Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

System Restore window "PC Performance & Stability analysis rep


  • This topic is locked This topic is locked

#121
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
OK lets see if windows can help here

Go start > All programs > Accessories
Right click command propmt and select run as administrator
Then type in the following bolded command

sfc /scannow

Reboot on completion and let me know if it conducted any repairs


  • 0

Advertisements


#122
maezhou

maezhou

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 152 posts
Windows didn't find any integrity violations. I got this sfc /scannow completion verification:
comand_prompt_scannow_resul.gif

And then restarted the machine. I'm still getting these type of Privacy Alerts (on cookies):
PrivacyAlert_cookies.gif
  • 0

#123
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Cookies are of no real import to be honest as stated here

What is the current status of your computer ?
  • 0

#124
maezhou

maezhou

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 152 posts
Just now, I got the 2 popup alerts again:
Internet_Explorer_stopped_w.gif
WindowsExplorer_restarting.gif

But I didn't get the blue screen.
I guess I got the blue screen before because it's 2 sets of these popups.

And the other thing is IE browser opening up (with different website each time it opens) even if it's not used or activated.
I guess i'll just have to set my security settings to high to prevent malwares getting into the machine if ever IE opens up with a bad website?

Edited by maezhou, 19 November 2011 - 03:29 AM.

  • 0

#125
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Please download MBRCheck.exe to your Desktop. Run the application.

If no infection is found, it will produce a report on the desktop. Post that report in your next reply.

If an infection is found, you will be presented with the following dialog:

Enter 'Y' and hit ENTER for more options, or 'N' to exit:



Type N and press Enter. A report will be produced on the desktop. Post that report in your next reply.
  • 0

#126
maezhou

maezhou

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 152 posts
Here's the MBRCheck report:

MBRCheck, version 1.2.3
© 2010, AD

Command-line:
Windows Version: Windows Vista Home Premium Edition
Windows Information: Service Pack 1 (build 6001), 32-bit
Base Board Manufacturer: Sony Corporation
BIOS Manufacturer: Phoenix Technologies LTD
System Manufacturer: Sony Corporation
System Product Name: VGN-NR260E
Logical Drives Mask: 0x0000003c

Kernel Drivers (total 153):
0x82615000 \SystemRoot\system32\ntkrnlpa.exe
0x829CE000 \SystemRoot\system32\hal.dll
0x80400000 \SystemRoot\system32\kdcom.dll
0x80402000 \SystemRoot\system32\mcupdate_GenuineIntel.dll
0x80462000 \SystemRoot\system32\PSHED.dll
0x80473000 \SystemRoot\system32\BOOTVID.dll
0x8047B000 \SystemRoot\system32\CLFS.SYS
0x804BC000 \SystemRoot\system32\CI.dll
0x80608000 \SystemRoot\system32\drivers\Wdf01000.sys
0x80684000 \SystemRoot\system32\drivers\WDFLDR.SYS
0x80691000 \SystemRoot\system32\drivers\acpi.sys
0x806D7000 \SystemRoot\system32\drivers\WMILIB.SYS
0x806E0000 \SystemRoot\system32\drivers\msisadrv.sys
0x806E8000 \SystemRoot\system32\drivers\pci.sys
0x8070F000 \SystemRoot\System32\drivers\partmgr.sys
0x8071E000 \SystemRoot\system32\DRIVERS\compbatt.sys
0x80721000 \SystemRoot\system32\DRIVERS\BATTC.SYS
0x8072B000 \SystemRoot\system32\drivers\volmgr.sys
0x8073A000 \SystemRoot\System32\drivers\volmgrx.sys
0x80784000 \SystemRoot\system32\DRIVERS\pcmcia.sys
0x807B1000 \SystemRoot\system32\DRIVERS\pciide.sys
0x807B8000 \SystemRoot\system32\DRIVERS\PCIIDEX.SYS
0x807C6000 \SystemRoot\System32\drivers\mountmgr.sys
0x82C01000 \SystemRoot\system32\DRIVERS\iaStor.sys
0x82CBF000 \SystemRoot\system32\drivers\atapi.sys
0x82CC7000 \SystemRoot\system32\drivers\ataport.SYS
0x82CE5000 \SystemRoot\system32\drivers\fltmgr.sys
0x82D17000 \SystemRoot\system32\drivers\fileinfo.sys
0x82D27000 \SystemRoot\System32\drivers\WRkrn.sys
0x82D44000 \SystemRoot\System32\drivers\msrpc.sys
0x82D6F000 \SystemRoot\System32\drivers\NETIO.SYS
0x82E04000 \SystemRoot\System32\drivers\NDIS.SYS
0x82F0F000 \SystemRoot\System32\drivers\TDI.SYS
0x82F1A000 \SystemRoot\System32\Drivers\PxHelp20.sys
0x82F23000 \SystemRoot\System32\Drivers\ksecdd.sys
0x8840A000 \SystemRoot\System32\drivers\tcpip.sys
0x884F3000 \SystemRoot\System32\drivers\fwpkclnt.sys
0x88603000 \SystemRoot\System32\Drivers\Ntfs.sys
0x88712000 \SystemRoot\system32\drivers\volsnap.sys
0x8874B000 \SystemRoot\System32\Drivers\spldr.sys
0x88753000 \SystemRoot\System32\Drivers\mup.sys
0x88762000 \SystemRoot\System32\drivers\ecache.sys
0x88789000 \SystemRoot\system32\drivers\disk.sys
0x8879A000 \SystemRoot\system32\drivers\CLASSPNP.SYS
0x887BB000 \SystemRoot\system32\drivers\crcdisk.sys
0x887D1000 \SystemRoot\system32\DRIVERS\tunnel.sys
0x887DC000 \SystemRoot\system32\DRIVERS\tunmp.sys
0x887E5000 \SystemRoot\system32\DRIVERS\intelppm.sys
0x887F4000 \SystemRoot\system32\DRIVERS\CmBatt.sys
0x8C601000 \SystemRoot\system32\DRIVERS\igdkmd32.sys
0x8CC05000 \SystemRoot\System32\drivers\dxgkrnl.sys
0x8CCA4000 \SystemRoot\System32\drivers\watchdog.sys
0x8CCB1000 \SystemRoot\system32\DRIVERS\usbuhci.sys
0x8CCBC000 \SystemRoot\system32\DRIVERS\USBPORT.SYS
0x8CCFA000 \SystemRoot\system32\DRIVERS\usbehci.sys
0x8CD09000 \SystemRoot\system32\DRIVERS\HDAudBus.sys
0x8CD1B000 \SystemRoot\system32\DRIVERS\yk60x86.sys
0x8D003000 \SystemRoot\system32\DRIVERS\athr.sys
0x8D0EA000 \SystemRoot\system32\DRIVERS\ohci1394.sys
0x8D0FA000 \SystemRoot\system32\DRIVERS\1394BUS.SYS
0x8D108000 \SystemRoot\system32\drivers\ti21sony.sys
0x8D1D4000 \SystemRoot\system32\DRIVERS\SFEP.sys
0x8D1D7000 \SystemRoot\system32\DRIVERS\i8042prt.sys
0x8D1EA000 \SystemRoot\system32\DRIVERS\kbdclass.sys
0x8CD5A000 \SystemRoot\system32\DRIVERS\Apfiltr.sys
0x8D1F5000 \SystemRoot\system32\DRIVERS\mouclass.sys
0x8CD83000 \SystemRoot\system32\DRIVERS\cdrom.sys
0x8CD9B000 \SystemRoot\System32\Drivers\GEARAspiWDM.sys
0x8CDA1000 \SystemRoot\system32\DRIVERS\msiscsi.sys
0x82F94000 \SystemRoot\system32\DRIVERS\storport.sys
0x8CDCF000 \SystemRoot\system32\DRIVERS\rasl2tp.sys
0x8CDE6000 \SystemRoot\system32\DRIVERS\ndistapi.sys
0x885CC000 \SystemRoot\system32\DRIVERS\ndiswan.sys
0x8CDF1000 \SystemRoot\system32\DRIVERS\raspppoe.sys
0x82FD5000 \SystemRoot\system32\DRIVERS\raspptp.sys
0x82FE9000 \SystemRoot\system32\DRIVERS\rassstp.sys
0x885EF000 \SystemRoot\system32\DRIVERS\ntnvca.sys
0x82DA9000 \SystemRoot\system32\DRIVERS\termdd.sys
0x8D000000 \SystemRoot\system32\DRIVERS\swenum.sys
0x82DB9000 \SystemRoot\system32\DRIVERS\ks.sys
0x88400000 \SystemRoot\system32\DRIVERS\mssmbios.sys
0x82DE3000 \SystemRoot\system32\DRIVERS\umbus.sys
0x8059C000 \SystemRoot\system32\DRIVERS\usbhub.sys
0x807D6000 \SystemRoot\System32\Drivers\NDProxy.SYS
0x8D409000 \SystemRoot\system32\drivers\RTKVHDA.sys
0x8D5C9000 \SystemRoot\system32\drivers\portcls.sys
0x805D0000 \SystemRoot\system32\drivers\drmk.sys
0x8D601000 \SystemRoot\system32\DRIVERS\HSXHWAZL.sys
0x8D63E000 \SystemRoot\system32\DRIVERS\HSX_DPV.sys
0x8D741000 \SystemRoot\system32\DRIVERS\HSX_CNXT.sys
0x82DF0000 \SystemRoot\system32\drivers\modem.sys
0x8D7F5000 \SystemRoot\System32\Drivers\Fs_Rec.SYS
0x8D5F6000 \SystemRoot\System32\Drivers\Null.SYS
0x8D400000 \SystemRoot\System32\Drivers\Beep.SYS
0x807E7000 \SystemRoot\System32\drivers\vga.sys
0x8D805000 \SystemRoot\System32\drivers\VIDEOPRT.SYS
0x8D826000 \SystemRoot\System32\DRIVERS\RDPCDD.sys
0x8D82E000 \SystemRoot\system32\drivers\rdpencdd.sys
0x8D836000 \SystemRoot\System32\Drivers\Msfs.SYS
0x8D841000 \SystemRoot\System32\Drivers\Npfs.SYS
0x8D84F000 \SystemRoot\System32\DRIVERS\rasacd.sys
0x8D858000 \SystemRoot\system32\DRIVERS\tdx.sys
0x8D86E000 \SystemRoot\system32\DRIVERS\smb.sys
0x8D882000 \SystemRoot\system32\drivers\afd.sys
0x8D8CA000 \SystemRoot\System32\DRIVERS\netbt.sys
0x8D8FC000 \SystemRoot\system32\DRIVERS\pacer.sys
0x8D912000 \SystemRoot\system32\DRIVERS\netbios.sys
0x8D920000 \SystemRoot\system32\DRIVERS\wanarp.sys
0x8D933000 \SystemRoot\system32\DRIVERS\rdbss.sys
0x8D96F000 \SystemRoot\system32\drivers\nsiproxy.sys
0x8D979000 \SystemRoot\system32\DRIVERS\DMICall.sys
0x8D97A000 \SystemRoot\System32\Drivers\dfsc.sys
0x8D991000 \SystemRoot\system32\DRIVERS\usbccgp.sys
0x8D9A8000 \SystemRoot\system32\DRIVERS\USBD.SYS
0x8D9AA000 \SystemRoot\system32\DRIVERS\hidusb.sys
0x8D9B3000 \SystemRoot\system32\DRIVERS\HIDCLASS.SYS
0x8D9C3000 \SystemRoot\system32\DRIVERS\HIDPARSE.SYS
0x8D9CA000 \SystemRoot\system32\DRIVERS\mouhid.sys
0x8D9D2000 \SystemRoot\System32\Drivers\crashdmp.sys
0x8850E000 \SystemRoot\System32\Drivers\dump_iaStor.sys
0x93AA0000 \SystemRoot\System32\win32k.sys
0x8D9DF000 \SystemRoot\System32\drivers\Dxapi.sys
0x8D9E9000 \SystemRoot\system32\DRIVERS\monitor.sys
0x93CC0000 \SystemRoot\System32\TSDDD.dll
0x93CE0000 \SystemRoot\System32\cdd.dll
0x93CF0000 \SystemRoot\System32\ATMFD.DLL
0xA7E02000 \SystemRoot\system32\drivers\luafv.sys
0xA7E25000 \SystemRoot\system32\drivers\spsys.sys
0xA7ED4000 \SystemRoot\system32\DRIVERS\lltdio.sys
0xA7EE4000 \SystemRoot\system32\DRIVERS\nwifi.sys
0xA7F0E000 \SystemRoot\system32\DRIVERS\ndisuio.sys
0xA7F18000 \SystemRoot\system32\DRIVERS\rspndr.sys
0xA7F2B000 \SystemRoot\system32\drivers\HTTP.sys
0xA7F98000 \SystemRoot\System32\DRIVERS\srvnet.sys
0xA7FB5000 \SystemRoot\system32\DRIVERS\bowser.sys
0xA7FCE000 \SystemRoot\System32\drivers\mpsdrv.sys
0xAD600000 \SystemRoot\system32\drivers\mrxdav.sys
0xAD620000 \SystemRoot\system32\DRIVERS\mrxsmb.sys
0xAD63F000 \SystemRoot\system32\DRIVERS\mrxsmb10.sys
0xAD678000 \SystemRoot\system32\DRIVERS\mrxsmb20.sys
0xAD690000 \SystemRoot\System32\DRIVERS\srv2.sys
0xAD6B8000 \SystemRoot\System32\DRIVERS\srv.sys
0xAD71F000 \SystemRoot\system32\DRIVERS\mdmxsdk.sys
0xAD723000 \SystemRoot\system32\DRIVERS\nvcwfpco.sys
0xB3E0F000 \SystemRoot\system32\drivers\peauth.sys
0xB3EED000 \SystemRoot\system32\drivers\regi.sys
0xB3EEF000 \SystemRoot\System32\Drivers\secdrv.SYS
0xB3EF9000 \SystemRoot\System32\drivers\tcpipreg.sys
0xB3F05000 \SystemRoot\system32\DRIVERS\xaudio.sys
0xB3F0D000 \SystemRoot\system32\DRIVERS\WUDFRd.sys
0xB3F22000 \SystemRoot\system32\DRIVERS\WUDFPf.sys
0xB3F34000 \SystemRoot\system32\DRIVERS\cdfs.sys
0x778E0000 \Windows\System32\ntdll.dll

Processes (total 87):
0 System Idle Process
4 System
568 C:\Windows\System32\smss.exe
636 csrss.exe
680 C:\Windows\System32\wininit.exe
692 csrss.exe
724 C:\Windows\System32\services.exe
736 C:\Windows\System32\lsass.exe
744 C:\Windows\System32\lsm.exe
828 C:\Windows\System32\winlogon.exe
932 C:\Windows\System32\svchost.exe
972 C:\Program Files\Webroot\WRSA.exe
1004 C:\Windows\System32\svchost.exe
1040 C:\Windows\System32\svchost.exe
1148 C:\Windows\System32\svchost.exe
1276 C:\Windows\System32\svchost.exe
1288 C:\Windows\System32\svchost.exe
1408 C:\Windows\System32\audiodg.exe
1432 C:\Windows\System32\svchost.exe
1456 C:\Windows\System32\SLsvc.exe
1508 C:\Windows\System32\svchost.exe
1732 C:\Windows\System32\svchost.exe
1992 C:\Windows\System32\dwm.exe
2016 C:\Windows\explorer.exe
384 C:\Program Files\Webroot\WRSA.exe
600 C:\Windows\System32\spoolsv.exe
628 C:\Windows\System32\taskeng.exe
1956 C:\Windows\System32\svchost.exe
1100 C:\Windows\System32\taskeng.exe
1396 C:\Windows\System32\taskeng.exe
392 C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
1384 C:\Program Files\Sony\VAIO PC Wireless LAN Wizard\AutoLaunchWLASU.exe
2236 C:\Program Files\Common Files\Java\Java Update\jusched.exe
2284 C:\Windows\System32\igfxpers.exe
2292 C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe
2320 C:\Program Files\iTunes\iTunesHelper.exe
2328 C:\Program Files\Sony\ISB Utility\ISBMgr.exe
2372 C:\Windows\System32\hkcmd.exe
2384 C:\Program Files\Google\Google Talk\googletalk.exe
2400 C:\Program Files\Corel\Corel Paint Shop Pro Photo X2\CorelIOMonitor.exe
2420 C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
2428 C:\Program Files\Apoint\Apoint.exe
2476 C:\Program Files\Windows Sidebar\sidebar.exe
2520 C:\Program Files\Sony\Network Utility\LANUtil.exe
2528 C:\Program Files\Windows Live\Messenger\msnmsgr.exe
2572 C:\Windows\ehome\ehtray.exe
2580 C:\Windows\System32\igfxsrvc.exe
2644 C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
2668 C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
2752 C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
2804 C:\Program Files\Bonjour\mDNSResponder.exe
2836 C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
2848 C:\Program Files\Nero\Update\NASvc.exe
2908 C:\Program Files\Sony\Network Utility\NSUService.exe
2972 C:\Program Files\Nortel\Nortel VPN Client\NvcSvcMgr.exe
3572 C:\Windows\System32\svchost.exe
3616 C:\Windows\System32\PSIService.exe
3664 C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe
3760 C:\Windows\System32\svchost.exe
3808 C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
3876 C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
3920 C:\Windows\System32\svchost.exe
3944 C:\Windows\System32\SearchIndexer.exe
3988 C:\Windows\System32\drivers\XAudio.exe
4032 C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
4080 C:\Program Files\Sony\VAIO Event Service\VESMgrSub.exe
1252 C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
2736 C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
3144 WUDFHost.exe
1144 C:\Windows\System32\mobsync.exe
1212 igfxext.exe
3556 igfxsrvc.exe
2264 C:\Windows\ehome\ehmsas.exe
4588 C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
5580 C:\Program Files\iPod\bin\iPodService.exe
4320 C:\Program Files\Apoint\ApMsgFwd.exe
4520 C:\Program Files\Apoint\ApntEx.exe
3456 C:\Windows\System32\wuauclt.exe
5264 C:\Windows\System32\wbem\unsecapp.exe
6008 WmiPrvSE.exe
5936 C:\Windows\System32\msfeedssync.exe
3032 C:\Program Files\Internet Explorer\iexplore.exe
3740 C:\Windows\System32\SearchProtocolHost.exe
4924 C:\Windows\System32\SearchFilterHost.exe
4956 dllhost.exe
5708 dllhost.exe
5988 C:\Users\Owner\Desktop\MBRCheck.exe

\\.\C: --> \\.\PhysicalDrive0 at offset 0x00000001`fa600000 (NTFS)

PhysicalDrive0 Model Number: FUJITSUMHY2200BH, Rev: 0000000B

Size Device Name MBR Status
--------------------------------------------
186 GB \\.\PhysicalDrive0 MBR Code Faked!
SHA1: 38BE7869FCCF026F920DA4A541B12E68993C36ED


Found non-standard or infected MBR.
Enter 'Y' and hit ENTER for more options, or 'N' to exit:

Done!
  • 0

#127
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Create a Windows Vista System Repair Disc

Note: the below can only be done if your machine has a a type of CD/R or DVD/R optical drive installed. Also depending on the exact type of OEM your machine has you may be unable to actually create a SRD.

  • Click on Start >> Run...(or the Windows key and R together) to bring up the Run box, then copy/paste the following command into the box and click on OK:

    recdisc.exe

  • Allow the UAC(User Account Control) prompt via selecting Yes.
  • You should now see a menu like the below:-
Posted Image

  • Put a blank rewritable CD/DVD in your optical(CD/DVD) drive and then click on Create disc.
  • Note: If a AutoPlay window pops up, just close it.
  • When the SRD has been created you will see the below:-
Posted Image

  • Now click on Close >> OK. Leave the disc in the drive as we will be using it shortly.
  • You now have a Windows 7 System Repair Disc.




When you reboot you will see this. Click repair my computer
Posted Image

Select your operating system
Posted Image

Select Command prompt
Posted Image

At the command prompt type the following

  • Bootrec.exe /FixMbr
  • Once finished type Exit


Reboot to normal windows and run MBRcheck again please
  • 0

#128
maezhou

maezhou

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 152 posts
I don't have a rewritable CD/DVD right now. I'll do some errands and get one.
  • 0

#129
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
OK, but this can only be done from the disc. If we tried it from the repair options it would fail
  • 0

#130
maezhou

maezhou

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 152 posts
OK. I got the disc, but recdisc.exe won't properly. I'm just getting UAC screen and nothing after that.

I'm getting this type of UAC:
UAC_recdisc.jpg

I clicked on [Continue], but nothing happens.

Edited by maezhou, 19 November 2011 - 04:04 PM.

  • 0

Advertisements


#131
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
It just so happens that I know where you can get a copy of the recovery disc

Download Vista32 bit recovery console
Unzip the ISO file to your desktop
Download and install ImgBurn
Double click the recovery console ISO and ImgBurn will open
Burn to disc and then follow the previous instructions
  • 0

#132
maezhou

maezhou

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 152 posts
Vista_Recovery_Disc.iso won't open up.
Nothing happens when I double-click.
  • 0

#133
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Did you install imgburn as clicking the ISO should open imgburn and then let you burn it as a bootable disc
  • 0

#134
maezhou

maezhou

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 152 posts
yes, on the desktop as well.
  • 0

#135
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Do you have access to another computer to burn the disc ?
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP