System stalls in normal mode & safe mode when "Loading your personal settings"

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by dandla, Dec 10, 2007.

  1. dandla

    dandla Private E-2

    Aloha,
    Our problem has been going on for several days now...as I said in the thread title, my 'puter seems to stall in both normal mode and safe mode at the screen "Windows is loading your personal settings".
    I've tried six different times this a.m. to boot up, 3 times normal mode, 3 times safe mode. If I can't boot up in Safe Mode I'm lost as to how to start any kind of repair or even system restore.
    The system is a Dell dimension 4600 with 512 RAM, dual HD & WXP-SP2. The only users are my wife and myself. I have not assigned a password to the Admisistrator account and we use a common logon screen with no password for ease of use. We do have Guest Account enabled.
    Our Firewall and Anti-virus protection is Zone Alarm. Our maintenance routine is to run the following: 1) daily, Spybot S & D, AdAwareSE, A-squared, Window Washer, 2) weekly, Registry Mechanic, 3) monthly, Win Disk defrag and Win Disk cleanup.
    Recently, I was in Spybot system tools and opened startup and found a file titled hblogon. I did a google search and found this to be a trojan. My wife followed explicit instructions for its removal and was succesful as far as she knows.
    Now in all this info if you've lost track of what my question is...How do I get into the system to boot up without entry via safe mode??? I have not been able to follow your explanations about entering boot.ini in other threads.
    I anxiously await someones reply.
    Aloha and Mahalo nui loa ( goodbye and thank you very much),
    dandla
     
  2. dandla

    dandla Private E-2

    aloha Again,
    I was finally able to get into the system by continually hitting the enter key after the splash screen appeared. Once in, I followed all the instructions provided in the thread "Malware removal" by "Chaslang". It didn'
    t fix my problem but I'm that much closer to determining with your reviiews fof the logs if my machine is acting as someones "bot"
    I remain patient for your reply,
    dandla
     
  3. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    We need you to attach the logs for:
    CombFix
    AVG-Antipsyware
    MGLogs.zip

    Please follow the instructions in the below link and attach the requested logs when you finish these instructions.

    READ & RUN ME FIRST. Malware Removal Guide
     
  4. dandla

    dandla Private E-2

    Aloha,
    If I've followed directions correctly, you should have what you've asked for. I really appreciate your help and look forward to your reply.
    Again many thx,
    Dandla
     

    Attached Files:

  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    I am not seeing any malware problems. I suggest you post in the software forum, :)

    You can delete the C:\MGtools folder and the C:\MGtools.exe file. You can also delete C:\MGlogs.zip
     
  6. dandla

    dandla Private E-2

    aloha TimW,
    Thanks for your reply...Since receiving your reply, I've tried a repair of XP both through the recovery console and by initiating a repair from the CD-ROM.
    Those efforts have at least allowed me to get a logon screen, however its the wrong screen. It comes up as the Administrator logon followed by qan error message that I do not have authority. I simply hit enter and it brings me to my personal settings. I'm at the point now where I believe I should start a complete Re-install.
    I thought I had created a XP re-install CD with SP-2 Slipstreamed into it, however when loading it I get an error msg that it can't find the NTldr...so obviously my efforts failed.
    I had previously mistakenly omitted some information that may have proved helpful. While using the tools/startup in Spybot Search & destroy, I found a file titled hblogon.exe Upon further investigation, others on the web opined it appeared to be a trojan. We followed the steps for removal provided by spybot. I don't know how to further determine if I got all of it.
    Do you have any other sage advice for me before I foolishly undertake any further major effort, i.e. a complete re-installation.
    Thanks again for your help and review of the logs.
    dandla
     
  7. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You have very few services running on this machine ...have you done any registry repairs to it?
     
  8. dandla

    dandla Private E-2

    aloha tim,
    yes both via Ccleaner as your site recommends and weekly with Registry Mechanic.
     
  9. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You may have removed some needed registry items .....and if so, a repair install will not work. I would suggest that you remove the hard drive and slave it into another computer so that you can save your data and then return it to the original machine and do a reformat and reinstall. Do you have backups from any registry repairs you have made?
     
  10. dandla

    dandla Private E-2

    Aloha Tim,
    I'm beginning to gather all the things I need to do a complete re-installation.
    Yes to your question of back-up for the registry cleaning I have done...using both Registry Mechanic and CCleaner. I've located the Registry mechanic back-ups but can't locate CCleaner back-ups. I have 30 Registry Mechanic backups. Do I restore them all or just the last day, and how do I restore them??? Is there a forum thread for uninstalling and re-installation of WinXP???
    again many thx for the help,
    dandla
     
  11. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    I'm not familiar with Registry Mechanic ....CCleaner should be in your My Documents folder and start with cc_xxxxxxxxxxxxxxx- reg something ...just double click it ...I don't know when the problems started, but you would have to keep adding backup to the system until it became stable again ...it's that or copy your data to discs and then do a complete reinstall.

    This might best be handled in the software forum.
     
  12. dandla

    dandla Private E-2

    Aloha Tim,
    I finally got squared away...after doing a complete clean re-install. Thanks for all the help. It was a learning experience.
    dandla
     
  13. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member


MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds