Recent help with cleaning infection - error popup

  1. #1
    Dev
    Dev is offline Junior Member

    Recent help with cleaning infection - error popup

    Hi. You recently helped me with cleaning my computer of a virus. An error popped up just now and I was going to post it to that thread but it is marked resolved so I am opening a new thread, hope this is ok.

    Attached is the error I am getting. The laptop is just sitting idle both times with a browser window open and my email program.

    Any idea what could be causing this error since the clean?
    Attached Images

  2. #2
    broni is offline Senior Member
    Please download VEW and save it to your Desktop: http://images.malwareremoval.com/vino/VEW.exe

    Double-click VEW.exe then under Select log to query, select:
    Application
    System


    Under Select type to list, select:
    Critical (Vista only)
    Error


    Click the radio button for Number of events
    Type 20 in the 1 to 20 box
    Then click the Run button.
    Notepad will open with the output log.

    In Notepad, click Edit > Select all then Edit > Copy
    Reply to this post, click in the reply window and press Ctrl+V on your keyboard to paste the log.

  3. #3
    Dev
    Dev is offline Junior Member
    I tried to run the VEW.exe program but I get the following error:
    Attached Images

  4. #4
    broni is offline Senior Member
    Try to right click>Run as Administrator.

  5. #5
    Dev
    Dev is offline Junior Member
    Ok, that worked.


    Vino's Event Viewer v01c run on Windows Vista in English
    Report run at 04/03/2011 4:33:56 PM

    Note: All dates below are in the format dd/mm/yyyy

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'Application' Log - Critical Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'Application' Log - Error Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Log: 'Application' Date/Time: 04/03/2011 3:04:48 PM
    Type: Error Category: 0
    Event: 20227 Source: RasClient
    CoId={58FA68B1-5AA5-41DF-8FCA-6D6A429D72D9}: The user Devorah-pc\Devorah dialed a connection named Verizon Wireless - VZAccess which has failed. The error code returned on failure is 691.

    Log: 'Application' Date/Time: 04/03/2011 3:04:20 PM
    Type: Error Category: 0
    Event: 10 Source: Microsoft-Windows-WMI
    Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

    Log: 'Application' Date/Time: 04/03/2011 3:00:53 PM
    Type: Error Category: 16
    Event: 4621 Source: Microsoft-Windows-EventSystem
    The COM+ Event System could not remove the EventSystem.EventSubscription object {CEB8B221-89C5-41A8-98CE-79B413BF150B}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}. The HRESULT was 80070005.

    Log: 'Application' Date/Time: 04/03/2011 3:00:34 PM
    Type: Error Category: 0
    Event: 20227 Source: RasClient
    CoId={A292B5B2-8B90-4D39-A9BA-88BC07E39F59}: The user Devorah-pc\Devorah dialed a connection named Verizon Wireless - VZAccess which has failed. The error code returned on failure is 633.

    Log: 'Application' Date/Time: 04/03/2011 3:00:28 PM
    Type: Error Category: 0
    Event: 20227 Source: RasClient
    CoId={EBCE643E-7923-42BE-AAF3-777A8F3A4C3B}: The user Devorah-pc\Devorah dialed a connection named Verizon Wireless - VZAccess which has failed. The error code returned on failure is 633.

    Log: 'Application' Date/Time: 04/03/2011 3:00:04 PM
    Type: Error Category: 100
    Event: 1000 Source: Application Error
    Faulting application VZAccess Manager.exe, version 7.2.1.2, time stamp 0x4b060a48, faulting module ntdll.dll, version 6.0.6002.18327, time stamp 0x4cb7341c, exception code 0xc0000005, fault offset 0x00062003, process id 0x11c4, application start time 0x01cbda631f9d706c.

    Log: 'Application' Date/Time: 04/03/2011 11:50:56 AM
    Type: Error Category: 0
    Event: 10 Source: Microsoft-Windows-WMI
    Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

    Log: 'Application' Date/Time: 04/03/2011 12:30:50 AM
    Type: Error Category: 100
    Event: 1000 Source: Application Error
    Faulting application jusched.exe, version 2.0.3.1, time stamp 0x4ccb4165, faulting module USER32.dll, version 6.0.6002.18005, time stamp 0x49e03825, exception code 0xc0000005, fault offset 0x000218fc, process id 0xe84, application start time 0x01cbda02abd2f237.

    Log: 'Application' Date/Time: 04/03/2011 12:26:12 AM
    Type: Error Category: 0
    Event: 10 Source: Microsoft-Windows-WMI
    Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

    Log: 'Application' Date/Time: 04/03/2011 12:22:50 AM
    Type: Error Category: 16
    Event: 4621 Source: Microsoft-Windows-EventSystem
    The COM+ Event System could not remove the EventSystem.EventSubscription object {CEB8B221-89C5-41A8-98CE-79B413BF150B}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}. The HRESULT was 80070005.

    Log: 'Application' Date/Time: 04/03/2011 12:18:26 AM
    Type: Error Category: 0
    Event: 10 Source: Microsoft-Windows-WMI
    Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

    Log: 'Application' Date/Time: 03/03/2011 9:26:22 PM
    Type: Error Category: 100
    Event: 1000 Source: Application Error
    Faulting application jusched.exe, version 2.0.3.1, time stamp 0x4ccb4165, faulting module USER32.dll, version 6.0.6002.18005, time stamp 0x49e03825, exception code 0xc0000005, fault offset 0x000218fc, process id 0x113c, application start time 0x01cbd9e8f186a4c4.

    Log: 'Application' Date/Time: 03/03/2011 9:24:19 PM
    Type: Error Category: 0
    Event: 78 Source: SideBySide
    Activation context generation failed for "C:\Users\Devorah\Desktop\esetsmartinstaller_enu.e xe".Error in manifest or policy file "" on line . A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.window s.common-controls_6595b64144ccf1df_6.0.6002.18305_none_1509 f852f40ee5cd.manifest. Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows. common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb7 2f2a088b0ed3.manifest.

    Log: 'Application' Date/Time: 03/03/2011 9:24:00 PM
    Type: Error Category: 0
    Event: 78 Source: SideBySide
    Activation context generation failed for "C:\Users\Devorah\Desktop\esetsmartinstaller_enu.e xe".Error in manifest or policy file "" on line . A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.window s.common-controls_6595b64144ccf1df_6.0.6002.18305_none_1509 f852f40ee5cd.manifest. Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows. common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb7 2f2a088b0ed3.manifest.

    Log: 'Application' Date/Time: 03/03/2011 9:22:14 PM
    Type: Error Category: 0
    Event: 10 Source: Microsoft-Windows-WMI
    Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

    Log: 'Application' Date/Time: 03/03/2011 9:19:21 PM
    Type: Error Category: 16
    Event: 4621 Source: Microsoft-Windows-EventSystem
    The COM+ Event System could not remove the EventSystem.EventSubscription object {CEB8B221-89C5-41A8-98CE-79B413BF150B}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}. The HRESULT was 80070005.

    Log: 'Application' Date/Time: 03/03/2011 9:15:55 PM
    Type: Error Category: 100
    Event: 1000 Source: Application Error
    Faulting application jusched.exe, version 2.0.3.1, time stamp 0x4ccb4165, faulting module USER32.dll, version 6.0.6002.18005, time stamp 0x49e03825, exception code 0xc0000005, fault offset 0x000218fc, process id 0x1270, application start time 0x01cbd9e77bbe800b.

    Log: 'Application' Date/Time: 03/03/2011 9:11:46 PM
    Type: Error Category: 0
    Event: 10 Source: Microsoft-Windows-WMI
    Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

    Log: 'Application' Date/Time: 03/03/2011 9:08:50 PM
    Type: Error Category: 16
    Event: 4621 Source: Microsoft-Windows-EventSystem
    The COM+ Event System could not remove the EventSystem.EventSubscription object {CEB8B221-89C5-41A8-98CE-79B413BF150B}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}. The HRESULT was 80070005.

    Log: 'Application' Date/Time: 03/03/2011 11:57:40 AM
    Type: Error Category: 0
    Event: 10 Source: Microsoft-Windows-WMI
    Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'System' Log - Critical Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'System' Log - Error Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Log: 'System' Date/Time: 04/03/2011 3:04:21 PM
    Type: Error Category: 0
    Event: 7026 Source: Service Control Manager
    The following boot-start or system-start driver(s) failed to load: Beep SASDIFSV SASKUTIL

    Log: 'System' Date/Time: 04/03/2011 3:02:43 PM
    Type: Error Category: 0
    Event: 46 Source: volmgr
    Crash dump initialization failed!

    Log: 'System' Date/Time: 04/03/2011 3:02:41 PM
    Type: Error Category: 0
    Event: 1060 Source: Application Popup
    \??\C:\Program Files (x86)\SUPERAntiSpyware\SASDIFSV.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

    Log: 'System' Date/Time: 04/03/2011 3:02:41 PM
    Type: Error Category: 0
    Event: 1060 Source: Application Popup
    \??\C:\Program Files (x86)\SUPERAntiSpyware\SASKUTIL.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

    Log: 'System' Date/Time: 04/03/2011 3:02:26 PM
    Type: Error Category: 0
    Event: 46 Source: volmgr
    Crash dump initialization failed!

    Log: 'System' Date/Time: 04/03/2011 3:00:52 PM
    Type: Error Category: 0
    Event: 10010 Source: Microsoft-Windows-DistributedCOM
    The server {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} did not register with DCOM within the required timeout.

    Log: 'System' Date/Time: 04/03/2011 1:02:01 PM
    Type: Error Category: 0
    Event: 20 Source: volsnap
    The shadow copies of volume C: were aborted because of a failed free space computation.

    Log: 'System' Date/Time: 04/03/2011 11:50:57 AM
    Type: Error Category: 0
    Event: 7026 Source: Service Control Manager
    The following boot-start or system-start driver(s) failed to load: Beep SASDIFSV SASKUTIL

    Log: 'System' Date/Time: 04/03/2011 11:49:19 AM
    Type: Error Category: 0
    Event: 46 Source: volmgr
    Crash dump initialization failed!

    Log: 'System' Date/Time: 04/03/2011 11:49:17 AM
    Type: Error Category: 0
    Event: 1060 Source: Application Popup
    \??\C:\Program Files (x86)\SUPERAntiSpyware\SASDIFSV.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

    Log: 'System' Date/Time: 04/03/2011 11:49:17 AM
    Type: Error Category: 0
    Event: 1060 Source: Application Popup
    \??\C:\Program Files (x86)\SUPERAntiSpyware\SASKUTIL.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

    Log: 'System' Date/Time: 04/03/2011 11:49:02 AM
    Type: Error Category: 0
    Event: 46 Source: volmgr
    Crash dump initialization failed!

    Log: 'System' Date/Time: 04/03/2011 2:48:49 AM
    Type: Error Category: 0
    Event: 10010 Source: Microsoft-Windows-DistributedCOM
    The server {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} did not register with DCOM within the required timeout.

    Log: 'System' Date/Time: 04/03/2011 12:26:12 AM
    Type: Error Category: 0
    Event: 7026 Source: Service Control Manager
    The following boot-start or system-start driver(s) failed to load: Beep SASDIFSV SASKUTIL

    Log: 'System' Date/Time: 04/03/2011 12:24:34 AM
    Type: Error Category: 0
    Event: 46 Source: volmgr
    Crash dump initialization failed!

    Log: 'System' Date/Time: 04/03/2011 12:24:32 AM
    Type: Error Category: 0
    Event: 1060 Source: Application Popup
    \??\C:\Program Files (x86)\SUPERAntiSpyware\SASDIFSV.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

    Log: 'System' Date/Time: 04/03/2011 12:24:31 AM
    Type: Error Category: 0
    Event: 1060 Source: Application Popup
    \??\C:\Program Files (x86)\SUPERAntiSpyware\SASKUTIL.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

    Log: 'System' Date/Time: 04/03/2011 12:24:17 AM
    Type: Error Category: 0
    Event: 46 Source: volmgr
    Crash dump initialization failed!

    Log: 'System' Date/Time: 04/03/2011 12:22:50 AM
    Type: Error Category: 0
    Event: 10010 Source: Microsoft-Windows-DistributedCOM
    The server {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} did not register with DCOM within the required timeout.

    Log: 'System' Date/Time: 04/03/2011 12:18:27 AM
    Type: Error Category: 0
    Event: 7026 Source: Service Control Manager
    The following boot-start or system-start driver(s) failed to load: Beep SASDIFSV SASKUTIL

  6. #6
    broni is offline Senior Member
    Did the error happen just once, or....?

  7. #7
    Dev
    Dev is offline Junior Member
    No, I got it twice today, so far. Both times the laptop was idle but with a browser (Chrome) and Window's mail open.

  8. #8
    broni is offline Senior Member
    Save 20% on AVG Internet Security 2012 Suite!
    OK, we need to investigate little bit more...
    When it happens again, note the exact time, when it happened (let me know about the time) and then post fresh VEW report.

Closed Thread