can't defrag, chkdsk, boot into safemode no system restore

Discussion in 'Hardware' started by ecve, Dec 7, 2008.

  1. ecve

    ecve Private E-2

    I have a HP Laptop Windows XP SP3

    My laptop is having problems defragging the message i get is: disk defragmenter could not start.
    In addition I couldn't chkdsk= the type of file is nfts. cannot lock current drive. chkdsk cannot run because the volume is in use by another process. would you like to schedule this volume to be checked the next time the sytem restarts...yes

    I tried these steps:
    1. Disk Defragment in Safe Mode
    2. Register related DLL files
    3. Add a new Disk Defragmenter
    4. Reinstall the Disk Defragmenter Engine
    5. Adjust Paging file size
    6.entering BIOS and checking if the hard drive is recognized as NTFS
    7. virus scan with microsoft safety.live.com
    8. Run chkdsk in windows recovery mode= chkdsk /r
    still get the message disk defragmenter could not start.
    I thought maybe it was a virus so i started doing the read me first malware removal.
    1. remove programs via add/remove
    2. update java
    3. msconfif normal start up
    4. emptied all quaranteed type folders
    5. download and run ccleaner
    6. enabled viewing af all hidden sytem files
    7. superantispyware, spybot, malware anti-malware, combofix.exe and mgtoos.exe
    8. ran superantispyware
    1. unplugged cable modem...forgot to turnoff wireless....still had an internet signal when program was running..
    2. had some errors. froze in mid scan for over an hour. manually restarted computer. restarted scan. stopped in mid scan. then i realized i was connected to the internet. disconnected and reran.
    3. ran spybot and message said files are corrupted redownload.
    4. Could not redownload or go to anywebsites to download
    5. tried to reboot into safemode bluescreen comes up goes to fast for me to read.
    6. tried to go to system restore, no restore points, restore is on
    7. uninstalled all recently downloaded items except ccleaner and superantispyware.
    8. restored all superantispyware quanranteed items. still having problems.

    Here are the superantispyware logs..

    SUPERAntiSpyware Scan Log
    http://www.superantispyware.com

    Generated 12/04/2008 at 08:05 PM

    Application Version : 4.22.1014

    Core Rules Database Version : 3663
    Trace Rules Database Version: 1643

    Scan type : Quick Scan
    Total Scan Time : 00:02:49

    Memory items scanned : 525
    Memory threats detected : 0
    Registry items scanned : 548
    Registry threats detected : 15
    File items scanned : 0
    File threats detected : 0

    Trojan.Homepage/Puper
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run#wininet.dll [ regperf.exe ]

    Trojan.Media-Codec
    HKCR\Media-Codec.Chl
    HKCR\Media-Codec.Chl\CLSID

    Rootkit.TDSServ
    HKLM\SOFTWARE\TDSS
    HKLM\SOFTWARE\TDSS#build
    HKLM\SOFTWARE\TDSS#type
    HKLM\SOFTWARE\TDSS#serversdown
    HKLM\SOFTWARE\TDSS#cmddelay
    HKLM\SOFTWARE\TDSS\version
    HKLM\SOFTWARE\TDSS\version#/ctl/crcmds/init
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\tdssdata
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\tdssdata#affid

    SUPERAntiSpyware Scan Log
    http://www.superantispyware.com

    Generated 12/04/2008 at 08:26 PM

    Application Version : 4.22.1014

    Core Rules Database Version : 3663
    Trace Rules Database Version: 1643

    Scan type : Quick Scan
    Total Scan Time : 00:16:54

    Memory items scanned : 537
    Memory threats detected : 0
    Registry items scanned : 547
    Registry threats detected : 5
    File items scanned : 8080
    File threats detected : 0

    Rootkit.TDSServ
    HKLM\SOFTWARE\TDSS
    HKLM\SOFTWARE\TDSS#serversdown
    HKLM\SOFTWARE\TDSS\version
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TDSSserv.sys
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TDSSserv.sys

    SUPERAntiSpyware Scan Log
    http://www.superantispyware.com

    Generated 12/04/2008 at 08:47 PM

    Application Version : 4.22.1014

    Core Rules Database Version : 3663
    Trace Rules Database Version: 1643

    Scan type : Quick Scan
    Total Scan Time : 00:16:24

    Memory items scanned : 533
    Memory threats detected : 0
    Registry items scanned : 547
    Registry threats detected : 5
    File items scanned : 8081
    File threats detected : 0

    Rootkit.TDSServ
    HKLM\SOFTWARE\TDSS
    HKLM\SOFTWARE\TDSS#serversdown
    HKLM\SOFTWARE\TDSS\version
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TDSSserv.sys
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TDSSserv.sys





    Should i reformat my drive???
     
  2. VLo123

    VLo123 Private E-2

    Go to Start > Run and type: devmgmt.msc and hit OK

    Go to View > Show hidden devices

    Go to Non-Plug and Play Drivers
    locate TDSServ.sys
    right click on TDSServ.sys and select Disable (NOT UNINSTALL)

    finalize and then reboot your machine.. Let your chkdisk run and your virus/malware software do their jobs from there...

    Hope this helps...
     
  3. tarmin8or

    tarmin8or Private First Class

    Vlo123,

    What does the "Go to Start > Run and type: devmgmt.msc and hit OK"
    command do???

    Thanks.
     
  4. sach2

    sach2 Major Geek Extraordinaire

    It opens Device Manager window.
     
  5. tarmin8or

    tarmin8or Private First Class

    Ahh! Thank you!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds