Tech Support Guy banner
Not open for further replies.
1 - 7 of 7 Posts

73 Posts
Discussion Starter · #1 ·
Hello all! My brother's comp is having problems so I am writing this up to see if you have any suggestions.

He turned on his computer today and it just froze at the windows loading screen. When my father came home from work he tried to boot it into safe mode to try and do a rollback to a safe point, but instead it would give him a screen with some lines on it which will follow in a moment. He then tried to run chkdsk in safe mode but it just hung there so he restarted it and it went straight into safe mode with no indication it was running chkdsk except the HD light is going so perhaps it is in the background. Either way we went ahead with the Windows Xp disk to try and do a repair and ran a chkdisk from there and it finished said it found 1 or more errors then went into safe mode again with the hd light running. He is unable to do anything at all in safe mode atm but is letting it sit there jic the hd is doing chkdisk again.

Anyway here are the lines it keeps giving.

multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\config\system
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\c_1252.nls
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\c_437.nls
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\l_intl.nls
multi(0)disk(0)rdisk(0)partition(1)\windows\FONTS\ vgaoem.fon
multi(0)disk(0)rdisk(0)partition(1)\windows\AppPat ch\drvmain.sdb
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\DRIVERS\ACPI.sys
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\DRIVERS\WMILIB.SYS
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\DRIVERS\pci.sys
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\DRIVERS\isapnp.sys
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\DRIVERS\viaide.sys
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\DRIVERS\PCIIDEX.SYS
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\Drivers\MountMgr.sys
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\DRIVERS\ftdisk.sys
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\Drivers\PartMgr.sys
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\Drivers\VolSnap.sys
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\DRIVERS\atapi.sys
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\DRIVERS\disk.sys
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\DRIVERS\CLASSPNP.SYS
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\DRIVERS\sr.sys
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\Drivers\KSecDD.sys
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\Drivers\Ntfs.sys
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\Drivers\NDIS.sys
multi(0)disk(0)rdisk(0)partition(1)\windows\system 32\Drivers\Mup.sys

The computer specs are:
Win Xp Home SP1
740MB Ram
Tornado GeForce FX5900 128MB
Sound Blaster 5.1 Live
EliteGroup KT600-a motherboard with an AMD Athlon 2700

If any one has any ideas please let me know or if you have need of any other informtion please ask and I will get it asp.

Thanks in advance!

150 Posts
Can you copy and paste your boot.ini to this thread?

right click "my computer"
Under "startup and recovery" click "settings"
Click on "edit" and paste it here.

73 Posts
Discussion Starter · #3 ·
They havnt been able to do anything on the computer even in safe mode...ALTHOUGH right now it is running chkdisk on its own after he opened the computer and made sure all the connections were tight. It is in the last step of chkdisk verifying freespace..Will update when its done.

51,987 Posts
Chkdsk should be run on that drive from the Recovery Console---it can't fix any disk errors while Windows is running, even in Safe Mode. If chkdsk ran on boot, that will do it, too.

73 Posts
Discussion Starter · #6 ·
Well they got the computer running again last night and found Flashtrack was running havoc on it. I think we got rid of it with the help of some guides tho it may still be in the registry. The computer is still acting up and I asked for them to email me a regedit and boot.ini of it and the email didnt get to me yet. As soon as it does will post it here.

73 Posts
Discussion Starter · #7 ·
This will be 1 post edited in a min once I get a regedit done. This was it for the boot.ini file

[boot loader]
[operating systems]
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /fastdetect

and the HiJackthis log jic

Logfile of HijackThis v1.99.0
Scan saved at 12:11:21 AM, on 1/18/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\Program Files\Yahoo!\browser\ybrwicon.exe
C:\Program Files\2Wire\2PortalMon.exe
C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\CAVTray.exe
C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\CAVRID.exe
C:\Program Files\Logitech\MouseWare\system\em_exec.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\ISafe.exe
C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\VetMsg.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Bob Hubbs\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =*
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =*
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =*
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =*
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =*
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =*
R1 - HKLM\Software\Microsoft\Internet Explorer\SearchURL,(Default) =*
F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\Userinit.exe
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Flash Extender - {95795B67-BBAB-47d0-8A9F-069E8242C0E5} - (no file)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [Jet Detection] "C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
O4 - HKLM\..\Run: [YBrowser] C:\Program Files\Yahoo!\browser\ybrwicon.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [2wSysTray] C:\Program Files\2Wire\2PortalMon.exe
O4 - HKLM\..\Run: [CaAvTray] "C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\CAVTray.exe"
O4 - HKLM\..\Run: [CAVRID] "C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\CAVRID.exe"
O4 - HKLM\..\Run: [Mirabilis ICQ] C:\PROGRA~1\ICQ\ICQNet.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Global Startup: Microsoft Find Fast.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
O9 - Extra button: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\Common\ylogin.dll
O9 - Extra 'Tools' menuitem: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\Common\ylogin.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes.dll
O9 - Extra button: ICQ Pro - {6224f700-cba3-4071-b251-47cb894244cd} - C:\PROGRA~1\ICQ\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\PROGRA~1\ICQ\ICQ.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) -
O16 - DPF: {205FF73B-CA67-11D5-99DD-444553540006} (CInstall Class) -
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) -
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (FilePlanet Download Control Class) -
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
O16 - DPF: {D18F962A-3722-4B59-B08D-28BB9EB2281E} (PhotosCtrl Class) -
O23 - Service: CAISafe - Computer Associates International, Inc. - C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\ISafe.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: Fix-It Task Manager - Ontrack Data International - C:\PROGRA~1\Ontrack\Fix-It\mxtask.exe
O23 - Service: NVIDIA Display Driver Service - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: VET Message Service - Computer Associates International, Inc. - C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\VetMsg.exe
1 - 7 of 7 Posts
Not open for further replies.