Post problem reports here for Batch files for use in BSOD debugging


  1. Posts : 39,410
    windows 10 professional version 1607 build 14393.969 64 bit
       #1111

    Code:
    Transcript started, output file is C:\Users\aaaaaaaa\AppData\Local\Temp\\LOGS\Event-Search.TXT
    
     Log Collection... (V1.6.3)
    
     Gathering MSINFO32 ...
    ...
    
     Getting Printer Information ......
    
    Getting Active Process ...
    ...
    
     Getting List of Installed Apps...
    ...
    
    Getting Windows Setup Logs Independent of SetupDiage.exe...
    
    
        Directory: C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS
    
    
    Mode                LastWriteTime         Length Name
    ----                -------------         ------ ----
    d-----       11/20/2021   7:48 AM                SETUP
    Get-ChildItem : Access is denied
    At
    C:\Users\aaaaaaaa\AppData\Local\Temp\'Matthew_Wai_died_peacefully_in_China_immediately_after_writing_this_file'.ps1:88
    char:32
    + ... tupPaths += Get-ChildItem * -Force -Recurse -Include setuperr.log, se ...
    +                 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
        + CategoryInfo          : NotSpecified: (:) [Get-ChildItem], UnauthorizedAccessException
        + FullyQualifiedErrorId : System.UnauthorizedAccessException,Microsoft.PowerShell.Commands.GetChildItemCommand
    
    
    
        Directory: C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\SETUP\$SysReset
    
    
    Mode                LastWriteTime         Length Name
    ----                -------------         ------ ----
    d-----       11/20/2021   7:48 AM                Logs
    d-----       11/20/2021   7:48 AM                Logs
    
    
        Directory: C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\SETUP\$WINDOWS.~BT\Sources
    
    
    Mode                LastWriteTime         Length Name
    ----                -------------         ------ ----
    d-----       11/20/2021   7:48 AM                Panther
    d-----       11/20/2021   7:48 AM                Panther
    d-----       11/20/2021   7:48 AM                Panther
    d-----       11/20/2021   7:48 AM                Panther
    
    
        Directory: C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\SETUP\$Windows.~WS\Sources
    
    
    Mode                LastWriteTime         Length Name
    ----                -------------         ------ ----
    d-----       11/20/2021   7:48 AM                Panther
    d-----       11/20/2021   7:48 AM                Panther
    ...
    
     Getting SystemProductName ...
    ...
    
    HasMoreData   : True
    StatusMessage :
    Location      : localhost
    Command       :  $vol = (mountvol /L | select-string -Pattern "\\\\")
                            $volstring = "mountvol y:" + $vol[0]
                            CMD.EXE /C $volstring
                            SLEEP 2
                            CMD.EXE /C "CHKDSK y: > %temp%\LOGS\SystemReserved.TXT"
                            SLEEP 2 # Pause after drive dismount
                            CMD.EXE /C "mountvol y: /D"
    
    JobStateInfo  : Running
    Finished      : System.Threading.ManualResetEvent
    InstanceId    : b7bb283a-7555-4eba-80a5-568134c63c3d
    Id            : 5
    Name          : reservedJob
    ChildJobs     : {Job6}
    PSBeginTime   : 11/20/2021 7:48:48 AM
    PSEndTime     :
    PSJobTypeName : BackgroundJob
    Output        : {}
    Error         : {}
    Progress      : {}
    Verbose       : {}
    Debug         : {}
    Warning       : {}
    Information   : {}
    State         : Running
    
    ...
    
     Getting fltmc Filters ...
    ...
    
     Grabbing DXDiag Info...
    ...
    ...
    
    Copying misc. logs ...
    
    
        Directory: C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS
    
    
    Mode                LastWriteTime         Length Name
    ----                -------------         ------ ----
    d-----       11/20/2021   7:48 AM                WER
    
    
        Directory: C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\Windows\Logs
    
    
    Mode                LastWriteTime         Length Name
    ----                -------------         ------ ----
    d-----       11/20/2021   7:48 AM                WindowsUpdate
    
    
        Directory: C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\Windows\LiveKernelReports
    
    
    Mode                LastWriteTime         Length Name
    ----                -------------         ------ ----
    d-----       11/20/2021   7:48 AM                USBHUB3
    ...
    
     Grabbing Driver listing via DISM.EXE ...
    
     Done!
    ...
    
     Grab root\SecurityCenter2 AntivirusProduct ...
    ...
    
     Waiting for MSINFO32 to Complete ...
    
     You may press a key to close this window.
    -------------------------------------------

    Code:
       The script is searching the collected files for personal info to be redacted/deleted.
       If the file size is large, it will take quite a while. Please be patient.
    
     Processing "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\WMI_Object_System.TXT"  (size: 0 MB)
     Processing "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\SETUP\HKLM_SYSTEM_SETUP-OOBE.TXT"  (size: 0.02 MB)
    
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\AutoRotate.TXT"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\Dir_Structure.txt"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\Disk-Info.TXT"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\DISM-Get-Drivers.TXT"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\DxDiag.xml"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\Event_Search.txt"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\fltmc_filters.TXT"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\Installed-Apps.TXT"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\MSINFO32.NFO"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\Printers.TXT"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\Reg-Lang.TXT"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\REG_SystemProductName.TXT"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\Running-Processes.TXT"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\SecurityProductInformation.TXT"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\SETUP"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\SystemReserved.TXT"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\WER"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\WER-SUMMARY.TXT"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\Windows"
     Zipping --> "C:\Users\aaaaaaaa\AppData\Local\Temp\LOGS\WMI_Object_System.TXT"
    
     Please upload the following file as an attachment to your post on Ten Forums.
    
      General Machine Info [2021-11-20_at_07-49-37].zip
    
     The above file can be found on the desktop.
     You may press a key to close this window.

    Code:
    Domain              : WORKGROUP
    Manufacturer        : Hewlett-Packard
    Model               : HP ZBook 17 G2
    Name                : DESKTOP-9HEBUKS
    PrimaryOwnerName    : Redacted
    TotalPhysicalMemory : 34270720000
    
    
    
    
    
    IdentifyingNumber : USH521L0L9
    Name              : HP ZBook 17 G2
    Vendor            : Hewlett-Packard
    Version           : A3009CD10303
    Caption           : Computer System Product

    Code:
    Date EventType S0-Name S0-Value S3 S4
    ---- --------- ------- -------- -- --
      My Computer


  2. Posts : 39,410
    windows 10 professional version 1607 build 14393.969 64 bit
       #1112

    Which batch files use WMIC commands?
    Are there WMIC commands in DM or V2?


    Windows Management Instrumentation Command line (WMIC) tool.
    The WMIC tool is deprecated in Windows 10, version 21H1 and the 21H1 semi-annual channel release of Windows Server.
    This tool is superseded by Windows PowerShell for WMI.
    Note: This deprecation only applies to the command-line management tool.
    WMI itself is not affected. 21H1

    https://docs.microsoft.com/en-us/win...not%20affected.
      My Computer

  3. Matthew Wai's Avatar
    Posts : 6,666
    Windows 10 Home 20H2
       #1113

    "Tuneup_plus_log.bat' uses WMIC.
      My Computer


  4. Posts : 39,410
    windows 10 professional version 1607 build 14393.969 64 bit
       #1114

    For tuneup plus when does sfcdetails run?

    In a recent thread the sfcdetails had no reports of the integrity violation or fix even though scannow reported that corruption was identified and fixed.

    The second scannow found no integrity violations.

    Can the script be modified so that the sfcdetails runs after any scannow that had found integrity violations?
    (there could be two reports)

    Code:
        Started on Sun 11/28/2021 at 17:01:31.30 
    
            [SFC /ScanNow] 
    
    Beginning system scan.  This process will take some time.
    
    Results: 
     
    Windows Resource Protection found corrupt files and successfully repaired them.
    
    For online repairs, details are included in the CBS log file located at 
    windir\Logs\CBS\CBS.log. For example C:\Windows\Logs\CBS\CBS.log. For offline
    repairs, details are included in the log file provided by the /OFFLOGFILE flag.
     
    ==================================================================
    
        Started on Sun 11/28/2021 at 17:07:00.92 
    
            [DISM /online /cleanup-image /ScanHealth] 
    
    Deployment Image Servicing and Management tool
    Version: 10.0.19041.844
    
    Image Version: 10.0.19043.1348 
     
    No component store corruption detected.
    
    The operation completed successfully. 
     
    ==================================================================
    
        Started on Sun 11/28/2021 at 17:11:20.94 
    
            [DISM /online /cleanup-image /RestoreHealth] 
    
    Deployment Image Servicing and Management tool
    Version: 10.0.19041.844
    
    Image Version: 10.0.19043.1348 
     
    The restore operation completed successfully.
    
    The operation completed successfully. 
     
    ==================================================================
    
        Started on Sun 11/28/2021 at 17:15:24.56 
    
            [SFC /ScanNow] 
    
    Beginning system scan.  This process will take some time.
    
    Results: 
     
    Windows Resource Protection did not find any integrity violations.
     
    ==================================================================
    
    A TXT file named SFC_details.txt has been created.
     
    ==================================================================
    
        Started on Sun 11/28/2021 at 17:20:37.53 
    
            [ChkDsk /Scan]  
     
    The type of the file system is NTFS.
     
    Stage 1: Examining basic file system structure ... 
    473600 file records processed.                                                        
    File verification completed.
    Phase duration (File record verification): 9.48 seconds.
    7499 large file records processed.                                   
    Phase duration (Orphan file record recovery): 0.00 milliseconds.
    0 bad file records processed.                                     
    Phase duration (Bad file record checking): 0.26 milliseconds.
     
    Stage 2: Examining file name linkage ... 
    3526 reparse records processed.                                      
    689706 index entries processed.                                                       
    Index verification completed.
    Phase duration (Index verification): 19.29 seconds.
    0 unindexed files scanned.                                        
    Phase duration (Orphan reconnection): 3.04 seconds.
    0 unindexed files recovered to lost and found.                    
    Phase duration (Orphan recovery to lost and found): 0.64 milliseconds.
    3526 reparse records processed.                                      
    Phase duration (Reparse point and Object ID verification): 21.19 milliseconds.
     
    Stage 3: Examining security descriptors ... 
    Security descriptor verification completed.
    Phase duration (Security descriptor verification): 54.85 milliseconds.
    108054 data files processed.                                           
    Phase duration (Data attribute verification): 0.13 milliseconds.
    CHKDSK is verifying Usn Journal...
    39637816 USN bytes processed.                                                           
    Usn Journal verification completed.
    Phase duration (USN journal verification): 168.04 milliseconds.
    
    Windows has scanned the file system and found no problems.
    
    No further action is required.
     
    124980278 KB total disk space. 
    28459396 KB in 296295 files.
    192108 KB in 108055 indexes.
    0 KB in bad sectors.
    585490 KB in use by the system.
    65536 KB occupied by the log file.
    95743284 KB available on disk.
     
    4096 bytes in each allocation unit. 
    31245069 total allocation units on disk.
    23935821 allocation units available on disk.
    Total duration: 32.08 seconds (32083 ms).
     
    ==================================================================
     
        Started on Sun 11/28/2021 at 17:21:19.02 
     
    AutoReboot   
     
    TRUE        
     
    ==================================================================
     
            [Set AutoReboot = False] 
     
    Updating property(s) of '\\AAM-SERVER\ROOT\CIMV2:Win32_OSRecoveryConfiguration.Name="Microsoft Windows 10 Pro|C:\\windows|\\Device\\Harddisk0\\Partition2"'
    
    Property(s) update successful.
    
    ==================================================================
     
    AutoReboot   
     
    FALSE       
     
    ==================================================================
     
    DebugInfoType   
     
    7              
     
    ==================================================================
    
            [Set DebugInfoType = 7]
    
    Updating property(s) of '\\AAM-SERVER\ROOT\CIMV2:Win32_OSRecoveryConfiguration.Name="Microsoft Windows 10 Pro|C:\\windows|\\Device\\Harddisk0\\Partition2"'
    
    Property(s) update successful.
    
    ==================================================================
     
    DebugInfoType   
     
    7              
     
    ==================================================================
    
            [WMIC PageFile list]
    
    AllocatedBaseSize=1280
    CurrentUsage=156
    Description=C:\pagefile.sys
    InstallDate=20191207020016.927748-300
    Name=C:\pagefile.sys
    PeakUsage=158
    Status=
    TempPageFile=FALSE
     
    ==================================================================
     
    AutomaticManagedPagefile   
     
    TRUE                      
     
    ==================================================================
    
            [Set AutomaticManagedPagefile = True]
    
    Updating property(s) of '\\AAM-SERVER\ROOT\CIMV2:Win32_ComputerSystem.Name="AAM-SERVER"'
    
    Property(s) update successful.
    
    ==================================================================
     
    AutomaticManagedPagefile   
     
    TRUE                      
     
    ==================================================================
    
            [BcdEdit /enum {badmemory}]
    
    RAM Defects
    -----------
    identifier              {badmemory}
     
    ==================================================================
    
        Finished on Sun 11/28/2021 at 17:21:21.37
        It took 19 minutes and 50 seconds to complete the operations.
      My Computer

  5. Matthew Wai's Avatar
    Posts : 6,666
    Windows 10 Home 20H2
       #1115

    zbook said:
    In a recent thread the sfcdetails had no reports of the integrity violation or fix even though scannow reported that corruption was identified and fixed.
    Has the OP uploaded the following TXT file, which should have been put into a ZIP file by "Tuneup_plus_log.bat"?

    zbook said:
    Code:
    ==================================================================
    
    A TXT file named SFC_details.txt has been created. 
    
    ==================================================================
      My Computer


  6. Posts : 39,410
    windows 10 professional version 1607 build 14393.969 64 bit
       #1116

    The sfc_details.txt file was viewed and there were no findings.
    So I was wondering the timing in the script to run the command.
    After the first scannow or after the second scannow?
    The sfc_details.txt typically displays no findings after the second scannow when the first scannow had corrected integrity violations.
      My Computer

  7. Matthew Wai's Avatar
    Posts : 6,666
    Windows 10 Home 20H2
       #1117

    The present version of "Tuneup_plus_log.bat" will create "SFC_details.txt" after the second "SFC /ScanNow".
      My Computer


  8. Posts : 39,410
    windows 10 professional version 1607 build 14393.969 64 bit
       #1118

    The sfc details needs to run immediately after the scannow that displayed integrity violations to capture the problem(s).

    Running scannow the second time appears to overshadow the results from the prior scannow so that sfc details no longer finds the problem(s).

    For a period of time please have the log collector create a sfc details after each scannow.

    If this pattern is confirmed then please modify the script to run sfc details immediately after any result other than scannow did not find any integrity violations.
      My Computer

  9. Matthew Wai's Avatar
    Posts : 6,666
    Windows 10 Home 20H2
       #1119

    zbook said:
    The sfc details needs to run immediately after the scannow that displayed integrity violations to capture the problem(s).
    Tuneup_plus_log.bat

    The above updated version will do the following:

    (1) Immediately create "SFC_details-1.txt" as long as the first "SFC /ScanNow" does not output "Windows Resource Protection did not find any integrity violations."
    (2) Immediately create "SFC_details-2.txt" as long as the second "SFC /ScanNow" does not output "Windows Resource Protection did not find any integrity violations."
      My Computer


  10. Posts : 39,410
    windows 10 professional version 1607 build 14393.969 64 bit
       #1120

    Thx.
    Will test in a new thread.
      My Computer


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 10 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 10" and related materials are trademarks of Microsoft Corp.

Designer Media Ltd
All times are GMT -5. The time now is 03:29.
Find Us




Windows 10 Forums