

Error: (05/11/2022 09:10:36 AM) (Source: disk) (EventID: 154) (User: )
Description: The IO operation at logical block address 0x0 for Disk 1 (PDO name: \Device\0000010b) failed due to a hardware error.


Windows Defender:
================
Date: 2022-05-10 13:42:01
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2022-05-09 13:42:00
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2022-05-08 14:09:37
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2022-05-08 14:01:42
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?lin...0&enterprise=0
Name: PUABundler:Win32/PiriformBundler
Severity: Low
Category: Potentially Unwanted Software
Path: containerfile:_C:\Users\gaele\Downloads\2020\6\ccs etup568.exe; containerfile:_C:\Users\gaele\Downloads\2020\6\sea tac.exe; file:_C:\Users\gaele\Downloads\2020\6\ccsetup568.e xe; file:_C:\Users\gaele\Downloads\2020\6\ccsetup568.e xe->(nsis-instdata); file:_C:\Users\gaele\Downloads\2020\6\seatac.exe; file:_C:\Users\gaele\Downloads\2020\6\seatac.exe->(nsis-instdata)
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: Real-Time Protection
Process Name: C:\Users\gaele\AppData\Local\ESET\ESETOnlineScanne r\ESETOnlineScanner.exe
Security intelligence Version: AV: 1.363.1629.0, AS: 1.363.1629.0, NIS: 1.363.1629.0
Engine Version: AM: 1.1.19200.5, NIS: 1.1.19200.5

Date: 2022-05-07 17:03:37
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

CodeIntegrity:
===============
Date: 2022-05-11 05:38:38
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Win dows Defender\Platform\4.18.2203.5-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverSto re\FileRepository\iigd_dch.inf_amd64_1840c0e85c622 882\igd10iumd64.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2022-05-08 14:53:41
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Win dows Defender\Platform\4.18.2203.5-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

BIOS: Dell Inc. 1.13.0 12/06/2021
Motherboard: Dell Inc. 0FK9H3
Processor: Intel(R) Core(TM) i7-10510U CPU @ 1.80GHz
Percentage of memory in use: 58%
Total physical RAM: 16215.92 MB
Available physical RAM: 6770.48 MB
Total Virtual: 18647.92 MB
Available Virtual: 4964.35 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:461.33 GB) (Free:248.76 GB) (Protected) NTFS

\\?\Volume{8e2bc93f-dd12-4ff5-b42e-0fc3bade6af7}\ (WINRETOOLS) (Fixed) (Total:0.97 GB) (Free:0.29 GB) NTFS
\\?\Volume{d0b37552-bf1b-4b39-ad62-86292094221c}\ (Image) (Fixed) (Total:12.89 GB) (Free:0.16 GB) NTFS
\\?\Volume{4988a97e-9505-4118-b14c-3180736c6216}\ (DELLSUPPORT) (Fixed) (Total:1.47 GB) (Free:0.61 GB) NTFS
\\?\Volume{7fca93ed-3a6a-4a78-a866-f52509a16548}\ (ESP) (Fixed) (Total:0.14 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

================================================== ========
Disk: 0 (Size: 476.9 GB) (Disk ID: E68B182D)

Partition: GPT.

==================== End of Addition.txt =======================
Reply With Quote