Password reset and notification emails are now sending correctly.
If you recently requested a password reset, please check your inbox (and spam folder just in case).
You can now reset your password and log in as normal.
Welcome back to PCHF, and thank you for your patience during our migration process!
— The PCHF Team
Welcome to PC Help Forum!
You’re viewing our community as a guest.
That means you can browse posts, but can’t yet reply or start new topics.
Join us today — it's completely free!
As a member, you'll be able to:
✅ Get personalized tech support from trusted volunteers
🦠 Work one-on-one with our Malware Removal Specialists
We shall be starting again if you agree to the following.
Originally posted by gus
If we start again will you agree to not change any computer users, or settings unless asked by us. Will you also agree to not remove, install, or update any software, and not to change any logs produced by any tools, until we give you the all clear?
Please respond to the above before we proceed.
We are all volunteers here who are happy to help but we will have to insist users not to change the pc configuration and requested logs.
Software will keep automatically updating, other than that I can agree - so far it has been over a month since I started the thread, I can’t prevent updating anything for so long.
OK, it must be said you have an extraordinary amount of games installed on your machine and removing some of them would help the PC to cope. In your original post you mentioned difficulty installing Nvidia driver, and its evident in your logs that you have an Intel video driver installed. If you no longer intend to use the intel driver I would suggest you remove it. If you agree then I would suggest you use the following app to remove the Intel graphics driver and superfluous games.
Please go HERE and download Geek Uninstaller portable and save it to somewhere you can find later. Now use you favorite Unzip application to extract the zipped file from the download. This should create a new folder that contains a Geek.exe file which you can now double left click to open the program.
Optionally you can create a desktop shortcut by right clicking the Geek.exe file and choose “Send to” from the drop down menu. This will give you a shortcut icon on the desktop for future use of this handy application.
You can safely ignore any security pop ups that may appear before the program opens.
Either way you open it once Geek Uninstaller is running select the program you wish to uninstall by right clicking it and then choose “Uninstall” from the drop down menu.
[MEDIA=imgur]dvNuQMe[/MEDIA]
Follow and accept all uninstall options once the uninstaller begins.
It is recommended when removing any Antivirus/Security program, or if you have errors or difficulty removing any program to use “Force removal” to uninstall the program.
[MEDIA=imgur]m089MyG[/MEDIA]
Should you have any further difficulty removing any items please ask us for help
Once you have uninstalled your choice, can you then follow this guide to remove and reinstall your Nvidia drivers?
Okay, the intel driver is gone, alongside around 700GB+ of games. The reinstall worked this time and now nvidia seems to be working fine (the 6 different parts are all there, up to date, control panel and geforce work without any issue). But this has had no discernible effect on games. Those I have tested still crash the same way as before, even after a reinstall.
If you receive any security warnings, or the User Account Control warning opens at any time whilst using FRST you can safely allow FRST to proceed.
Frst will open with two dialogue boxes, accept the disclaimer.
[ol]
[li]Accept the default whitelist options,[/li][li]If the additions.txt options box is not checked please select it. [/li]
[li]Then select “Scan”[/li][/ol]
Frst will take a few minutes to scan your computer, and when finished will produce two log files on your desktop, FRST.txt, and Addition.txt. They will display immediately on the desktop, but can be reopened later as a notepad file.
FRST.txt
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-09-2017 01
Ran by Alex (administrator) on SEXY_BEAST (18-09-2017 00:44:28)
Running from C:\Users\Alex\Downloads
Loaded Profiles: Alex (Available Profiles: Alex)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic...ery-scan-tool/
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-09-12 16:06
==================== End of FRST.txt ============================
[HEADING=1]Addition.txt
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-09-2017 01
Ran by Alex (18-09-2017 00:44:44)
Running from C:\Users\Alex\Downloads
Windows 7 Professional Service Pack 1 (X64) (2017-08-13 18:40:16)
Boot Mode: Normal[/HEADING]
==================== Accounts: =============================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Norton Security (Enabled - Up to date) {30744133-1E94-7B35-F4A3-82A5AEF1CBAA}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Norton Security (Enabled - Up to date) {8B15A0D7-38AE-74BB-CE13-B9D7D5768117}
FW: Norton Security (Enabled) {084FC016-54FB-7A6D-DFFC-2B9050228CD1}
11-09-2017 03:00:20 Windows Update
12-09-2017 03:00:20 Windows Update
13-09-2017 03:00:19 Windows Update
14-09-2017 03:00:20 Windows Update
15-09-2017 03:00:19 Windows Update
17-09-2017 03:00:10 Windows Update
17-09-2017 15:37:30 Windows Update
==================== Event log errors: =========================
[HEADING=1]Application errors:[/HEADING]
Error: (09/17/2017 05:29:28 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Activation context generation failed for “C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest”.Error in manifest or policy file “C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL” on line 1.
Component identity found in manifest does not match the identity of the component requested.
Reference is UccApi,processorArchitecture=“AMD64”,type=“win32”, version=“16.0.0.0”.
Definition is UccApi,processorArchitecture=“x86”,type=“win32”,ve rsion=“16.0.0.0”.
Please use sxstrace.exe for detailed diagnosis.
Error: (09/17/2017 05:29:28 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Activation context generation failed for “C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest”.Error in manifest or policy file “C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL” on line 1.
Component identity found in manifest does not match the identity of the component requested.
Reference is UccApi,processorArchitecture=“AMD64”,type=“win32”, version=“16.0.0.0”.
Definition is UccApi,processorArchitecture=“x86”,type=“win32”,ve rsion=“16.0.0.0”.
Please use sxstrace.exe for detailed diagnosis.
Error: (09/17/2017 05:19:36 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query “SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA “Win32_Processor” AND TargetInstance.LoadPercentage > 99” could not be reactivated in namespace “//./root/CIMV2” because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (09/17/2017 05:08:58 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query “SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA “Win32_Processor” AND TargetInstance.LoadPercentage > 99” could not be reactivated in namespace “//./root/CIMV2” because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (09/17/2017 05:01:51 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query “SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA “Win32_Processor” AND TargetInstance.LoadPercentage > 99” could not be reactivated in namespace “//./root/CIMV2” because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (09/17/2017 04:10:41 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for “c:\program files (x86)\Adobe\adobe creative cloud\Utils\Creative Cloud Uninstaller.exe”.Error in manifest or policy file “” on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows. common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e8 55142bd5705d.manifest.
Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.window s.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b 1e3d17594757.manifest.
Error: (09/17/2017 04:09:08 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Activation context generation failed for “c:\program files (x86)\microsoft office\root\Office16\lync.exe.Manifest”.Error in manifest or policy file “c:\program files (x86)\microsoft office\root\Office16\UccApi.DLL” on line 1.
Component identity found in manifest does not match the identity of the component requested.
Reference is UccApi,processorArchitecture=“AMD64”,type=“win32”, version=“16.0.0.0”.
Definition is UccApi,processorArchitecture=“x86”,type=“win32”,ve rsion=“16.0.0.0”.
Please use sxstrace.exe for detailed diagnosis.
Error: (09/17/2017 03:41:56 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query “SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA “Win32_Processor” AND TargetInstance.LoadPercentage > 99” could not be reactivated in namespace “//./root/CIMV2” because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (09/17/2017 03:28:07 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query “SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA “Win32_Processor” AND TargetInstance.LoadPercentage > 99” could not be reactivated in namespace “//./root/CIMV2” because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (09/17/2017 03:27:51 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: nvstreamsvc.exe, version: 4.0.1000.0, time stamp: 0x54b5dc94
Faulting module name: nvstreamsvc.exe, version: 4.0.1000.0, time stamp: 0x54b5dc94
Exception code: 0x40000015
Fault offset: 0x00000000003e81fa
Faulting process id: 0x60c
Faulting application start time: 0x01d32fc11ba29c1e
Faulting application path: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
Faulting module path: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
Report Id: 6282a7ce-9bb4-11e7-9896-fcaa14c32797
[HEADING=1]System errors:[/HEADING]
Error: (09/17/2017 05:19:35 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Origin Web Helper Service service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion.
Error: (09/17/2017 05:19:35 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Origin Web Helper Service service to connect.
Error: (09/17/2017 05:19:04 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has failed to start.
Error: (09/17/2017 05:19:04 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 5:18:25 PM on 9/17/2017 was unexpected.
Error: (09/17/2017 05:08:57 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Origin Web Helper Service service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion.
