Jump to content

thelastscion1

Members
  • Posts

    15
  • Joined

  • Last visited

Reputation

0 Neutral

Recent Profile Visitors

The recent visitors block is disabled and is not being shown to other users.

  1. I've further researched this issue and may be mistaken; I've found a way to enumerate the bootmgr directories and partitions {device} and figure out how to get in there through the directory. I've learned bootmgfw.efi is different from bootmgr.efi as the former is for UEFI loading and the latter is for BIOS loading. I am still thinking about the hidden and read-only attributes that may be in my UEFI/boot settings because whenever I reset my machine I still see cmd windows appear for the slightest instant, which, I assume are ilegimate processes executing, and there are still inconsistencies with the loading screens, icons, and scrolling in the OS. This is the material I am referencing to work through my bcd store to alleviate my concern of something causing my windows to be choppy and not completely resetting to factory defaults. https://docs.microsoft.com/en-us/windows-hardware/manufacture/desktop/bcd-system-store-settings-for-uefi I understand this is kind of an arbitrary pursuit, but my instincts tell me this could be something worth exploring. This isn't anything critical, as my Windows is still operational, but if someone wants to explore the bcd store I think something may be found. Cheers.
  2. Hello again! I have been continuing to experience problems with my Windows 10 after receiving help with some various issues in the OS. Instruction received here has been top-notch, but, as I continue to work with my computer, the issues I've been facing are not all gone. Some research and and lots of perusing the interwebs has led me to believe something has loaded an impostor bootloader into my UEFI, or something; I'm not for sure on the details but I feel like I'm close to eradicating this issue. For his Windows problem, I believe something had altered the boot manager and boot loader processes in my machine, which maybe is flying under the radar of OS diagnostics, and remaining persistent through system resets and recovery image reinstall. I have reached the limit of my knowledge regarding how to continue so I have come back here, the land of big brains know-how. This is where I'm coming from: https://apps.badjoerichards.com/apps/developerhack/how-to-fix-broken-or-corrupted-bcd-causing-windows-10-to-be-unable-to-boot-after-windows-updates/ This information lead me to PowerShell to mess around with the Bcdedit and DiskPart to determine what is really going on. I got this far (see image) but couldn't complete the editing of bootloading processes because I think the directory has been modified. It's mostly speculation now, but hopefully this serves as a proper starting point to find, and ruthlessly destroy, this errant code which is plaguing my Surface Laptop. Appreciate you, and any help in advance. Cheers.
  3. New logs from FSRT scan are attached. I don't think I disabled the malware security when I ran the FSRT scan from my admin account however, would it hurt anything to run the fix again? The issues I had before are mostly resolved, however I did click on an unknown link, and ran the fix without security disabled as advised. It would make me feel better if I could try again with a revised fixlist. If running a diagnostic and fix again is not advised, I will leave well enough alone. Thanks again for the support, I certainly appreciate greatly everything. FRST.txt Addition.txt
  4. Okay, that is correct I completed this process with my user account instead of my admin account; my mistake. Although, it may have worked in my favor because shortly afterward I received a facebook message from "Facebook login security" citing a possible illegitimate login and absent-mindedly I clicked on it. I don't know if this had an effect on my computer. After this, I signed out of my user account and signed into my admin account. I reapplied all of the instructions and ran FSRT fix again with the Fixlist, this time it took much longer, and ran the disk scan upon restarting. Here is the Fixlog, from the FSRT fix ran from my account with admin privilege. Thanks for the quick response Fixlog.txt
  5. Good morning, Beginning the process lined out, these are the steps I have taken in chronological order. The Acronis VSSDoctor Scan found some errors in VSS Providers Configuration. There was an unknown entry in addition to the verified Microsoft entry. I tried saving the report which registers in my file explorer, but upon opening the file there is nothing except for the location and name, file explorer asks if I would like to create a file, I decline. In the VSSDoctor program, clicked the fix issues button once, was given a prompt detailing the consequences of fixing the issue, agreed to the prompt, and then received no indication of anything happening afterward. Downloaded the VssFixx64 and tried to run, a dialogue box appears and then nothing happens. Restarted computer, and ran VSSDoctor Scan again, this time no inconsistencies were found with the VSS Providers Config like before. Still no .txt logs are saved properly. Have enables System Restore as per instructions, with the proper amount of drive space allocated for storage. I am not keen as to what I am looking for in my Windows event logs, there are a few events from today, in addition to the events from yesterday and day before. As per instruction, I disabled real-time security and ran FSRT with fixlist.txt file in the same location. The process was rather quick, and I have attached the Fixlog.txt file. Much appreciate the help here. Fixlog.txt
  6. I have updated to 20H2 with the additional feature 3/2020 update. Farbar 64bit has been downloaded, FRST and Additional text files are attached. Thanks for the assistance, I certainly appreciate. FRST.txt Addition.txt
  7. Okay, update: I have contacted Microsoft support and was deferred to help.microsoft.com. As per instructions I rolled-back the recent updates. My activation problem comes from a discrepancy between the 1904 and 20H2 updates in Windows. I have not yet figured out why the security updates were not applied when I updated everything after switching from S-mode. I have been curious, though, and I searched problems that occurred with imposter driver updates, and found this page: Malware in Disguised Installed Automatically without Prohibition - Microsoft Community (this is an answers.microsoft.com webpage so I am relatively sure it is safe, but if you are able to use a quarantined method for opening links please do; I am using the computer I believe to be infected with, something.) I have found this Goodix biometric scanner driver among my updates at one point, even though I definitely do not posses or utilize this hardware. This is the type of idiosyncrasies I have found with windows updates that creates a level of doubt regarding my windows machine and the update process. In the attached picture is a list of the latest updates that loaded to my Windows yesterday, notice the difference in the Intel updates where some have the trademark icon, and the other that do not (Intel - net - 22.20.0.6) The Windows system, system32, and sysWOW64 files are wrought with things that make me uneasy. Like a whole list of PFRO logs that list system and .exe files that can only be defined as variables: \MpKsl2d6871a0.sys What is that even? Problems are continuing, and I'm concerned.
  8. I will try and activate again, I am getting error (reads like a MAC: 0x) (__)C004C003. Was a different code yesterday, and I activated, and updated. Although there was an Updated Microsoft Security update that didn't complete said it would do it later. I'm feeling a bit like a conspiracy theorist here, but I know just enough about this OS that I can tell something is off.
  9. I would like to say that my issue is resolved, but I don't know if it is; I am still experiencing these problems: My wifi menu is displaying differently at different times, sometimes everything is grey and others there is a black outline around the window displaying the network to which I am connected. Some notifications have two messages overlayed on top of eachother. (see picture) I have already activated windows yet this notification is here. The flashing windows icon on startup has gotten worse, it varies but flashes more than it did in S mode. There are still inconsistencies in my display while scrolling in Edge. Some display inconsistencies are still present in the start menu. This seems wrong but any windows diagnostics doesn't register the problem.
  10. Okay I have removed S mode from the computer, however I am still concerned there is something not quite right with my Windows system; its as if drivers are updating and adding services without my permission. I have made my primary local account a user account, while a tempADMIN account will have admin privileges. Is it possible for something to propagate within windows and disguise itself as utilities and system files? I guess I could be paranoid, but I can't shake the feeling that something has made its way into my machine, and is surviving through factory resets. Upon the most recent reset, there were still two cmd windows that appeared in the slightest instance in between recovery screens, like as in a silent or hidden install of something that is not factory. I've read about malicious code working its way into the UEFI/BIOS system, and short of taking the computer apart and finding a BIOS reset button or circuit, I wonder if there's a way to weed this bug out. Again I could just be paranoid I guess, but I'm trusting my instincts, and believe windows should be operating better than this. Malwarebytes scan reveals no threats. Does anyone want to try and unearth this monster? I would understand if this request is too arbitrary to pursue. I've tried to reset this thing too many times, and am trying to find a manual way extricate this specter from my Windows device. Again my feelers will not be hurt if someone said "If its not causing problems then why worry about it," but my position is this: if this thing is tainted it is untrustworthy, and should I create a trusted network in a new residence, this machine would be destined for the recycle center as is. Lets call this a mechanics project of sorts, its not critical, but then again, if something is subliminally living in my machine, it kind of is. Thanks for any help, apologies for the convoluted and arbitrary description. Thanks for the welcome, I hope to contribute to the community!! cheers
  11. I have switched the computer out of S mode to Windows 10 home. I downloaded and installed Malwarebytes and ran the scan but found no issues. I will reset the computer and see if issues persist.
  12. I was keen to give windows a chance with the S mode, however I am aware it would prevent the use of additional software to remedy a problem should something make its way into the operating system. If needed I can get back to the factory settings with a system image recovery, so I am going to take the computer out of S mode and go from there.
  13. Good evening, I have recently purchased a Microsoft Laptop Go which came with Windows 10 in S mode. Upon initial observation the windows version was labeled as 'core,' I believe it was 64bit. I have recently updated windows and since then, the startup process displays characteristics that cause me concern. First, the Windows logo flashes at least once, and sometimes more times on startup. Also, scrolling through the start menu and various web pages is not smooth. There are visual discrepancies that happen in both areas. When I try factory reset, there are cmd windows that briefly appear and then disappear during the recovery process; it leads me to believe something has embedded itself in my windows system files, and it is somehow immune to factory resets. I'm pretty sure when I first completed the setup process there was only an option for English, but now there are options for English, Spanish, and French. I have tried factory resets with cleaning the drive and reinstalling windows locally, as well as creating a recovery drive loaded with a Surface system image downloaded from Microsoft.com. The problem persists. This Laptop performed amazingly when it was new out of the box, but now something seems to have created idiosyncrasies within the operating system that is immune to every tactic I have tried. Please advise. Thanks for your help in advance.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.