Windows 7 Fails to Start After Malware Removal

Discussion in 'Software' started by sergeantpuffer, Mar 3, 2014.

  1. sergeantpuffer

    sergeantpuffer Private E-2

    I've come here from the Malware forum where TimW helped me rule out ongoing malware issues. Prior to coming here I ran some scans and fixes on my own, and I think my registry may have been damaged in the process.

    Here's that thread: http://forums.majorgeeks.com/showthread.php?p=1862580&posted=1

    Right now I can only load my OS using SafeMode. Windows gets to the login screen, I can enter the password, but the desktop almost never loads. If it does, Windows Explorer is immediately unresponsive, and I can't access the task manager at all. I'm always forced to hard boot, and start up in Safemode.

    Any help is very much appreciated!
     
  2. falconattack

    falconattack Command Sergeant Major

  3. rjordan

    rjordan Private First Class

    Hmm not seeing any "major" issues in those logs, just your common junkware type of things.

    Let's start with a few things.

    Are you familiar operating RegEdit?

    If so, open Regedit and check the following locations.

    HKLM\Software\Microsoft\Windows NT\Currentversion\Win Logon\
    Look for the key called "Shell". What do you see listed? It should *only* have Explorer.exe in there for the value.


    HKCR\Software\Microsoft\Windows NT\Currentversion\Win Logon\
    You *may* not see a key listed here called Shell, but if you do, same thing it should only have Explorer.exe in it for the value.


    Moving away from the registry, you should check what sort of startup programs are scheduled to run. I would recommend using Auto Runs to look through all startup items, services and scheduled tasks.

    Try unplugging *all* un-needed devices. For example, I once was troubleshooting an issue where explorer would constantly hang and desktop boots slow for 3 days with someone, turns out it was a bad USB mouse that was sending causing it.

    Have you created a new user profile and tried to see if the same thing happens? This will tell us if it is a localized issue or something corrupted with the OS itself.

    Let me know what ya find out.
     
    Last edited: Mar 3, 2014
  4. sergeantpuffer

    sergeantpuffer Private E-2

    Thanks guys, I'm running windows repair from the CD now, then I'll check into the registry and advanced startup options after that.
     
  5. sergeantpuffer

    sergeantpuffer Private E-2

    I'm not overly familiar with RegEdit - I can't seem to locate the directories you mentioned. I only see:

    HKEY...
    CLASSES_ROOT
    CURRENT_USER
    LOCAL_MACHINE
    USERS
    CURRENT_CONFIG
     
  6. rjordan

    rjordan Private First Class

    Ah my fault

    HKLM - HKey_Local_Machine

    HKCU - HKey_Current_User

    Also, typo, it shouldn't be HKCR but should be HKCU
     
  7. sergeantpuffer

    sergeantpuffer Private E-2

    I saw explorer as the only value under 'HKLM - HKey_Local_Machine', and shell wasn't present in the other directory you listed.

    I ran Auto Runs, but it didn't appear to do much. I checked my startup options, and everything is currently unchecked. No USB devices are attached.

    I'll go ahead and create a new user profile to see if that changes anything.
     
  8. sergeantpuffer

    sergeantpuffer Private E-2

    The same thing happens when I try to load Windows from the new user account (administrator).
     
  9. sergeantpuffer

    sergeantpuffer Private E-2

    Any further assistance would be greatly appreciated - the laptop is still out of commission!
     
  10. sexyandy81

    sexyandy81 MajorGeek

    I might be far fetched but it sounds to me you need to do a clean install of the OS as it sounds like its completely damaged files.
     
  11. sergeantpuffer

    sergeantpuffer Private E-2

    I think you're probably right. If I don't get other feedback soon I'll go ahead and do that.

    Thanks!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds