Author Topic: Rootkit malware deleted now windows xp will not load  (Read 13729 times)

0 Members and 1 Guest are viewing this topic.

campdude

  • Guest
Re: Rootkit malware deleted now windows xp will not load
« Reply #15 on: May 16, 2012, 02:25:23 AM »
Reatogo loads the bar across the screen..

Then Reatogo says please wait....

then it trys to load windows XP....

the windows xp bar goes a couple times across its bar area and then

The Blue screen virus error... WINDOWS has stopped in order to prevent damage to your computer.

The help is appreciated this got farther than normal but still didnt get anywheres..

You said it needs to detect my hardware then load the operating system.... does this mean i should unplug my windows 7 harddrive?
oh well I'll try that tonight if it has anything to do with anything

I'll be back after I unplug my windows 7 harddrive.

Edit: I unplugged my windows 7 harddrive and it does not seem to be the problem. The same thing happens as mentioned above.
Have we run out of ideas yet?

I put in the windows instal disc and as soon as its done loading all the drivers it then says loading windows... then the error pops up.
I think the exact same thing is happening with Reatogo. quite interesting.

I have done repair installs with this computer before and had no actual problems with loading the repair install... so the only thing different is when Avast deleted a rootkit malware.
« Last Edit: May 16, 2012, 03:44:47 AM by campdude »

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48645
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: Rootkit malware deleted now windows xp will not load
« Reply #16 on: May 16, 2012, 04:05:22 PM »
Quote
The Blue screen virus error... WINDOWS has stopped in order to prevent damage to your computer

That doesn't indicate a virus but usually relates to a hardware problem of some kind.
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

campdude

  • Guest
Re: Rootkit malware deleted now windows xp will not load
« Reply #17 on: May 17, 2012, 01:09:45 AM »
well the blue screen says its likely do to a virus or run chkdk on the drive.
I did run a scandisk on the xp drive when i was running windows 7.

This did convienently happen after rootkit was deleted.
Hard-ware runs fine in windows 7.

The only thing i can think of is the AHCI drivers are not preloaded at the begining of the install...
I dont have raid... but I am running in AHCI mode instead of IDE....

thats the only hardware problem I can think of.  I remember slipping the AHCI drivers into a xp install disc one time for a repair install to switch my install from IDE to aHCI MODE. But that was quite a while ago. I could try to slipstream all the drivers i need into a xp install disc.

Thats the only hard-ware problem i can think of....

campdude

  • Guest
Re: Rootkit malware deleted now windows xp will not load
« Reply #18 on: May 17, 2012, 04:16:57 AM »
Good news guys....

Yes it was the AHCI mode drivers that i needed to slip stream into XP.
While i was at it i also slipstreamed SP3 into Windows XP install cd and burnt it all...

Windows XP is now booting with Avast now doing a Boot time scan which i requested before everything went insane....


So lesson learnt... If your running Windows XP in AHCI mode you need to slipstream your AHCI drivers and SATA drivers into the Windows XP install... while your doing that you might as well slipstream SP3...

nlite is the tool i used... and a little help from eldergeek website and theres instructions on the net.

However the question still remains... will this next scan come up clean or dirty? soon to find out probably tommorrow morning.

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48645
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: Rootkit malware deleted now windows xp will not load
« Reply #19 on: May 17, 2012, 01:27:47 PM »
Quote
but I am running in AHCI mode instead of IDE....

Reporting anything out of the "norm" always helps those that your ask for help
to offer effective help.  :)
Interpreting error messages or posting a screen shot of them also makes the job easier.  :)
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

campdude

  • Guest
Re: Rootkit malware deleted now windows xp will not load
« Reply #20 on: May 18, 2012, 08:28:20 AM »
Hey yes.. I completely forgot about that... plus i thought i did not need to do that again...

BUT it ran the avast boot scan and found zero infected files did a scan of just C:\Windows\ while windows xp was running
It came out clean.

Did a quickscan... came out clean (avast)

I'm running Microsoft Windows Malicious Software Removal and it found 1 infected file so far...

Kind of interesting.

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Rootkit malware deleted now windows xp will not load
« Reply #21 on: May 18, 2012, 09:06:51 PM »
What did the tool find out of curiosity


campdude

  • Guest
Re: Rootkit malware deleted now windows xp will not load
« Reply #22 on: May 19, 2012, 03:36:48 AM »
What did the tool find out of curiosity

I cant remember it quite clearly but i do believe it found:

win32loader

and it reported it deleted.. I ran the scan again and it was not found the second time (as it was deleted the first time).

Okay i started the thread off a bit angry at Avast but I found out rootkits are dangerously silent when they infest the computer.

I thought Avast killed my xp install but it was mainly just my lack of complete computer guru knowledge about AHCI mode not supported on the original XP install disc... so just needed a repair install and a few extra virus scans and I'm good..

Now i have 116 updates since windows XP SP3...    they should come out with SP4... lol
« Last Edit: May 19, 2012, 03:40:50 AM by campdude »

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Rootkit malware deleted now windows xp will not load
« Reply #23 on: May 19, 2012, 05:02:49 PM »
That is very true about rootkits and they change on a daily basis as well, which does not help matters at all