Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

sony vista 64bit crcdisk.sys problem


  • This topic is locked This topic is locked
9 replies to this topic

#1 data42

data42

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:02:19 PM

Posted 13 February 2012 - 10:24 AM

hello farbar,

i have a sony vaio desktop that will not boot and when i searched the error code i got your forum.
http://www.bleepingcomputer.com/forums/topic423157.html
i followed the instructions. here is the Text file contents:

Scan result of Farbar Recovery Scan Tool Version: 11-02-2012
Ran by SYSTEM at 2012-02-12 21:59:51
Running from F:\
Windows Vista ™ Home Premium Service Pack 1 (X64) OS Language: English(US)
The current controlset is ControlSet001

========================== Registry (Whitelisted) =============

HKLM\...\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide [1584184 2008-01-20] (Microsoft Corporation)
HKLM\...\Run: [RtHDVCpl] RAVCpl64.exe [x]
HKLM\...\Run: [Skytel] Skytel.exe [x]
HKLM\...\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe [151064 2008-10-25] (Intel Corporation)
HKLM\...\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe [209432 2008-10-25] (Intel Corporation)
HKLM\...\Run: [Persistence] C:\Windows\system32\igfxpers.exe [182808 2008-10-25] (Intel Corporation)
HKLM-x32\...\Run: [Intuit SyncManager] C:\Program Files (x86)\Common Files\Intuit\Sync\IntuitSyncManager.exe startup [623880 2008-09-09] (Intuit Inc. All rights reserved.)
HKU\Default\...\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem [1555968 2008-01-20] (Microsoft Corporation)
HKU\Default\...\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter [x]
HKU\Default User\...\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem [1555968 2008-01-20] (Microsoft Corporation)
HKU\Default User\...\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter [x]
HKU\Raymond\...\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [39408 2008-12-11] (Google Inc.)
HKU\Raymond\...\Run: [Messenger (Yahoo!)] "C:\PROGRA~2\Yahoo!\Messenger\YahooMessenger.exe" -quiet [5252408 2010-06-01] (Yahoo! Inc.)
HKU\Raymond\...\Run: [YSearchProtection] C:\Program Files (x86)\Yahoo!\Search Protection\YspService.exe [296248 2010-06-13] (Yahoo! Inc.)
HKU\Shelbie\...\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter [x]
HKU\Shelbie\...\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [39408 2008-12-11] (Google Inc.)
HKU\Shelbie\...\Run: [WMPNSCFG] C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe [x]
HKLM-x32\...\Winlogon: [Userinit] c:\windows\syswow64\userinit.exe,
Winlogon\Notify\avldr:
Winlogon\Notify\igfxcui: igfxdev.dll (Intel Corporation)
Tcpip\Parameters: [DhcpNameServer] 209.18.47.61 209.18.47.62 192.168.1.1
SubSystems: [Windows] ==> ZeroAccess

==================== Services (Whitelisted) ======

3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [109056 2009-09-28] (ArcSoft Inc.)
2 btwdins; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [832552 2008-10-14] (Broadcom Corporation.)
2 FlipShare Service; "C:\Program Files (x86)\Flip Video\FlipShare\FlipShareService.exe" [451904 2009-06-04] ()
2 IviRegMgr; "C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe" [112152 2007-01-04] (InterVideo)
3 MSCSPTISRV; "C:\Program Files (x86)\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe" [53248 2008-05-20] (Sony Corporation)
3 PACSPTISVR; "C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe" [53248 2008-05-20] (Sony Corporation)
2 QBCFMonitorService; "C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe" [24576 2008-09-10] (Intuit)
3 QBFCService; "C:\Program Files (x86)\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe" [61440 2008-08-08] (Intuit Inc.)
2 RelevantKnowledge; C:\Program Files (x86)\RelevantKnowledge\rlservice.exe /service [107136 2010-11-08] (TMRG, Inc.)
2 RtkAudioService; C:\Windows\RtkAudioService.exe [134656 2008-10-16] (Realtek Semiconductor)
2 SampleCollector; "C:\Program Files\Sony\VAIO Care\collsvc.exe" "/service" "/counter=\Processor(_Total)\% Processor Time:5" "/counter=\PhysicalDisk(_Total)\Disk Bytes/sec:5" "/counter=\Network Interface(*)\Bytes Total/sec:5" "/directory=inteldata" [167424 2008-09-29] (Intel Corporation)
3 SOHCImp; "C:\Program Files (x86)\Sony\VAIO Media plus\SOHCImp.exe" [103712 2008-10-21] (Sony Corporation)
3 SOHDms; "C:\Program Files (x86)\Sony\VAIO Media plus\SOHDms.exe" [353568 2008-10-21] (Sony Corporation)
3 SOHDs; "C:\Program Files (x86)\Sony\VAIO Media plus\SOHDs.exe" [62752 2008-10-21] (Sony Corporation)
3 SPTISRV; "C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SPTISRV.exe" [77824 2008-05-20] (Sony Corporation)
2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960 2008-09-18] (ArcSoft, Inc.)
3 VAIO Entertainment TV Device Arbitration Service; "C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe" [73728 2008-09-08] (Sony Corporation)
2 VAIO Event Service; "C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe" [203616 2008-10-17] (Sony Corporation)
2 VAIO Power Management; "C:\Program Files\Sony\VAIO Power Management\SPMService.exe" [407392 2008-09-05] (Sony Corporation)
2 VCFw; "C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe" [446464 2008-09-03] (Sony Corporation)
2 VcmIAlzMgr; "C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe" [369952 2008-10-01] (Sony Corporation)
3 VcmXmlIfHelper; "C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe" [108832 2008-09-19] (Sony Corporation)
3 Vcsw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe -RunBySCM [279848 2008-09-08] (Sony Corporation)
2 VzCdbSvc; "C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe" [192512 2008-09-08] (Sony Corporation)
3 ATTRcAppSvc; "C:\Program Files (x86)\AT&T\Communication Manager\RcAppSvc.exe" /n "ATTRcAppSvc" [x]
3 CAATT; "C:\Program Files (x86)\AT&T\Communication Manager\ConAppsSvc.exe" /n "CAATT" [x]

========================== Drivers (Whitelisted) =============

3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2008-04-24] (ArcSoft, Inc.)
3 e1yexpress; C:\Windows\System32\DRIVERS\e1y60x64.sys [316544 2008-10-20] (Intel Corporation)
0 pavboot; C:\Windows\System32\Drivers\pavboot64.sys [30792 2010-06-22] (Panda Security, S.L.)
3 rimsptsk; C:\Windows\System32\DRIVERS\rimssn64.sys [85504 2008-10-22] (REDC)
2 risdptsk; C:\Windows\System32\DRIVERS\risdsn64.sys [76288 2008-10-22] (REDC)
3 rt70x64; C:\Windows\System32\DRIVERS\netr7064.sys [380928 2009-02-26] (Ralink Technology Corp.)
1 SASDIFSV; \??\C:\Users\Raymond\AppData\Local\Temp\SuperAntiSpyware\SASDIFSV.SYS [12872 2010-02-17] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
3 SASENUM; \??\C:\Users\Raymond\AppData\Local\Temp\SuperAntiSpyware\SASENUM.SYS [12872 2010-02-17] ( SUPERAdBlocker.com and SUPERAntiSpyware.com)
3 swmsflt; C:\Windows\System32\drivers\swmsflt.sys [29704 2009-09-05] ()
3 SWNC8U56; C:\Windows\System32\DRIVERS\swnc8u56.sys [114688 2007-06-27] (Sierra Wireless Inc.)
3 SWUMX56; C:\Windows\System32\DRIVERS\swumx56.sys [89216 2007-06-27] (Sierra Wireless Inc.)
3 msiserver; C:\Windows\System32\msiexec /V [x]
1 SASKUTIL; \??\C:\Users\Raymond\AppData\Local\Temp\SuperAntiSpyware\SASKUTIL.SYS [x]

========================== NetSvcs (Whitelisted) ===========

============ One Month Created Files and Folders ==============

2012-02-11 10:44 - 2012-02-12 19:50 - 4226998272 __ASH C:\hiberfil.sys
2012-02-08 01:20 - 2012-02-08 01:20 - 0000000 __SHD C:\found.000
2012-02-07 23:09 - 2012-02-11 10:40 - 0812846 ____A C:\Windows\ntbtlog.txt
2012-02-07 22:39 - 2012-02-07 22:39 - 0001054 ____A C:\Windows\PFRO.log
2012-02-06 23:35 - 2012-02-06 23:35 - 0448556 ____A C:\Windows\dd_vcredistMSI0794.txt
2012-02-06 23:35 - 2012-02-06 23:35 - 0011622 ____A C:\Windows\dd_vcredistUI0794.txt
2012-02-06 23:23 - 2012-02-07 18:53 - 0000424 ____A C:\Windows\SysWOW64\OSSService.log
2012-02-06 20:41 - 2012-02-06 20:41 - 0000000 ____D C:\Users\All Users\SUPERAntiSpyware.com
2012-02-06 20:41 - 2012-02-06 20:41 - 0000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2012-02-06 20:40 - 2012-02-06 20:40 - 0000000 ____D C:\Users\Raymond\AppData\Roaming\SUPERAntiSpyware.com
2012-02-02 12:37 - 2008-11-13 13:33 - 0000715 ____A C:\Users\All Users\Start Menu\Programs\Startup\Bluetooth.lnk
2012-02-02 12:24 - 2012-02-06 20:12 - 0000000 ____D C:\Windows\pss


============ 3 Months Modified Files and Folders =============

2012-02-12 21:58 - 2012-02-12 21:58 - 0000000 ____D C:\FRST
2012-02-12 19:50 - 2012-02-11 10:44 - 4226998272 __ASH C:\hiberfil.sys
2012-02-12 19:50 - 2006-11-02 07:21 - 0327504 ____A C:\Windows\System32\FNTCACHE.DAT
2012-02-11 10:40 - 2012-02-07 23:09 - 0812846 ____A C:\Windows\ntbtlog.txt
2012-02-08 01:20 - 2012-02-08 01:20 - 0000000 __SHD C:\found.000
2012-02-07 22:39 - 2012-02-07 22:39 - 0001054 ____A C:\Windows\PFRO.log
2012-02-07 19:13 - 2009-01-13 17:38 - 1743124 ____A C:\Windows\WindowsUpdate.log
2012-02-07 19:13 - 2008-11-13 12:30 - 0000012 ____A C:\Windows\bthservsdp.dat
2012-02-07 19:13 - 2006-11-02 07:42 - 0032542 ____A C:\Windows\Tasks\SCHEDLGU.TXT
2012-02-07 19:13 - 2006-11-02 07:42 - 0000006 ___AH C:\Windows\Tasks\SA.DAT
2012-02-07 19:13 - 2006-11-02 07:22 - 0003616 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2012-02-07 19:13 - 2006-11-02 07:22 - 0003616 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2012-02-07 19:09 - 2009-09-05 21:12 - 0000000 ____D C:\Users\Raymond\AppData\LocalLow
2012-02-07 18:54 - 2011-08-06 10:00 - 0000254 ___AH C:\Windows\Tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job
2012-02-07 18:54 - 2010-01-28 18:18 - 0000894 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2012-02-07 18:53 - 2012-02-06 23:23 - 0000424 ____A C:\Windows\SysWOW64\OSSService.log
2012-02-07 18:53 - 2011-08-06 10:00 - 0000304 __ASH C:\Windows\Tasks\Fccpqoeij.job
2012-02-07 18:53 - 2011-08-06 10:00 - 0000252 ___AH C:\Windows\Tasks\{810401E2-DDE0-454e-B0E2-AA89C9E5967C}.job
2012-02-07 18:53 - 2008-11-13 13:20 - 0000000 ____D C:\Users\All Users\NVIDIA
2012-02-07 18:53 - 2008-11-13 13:20 - 0000000 ____D C:\ProgramData\NVIDIA
2012-02-07 06:01 - 2011-02-01 19:31 - 0000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2012-02-06 23:36 - 2008-12-11 02:18 - 0000000 ____D C:\Users\All Users\Microsoft Help
2012-02-06 23:36 - 2008-12-11 02:18 - 0000000 ____D C:\ProgramData\Microsoft Help
2012-02-06 23:35 - 2012-02-06 23:35 - 0448556 ____A C:\Windows\dd_vcredistMSI0794.txt
2012-02-06 23:35 - 2012-02-06 23:35 - 0011622 ____A C:\Windows\dd_vcredistUI0794.txt
2012-02-06 23:15 - 2010-01-28 18:18 - 0000898 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2012-02-06 22:22 - 2010-11-29 10:17 - 0000000 ____D C:\Windows\Minidump
2012-02-06 20:41 - 2012-02-06 20:41 - 0000000 ____D C:\Users\All Users\SUPERAntiSpyware.com
2012-02-06 20:41 - 2012-02-06 20:41 - 0000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2012-02-06 20:40 - 2012-02-06 20:40 - 0000000 ____D C:\Users\Raymond\AppData\Roaming\SUPERAntiSpyware.com
2012-02-06 20:12 - 2012-02-02 12:24 - 0000000 ____D C:\Windows\pss
2012-02-06 20:03 - 2010-04-28 12:31 - 0000000 ____D C:\Users\AppData\LocalLow
2012-02-02 13:02 - 2010-04-03 16:10 - 0000000 ____D C:\Program Files (x86)\Mozilla Firefox
2012-02-02 12:56 - 2011-08-16 11:51 - 0000000 ____D C:\Users\All Users\AVG10
2012-02-02 12:56 - 2011-08-16 11:51 - 0000000 ____D C:\ProgramData\AVG10
2012-02-02 12:55 - 2010-10-28 12:43 - 0000000 ____D C:\Users\All Users\MFAData
2012-02-02 12:55 - 2010-10-28 12:43 - 0000000 ____D C:\ProgramData\MFAData
2012-02-02 12:54 - 2011-08-16 11:51 - 0000000 ____D C:\Windows\System32\Drivers\AVG
2012-01-04 16:02 - 2006-11-02 04:35 - 54008112 ____A (Microsoft Corporation) C:\Windows\System32\mrt.exe
2011-12-27 11:27 - 2010-08-29 07:54 - 0001460 ____A C:\Users\Raymond\AppData\Local\d3d9caps64.dat
2011-12-27 11:21 - 2011-12-27 11:07 - 0000358 ____A C:\Users\Raymond\Desktop\avgrep.txt


========================= Known DLLs (Whitelisted) ============


========================= Bamital & volsnap Check ============

C:\Windows\System32\winlogon.exe
[2008-01-20 18:49] - [2008-01-20 18:49] - 0406016 ____A (Microsoft Corporation) 856491FCED98093D824B9EB2892F564A

C:\Windows\System32\wininit.exe => MD5 is legit

C:\Windows\explorer.exe => MD5 is legit

C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

========================= Memory info ======================

Percentage of memory in use: 14%
Total physical RAM: 4030.26 MB
Available physical RAM: 3451.39 MB
Total Pagefile: 3755.07 MB
Available Pagefile: 3414.91 MB
Total Virtual: 8192 MB
Available Virtual: 8191.91 MB

======================= Partitions =========================

1 Drive c: () (Fixed) (Total:455.5 GB) (Free:312.22 GB) NTFS ==>[Drive with boot components (obtanied from BCD)]
3 Drive e: (Recovery) (Fixed) (Total:10.26 GB) (Free:0.82 GB) NTFS ==>[System with boot components (obtained from reading drive)]
4 Drive f: (USB20FD) (Removable) (Total:3.77 GB) (Free:2.09 GB) FAT32
5 Drive x: (Boot) (Fixed) (Total:0.06 GB) (Free:0.06 GB) NTFS

Disk ### Status Size Free Dyn Gpt
-------- ---------- ------- ------- --- ---
Disk 0 Online 466 GB 0 B
Disk 1 Online 3864 MB 0 B

Partitions of Disk 0:
===============

Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 OEM 10 GB 1024 KB
Partition 2 Primary 455 GB 10 GB

Disk: 0
Partition 1
Type : 27
Hidden: Yes
Active: No

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 3 E Recovery NTFS Partition 10 GB Healthy Hidden

Disk: 0
Partition 2
Type : 07
Hidden: No
Active: Yes

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 1 C NTFS Partition 455 GB Healthy

Partitions of Disk 1:
===============

Partition ### Type Size Offset
------------- ---------------- ------- -------
Partition 1 Primary 3864 MB 32 KB

Disk: 1
Partition 1
Type : 0C
Hidden: No
Active: Yes

Volume ### Ltr Label Fs Type Size Status Info
---------- --- ----------- ----- ---------- ------- --------- --------
* Volume 2 F USB20FD FAT32 Removable 3864 MB Healthy


==========================================================
TDL4: custom:26000022


==========================================================

Last Boot: 2012-02-07 19:02

======================= End Of Log ==========================

can you please help me?

Edited by data42, 13 February 2012 - 10:26 AM.


BC AdBot (Login to Remove)

 


#2 Farbar

Farbar

    Just Curious


  • Security Developer
  • 21,704 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:The Netherlands
  • Local time:10:19 PM

Posted 13 February 2012 - 10:54 AM

Hello data42,

Welcome to the forum.

Open notepad (Start =>All Programs => Accessories => Notepad). Please copy the entire contents of the code box below. (To do this highlight the contents of the box, right click on it and select copy. Right-click in the open notepad and select Paste). Save it on the flashdrive as fixlist.txt

start
SubSystems: [Windows] ==> ZeroAccess
cmd: bootrec /FixMbr
TDL4: custom:26000022
end

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

Now please enter System Recovery Options then select Command Prompt

Run FRST64 and press the Fix button just once and wait.
The tool will make a log on the flashdrive (Fixlog.txt) please post it to your reply.

Also restart, let it boot normally and tell me how it went.

#3 data42

data42
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:02:19 PM

Posted 13 February 2012 - 03:39 PM

That fixed it. Thank you very much.

here is the log file:

Fix result of Farbar Recovery Scan Tool (FRST written by farbar) Version: 11-02-2012
Ran by SYSTEM at 2012-02-13 14:26:53 R:1
Running from F:\

==============================================

HKEY_LOCAL_MACHINE\System\ControlSet001\Control\Session Manager\SubSystems\\Windows Value was restored.

========= bootrec /FixMbr =========

ˇ˛T

#4 Farbar

Farbar

    Just Curious


  • Security Developer
  • 21,704 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:The Netherlands
  • Local time:10:19 PM

Posted 13 February 2012 - 05:26 PM

Great. :thumbup2:

That is not the full log, but it should have been carried out.

The system was infected, the main infection is removed. Do you need my assistance to do the rest? This infection makes changes.

#5 data42

data42
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:02:19 PM

Posted 13 February 2012 - 08:48 PM

sorry the log here it is again.

Fix result of Farbar Recovery Scan Tool (FRST written by farbar) Version: 11-02-2012
Ran by SYSTEM at 2012-02-13 14:26:53 R:1
Running from F:\

==============================================

HKEY_LOCAL_MACHINE\System\ControlSet001\Control\Session Manager\SubSystems\\Windows Value was restored.

========= bootrec /FixMbr =========

ˇ˛T

#6 Farbar

Farbar

    Just Curious


  • Security Developer
  • 21,704 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:The Netherlands
  • Local time:10:19 PM

Posted 13 February 2012 - 08:51 PM

That is exactly the same aborted log posted previously.

#7 Farbar

Farbar

    Just Curious


  • Security Developer
  • 21,704 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:The Netherlands
  • Local time:10:19 PM

Posted 13 February 2012 - 09:20 PM

Anyway, please reply to my query so that I know I should proceed or close the topic.

#8 data42

data42
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:02:19 PM

Posted 14 February 2012 - 11:01 AM

i'm not sure why the log keeps chopping off like that. it showed in the preview of the post. if you would like i could send it to you.
anyways the computer is out of the woods and will make it. thank you for all your help again.

#9 data42

data42
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:02:19 PM

Posted 14 February 2012 - 02:41 PM

Fix result of Farbar Recovery Scan Tool (FRST written by farbar) Version: 11-02-2012
Ran by SYSTEM at 2012-02-13 14:26:53 R:1
Running from F:\

==============================================

HKEY_LOCAL_MACHINE\System\ControlSet001\Control\Session Manager\SubSystems\\Windows Value was restored.

========= bootrec /FixMbr =========

ˇ˛T

Attached Files



#10 Farbar

Farbar

    Just Curious


  • Security Developer
  • 21,704 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:The Netherlands
  • Local time:10:19 PM

Posted 14 February 2012 - 03:03 PM

You are most welcome. :)

This thread will now be closed since the issue seems to be resolved.

If you need this topic reopened, please send me a Private Message and I will reopen it for you.

If you should have a new issue, please start a new topic.

Every one else should start a new topic.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users