• Hi there and welcome to PC Help Forum (PCHF), a more effective way to get the Tech Support you need!
    We have Experts in all areas of Tech, including Malware Removal, Crash Fixing and BSOD's , Microsoft Windows, Computer DIY and PC Hardware, Networking, Gaming, Tablets and iPads, General and Specific Software Support and so much more.

    Why not Click Here To Sign Up and start enjoying great FREE Tech Support.

    This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Random Crash & Reboot

Status
Not open for further replies.
I have an MSI Gaming Laptop and it will randomly freeze and then reboot. Once it reboots, it will hang after POST. I will press the power button and after a while it will boot straight to the desktop, but then it will freeze, but not reboot. I press the power button again and it will reboot to the Windows 10 login prompt.

This can happen repeatedly in a day or I can go days or even weeks without it happening. Could this be a hardware issue? Perhaps bad RAM?
 
Let's get some information from the machine please. What is the Exact model of the laptop?

Please download MiniToolBox and save it to your desktop.
Run the program by right clicking on it and selecting Run as administrator.
When the program opens check mark Select All Then hit GO
Please post the log in your next reply. Attach or copy and paste, whatever is easier for you.




Speccy Scan.


  • Please go here and download Speccy.
  • Install and run the program.
  • Upon Completion:
  • Hit File
  • Publish Snap Shot
  • A link will appear, post that link.




Have you checked temps, reseated the ram modules?

Have you ever cleaned the machine of dust. Cleaned the heat sink on the laptop?

Does the machine perform ok in safe mode?
 
GT83VR GRE Titan SLI

Code:
MiniToolBox by Farbar  Version: 13-05-2022
Ran by user (administrator) on 15-12-2023 at 18:15:45
Running from "C:\Users\user\Downloads"
Microsoft Windows 10 Home  (X64)
Model: GT83VR 6RE Manufacturer: Micro-Star International Co., Ltd.
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.


========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.
========================= Hosts content: =================================
========================= IP Configuration: ================================

Killer Wireless-n/a/ac 1535 Wireless Network Adapter = Wi-Fi (Connected)
Killer E2400 Gigabit Ethernet Controller = Ethernet (Media disconnected)
Bluetooth Device (Personal Area Network) = Bluetooth Network Connection (Media disconnected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global defaultcurhoplimit=64
set interface interface="Ethernet (Kernel Debugger)" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Ethernet" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Wi-Fi" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Local Area Connection* 1" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Local Area Connection* 2" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Bluetooth Network Connection" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled


popd
# End of IPv4 configuration



Windows IP Configuration

   Host Name . . . . . . . . . . . . : DESKTOP-T7DDD13
   Primary Dns Suffix  . . . . . . . :
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : search.charter.com
                                       socal.rr.com

Ethernet adapter Ethernet:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : socal.rr.com
   Description . . . . . . . . . . . : Killer E2400 Gigabit Ethernet Controller
   Physical Address. . . . . . . . . : 4C-CC-6A-7F-3E-FD
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Wireless LAN adapter Local Area Connection* 1:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft Wi-Fi Direct Virtual Adapter
   Physical Address. . . . . . . . . : 9E-B6-D0-0D-FA-13
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes

Wireless LAN adapter Local Area Connection* 2:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft Wi-Fi Direct Virtual Adapter #2
   Physical Address. . . . . . . . . : AE-B6-D0-0D-FA-13
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Wireless LAN adapter Wi-Fi:

   Connection-specific DNS Suffix  . : socal.rr.com
   Description . . . . . . . . . . . : Killer Wireless-n/a/ac 1535 Wireless Network Adapter
   Physical Address. . . . . . . . . : 9C-B6-D0-0D-FA-13
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2603:8001:800:20bc:4231:5c67:5c8e:33d7(Preferred)
   Temporary IPv6 Address. . . . . . : 2603:8001:800:20bc:b01c:88ce:13f6:7746(Deprecated)
   Temporary IPv6 Address. . . . . . : 2603:8001:800:20bc:b118:f5ed:1e1f:157e(Preferred)
   Link-local IPv6 Address . . . . . : fe80::e620:82dc:95cc:8801%17(Preferred)
   IPv4 Address. . . . . . . . . . . : 192.168.1.16(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Thursday, December 14, 2023 06:19:21
   Lease Expires . . . . . . . . . . : Saturday, December 16, 2023 16:44:24
   Default Gateway . . . . . . . . . : fe80::daec:5eff:fe13:1a1c%17
                                       192.168.1.1
   DHCP Server . . . . . . . . . . . : 192.168.1.1
   DHCPv6 IAID . . . . . . . . . . . : 178042576
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-2B-B7-E5-8E-4C-CC-6A-7F-3E-FD
   DNS Servers . . . . . . . . . . . : 192.168.1.1
   NetBIOS over Tcpip. . . . . . . . : Enabled
   Connection-specific DNS Suffix Search List :
                                       search.charter.com
                                       socal.rr.com

Ethernet adapter Bluetooth Network Connection:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Bluetooth Device (Personal Area Network)
   Physical Address. . . . . . . . . : 9C-B6-D0-0D-FA-14
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
Server:  Linksys00709
Address:  192.168.1.1

Name:    google.com
Addresses:  2607:f8b0:4007:815::200e
      172.217.12.142


Pinging google.com [2607:f8b0:4007:815::200e] with 32 bytes of data:
Reply from 2607:f8b0:4007:815::200e: time=23ms
Reply from 2607:f8b0:4007:815::200e: time=13ms

Ping statistics for 2607:f8b0:4007:815::200e:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 13ms, Maximum = 23ms, Average = 18ms
Server:  Linksys00709
Address:  192.168.1.1

DNS request timed out.
    timeout was 2 seconds.
Name:    yahoo.com
Addresses:  2001:4998:24:120d::1:0
      2001:4998:44:3507::8000
      2001:4998:124:1507::f001
      2001:4998:124:1507::f000
      2001:4998:44:3507::8001
      2001:4998:24:120d::1:1
      74.6.231.20
      74.6.143.26
      74.6.231.21
      98.137.11.163
      98.137.11.164
      74.6.143.25


Pinging yahoo.com [2001:4998:24:120d::1:1] with 32 bytes of data:
Reply from 2001:4998:24:120d::1:1: time=42ms
Reply from 2001:4998:24:120d::1:1: time=45ms

Ping statistics for 2001:4998:24:120d::1:1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 42ms, Maximum = 45ms, Average = 43ms

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=64
Reply from 127.0.0.1: bytes=32 time<1ms TTL=64

Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
  4...4c cc 6a 7f 3e fd ......Killer E2400 Gigabit Ethernet Controller
  3...9e b6 d0 0d fa 13 ......Microsoft Wi-Fi Direct Virtual Adapter
 12...ae b6 d0 0d fa 13 ......Microsoft Wi-Fi Direct Virtual Adapter #2
 17...9c b6 d0 0d fa 13 ......Killer Wireless-n/a/ac 1535 Wireless Network Adapter
  7...9c b6 d0 0d fa 14 ......Bluetooth Device (Personal Area Network)
  1...........................Software Loopback Interface 1
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0      192.168.1.1     192.168.1.16     35
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    331
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    331
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    331
      192.168.1.0    255.255.255.0         On-link      192.168.1.16    291
     192.168.1.16  255.255.255.255         On-link      192.168.1.16    291
    192.168.1.255  255.255.255.255         On-link      192.168.1.16    291
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    331
        224.0.0.0        240.0.0.0         On-link      192.168.1.16    291
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    331
  255.255.255.255  255.255.255.255         On-link      192.168.1.16    291
===========================================================================
Persistent Routes:
  None

IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
 17    291 ::/0                     fe80::daec:5eff:fe13:1a1c
  1    331 ::1/128                  On-link
 17    291 2603:8001:800:20bc::/64  On-link
 17     51 2603:8001:800:20bc::/64  fe80::daec:5eff:fe13:1a1c
 17    291 2603:8001:800:20bc:4231:5c67:5c8e:33d7/128
                                    On-link
 17    291 2603:8001:800:20bc:b01c:88ce:13f6:7746/128
                                    On-link
 17    291 2603:8001:800:20bc:b118:f5ed:1e1f:157e/128
                                    On-link
 17    291 fe80::/64                On-link
 17    291 fe80::e620:82dc:95cc:8801/128
                                    On-link
  1    331 ff00::/8                 On-link
 17    291 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================

