Laptop w/Startup Issues (Logs Attached)

Discussion in 'Malware Help (A Specialist Will Reply)' started by AngelsWilliam, Dec 2, 2008.

Thread Status:
Not open for further replies.
  1. AngelsWilliam

    AngelsWilliam Private First Class

    My laptop has been exhibiting such extreme behavior that I don't want to wait to see if the behavior has been corrected. I know Combofix took a really, really long time.

    I have MS Updates set to notify me of the updates and give me the choice on what to download, and it hasn't notified me for about a month. Whenever I check the site, all I get is Windows Defender--none of the security updates that I got on my desktop.

    Yesterday, the first time I started my laptop up for the day, I got a bluescreen that said something about checking with my hardware supplier. When I restarted, I got a prompt to go to MS to get help for the problem, and it said something about driver issues. It gave steps to take to check the problem. It was time for me to go to bed, which is when I turn my laptop off, so I didn't take the steps.

    But, the next time I turned my laptop on, it worked okay, so I ran Avast! on full scan, including checking archives. It found nothing.

    When I turned on my laptop this morning, it gave me that non-system disk, press any key to continue message, and the only disk drive I have on this thing is a DVD-R drive that not only isn't programmed as the boot disk, but is also empty. I held the power button in for 5 seconds and got it to restart, but it acted really funky when it first came up. The time had changed to 12:30, January 31, 2016 or something like that. I normally wait for Webshots to change the date on the desktop calendar and then close its desktop manager, but it didn't do anything.

    The first thing I tried to do was update the time. I tried both time servers, and neither did anything. So, I closed out of the time adjustment window and tried to right click on the Webshots icon in the taskbar to shut down the desktop manager. The popup menu wouldn't come up. So, I opened task manager, and the CPU was at 100%. It said webshots.scr (which is the screensaver, which wasn't being used and hadn't in a long time) was using, like, 89% of it, so I ended that process. Then, it said that BOC Cleaner was using a lot of CPU, but then usage went down. It went up and down a couple more times, but just normal fluctuations--never back up toward 100%.

    All that was what made me decide to restart and run the malware detection tools. Right when I started Combofix, I got a notification that there was a trojan on my computer and was given a choice to just shut it down or remove all the files. I chose to remove all the files. I then got a notice that something was shutting down BOC Cleaner. Then, Combofix ran. (I turned off Avast On-Access protection while Combofix said "preparing to run." I had forgotten about turning off my antivirus program until I started it, but I remembered before the scan got going. OOPS)

    So, that's what's been going on. My first set of logs are attached. Thanks for your help!
     

    Attached Files:

  2. AngelsWilliam

    AngelsWilliam Private First Class

    My MGTools ZIP file is attached.
     

    Attached Files:

  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Sorry but you are not having malware problems. Your logs are clean. You may want to try uninstalling a few programs like Online Armor (which may be too much for your 512 MB of RAM laptop) and possible Comodo's BO Clean just to see if things improve.
     
  4. AngelsWilliam

    AngelsWilliam Private First Class

    Okay, I got rid of BOC and the program I added that I'm sure caused the problem because this all started after I added it. (It was called SUPER; it was an *.flv converter your site recommended, but its site did tell me I didn't have enough RAM but only told me it would run slowly.) Anyway, I got rid of both of those. I kept Online Armor because that had never caused a problem before, but BOC has slowed things down quite a bit in the past.

    Anyway, my system is still doing the following on startup:
    "Nonsystem disk....
    Press any key to continue."

    And, pressing any key only makes it beep at me, so I have to press the power button for 5 seconds. Then, when I use the start switch the second time, it boots up just fine...

    EXCEPT...

    I get a message saying something about my system clock being all bonkers and, sure enough, when my desktop comes up, my system calendar has defaulted to 12:00AM, January 4, 1980.

    I went into setup and did indeed find that the system had somehow set itself up to boot from the DVD-R, so I changed it to boot from the hard drive, but that didn't fix the problem.

    Any ideas?
     
  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    This is not a malware issue. You need to post in the Hardware or Software Forum.


    Again a possible hardware issue for the Hardware Forum. Sounds like your battery that maintains your BIOS settings may have gone bad and you probably need to replace it.

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommed you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no protection. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /u
        • Notes: The space between the combofix" and the /u, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
      • Delete the C:\combofix folder from combofix (if it exists)
    3. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    4. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Go to add/remove programs and uninstall HijackThis.
    6. You can delete the C:\MGtools folder and the C:\MGtools.exe file. You can also delete the C:\MGlogs.zip
    7. If you are running Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning steps in the READ ME for your Window version and see the steps to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.
    8. After doing the above, you should work thru the below link:
     
Thread Status:
Not open for further replies.

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds