• Hi there and welcome to PC Help Forum (PCHF), a more effective way to get the Tech Support you need!
    We have Experts in all areas of Tech, including Malware Removal, Crash Fixing and BSOD's , Microsoft Windows, Computer DIY and PC Hardware, Networking, Gaming, Tablets and iPads, General and Specific Software Support and so much more.

    Why not Click Here To Sign Up and start enjoying great FREE Tech Support.

    This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Windows Media player Crashing

Status
Not open for further replies.

Shagami

PCHF Member
May 25, 2022
3
0
37
Cali
Hello all! I am here to hopefully solve this issue.
Windows Media Player 12 keeps crashing randomly. At first I thought it was due to an error on a song but its happened during different songs and whatnot.
I have done a clean install of media player, rolled back updates, made sure drivers were up to date, ran SFC scan (found nothing), repaired windows visual C++, restored to an earlier restore point (aka during the week it didnt randomly crash, still crashed), etc There was a week where it didn't crash randomly like that and then it started again.
here is a speccy URL: http://speccy.piriform.com/results/eFLMKGCDhqhYKgha2Ph4cA4
Here is what the Windows Problem report says

Source
Windows Media Player

Summary
Stopped working

Date
‎5/‎25/‎2022 7:15 AM

Status
Report sent

Description
Faulting Application Path: C:\Program Files (x86)\Windows Media Player\wmplayer.exe

Problem signature
Problem Event Name: BEX
Application Name: wmplayer.exe
Application Version: 12.0.19041.1266
Application Timestamp: da0bbd10
Fault Module Name: ucrtbase.dll
Fault Module Version: 10.0.19041.789
Fault Module Timestamp: 82dc99a2
Exception Offset: 0009eddb
Exception Code: c0000409
Exception Data: 00000007
OS Version: 10.0.19044.2.0.0.768.101
Locale ID: 1033
Additional Information 1: 7058
Additional Information 2: 70580b91e0d5e54d3587752caa93c8e7
Additional Information 3: 8c8c
Additional Information 4: 8c8c4c914b428b44846da7076d856e0f

Extra information about the problem
Bucket ID: 2c358a802cd4369ec61be4da64a69360 (1593118519848244064)

And here is the report from Mini toolbox I used incode brackets to keep the information from being emoji'ed.
MiniToolBox by Farbar Version: 13-05-2022
Ran by tkfox (administrator) on 25-05-2022 at 07:30:24
Running from "C:\Users\tkfox\Downloads"
Microsoft Windows 10 Home (X64)
Model: ROG Zephyrus G14 GA401QM_GA401QM Manufacturer: ASUSTeK COMPUTER INC.
Boot Mode: Normal
***************************************************************************

========================= Event log errors: ===============================

Application errors:
==================
Error: (05/25/2022 07:15:49 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: wmplayer.exe, version: 12.0.19041.1266, time stamp: 0xda0bbd10
Faulting module name: ucrtbase.dll, version: 10.0.19041.789, time stamp: 0x82dc99a2
Exception code: 0xc0000409
Fault offset: 0x0009eddb
Faulting process id: 0x2ecc
Faulting application start time: 0x01d8703e19e8ae78
Faulting application path: C:\Program Files (x86)\Windows Media Player\wmplayer.exe
Faulting module path: C:\WINDOWS\System32\ucrtbase.dll
Report Id: 2fd9c2f8-4225-43e6-a23d-8466b3e08c5e
Faulting package full name:
Faulting package-relative application ID:

Error: (05/24/2022 08:01:27 PM) (Source: .NET Runtime) (EventID: 1025) (User: )
Description: Application: avpui.exe
Framework Version: v4.0.30319
Description: The application requested process termination through System.Environment.FailFast(string message).
Message: Terminate on shutting down of the current session
Stack:
at System.Environment.FailFast(System.String, System.Exception)
at KasperskyLab.UI.Common.ExceptionPolicy.ProcessFirstChanceException(System.Object, System.Runtime.ExceptionServices.FirstChanceExceptionEventArgs)
at MS.Win32.Penimc.IPimcManager2.GetTablet(UInt32, MS.Win32.Penimc.IPimcTablet2 ByRef)
at System.Windows.Input.PenThreadWorker+WorkerOperationGetTabletInfo_OnDoWork()
at System.Windows.Input.PenThreadWorker+WorkerOperation.DoWork()
at System.Windows.Input.PenThreadWorker.ThreadProc()
at System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
at System.Threading.ThreadHelper.ThreadStart()

Error: (05/24/2022 07:46:10 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: wmplayer.exe, version: 12.0.19041.1266, time stamp: 0xda0bbd10
Faulting module name: combase.dll, version: 10.0.19041.1682, time stamp: 0xccf6903a
Exception code: 0xc0000005
Fault offset: 0x00141be8
Faulting process id: 0x5614
Faulting application start time: 0x01d86fe17c1dc824
Faulting application path: C:\Program Files (x86)\Windows Media Player\wmplayer.exe
Faulting module path: C:\WINDOWS\System32\combase.dll
Report Id: 6f5c951b-8546-490a-bf18-e3190177dbe7
Faulting package full name:
Faulting package-relative application ID:

Error: (05/24/2022 06:07:48 PM) (Source: .NET Runtime) (EventID: 1025) (User: )
Description: Application: avpui.exe
Framework Version: v4.0.30319
Description: The application requested process termination through System.Environment.FailFast(string message).
Message: Terminate on shutting down of the current session
Stack:
at System.Environment.FailFast(System.String, System.Exception)
at KasperskyLab.UI.Common.ExceptionPolicy.ProcessFirstChanceException(System.Object, System.Runtime.ExceptionServices.FirstChanceExceptionEventArgs)
at MS.Win32.Penimc.IPimcManager2.GetTablet(UInt32, MS.Win32.Penimc.IPimcTablet2 ByRef)
at System.Windows.Input.PenThreadWorker+WorkerOperationGetTabletInfo_OnDoWork()
at System.Windows.Input.PenThreadWorker+WorkerOperation.DoWork()
at System.Windows.Input.PenThreadWorker.ThreadProc()
at System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
at System.Threading.ThreadHelper.ThreadStart()

Error: (05/24/2022 02:51:19 PM) (Source: .NET Runtime) (EventID: 1025) (User: )
Description: Application: avpui.exe
Framework Version: v4.0.30319
Description: The application requested process termination through System.Environment.FailFast(string message).
Message: Terminate on shutting down of the current session
Stack:
at System.Environment.FailFast(System.String, System.Exception)
at KasperskyLab.UI.Common.ExceptionPolicy.ProcessFirstChanceException(System.Object, System.Runtime.ExceptionServices.FirstChanceExceptionEventArgs)
at MS.Win32.Penimc.IPimcManager2.GetTablet(UInt32, MS.Win32.Penimc.IPimcTablet2 ByRef)
at System.Windows.Input.PenThreadWorker+WorkerOperationGetTabletInfo_OnDoWork()
at System.Windows.Input.PenThreadWorker+WorkerOperation.DoWork()
at System.Windows.Input.PenThreadWorker.ThreadProc()
at System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
at System.Threading.ThreadHelper.ThreadStart()

Error: (05/24/2022 11:51:45 AM) (Source: .NET Runtime) (EventID: 1025) (User: )
Description: Application: avpui.exe
Framework Version: v4.0.30319
Description: The application requested process termination through System.Environment.FailFast(string message).
Message: Terminate on shutting down of the current session
Stack:
at System.Environment.FailFast(System.String, System.Exception)
at KasperskyLab.UI.Common.ExceptionPolicy.ProcessFirstChanceException(System.Object, System.Runtime.ExceptionServices.FirstChanceExceptionEventArgs)
at MS.Win32.Penimc.IPimcManager2.GetTablet(UInt32, MS.Win32.Penimc.IPimcTablet2 ByRef)
at System.Windows.Input.PenThreadWorker+WorkerOperationGetTabletInfo_OnDoWork()
at System.Windows.Input.PenThreadWorker+WorkerOperation.DoWork()
at System.Windows.Input.PenThreadWorker.ThreadProc()
at System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
at System.Threading.ThreadHelper.ThreadStart()

Error: (05/23/2022 08:42:39 PM) (Source: .NET Runtime) (EventID: 1025) (User: )
Description: Application: avpui.exe
Framework Version: v4.0.30319
Description: The application requested process termination through System.Environment.FailFast(string message).
Message: Terminate on shutting down of the current session
Stack:
at System.Environment.FailFast(System.String, System.Exception)
at KasperskyLab.UI.Common.ExceptionPolicy.ProcessFirstChanceException(System.Object, System.Runtime.ExceptionServices.FirstChanceExceptionEventArgs)
at MS.Win32.Penimc.IPimcManager2.GetTablet(UInt32, MS.Win32.Penimc.IPimcTablet2 ByRef)
at System.Windows.Input.PenThreadWorker+WorkerOperationGetTabletInfo_OnDoWork()
at System.Windows.Input.PenThreadWorker+WorkerOperation.DoWork()
at System.Windows.Input.PenThreadWorker.ThreadProc()
at System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
at System.Threading.ThreadHelper.ThreadStart()

Error: (05/23/2022 11:01:39 AM) (Source: .NET Runtime) (EventID: 1025) (User: )
Description: Application: avpui.exe
Framework Version: v4.0.30319
Description: The application requested process termination through System.Environment.FailFast(string message).
Message: Terminate on shutting down of the current session
Stack:
at System.Environment.FailFast(System.String, System.Exception)
at KasperskyLab.UI.Common.ExceptionPolicy.ProcessFirstChanceException(System.Object, System.Runtime.ExceptionServices.FirstChanceExceptionEventArgs)
at MS.Win32.Penimc.IPimcManager2.GetTablet(UInt32, MS.Win32.Penimc.IPimcTablet2 ByRef)
at System.Windows.Input.PenThreadWorker+WorkerOperationGetTabletInfo_OnDoWork()
at System.Windows.Input.PenThreadWorker+WorkerOperation.DoWork()
at System.Windows.Input.PenThreadWorker.ThreadProc()
at System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
at System.Threading.ThreadHelper.ThreadStart()

Error: (05/23/2022 06:08:35 AM) (Source: .NET Runtime) (EventID: 1025) (User: )
Description: Application: avpui.exe
Framework Version: v4.0.30319
Description: The application requested process termination through System.Environment.FailFast(string message).
Message: Terminate on shutting down of the current session
Stack:
at System.Environment.FailFast(System.String, System.Exception)
at KasperskyLab.UI.Common.ExceptionPolicy.ProcessFirstChanceException(System.Object, System.Runtime.ExceptionServices.FirstChanceExceptionEventArgs)
at MS.Win32.Penimc.IPimcManager2.GetTablet(UInt32, MS.Win32.Penimc.IPimcTablet2 ByRef)
at System.Windows.Input.PenThreadWorker+WorkerOperationGetTabletInfo_OnDoWork()
at System.Windows.Input.PenThreadWorker+WorkerOperation.DoWork()
at System.Windows.Input.PenThreadWorker.ThreadProc()
at System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
at System.Threading.ThreadHelper.ThreadStart()

Error: (05/23/2022 05:04:10 AM) (Source: .NET Runtime) (EventID: 1025) (User: )
Description: Application: avpui.exe
Framework Version: v4.0.30319
Description: The application requested process termination through System.Environment.FailFast(string message).
Message: Terminate on shutting down of the current session
Stack:
at System.Environment.FailFast(System.String, System.Exception)
at KasperskyLab.UI.Common.ExceptionPolicy.ProcessFirstChanceException(System.Object, System.Runtime.ExceptionServices.FirstChanceExceptionEventArgs)
at MS.Win32.Penimc.IPimcManager2.GetTablet(UInt32, MS.Win32.Penimc.IPimcTablet2 ByRef)
at System.Windows.Input.PenThreadWorker+WorkerOperationGetTabletInfo_OnDoWork()
at System.Windows.Input.PenThreadWorker+WorkerOperation.DoWork()
at System.Windows.Input.PenThreadWorker.ThreadProc()
at System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
at System.Threading.ThreadHelper.ThreadStart()


System errors:
=============
Error: (05/24/2022 08:01:27 PM) (Source: DCOM) (EventID: 10010) (User: TKFOXX)
Description: Event-ID 10010

Error: (05/24/2022 08:01:27 PM) (Source: DCOM) (EventID: 10010) (User: TKFOXX)
Description: Event-ID 10010

Error: (05/24/2022 08:01:27 PM) (Source: DCOM) (EventID: 10010) (User: TKFOXX)
Description: Event-ID 10010

Error: (05/24/2022 08:01:27 PM) (Source: DCOM) (EventID: 10010) (User: TKFOXX)
Description: Event-ID 10010

Error: (05/24/2022 08:01:27 PM) (Source: DCOM) (EventID: 10010) (User: TKFOXX)
Description: Event-ID 10010

Error: (05/24/2022 08:01:27 PM) (Source: DCOM) (EventID: 10010) (User: TKFOXX)
Description: Event-ID 10010

Error: (05/24/2022 08:01:27 PM) (Source: DCOM) (EventID: 10010) (User: TKFOXX)
Description: Event-ID 10010

Error: (05/24/2022 08:01:27 PM) (Source: DCOM) (EventID: 10010) (User: TKFOXX)
Description: Event-ID 10010

Error: (05/24/2022 08:01:27 PM) (Source: DCOM) (EventID: 10010) (User: TKFOXX)
Description: Event-ID 10010

Error: (05/24/2022 08:01:27 PM) (Source: DCOM) (EventID: 10010) (User: TKFOXX)
Description: Event-ID 10010


Windows Defender:
================
Date: 2022-04-14 15:28:56
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
Name: Program:Win32/Uwamson.A!ml
Severity: Low
Category: Potentially Unwanted Software
Path: file:_C:\Users\tkfox\EphineaPSO\ephinea.dll
Detection Origin: Local machine
Detection Type: FastPath
Detection Source: Real-Time Protection
Process Name: C:\Windows\explorer.exe
Security intelligence Version: AV: 1.363.386.0, AS: 1.363.386.0, NIS: 1.363.386.0
Engine Version: AM: 1.1.19100.5, NIS: 1.1.19100.5

Date: 2022-04-14 15:28:01
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
Name: Program:Win32/Uwamson.A!ml
Severity: Low
Category: Potentially Unwanted Software
Path: file:_C:\Users\tkfox\EphineaPSO\ephinea.dll
Detection Origin: Local machine
Detection Type: FastPath
Detection Source: Real-Time Protection
Process Name: C:\Users\tkfox\EphineaPSO\online.exe
Security intelligence Version: AV: 1.363.386.0, AS: 1.363.386.0, NIS: 1.363.386.0
Engine Version: AM: 1.1.19100.5, NIS: 1.1.19100.5

Date: 2022-03-31 19:10:02
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
Name: Program:Win32/Uwamson.A!ml
Severity: Low
Category: Potentially Unwanted Software
Path: file:_C:\Users\tkfox\EphineaPSO\ephinea.dll
Detection Origin: Local machine
Detection Type: FastPath
Detection Source: Real-Time Protection
Process Name: C:\Users\tkfox\EphineaPSO\psobb.exe
Security intelligence Version: AV: 1.361.1102.0, AS: 1.361.1102.0, NIS: 1.361.1102.0
Engine Version: AM: 1.1.19000.8, NIS: 1.1.19000.8

Date: 2022-03-31 19:09:58
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
Name: Program:Win32/Uwamson.A!ml
Severity: Low
Category: Potentially Unwanted Software
Path: file:_C:\Users\tkfox\EphineaPSO\ephinea.dll
Detection Origin: Local machine
Detection Type: FastPath
Detection Source: Real-Time Protection
Process Name: C:\Users\tkfox\EphineaPSO\online.exe
Security intelligence Version: AV: 1.361.1102.0, AS: 1.361.1102.0, NIS: 1.361.1102.0
Engine Version: AM: 1.1.19000.8, NIS: 1.1.19000.8

Date: 2022-03-31 19:08:17
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
Name: Program:Win32/Uwamson.A!ml
Severity: Low
Category: Potentially Unwanted Software
Path: file:_C:\Users\tkfox\EphineaPSO\ephinea.dll
Detection Origin: Local machine
Detection Type: FastPath
Detection Source: Real-Time Protection
Process Name: C:\Users\tkfox\EphineaPSO\psobb.exe
Security intelligence Version: AV: 1.361.1102.0, AS: 1.361.1102.0, NIS: 1.361.1102.0
Engine Version: AM: 1.1.19000.8, NIS: 1.1.19000.8

CodeIntegrity Errors:
====================
Date: 2022-05-24 13:42:16
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\antimalware_provider.dll that did not meet the Windows signing level requirements.

Date: 2022-05-23 18:17:27
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\antimalware_provider.dll that did not meet the Windows signing level requirements.


=========================== Installed Programs ============================

Adobe Acrobat DC (64-bit) (HKLM\...\{AC76BA86-1033-FF00-7760-BC15014EA700}) (Version: 22.001.20117 - Adobe)
AI Noise Cancelation Audio Software (HKLM-x32\...\{ab5f014e-883d-470d-bc2d-127ef91e5611}) (Version: 2.0.0 - ASUSTek Computer Inc.)
AI Noise Cancelation Audio Software SDK (HKLM\...\{1D93BFB8-E73B-453E-829C-147666048421}) (Version: 1.0.5 - ASUSTeK COMPUTER INC.)
AMD_Chipset_Drivers (HKLM-x32\...\{1f00ea4b-bcb4-45fa-a4c8-bbcbfa0304ae}) (Version: 3.09.01.140 - Advanced Micro Devices, Inc.) Hidden
ARMOURY CRATE Service (HKLM\...\{01378DC3-088F-4F55-AAFA-DC6A9CCA292A}) (Version: 5.1.4 - ASUS)
ASUS Aac_NBDT HAL (HKLM\...\{01D3B7AA-D078-4506-B460-60877FCDDBD6}) (Version: 2.5.12.0 - ASUSTek COMPUTER INC.) Hidden
ASUS Aac_NBDT HAL (HKLM-x32\...\{cd70cc72-872c-4308-9fd1-9de5de28e448}) (Version: 2.5.12.0 - ASUSTek COMPUTER INC.) Hidden
ASUS AURA Display Component (HKLM\...\{AFD1CF98-FE97-434C-A095-9F27C5BEA53C}) (Version: 1.1.29.0 - ASUSTek COMPUTER INC. ) Hidden
ASUS AURA Display Component (HKLM-x32\...\{c5669622-d369-4e19-ae7b-d6b33d469f2d}) (Version: 1.1.29.0 - ASUSTek COMPUTER INC. ) Hidden
ASUS AURA Headset Component (HKLM\...\{A3C4120D-8096-4307-91A2-FFE37EBD5A3D}) (Version: 1.3.20.0 - ASUSTek COMPUTER INC.) Hidden
ASUS AURA Headset Component (HKLM-x32\...\{efdbf1f5-b708-4e32-ac7c-28574b7b810e}) (Version: 1.3.20.0 - ASUSTek COMPUTER INC.) Hidden
ASUS Framework Service (HKLM-x32\...\{8bc53c84-d9aa-4cc6-b19c-261f445494dc}) (Version: 2.1.3.0 - ASUSTek COMPUTER INC.)
ASUS Framework Service (HKLM-x32\...\{EA6A87BE-8AD3-40D2-944C-9DF5FBFF4332}) (Version: 2.1.3.0 - ASUSTek COMPUTER INC.) Hidden
ASUS Keyboard HAL (HKLM\...\{0FA0CDEE-5DC8-421E-A97D-C74FA6E66FC3}) (Version: 1.1.41.0 - ASUSTek COMPUTER INC.) Hidden
ASUS Keyboard HAL (HKLM-x32\...\{d08bf14a-b40b-40e3-ae73-ae60a6b60ee0}) (Version: 1.1.41.0 - ASUSTek COMPUTER INC.) Hidden
ASUS MB Peripheral Products (HKLM\...\{BFED9861-7D96-4528-89F1-B090ABBF11A7}) (Version: 1.0.35 - ASUSTeK Computer Inc.) Hidden
ASUS MB Peripheral Products (HKLM-x32\...\{193a2068-8738-4276-ab1b-9133f9403487}) (Version: 1.0.35 - ASUSTeK Computer Inc.) Hidden
ASUS Mouse HAL (HKLM\...\{B8F984F2-7887-4DD2-8D96-F9A4BC5A4AC5}) (Version: 1.1.0.34 - ASUSTek COMPUTER INC.) Hidden
ASUS Mouse HAL (HKLM-x32\...\{68c8d933-6396-47f8-93fa-ad8a27c1ed54}) (Version: 1.1.0.34 - ASUSTek COMPUTER INC.) Hidden
ASUS Promotion (HKLM\...\{10FE8E2F-7BDD-4430-8D63-3D3BA3F708D9}) (Version: 1.0.0 - ASUSTeK COMPUTER INC.)
ASUS Smart Display Control (HKLM-x32\...\{8714A8D1-0F08-4681-9DF6-A8C4607A58B4}) (Version: 1.7.0 - ASUSTek COMPUTER INC.)
ASUS Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.107.79 - ASUSTeK Computer Inc.) Hidden
Audacity 3.1.2 (HKLM\...\Audacity_is1) (Version: 3.1.2 - Audacity Team)
calibre (HKLM-x32\...\{46FD03C7-BCA4-4075-A384-AE21E2155424}) (Version: 5.17.0 - Kovid Goyal)
CCleaner (HKLM\...\CCleaner) (Version: 5.92 - Piriform)
CleanUp! (HKLM-x32\...\CleanUp!) (Version: - )
CLIP STUDIO 1.11.14 (HKLM-x32\...\{49274EB8-4598-47E6-8039-9BB7CE07627E}) (Version: 1.11.14 - CELSYS)
CLIP STUDIO PAINT 1.11.14 (HKLM-x32\...\{1E4572D2-28BC-4BC9-B743-13DC6CFD71DB}) (Version: 1.11.14 - CELSYS)
Dropbox (HKLM-x32\...\Dropbox) (Version: 148.4.4519 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.583.1 - Dropbox, Inc.) Hidden
GameSDK Service (HKLM-x32\...\{1a192f34-128f-43ed-a83d-f998b9d5f646}) (Version: 1.0.0.4 - ASUSTek COMPUTER INC.)
GameSDK Service (HKLM-x32\...\{7160DA8D-3F25-4F6E-ABC8-F693551D82FA}) (Version: 1.0.0.4 - ASUSTek COMPUTER INC.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 101.0.4951.67 - Google LLC)
Java 8 Update 331 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180331F0}) (Version: 8.0.3310.9 - Oracle Corporation)
Java 8 Update 333 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180333F0}) (Version: 8.0.3330.2 - Oracle Corporation)
JoyToKey version 6.6 (HKLM-x32\...\{EBF21C82-423E-49FD-BCBD-88C08397CB44}_is1) (Version: 6.6 - JTK software)
Kaspersky Internet Security (HKLM-x32\...\{4FC79BE9-AD63-46C0-9626-E4F6BCE6A976}) (Version: 21.3.10.391 - Kaspersky) Hidden
Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{4FC79BE9-AD63-46C0-9626-E4F6BCE6A976}) (Version: 21.3.10.391 - Kaspersky)
Last.fm Scrobbler 2.1.37 (HKLM-x32\...\LastFM_is1) (Version: - Last.fm)
Lightshot-5.5.0.7 (HKLM-x32\...\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1) (Version: 5.5.0.7 - Skillbrains)
Microsoft Update Health Tools (HKLM\...\{7B1FCD52-8F6B-4F12-A143-361EA39F5E7C}) (Version: 3.67.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Mp3tag v3.11 (HKLM-x32\...\Mp3tag) (Version: 3.11 - Florian Heidenreich)
NVIDIA Graphics Driver 512.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 512.15 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.39.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.39.3 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
openCanvas 6.2.12 (64bit) (HKLM\...\{FD20E1D7-38A4-4A87-8E49-3BB06E4542E8}}_is1) (Version: 6.2.12 - PGN Inc.)
openCanvas4.5.15e Plus (HKLM-x32\...\{EA78A47E-E7DB-4BF1-B5CC-67C8F210EE3C}) (Version: 4.51.5000 - System Product Corp.)
OpenOffice 4.1.11 (HKLM-x32\...\{D2F124FC-5373-4A4A-8C5A-61052A3D34CA}) (Version: 4.111.9808 - Apache Software Foundation)
PaintTool SAI Ver.1 (HKLM-x32\...\PaintToolSAI) (Version: - )
PlayStation™Now (HKLM-x32\...\{845D0080-3314-4D3A-96A4-D6FE948A2BA2}) (Version: 11.7.0 - Sony Interactive Entertainment Network America LLC)
RefreshRateService (HKLM-x32\...\{7E5E84CB-B190-4658-A4DC-166779C329D1}) (Version: 2.1.0 - ASUSTeK COMPUTER INC.)
ROG Live Service (HKLM-x32\...\{2D87BFB6-C184-4A59-9BBE-3E20CE797631}) (Version: 1.4.9.0 - ASUSTek COMPUTER INC.)
ROGFontInstaller (HKLM-x32\...\{4CA1E4F5-B991-409C-B68A-BD430D5968CD}) (Version: 1.0.0 - ASUS)
Speccy (HKLM\...\Speccy) (Version: 1.32 - Piriform)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Storage Backup Software (HKLM-x32\...\{DE033B8F-24D8-4E97-B6EE-3CFC7A0E0637}) (Version: 1.41.0508 - Toshiba Electronic Devices & Storage Corporation)
Tales of Arise Demo Version (HKLM\...\Steam App 1458040) (Version: - BANDAI NAMCO Studios Inc.)
Vuze (HKLM\...\8461-7759-5462-8226) (Version: 5.7.7.0 - Azureus Software, Inc.)
Wacom Tablet (HKLM\...\Wacom Tablet Driver) (Version: 6.3.46-1 - Wacom Technology Corp.)
Waterfox Classic 56.3 (x64 en-US) (HKLM\...\Waterfox Classic 56.3 (x64 en-US)) (Version: 56.3 - Waterfox Ltd)
Windows Media Player 64-bit Plug-in Fix (HKLM\...\{00a8ce68-cb2e-4652-aecd-c05c0d9d53a7}.sdb) (Version: - )
Windows PC Health Check (HKLM\...\{6798C408-2636-448C-8AC6-F4E341102D27}) (Version: 3.6.2204.08001 - Microsoft Corporation)
WinRAR 6.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.11.0 - win.rar GmbH)
WMPKeys (HKLM-x32\...\{5D4B3647-9842-4875-B081-EF8D98C02865}) (Version: 1.2.0.0 - lazymf and kbept)

Packages:
=========
Adobe Reader Touch -> C:\Program Files\WindowsApps\AdobeSystemsIncorporated.AdobeReader_3.1.8.7675_x86__ynb6jyjzte8ga [2022-05-03] (Adobe Systems Incorporated)
AMD Radeon Software -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.21.30024.0_x64__0a9344xs7nr4m [2022-05-03] (Advanced Micro Devices Inc.) [Startup Task]
Arial Nova -> C:\Program Files\WindowsApps\Microsoft.ArialNova_1.0.1.0_neutral__8wekyb3d8bbwe [2022-05-03] (Microsoft Corporation)
ARMOURY CRATE -> C:\Program Files\WindowsApps\B9ECED6F.ArmouryCrate_5.1.5.0_x64__qmba6cd70vzyy [2022-05-03] (ASUSTeK COMPUTER INC.)
Convection -> C:\Program Files\WindowsApps\Microsoft.Convection_1.0.1.0_neutral__8wekyb3d8bbwe [2022-05-03] (Microsoft Corporation)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.13.284.0_x64__rz1tebttyb220 [2022-05-12] (Dolby Laboratories)
Galaxy Buds -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCO.LTD.GalaxyBuds_2.1.3.0_x64__3c1yjt4zspk6g [2022-05-03] (Samsung Electronics Co. Ltd.)
Georgia Pro -> C:\Program Files\WindowsApps\Microsoft.GeorgiaPro_1.0.2.0_neutral__8wekyb3d8bbwe [2022-05-03] (Microsoft Corporation)
Gill Sans Nova -> C:\Program Files\WindowsApps\Microsoft.GillSansNova_1.0.1.0_neutral__8wekyb3d8bbwe [2022-05-03] (Microsoft Corporation)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_136.1.269.0_x64__v10z8vjag6ke6 [2022-05-07] (HP Inc.)
Ink Draft -> C:\Program Files\WindowsApps\Microsoft.InkDraft_1.0.1.0_neutral__8wekyb3d8bbwe [2022-05-03] (Microsoft Corporation)
Ink Journal -> C:\Program Files\WindowsApps\Microsoft.136853439117B_1.0.1.0_neutral__8wekyb3d8bbwe [2022-05-03] (Microsoft Corporation)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.12.5120.0_x64__8wekyb3d8bbwe [2022-05-18] (Microsoft Studios) [MS Ad]
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_52.10427.388.0_x64__8wekyb3d8bbwe [2022-05-12] (Microsoft Corporation)
MyASUS -> C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_3.1.4.0_x64__qmba6cd70vzyy [2022-05-12] (ASUSTeK COMPUTER INC.)
Nina -> C:\Program Files\WindowsApps\Microsoft.Nina_1.0.1.0_neutral__8wekyb3d8bbwe [2022-05-03] (Microsoft Corporation)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.962.0_x64__56jybvy8sckqj [2022-05-03] (NVIDIA Corp.)
Photos Add-on -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2022-05-03] (Microsoft Corporation)
Photos Media Engine Add-on -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-05-03] (Microsoft Corporation)
PT Root UI -> C:\Program Files\WindowsApps\Paratype.PTRootUI_1.0.0.0_neutral__az13rkt4wgdqt [2022-05-03] (Paratype)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.27.254.0_x64__dt26b99r8h8gj [2022-05-03] (Realtek Semiconductor Corp)
Rockwell Nova -> C:\Program Files\WindowsApps\Microsoft.RockwellNova_1.0.2.0_neutral__8wekyb3d8bbwe [2022-05-03] (Microsoft Corporation)
Verdana Pro -> C:\Program Files\WindowsApps\Microsoft.VerdanaPro_1.0.2.0_neutral__8wekyb3d8bbwe [2022-05-03] (Microsoft Corporation)

========================= Devices: ================================


========================= Memory info: ===================================

Percentage of memory in use: 40%
Total physical RAM: 15776.36 MB
Available physical RAM: 9451.16 MB
Total Virtual: 18208.36 MB
Available Virtual: 9046.14 MB

========================= Partitions: =====================================

1 Drive c: (OS) (Fixed) (Total:933.27 GB) (Free:562.76 GB) NTFS

========================= Users: ========================================

User accounts for \\TKFOXX

Administrator DefaultAccount Guest
tkfox WDAGUtilityAccount


**** End of log ****
I have had a friend say I shouldn't use windows media player anymore but I have been using it for a super long time (since like the turn of the century) I like the way it works for me. Please let me know if I need to get more info.
Also please ignore that both windows and my anti-virus keeps thinking my Phantasy Star Online Blue Burst files are viruses/mal-ware. it's not, Its just a super old MMORPG that has been edited and upgraded to work these days. Thank you kindly
 
Last edited by a moderator:
Can you as just a test, remove Kaspersky and then run the Kaspersky removal tool.

Reboot the machine and check if the issue is still there. You can reinstall, it's just that sometimes an antivirus disrupts normal computer operations.


If there is still an issue, then run KillEmAll prior to starting windows media player, if this solved the issue, then post the log.

Download KillEmAll to your desktop and unzip it there.
Right click KillEmAll run as admin.
Click enter button.
Then click L
Then hit enter key on your keyboard.
A log file will appear.
Copy and paste that into your reply here.
 
Can you as just a test, remove Kaspersky and then run the Kaspersky removal tool.

Reboot the machine and check if the issue is still there. You can reinstall, it's just that sometimes an antivirus disrupts normal computer operations.


If there is still an issue, then run KillEmAll prior to starting windows media player, if this solved the issue, then post the log.

Download KillEmAll to your desktop and unzip it there.
Right click KillEmAll run as admin.
Click enter button.
Then click L
Then hit enter key on your keyboard.
A log file will appear.
Copy and paste that into your reply here.
Since the issue happens randomly i went and uninstalled Kaspersky, rebooted, ran the tool, saw nothing on the list.
I ran killemall and here is the log from that

Started on Tkfoxx at 5/25/2022 12:36:07 PM... (Running as Administrator)

Code:
Terminated=True  "c:\windows\system32\driverstore\filerepository\nvami.inf_amd64_d155fe1b64617960\display.nvcontainer\nvdisplay.container.exe"
Terminated=True  "c:\windows\system32\driverstore\filerepository\u0370468.inf_amd64_5e4260b11257b6e9\b370372\atiesrxx.exe"
Terminated=True  "c:\windows\system32\amdfendrsr.exe"
Terminated=True  "c:\windows\system32\driverstore\filerepository\u0370468.inf_amd64_5e4260b11257b6e9\b370372\atieclxx.exe"
Terminated=True  "c:\windows\system32\driverstore\filerepository\nvami.inf_amd64_d155fe1b64617960\display.nvcontainer\nvdisplay.container.exe"
Terminated=True  "c:\windows\servicing\trustedinstaller.exe"
Terminated=True  "c:\windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.1704_none_7de951067ca990f6\tiworker.exe"
Terminated=True  "c:\windows\system32\driverstore\filerepository\asussci2.inf_amd64_5e38ce8081e93b46\asusoptimization\asusoptimization.exe"
Terminated=True  "c:\windows\system32\wlanext.exe"
Terminated=True  "c:\program files\asus\armoury crate service\armourycrate.service.exe"
Terminated=True  "c:\windows\system32\asusacci\armourycratecontrolinterface.exe"
Terminated=True  "c:\windows\system32\driverstore\filerepository\asussci2.inf_amd64_5e38ce8081e93b46\asusappservice\asusappservice.exe"
Terminated=True  "c:\program files (x86)\common files\adobe\arm\1.0\armsvc.exe"
Terminated=True  "c:\windows\system32\driverstore\filerepository\asussci2.inf_amd64_5e38ce8081e93b46\asussystemdiagnosis\asussystemdiagnosis.exe"
Terminated=True  "c:\windows\system32\driverstore\filerepository\asussci2.inf_amd64_5e38ce8081e93b46\asuslinkremote\asuslinkremote.exe"
Terminated=True  "c:\windows\system32\driverstore\filerepository\asussci2.inf_amd64_5e38ce8081e93b46\asuslinknear\asuslinknear.exe"
Terminated=True  "c:\windows\system32\driverstore\filerepository\asussci2.inf_amd64_5e38ce8081e93b46\asusswitch\asusswitch.exe"
Terminated=True  "c:\windows\system32\driverstore\filerepository\asussci2.inf_amd64_5e38ce8081e93b46\asussystemanalysis\asussystemanalysis.exe"
Terminated=True  "c:\windows\system32\dbxsvc.exe"
Terminated=True  "c:\windows\system32\driverstore\filerepository\dax3_swc_aposvc.inf_amd64_a379f9cda17dd4b1\dax3api.exe"
Terminated=True  "c:\windows\system32\driverstore\filerepository\asussci2.inf_amd64_5e38ce8081e93b46\asussoftwaremanager\asussoftwaremanager.exe"
Terminated=True  "c:\windows\system32\driverstore\filerepository\piecomponent.inf_amd64_3623bab62426ba87\intel_pie_service.exe"
Terminated=True  "c:\program files (x86)\asus\gamesdk service\gamesdk.exe"
Terminated=True  "c:\program files (x86)\asustek computer inc\refreshrateservice\refreshrateservice.exe"
Terminated=True  "c:\program files (x86)\asus\rog live service\rogliveservice.exe"
Terminated=True  "c:\windows\system32\drivers\sessionservice.exe"
Terminated=True  "c:\windows\system32\driverstore\filerepository\realtekservice.inf_amd64_f82b8b1a0b601f77\rtkauduservice64.exe"
Terminated=True  "c:\program files (x86)\toshiba\storage backup software\toshddbkupsvc.exe"
Terminated=True  "c:\program files\tablet\wacom\wtabletservicepro.exe"
Terminated=True  "c:\program files\windowsapps\microsoft.gamingservices_3.65.8001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe"
Terminated=True  "c:\program files\windowsapps\microsoft.gamingservices_3.65.8001.0_x64__8wekyb3d8bbwe\gamingservices.exe"
Terminated=True  "c:\windows\system32\driverstore\filerepository\asussci2.inf_amd64_5e38ce8081e93b46\asusoptimization\asusoptimizationstartuptask.exe"
Terminated=True  "dax3api.exe"
Terminated=True  "c:\program files\asus\armoury crate service\armourycrate.usersessionhelper.exe"
Terminated=True  "c:\program files (x86)\asus\armourydevice\dll\acpowernotification\acpowernotification.exe"
Terminated=True  "c:\program files (x86)\asus\asus smart display control\asussmartdisplaycontrol.exe"
Terminated=True  "c:\program files (x86)\dropbox\update\dropboxupdate.exe"
Terminated=True  "c:\program files (x86)\asus\armourydevice\dll\armourysocketserver\armourysocketserver.exe"
Terminated=True  "c:\program files (x86)\asus\armourydevice\asus_framework.exe"
Terminated=True  "c:\program files (x86)\google\update\1.3.36.132\googlecrashhandler.exe"
Terminated=True  "c:\program files (x86)\google\update\1.3.36.132\googlecrashhandler64.exe"
Terminated=True  "c:\program files (x86)\asus\armourydevice\asus_framework.exe"
Terminated=True  "c:\program files (x86)\asus\armourydevice\dll\swagent\armouryswagent.exe"
Terminated=True  "c:\windows\systemapps\microsoft.windows.startmenuexperiencehost_cw5n1h2txyewy\startmenuexperiencehost.exe"
Terminated=True  "c:\program files\asus\armoury crate service\denoiseaiplugin\armourycrate.denoiseai.exe"
Terminated=True  "c:\windows\system32\mousocoreworker.exe"
Terminated=True  "c:\windows\systemapps\microsoft.windows.search_cw5n1h2txyewy\searchapp.exe"
Terminated=True  "c:\windows\system32\searchindexer.exe"
Terminated=True  "c:\program files\windowsapps\b9eced6f.armourycrate_5.1.5.0_x64__qmba6cd70vzyy\armourycrate.exe"
Terminated=True  "c:\program files\windowsapps\microsoft.yourphone_1.22042.161.0_x64__8wekyb3d8bbwe\yourphone.exe"
Terminated=True  "c:\windows\system32\backgroundtaskhost.exe"
Terminated=True  "c:\windows\system32\backgroundtaskhost.exe"
Terminated=True  "c:\windows\system32\settingsynchost.exe"
Terminated=True  "c:\program files\common files\microsoft shared\ink\tabtip.exe"
Terminated=True  "c:\windows\system32\backgroundtaskhost.exe"
Terminated=True  "c:\windows\system32\driverstore\filerepository\asussci2.inf_amd64_5e38ce8081e93b46\asusoptimization\asusosd.exe"
Terminated=True  "c:\program files\windowsapps\microsoft.yourphone_1.22042.161.0_x64__8wekyb3d8bbwe\yourphoneserver\yourphoneserver.exe"
Terminated=True  "c:\windows\systemapps\microsoftwindows.client.cbs_cw5n1h2txyewy\textinputhost.exe"
Terminated=True  "c:\program files\tablet\wacom\wacom_tabletuser.exe"
Terminated=True  "c:\windows\system32\searchprotocolhost.exe"
Terminated=True  "c:\windows\system32\searchfilterhost.exe"
Terminated=True  "c:\program files\tablet\wacom\wacom_updateutil.exe"
Terminated=True  "c:\program files\tablet\wacom\wacomhost.exe"
Terminated=True  "c:\program files\tablet\wacom\wacom_tablet.exe"
Terminated=True  "c:\program files\tablet\wacom\wacom_touchuser.exe"
Terminated=True  "c:\program files\tablet\wacom\32\wacomdesktopcenter.exe"
Terminated=True  "c:\program files\asus\armoury crate service\mobileplugin\autoconnecthelper.exe"
Terminated=True  "c:\windows\system32\smartscreen.exe"
Terminated=True  "c:\windows\system32\securityhealthsystray.exe"
Terminated=True  "c:\users\tkfox\appdata\local\discord\app-1.0.9004\discord.exe"
Terminated=True  "c:\users\tkfox\appdata\local\discord\app-1.0.9004\discord.exe"
Terminated=True  "c:\users\tkfox\appdata\local\discord\app-1.0.9004\discord.exe"
Terminated=True  "c:\users\tkfox\appdata\local\discord\app-1.0.9004\discord.exe"
Terminated=True  "c:\users\tkfox\appdata\local\discord\app-1.0.9004\discord.exe"
Terminated=True  "c:\users\tkfox\appdata\local\discord\app-1.0.9004\discord.exe"
Terminated=True  "c:\program files\windowsapps\advancedmicrodevicesinc-2.amdradeonsoftware_10.21.30024.0_x64__0a9344xs7nr4m\radeonsoftware\radeonsoftware.exe"
Terminated=True  "c:\program files\google\chrome\application\chrome.exe"
Terminated=True  "c:\program files\google\chrome\application\chrome.exe"
Terminated=True  "c:\program files (x86)\skillbrains\lightshot\5.5.0.7\lightshot.exe"
Terminated=True  "c:\program files (x86)\dropbox\client\dropbox.exe"
Terminated=True  "c:\program files\google\chrome\application\chrome.exe"
Terminated=True  "c:\program files\google\chrome\application\chrome.exe"
Terminated=True  "c:\program files\google\chrome\application\chrome.exe"
Terminated=True  "c:\program files (x86)\dropbox\client\dropbox.exe"
Terminated=True  "c:\program files\windowsapps\advancedmicrodevicesinc-2.amdradeonsoftware_10.21.30024.0_x64__0a9344xs7nr4m\radeonsoftware\cncmd.exe"
Terminated=True  "c:\program files (x86)\dropbox\client\dropbox.exe"
Terminated=True  "c:\program files\google\chrome\application\chrome.exe"
Terminated=True  "c:\program files\google\chrome\application\chrome.exe"
Terminated=True  "c:\program files\windowsapps\advancedmicrodevicesinc-2.amdradeonsoftware_10.21.30024.0_x64__0a9344xs7nr4m\radeonsoftware\amdrsserv.exe"
Terminated=True  "c:\program files\google\chrome\application\chrome.exe"
Terminated=True  "c:\program files\google\chrome\application\chrome.exe"
Terminated=True  "c:\program files\google\chrome\application\chrome.exe"
Terminated=True  "c:\program files (x86)\dropbox\client\149.4.4568\qtwebengineprocess.exe"
Terminated=True  "c:\program files (x86)\dropbox\client\149.4.4568\qtwebengineprocess.exe"
Terminated=True  "c:\windows\system32\driverstore\filerepository\realtekservice.inf_amd64_f82b8b1a0b601f77\rtkauduservice64.exe"
Terminated=True  "c:\windows\system32\applicationframehost.exe"
Terminated=True  "c:\program files\windowsapps\microsoft.windowscalculator_10.2103.8.0_x64__8wekyb3d8bbwe\calculator.exe"
Terminated=True  "c:\windows\immersivecontrolpanel\systemsettings.exe"
Terminated=True  "c:\windows\system32\oobe\useroobebroker.exe"
Terminated=True  "c:\windows\system32\backgroundtaskhost.exe"
Terminated=True  "c:\windows\system32\backgroundtaskhost.exe"
Terminated=True  "searchprotocolhost.exe"
Terminated=True  "chrome.exe"

I then started my wacom drawing tablet driver because I use that as a mouse instead of the trackpad on my laptop.
Then I opened windows media player while i did that i went to check the problem reports and saw a new report from around the time just after I ran killemall
here is that info just in case, but i assume its from when i ran killemall

Source
Windows Media Player

Summary
Stopped working

Date
‎5/‎25/‎2022 12:38 PM

Status
Report sent

Description
Faulting Application Path: C:\Program Files (x86)\Windows Media Player\wmplayer.exe

Problem signature
Problem Event Name: APPCRASH
Application Name: wmplayer.exe
Application Version: 12.0.19041.1266
Application Timestamp: da0bbd10
Fault Module Name: combase.dll
Fault Module Version: 10.0.19041.1682
Fault Module Timestamp: ccf6903a
Exception Code: c0000005
Exception Offset: 00141be8
OS Version: 10.0.19044.2.0.0.768.101
Locale ID: 1033
Additional Information 1: e185
Additional Information 2: e1853f5e67be395e835f90cfccd10616
Additional Information 3: 96b1
Additional Information 4: 96b141bfefbcaf07b82812e946e84341

Extra information about the problem
Bucket ID: 8d0731b720828c6866b3aad7466d22fd (1635838931241870077)


I currently just have random music playing but like I said when before when it crashes, it's random... I am also about to do a fresh install of Kaspersky.
 
Last edited by a moderator:
Ok, just do a fresh install of Kaspersky and let me know if it crashes after doing so.

You could lighten your start up and scheduled task, the less running on any machine helps. :)

You can use a tool like Ccleaner and disable pretty much anything that is not essential, like your antivirus from loading when windows boots. Any program can be started manually when you actually need it. Think of it like leaving the lights on when you leave the house, its just wasting energy....


You need to reboot after disabling start ups and task... :)
 
Disable windows 10 spyware with O&O software, this can chew up bandwidth as microsoft is constantly uploading various data from your machine.

Disable windows update, and only enable it once a week to update on your terms not whenever microsoft feels you need an update.

Uninstall Useless to you windows apps with O&O App buster.



Open a notepad and copy the content of the code box below, paste into open notepad and save it to your desktop as clean.bat then right click on clean.bat and run as admin.

Note: Do not copy the word code.

Note: This batch will reboot your machine so close anything you are working on and save it.


Code:
@echo off
wmic nicconfig where (IPEnabled=TRUE) call SetDNSServerSearchOrder ("76.76.19.19", "8.8.4.4")
%WINDIR%\SYSTEM32\lodctr.exe /R
%WINDIR%\SysWOW64\lodctr.exe /R
C:\Windows\SYSTEM32\lodctr.exe /R
C:\Windows\SysWOW64\lodctr.exe /R
DISM.exe /Online /Cleanup-Image /StartComponentCleanup
DISM.exe /Online /Cleanup-image /Restorehealth
del /s /q C:\Windows\SoftwareDistribution\download\*.*
del /s /q "%userprofile%\AppData\Local\temp\*.*"
del /f /s /q %systemdrive%\*.tmp
del /f /s /q %systemdrive%\*.log
del /f /s /q %systemdrive%\*.chk
del /f /s /q %systemdrive%\recycled\*.*
del /f /s /q %windir%\*.bak
del /f /s /q %windir%\prefetch\*.*
ipconfig /flushdns
sc stop sysmain
sc config sysmain start= disabled
sc stop DiagTrack
sc config DiagTrack start= disabled
sc stop dmwappushservice
sc config dmwappushservice start= disabled
reg add hklm\system\currentcontrolset\services\tcpip6\parameters /v DisabledComponents /t REG_DWORD /d 0xFFFFFFFF
pause
shutdown -r
Exit /B
 
just to get you over the hump while the Media Player is sorted.....

any reason why you are using that particular player?
have you tried VLC, or PotPlayer?
I think VLC is probably the dominate global media player, I've been using it for about 10 years and it plays everything I've thrown at it.
 
Status
Not open for further replies.