Error: (09/17/2017 05:08:57 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Origin Web Helper Service service to connect.
Error: (09/17/2017 05:08:26 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has failed to start.
Error: (09/17/2017 05:08:25 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 5:07:20 PM on 9/17/2017 was unexpected.
Error: (09/17/2017 05:01:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Origin Web Helper Service service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion.
Error: (09/17/2017 05:01:51 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Origin Web Helper Service service to connect.
==================== Memory info ===========================
Processor: Intel(R) Core™ i7-4790K CPU @ 4.00GHz
Percentage of memory in use: 18%
Total physical RAM: 32629.22 MB
Available physical RAM: 26603.08 MB
Total Virtual: 65256.63 MB
Available Virtual: 57121.63 MB
Hi 10months, Thank you for the log, whilst I check it would recommend you remove some newly acquired junk. Unfortunately when you install Nvidia drivers these days you get some bundled junk that sends information back to Nvidia. It’s no big deal but you might like to follow this guide and remove their telemetry?
Please left click on the attached Fixlist.txt file at the bottom of this post. On the dialogue box that opens click “Save File” and then “OK”
[MEDIA=imgur]vzol8OV[/MEDIA]
Select a location then save the file. IMPORTANT the fixlist.txt file must be in the same location as the FRST program otherwise the fix will not work.
[MEDIA=imgur]pjsQ8XB[/MEDIA]
To run the fix right click the FRST icon and choose “Run as Administrator” then click on “Fix”
[MEDIA=imgur]cp0349X[/MEDIA]
Depending on the amount of data to be moved it may take a few minutes to complete, and the computer may reboot. When the fix is complete and/or the computer has rebooted the “Fixlist.txt” file you created will be renamed “Fixlog.txt”
Please COPY and PASTE the contents of this new file in your next post:slight_smile:
========= netsh advfirewall set allprofiles state Off =========
Ok.
========= End of CMD: =========
========= ipconfig /flushdns =========
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
========= End of CMD: =========
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 21-09-2017 21:52:16)
Result of scheduled keys to remove after reboot:
HKLM\System\CurrentControlSet\Services\NAVENG => key could not remove. Access Denied.
HKLM\System\CurrentControlSet\Services\NAVEX15 => key could not remove. Access Denied.
I haven’t done the telemetry removal, I don’t particularly mind it if it won’t cause any performance issues.
My Chrome extensions were removed with the fix, is it fine to reinstall them?
Hi 10months,
It’s your call but removing telemetry will reduce overhead, albeit small, and the less useless system resources you have running the better performance you will have.
Some Chrome extensions were removed due to security risk, again your call.
Of the games I’ve tried I’ve not encountered any more crashes . The framerates are a little bit dodgy, but apart from that it’s looking good.
There’s a couple of little annoyances still, like the .gif “class not registered” and the invalid windows key… But no, thanks so much for your help - in spite of me tampering with the logs and taking three days to reply to certain things (sorry again)
I’ll test a few more games tomorrow when I’m free all day, and hopefully mark it solved
Hi 10months.
Firstly let’s clean up the tools used in removal of stuff from your pc, and please follow the instructions exactly.
Please go HERE and download Delfix Save it to your desktop.
Right click the new Delfix desktop icon [MEDIA=imgur]3gArQoZ[/MEDIA] and then click “run as administrator”
Place a tick in the following checkboxes
[ol]
[li]Remove disinfection tools[/li][li]Create registry backup[/li][li]Purge system restore[/li][li]Then select “Run”[/li][/ol]
[MEDIA=imgur]tdR6h0N[/MEDIA]
Delfix will remove the tools used to clean your PC and remove itself. When finished a .txt file will display on your desktop. A copy of this file will be also located as C:\Delfix.txt.
Please post a copy of this file in your next post:slight_smile:
We process personal data about users of our site, through the use of cookies and other technologies, to deliver our services, personalize advertising, and to analyze site activity. We may share certain information about our users with our advertising and analytics partners. For additional details, refer to our Privacy Policy.
By clicking "I AGREE" below, you agree to our Privacy Policy and our personal data processing and cookie practices as described therein. You also acknowledge that this forum may be hosted outside your country and you consent to the collection, storage, and processing of your data in the country where this forum is hosted.
Comment