Jump to content

bananalint

Members
  • Posts

    9
  • Joined

  • Last visited

Reputation

0 Neutral
  1. OK I put the crash dmp files in a rar. 041015-26421-01.rar 041115-27953-01.rar
  2. Apparenty I can't attach the dump files as it says I don't have permission. Also I've had this PC for 4 months. On Sat 4/11/2015 9:14:45 PM GMT your computer crashed crash dump file: C:\Windows\Minidump\041115-27953-01.dmp This was probably caused by the following module: ntoskrnl.exe (nt+0x1509A0) Bugcheck code: 0x4E (0x2, 0x141944, 0x21EFFF, 0xFFFE) Error: PFN_LIST_CORRUPT file path: C:\Windows\system32\ntoskrnl.exe product: Microsoft® Windows® Operating System company: Microsoft Corporation description: NT Kernel & System Bug check description: This indicates that the page frame number (PFN) list is corrupted. This appears to be a typical software driver bug and is not likely to be caused by a hardware problem. This might be a case of memory corruption. More often memory corruption happens because of software errors in buggy drivers, not because of faulty RAM modules. The crash took place in the Windows kernel. Possibly this problem is caused by another driver that cannot be identified at this time. On Sat 4/11/2015 9:14:45 PM GMT your computer crashed crash dump file: C:\Windows\memory.dmp This was probably caused by the following module: ntkrnlmp.exe (nt!KeBugCheckEx+0x0) Bugcheck code: 0x4E (0x2, 0x141944, 0x21EFFF, 0xFFFE) Error: PFN_LIST_CORRUPT Bug check description: This indicates that the page frame number (PFN) list is corrupted. This appears to be a typical software driver bug and is not likely to be caused by a hardware problem. This might be a case of memory corruption. More often memory corruption happens because of software errors in buggy drivers, not because of faulty RAM modules. The crash took place in the Windows kernel. Possibly this problem is caused by another driver that cannot be identified at this time. On Fri 4/10/2015 10:34:14 PM GMT your computer crashed crash dump file: C:\Windows\Minidump\041015-26421-01.dmp This was probably caused by the following module: ntoskrnl.exe (nt+0x1509A0) Bugcheck code: 0x1A (0x402, 0xFFFFC001C8F24B50, 0x202D98C0, 0xFFFFC001CBE60841) Error: MEMORY_MANAGEMENT file path: C:\Windows\system32\ntoskrnl.exe product: Microsoft® Windows® Operating System company: Microsoft Corporation description: NT Kernel & System Bug check description: This indicates that a severe memory management error occurred. This might be a case of memory corruption. More often memory corruption happens because of software errors in buggy drivers, not because of faulty RAM modules. The crash took place in the Windows kernel. Possibly this problem is caused by another driver that cannot be identified at this time. On Tue 4/7/2015 3:51:47 AM GMT your computer crashed crash dump file: C:\Windows\Minidump\040615-29531-01.dmp This was probably caused by the following module: ntoskrnl.exe (nt+0x1509A0) Bugcheck code: 0x1A (0x402, 0xFFFFC00044EC9528, 0x30FD68C0, 0xFFFFC00044EC942B) Error: MEMORY_MANAGEMENT file path: C:\Windows\system32\ntoskrnl.exe product: Microsoft® Windows® Operating System company: Microsoft Corporation description: NT Kernel & System Bug check description: This indicates that a severe memory management error occurred. This might be a case of memory corruption. More often memory corruption happens because of software errors in buggy drivers, not because of faulty RAM modules. The crash took place in the Windows kernel. Possibly this problem is caused by another driver that cannot be identified at this time. On Mon 4/6/2015 8:33:17 PM GMT your computer crashed crash dump file: C:\Windows\Minidump\040615-26671-01.dmp This was probably caused by the following module: ntoskrnl.exe (nt+0x1509A0) Bugcheck code: 0x1A (0x41201, 0xFFFFF68000056F78, 0x85A000001FB02867, 0xFFFFE00063C154B0) Error: MEMORY_MANAGEMENT file path: C:\Windows\system32\ntoskrnl.exe product: Microsoft® Windows® Operating System company: Microsoft Corporation description: NT Kernel & System Bug check description: This indicates that a severe memory management error occurred. This might be a case of memory corruption. More often memory corruption happens because of software errors in buggy drivers, not because of faulty RAM modules. The crash took place in the Windows kernel. Possibly this problem is caused by another driver that cannot be identified at this time.
  3. Ok I reinstalled Chrome and ran the test and it seems that did as there were no threats found. Restarted and tried again and still no threats. It seems like I had to erase all browing settings to get it. Thank you very much for this help in this matter. Is there anyway you can refer me to a site that deals with BSODs? I seem to have PFSN_LIST_CORRUPT and MEMORY_MANAGEMENT which happens every 2 or 3 days.
  4. Ok so I ran a scan with Chrome open and it came back with PUP.Optional.Trovi.A still present. So I quarantined it, restarted my PC and ran Malwarebytes with no browsers open and it didn't show up. So I restarted again and ran the scan with Chrome open and the PUP was there again. So I"m confused.
  5. Ok here are the results: I wasn't able to upload it through attachments. Zoek.exe v5.0.0.0 Updated 08-April-2015Tool run by Korii on Sat 04/11/2015 at 11:43:06.87.Microsoft Windows 8.1 6.3.9600 x64Running in: Normal Mode Internet Access DetectedLaunched: C:\Users\Korii\Downloads\zoek.exe [scan all users] [script inserted] ==== System Restore Info ====================== 4/11/2015 11:45:04 AM Zoek.exe System Restore Point Created Successfully. ==== Empty Folders Check ====================== C:\PROGRA~2\AGEIA Technologies deleted successfullyC:\PROGRA~3\dbg deleted successfullyC:\Users\Korii\AppData\Roaming\BitTorrent deleted successfullyC:\Users\Korii\AppData\Local\Adobe deleted successfullyC:\Users\Korii\AppData\Local\Black_Tree_Gaming deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Batch Command(s) Run By Tool====================== ==== Deleting Files \ Folders ====================== C:\PROGRA~2\AGEIA Technologies not foundC:\PROGRA~2\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition deletedC:\PROGRA~3\Package Cache deletedC:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deletedC:\windows\SysNative\Tasks\avastBCLRestartS-1-5-21-1113712811-2570746255-1366481363-1001 deletedC:\Windows\SysNative\config\systemprofile\Searches deletedC:\windows\SysNative\GroupPolicy\Machine deletedC:\windows\SysNative\GroupPolicy\User deletedC:\windows\SysNative\GroupPolicy\GPT.INI deletedC:\Windows\Syswow64\GroupPolicy\gpt.ini deletedC:\Windows\Syswow64\REN5F9E.tmp deleted ==== Firefox Start and Search pages ====================== ProfilePath: C:\Users\Korii\AppData\Roaming\Mozilla\Firefox\Profiles\jp7jyh5h.defaultuser_pref("browser.startup.homepage", "www.google.com");user_pref("browser.search.defaultenginename.US", "Google"); ==== Firefox Extensions ====================== ProfilePath: C:\Users\Korii\AppData\Roaming\Mozilla\Firefox\Profiles\jp7jyh5h.default- Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi ==== Firefox Plugins ====================== ==== Chromium Look ====================== Google Chrome Version: 41.0.2272.118 (Latest Stable version: 41.0.2272.118) [z-db] Chrome Hotword Shared Module - Korii\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg ==== Chromium Startpages ====================== C:\Users\Korii\AppData\Local\Google\Chrome\User Data\Default\Preferences"homepage": " ==== Chromium Fix ====================== C:\Users\Korii\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.115img.com_0.localstorage deleted successfullyC:\Users\Korii\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.115img.com_0.localstorage-journal deleted successfully ==== Set IE to Default ====================== Old Values:[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141" New Values:[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02" ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfullyC:\Users\Default\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfullyC:\Users\Korii\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfullyC:\Users\Korii\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfullyC:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfullyC:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfullyC:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfullyC:\Users\Default\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfullyC:\Users\Default User\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfullyC:\Users\Korii\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfullyC:\Users\Korii\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfullyC:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfullyC:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== C:\Users\Korii\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1308 folders=262 227415231 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfullyC:\Users\Default User\AppData\Local\Temp emptied successfullyC:\Users\Korii\AppData\Local\Temp will be emptied at rebootC:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfullyC:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfullyC:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptiedC:\Users\Korii\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== EOF on Sat 04/11/2015 at 11:59:55.54 ======================
  6. Crap I just realized I didn't remove BitTorrent before I did this sorry. I just uninstalled it. Would you like me to redo the scan and post the results? Again I am sorry.
  7. Hello TwinHeadedEagle, Ok so I scanned using Farbar Recovery Scan Tool and these are the results: FRST.txt Addition.txt
  8. When I run Malwarebytes Trovi shows up. I then quarantine it and it doesn't show up until I restart my PC. I've tried everything I can think of. Tried some things in the resolved topics but I am still unable to get rid of it.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.