Jump to content

Build Theme!
  •  
  • Infected?

WE'RE SURE THAT YOU'LL LOVE US!

Hey there! :wub: Looks like you're enjoying the discussion, but you're not signed up for an account. When you create an account, we remember exactly what you've read, so you always come right back where you left off. You also get notifications, here and via email, whenever new posts are made. You can like posts to share the love. :D Join 91681 other members! Anybody can ask, anybody can answer. Consistently helpful members may be invited to become staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

Google redirects & spybot,hijack this problems


  • Please log in to reply
133 replies to this topic

#106 noahdfear

noahdfear

    Silver Member

  • Visiting Fellow
  • PipPipPip
  • 465 posts
  • MVP

Posted 22 November 2009 - 05:21 PM

Great! Now restart the system and boot to the hard drive. If successful, you may (should) be presented with a classic logon dialog (done in previous edit). If your account has a password enter it, otherwise just press Enter (with your username shown). Please note that the System File Checker may run once you logon (also previous edit) - allow it to continue to completion. Also note that due to the number of system services disabled, many things will not work as expected, nor do I want you to attempt to make anything work. Instead, if logon is successful, post back for further instructions as we will then need to diagnose what is causing the problem. If the system continues to hang at the same place, please leave it sit there for at least 1 hour to see if it pushes past.
Dave

    Advertisements

Register to Remove


#107 arfon.jones

arfon.jones

    Authentic Member

  • Authentic Member
  • PipPip
  • 71 posts

Posted 23 November 2009 - 01:50 PM

Hi Dave Sorry but the pc still wont get past the grey screen. I left it runing over night but still nothing, also re-booted a few more times to try and left it on for several more hours I also tried safe mode also nothing. Thanks. Arfon

#108 noahdfear

noahdfear

    Silver Member

  • Visiting Fellow
  • PipPipPip
  • 465 posts
  • MVP

Posted 23 November 2009 - 03:56 PM

Hi Arfon,

There are a couple more services that could be disabled but I was hesitant to do so until we saw the results. I'd like to verify if anything has changed in the boot process before making any more changes. Please delete the C:\windows\ntbtlog.txt file once more then do an F8 startup>Enable bootlogging, then post the new ntbtlog.
Also, there will be a new C:\Windows\regmon.log I would like zipped and uploaded to my submission channel.
Dave

#109 arfon.jones

arfon.jones

    Authentic Member

  • Authentic Member
  • PipPip
  • 71 posts

Posted 23 November 2009 - 05:50 PM

Hi Dave here is my ntbtlog Service Pack 311 21 2009 19:18:59.500 Loaded driver \WINDOWS\system32\ntkrnlpa.exe Loaded driver \WINDOWS\system32\hal.dll Loaded driver \WINDOWS\system32\KDCOM.DLL Loaded driver \WINDOWS\system32\BOOTVID.dll Loaded driver sptd.sys Loaded driver \WINDOWS\System32\Drivers\WMILIB.SYS Loaded driver \WINDOWS\System32\Drivers\SPTDDRV1.SYS Loaded driver ACPI.sys Loaded driver pci.sys Loaded driver isapnp.sys Loaded driver compbatt.sys Loaded driver \WINDOWS\system32\DRIVERS\BATTC.SYS Loaded driver pciide.sys Loaded driver \WINDOWS\system32\DRIVERS\PCIIDEX.SYS Loaded driver aliide.sys Loaded driver intelide.sys Loaded driver toside.sys Loaded driver viaide.sys Loaded driver cmdide.sys Loaded driver REGSYS701.SYS Loaded driver \WINDOWS\System32\Drivers\ksecdd.sys Loaded driver MountMgr.sys Loaded driver ftdisk.sys Loaded driver PartMgr.sys Loaded driver VolSnap.sys Loaded driver cpqarray.sys Loaded driver \WINDOWS\system32\DRIVERS\SCSIPORT.SYS Loaded driver atapi.sys Loaded driver aha154x.sys Loaded driver sparrow.sys Loaded driver symc810.sys Loaded driver aic78xx.sys Loaded driver dac960nt.sys Loaded driver ql10wnt.sys Loaded driver amsint.sys Loaded driver asc.sys Loaded driver asc3550.sys Loaded driver mraid35x.sys Loaded driver i2omp.sys Loaded driver ini910u.sys Loaded driver ql1240.sys Loaded driver aic78u2.sys Loaded driver symc8xx.sys Loaded driver sym_hi.sys Loaded driver sym_u3.sys Loaded driver ABP480N5.SYS Loaded driver asc3350p.sys Loaded driver cd20xrnt.sys Loaded driver ultra.sys Loaded driver adpu160m.sys Loaded driver dpti2o.sys Loaded driver ql1080.sys Loaded driver ql1280.sys Loaded driver ql12160.sys Loaded driver perc2.sys Loaded driver perc2hib.sys Loaded driver hpn.sys Loaded driver cbidf2k.sys Loaded driver dac2w2k.sys Loaded driver VIAMRAID.SYS Loaded driver disk.sys Loaded driver \WINDOWS\system32\DRIVERS\CLASSPNP.SYS Loaded driver fltmgr.sys Loaded driver PxHelp20.sys Loaded driver Ntfs.sys Loaded driver NDIS.sys Loaded driver sisagp.sys Loaded driver viaagp.sys Loaded driver viaagp1.sys Loaded driver ohci1394.sys Loaded driver \WINDOWS\system32\DRIVERS\1394BUS.SYS Loaded driver Mup.sys Loaded driver alim1541.sys Loaded driver amdagp.sys Loaded driver agp440.sys Loaded driver agpCPQ.sys Loaded driver \SystemRoot\system32\DRIVERS\nic1394.sys Loaded driver \SystemRoot\system32\DRIVERS\processr.sys Loaded driver \SystemRoot\system32\DRIVERS\nv4_mini.sys Loaded driver \SystemRoot\system32\DRIVERS\imapi.sys Loaded driver \SystemRoot\System32\Drivers\ElbyDelay.sys Loaded driver \SystemRoot\system32\DRIVERS\cdrom.sys Loaded driver \SystemRoot\system32\DRIVERS\redbook.sys Loaded driver \SystemRoot\SYSTEM32\DRIVERS\GEARAspiWDM.sys Loaded driver \SystemRoot\system32\DRIVERS\usbuhci.sys Loaded driver \SystemRoot\system32\DRIVERS\usbehci.sys Loaded driver \SystemRoot\system32\DRIVERS\i8042prt.sys Loaded driver \SystemRoot\system32\DRIVERS\point32.sys Loaded driver \SystemRoot\system32\DRIVERS\mouclass.sys Loaded driver \SystemRoot\system32\DRIVERS\kbdclass.sys Loaded driver \SystemRoot\system32\drivers\ALCXWDM.SYS Loaded driver \SystemRoot\system32\drivers\ALCXSENS.SYS Loaded driver \SystemRoot\system32\DRIVERS\fetnd5bv.sys Loaded driver \SystemRoot\system32\DRIVERS\fdc.sys Loaded driver \SystemRoot\system32\DRIVERS\serial.sys Loaded driver \SystemRoot\system32\DRIVERS\serenum.sys Loaded driver \SystemRoot\system32\DRIVERS\parport.sys Loaded driver \SystemRoot\system32\DRIVERS\audstub.sys Loaded driver \SystemRoot\system32\DRIVERS\rasl2tp.sys Loaded driver \SystemRoot\system32\DRIVERS\ndistapi.sys Loaded driver \SystemRoot\system32\DRIVERS\ndiswan.sys Loaded driver \SystemRoot\system32\DRIVERS\raspppoe.sys Loaded driver \SystemRoot\system32\DRIVERS\raspptp.sys Loaded driver \SystemRoot\system32\DRIVERS\msgpc.sys Loaded driver \SystemRoot\system32\DRIVERS\psched.sys Loaded driver \SystemRoot\system32\DRIVERS\ptilink.sys Loaded driver \SystemRoot\system32\DRIVERS\raspti.sys Loaded driver \SystemRoot\system32\DRIVERS\termdd.sys Loaded driver \SystemRoot\system32\DRIVERS\swenum.sys Loaded driver \SystemRoot\system32\DRIVERS\update.sys Loaded driver \SystemRoot\system32\DRIVERS\mssmbios.sys Loaded driver \SystemRoot\System32\Drivers\NDProxy.SYS Did not load driver \SystemRoot\System32\Drivers\NDProxy.SYS Loaded driver \SystemRoot\system32\DRIVERS\usbhub.sys Did not load driver \SystemRoot\System32\Drivers\lbrtfdc.SYS Did not load driver \SystemRoot\System32\Drivers\Sfloppy.SYS Loaded driver \SystemRoot\System32\Drivers\i2omgmt.SYS Did not load driver \SystemRoot\System32\Drivers\Changer.SYS Did not load driver \SystemRoot\System32\Drivers\Cdaudio.SYS Loaded driver \SystemRoot\System32\Drivers\Fs_Rec.SYS Loaded driver \SystemRoot\System32\Drivers\Null.SYS Loaded driver \SystemRoot\System32\Drivers\Beep.SYS Loaded driver \SystemRoot\System32\drivers\vga.sys Loaded driver \SystemRoot\System32\Drivers\mnmdd.SYS Loaded driver \SystemRoot\System32\DRIVERS\RDPCDD.sys Loaded driver \SystemRoot\System32\Drivers\Msfs.SYS Loaded driver \SystemRoot\System32\Drivers\Npfs.SYS Loaded driver \SystemRoot\system32\DRIVERS\rasacd.sys Loaded driver \SystemRoot\system32\DRIVERS\ipsec.sys Loaded driver \SystemRoot\system32\DRIVERS\tcpip.sys Loaded driver \SystemRoot\system32\DRIVERS\netbt.sys Loaded driver \SystemRoot\System32\drivers\afd.sys Loaded driver \SystemRoot\system32\DRIVERS\netbios.sys Did not load driver \SystemRoot\system32\DRIVERS\p3.sys Did not load driver \SystemRoot\System32\Drivers\PCIDump.SYS Loaded driver \SystemRoot\system32\DRIVERS\rdbss.sys Loaded driver \SystemRoot\system32\DRIVERS\mrxsmb.sys Loaded driver \SystemRoot\system32\DRIVERS\wanarp.sys Loaded driver \SystemRoot\system32\DRIVERS\arp1394.sys Loaded driver \SystemRoot\System32\Drivers\Fips.SYS Loaded driver \SystemRoot\System32\Drivers\Cdfs.SYS

#110 noahdfear

noahdfear

    Silver Member

  • Visiting Fellow
  • PipPipPip
  • 465 posts
  • MVP

Posted 23 November 2009 - 11:58 PM

File received. Thanks! I'm still examining the logs. Please use windows explorer to see if the file c:\hiberfil.sys exists. If so, please rename it to hiberfil.old, then try starting the computer normally.
Dave

#111 arfon.jones

arfon.jones

    Authentic Member

  • Authentic Member
  • PipPip
  • 71 posts

Posted 24 November 2009 - 02:30 PM

Hello Dave Ok I re-named the above file as requested tried re-booting to hard drive but nothing changed . So i booted back to mini xp to check id re named the file properly, that was ok. But there has been another hiberfil.sys file created beneath the re-named file.

#112 noahdfear

noahdfear

    Silver Member

  • Visiting Fellow
  • PipPipPip
  • 465 posts
  • MVP

Posted 24 November 2009 - 08:57 PM

Hi Arfon,

The presence of hiberfil.sys is normal if hibernation is enabled on the machine, and would be re-created automatically upon system startup if missing. The reason for renaming it is - if the machine had entered hibernation the last time it shut down from a successful logon session, all the information loaded in memory at that time (drivers loaded, programs running, etc) would have been saved to the hiberfil.sys file and the bootup session would be transfered to load that information instead of the configuration we currently have - it was a longshot.

I've put together another fix to try.
Please save this file to the MiniXP desktop.
Start Registry Editor PE, no user hive necessary, then minimize it to the taskbar when fiully loaded.
Double click the file to run it, then post the log it creates.
Exit the registry editor and restart to see if it boots normally.
If no change, restart and enable Boot Logging, then post the new ntbtlog.txt and upload the regmon.log file.
Dave

#113 arfon.jones

arfon.jones

    Authentic Member

  • Authentic Member
  • PipPip
  • 71 posts

Posted 25 November 2009 - 04:14 PM

Hi Dave here is my latest log file. ill try booting up next and let you know how i get on Volume in drive C is system Volume Serial Number is 4C24-1144 Directory of c:\windows\system32\drivers 04/13/2008 06:46 PM 53376 1394bus.sys 08/18/2001 04:52 AM 23552 ABP480N5.SYS 08/17/2001 07:20 PM 96256 ac97intc.sys 04/13/2008 06:36 PM 187776 acpi.sys 08/18/2001 08:00 PM 11648 acpiec.sys 08/18/2001 05:07 AM 101888 adpu160m.sys 04/13/2008 04:39 PM 142592 aec.sys 08/14/2008 10:04 AM 138496 afd.sys 04/13/2008 06:36 PM 42368 agp440.sys 04/13/2008 06:36 PM 44928 agpcpq.sys 08/18/2001 04:52 AM 12800 aha154x.sys 08/18/2001 05:07 AM 55168 aic78u2.sys 08/18/2001 05:07 AM 56960 aic78xx.sys 12/08/2003 11:53 AM 3968 alcacr.sys 12/08/2003 11:53 AM 53600 alcan5wn.sys 12/08/2003 11:53 AM 70688 alcaudsl.sys 12/08/2003 11:53 AM 5280 alcawh.sys 02/24/2004 03:08 AM 400384 ALCXSENS.SYS 06/21/2004 08:53 AM 626204 ALCXWDM.SYS 08/18/2001 04:51 AM 5248 aliide.sys 04/13/2008 06:36 PM 42752 alim1541.sys 04/13/2008 06:36 PM 43008 amdagp.sys 04/13/2008 06:31 PM 37376 amdk6.sys 04/13/2008 06:31 PM 37760 amdk7.sys 08/18/2001 04:52 AM 12032 amsint.sys 04/13/2008 06:51 PM 60800 arp1394.sys 08/18/2001 04:52 AM 26496 asc.sys 08/18/2001 04:52 AM 22400 asc3350p.sys 08/18/2001 04:51 AM 14848 asc3550.sys 09/10/1999 11:06 AM 25244 ASPI32.sys 04/13/2008 06:57 PM 14336 asyncmac.sys 04/13/2008 06:40 PM 96512 atapi.sys 08/03/2004 09:29 PM 56623 ati1btxx.sys 08/03/2004 09:29 PM 11615 ati1mdxx.sys 08/03/2004 09:29 PM 12047 ati1pdxx.sys 08/03/2004 09:29 PM 30671 ati1raxx.sys 08/03/2004 09:29 PM 63663 ati1rvxx.sys 08/03/2004 09:29 PM 26367 ati1snxx.sys 08/03/2004 09:29 PM 21343 ati1ttxx.sys 08/03/2004 09:29 PM 36463 ati1tuxx.sys 08/03/2004 09:29 PM 29455 ati1xbxx.sys 08/03/2004 09:29 PM 34735 ati1xsxx.sys 08/03/2004 09:29 PM 327040 ati2mtaa.sys 08/03/2004 09:29 PM 701440 ati2mtag.sys 08/03/2004 09:29 PM 57856 atinbtxx.sys 08/03/2004 09:29 PM 13824 atinmdxx.sys 08/03/2004 09:29 PM 14336 atinpdxx.sys 08/03/2004 09:29 PM 52224 atinraxx.sys 08/03/2004 09:29 PM 104960 atinrvxx.sys 08/03/2004 09:29 PM 28672 atinsnxx.sys 08/03/2004 09:29 PM 13824 atinttxx.sys 08/03/2004 09:29 PM 73216 atintuxx.sys 08/03/2004 09:29 PM 31744 atinxbxx.sys 08/03/2004 09:29 PM 63488 atinxsxx.sys 04/13/2008 06:51 PM 59904 atmarpc.sys 08/18/2001 08:00 PM 31360 atmepvc.sys 04/13/2008 06:51 PM 55808 atmlane.sys 08/18/2001 08:00 PM 352256 atmuni.sys 08/17/2001 08:59 PM 3072 audstub.sys 10/06/2009 04:52 PM 335240 avgldx86.sys 10/06/2009 04:52 PM 27784 avgmfx86.sys 10/06/2009 04:52 PM 108552 avgtdix.sys 04/13/2008 06:36 PM 14208 battc.sys 08/18/2001 08:00 PM 4224 beep.sys 04/13/2008 06:53 PM 71552 bridge.sys 04/13/2008 06:46 PM 17024 bthenum.sys 04/13/2008 06:46 PM 37888 bthmodem.sys 04/13/2008 06:51 PM 101120 bthpan.sys 06/13/2008 11:05 AM 272128 bthport.sys 04/13/2008 06:46 PM 36480 bthprint.sys 04/13/2008 06:46 PM 18944 bthusb.sys 08/18/2001 04:52 AM 13952 cbidf2k.sys 04/13/2008 06:46 PM 17024 ccdecode.sys 08/18/2001 04:52 AM 7680 cd20xrnt.sys 08/18/2001 08:00 PM 18688 cdaudio.sys 04/13/2008 07:14 PM 63744 cdfs.sys 11/20/2008 07:19 PM 9072 cdr4_xp.sys 11/20/2008 07:19 PM 9200 cdralw2k.sys 04/13/2008 06:40 PM 62976 cdrom.sys 08/18/2001 08:00 PM 262528 cinemst2.sys 04/13/2008 07:16 PM 49536 classpnp.sys 08/18/2001 04:51 AM 6656 cmdide.sys 04/13/2008 06:36 PM 10240 compbatt.sys 08/18/2001 04:52 AM 14976 cpqarray.sys 08/18/2001 08:00 PM 11776 cpqdap01.sys 04/13/2008 06:31 PM 36736 crusoe.sys 08/18/2001 04:52 AM 179584 dac2w2k.sys 08/18/2001 04:52 AM 14720 dac960nt.sys 04/13/2008 06:40 PM 36352 disk.sys 04/13/2008 06:40 PM 14208 diskdump.sys 04/13/2008 06:44 PM 799744 dmboot.sys 04/13/2008 06:44 PM 153344 dmio.sys 08/18/2001 08:00 PM 5888 dmload.sys 04/13/2008 06:45 PM 52864 dmusic.sys 08/18/2001 05:07 AM 20192 dpti2o.sys 04/13/2008 06:45 PM 60160 drmk.sys 04/13/2008 06:45 PM 2944 drmkaud.sys 08/18/2001 08:00 PM 10496 dxapi.sys 04/13/2008 06:38 PM 71168 dxg.sys 08/18/2001 08:00 PM 3328 dxgthk.sys 08/17/2001 07:11 PM 66591 el90xbc5.sys 04/22/2006 01:44 AM 8064 ElbyCDIO.sys 04/12/2005 08:41 AM 4608 ElbyDelay.sys 08/17/2001 09:46 PM 6400 enum1394.sys 04/13/2008 07:14 PM 143744 fastfat.sys 04/13/2008 06:40 PM 27392 fdc.sys 08/17/2001 08:13 PM 27165 fetnd5.sys 12/16/2004 01:36 PM 42496 fetnd5bv.sys 04/13/2008 06:33 PM 44544 fips.sys 04/13/2008 06:40 PM 20480 flpydisk.sys 04/13/2008 06:32 PM 129792 fltmgr.sys 08/05/2009 09:48 PM 54752 fssfltr_tdi.sys 08/18/2001 08:00 PM 12160 fsvga.sys 08/18/2001 08:00 PM 7936 fs_rec.sys 08/18/2001 04:52 AM 125056 ftdisk.sys 04/13/2008 06:36 PM 46464 gagp30kx.sys 03/07/2005 10:52 AM 14408 GEARAspiWDM.sys 04/13/2008 04:36 PM 144384 hdaudbus.sys 04/13/2008 06:36 PM 20352 hidbatt.sys 04/13/2008 06:46 PM 25600 hidbth.sys 04/13/2008 06:45 PM 36864 hidclass.sys 04/13/2008 06:45 PM 19200 hidir.sys 04/13/2008 06:45 PM 24960 hidparse.sys 04/13/2008 06:45 PM 10368 hidusb.sys 08/18/2001 05:07 AM 25952 hpn.sys 03/21/2004 01:35 PM 51088 HPZid412.sys 03/21/2004 01:35 PM 16496 HPZipr12.sys 03/21/2004 01:35 PM 21744 HPZius12.sys 08/03/2004 09:41 PM 220032 hsfbs2s2.sys 08/03/2004 09:41 PM 685056 hsfcxts2.sys 08/03/2004 09:41 PM 1041536 hsfdpsp2.sys 04/13/2008 06:53 PM 264832 http.sys 04/13/2008 06:41 PM 8576 i2omgmt.sys 04/13/2008 06:41 PM 18560 i2omp.sys 04/13/2008 07:18 PM 52480 i8042prt.sys 08/04/2004 05:29 AM 161020 i81xnt5.sys 04/13/2008 06:40 PM 42112 imapi.sys 08/18/2001 04:52 AM 16000 ini910u.sys 04/13/2008 06:40 PM 5504 intelide.sys 04/13/2008 06:31 PM 36352 intelppm.sys 05/22/2003 06:44 AM 670203 Intels51.sys 04/13/2008 06:53 PM 36608 ip6fw.sys 08/18/2001 08:00 PM 32896 ipfltdrv.sys 04/13/2008 06:57 PM 20864 ipinip.sys 04/13/2008 06:57 PM 152832 ipnat.sys 04/13/2008 07:19 PM 75264 ipsec.sys 04/13/2008 06:54 PM 11264 irenum.sys 04/13/2008 06:36 PM 37248 isapnp.sys 07/07/2005 02:26 PM 55216 k750bus.sys 07/07/2005 02:26 PM 6144 k750cm.sys 07/07/2005 02:26 PM 6144 k750cmnt.sys 07/07/2005 02:26 PM 6576 k750mdfl.sys 07/07/2005 02:25 PM 89872 k750mdm.sys 07/07/2005 02:25 PM 5744 k750wh.sys 07/07/2005 02:25 PM 5744 k750whnt.sys 04/13/2008 06:39 PM 24576 kbdclass.sys 04/13/2008 06:45 PM 172416 kmixer.sys 04/13/2008 07:16 PM 141056 ks.sys 06/24/2009 11:18 AM 92928 ksecdd.sys 08/18/2001 08:00 PM 7680 mcd.sys 08/03/2004 09:41 PM 11868 mdmxsdk.sys 04/13/2008 06:36 PM 63744 mf.sys 08/18/2001 08:00 PM 4224 mnmdd.sys 04/13/2008 07:00 PM 30080 modem.sys 08/17/2001 09:57 PM 16128 MODEMCSA.sys 04/13/2008 06:39 PM 23040 mouclass.sys 08/17/2001 01:48 PM 12160 mouhid.sys 04/13/2008 06:39 PM 42368 mountmgr.sys 08/18/2001 04:52 AM 17280 mraid35x.sys 04/13/2008 06:32 PM 180608 mrxdav.sys 10/24/2008 11:21 AM 455296 mrxsmb.sys 04/13/2008 06:32 PM 19072 msfs.sys 04/13/2008 06:56 PM 35072 msgpc.sys 04/13/2008 06:39 PM 7552 mskssrv.sys 04/13/2008 06:39 PM 5376 mspclock.sys 04/13/2008 06:39 PM 4992 mspqm.sys 04/13/2008 06:36 PM 15488 mssmbios.sys 04/13/2008 06:39 PM 5504 mstee.sys 08/03/2004 09:41 PM 126686 mtlmnt5.sys 08/03/2004 09:41 PM 1309184 mtlstrm.sys 08/03/2004 09:29 PM 452736 mtxparhm.sys 04/13/2008 07:17 PM 105344 mup.sys 04/13/2008 06:43 PM 12672 mutohpen.sys 04/13/2008 06:46 PM 85248 nabtsfec.sys 04/13/2008 07:20 PM 182656 ndis.sys 04/13/2008 06:46 PM 10880 ndisip.sys 04/13/2008 06:57 PM 10112 ndistapi.sys 04/13/2008 06:55 PM 14592 ndisuio.sys 04/13/2008 07:20 PM 91520 ndiswan.sys 04/13/2008 06:57 PM 40576 ndproxy.sys 04/13/2008 06:56 PM 34688 netbios.sys 04/13/2008 07:21 PM 162816 netbt.sys 04/13/2008 06:51 PM 61824 nic1394.sys 08/18/2001 08:00 PM 12032 nikedrv.sys 04/13/2008 06:53 PM 40320 nmnt.sys 04/13/2008 06:32 PM 30848 npfs.sys 04/13/2008 07:15 PM 574976 ntfs.sys 08/03/2004 09:41 PM 180360 ntmtlfax.sys 08/18/2001 08:00 PM 2944 null.sys 08/04/2004 06:29 AM 1897408 nv4_mini.sys 08/18/2001 08:00 PM 12416 nwlnkflt.sys 08/18/2001 08:00 PM 32512 nwlnkfwd.sys 04/13/2008 06:56 PM 88320 nwlnkipx.sys 08/18/2001 08:00 PM 63232 nwlnknb.sys 08/18/2001 08:00 PM 55936 nwlnkspx.sys 04/13/2008 06:46 PM 61696 ohci1394.sys 08/18/2001 08:00 PM 3456 oprghdlr.sys 04/13/2008 06:31 PM 42752 p3.sys 04/13/2008 06:40 PM 80128 parport.sys 04/13/2008 06:40 PM 19712 partmgr.sys 08/18/2001 08:00 PM 6784 parvdm.sys 04/13/2008 06:36 PM 68224 pci.sys 08/18/2001 04:51 AM 3328 pciide.sys 04/13/2008 06:40 PM 24960 pciidex.sys 04/13/2008 06:36 PM 120192 pcmcia.sys 01/02/2008 08:14 PM 47360 pcouffin.sys 12/18/2008 11:16 AM 73840 PCTAppEvent.sys 04/03/2009 10:18 AM 130936 PCTCore.sys 12/11/2008 07:38 AM 159600 pctgntdi.sys 12/10/2008 10:36 AM 64392 pctplsg.sys 08/18/2001 05:07 AM 27296 perc2.sys 08/18/2001 05:07 AM 5504 perc2hib.sys 02/24/2005 11:29 AM 162176 PFC027.sys 11/08/2006 07:02 AM 21760 point32.sys 04/13/2008 07:19 PM 146048 portcls.sys 04/13/2008 06:31 PM 35840 processr.sys 04/13/2008 06:56 PM 69120 psched.sys 08/18/2001 08:00 PM 17792 ptilink.sys 11/20/2008 07:19 PM 43872 pxhelp20.sys 08/18/2001 04:52 AM 40320 ql1080.sys 08/18/2001 04:52 AM 33152 ql10wnt.sys 08/18/2001 04:52 AM 45312 ql12160.sys 08/18/2001 04:52 AM 40448 ql1240.sys 08/18/2001 04:52 AM 49024 ql1280.sys 08/18/2001 08:00 PM 8832 rasacd.sys 04/13/2008 07:19 PM 51328 rasl2tp.sys 04/13/2008 06:57 PM 41472 raspppoe.sys 04/13/2008 07:19 PM 48384 raspptp.sys 08/18/2001 08:00 PM 16512 raspti.sys 08/18/2001 08:00 PM 34432 rawwan.sys 04/13/2008 07:28 PM 175744 rdbss.sys 08/18/2001 08:00 PM 4224 rdpcdd.sys 04/13/2008 06:32 PM 196224 rdpdr.sys 04/14/2008 12:13 AM 139656 rdpwd.sys 08/03/2004 09:41 PM 13776 recagent.sys 04/13/2008 06:40 PM 57600 redbook.sys 11/14/2009 12:35 AM 52232 REGSYS701.SYS 04/24/2003 11:03 AM 74828 RESC_DWB.SYS 04/13/2008 06:46 PM 59136 rfcomm.sys 08/18/2001 08:00 PM 12032 rio8drv.sys 08/18/2001 08:00 PM 12032 riodrv.sys 05/08/2008 02:02 PM 203136 rmcast.sys 04/13/2008 06:56 PM 30592 rndismp.sys 04/13/2008 06:56 PM 30592 rndismpx.sys 08/18/2001 08:00 PM 5888 rootmdm.sys 08/03/2004 09:29 PM 166912 s3gnbm.sys 04/13/2008 06:40 PM 96384 scsiport.sys 04/13/2008 06:36 PM 79232 sdbus.sys 11/13/2007 10:25 AM 20480 secdrv.sys 04/13/2008 06:40 PM 15744 serenum.sys 04/13/2008 07:15 PM 64512 serial.sys 04/13/2008 06:40 PM 11904 sffdisk.sys 04/13/2008 06:40 PM 10240 sffp_mmc.sys 04/13/2008 06:40 PM 11008 sffp_sd.sys 04/13/2008 06:40 PM 11392 sfloppy.sys 04/13/2008 06:36 PM 40960 sisagp.sys 04/13/2008 06:46 PM 11136 slip.sys 08/03/2004 09:41 PM 129535 slnt7554.sys 08/03/2004 09:41 PM 404990 slntamr.sys 08/03/2004 09:41 PM 95424 slnthal.sys 08/03/2004 09:41 PM 13240 slwdmsup.sys 04/13/2008 06:36 PM 5888 smbali.sys 08/18/2001 08:00 PM 14592 smclib.sys 04/13/2008 06:46 PM 25344 sonydcam.sys 08/18/2001 05:07 AM 19072 sparrow.sys 04/13/2008 06:45 PM 6272 splitter.sys 10/11/2006 04:34 PM 611064 sptd.sys 08/04/2004 08:05 AM 96256 sptddrv1.sys 04/13/2008 06:36 PM 73472 sr.sys 12/11/2008 10:57 AM 333952 srv.sys 08/30/2005 12:47 AM 58320 ssm_bus.sys 08/30/2005 12:49 AM 6176 ssm_cm.sys 08/30/2005 12:49 AM 6176 ssm_cmnt.sys 08/30/2005 12:49 AM 8336 ssm_mdfl.sys 08/30/2005 12:49 AM 94000 ssm_mdm.sys 08/30/2005 12:47 AM 5840 ssm_wh.sys 08/30/2005 12:47 AM 5840 ssm_whnt.sys 08/24/2009 10:45 PM 5632 StarOpen.sys 12/18/2004 08:32 PM 38229 StMp3Rec.sys 04/13/2008 06:45 PM 49408 stream.sys 04/13/2008 06:46 PM 15232 streamip.sys 04/13/2008 06:39 PM 4352 swenum.sys 04/13/2008 06:45 PM 56576 swmidi.sys 08/18/2001 05:07 AM 16256 symc810.sys 08/18/2001 05:07 AM 32640 symc8xx.sys 08/18/2001 05:07 AM 28384 sym_hi.sys 08/18/2001 05:07 AM 30688 sym_u3.sys 04/13/2008 07:15 PM 60800 sysaudio.sys 04/13/2008 06:40 PM 14976 tape.sys 06/20/2008 11:51 AM 361600 tcpip.sys 06/20/2008 11:08 AM 225856 tcpip6.sys 04/13/2008 07:00 PM 19072 tdi.sys 04/14/2008 12:13 AM 12040 tdpipe.sys 04/14/2008 12:13 AM 21896 tdtcp.sys 04/14/2008 12:13 AM 40840 termdd.sys 08/18/2001 08:00 PM 51712 tosdvd.sys 08/18/2001 04:51 AM 4992 toside.sys 08/18/2001 08:00 PM 21376 tsbvcap.sys 04/13/2008 06:56 PM 12288 tunmp.sys 04/13/2008 06:36 PM 44672 uagp35.sys 04/13/2008 06:32 PM 66048 udfs.sys 08/18/2001 04:52 AM 36736 ultra.sys 04/13/2008 06:39 PM 384768 update.sys 04/13/2008 06:56 PM 12800 usb8023.sys 04/13/2008 06:56 PM 12800 usb8023x.sys 04/13/2008 06:45 PM 25600 usbcamd.sys 04/13/2008 06:45 PM 25728 usbcamd2.sys 04/13/2008 06:45 PM 32128 usbccgp.sys 08/18/2001 08:00 PM 4736 usbd.sys 04/13/2008 06:45 PM 30208 usbehci.sys 04/13/2008 06:45 PM 59520 usbhub.sys 04/13/2008 06:45 PM 15872 usbintel.sys 04/13/2008 06:45 PM 143872 usbport.sys 04/13/2008 06:47 PM 25856 usbprint.sys 04/13/2008 06:45 PM 15104 usbscan.sys 04/13/2008 06:45 PM 26368 usbstor.sys 04/13/2008 06:45 PM 20608 usbuhci.sys 04/13/2008 06:46 PM 121984 usbvideo.sys 10/11/2006 05:33 PM 223128 vaxscsi.sys 08/18/2001 08:00 PM 58112 vdmindvd.sys 04/13/2008 06:44 PM 20992 vga.sys 04/13/2008 06:36 PM 42240 viaagp.sys 12/27/2002 11:41 AM 26880 VIAAGP1.SYS 04/13/2008 06:40 PM 5376 viaide.sys 03/29/2004 05:45 AM 73600 viamraid.sys 04/13/2008 06:44 PM 81664 videoprt.sys 04/13/2008 06:41 PM 52352 volsnap.sys 04/13/2008 06:43 PM 14208 wacompen.sys 08/04/2004 05:29 AM 12415 wADV01nt.sys 08/04/2004 05:29 AM 12127 wADV02NT.sys 08/04/2004 05:29 AM 11775 wADV05NT.sys 08/04/2004 05:29 AM 11807 wADV07nt.sys 08/04/2004 05:29 AM 11295 wADV08NT.sys 08/04/2004 05:29 AM 11871 wADV09NT.sys 08/04/2004 05:29 AM 11935 wADV11nt.sys 04/13/2008 06:57 PM 34560 wanarp.sys 08/04/2004 05:29 AM 29311 wATV01nt.sys 08/04/2004 05:29 AM 19551 wATV02NT.sys 08/04/2004 05:29 AM 33599 wATV04nt.sys 08/04/2004 05:29 AM 22271 wATV06nt.sys 08/04/2004 05:29 AM 25471 wATV10nt.sys 08/04/2004 05:29 AM 23615 wCh7xxNT.sys 04/13/2008 07:17 PM 83072 wdmaud.sys 08/18/2001 08:00 PM 4352 wmilib.sys 10/18/2006 08:00 PM 38528 wpdusb.sys 08/18/2001 08:00 PM 12032 ws2ifsl.sys 08/04/2004 05:29 AM 12063 wSiINTxx.sys 04/13/2008 06:46 PM 19200 wstcodec.sys 09/28/2006 06:55 PM 77568 WudfPf.sys 09/28/2006 07:00 PM 82944 WudfRd.sys 08/04/2004 05:29 AM 19455 wVchNTxx.sys 361 File(s) 28881746 bytes 0 Dir(s) 138775113728 bytes free

#114 arfon.jones

arfon.jones

    Authentic Member

  • Authentic Member
  • PipPip
  • 71 posts

Posted 25 November 2009 - 05:13 PM

Hi again here is my ntbtlog I noticed when the hive_fix programe was runing that a couple of lines stated that acces was denied. dont know if thats of any use i have also uploaded a regmon zip thanks Service Pack 311 23 2009 14:39:29.500 Loaded driver \WINDOWS\system32\ntkrnlpa.exe Loaded driver \WINDOWS\system32\hal.dll Loaded driver \WINDOWS\system32\KDCOM.DLL Loaded driver \WINDOWS\system32\BOOTVID.dll Loaded driver sptd.sys Loaded driver \WINDOWS\System32\Drivers\WMILIB.SYS Loaded driver \WINDOWS\System32\Drivers\SPTDDRV1.SYS Loaded driver ACPI.sys Loaded driver pci.sys Loaded driver isapnp.sys Loaded driver compbatt.sys Loaded driver \WINDOWS\system32\DRIVERS\BATTC.SYS Loaded driver pciide.sys Loaded driver \WINDOWS\system32\DRIVERS\PCIIDEX.SYS Loaded driver aliide.sys Loaded driver intelide.sys Loaded driver toside.sys Loaded driver viaide.sys Loaded driver cmdide.sys Loaded driver REGSYS701.SYS Loaded driver \WINDOWS\System32\Drivers\ksecdd.sys Loaded driver MountMgr.sys Loaded driver ftdisk.sys Loaded driver PartMgr.sys Loaded driver VolSnap.sys Loaded driver cpqarray.sys Loaded driver \WINDOWS\system32\DRIVERS\SCSIPORT.SYS Loaded driver atapi.sys Loaded driver aha154x.sys Loaded driver sparrow.sys Loaded driver symc810.sys Loaded driver aic78xx.sys Loaded driver dac960nt.sys Loaded driver ql10wnt.sys Loaded driver amsint.sys Loaded driver asc.sys Loaded driver asc3550.sys Loaded driver mraid35x.sys Loaded driver i2omp.sys Loaded driver ini910u.sys Loaded driver ql1240.sys Loaded driver aic78u2.sys Loaded driver symc8xx.sys Loaded driver sym_hi.sys Loaded driver sym_u3.sys Loaded driver ABP480N5.SYS Loaded driver asc3350p.sys Loaded driver cd20xrnt.sys Loaded driver ultra.sys Loaded driver adpu160m.sys Loaded driver dpti2o.sys Loaded driver ql1080.sys Loaded driver ql1280.sys Loaded driver ql12160.sys Loaded driver perc2.sys Loaded driver perc2hib.sys Loaded driver hpn.sys Loaded driver cbidf2k.sys Loaded driver dac2w2k.sys Loaded driver VIAMRAID.SYS Loaded driver disk.sys Loaded driver \WINDOWS\system32\DRIVERS\CLASSPNP.SYS Loaded driver fltmgr.sys Loaded driver PxHelp20.sys Loaded driver Ntfs.sys Loaded driver NDIS.sys Loaded driver sisagp.sys Loaded driver viaagp.sys Loaded driver viaagp1.sys Loaded driver ohci1394.sys Loaded driver \WINDOWS\system32\DRIVERS\1394BUS.SYS Loaded driver Mup.sys Loaded driver alim1541.sys Loaded driver amdagp.sys Loaded driver agp440.sys Loaded driver agpCPQ.sys Loaded driver \SystemRoot\system32\DRIVERS\nic1394.sys Loaded driver \SystemRoot\system32\DRIVERS\processr.sys Loaded driver \SystemRoot\system32\DRIVERS\nv4_mini.sys Loaded driver \SystemRoot\system32\DRIVERS\imapi.sys Loaded driver \SystemRoot\System32\Drivers\ElbyDelay.sys Loaded driver \SystemRoot\system32\DRIVERS\cdrom.sys Loaded driver \SystemRoot\system32\DRIVERS\redbook.sys Loaded driver \SystemRoot\SYSTEM32\DRIVERS\GEARAspiWDM.sys Loaded driver \SystemRoot\system32\DRIVERS\usbuhci.sys Loaded driver \SystemRoot\system32\DRIVERS\usbehci.sys Loaded driver \SystemRoot\system32\DRIVERS\i8042prt.sys Loaded driver \SystemRoot\system32\DRIVERS\point32.sys Loaded driver \SystemRoot\system32\DRIVERS\mouclass.sys Loaded driver \SystemRoot\system32\DRIVERS\kbdclass.sys Loaded driver \SystemRoot\system32\drivers\ALCXWDM.SYS Loaded driver \SystemRoot\system32\drivers\ALCXSENS.SYS Loaded driver \SystemRoot\system32\DRIVERS\fetnd5bv.sys Loaded driver \SystemRoot\system32\DRIVERS\fdc.sys Loaded driver \SystemRoot\system32\DRIVERS\serial.sys Loaded driver \SystemRoot\system32\DRIVERS\serenum.sys Loaded driver \SystemRoot\system32\DRIVERS\parport.sys Loaded driver \SystemRoot\system32\DRIVERS\audstub.sys Loaded driver \SystemRoot\system32\DRIVERS\rasl2tp.sys Loaded driver \SystemRoot\system32\DRIVERS\ndistapi.sys Loaded driver \SystemRoot\system32\DRIVERS\ndiswan.sys Loaded driver \SystemRoot\system32\DRIVERS\raspppoe.sys Loaded driver \SystemRoot\system32\DRIVERS\raspptp.sys Loaded driver \SystemRoot\system32\DRIVERS\msgpc.sys Loaded driver \SystemRoot\system32\DRIVERS\psched.sys Loaded driver \SystemRoot\system32\DRIVERS\ptilink.sys Loaded driver \SystemRoot\system32\DRIVERS\raspti.sys Loaded driver \SystemRoot\system32\DRIVERS\termdd.sys Loaded driver \SystemRoot\system32\DRIVERS\swenum.sys Loaded driver \SystemRoot\system32\DRIVERS\update.sys Loaded driver \SystemRoot\system32\DRIVERS\mssmbios.sys Loaded driver \SystemRoot\System32\Drivers\NDProxy.SYS Did not load driver \SystemRoot\System32\Drivers\NDProxy.SYS Loaded driver \SystemRoot\system32\DRIVERS\usbhub.sys Did not load driver \SystemRoot\System32\Drivers\lbrtfdc.SYS Did not load driver \SystemRoot\System32\Drivers\Sfloppy.SYS Loaded driver \SystemRoot\System32\Drivers\i2omgmt.SYS Did not load driver \SystemRoot\System32\Drivers\Changer.SYS Did not load driver \SystemRoot\System32\Drivers\Cdaudio.SYS Loaded driver \SystemRoot\System32\Drivers\Fs_Rec.SYS Loaded driver \SystemRoot\System32\Drivers\Null.SYS Loaded driver \SystemRoot\System32\Drivers\Beep.SYS Loaded driver \SystemRoot\System32\drivers\vga.sys Loaded driver \SystemRoot\System32\Drivers\mnmdd.SYS Loaded driver \SystemRoot\System32\DRIVERS\RDPCDD.sys Loaded driver \SystemRoot\System32\Drivers\Msfs.SYS Loaded driver \SystemRoot\System32\Drivers\Npfs.SYS Loaded driver \SystemRoot\system32\DRIVERS\rasacd.sys Loaded driver \SystemRoot\system32\DRIVERS\ipsec.sys Loaded driver \SystemRoot\system32\DRIVERS\tcpip.sys Loaded driver \SystemRoot\system32\DRIVERS\netbt.sys Loaded driver \SystemRoot\System32\drivers\afd.sys Loaded driver \SystemRoot\system32\DRIVERS\netbios.sys Did not load driver \SystemRoot\system32\DRIVERS\p3.sys Did not load driver \SystemRoot\System32\Drivers\PCIDump.SYS Loaded driver \SystemRoot\system32\DRIVERS\rdbss.sys Loaded driver \SystemRoot\system32\DRIVERS\mrxsmb.sys Loaded driver \SystemRoot\system32\DRIVERS\wanarp.sys Loaded driver \SystemRoot\system32\DRIVERS\arp1394.sys Loaded driver \SystemRoot\system32\DRIVERS\hidusb.sys Loaded driver \SystemRoot\System32\Drivers\Fips.SYS Loaded driver \SystemRoot\System32\Drivers\Cdfs.SYS

#115 noahdfear

noahdfear

    Silver Member

  • Visiting Fellow
  • PipPipPip
  • 465 posts
  • MVP

Posted 27 November 2009 - 12:05 AM

Hi Arfon,

I've been studying all of the logs, looking for anything that might suggest what is causing the boot sequence to stall where it does, and as you know, have been addressing everything I see as suspect with some sort of action to work around it. We have gotten to a point where I see nothing else suspect. The latest Regmon log is void of any errors, failed or denied entries. The last log you posted, the list of .sys files, has been checked for filenames, sizes and dates created, with no irregularities. It's possible that I've overlooked something, though I did scrutinize carefully.

That said, a couple more things to try.

From the Hiren's BootCD menu, select Start BootCD.
At the menu, type 6 or use the arrow up key to highlight 6. Hard Disk Tools, then press Enter.
Type 1 or arrow up to 1. HDD Regenerator 1.61 then hit Enter.
Allow it to load and it will scan the system for Hard Disks, then display the results.
If only one is found, it will tell you to press any key to continue.
Press any key or select the proper hard disk if more than one, then continue.
The next screen will display 4 options - type 1 to select Scan and Repair then hit Enter.
Leave the default setting of 0 at the next screen to begin scanning at the beginning of the drive, then press Enter.
Your entire hard drive will now be scanned for bad sectors, and if any are found the utility will attempt to repair them.
Allow it to run to completion and make note of, then report the results to me.
Press Esc to exit the utility, then Ctrl+Alt+Del to restart the computer from the R:\> prompt.
See if the computer will boot successfully from the hard drive.

If unsuccessful, and you have an Operating System disc (Re-installation or Recovery cd will suffice here), eject the Hiren's disc and insert the Operating System disc, then restart and boot from the disc (you may need to press F12 to bring up the boot menu, where you can choose to start from the CD-Rom drive) by pressing any key when prompted to boot from the cd.
You should be presented with a Windows Setup screen, where you will press R to repair the system using the Recovery Console.
When loaded, you will be asked which operating system to logon to, which is generally 1. C:\Windows
Press 1 then Enter if applicable.
When/if prompted for the Administrator password, type the password you gave the Administrator account or press Enter to leave blank (blank is default on most systems).
At the C:\Windows> prompt, type chkdsk /r then hit Enter.
When checkdisk completes, type exit then hit Enter to restart and try a normal startup to the hard drive.

If still unsuccessful, go back to the recovery console and at the C:\Windows> prompt, type fixboot c: then hit Enter.
Type Y at the 'Are you sure prompt' then hit Enter.
You should receieve a 'new boot sector was successfully written' message then it will return to the C:\Windows> prompt.
Type exit and hit Enter to restart and attempt booting normally again.
Dave

    Advertisements

Register to Remove


#116 arfon.jones

arfon.jones

    Authentic Member

  • Authentic Member
  • PipPip
  • 71 posts

Posted 27 November 2009 - 06:13 PM

hello Dave I ran the Hdd regenarator which fully scaned the hard drive but found no errors. I tried normal bootup afterwards but no luck. I then inserted the recovery xp disk and and selected r when promted . then got this message. Setup did not find any hard disk drives on your computer. Make sure any hard disk drives are powerd on and properly connected to your computer, and that any disk related hardware configuration is correct. this may involve running a manufacturer-supplied diagnostic or setup program. setup canot continue to quit setup press F3. Obviously the hard drives are powerd otherwise hdd regenarator scan wouldnt have worked ?? or am i missing something.

#117 noahdfear

noahdfear

    Silver Member

  • Visiting Fellow
  • PipPipPip
  • 465 posts
  • MVP

Posted 27 November 2009 - 06:50 PM

Something odd about the Recovery Console - hmmm, safe to assume after running HDD Regenerator that the computer still gets to the same stage in the boot process? If so, the hard drive is definitely recognized. Please try the Recovery Console again.

Edited by noahdfear, 27 November 2009 - 06:54 PM.

Dave

#118 arfon.jones

arfon.jones

    Authentic Member

  • Authentic Member
  • PipPip
  • 71 posts

Posted 27 November 2009 - 07:05 PM

Tried a few more times now and get the same message. could the hard drive be damaged ??

#119 noahdfear

noahdfear

    Silver Member

  • Visiting Fellow
  • PipPipPip
  • 465 posts
  • MVP

Posted 27 November 2009 - 07:09 PM

What happened with HDD Regenerator? Any bad sectors reported, and if so, were they repaired? See if the drive is still acessible from MiniXP.
Dave

#120 arfon.jones

arfon.jones

    Authentic Member

  • Authentic Member
  • PipPip
  • 71 posts

Posted 27 November 2009 - 07:15 PM

I will do that tomorow sorry to tired to think !

Related Topics



0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users