I redacted the links to your logfiles in your precedent message since they contained some "sensitive"/"private" informations.
I analyze the logfile and come back to you with more informations.
I redacted the links to your logfiles in your precedent message since they contained some "sensitive"/"private" informations.
I analyze the logfile and come back to you with more informations.
OK, I started it, just so you know I got this message, going to run anyway and let you know the results, just wanted to post this in case of BSOD http://screencast.com/t/DZpUxbJv0EGY
OK BSOD again with the new version you provided, I uploaded the minidump https://up2sha.re/file?f=Bt0lHd36k7X6
Hello,
Something else seems to recreate the key. I'll look with a ZHPDiag report :
Best regards,
Hello,
Thanks, the dump file was useful it was at least due to the PRSvc.exe process. Can you retry again ? (be sure the database has been updated..).
If you face another BSOD, can you redo the same thing as here ?
Thank you for your patience,
***** [ Services ] *****
***** [ Folders ] *****
***** [ Files ] *****
[-] File Deleted : C:\WINDOWS\SysWOW64\h@tkeysh@@k.dll
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10921475-03CE-4E04-90CE-E2E7EF20C814}
***** [ Web browsers ] *****
*************...
Yes, but your computer doesn't seem to have some remainings, so we need to spot what is re-creating this folder at each reboot.
Since I didn't see it with ZHPDiag, we'll try with FRST :
OK Here it is:
# AdwCleaner v5.112 - Logfile created 19/04/2016 at 05:34:03
# Updated 17/04/2016 by Xplode
# Database : 2016-04-19.1 [Server]
# Operating system : Windows 10 Home (X64)
# Username : Steve - STEVESPC
# Running from : C:\Users\Steve\Downloads\adwcleaner_5.112.exe
# Option : Scan
# Support : http://toolslib.net/forum
***** [ Services ] *****
Service Found : swdumon
***** [ Fo...
OK here it is:
Windows PowerShell Copyright (C) 2015 Microsoft Corporation. All rights reserved.
PS C:\Users\Steve> Get-Process
Handles NPM(K) PM(K) WS(K) VM(M) CPU(s) Id SI ProcessName
------- ------ ----- ----- ----- ------ -- -- -----------
659 41 88744 20340 483 31.63 7860 1 Adguard
1230 65 173272 44460 514 ...
Bonjour,
Alors si on essaye de résoudre ce problème, il va falloir être sur que je sache exactement ce qui t'arrives.
Alors pour commencer, peux-tu faire une capture d'écran de la fenêtre transparente que tu as lorsque tu lances l'explorateur. Tu peux héberger l'image sur up2sha.re par exemple.
Tu es actuellement sous Windows 8.1, l'as-tu acheté comme ça, ou as-tu effectué la mise à jour de ...
Bonjour,
mon choix est fait, j'ai decider de choisir la premiere solution.
j'attend votre reponse.
PS : il ne faut s'attendre a une reponse de ma part avant au moins 18h.