Catalog5 01 C:\WINDOWS\SysWOW64\napinsp.dll [54784] (Microsoft Corporation)
Catalog5 02 C:\WINDOWS\SysWOW64\pnrpnsp.dll [70656] (Microsoft Corporation)
Catalog5 03 C:\WINDOWS\SysWOW64\pnrpnsp.dll [70656] (Microsoft Corporation)
Catalog5 04 C:\WINDOWS\SysWOW64\NLAapi.dll [71168] (Microsoft Corporation)
Catalog5 05 C:\WINDOWS\SysWOW64\wshbth.dll [50688] (Microsoft Corporation)
Catalog5 06 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog5 07 C:\WINDOWS\SysWOW64\winrnr.dll [34304] (Microsoft Corporation)
Catalog9 01 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 02 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 03 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 04 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 05 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 06 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 07 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 08 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 09 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 10 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 11 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 12 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 13 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
Catalog9 14 C:\WINDOWS\SysWOW64\mswsock.dll [325608] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\napinsp.dll [70144] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\pnrpnsp.dll [89088] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [89088] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\NLAapi.dll [97280] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\wshbth.dll [64000] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog5 07 C:\Windows\System32\winrnr.dll [49152] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 11 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 12 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 13 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)
x64-Catalog9 14 C:\Windows\System32\mswsock.dll [419584] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (12/14/2023 06:18:14 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program StartMenuExperienceHost.exe version 0.0.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 26f4

Start Time: 01da2e9810aed999

Termination Time: 4294967295

Application Path: C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe

Report Id: 3aca9946-e1eb-49bd-986b-6aacdbc65208

Faulting package full name: Microsoft.Windows.StartMenuExperienceHost_10.0.19041.3636_neutral_neutral_cw5n1h2txyewy

Faulting package-relative application ID: App

Hang type: Quiesce

Error: (12/14/2023 06:16:47 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program SearchApp.exe version 10.0.19041.3758 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 23e8

Start Time: 01da2e9811314c21

Termination Time: 4294967295

Application Path: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe

Report Id: e0420d2d-ffb8-42a1-aff4-333ab41601a0

Faulting package full name: Microsoft.Windows.Search_1.14.10.19041_neutral_neutral_cw5n1h2txyewy

Faulting package-relative application ID: CortanaUI

Hang type: Quiesce

Error: (12/13/2023 11:38:07 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program SearchApp.exe version 10.0.19041.3758 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: d04

Start Time: 01da2e6070c1be25

Termination Time: 4294967295

Application Path: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe

Report Id: 76626a4d-721e-4e9d-99c5-b7e6562a9252

Faulting package full name: Microsoft.Windows.Search_1.14.10.19041_neutral_neutral_cw5n1h2txyewy

Faulting package-relative application ID: CortanaUI

Hang type: Quiesce

Error: (12/13/2023 11:14:25 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program SearchApp.exe version 10.0.19041.3758 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 28f4

Start Time: 01da2e5cec1f9ef4

Termination Time: 4294967295

Application Path: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe

Report Id: c3291ba2-5edf-4675-b29e-0cb7ec5f52bc

Faulting package full name: Microsoft.Windows.Search_1.14.10.19041_neutral_neutral_cw5n1h2txyewy

Faulting package-relative application ID: CortanaUI

Hang type: Quiesce

Error: (12/13/2023 11:14:04 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program TextInputHost.exe version 123.26505.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 30dc

Start Time: 01da2e5cf18c26af

Termination Time: 4294967295

Application Path: C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe

Report Id:

Faulting package full name: MicrosoftWindows.Client.CBS_1000.19053.1000.0_x64__cw5n1h2txyewy

Faulting package-relative application ID: InputApp

Hang type: Activation

Error: (12/13/2023 11:11:29 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.

Error: (12/13/2023 11:11:29 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (12/13/2023 11:11:29 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.

