Pending OP Response Continuous BSOD

  • Hi there and welcome to PC Help Forum (PCHF), a more effective way to get the Tech Support you need!
    We have Experts in all areas of Tech, including Malware Removal, Crash Fixing and BSOD's , Microsoft Windows, Computer DIY and PC Hardware, Networking, Gaming, Tablets and iPads, General and Specific Software Support and so much more.

    Why not Click Here To Sign Up and start enjoying great FREE Tech Support.

    This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.
Welcome to our Community
Wanting to join the rest of our members? Feel free to sign up today.
Sign up

Eugenio95

PCHF Member
Aug 28, 2024
18
0
28
I'm opening new thread because i missed the updates from the support (sorry 😅) so my thread was closed.
I built my gaming pc this May.
Since it was built, there have been a lot of BSODs, always with different causes.
The problem does not appear to be software (sfc /scannow indicates no integrity problems).

The crashes seem to occur randomly; there are no specific applications that cause the pc to shut down.
Also, sometimes the monitor stops working (and flashes rbg colors until i turn it off and on again) and sometimes i experiences crashes due to DirectX problems while gaming.

As suggested in previous thread (https://pchelpforum.net/t/continuous-bsod-on-windows-10.90728/), i set the RAM not to overclock in order for the CPU to be able to handle them,
This unfortunately did not solve the issue, and new crashes appeared.
Attacched you can find the compressed minidumps.


PC components:

CPU: AMD Ryzen 7 7700X 8-core

Motherboard: MSI B650 GAMING PLUS WIFI (MS-7E26)

RAM:2x16 GB Corsair VENGEANCE RGB DDR5 6000MHz

Graphics:AMD Radeon RX 7900 XTX XFX Limited

SSD (with Windows 10 Pro 22H2) fanxiang SSD 1TB NVMe 1.4 PCIe Gen4x4 SSD M.2 2280

CPU cooler:Corsair iCUE H150i RGB ELITE

PSU :Corsair Rm850X 80 Plus Gold 850 Watt Atx

Can you also point me to additional diagnostic tools to detect the problem?

Thank you very much and sorry for letting the other thread close.
 
Hello,
thank you for answering. In the msi site the RAM's i am using are listed as compatible.
To find them in the list, it is necessary to search the model number CMH32GX5M2B6000Z30.
So in theory they are compatible
 
PS i noticed that i wasn't allowed to attach the minidumps because of file extension, so i will add them to this message
 

Attachments

Sorry for missing the module you have. My bad....

Now: Even though I only started checking minidumps during the last year or so, I did notice something on the second one, and searched at Microsoft.

There were suggestions of memory issues, so lets start with this first:

WIN + R , type mdsched and select restart now.

See what you get.


BTW: If any members like to jump in, please do so.
 
Let’s see what’s going on, with the settings.

Please download MiniToolBox and save it to your desktop.
Run the program by right clicking on it and selecting Run as administrator.
When the program opens check mark Select All Then hit GO
Please post the log in your next reply. Attach or copy and paste, whatever is easier for you.





Speccy Scan.


  • Please go here and download Speccy.
  • Install and run the program.
  • Upon Completion:
  • Hit File
  • Publish Snap Shot
  • A link will appear, post that link.



Get System Info Log.


Include in your next reply a Get System Info log.
Save it to your desktop when complete.
Once you have the file on your desktop, then upload it here, and Here.
Copy the URL after your report is loaded.
Then send us the link.
 
Having the logs would help to assist further.

Create and run batch file.


Open a notepad and copy the entire content of the code box below.
Do not copy the word code!
Paste the txt into the notepad. Save the file to your desktop as 123.bat
Now you will right click the on 123.bat and run as administrator.

Code:
@echo off

REM Run system file checker
echo Step 1: Running System File Checker...
sfc /scannow
echo.

REM Run DISM to check for and repair system image
echo Step 2: Running DISM to check and repair system image...
DISM /Online /Cleanup-Image /CheckHealth
DISM /Online /Cleanup-Image /ScanHealth
DISM /Online /Cleanup-Image /RestoreHealth
echo.

REM Update drivers
echo Step 3: Updating drivers...
echo Please make sure you're connected to the internet.
echo Running Windows Update to check for driver updates...
wuauclt /detectnow /updatenow
echo.

pause
 
  • Like
Reactions: georgeks
Hello,
i have followed every step except for uploading on https://pomf2.lain.la/ (file not permitted or server error).
Anyways, attacched you can find the logs from minitoolbox, this is the link for Speccy Scan and this is the Get System info log.
I have also created and run the batch.
 

Attachments

Uninstall Wise Registry Cleaner with GeekUninstaller.

Also Click View in GeekUninstaller, remove any apps that you do not use/want. If you do not use OneDrive, remove it from here.

1725931747827.webp




Error: (02/09/2024 10:59:23 AM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: The storage optimization engine could not complete reoptimization on HDD Old (D🙂 for the following reason: The requested operation is not supported by the volume's supporting hardware. (0x8900002A)


Disconnect your D: drive. And test for a while:

From your Speccy log....

Running:
Remote Access Connection Manager: Are you aware of any remote connections, running a vpn?

  • Open Run window (Windows + R), type dcomcnfg and press Enter.
  • In Component Services window, double-click Computers,
  • double-click Computers yes again
  • right-click My Computer, and select Properties.
  • Navigate to COM Security tab and click.
  • Click Edit default and make sure to check Deny remote access. For All Users
  • Make sure and hit OK after unchecking all three, then apply.

1725932350331.webp

If not then run this batch file: there also seems to be many related errors in the Event log:

Error: (09/08/2024 06:49:01 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-5R2FH6C)
Description: Event ID 10010

Error: (09/08/2024 06:47:40 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-5R2FH6C)
Description: Event ID 10010

Error: (09/08/2024 05:19:04 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-5R2FH6C)
Description: Event ID 10010

Error: (09/08/2024 01:25:15 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-5R2FH6C)
Description: Event ID 10010

Error: (09/08/2024 01:24:55 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-5R2FH6C)
Description: Event ID 10010

Error: (09/08/2024 01:24:36 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-5R2FH6C)
Description: Event ID 10010

Error: (09/08/2024 12:30:16 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-5R2FH6C)
Description: Event ID 10010

Create and run batch file.


Open a notepad and copy the entire content of the code box below.
Do not copy the word code!
Paste the txt into the notepad. Save the file to your desktop as abc.bat
Now you will right click the on abc.bat and run as administrator.


This batch file will restart your computer!! Save any work prior to running.

Code:
@echo off
WMIC /Namespace:\\root\default Path SystemRestore Call CreateRestorePoint "BatchRestorePoint", 100, 10
schtasks /change /tn "GoogleUpdateTaskMachineCore" /disable
schtasks /change /tn "GoogleUpdateTaskMachineUA" /disable
schtasks /change /tn "CCleaner Update" /disable
schtasks /change /tn "Logitech Download Assistant" /disable
schtasks /change /tn "Adobe Acrobat Update Task" /disable
schtasks /change /tn "Adobe Flash Player Updater" /disable
sc stop RasAuto
sc stop RasMan
sc stop SessionEnv
sc stop TermService
sc stop UmRdpService
sc stop RemoteAccess
sc config RasAuto start= disabled
sc config RasMan start= disabled
sc config SessionEnv start= disabled
sc config TermService start= disabled
sc config UmRdpService start= disabled
sc config RemoteAccess start= disabled
pause
shutdown -r
Exit /B



Dump: 090324-8625-01.dmp (03.09.2024 06:04:04)
Code: 0x1E - KMODE_EXCEPTION_NOT_HANDLED
Process: csrss.exe, probably caused by: ntkrnlmp.exe
Third-party modules in the Raw Stack: amdkmdag.sys
FAILURE_BUCKET_ID: 0x1E_c0000096_STACKPTR_ERROR_nt!KiDispatchException


Clean and update your graphics driver with DDU.
 
Hello,
i've followed every step you suggested. I'll let you know if the bluescreens have stopped in a few days!
Thank you very much
 
Ok, if you have any more then download the PCHFLog tool,
Unzip to your desktop right click run as admin.
Click Gather logs.
Wait for it to complete.
A new text file will be one your desktop named PCHF.txt
Attach that, this tool will automatically gather your dump files into a zipped folder on your desktop.
Attach that as well.
 

Attachments

unfortunately the crashes are still there.
Here are the attacched files you requested

Code:
Malnutrition-Tool (x64) Log Collector https://pchelpforum.net/
Ran by euddm (administrator) on DESKTOP-5R2FH6C at 2024-09-20 10:16:25
Running from: 
----------------------------------------------------------------------
System Information:
----------------------------------------------------------------------
Operating System: Microsoft Windows 10 Pro Version 10.0.19045 (True)
Architecture: 64 bit
Processor: AMD Ryzen 7 7700X 8-Core Processor              (8 Cores, 16 Logical Processors)
Installed RAM: 31.12 GB
Available RAM: 23.64 GB
BIOS Version: 1.D0
Serial Number: To be filled by O.E.M.
Manufacturer: Micro-Star International Co., Ltd.
Model: MS-7E26
----------------------------------------------------------------------
Drive Information:
----------------------------------------------------------------------
1 Drive C: () (Fixed) (Total:930.85 GB) (Free:331.74 GB) NTFS
2 Drive S: (Volume) (Fixed) (Total:1863 GB) (Free:1206.01 GB) NTFS
----------------------------------------------------------------------
Interface List:
----------------------------------------------------------------------
...4C-82-A9-DA-D5-55......Wi-Fi
...4C-82-A9-DA-D5-56......Connessione di rete Bluetooth
...D8-43-AE-56-F3-6C......Ethernet
----------------------------------------------------------------------
IP Configuration:
----------------------------------------------------------------------

Configurazione IP di Windows

   Nome host . . . . . . . . . . . . . . : DESKTOP-5R2FH6C
   Suffisso DNS primario . . . . . . . . : 
   Tipo nodo . . . . . . . . . . . . . . : Ibrido
   Routing IP abilitato. . . . . . . . . : No
   Proxy WINS abilitato . . . . . . . .  : No
   Elenco di ricerca suffissi DNS. . . . : lan

Scheda Ethernet Ethernet:

   Stato supporto. . . . . . . . . . . . : Supporto disconnesso
   Suffisso DNS specifico per connessione: 
   Descrizione . . . . . . . . . . . . . : Realtek Gaming 2.5GbE Family Controller
   Indirizzo fisico. . . . . . . . . . . : D8-43-AE-56-F3-6C
   DHCP abilitato. . . . . . . . . . . . : Sì
   Configurazione automatica abilitata   : Sì

Scheda LAN wireless Connessione alla rete locale (LAN)* 9:

   Stato supporto. . . . . . . . . . . . : Supporto disconnesso
   Suffisso DNS specifico per connessione: 
   Descrizione . . . . . . . . . . . . . : Microsoft Wi-Fi Direct Virtual Adapter
   Indirizzo fisico. . . . . . . . . . . : 4E-82-A9-DA-F5-75
   DHCP abilitato. . . . . . . . . . . . : Sì
   Configurazione automatica abilitata   : Sì

Scheda LAN wireless Connessione alla rete locale (LAN)* 10:

   Stato supporto. . . . . . . . . . . . : Supporto disconnesso
   Suffisso DNS specifico per connessione: 
   Descrizione . . . . . . . . . . . . . : Microsoft Wi-Fi Direct Virtual Adapter #2
   Indirizzo fisico. . . . . . . . . . . : 4E-82-A9-DA-E5-65
   DHCP abilitato. . . . . . . . . . . . : No
   Configurazione automatica abilitata   : Sì

Scheda LAN wireless Wi-Fi:

   Suffisso DNS specifico per connessione: lan
   Descrizione . . . . . . . . . . . . . : RZ616 Wi-Fi 6E 160MHz
   Indirizzo fisico. . . . . . . . . . . : 4C-82-A9-DA-D5-55
   DHCP abilitato. . . . . . . . . . . . : Sì
   Configurazione automatica abilitata   : Sì
   Indirizzo IPv6 . . . . . . . . . . . . . . . . . : 2a0d:3341:b084:8610::172(Preferenziale) 
   Lease ottenuto. . . . . . . . . . . . : venerdì 20 settembre 2024 10:07:58
   Scadenza lease . . . . . . . . . . .  : venerdì 20 settembre 2024 10:20:49
   Indirizzo IPv6 . . . . . . . . . . . . . . . . . : 2a0d:3341:b084:8610:1c8f:890b:6df7:cdc7(Preferenziale) 
   Indirizzo IPv6 . . . . . . . . . . . . . . . . . : fd58:fc71:84c8:10::172(Preferenziale) 
   Lease ottenuto. . . . . . . . . . . . : venerdì 20 settembre 2024 10:07:58
   Scadenza lease . . . . . . . . . . .  : lunedì 27 ottobre 2160 16:44:41
   Indirizzo IPv6 . . . . . . . . . . . . . . . . . : fd58:fc71:84c8:10:d644:b49c:fadf:1265(Preferenziale) 
   Indirizzo IPv6 temporaneo. . . . . . . . . . . . : 2a0d:3341:b084:8610:7cb0:b810:b2ab:2170(Preferenziale) 
   Indirizzo IPv6 temporaneo. . . . . . . . . . . . : fd58:fc71:84c8:10:b44a:b7a7:7b37:b5b6(Preferenziale) 
   Indirizzo IPv6 locale rispetto al collegamento . : fe80::892d:1c06:daf0:6b61%17(Preferenziale) 
   Indirizzo IPv4. . . . . . . . . . . . : 192.168.1.24(Preferenziale) 
   Subnet mask . . . . . . . . . . . . . : 255.255.255.0
   Lease ottenuto. . . . . . . . . . . . : venerdì 20 settembre 2024 10:01:29
   Scadenza lease . . . . . . . . . . .  : venerdì 20 settembre 2024 11:07:55
   Gateway predefinito . . . . . . . . . : fe80::7624:9fff:fe51:336d%17
                                           192.168.1.1
   Server DHCP . . . . . . . . . . . . . : 192.168.1.1
   IAID DHCPv6 . . . . . . . . . . . : 290226857
   DUID Client DHCPv6. . . . . . . . : 00-01-00-01-29-61-A3-88-D8-43-AE-56-F3-6C
   Server DNS . . . . . . . . . . . . .  : fd58:fc71:84c8:10::1
                                           192.168.1.1
   NetBIOS su TCP/IP . . . . . . . . . . : Attivato

Scheda Ethernet Connessione di rete Bluetooth:

   Stato supporto. . . . . . . . . . . . : Supporto disconnesso
   Suffisso DNS specifico per connessione: 
   Descrizione . . . . . . . . . . . . . : Bluetooth Device (Personal Area Network)
   Indirizzo fisico. . . . . . . . . . . : 4C-82-A9-DA-D5-56
   DHCP abilitato. . . . . . . . . . . . : Sì
   Configurazione automatica abilitata   : Sì
----------------------------------------------------------------------
Running services and their registry name and file path:
----------------------------------------------------------------------
AMD Crash Defender Service                                 | AMD Crash Defender Service       | C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_987f8cede005f427\amdfendrsr.exe
AMD External Events Utility                                | AMD External Events Utility      | C:\Windows\System32\DriverStore\FileRepository\u0406784.inf_amd64_f5225d40b64e3982\B405281\atiesrxx.exe
Informazioni applicazioni                                  | Appinfo                          | C:\Windows\system32\svchost.exe -k netsvcs -p
Servizio di distribuzione AppX (AppXSVC)                   | AppXSvc                          | C:\Windows\system32\svchost.exe -k wsappx -p
Generatore endpoint audio Windows                          | AudioEndpointBuilder             | C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted -p
Audio di Windows                                           | Audiosrv                         | C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted -p
AMD User Experience Program Data Uploader                  | AUEPLauncher                     | "C:\Program Files\AMD\CIM\..\Performance Profile Client\AUEPDU.exe"
BFE (Base Filtering Engine)                                | BFE                              | C:\Windows\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
Servizio infrastruttura attività in background             | BrokerInfrastructure             | C:\Windows\system32\svchost.exe -k DcomLaunch -p
Servizio gateway audio Bluetooth                           | BTAGService                      | C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted
Servizio AVCTP                                             | BthAvctpSvc                      | C:\Windows\system32\svchost.exe -k LocalService -p
Servizio di supporto Bluetooth                             | bthserv                          | C:\Windows\system32\svchost.exe -k LocalService -p
Servizio piattaforma dispositivi connessi                  | CDPSvc                           | C:\Windows\system32\svchost.exe -k LocalService -p
CoreMessaging                                              | CoreMessagingRegistrar           | C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork -p
Corsair CpuIdService                                       | CorsairCpuIdService              | "C:\Program Files\Corsair\Corsair iCUE5 Software\CorsairCpuIdService.exe"
Corsair Device Control Service                             | CorsairDeviceControlService      | "C:\Program Files\Corsair\Corsair Device Control Service\bin\CorsairDeviceControlService.exe"
Corsair Gaming Audio Configuration Service                 | CorsairGamingAudioConfig         | C:\Windows\System32\CorsairGamingAudioCfgService64.exe
Corsair Service                                            | CorsairService                   | "C:\Program Files\Corsair\Corsair iCUE5 Software\clink\Corsair.Service.exe"
Servizi di crittografia                                    | CryptSvc                         | C:\Windows\system32\svchost.exe -k NetworkService -p
Utilità di avvio processi server DCOM                      | DcomLaunch                       | C:\Windows\system32\svchost.exe -k DcomLaunch -p
Servizio associazione dispositivi                          | DeviceAssociationService         | C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted -p
Gestore individuazione in background DevQuery              | DevQueryBroker                   | C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted -p
Client DHCP                                                | Dhcp                             | C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted -p
Esperienze utente connesse e telemetria                    | DiagTrack                        | C:\Windows\System32\svchost.exe -k utcsvc -p
Visualizza servizio criteri                                | DispBrokerDesktopSvc             | C:\Windows\system32\svchost.exe -k LocalService -p
Client DNS                                                 | Dnscache                         | C:\Windows\system32\svchost.exe -k NetworkService -p
Ottimizzazione recapito                                    | DoSvc                            | C:\Windows\System32\svchost.exe -k NetworkService -p
Servizio Criteri di diagnostica                            | DPS                              | C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork -p
Consumo dati                                               | DusmSvc                          | C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted -p
Registro eventi di Windows                                 | EventLog                         | C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted -p
COM+ Event System                                          | EventSystem                      | C:\Windows\system32\svchost.exe -k LocalService -p
Servizio cache tipi di carattere Windows                   | FontCache                        | C:\Windows\system32\svchost.exe -k LocalService -p
Servizio Human Interface Device                            | hidserv                          | C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted -p
Corsair iCUE Update Service                                | iCUEUpdateService                | "C:\Program Files\Corsair\Corsair iCUE5 Software\iCUEUpdateService.exe"
Servizio di installazione di Microsoft Store               | InstallService                   | C:\Windows\System32\svchost.exe -k netsvcs -p
Helper IP                                                  | iphlpsvc                         | C:\Windows\System32\svchost.exe -k NetSvcs -p
Isolamento chiavi CNG                                      | KeyIso                           | C:\Windows\system32\lsass.exe
Server                                                     | LanmanServer                     | C:\Windows\system32\svchost.exe -k netsvcs -p
Workstation                                                | LanmanWorkstation                | C:\Windows\System32\svchost.exe -k NetworkService -p
Servizio di georilevazione                                 | lfsvc                            | C:\Windows\system32\svchost.exe -k netsvcs -p
Servizio Gestione licenze Windows                          | LicenseManager                   | C:\Windows\System32\svchost.exe -k LocalService -p
Helper NetBIOS di TCP/IP                                   | lmhosts                          | C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted -p
Gestione sessioni locali                                   | LSM                              | C:\Windows\system32\svchost.exe -k DcomLaunch -p
Servizio di base di Microsoft Defender                     | MDCoreSvc                        | "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpDefenderCoreService.exe"
Windows Defender Firewall                                  | mpssvc                           | C:\Windows\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
Gestore connessione rete                                   | NcbService                       | C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted -p
Servizio Elenco reti                                       | netprofm                         | C:\Windows\System32\svchost.exe -k LocalService -p
Servizio di installazione della rete                       | NetSetupSvc                      | C:\Windows\System32\svchost.exe -k netsvcs -p
Contenitore Microsoft Passport                             | NgcCtnrSvc                       | C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted -p
Microsoft Passport                                         | NgcSvc                           | C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted -p
Riconoscimento presenza in rete                            | NlaSvc                           | C:\Windows\System32\svchost.exe -k NetworkService -p
Servizio Interfaccia archivio di rete                      | nsi                              | C:\Windows\system32\svchost.exe -k LocalService -p
Servizio Risoluzione problemi compatibilità programmi      | PcaSvc                           | C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted -p
Plug and Play                                              | PlugPlay                         | C:\Windows\system32\svchost.exe -k DcomLaunch -p
Agente criteri IPsec                                       | PolicyAgent                      | C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted -p
Alimentazione                                              | Power                            | C:\Windows\system32\svchost.exe -k DcomLaunch -p
Servizio profili utente                                    | ProfSvc                          | C:\Windows\system32\svchost.exe -k netsvcs -p
Servizio audio/video Windows di qualità                    | QWAVE                            | C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation -p
Servizio di gestione radio                                 | RmSvc                            | C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
Agente mapping endpoint RPC                                | RpcEptMapper                     | C:\Windows\system32\svchost.exe -k RPCSS -p
Chiamata di procedura remota (RPC)                         | RpcSs                            | C:\Windows\system32\svchost.exe -k rpcss -p
Sistema di gestione degli account di sicurezza (SAM)       | SamSs                            | C:\Windows\system32\lsass.exe
Utilità di pianificazione                                  | Schedule                         | C:\Windows\system32\svchost.exe -k netsvcs -p
Servizio Sicurezza di Windows                              | SecurityHealthService            | C:\Windows\system32\SecurityHealthService.exe
Servizio di notifica eventi di sistema                     | SENS                             | C:\Windows\system32\svchost.exe -k netsvcs -p
Gestore monitoraggio runtime Protezione del sistema        | SgrmBroker                       | C:\Windows\system32\SgrmBroker.exe
Rilevamento hardware shell                                 | ShellHWDetection                 | C:\Windows\System32\svchost.exe -k netsvcs -p
SMP spazi di archiviazione Microsoft                       | smphost                          | C:\Windows\System32\svchost.exe -k smphost
Spooler di stampa                                          | Spooler                          | C:\Windows\System32\spoolsv.exe
Individuazione SSDP                                        | SSDPSRV                          | C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation -p
Servizio repository stati                                  | StateRepository                  | C:\Windows\system32\svchost.exe -k appmodel -p
Steam Client Service                                       | Steam Client Service             | "C:\Program Files (x86)\Common Files\Steam\steamservice.exe" /RunAsService
Acquisizione di immagini di Windows (WIA)                  | stisvc                           | C:\Windows\system32\svchost.exe -k imgsvc
Servizio di archiviazione                                  | StorSvc                          | C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted -p
SysMain                                                    | SysMain                          | C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted -p
Gestore eventi di sistema                                  | SystemEventsBroker               | C:\Windows\system32\svchost.exe -k DcomLaunch -p
Servizio tastiera virtuale e pannello per la grafia        | TabletInputService               | C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted -p
Temi                                                       | Themes                           | C:\Windows\System32\svchost.exe -k netsvcs -p
Gestore tempo                                              | TimeBrokerSvc                    | C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted -p
Gestione account Web                                       | TokenBroker                      | C:\Windows\system32\svchost.exe -k netsvcs -p
Manutenzione collegamenti distribuiti client               | TrkWks                           | C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted -p
Gestione utenti                                            | UserManager                      | C:\Windows\system32\svchost.exe -k netsvcs -p
Servizio di orchestrazione degli aggiornamenti             | UsoSvc                           | C:\Windows\system32\svchost.exe -k netsvcs -p
Gestione credenziali                                       | VaultSvc                         | C:\Windows\system32\lsass.exe
Ora di Windows                                             | W32Time                          | C:\Windows\system32\svchost.exe -k LocalService
Gestione connessioni Windows                               | Wcmsvc                           | C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted -p
Host servizio di diagnostica                               | WdiServiceHost                   | C:\Windows\System32\svchost.exe -k LocalService -p
Host sistema di diagnostica                                | WdiSystemHost                    | C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted -p
Servizio Controllo rete di Microsoft Defender Antivirus    | WdNisSvc                         | "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\NisSrv.exe"
Servizio Microsoft Defender Antivirus                      | WinDefend                        | "C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MsMpEng.exe"
Servizio rilevamento automatico proxy WinHTTP              | WinHttpAutoProxySvc              | C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted -p
Strumentazione gestione Windows                            | Winmgmt                          | C:\Windows\system32\svchost.exe -k netsvcs -p
Configurazione automatica WLAN                             | WlanSvc                          | C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted -p
Assistente per l'accesso all'account Microsoft             | wlidsvc                          | C:\Windows\system32\svchost.exe -k netsvcs -p
Scheda WMI Performance                                     | wmiApSrv                         | C:\Windows\system32\wbem\WmiApSrv.exe
Servizio di sistema notifiche Push Windows                 | WpnService                       | C:\Windows\system32\svchost.exe -k netsvcs -p
Centro sicurezza PC                                        | wscsvc                           | C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted -p
Windows Search                                             | WSearch                          | C:\Windows\system32\SearchIndexer.exe /Embedding
Servizio di supporto utente Bluetooth_15cb64a              | BluetoothUserService_15cb64a     | C:\Windows\system32\svchost.exe -k BthAppGroup -p
Servizio utente degli Appunti_15cb64a                      | cbdhsvc_15cb64a                  | C:\Windows\system32\svchost.exe -k ClipboardSvcGroup -p
Servizio utente piattaforma dispositivi connessi_15cb64a   | CDPUserSvc_15cb64a               | C:\Windows\system32\svchost.exe -k UnistackSvcGroup
Sincronizza host_15cb64a                                   | OneSyncSvc_15cb64a               | C:\Windows\system32\svchost.exe -k UnistackSvcGroup
Dati contatti_15cb64a                                      | PimIndexMaintenanceSvc_15cb64a   | C:\Windows\system32\svchost.exe -k UnistackSvcGroup
Archiviazione dati utente_15cb64a                          | UnistoreSvc_15cb64a              | C:\Windows\System32\svchost.exe -k UnistackSvcGroup
Accesso dati utente_15cb64a                                | UserDataSvc_15cb64a              | C:\Windows\system32\svchost.exe -k UnistackSvcGroup
Servizio utente notifica Push Windows_15cb64a              | WpnUserService_15cb64a           | C:\Windows\system32\svchost.exe -k UnistackSvcGroup
----------------------------------------------------------------------
Running Processes and their appended file path:
----------------------------------------------------------------------
AggregatorHost                    - C:\Windows\System32\AggregatorHost.exe
amdfendrsr                        - C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_987f8cede005f427\amdfendrsr.exe
amdow                             - C:\Program Files\AMD\CNext\CNext\amdow.exe
AMDRSServ                         - C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
AMDRSSrcExt                       - C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe
atieclxx                          - C:\Windows\System32\DriverStore\FileRepository\u0406784.inf_amd64_f5225d40b64e3982\B405281\atieclxx.exe
atiesrxx                          - C:\Windows\System32\DriverStore\FileRepository\u0406784.inf_amd64_f5225d40b64e3982\B405281\atiesrxx.exe
audiodg                           - C:\Windows\system32\AUDIODG.EXE
AUEPDU                            - C:\Program Files\AMD\Performance Profile Client\AUEPDU.exe
AUEPMaster                        - C:\Program Files\AMD\Performance Profile Client\AUEPMaster.exe
chrome                            - C:\Program Files\Google\Chrome\Application\chrome.exe
cmd                               - C:\Windows\system32\cmd.exe
cncmd                             - C:\Program Files\AMD\CNext\CNext\cncmd.exe
CompPkgSrv                        - C:\Windows\System32\CompPkgSrv.exe
conhost                           - C:\Windows\system32\conhost.exe
Corsair.Service                   - C:\Program Files\Corsair\Corsair iCUE5 Software\clink\Corsair.Service.exe
CorsairCpuIdService               - C:\Program Files\Corsair\Corsair iCUE5 Software\CorsairCpuIdService.exe
CorsairDeviceControlService       - C:\Program Files\Corsair\Corsair Device Control Service\bin\CorsairDeviceControlService.exe
CorsairGamingAudioCfgService64    - C:\Windows\System32\CorsairGamingAudioCfgService64.exe
CPUMetricsServer                  - C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe
crashpad_handler                  - C:\Program Files\Corsair\Corsair iCUE5 Software\crashpad_handler.exe
ctfmon                            - C:\Windows\system32\ctfmon.exe
dllhost                           - C:\Windows\system32\DllHost.exe
dwm                               - C:\Windows\System32\dwm.exe
explorer                          - C:\Windows\Explorer.EXE
fontdrvhost                       - C:\Windows\system32\fontdrvhost.exe
fontdrvhost                       - C:\Windows\System32\fontdrvhost.exe
iCUE                              - C:\Program Files\Corsair\Corsair iCUE5 Software\iCUE.exe
iCUEUpdateService                 - C:\Program Files\Corsair\Corsair iCUE5 Software\iCUEUpdateService.exe
LockApp                           - C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
lsass                             - C:\Windows\system32\lsass.exe
msedgewebview2                    - C:\Program Files (x86)\Microsoft\EdgeWebView\Application\128.0.2739.79\msedgewebview2.exe
MusNotifyIcon                     - C:\Windows\system32\MusNotifyIcon.exe
PCHFLogTool                       - C:\Users\euddm\AppData\Local\Temp\3a4c65db-9e36-4ea4-8382-f6fa56d62bfc_PCHFLogTool.zip.bfc\PCHFLogTool.exe
PhoneExperienceHost               - C:\Program Files\WindowsApps\Microsoft.YourPhone_1.24081.102.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
RadeonSoftware                    - C:\Program Files\AMD\CNext\CNext\Radeonsoftware.exe
RtkAudUService64                  - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_1803724721d1a34c\RtkAudUService64.exe
RuntimeBroker                     - C:\Windows\System32\RuntimeBroker.exe
SearchApp                         - C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
SearchFilterHost                  - C:\Windows\system32\SearchFilterHost.exe
SearchIndexer                     - C:\Windows\system32\SearchIndexer.exe
SearchProtocolHost                - C:\Windows\system32\SearchProtocolHost.exe
SecurityHealthSystray             - C:\Windows\System32\SecurityHealthSystray.exe
ShellExperienceHost               - C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
sihost                            - C:\Windows\system32\sihost.exe
smartscreen                       - C:\Windows\System32\smartscreen.exe
spoolsv                           - C:\Windows\System32\spoolsv.exe
StartMenuExperienceHost           - C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
steam                             - C:\Program Files (x86)\Steam\steam.exe
SteamService                      - C:\Program Files (x86)\Common Files\Steam\steamservice.exe
steamwebhelper                    - C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
svchost                           - C:\Windows\system32\svchost.exe
svchost                           - C:\Windows\System32\svchost.exe
taskhostw                         - C:\Windows\system32\taskhostw.exe
TextInputHost                     - C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe
UserOOBEBroker                    - C:\Windows\System32\oobe\UserOOBEBroker.exe
winlogon                          - C:\Windows\System32\WinLogon.exe
wlanext                           - C:\Windows\system32\WLANExt.exe
WmiApSrv                          - C:\Windows\system32\wbem\WmiApSrv.exe
WmiPrvSE                          - C:\Windows\system32\wbem\wmiprvse.exe
----------------------------------------------------------------------
Non-Microsoft scheduled tasks:
----------------------------------------------------------------------
Task: {AMDInstallLauncher} - \ => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1031384 2024-07-15] (Advanced Micro Devices, Inc. -> AMD Install Manager)
Task: {AMDLinkUpdate} - \ => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1031384 2024-07-15] (Advanced Micro Devices, Inc. -> AMD Install Manager)
Task: {AMDRyzenMasterSDKTask} - \ => "C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe" [File not found]
Task: {MicrosoftEdgeUpdateTaskMachineCore} - \ => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [214952 2021-08-06] (Microsoft Corporation -> Microsoft Edge Update)
Task: {MicrosoftEdgeUpdateTaskMachineUA} - \ => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [214952 2021-08-06] (Microsoft Corporation -> Microsoft Edge Update)
Task: {ModifyLinkUpdate} - \ => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1031384 2024-07-15] (Advanced Micro Devices, Inc. -> AMD Install Manager)
Task: {npcapwatchdog} - \ => C:\Program Files\Npcap\CheckStatus.bat [815 2022-11-22] ( -> )
Task: {StartAUEP} - \ => "C:\Program Files\AMD\Performance Profile Client\AUEPMaster.exe" [File not found]
Task: {StartCN} - \ => "C:\Program Files\AMD\CNext\CNext\cncmd.exe" [File not found]
Task: {StartCNBM} - \ => "C:\Program Files\AMD\CNext\CNext\cncmd.exe" [File not found]
Task: {StartDVR} - \ => "C:\Program Files\AMD\CNext\CNext\RSServCmd.exe" [File not found]
Task: {GoogleUpdaterTaskSystem127.0.6490.0{D03363BE-CC3F-4ACA-BF6D-F2E358DCCA3E}} - \GoogleSystem\GoogleUpdater\ => "C:\Program Files (x86)\Google\GoogleUpdater\127.0.6490.0\updater.exe" [File not found]
Task: {GoogleUpdaterTaskSystem130.0.6679.0{AD962693-DF10-43B2-861F-F6C5CB3AE0CD}} - \GoogleSystem\GoogleUpdater\ => "C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe" [File not found]
----------------------------------------------------------------------
Startup items from the Run key:
----------------------------------------------------------------------
Corsair iCUE5 Software : "C:\Program Files\Corsair\Corsair iCUE5 Software\iCUE Launcher.exe" --autorun
RtkAudUService : "C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_1803724721d1a34c\RtkAudUService64.exe" -background
SecurityHealth : C:\Windows\system32\SecurityHealthSystray.exe
AMDNoiseSuppression : "C:\Windows\system32\AMD\ANR\AMDNoiseSuppression.exe"
Discord : "C:\Users\euddm\AppData\Local\Discord\Update.exe" --processStart Discord.exe
MicrosoftEdgeAutoLaunch_5022F34CFCD107434BD3F0E1CF4F0AA5 : "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --win-session-start
OneDrive : "C:\Users\euddm\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
Steam : "C:\Program Files (x86)\Steam\steam.exe" -silent
----------------------------------------------------------------------
Installed apps:
----------------------------------------------------------------------
Paradox Launcher v2 - 2.4.0
AMD Settings - 2024.0715.0035.2026
AMD WVR64 - 1.0.2
RyzenMasterSDK - 1.2.3.5
AMD User Experience Program Installer - 2410.29.01.714
AMD_Chipset_Drivers - 6.02.22.053
 - 
AMD PSP Driver - 5.27.0.0
Corsair Device Control Service - 1.1.4
Promontory_GPIO Driver - 3.0.0.0
AMD SBxxx SMBus Driver - 5.12.0.38
AMD DVR64 - 1.0.2
Branding64 - 1.00.0009
AMD PPM Provisioning File Driver - 8.0.0.28
PlayStation(R) PC SDK Runtime - 2.50.0010
AMD GPIO2 Driver - 2.2.0.130
----------------------------------------------------------------------
Last ten event viewer logs:
----------------------------------------------------------------------
(2024-09-20 10:11:36) (Source: Service Control Manager) (EventID: 7040) (User: Avvio automatico)
È stato modificato il tipo di avvio del servizio Servizio trasferimento intelligente in background da Avvio automatico a Avvio su richiesta.

(2024-09-20 10:08:21) (Source: DCOM) (EventID: 10016) (User: Locale)
Impossibile trovare la descrizione per l'ID evento '10016' nell'origine 'DCOM'. È possibile che nel computer locale non siano presenti le informazioni del Registro di sistema o le DLL di messaggi necessarie per la visualizzazione del messaggio oppure che l'utente non disponga delle autorizzazioni necessarie per accedervi. Le informazioni seguenti sono parte dell'evento:'impostazioni specifiche dell'applicazione', 'Locale', 'Attivazione', '{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}', '{15C20B67-12E7-4BB6-92BB-7AFF07997402}', 'DESKTOP-5R2FH6C', 'euddm', 'S-1-5-21-378333867-2364679832-1738560199-1001', 'LocalHost (tramite LRPC)', 'Non disponibile', 'Non disponibile'

(2024-09-20 10:01:50) (Source: Service Control Manager) (EventID: 7045) (User: C:\Program Files\Corsair\Corsair Device Control Service\bin\CorsairLLAccess64.sys)
Un servizio è stato installato nel sistema.

Nome servizio:  CorsairLLAccessE5624B0A345A7E17A08498BFEDC2D42A7CBA71C2
Nome file servizio:  C:\Program Files\Corsair\Corsair Device Control Service\bin\CorsairLLAccess64.sys
Tipo servizio:  driver in modalità kernel
Tipo avvio servizio:  Avvio automatico
Account servizio:  

(2024-09-20 10:01:35) (Source: BTHUSB) (EventID: 18) (User: )
Windows: impossibile archiviare i codici di autenticazione Bluetooth (chiavi di collegamento) sulla scheda locale. Durante la fase di avvio le tastiere Bluetooth potrebbero non funzionare nel BIOS di sistema.

(2024-09-20 10:01:31) (Source: Microsoft-Windows-Time-Service) (EventID: 37) (User: )
Provider servizi orari NtpClient: è in corso la ricezione dell'ora corretta da time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->20.101.57.9:123).

(2024-09-20 10:01:30) (Source: Microsoft-Windows-Power-Troubleshooter) (EventID: 1) (User: 2024-09-20T08:01:29.0228861Z)
Il sistema è stato riattivato dalla modalità basso consumo.

Durata sospensione: 2024-09-19T19:05:33.3818955Z
Data e ora attivazione: 2024-09-20T08:01:29.0228861Z

Origine attivazione: 0

(2024-09-20 10:01:29) (Source: DCOM) (EventID: 10016) (User: Locale)
Impossibile trovare la descrizione per l'ID evento '10016' nell'origine 'DCOM'. È possibile che nel computer locale non siano presenti le informazioni del Registro di sistema o le DLL di messaggi necessarie per la visualizzazione del messaggio oppure che l'utente non disponga delle autorizzazioni necessarie per accedervi. Le informazioni seguenti sono parte dell'evento:'impostazioni specifiche dell'applicazione', 'Locale', 'Attivazione', '{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}', '{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}', 'NT AUTHORITY', 'SERVIZIO LOCALE', 'S-1-5-19', 'LocalHost (tramite LRPC)', 'Non disponibile', 'Non disponibile'

(2024-09-20 10:01:29) (Source: DCOM) (EventID: 10016) (User: Locale)
Impossibile trovare la descrizione per l'ID evento '10016' nell'origine 'DCOM'. È possibile che nel computer locale non siano presenti le informazioni del Registro di sistema o le DLL di messaggi necessarie per la visualizzazione del messaggio oppure che l'utente non disponga delle autorizzazioni necessarie per accedervi. Le informazioni seguenti sono parte dell'evento:'impostazioni specifiche dell'applicazione', 'Locale', 'Attivazione', '{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}', '{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}', 'NT AUTHORITY', 'SERVIZIO LOCALE', 'S-1-5-19', 'LocalHost (tramite LRPC)', 'Non disponibile', 'Non disponibile'

(2024-09-20 10:01:29) (Source: Microsoft-Windows-Winlogon) (EventID: 7001) (User: S-1-5-21-378333867-2364679832-1738560199-1001)
Notifica di accesso utente per Analisi utilizzo software

(2024-09-20 10:01:28) (Source: Microsoft-Windows-Kernel-Boot) (EventID: 27) (User: ?)
Impossibile trovare la descrizione per l'ID evento '27' nell'origine 'Microsoft-Windows-Kernel-Boot'. È possibile che nel computer locale non siano presenti le informazioni del Registro di sistema o le DLL di messaggi necessarie per la visualizzazione del messaggio oppure che l'utente non disponga delle autorizzazioni necessarie per accedervi. Le informazioni seguenti sono parte dell'evento:'1', '?'

----------------------------------------------------------------------
Installed programs in alphabetical order, and their uninstall command:
----------------------------------------------------------------------
7-Zip 24.08 (x64) [24.08] [N/A] --> "C:\Program Files\7-Zip\Uninstall.exe"
AIDA64 Extreme v7.00 [7.00] [20240601] --> "C:\Program Files (x86)\FinalWire\AIDA64 Extreme\unins000.exe"
AMD Chipset Software [6.02.22.053] [N/A] --> "C:\Program Files (x86)\AMD\Chipset_Software\QT_Dependencies\Setup.exe" /U {8da54e84-09f6-45f6-9c1f-2b86dff082b1}
AMD DVR64 [1.0.2] [20240828] --> N/A
AMD GPIO2 Driver [2.2.0.130] [20240723] --> MsiExec.exe /X{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}
AMD PPM Provisioning File Driver [8.0.0.28] [20240723] --> MsiExec.exe /X{3665A5DE-D07C-46D7-9207-713E8E9FEF32}
AMD PSP Driver [5.27.0.0] [20240723] --> MsiExec.exe /X{988F14B8-79A8-475D-BAC7-83F96AD3D821}
AMD SBxxx SMBus Driver [5.12.0.38] [20240723] --> MsiExec.exe /X{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}
AMD Settings [2024.0715.0035.2026] [20240828] --> N/A
AMD Software [24.7.1] [N/A] --> "C:\Program Files\AMD\CIM\BIN64\AMDSoftwareInstaller.exe" /EXPRESS_UNINSTALL /IGNORE_UPGRADE /ON_REBOOT_MESSAGE:NO
AMD User Experience Program Installer [2410.29.01.714] [20240828] --> N/A
AMD WVR64 [1.0.2] [20240828] --> N/A
AMD_Chipset_Drivers [6.02.22.053] [20240723] --> MsiExec.exe /X{8da54e84-09f6-45f6-9c1f-2b86dff082b1}
Baldur's Gate 3 [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/1086940
Branding64 [1.00.0009] [20240828] --> MsiExec.exe /I{492AEFBE-1B81-4C20-A111-E6974BB98EC5}
Corsair Device Control Service [1.1.4] [20240828] --> MsiExec.exe /X{ADE422C8-E07A-42A5-8B9B-F9CDD1875C08}
Corsair iCUE5 Software [5.18.106] [N/A] --> C:\Program Files\Corsair\Corsair iCUE5 Software\icue-uninstaller.exe --action=uninstall
Counter-Strike 2 [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/730
CPUID CPU-Z MSI 2.08 [2.08] [20240601] --> "C:\Program Files\CPUID\CPU-Z MSI\unins000.exe"
CPUID HWMonitor 1.54 [1.54] [20240828] --> "C:\Program Files\CPUID\HWMonitor\unins000.exe"
CrystalDiskInfo 9.4.1 [9.4.1] [20240831] --> "C:\Program Files\CrystalDiskInfo\unins000.exe"
Cyberpunk 2077 [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/1091500
Discord [1.0.9147] [20242502] --> C:\Users\euddm\AppData\Local\Discord\Update.exe --uninstall
Dropbox Redeem Launcher [1.0.0.04] [20240601] --> "C:\Program Files (x86)\MSI\DropboxRedeemLauncher\unins000.exe"
ELDEN RING [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/1245620
Fallout: New Vegas [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/22380
Ghost of Tsushima DIRECTOR'S CUT [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/2215430
Google Chrome [128.0.6613.139] [20240920] --> "C:\Program Files\Google\Chrome\Application\128.0.6613.139\Installer\setup.exe" --uninstall --channel=stable --system-level --verbose-logging
Google Drive [1.0] [20240827] --> "C:\Program Files\Google\Chrome\Application\chrome.exe" --profile-directory=Default --uninstall-app-id=aghbiahbpaijignceidepookljebhfak
Hades [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/1145360
Hearts of Iron IV [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/394360
HELLDIVERS™ 2 [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/553850
HUMANKIND™ [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/1124300
Imperator: Rome [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/859580
Kenshi [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/233860
Kingdom Come: Deliverance [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/379430
LOCKDOWN Protocol [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/2780980
Microsoft .NET Host - 6.0.11 (x64) [48.47.50420] [20240610] --> MsiExec.exe /X{B92B890A-04F2-4880-BA20-20D4364FB263}
Microsoft .NET Host FX Resolver - 6.0.11 (x64) [48.47.50420] [20240610] --> MsiExec.exe /X{5E63E49B-C88C-46C5-855C-A7B07C11CDC8}
Microsoft .NET Runtime - 6.0.11 (x64) [48.47.50420] [20240610] --> MsiExec.exe /X{C3DD1448-513A-4DB8-978D-6991562EA63D}
Microsoft Edge [129.0.2792.52] [20240920] --> "C:\Program Files (x86)\Microsoft\Edge\Application\129.0.2792.52\Installer\setup.exe" --uninstall --msedge --channel=stable --system-level --verbose-logging
Microsoft Edge Update [1.3.195.19] [N/A] --> N/A
Microsoft Edge WebView2 Runtime [128.0.2739.79] [20240915] --> "C:\Program Files (x86)\Microsoft\EdgeWebView\Application\128.0.2739.79\Installer\setup.exe" --uninstall --msedgewebview --system-level --verbose-logging
Microsoft OneDrive [24.166.0818.0003] [N/A] --> "C:\Users\euddm\AppData\Local\Microsoft\OneDrive\24.166.0818.0003\OneDriveSetup.exe"  /uninstall 
Microsoft Update Health Tools [3.74.0.0] [20240601] --> MsiExec.exe /X{1FC1A6C2-576E-489A-9B4A-92D21F542136}
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 [10.0.40219] [20240624] --> MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 [10.0.40219] [20240624] --> MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 [11.0.61030.0] [N/A] --> "C:\ProgramData\Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}\vcredist_x64.exe"  /uninstall
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 [11.0.61030.0] [N/A] --> "C:\ProgramData\Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}\vcredist_x86.exe"  /uninstall
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 [11.0.61030] [20240607] --> MsiExec.exe /X{37B8F9C7-03FB-3253-8781-2517C99D7C00}
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 [11.0.61030] [20240607] --> MsiExec.exe /X{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 [11.0.61030] [20240607] --> MsiExec.exe /X{B175520C-86A2-35A7-8619-86DC379688B9}
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 [11.0.61030] [20240607] --> MsiExec.exe /X{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 [12.0.30501.0] [N/A] --> "C:\ProgramData\Package Cache\{050d4fc8-5d48-4b8f-8972-47c82c46020f}\vcredist_x64.exe"  /uninstall
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 [12.0.30501.0] [N/A] --> "C:\ProgramData\Package Cache\{f65db027-aff3-4070-886a-0d87064aabb1}\vcredist_x86.exe"  /uninstall
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 [12.0.21005] [20240607] --> MsiExec.exe /X{929FBD26-9020-399B-9A7A-751D61F0B942}
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 [12.0.21005] [20240607] --> MsiExec.exe /X{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 [12.0.21005] [20240607] --> MsiExec.exe /X{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 [12.0.21005] [20240607] --> MsiExec.exe /X{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.40.33810 [14.40.33810.0] [N/A] --> "C:\ProgramData\Package Cache\{5af95fd8-a22e-458f-acee-c61bd787178e}\VC_redist.x64.exe"  /uninstall
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.40.33810 [14.40.33810.0] [N/A] --> "C:\ProgramData\Package Cache\{47109d57-d746-4f8b-9618-ed6a17cc922b}\VC_redist.x86.exe"  /uninstall
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.40.33810 [14.40.33810] [20240608] --> MsiExec.exe /I{59CED48F-EBFE-480C-8A38-FC079C2BEC0F}
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.40.33810 [14.40.33810] [20240608] --> MsiExec.exe /I{B8B3BB4A-A10D-4F51-91B7-A64FFAC31EA7}
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.40.33810 [14.40.33810] [20240608] --> MsiExec.exe /I{5EA6C998-D5AC-4ED9-89C3-9F25B17CCD3D}
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.40.33810 [14.40.33810] [20240608] --> MsiExec.exe /I{0C3457A0-3DCE-4A33-BEF0-9B528C557771}
Microsoft Windows Desktop Runtime - 6.0.11 (x64) [6.0.11.31823] [N/A] --> "C:\ProgramData\Package Cache\{c4846f79-a633-4ae4-92a3-92fdbeb33da2}\windowsdesktop-runtime-6.0.11-win-x64.exe"  /uninstall
Microsoft Windows Desktop Runtime - 6.0.11 (x64) [48.47.50419] [20240610] --> MsiExec.exe /X{A39D4115-3A27-4245-AE92-3214B8B21932}
Mount & Blade II: Bannerlord [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/261550
NirSoft BlueScreenView [N/A] [N/A] --> "C:\Program Files (x86)\NirSoft\BlueScreenView\uninst.exe"
Notepad++ (64-bit x64) [8.6.7] [N/A] --> "C:\Program Files\Notepad++\uninstall.exe"
Npcap [1.78] [N/A] --> "C:\Program Files\Npcap\uninstall.exe"
Paradox Launcher v2 [2.4.0] [20240901] --> MsiExec.exe /X{425F66D2-D422-4F61-9896-1FCAA7D654E5}
PlayStation(R) PC SDK Runtime [2.50.0010] [20240725] --> MsiExec.exe /X{491CB67F-9AB8-4CC0-9836-8E334315504E}
Project Zomboid [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/108600
Promontory_GPIO Driver [3.0.0.0] [20240723] --> MsiExec.exe /X{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}
qBittorrent [4.6.6] [N/A] --> "C:\Program Files\qBittorrent\uninst.exe"
Realtek Audio Driver [6.0.9648.1] [20240601] --> "C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -runfromtemp  -removeonly
Realtek Ethernet Controller Driver [10.69.1121.2023] [20240601] --> "C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe" -runfromtemp -removeonly
Red Dead Redemption 2 [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/1174180
REDlauncher [N/A] [20240606] --> "C:\Users\euddm\AppData\Local\Programs\CD Projekt Red\REDlauncher\unins000.exe"
Rockstar Games Launcher [1.0.95.2141] [N/A] --> "C:\Program Files\Rockstar Games\Launcher\uninstall.exe" -enableFullMode -uninstall=launcher
Rockstar Games Social Club [2.3.6.5] [N/A] --> C:\Program Files\Rockstar Games\Social Club\uninstallRGSCRedistributable.exe
RyzenMasterSDK [1.2.3.5] [20240828] --> MsiExec.exe /I{8A8733F2-07F6-4FA2-8D58-C00FCFC438FB}
S.T.A.L.K.E.R.: Shadow of Chernobyl [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/4500
Sid Meier's Civilization IV [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/3900
Sid Meier's Civilization IV: Beyond the Sword [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/8800
Sid Meier's Civilization IV: Colonization [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/16810
Sid Meier's Civilization IV: Realism: Invictus [N/A] [N/A] --> S:\SteamLibrary\steamapps\common\Sid Meier's Civilization IV Beyond the Sword\Beyond the Sword\Mods\Realism Invictus\Uninstall.exe
Sid Meier's Civilization IV: Warlords [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/3990
Sid Meier's Civilization VI [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/289070
Speccy [1.33] [N/A] --> "C:\Program Files\Speccy\uninst.exe"
Steam [2.10.91.91] [N/A] --> C:\Program Files (x86)\Steam\uninstall.exe
Stellaris [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/281990
The Elder Scrolls V: Skyrim Special Edition [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/489830
Total War: ATTILA [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/325610
Total War: MEDIEVAL II - Definitive Edition [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/4700
Total War: ROME II - Emperor Edition [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/214950
Total War: ROME REMASTERED [N/A] [N/A] --> "C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/885970
Update for Windows 10 for x64-based Systems (KB5001716) [8.94.0.0] [20240601] --> MsiExec.exe /X{85C69797-7336-4E83-8D97-32A7C8465A3B}
Wireshark 4.2.5 x64 [4.2.5] [N/A] --> "C:\Program Files\Wireshark\uninstall-wireshark.exe"
----------------------------------------------------------------------
Last ten system errors:
----------------------------------------------------------------------
(09/19/2024 07:32:40 ) (Source: DCOM) (EventID: 10010) (User: DESKTOP-5R2FH6C\euddm)
Description: Impossibile trovare la descrizione per l'ID evento '10010' nell'origine 'DCOM'. È possibile che nel computer locale non siano presenti le informazioni del Registro di sistema o le DLL di messaggi necessarie per la visualizzazione del messaggio oppure che l'utente non disponga delle autorizzazioni necessarie per accedervi. Le informazioni seguenti sono parte dell'evento:'Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter'

(09/19/2024 06:13:23 ) (Source: DCOM) (EventID: 10010) (User: DESKTOP-5R2FH6C\euddm)
Description: Impossibile trovare la descrizione per l'ID evento '10010' nell'origine 'DCOM'. È possibile che nel computer locale non siano presenti le informazioni del Registro di sistema o le DLL di messaggi necessarie per la visualizzazione del messaggio oppure che l'utente non disponga delle autorizzazioni necessarie per accedervi. Le informazioni seguenti sono parte dell'evento:'Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter'

(09/19/2024 06:10:48 ) (Source: DCOM) (EventID: 10010) (User: DESKTOP-5R2FH6C\euddm)
Description: Impossibile trovare la descrizione per l'ID evento '10010' nell'origine 'DCOM'. È possibile che nel computer locale non siano presenti le informazioni del Registro di sistema o le DLL di messaggi necessarie per la visualizzazione del messaggio oppure che l'utente non disponga delle autorizzazioni necessarie per accedervi. Le informazioni seguenti sono parte dell'evento:'Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter'

(09/19/2024 05:59:34 ) (Source: BugCheck) (EventID: 1001) (User: )
Description: Impossibile trovare la descrizione per l'ID evento '1073742825' nell'origine 'BugCheck'. È possibile che nel computer locale non siano presenti le informazioni del Registro di sistema o le DLL di messaggi necessarie per la visualizzazione del messaggio oppure che l'utente non disponga delle autorizzazioni necessarie per accedervi. Le informazioni seguenti sono parte dell'evento:'0x0000001e (0xffffffffc0000096, 0xffffb180f909646c, 0x0000000000000000, 0x0000000000000000)', 'C:\Windows\MEMORY.DMP', '2b30683f-68e6-434e-8fd9-537649246b57'

(09/19/2024 05:59:31 ) (Source: EventLog) (EventID: 6008) (User: )
Description: L’ultimo arresto imprevisto del sistema si è verificato in data 17:49:30 alle ‎19/‎09/‎2024.

(09/19/2024 05:55:10 ) (Source: DCOM) (EventID: 10010) (User: DESKTOP-5R2FH6C\euddm)
Description: Impossibile trovare la descrizione per l'ID evento '10010' nell'origine 'DCOM'. È possibile che nel computer locale non siano presenti le informazioni del Registro di sistema o le DLL di messaggi necessarie per la visualizzazione del messaggio oppure che l'utente non disponga delle autorizzazioni necessarie per accedervi. Le informazioni seguenti sono parte dell'evento:'Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter'

(09/18/2024 10:41:19 ) (Source: DCOM) (EventID: 10010) (User: DESKTOP-5R2FH6C\euddm)
Description: Impossibile trovare la descrizione per l'ID evento '10010' nell'origine 'DCOM'. È possibile che nel computer locale non siano presenti le informazioni del Registro di sistema o le DLL di messaggi necessarie per la visualizzazione del messaggio oppure che l'utente non disponga delle autorizzazioni necessarie per accedervi. Le informazioni seguenti sono parte dell'evento:'Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter'

(09/18/2024 06:45:28 ) (Source: DCOM) (EventID: 10010) (User: DESKTOP-5R2FH6C\euddm)
Description: Impossibile trovare la descrizione per l'ID evento '10010' nell'origine 'DCOM'. È possibile che nel computer locale non siano presenti le informazioni del Registro di sistema o le DLL di messaggi necessarie per la visualizzazione del messaggio oppure che l'utente non disponga delle autorizzazioni necessarie per accedervi. Le informazioni seguenti sono parte dell'evento:'Microsoft.Windows.ContentDeliveryManager_10.0.19041.4239_neutral_neutral_cw5n1h2txyewy!App.AppXw3qcpc7p849541dp39vvqd01bn7z9ybh.mca'

(09/18/2024 04:41:36 ) (Source: DCOM) (EventID: 10010) (User: DESKTOP-5R2FH6C\euddm)
Description: Impossibile trovare la descrizione per l'ID evento '10010' nell'origine 'DCOM'. È possibile che nel computer locale non siano presenti le informazioni del Registro di sistema o le DLL di messaggi necessarie per la visualizzazione del messaggio oppure che l'utente non disponga delle autorizzazioni necessarie per accedervi. Le informazioni seguenti sono parte dell'evento:'Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter'

(09/18/2024 02:59:08 ) (Source: BugCheck) (EventID: 1001) (User: )
Description: Impossibile trovare la descrizione per l'ID evento '1073742825' nell'origine 'BugCheck'. È possibile che nel computer locale non siano presenti le informazioni del Registro di sistema o le DLL di messaggi necessarie per la visualizzazione del messaggio oppure che l'utente non disponga delle autorizzazioni necessarie per accedervi. Le informazioni seguenti sono parte dell'evento:'0x0000001e (0xffffffffc0000096, 0xffffa2819f18d005, 0x0000000000000000, 0x0000000000000000)', 'C:\Windows\MEMORY.DMP', 'e1b7162a-5f32-4cd7-8fd2-2cb523ff4919'

----------------------------------------------------------------------
Zipping minidump files:
----------------------------------------------------------------------
 

Attachments

Last edited by a moderator:
Can you attach the new minidumps please, the tool will have created minidump.zip on your desktop.
I definitely need the dump files when trying to diagnose a BSOD. 🙂
Also, lets see what drivers are loaded on your machine.
Download the attached batch file, unzip to your desktop.
Right click run as admin.
A new file named driverslist.txt will appear on your desktop.
Attach it.
Also a fresh speccy link as it has been almost two weeks. 👍
 

Attachments

Hello,
sorry i uploaded also the minidumps but i did not notice the error message cause the file was too big.I have attached the file (divided into 3 separated zip) to this message along with the drivers as you requested. The number 1 and two are the unzipped files from the minidump created by the program, while the number 3 is the zip inside the zip.
Thanks a lot for your support
 

Attachments

Dump: MEMORY.dmp (14.09.2024 09:49:34)
Code: 0xA - IRQL_NOT_LESS_OR_EQUAL
Process: dwm.exe, probably caused by: ntkrnlmp.exe
Third-party modules in the Raw Stack: amdi2c.sys
FAILURE_BUCKET_ID: AV_nt!KiInsertTimerTable

go here and run the aMD Auto Update tool.



Download Scheduled Task Manager.
Unzip to your desktop.
Right click run as admin.
Click Query Scheduled Task.
Right click Disable these:


Task: {AMDInstallLauncher}
Task: {AMDLinkUpdate}
Task: {AMDRyzenMasterSDKTask}
Task: {MicrosoftEdgeUpdateTaskMachineCore}
Task: {MicrosoftEdgeUpdateTaskMachineUA}
Task: {ModifyLinkUpdate}
Task: {npcapwatchdog}
Task: {StartAUEP}
Task: {StartCN}
Task: {StartCNBM}
Task: {StartDVR}
Task: {GoogleUpdaterTaskSystem127.0.6490.0{D03363BE-CC3F-4ACA-BF6D-F2E358DCCA3E}}
Task: {GoogleUpdaterTaskSystem130.0.6679.0{AD962693-DF10-43B2-861F-F6C5CB3AE0CD}}

Then Click Save Task to text file and attach the log.

If you are overclocking your PC, try running everything (CPU, GPU, system memory) at their stock speeds. See if the issue is still reproducible. Turn off XMP profile or set it to Auto.
 

Attachments

Last edited: