Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Black screen after starting windows normally


  • Please log in to reply
5 replies to this topic

#1 snscraft

snscraft

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:11:24 AM

Posted 23 October 2012 - 09:32 AM

Hello, this is my first attempt at posting for help, some of the communications seems above my computer lingo, so I will enjoy this learning experience immensely...

Running Windows XP on a Dell Optiplex 745, have Norton Antivirus, but when it did not detect or remove browser redirect virus I tried AVG free, then bought the $39 one year thing after which this progressively got worse.

We started with pop ups for servads, tried to remove rivalgaming to no avail, computer froze in middle of removal and shut down into what seems like overheating complete with high speed airplane noise exhaust fan... And then continued to do repeat that problem during computer use; sometimes a few minutes into opening a browser window (we use chrome) and sometimes an hour or two into opening a browser window.

I'm frustrated because I've paid for two services, neither of which could isolate, contain, remove or stop progression of this prob, though I've run scans and fixes on both programs worried that the processor load was too high. And not sure I only have one problem... Followed message "Healing action failed with error 0xe001002" from AVG scan log onto Google search to this website. Led me to a Police Virus thread, but problems don't seem similar enough to be that... Of course I'm not an expert either...

Trying to decide, should I deactivate or remove one or both of the two, Norton and or AVG (my husband says most of the tech people he knows love it), and would like to try things I've read on this site, mbam firstly, and can post result if I figure out how. I am running computer now in safe mode, and have smart phone for continued communication.

Please can someone help? I need this computer for work and my vacation ends in 2 days, this is so not what I had in mind to spend doing while on it :-(

Thank you in advance for any assistance that may be given, my sincerest regards.

Edited by snscraft, 23 October 2012 - 10:55 AM.


BC AdBot (Login to Remove)

 


#2 snscraft

snscraft
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:11:24 AM

Posted 23 October 2012 - 10:57 AM

Malwarebytes Anti-Malware (Trial) 1.65.1.1000
www.malwarebytes.org

Database version: v2012.10.23.05

Windows XP Service Pack 3 x86 NTFS (Safe Mode/Networking)
Internet Explorer 8.0.6001.18702
Summer :: OFFICE [administrator]

Protection: Disabled

10/23/2012 11:51:08 AM
mbam-log-2012-10-23 (11-56-17).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 223520
Time elapsed: 4 minute(s), 51 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 41
HKCR\CLSID\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} (PUP.FunMoods) -> No action taken.
HKCR\funmoods.funmoodsHlpr.1 (PUP.FunMoods) -> No action taken.
HKCR\funmoods.funmoodsHlpr (PUP.FunMoods) -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} (PUP.FunMoods) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} (PUP.FunMoods) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} (PUP.FunMoods) -> No action taken.
HKCR\CLSID\{78919608-B066-4B5A-B248-38E12A783E05} (Adware.ArcadeWeb) -> No action taken.
HKCR\TypeLib\{A670E878-A272-443D-BD19-ED0A9BFD3FD8} (Adware.ArcadeWeb) -> No action taken.
HKCR\Interface\{5F280841-8023-4BE6-9A4F-184D3E79A785} (Adware.ArcadeWeb) -> No action taken.
HKCR\ExplorerPlugin.Extension.1 (Adware.ArcadeWeb) -> No action taken.
HKCR\ExplorerPlugin.Extension (Adware.ArcadeWeb) -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{78919608-B066-4B5A-B248-38E12A783E05} (Adware.ArcadeWeb) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{78919608-B066-4B5A-B248-38E12A783E05} (Adware.ArcadeWeb) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{78919608-B066-4B5A-B248-38E12A783E05} (Adware.ArcadeWeb) -> No action taken.
HKCR\CLSID\{965B9DBE-B104-44AC-950A-8A5F97AFF439} (PUP.Funmoods) -> No action taken.
HKCR\escort.escortIEPane.1 (PUP.Funmoods) -> No action taken.
HKCR\escort.escortIEPane (PUP.Funmoods) -> No action taken.
HKCR\CLSID\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} (PUP.Funmoods) -> No action taken.
HKCR\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} (PUP.Funmoods) -> No action taken.
HKCR\funmoods.dskBnd.1 (PUP.Funmoods) -> No action taken.
HKCR\funmoods.dskBnd (PUP.Funmoods) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} (PUP.Funmoods) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} (PUP.Funmoods) -> No action taken.
HKCR\CLSID\{A9DB719C-7156-415E-B49D-BAD039DE4F13} (PUP.Funmoods) -> No action taken.
HKCR\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} (PUP.Funmoods) -> No action taken.
HKCR\funmoodsApp.appCore.1 (PUP.Funmoods) -> No action taken.
HKCR\funmoodsApp.appCore (PUP.Funmoods) -> No action taken.
HKCR\CLSID\{F03FD9D0-4F2B-497C-8A71-DD41D70B07D9} (PUP.Funmoods) -> No action taken.
HKCR\f (PUP.Funmoods) -> No action taken.
HKCR\Typelib\{1D085C0A-E4F4-4F66-BDBF-4BE51015BFC3} (PUP.Funmoods) -> No action taken.
HKCR\Interface\{0D80F1C5-D17B-4177-AC68-955F3EF9F191} (PUP.Funmoods) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{61E0EF7A-9BC0-45EA-9B2F-F3E9F02692BD} (PUP.PlayBryte) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{61E0EF7A-9BC0-45EA-9B2F-F3E9F02692BD} (PUP.PlayBryte) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{CC0F2900-8A5B-4D0D-9E44-10435BC40774} (Trojan.BHO) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{CC0F2900-8A5B-4D0D-9E44-10435BC40774} (Trojan.BHO) -> No action taken.
HKCU\SOFTWARE\5DR8ZAD8GX (Trojan.FakeAlert) -> No action taken.
HKCU\SOFTWARE\TG0PTF86JH (Trojan.FakeAlert) -> No action taken.
HKCU\SOFTWARE\XML (Trojan.FakeAlert) -> No action taken.
HKCU\SOFTWARE\CROSSRIDER (Adware.GamePlayLab) -> No action taken.
HKCU\Software\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh (PUP.Funmoods) -> No action taken.
HKLM\SOFTWARE\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh (PUP.Funmoods) -> No action taken.

Registry Values Detected: 4
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar|{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} (PUP.Funmoods) -> Data: Funmoods Toolbar -> No action taken.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} (PUP.Funmoods) -> Data: -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|5DR8ZAD8GX (Trojan.FakeAlert) -> Data: C:\DOCUME~1\Summer\LOCALS~1\Temp\Hmh.exe -> No action taken.
HKCU\Software\Crossrider|215AppVerifier (Adware.GamePlayLab) -> Data: c58f6b9933fdba1a44c1998b511e90fd -> No action taken.

Registry Data Items Detected: 2
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon|Userinit (Refog.Keylogger) -> Bad: (c:\windows\system32\userinit.exe,C:\WINDOWS\system32\MPK\mpk.exe) Good: (Userinit.exe) -> No action taken.
HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters|NameServer (Trojan.DNSChanger) -> Bad: (93.188.162.76,93.188.161.9) Good: () -> No action taken.

Folders Detected: 3
C:\Documents and Settings\Summer\Application Data\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\textlinks@arcadeweb.com (Adware.ArcadeWeb) -> No action taken.
C:\Documents and Settings\Summer\Application Data\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\textlinks@arcadeweb.com\Chrome (Adware.ArcadeWeb) -> No action taken.
C:\Documents and Settings\Summer\Application Data\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\textlinks@arcadeweb.com\components (Adware.ArcadeWeb) -> No action taken.

Files Detected: 12
C:\Documents and Settings\Summer\My Documents\Downloads\Audacity_d12673.exe (PUP.BundleOffers.IIQ) -> No action taken.
C:\Documents and Settings\Summer\My Documents\Downloads\movie_player_1280.exe (PUP.BundleOffers.IIQ) -> No action taken.
C:\Documents and Settings\Summer\My Documents\Downloads\setup_PlayPickle_v25.exe (PUP.BundleInstaller.OI) -> No action taken.
C:\Documents and Settings\Summer\My Documents\Downloads\smithpremier_downloader_by_fonts101 (1).exe (PUP.BundleInstaller.BI) -> No action taken.
C:\Documents and Settings\Summer\Local Settings\Application Data\funmoods.crx (PUP.Funmoods) -> No action taken.
C:\WINDOWS\Tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job (Trojan.Downloader) -> No action taken.
C:\WINDOWS\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job (Trojan.Downloader) -> No action taken.
C:\Documents and Settings\Summer\Application Data\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\textlinks@arcadeweb.com\chrome.manifest (Adware.ArcadeWeb) -> No action taken.
C:\Documents and Settings\Summer\Application Data\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\textlinks@arcadeweb.com\install.rdf (Adware.ArcadeWeb) -> No action taken.
C:\Documents and Settings\Summer\Application Data\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\textlinks@arcadeweb.com\Chrome\awtextlinks.jar (Adware.ArcadeWeb) -> No action taken.
C:\Documents and Settings\Summer\Application Data\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\textlinks@arcadeweb.com\components\arcadewebfirefox.dll (Adware.ArcadeWeb) -> No action taken.
C:\Documents and Settings\Summer\Application Data\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\textlinks@arcadeweb.com\components\arcadewebfirefox.xpt (Adware.ArcadeWeb) -> No action taken.

(end)

#3 snscraft

snscraft
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:11:24 AM

Posted 23 October 2012 - 11:38 AM

Have now run Quick and Full scans with this log after full... working on Rkill now...




Malwarebytes Anti-Malware (Trial) 1.65.1.1000
www.malwarebytes.org

Database version: v2012.10.23.05

Windows XP Service Pack 3 x86 NTFS (Safe Mode/Networking)
Internet Explorer 8.0.6001.18702
Summer :: OFFICE [administrator]

Protection: Disabled

10/23/2012 11:58:14 AM
mbam-log-2012-10-23 (11-58-14).txt

Scan type: Full scan (C:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 310751
Time elapsed: 36 minute(s), 23 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 27
HKCR\CLSID\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} (PUP.FunMoods) -> Quarantined and deleted successfully.
HKCR\funmoods.funmoodsHlpr.1 (PUP.FunMoods) -> Quarantined and deleted successfully.
HKCR\funmoods.funmoodsHlpr (PUP.FunMoods) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} (PUP.FunMoods) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} (PUP.FunMoods) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} (PUP.FunMoods) -> Quarantined and deleted successfully.
HKCR\CLSID\{965B9DBE-B104-44AC-950A-8A5F97AFF439} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\escort.escortIEPane.1 (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\escort.escortIEPane (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\CLSID\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\funmoods.dskBnd.1 (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\funmoods.dskBnd (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\CLSID\{A9DB719C-7156-415E-B49D-BAD039DE4F13} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\funmoodsApp.appCore.1 (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\funmoodsApp.appCore (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\CLSID\{F03FD9D0-4F2B-497C-8A71-DD41D70B07D9} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\f (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\Typelib\{1D085C0A-E4F4-4F66-BDBF-4BE51015BFC3} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCR\Interface\{0D80F1C5-D17B-4177-AC68-955F3EF9F191} (PUP.Funmoods) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{61E0EF7A-9BC0-45EA-9B2F-F3E9F02692BD} (PUP.PlayBryte) -> Quarantined and deleted successfully.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{61E0EF7A-9BC0-45EA-9B2F-F3E9F02692BD} (PUP.PlayBryte) -> Quarantined and deleted successfully.
HKCU\Software\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh (PUP.Funmoods) -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh (PUP.Funmoods) -> Quarantined and deleted successfully.

Registry Values Detected: 2
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar|{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} (PUP.Funmoods) -> Data: Funmoods Toolbar -> Quarantined and deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} (PUP.Funmoods) -> Data: -> Quarantined and deleted successfully.

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 15
C:\Documents and Settings\Summer\My Documents\Downloads\Audacity_d12673.exe (PUP.BundleOffers.IIQ) -> Quarantined and deleted successfully.
C:\Documents and Settings\Summer\My Documents\Downloads\movie_player_1280.exe (PUP.BundleOffers.IIQ) -> Quarantined and deleted successfully.
C:\Documents and Settings\Summer\My Documents\Downloads\setup_PlayPickle_v25.exe (PUP.BundleInstaller.OI) -> Quarantined and deleted successfully.
C:\Documents and Settings\Summer\My Documents\Downloads\smithpremier_downloader_by_fonts101 (1).exe (PUP.BundleInstaller.BI) -> Quarantined and deleted successfully.
C:\Documents and Settings\Summer\My Documents\ENVY Copies and Letters\Downloads\SuperMario.exe (Adware.Dropper) -> Quarantined and deleted successfully.
C:\Documents and Settings\Summer\My Documents\ENVY Copies and Letters\Downloads\WebfettiSetup2.3.80.2.ZKman000.exe (PUP.MyWebSearch) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{54A588DA-04C7-44C8-9B4F-A908B774666E}\RP782\A0082345.exe (PUP.FunMoods) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{54A588DA-04C7-44C8-9B4F-A908B774666E}\RP782\A0082346.dll (PUP.Funmoods) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{54A588DA-04C7-44C8-9B4F-A908B774666E}\RP782\A0082347.dll (PUP.FunMoods) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{54A588DA-04C7-44C8-9B4F-A908B774666E}\RP782\A0082348.dll (PUP.FunMoods) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{54A588DA-04C7-44C8-9B4F-A908B774666E}\RP782\A0082349.dll (PUP.FunMoods) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{54A588DA-04C7-44C8-9B4F-A908B774666E}\RP782\A0082352.exe (PUP.FunMoods) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{54A588DA-04C7-44C8-9B4F-A908B774666E}\RP788\A0082567.exe (PUP.PlayBryte) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{54A588DA-04C7-44C8-9B4F-A908B774666E}\RP817\A0088441.exe (Adware.Gamevance) -> Quarantined and deleted successfully.
C:\Documents and Settings\Summer\Local Settings\Application Data\funmoods.crx (PUP.Funmoods) -> Quarantined and deleted successfully.

(end)

#4 snscraft

snscraft
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:11:24 AM

Posted 23 October 2012 - 11:39 AM

Rkill 2.4.3 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2012 BleepingComputer.com
More Information about Rkill can be found at this link:
http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 10/23/2012 12:38:45 PM in x86 mode.
Windows Version: Microsoft Windows XP Service Pack 3

Checking for Windows services to stop:

* No malware services found to stop.

Checking for processes to terminate:

* No malware processes found to kill.

Checking Registry for malware related settings:

* No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

* Windows Firewall Disabled

[HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = dword:00000000

Checking Windows Service Integrity:

* COM+ Event System (EventSystem) is not Running.
Startup Type set to: Manual

* Security Center (wscsvc) is not Running.
Startup Type set to: Automatic

* Automatic Updates (wuauserv) is not Running.
Startup Type set to: Automatic

Searching for Missing Digital Signatures:

* No issues found.

Checking HOSTS File:

* HOSTS file entries found:

127.0.0.1 localhost

Program finished at: 10/23/2012 12:39:13 PM
Execution time: 0 hours(s), 0 minute(s), and 28 seconds(s)

#5 snscraft

snscraft
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:11:24 AM

Posted 23 October 2012 - 12:28 PM

OK, started in Windows normal mode, still black screen after Windows starts. Computer will boot and load and function in safe mode still, but nothing in normal start up past the windows loading screen.

Any thing else I should be looking for other than infection?

#6 snscraft

snscraft
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Gender:Female
  • Local time:11:24 AM

Posted 23 October 2012 - 01:52 PM

Last bit of info for the day... Only change so far is that now all scans come back clean but there is a new step in the boot process after Dell start-up but before Windows start-up The message on black screen shows:
"Floppy diskette seek failure
Strike F1 key to continue, F2 to run the setup utility"

For which I have selected both and tried resetting to factory defaults, and still can only operate in safe mode.

Please, if anyone knows anything about what has happened to our computer, can you help?

Thank you for your time, and I hope I have not posted on the wrong feed, tried moving it, but cannot seem to...




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users