Error: (12/13/2023 11:11:29 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (12/04/2023 08:13:26 PM) (Source: ESENT) (EventID: 454) (User: )
Description: wuaueng.dll (4692,R,98) SUS20ClientDataStore: Database recovery/restore failed with unexpected error -543.


System errors:
=============
Error: (12/15/2023 06:12:57 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-T7DDD13)
Description: Event-ID 10010

Error: (12/15/2023 05:34:19 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x80073d02: 9NMPJ99VJBWV-Microsoft.YourPhone.

Error: (12/14/2023 06:34:41 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-T7DDD13)
Description: Event-ID 10010

Error: (12/14/2023 06:14:54 AM) (Source: nvlddmkm) (EventID: 14) (User: )
Description: Event-ID 14

Error: (12/14/2023 06:14:44 AM) (Source: volmgr) (EventID: 161) (User: )
Description: Dump file creation failed due to error during dump creation.

Error: (12/14/2023 06:14:44 AM) (Source: volmgr) (EventID: 161) (User: )
Description: Dump file creation failed due to error during dump creation.

Error: (12/14/2023 06:15:35 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 5:37:22 AM on ‎12/‎14/‎2023 was unexpected.

Error: (12/14/2023 05:54:02 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-T7DDD13)
Description: Event-ID 10010

Error: (12/14/2023 05:47:56 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-T7DDD13)
Description: Event-ID 10010

Error: (12/13/2023 11:37:47 PM) (Source: nvlddmkm) (EventID: 14) (User: )
Description: Event-ID 14


Windows Defender:
================
Date: 2023-12-14 06:16:04
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
[URL unfurl="true"]https://go.microsoft.com/fwlink/?linkid=37020&name=PUABundler:Win32/IOBitBundler&threatid=362730&enterprise=0[/URL]
Name: PUABundler:Win32/IOBitBundler
Severity: Low
Category: Potentially Unwanted Software
Path: file:_C:\Users\user\OneDrive\Documents\driver_booster_setup.exe
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Security intelligence Version: AV: 1.403.462.0, AS: 1.403.462.0, NIS: 1.403.462.0
Engine Version: AM: 1.1.23110.2, NIS: 1.1.23110.2

Date: 2023-12-13 23:37:56
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
[URL unfurl="true"]https://go.microsoft.com/fwlink/?linkid=37020&name=PUABundler:Win32/IOBitBundler&threatid=362730&enterprise=0[/URL]
Name: PUABundler:Win32/IOBitBundler
Severity: Low
Category: Potentially Unwanted Software
Path: file:_C:\Users\user\OneDrive\Documents\driver_booster_setup.exe
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Security intelligence Version: AV: 1.403.462.0, AS: 1.403.462.0, NIS: 1.403.462.0
Engine Version: AM: 1.1.23110.2, NIS: 1.1.23110.2

Date: 2023-12-13 23:12:36
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
[URL unfurl="true"]https://go.microsoft.com/fwlink/?linkid=37020&name=PUABundler:Win32/IOBitBundler&threatid=362730&enterprise=0[/URL]
Name: PUABundler:Win32/IOBitBundler
Severity: Low
Category: Potentially Unwanted Software
Path: file:_C:\Users\user\OneDrive\Documents\driver_booster_setup.exe
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Security intelligence Version: AV: 1.403.460.0, AS: 1.403.460.0, NIS: 1.403.460.0
Engine Version: AM: 1.1.23110.2, NIS: 1.1.23110.2

Date: 2023-12-13 21:57:23
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2023-12-11 22:02:12
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Event[0]:

Date: 2023-08-24 08:32:04
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence and will attempt to revert to a previous version.
Security intelligence Attempted: Current
Error Code: 0x80070003
Error description: The system cannot find the path specified.
Security intelligence Version: 0.0.0.0;0.0.0.0
Engine Version: 0.0.0.0

Date: 2023-08-24 08:11:29
Description:
Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: On Access
Error Code: 0x8007043c
Error description: This service cannot be started in Safe Mode
Reason: Antimalware security intelligence has stopped functioning for an unknown reason. In some instances, restarting the service may resolve the problem.

CodeIntegrity Errors:
====================
Date: 2023-12-05 17:05:58
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2023-11-23 08:13:00
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Users\user\AppData\Local\eve-online\app-0.4.9\eve-online.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Steam\SteamOverlayVulkanLayer64.dll that did not meet the Microsoft signing level requirements.

Date: 2023-10-27 18:59:53
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.


=========================== Installed Programs ============================

7.1 Surround Sound (HKLM-x32\...\Razer Surround Sound) (Version: 1.0.1.16 - Razer Inc.)
Advanced SystemCare (HKLM-x32\...\Advanced SystemCare_is1) (Version: 17.1.0 - IObit)
Battery Calibration (HKLM-x32\...\InstallShield_{634AC01E-49DB-4AD2-B87C-90D4DCC6AFA1}) (Version: 1.0.1609.1901 - Micro-Star International Co., Ltd.)
Dragon Center (HKLM-x32\...\InstallShield_{C65B26BC-5A6F-4135-9678-55A877655471}) (Version: 1.2.1910.3101 - Micro-Star International Co., Ltd.)
Driver Booster 11 (HKLM-x32\...\Driver Booster_is1) (Version: 11.1.0 - IObit)
ENE_DRAM_RGB_AIO (HKLM\...\{1745D314-9077-46C9-8562-1C62BAE189B7}) (Version: 1.0.3.31 - Ene Tech.) Hidden
ENE_DRAM_RGB_AIO (HKLM-x32\...\{cb8809b0-c2ad-40f3-80c7-8ebf6c6f8f63}) (Version: 1.0.3.31 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.9.10 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{7c1089bb-6d30-4461-a52c-65839a41d745}) (Version: 1.0.9.10 - ENE TECHNOLOGY INC.) Hidden
ENE_MousePad_HAL (HKLM\...\{9E97178A-ADB8-4778-BE60-7E28E2A72721}) (Version: 1.0.2.0 - ENE TECHNOLOGY INC.) Hidden
ENE_MousePad_HAL (HKLM-x32\...\{c2c794a4-7986-4c45-884d-d4ca43b88df9}) (Version: 1.0.2.0 - ENE TECHNOLOGY INC.) Hidden
ENE_X-JMI_HAL (HKLM\...\{2B8E611F-0B51-4FAC-87BB-AF50D82E7DDA}) (Version: 1.0.5.1 - ENE Tech) Hidden
ENE_X-JMI_HAL (HKLM-x32\...\{50ec3a07-291b-463e-be86-487eb8cbb71c}) (Version: 1.0.5.1 - ENE Tech) Hidden
EVE Online (HKLM\...\Steam App 8500) (Version:  - CCP)
Fantasy Grounds (HKLM\...\Fantasy Grounds) (Version:  - SmiteWorks)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 120.0.6099.109 - Google LLC)
Google Drive (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 85.0.25.0 - Google LLC)
Help Desk (HKLM-x32\...\InstallShield_{7E8181AF-9679-49B3-B133-C265709B6927}) (Version: 1.0.1802.0501 - Micro-Star International Co., Ltd.)
Intel Extreme Tuning Utility (HKLM-x32\...\{9c09fe2c-7a45-4602-ac8d-9e217e1c3064}) (Version: 6.4.0.5 - Intel Corporation)
Intel XTU Library (HKLM-x32\...\{95D06672-D57B-406C-8D2F-A003AD3C2E3D}) (Version: 10.017.09141 - Micro-Star International Co., Ltd.)
IObit Software Updater (HKLM-x32\...\IObit Software Updater_is1) (Version: 6.3.0.15 - IObit)
Microsoft 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.17029.20068 - Microsoft Corporation)
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 23.226.1031.0003 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
MSI Remind Manager Service (HKLM-x32\...\InstallShield_{3E23F267-3E35-40F9-B6BF-BC034D214717}) (Version: 1.0.1802.0501 - Micro-Star International Co., Ltd.)
MSI SDK (HKLM-x32\...\{EE7D557C-3AE7-4348-8DCA-3A89790D0002}}_is1) (Version: 2.2022.1212.01 - MSI)
Mumble (client) (HKLM\...\{7668CA93-7D82-43E5-AA6D-BCA352951877}) (Version: 1.4.287 - Mumble VoIP)
New World (HKLM\...\Steam App 1063730) (Version:  - Amazon Games)
NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.27.0.112 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.27.0.112 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.17029.20000 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.16327.20248 - Microsoft Corporation) Hidden
OnScreen Control (HKLM-x32\...\{E5C1B339-0E4E-49A5-859E-5E1DE1938706}) (Version: 7.95.0 - LG Electronics Inc)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Razer Synapse (HKLM-x32\...\Razer Synapse) (Version: 3.8.0630.062814 - Razer Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8328 - Realtek Semiconductor Corp.)
Red Dead Redemption 2 (HKLM\...\Steam App 1174180) (Version:  - Rockstar Games)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.77.1590 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.1.9.8 - Rockstar Games)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Thunderbolt(TM) Software (HKLM-x32\...\{B0E8A8CA-5A40-49C3-BE5E-9076664DB9AA}) (Version: 15.3.39.250 - Intel Corporation)
Transport Fever 2 (HKLM\...\Steam App 1066780) (Version:  - Urban Games)
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{7B63012A-4AC6-40C6-B6AF-B24A84359DD5}) (Version: 8.93.0.0 - Microsoft Corporation)
WD_BLACK AN1500 (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.12.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK AN1500 (HKLM-x32\...\{9c94735f-73fd-4b0f-9ddb-8be7b3cc4681}) (Version: 1.0.12.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK D50 (HKLM\...\{BDE43F26-5917-44F8-B86A-F1D9A6B80B32}) (Version: 1.0.9.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK D50 (HKLM-x32\...\{a1d1ba00-92b7-4a99-8ebd-65b25c0e9e44}) (Version: 1.0.9.0 - ENE TECHNOLOGY INC.) Hidden
Wrayth -- Game Client from Simutronics (HKLM-x32\...\WraythFE) (Version:  - Simutronics Corporation)

Packages:
=========
Cortana -> C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2308.1005.0_x64__8wekyb3d8bbwe [2023-08-24] (Microsoft Corporation)
DragonCenter -> C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.DragonCenter_2.0.130.0_x64__kzh8wxbdkxb8p [2023-08-24] (MICRO-STAR INTERNATIONAL CO., LTD) [Startup Task]
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_150.1.1140.0_x64__v10z8vjag6ke6 [2023-11-11] (HP Inc.)
Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2311.21001.0_x64__8wekyb3d8bbwe [2023-12-06] (Microsoft Corporation) [Startup Task]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.964.0_x64__56jybvy8sckqj [2023-08-24] (NVIDIA Corp.)
Outlook for Windows -> C:\Program Files\WindowsApps\Microsoft.OutlookForWindows_1.2023.1108.200_x64__8wekyb3d8bbwe [2023-11-16] (Microsoft Corporation)
Photos Media Engine Add-on -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2023-08-24] (Microsoft Corporation)
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.18.11020.0_x64__8wekyb3d8bbwe [2023-11-25] (Microsoft Studios) [MS Ad]
SynMsiDApp -> C:\Program Files\WindowsApps\SynapticsIncorporated.SynMsiDApp_19005.31005.0.0_x64__807d65c4rvak2 [2023-08-24] (Synaptics Incorporated)
Windows Package Manager Source (winget) -> C:\Program Files\WindowsApps\Microsoft.Winget.Source_2023.927.1600.993_neutral__8wekyb3d8bbwe [2023-09-27] (Microsoft Corporation)
WindowsAppRuntime.1.3 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.3_3000.882.2207.0_x64__8wekyb3d8bbwe [2023-08-24] (Microsoft Corporation)
WindowsAppRuntime.1.3 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.3_3000.934.1904.0_x64__8wekyb3d8bbwe [2023-08-24] (Microsoft Corporation)
WindowsAppRuntime.1.3 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.3_3000.934.1904.0_x86__8wekyb3d8bbwe [2023-08-24] (Microsoft Corporation)
WindowsAppRuntime.1.4 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.4_4000.1010.1349.0_x64__8wekyb3d8bbwe [2023-11-04] (Microsoft Corporation)
WindowsAppRuntime.1.4 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.4_4000.1049.117.0_x64__8wekyb3d8bbwe [2023-11-25] (Microsoft Corporation)
WindowsAppRuntime.1.4 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.4_4000.1049.117.0_x86__8wekyb3d8bbwe [2023-11-25] (Microsoft Corporation)
桌面翻页时钟 -> C:\Program Files\WindowsApps\WuhanNetPowerTechnologyCo.58808405FEBD5_4.8.4.0_neutral__63m8b6nby1dvp [2023-12-13] (Wuhan Net Power Technology Co., Ltd) [Startup Task]

========================= Devices: ================================


========================= Memory info: ===================================

Percentage of memory in use: 11%
Total physical RAM: 49109.46 MB
Available physical RAM: 43618.15 MB
Total Virtual: 56277.46 MB
Available Virtual: 45144.76 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:237.84 GB) (Free:46.31 GB) NTFS
2 Drive d: (Data) (Fixed) (Total:931.51 GB) (Free:438.91 GB) NTFS

========================= Users: ========================================

User accounts for \\DESKTOP-T7DDD13

Administrator            brait                    DefaultAccount          
Guest                    jenny                    pinkh                   
susan                    user                     WDAGUtilityAccount      

========================= Minidump Files ==================================

C:\WINDOWS\Minidump\121323-10187-01.dmp
C:\WINDOWS\Minidump\121423-10546-01.dmp
========================= Restore Points ==================================

13-12-2023 14:52:12 Windows Modules Installer
14-12-2023 07:31:27 Driver Booster : Auto Update

**** End of log ****


All 4 cores are under 40 degrees C

PC was cleaned when I upgraded memory.

Thanks,

Ken
 
Last edited by a moderator:
There are DNS time outs. System errors Update failures. Looks like this profile is corrupted. And most likely the software listed below is the cause.

Advanced SystemCare (HKLM-x32\...\Advanced SystemCare_is1) (Version: 17.1.0 - IObit)
Driver Booster 11 (HKLM-x32\...\Driver Booster_is1) (Version: 11.1.0 - IObit)

IObit Software Updater (HKLM-x32\...\IObit Software Updater_is1) (Version: 6.3.0.15 - IObit)

Also, what is this? Were you aware of Chinese sofware installed?

桌面翻页时钟 -> C:\Program Files\WindowsApps\WuhanNetPowerTechnologyCo.58808405FEBD5_4.8.4.0_neutral__63m8b6nby1dvp [2023-12-13] (Wuhan Net Power Technology Co., Ltd) [Startup Task]



Programs like Driver boosters and system optimization software cause issues, they sell people who are unaware a false idea. There is no need to update any driver unless there is an issue, and unless you are just disabling startups and a few services and cleaning temp files there is not a need for any thing else, but these optimization tools take it a step further and mess with things that really should not be touched. There are some tools that are ok, but I have been helping in forums for over 10 years and I have seen Iobit trash many systems.

So for a possible remedy....




First start out by uninstalling the three software listed in red above, with Geek Uninstaller. Then you will want to create a new Admin user on your system. Now log off of your account and into the new one. Download Account Profile fixer, then run it as admin and select and repair your main account.




Let's see if @Bruce @PeterOz @phillpower2 Have anything to add to the above. :)
 
Last edited:
1702734192410.png
 
OK, if you have not already go ahead and remove those programs and repair your main account as instructed, then test for a little while and let us know how it goes.
 
From Speccy, C:\ drive is at 20% free, which in itself is OK, but during gaming, or heavy loads, this could get gobbled up with temp files or caching.
Reclaiming some drive space may help.
Use WizTree.

Drive D:\ shows temperature exceed count SMART warnings, so it's gotten hot inside the chassis a few times. Be sure to have good airflow when in use. For example, don't use on the bed sheets or on your lap.

The memory sticks are from different manufactures. Running the laptop on only one stick at a time for a few days may pinpoint if they are to blame.

If the above doesn't help, or suggestions from others, I know I say this a lot, but I would "nuke it from orbit, it's the only way to be sure" - to quote a classic.
Who knows what IOBit has done this time, but even if nothing, starting from a known, clean state is a great launching pad when troubleshooting.
 
  • Like
Reactions: xrobwx71
Status
Not open for further replies.