MiniToolBox by Farbar Version: 13-05-2022
Ran by nc2un (administrator) on 08-04-2024 at 13:48:30
Running from "C:\Users\nc2un\Downloads"
Microsoft Windows 10 Pro (X64)
Model: OptiPlex 9020 Manufacturer: Dell Inc.
Boot Mode: Normal
***************************************************************************
========================= Event log errors: ===============================
Application errors:
==================
Error: (04/06/2024 03:22:40 AM) (Source: MsiInstaller) (EventID: 11920) (User: BLUEZ9020)
Description: Product: iTunes -- Error 1920. Service 'Apple Mobile Device' (Apple Mobile Device) failed to start. Verify that you have sufficient privileges to start system services.
Error: (04/06/2024 03:21:51 AM) (Source: MsiInstaller) (EventID: 11920) (User: BLUEZ9020)
Description: Product: iTunes -- Error 1920. Service 'Apple Mobile Device' (Apple Mobile Device) failed to start. Verify that you have sufficient privileges to start system services.
Error: (04/06/2024 03:18:38 AM) (Source: MsiInstaller) (EventID: 10005) (User: BLUEZ9020)
Description: Product: iTunes -- A later version of iTunes is already installed on this computer.
Error: (04/05/2024 11:51:18 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Users\nc2un\Downloads\autoruns.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_a863d714867441db.manifest.
Component 2: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_60b6a03d71f818d5.manifest.
Error: (04/05/2024 11:46:54 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Users\nc2un\Downloads\autoruns.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_a863d714867441db.manifest.
Component 2: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_60b6a03d71f818d5.manifest.
Error: (04/03/2024 04:49:18 AM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied.
This is often caused by incorrect security settings in either the writer or requestor process.
Operation:
Gathering Writer Data
Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {4c6c9ee0-0187-4538-908d-7c5dfbfb21b3}
Error: (04/03/2024 04:18:30 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: SupportAssistAgent.exe, version: 3.14.2.45116, time stamp: 0x64e81669
Faulting module name: coreclr.dll, version: 6.0.2824.12007, time stamp: 0x65d4fbd9
Exception code: 0xc0000005
Fault offset: 0x00000000000ab096
Faulting process id: 0x75c
Faulting application start time: 0x01da85a3aeed3033
Faulting application path: C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
Faulting module path: C:\Program Files\dotnet\shared\Microsoft.NETCore.App\6.0.28\coreclr.dll
Report Id: f5690f63-c38f-4fa6-8249-77177220b122
Faulting package full name:
Faulting package-relative application ID:
Error: (04/03/2024 04:18:30 AM) (Source: .NET Runtime) (EventID: 1023) (User: )
Description: Application: SupportAssistAgent.exe
CoreCLR Version: 6.0.2824.12007
.NET Version: 6.0.28
Description: The process was terminated due to an internal error in the .NET Runtime at IP 00007FF92813B096 (00007FF928090000) with exit code 80131506.
Error: (04/03/2024 03:10:36 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Dell.TechHub.Diagnostics.SubAgent.exe, version: 1.2.1.3372, time stamp: 0x63ed8286
Faulting module name: ucrtbase.dll, version: 10.0.19041.3636, time stamp: 0x81cf5d89
Exception code: 0xc0000409
Fault offset: 0x000000000007286e
Faulting process id: 0x20f8
Faulting application start time: 0x01da859e24add041
Faulting application path: C:\Program Files\Dell\DTP\DiagnosticsSubAgent\Dell.TechHub.Diagnostics.SubAgent.exe
Faulting module path: C:\WINDOWS\System32\ucrtbase.dll
Report Id: a609db45-bf43-4d89-be14-773d68681c62
Faulting package full name:
Faulting package-relative application ID:
Error: (04/03/2024 01:36:46 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program PhoneExperienceHost.exe version 1.24022.87.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: 320
Start Time: 01da858cba64cc1d
Termination Time: 4294967295
Application Path: C:\Program Files\WindowsApps\microsoft.yourphone_1.24022.87.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
Report Id: 13137256-ca39-4c63-8208-9c8f847f528f
Faulting package full name: Microsoft.YourPhone_1.24022.87.0_x64__8wekyb3d8bbwe
Faulting package-relative application ID: App
Hang type: Quiesce
System errors:
=============
Error: (04/06/2024 07:06:13 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x80073d02: 9NBLGGGZM6WM-ROBLOXCORPORATION.ROBLOX.
Error: (04/06/2024 09:59:18 AM) (Source: DCOM) (EventID: 10010) (User: BLUEZ9020)
Description: Event-ID 10010
Error: (04/05/2024 11:02:43 PM) (Source: DCOM) (EventID: 10005) (User: BLUEZ9020)
Description: Event-ID 10005
Error: (04/05/2024 11:02:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The GameDVR and Broadcast User Service_ec4b45 service failed to start due to the following error:
%%1053 = The service did not respond to the start or control request in a timely fashion.
Error: (04/05/2024 11:02:43 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the GameDVR and Broadcast User Service_ec4b45 service to connect.
Error: (04/05/2024 11:02:42 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Event-ID 10010
Error: (04/05/2024 10:34:55 PM) (Source: DCOM) (EventID: 10010) (User: BLUEZ9020)
Description: Event-ID 10010
Error: (04/05/2024 10:31:27 PM) (Source: DCOM) (EventID: 10010) (User: BLUEZ9020)
Description: Event-ID 10010
Error: (04/05/2024 10:30:56 PM) (Source: DCOM) (EventID: 10010) (User: BLUEZ9020)
Description: Event-ID 10010
Error: (04/05/2024 10:13:45 PM) (Source: DCOM) (EventID: 10010) (User: BLUEZ9020)
Description: Event-ID 10010
Windows Defender:
================
Date: 2024-04-07 12:43:16
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2024-04-06 08:31:42
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2024-04-05 11:49:41
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid=37020&name=PUABundler:Win32/DisplayDriverUninstaller&threatid=312040&enterprise=0
Name: PUABundler:Win32/DisplayDriverUninstaller
Severity: Low
Category: Potentially Unwanted Software
Path: file:_C:\Users\nc2un\Downloads\DDU-v17.0.6.6.zip; webfile:_C:\Users\nc2un\Downloads\DDU-v17.0.6.6.zip|https://download.bleepingcomputer.com/dl/34f2593a0bead9d6c93944035b8365dc/66101eb9/windows/utilities/driver-utilities/d/display-driver-uninstaller/DDU-v17.0.6.6.zip|pid:2624,ProcessStart:133568061128103712
Detection Origin: Internet
Detection Type: FastPath
Detection Source: Downloads and attachments
Process Name: C:\Windows\explorer.exe
Security intelligence Version: AV: 1.409.55.0, AS: 1.409.55.0, NIS: 1.409.55.0
Engine Version: AM: 1.1.24030.4, NIS: 1.1.24030.4
Date: 2024-04-05 10:55:14
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid=37020&name=PUABundler:Win32/DisplayDriverUninstaller&threatid=312040&enterprise=0
Name: PUABundler:Win32/DisplayDriverUninstaller
Severity: Low
Category: Potentially Unwanted Software
Path: file:_C:\Users\nc2un\Downloads\DDU-v17.0.6.6.zip; webfile:_C:\Users\nc2un\Downloads\DDU-v17.0.6.6.zip|https://download.bleepingcomputer.com/dl/34f2593a0bead9d6c93944035b8365dc/66101eb9/windows/utilities/driver-utilities/d/display-driver-uninstaller/DDU-v17.0.6.6.zip|pid:2624,ProcessStart:133568061128103712
Detection Origin: Internet
Detection Type: FastPath
Detection Source: Downloads and attachments
Process Name: Unknown
Security intelligence Version: AV: 1.409.55.0, AS: 1.409.55.0, NIS: 1.409.55.0
Engine Version: AM: 1.1.24030.4, NIS: 1.1.24030.4
Date: 2024-04-05 08:47:16
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
CodeIntegrity Errors:
====================
Date: 2024-04-08 13:47:04
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
=========================== Installed Programs ============================
Apple Application Support (32-bit) (HKLM-x32\...\{D4B07658-F443-4445-A261-E643996E139D}) (Version: 4.3.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{FA3D0F2D-BA1C-4462-B6B3-3048CFF464C7}) (Version: 17.0.0.28 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{B292D163-23D2-4523-A699-1ABEC1875609}) (Version: 2.7.0.3 - Apple Inc.)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Dell SupportAssist OS Recovery Plugin for Dell Update (HKLM\...\{0B884FA0-BBEE-4573-B696-426AA39ED913}) (Version: 5.5.7.18773 - Dell Inc.) Hidden
Dell SupportAssist OS Recovery Plugin for Dell Update (HKLM-x32\...\{2600102a-dac2-4b2a-8257-df60c573fc29}) (Version: 5.5.7.18773 - Dell Inc.)
EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 13.166.0.5679 - Electronic Arts) Hidden
EA app (HKLM-x32\...\{df861f89-e998-47ba-bfff-9354af4d3751}) (Version: 13.166.0.5679 - Electronic Arts)
GlassWire 2.1 (remove only) (HKLM-x32\...\GlassWire 2.1) (Version: 2.1.3167 - SecureMix LLC)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 123.0.6312.106 - Google LLC)
HWiNFO64 (HKLM\...\HWiNFO64_is1) (Version: 8.00 - Martin Malik, REALiX s.r.o.)
Intel® Chipset Device Software (HKLM-x32\...\{60c073df-e736-4210-9c3a-5fc2b651cef3}) (Version: 10.1.1.7 - Intel® Corporation) Hidden
Intel® Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1035 - Intel Corporation)
iTunes (HKLM\...\{7AE35063-BF3A-45AD-9F80-29777979DD15}) (Version: 12.13.1.3 - Apple Inc.)
Malwarebytes version 4.6.11.320 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.6.11.320 - Malwarebytes)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.243.1.1 - Overwolf Ltd.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6086 - Realtek Semiconductor Corp.)
Revo Uninstaller Pro 5.2.6 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 5.2.6 - VS Revo Group, Ltd.)
Speccy (HKLM\...\Speccy) (Version: 1.32 - Piriform)
The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.105.345.1020 - Electronic Arts Inc.)
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{B9A7A138-BFD5-4C73-A269-F78CCA28150E}) (Version: 8.94.0.0 - Microsoft Corporation)
Packages:
=========
HEVC Video Extensions -> C:\Program Files\WindowsApps\Microsoft.HEVCVideoExtensions_2.0.61933.0_x64__8wekyb3d8bbwe [2024-04-03] (Microsoft Corporation)
iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12131.3.2010.0_x64__nzyj5cx40ttqa [2024-04-06] (Apple Inc.) [Startup Task]
Microsoft Copilot -> C:\Program Files\WindowsApps\microsoft.windows.ai.copilot.provider_1.0.3.0_neutral__8wekyb3d8bbwe [2024-03-31] (ms-resource:PublisherDisplayName)
Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2403.21001.0_x64__8wekyb3d8bbwe [2024-04-03] (Microsoft Corporation) [Startup Task]
Prime Video for Windows -> C:\Program Files\WindowsApps\AmazonVideo.PrimeVideo_1.0.153.0_x64__pwbj9vvecjh7j [2024-03-29] (Amazon Development Centre (London) Ltd)
WindowsAppRuntime.1.1 -> C:\Program Files\WindowsApps\microsoft.windowsappruntime.1.1_1005.616.1651.0_x64__8wekyb3d8bbwe [2024-03-29] (Microsoft Corporation)
WindowsAppRuntime.1.1 -> C:\Program Files\WindowsApps\microsoft.windowsappruntime.1.1_1005.616.1651.0_x86__8wekyb3d8bbwe [2024-03-29] (Microsoft Corporation)
WindowsAppRuntime.1.3 -> C:\Program Files\WindowsApps\microsoft.windowsappruntime.1.3_3000.934.1904.0_x64__8wekyb3d8bbwe [2024-03-29] (Microsoft Corporation)
WindowsAppRuntime.1.3 -> C:\Program Files\WindowsApps\microsoft.windowsappruntime.1.3_3000.934.1904.0_x86__8wekyb3d8bbwe [2024-03-29] (Microsoft Corporation)
WindowsAppRuntime.1.4 -> C:\Program Files\WindowsApps\microsoft.windowsappruntime.1.4_4000.1136.2333.0_x64__8wekyb3d8bbwe [2024-03-29] (Microsoft Corporation)
WindowsAppRuntime.1.4 -> C:\Program Files\WindowsApps\microsoft.windowsappruntime.1.4_4000.1136.2333.0_x86__8wekyb3d8bbwe [2024-03-29] (Microsoft Corporation)
========================= Devices: ================================
========================= Memory info: ===================================
Percentage of memory in use: 31%
Total physical RAM: 16292.2 MB
Available physical RAM: 11079.19 MB
Total Virtual: 18596.2 MB
Available Virtual: 12463.16 MB
========================= Partitions: =====================================
1 Drive c: () (Fixed) (Total:237.83 GB) (Free:98.24 GB) NTFS
========================= Users: ========================================
User accounts for \\BLUEZ9020
Administrator DefaultAccount Guest
Jade1 keyer_z86jbid nc2un
WDAGUtilityAccount
**** End of log ****
Edited by hamluis, 08 April 2024 - 09:23 PM.