1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

Solved: I have a winxp problem, possibly malware/hacking?

Discussion in 'Virus & Other Malware Removal' started by occamsspork, Sep 28, 2008.

Thread Status:
Not open for further replies.
  1. occamsspork

    occamsspork Thread Starter

    Joined:
    Sep 28, 2008
    Messages:
    16
    Hello to all. My problem is somewhat odd, I was playing CS and all of a sudden the game just stops and i hear a strange keening sound and the system hangs. On subsequent reboots, windows will load at the winxp screen, then just reads the hard disk over and over, while emitting the same keening noise. After the winxp logo screen finishes loading everything, all I get is a black screen, and a constant hard drive light, as well as intermittent high pitched noise. I don't think I can give anyone a hijack this log, unless someone can tell me how to boot into safe mode from GRUB. This is a dual boot system with sabayon and win xp. the specs are:

    ASUS p5wdh DL
    1 Gb ram
    1 WD raptor 74
    1 WD caviar 320Gb (storage, but comes up as drive C, even
    though the raptor is the system drive)
    1 NEC dvd drive
    1 Plextor DVD-RW
    radeon x800xt
    500wt power

    both hard drives are SATA.

    If someone could tell me how to get into safe mode from GRUB that would be great, but any help would be appreciated.
     
  2. occamsspork

    occamsspork Thread Starter

    Joined:
    Sep 28, 2008
    Messages:
    16
    Hmm. this is strange. now everything works again, because I'm now posting from winxp, and I read the HJT. I'll post the log, but I wonder what happened.

    logfile:

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 5:51:17 AM, on 9/28/2008
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
    Boot mode: Normal

    Running processes:
    D:\WINDOWS\System32\smss.exe
    D:\WINDOWS\system32\winlogon.exe
    D:\WINDOWS\system32\services.exe
    D:\WINDOWS\system32\lsass.exe
    D:\WINDOWS\system32\Ati2evxx.exe
    D:\WINDOWS\system32\svchost.exe
    D:\WINDOWS\System32\svchost.exe
    D:\WINDOWS\system32\Ati2evxx.exe
    D:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
    D:\WINDOWS\Explorer.EXE
    D:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
    D:\WINDOWS\RTHDCPL.EXE
    D:\Program Files\COMODO\Firewall\cfp.exe
    D:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
    D:\Program Files\Ray Adams\ATI Tray Tools\atitray.exe
    D:\WINDOWS\system32\spoolsv.exe
    D:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    D:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    D:\Program Files\COMODO\Firewall\cmdagent.exe
    D:\Program Files\Mozilla Firefox\firefox.exe
    D:\hjt\HiJackThis.exe

    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
    O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
    O4 - HKLM\..\Run: [COMODO Firewall Pro] "D:\Program Files\COMODO\Firewall\cfp.exe" -h
    O4 - HKLM\..\Run: [avgnt] "D:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
    O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
    O4 - HKCU\..\Run: [AtiTrayTools] "D:\Program Files\Ray Adams\ATI Tray Tools\atitray.exe"
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
    O20 - AppInit_DLLs: D:\WINDOWS\system32\guard32.dll
    O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - D:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
    O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - D:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - D:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - D:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - D:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: COMODO Firewall Pro Helper Service (cmdAgent) - Unknown owner - D:\Program Files\COMODO\Firewall\cmdagent.exe

    --
    End of file - 2965 bytes
     
  3. occamsspork

    occamsspork Thread Starter

    Joined:
    Sep 28, 2008
    Messages:
    16
As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/754049

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice