Winlogon.exe. moved to vault.. computer blue screens at boot now

Discussion in 'Malware Help (A Specialist Will Reply)' started by excellrec, Dec 6, 2006.

  1. excellrec

    excellrec Private E-2

    So this morning I lazily rolled out of bed and hopped on the computer, the antivirus had found something on the overnight scan so I casually moved it to the vault before my eyes had even focused enough from waking up. Then my computer shuts down and I can't reboot. Whoops! The file that got moved was winlogon.exe. Now I can't log-in to windows.. what the hell do I do now?
     
  2. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    If the file "winlogon.exe" was moved to the vault then you most likely a bad rough infection. I doubt it will work but have you tried Safe Mode?

    I would start with a repair of Windows to replace the files and then once you can login to windows we can begin the cleaning. It's up to you!
     
  3. excellrec

    excellrec Private E-2

    Suprisingly enough I can login with safe mode. I also have a xp installation on another hard disk in the system so I can logon to a regular install and work with files on the damaged install from there. I have tried extracting the winlogon.exe file from the xp disk and replacing the one on the bad install and that didn't seem to help. So right now I'm just kinda stuck as to what i should do next. I also feel it important to mention that re-installing is a very last resort type of option for me as I heavily modify the windows installs and it typically takes me quite awhile to get them configured to my liking again.

    The BSOD error message that occurs right after the windows logo and loading screen is as follows:

    STOP: c000021a {fatal system error}
    The windows logon process system process terminated unexpectedly with a status of 0xc0000022 (0x00000000 0x00000000). The system has shut down
     
  4. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    If you can get into Safe Mode, try to recover the file from the Vault. We can clean whatever infection you have if you can get into Windows and the error fixed.

    What AV do you have?
     
  5. excellrec

    excellrec Private E-2

    I recovered the file out of the vault and it still doesnt seem to be working right. I have AVG Free as an anti-virus. Any other ideas?
     
  6. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Do you have Cable/DSL? If so, boot back into Safe Mode w/ Networking and try to run the below online scans.

     
  7. excellrec

    excellrec Private E-2

    Ok, I ran those anti-virus'. The problem still reamins. here's the logs. This really sucks. Thanks for helping though. I'm anxious to hear any other ideas you may have Garrick, or anyone else.
     

    Attached Files:

  8. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Well I was expecting more from your online scans, they're still not clean but better than I expected.

    Do you have you WinXP disc? If so, it would be best to do a "Repair" reinstall of your OS. By doing this it will allow you to replace to files and should allow windows to boot properly without losing any data. Once you can get into Windows without this error we can begin cleaning.

    If you do this repair, set the BIOS to boot from your CD drive. Insert the WinXP disc and boot from the CD. When setup begins be sure you do not press the first "R" as this goes into the Recovery Console.

    Also, once the repair has been completed, if you get the option to "Create New User Accounts" skip this part as it can replace you current account and settings.

    If you have any questions feel free to ask.
     
  9. excellrec

    excellrec Private E-2

    I'd actually just tried doing the repair installation from the disc right before I checked this thread again. The problem remains. lol, Any other ideas?
     
  10. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Let me get this straight, you did a "Repair" of Windows and the problem still occurs?
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds