Jump to content

Recommended Posts

49 minutes ago, ibanana said:

Is there any solution?

First restart.

Quote

Pending File Rename Operations
==================================
C:\Users\Teo\AppData\Local\Temp\INS_845fc03e.TMP                                     
C:\Users\Teo\AppData\Local\Temp\INS_703373b.TMP                                      
C:\Users\Teo\AppData\Local\Temp\INS_a06d635e.TMP                                     
C:\Program Files\NVIDIA Corporation\NVSMI\SET4950.tmp                                
C:\WINDOWS\system32\SET4A51.tmp                                                      
C:\WINDOWS\SysWow64\SET4D5E.tmp                                                      
C:\Users\Teo\AppData\Local\Temp\INS_36c1a22f.TMP                                     
C:\Users\Teo\AppData\Local\Temp\INS_82fd597c.TMP                                     
C:\Users\Teo\AppData\Local\Temp\INS_e229bcb3.TMP                                     

Pending Windows Update Reboot
==================================
A reboot is pending
Windows Update: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\RebootPending
Windows Update: C:\WINDOWS\WinSxS\pending.xml

Be sure your VPN is off as well. and then try again.

Link to post
Share on other sites

3 minutes ago, ibanana said:

but I'm still getting the same problem.

Lets rule this out.

Please do the following Uninstall and reinstall using the Malwarebytes Support Tool

Please have lots of patience with the tool.  The first phase is a cleanup and does require a Windows Restart.
After the Restart, it may take 2 - 3 - 4 minutes till the Support tool screen shows up.   Please be patient and have faith.  Wait for it, whatever it takes.
The 2nd phase is where it offers to do a new Install.

 Let me know if that clears up the issue or not.

Link to post
Share on other sites

17 minutes ago, Porthos said:

Lets rule this out.

Please do the following Uninstall and reinstall using the Malwarebytes Support Tool

 

Please have lots of patience with the tool.  The first phase is a cleanup and does require a Windows Restart.
After the Restart, it may take 2 - 3 - 4 minutes till the Support tool screen shows up.   Please be patient and have faith.  Wait for it, whatever it takes.
The 2nd phase is where it offers to do a new Install.

 

 Let me know if that clears up the issue or not.

 

Did a complete uninstall following a reboot and reinstall but still facing the same problem when activating my license :(

mbst-clean-results.txt mbst-grab-results.zip

Link to post
Share on other sites

  • Root Admin

ATTENTION: System Restore is disabled (Total:111.31 GB) (Free:22.2 GB) (20%)


Please enable System Restore and create a new Restore Point

 

The logs show a few issues. The last attempt shows the license activation was in progress and then the computer initiated a shutdown.
Then there is an error about an invalid SSL request.

The Event Logs show quite a few issues as well that need to be looked at.

I will move your topic to the Malware Removal forum where I can assist you in checking on fixing up the computer. @ibanana

 

 

Application errors:
==================
Error: (07/15/2020 06:36:53 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "D:\Games\BBMO\BBDLauncher_usa.exe".
Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195" could not be found.
Please use sxstrace.exe for detailed diagnosis.

Error: (07/15/2020 06:35:47 AM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: TEOPC)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.

Error: (07/15/2020 06:35:16 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "D:\Games\BBMO\BBDLauncher_usa.exe".
Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195" could not be found.
Please use sxstrace.exe for detailed diagnosis.

Error: (07/15/2020 06:10:50 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Activation context generation failed for "D:\Games\BBMO\BBDLauncher_usa.exe".
Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.6195" could not be found.
Please use sxstrace.exe for detailed diagnosis.

Error: (07/15/2020 06:09:47 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.

Error: (07/15/2020 06:09:47 AM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (07/15/2020 06:09:47 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.

Error: (07/15/2020 06:09:47 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.


System errors:
=============
Error: (07/15/2020 06:40:14 AM) (Source: NetBT) (EventID: 4311) (User: )
Description: Initialization failed because the driver device could not be created.
Use the string "%2" to identify the interface for which initialization
failed. It represents the MAC address of the failed interface or the
Globally Unique Interface Identifier (GUID) if NetBT was unable to
map from GUID to MAC address. If neither the MAC address nor the GUID were
available, the string represents a cluster device name.

Error: (07/15/2020 06:40:14 AM) (Source: NetBT) (EventID: 4311) (User: )
Description: Initialization failed because the driver device could not be created.
Use the string "%2" to identify the interface for which initialization
failed. It represents the MAC address of the failed interface or the
Globally Unique Interface Identifier (GUID) if NetBT was unable to
map from GUID to MAC address. If neither the MAC address nor the GUID were
available, the string represents a cluster device name.

Error: (07/15/2020 06:39:02 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The nordvpn-service service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 60000 milliseconds: Restart the service.

Error: (07/15/2020 06:14:53 AM) (Source: NetBT) (EventID: 4311) (User: )
Description: Initialization failed because the driver device could not be created.
Use the string "%2" to identify the interface for which initialization
failed. It represents the MAC address of the failed interface or the
Globally Unique Interface Identifier (GUID) if NetBT was unable to
map from GUID to MAC address. If neither the MAC address nor the GUID were
available, the string represents a cluster device name.

 

Link to post
Share on other sites

  • Root Admin

Let's start out with some generic clean up and verifying that all the Windows operating system files are valid and not corrupt. If we're still having issues after this then we'll dig into specific fixes for each.

I'm officially off work now but will check back on you again in the morning.

 

Please download the attached fixlist.txt file and save it to the Desktop or location where you ran FRST from.
NOTE. It's important that both files, FRST or FRST64, and fixlist.txt are in the same location or the fix will not work.

NOTICE: This script was written specifically for this user, for use on this particular machine. Running this on another machine may cause damage to your operating system that cannot be undone.

Run FRST or FRST64 and press the Fix button just once and wait.
If the tool needs a restart please make sure you let the system restart normally and let the tool complete its run after restart.
The tool will make a log on the Desktop (Fixlog.txt) or wherever you ran FRST from. Please attach or post it to your next reply.

Note: If the tool warned you about an outdated version please download and run the updated version.

NOTE-1:  This fix will run a scan to check that all Microsoft operating system files are valid and not corrupt and attempt to correct any invalid files. It will also run a disk check on the restart to ensure disk integrity. Depending on the speed of your computer this fix may take 30 minutes or more.

NOTE-2: As part of this fix all temporary files will be removed. If you have any open web pages that have not been bookmarked please make sure you bookmark them now as all open applications will be automatically closed. Also, make sure you know the passwords for all websites as cookies will also be removed. The use of an external password manager is highly recommended instead of using your browser to store passwords.

The following directories are emptied:

  • Windows Temp
  • Users Temp folders
  • Edge, IE, FF, Chrome and Opera caches, HTML5 storages, Cookies and History
  • Recently opened files cache
  • Flash Player cache
  • Java cache
  • Steam HTML cache
  • Explorer thumbnail and icon cache
  • BITS transfer queue (qmgr*.dat files)
  • Recycle Bin

Important: items are permanently deleted. They are not moved to quarantine. If you have any questions or concerns please ask before running this fix.

The system will be rebooted after the fix has run.

fixlist.txt
 

Thanks

 

Link to post
Share on other sites

  • Root Admin

From the log

Windows Resource Protection found corrupt files and successfully repaired them.

So that's  a good thing.

Please go ahead and reinstall Malwarebytes over the top of you current installation. Then restart the computer.

Then see if you're able to activate or not and let me know

https://downloads.malwarebytes.com/file/mb-windows

Thanks

 

 

Link to post
Share on other sites

  • Root Admin

Can you please temporarily uninstall the Nord VPN software, reboot and try again. That software was crashing before and it's still crashing in the logs today.

This error came back up again today too. It may be related, or may not but let's try to uninstall Nord VPN first

System errors:
=============
Error: (07/15/2020 06:40:14 AM) (Source: NetBT) (EventID: 4311) (User: )
Description: Initialization failed because the driver device could not be created.
Use the string "%2" to identify the interface for which initialization
failed. It represents the MAC address of the failed interface or the
Globally Unique Interface Identifier (GUID) if NetBT was unable to
map from GUID to MAC address. If neither the MAC address nor the GUID were
available, the string represents a cluster device name.

 

If that does not work, then please review the following article and see if this corrects the issue

http://intelligentsystemsmonitoring.com/knowledgebase/windows-operating-system/event-id-nbt-connectivity-29244/

 

Link to post
Share on other sites

On 7/16/2020 at 7:44 AM, AdvancedSetup said:

Can you please temporarily uninstall the Nord VPN software, reboot and try again. That software was crashing before and it's still crashing in the logs today.

This error came back up again today too. It may be related, or may not but let's try to uninstall Nord VPN first

System errors:
=============
Error: (07/15/2020 06:40:14 AM) (Source: NetBT) (EventID: 4311) (User: )
Description: Initialization failed because the driver device could not be created.
Use the string "%2" to identify the interface for which initialization
failed. It represents the MAC address of the failed interface or the
Globally Unique Interface Identifier (GUID) if NetBT was unable to
map from GUID to MAC address. If neither the MAC address nor the GUID were
available, the string represents a cluster device name.

 

If that does not work, then please review the following article and see if this corrects the issue

http://intelligentsystemsmonitoring.com/knowledgebase/windows-operating-system/event-id-nbt-connectivity-29244/

 

I have uninstalled NordVPN and even tried disabling my network adapter and re-enabling it but I'm still facing the same error when activating my license.

mbst-grab-results.zip

Link to post
Share on other sites

  • Root Admin

Please download and run the Microsoft Security Scanner

https://go.microsoft.com/fwlink/?LinkId=212732

image.png

image.png

Enable the FULL Scan

image.png

 

If anything is found it should produce a log. Please post that back or a screen shot showing that nothing was found.

 

Also, please save the following Fixlist file to the same location as FRST64 and then click the FIX button and post back the FixLog.txt file.

It should also create a new file on your desktop called NetBT_reg_value.txt please attach that file as well on your next reply.

 

Thanks

 

 

fixlist.txt

Link to post
Share on other sites

  • Root Admin

I know we've run this fix before, but please go ahead  and run it again. When it's done please temporarily set Internet Explorer as the default web browser.

 

Make sure you disable all other security software and applications while running this fix.

 

Please download the attached fixlist.txt file and save it to the Desktop or location where you ran FRST from.
NOTE. It's important that both files, FRST or FRST64, and fixlist.txt are in the same location or the fix will not work.

NOTICE: This script was written specifically for this user, for use on this particular machine. Running this on another machine may cause damage to your operating system that cannot be undone.

Run FRST or FRST64 and press the Fix button just once and wait.
If the tool needs a restart please make sure you let the system restart normally and let the tool complete its run after restart.
The tool will make a log on the Desktop (Fixlog.txt) or wherever you ran FRST from. Please attach or post it to your next reply.

Note: If the tool warned you about an outdated version please download and run the updated version.

NOTE-1:  This fix will run a scan to check that all Microsoft operating system files are valid and not corrupt and attempt to correct any invalid files. It will also run a disk check on the restart to ensure disk integrity. Depending on the speed of your computer this fix may take 30 minutes or more.

NOTE-2: As part of this fix all temporary files will be removed. If you have any open web pages that have not been bookmarked please make sure you bookmark them now as all open applications will be automatically closed. Also, make sure you know the passwords for all websites as cookies will also be removed. The use of an external password manager is highly recommended instead of using your browser to store passwords.

The following directories are emptied:

  • Windows Temp
  • Users Temp folders
  • Edge, IE, FF, Chrome and Opera caches, HTML5 storages, Cookies and History
  • Recently opened files cache
  • Flash Player cache
  • Java cache
  • Steam HTML cache
  • Explorer thumbnail and icon cache
  • BITS transfer queue (qmgr*.dat files)
  • Recycle Bin

Important: items are permanently deleted. They are not moved to quarantine. If you have any questions or concerns please ask before running this fix.

The system will be rebooted after the fix has run.

fixlist.txt
 

I'll check back on you again tomorrow if I get time.

Thank you again

 

Link to post
Share on other sites

  • Root Admin

Something odd seems to be going on. Fixing it should have at least put things back the way they were, not made it worse.

 

Let me have you run a different scanner to double-check

I would suggest a free scan with the ESET Online Scanner

Go to https://download.eset.com/com/eset/tools/online_scanner/latest/esetonlinescanner.exe

  • It will start a download of "esetonlinescanner.exe"
  • Save the file to your system, such as the Downloads folder, or else to the Desktop.
  • Go to the saved file, and double click it to get it started. 
  • When presented with the initial ESET options, click on "Computer Scan".
  • Next, when prompted by Windows, allow it to start by clicking Yes 
  • When prompted for scan type, Click on Full scan 
  • Look at & tick  ( select )   the radio selection "Enable ESET to detect and quarantine potentially unwanted applications"   and click on Start scan button.
  • Have patience.  The entire process may take an hour or more. There is an initial update download.
  • There is a progress window display.
  • You should ignore all prompts to get the ESET antivirus software program.   ( e.g.  their standard program).   You do not need to buy or get or install anything else.
  • When the scan is completed, if something was found, it will show a screen with the number of detected items.  If so, click the button marked “View detected results”.
  • Click The blue “Save scan log” to save the log.
  • If something was removed and you know it is a false finding, you may click on the blue ”Restore cleaned files”  ( in blue, at bottom).
  • Press Continue when all done.  You should click to off the offer for “periodic scanning”.

 

Link to post
Share on other sites

  • Root Admin

Let me have  you do the following once the scan above has completed.

Click on Start and type in RUN and then open the Run app. Then copy/paste the following into it to run Internet Explorer

C:\Program Files\Internet Explorer\iexplore.exe

Then go to the following site: https://www.microsoft.com/

Maybe browse a few of the links on their site. Then after a couple of minutes go ahead and close Internet Explorer

 

Then go ahead and uninstall Malwarebytes using our MBST tool. But do not allow it to reinstall the program. Let it reboot the computer but decline the install.

Uninstall and reinstall Malwarebytes using the Malwarebytes Support Tool

 

After the restart run the following

 

Please download MiniToolBox save it to your desktop and run it.

Checkmark the following check-boxes:

  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Devices
  • List Users, Partitions, and Memory size.
  • List Minidump Files


Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.

Note: When using Reset FF Proxy Settings option Firefox should be closed.

Then, restart the computer one more time and send me both new logs for FRST

 

 

Please download Farbar Recovery Scan Tool and save it to your desktop.

Note: You need to run the version compatible with your system.
You can check here if you're not sure if your computer is 32-bit or 64-bit

  • Double-click to run it. When the tool opens click Yes to disclaimer.
  • Press the Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please attach it to your reply.
  • The first time the tool is run, it also makes another log (Addition.txt). Please attach it to your reply as well.

Thank you

 

 

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.