prempujari Posted June 15, 2009 I first ran an update on superantispyware I ran complete scan using superantispyware After the scan and clean up I was prompted to reboot which I did After reboot I could not see the password dialog balloon to log in to windows I only look at a screen to enter the password After shutting off power on the PC and booting up I cannot even get to the log on screen The PC just goes on infinite reboot loop Any ideas would be of help. Share this post Link to post Share on other sites
prempujari Posted June 16, 2009 Thanks for responding. Will a repair going to wipe out the log file you are referring to ? Any softer options other than XP reinstallation would be of immense help. Any way to repair files from recovery console ? This is the only way I can access my hard drive now. Also hopefully of help, here is the blue screen message I receive after boot up failure: Stop: c000021a {Fatal System Error} The Session Manager Initialization system process terminated unexpectedly with a status of 0xc000022 (0x00000000,0x0000000) The system has been shut down Share this post Link to post Share on other sites
prempujari Posted June 18, 2009 "C:\Documents and Settings\user\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\Logs\SUPERAntiSpyware Scan Log - 06-15-2009 - 00-20-23.log" -------------------------------------------------------------------------------- SUPERAntiSpyware Scan Log https://www.superantispyware.com Generated 06/15/2009 at 00:20 AM Application Version : 4.26.1004 Core Rules Database Version : 3938 Trace Rules Database Version: 1881 Scan type : Complete Scan Total Scan Time : 01:05:45 Memory items scanned : 367 Memory threats detected : 0 Registry items scanned : 4711 Registry threats detected : 56 File items scanned : 30503 File threats detected : 0 Browser Hijacker.Deskbar HKCR\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B} HKCR\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}\ProxyStubClsid HKCR\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}\ProxyStubClsid32 HKCR\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}\TypeLib HKCR\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}\TypeLib#Version Adware.Zango/ShoppingReport HKCR\TypeLib\{A56FE01C-77C4-4F5E-8198-E4B72207890A} HKCR\TypeLib\{A56FE01C-77C4-4F5E-8198-E4B72207890A}\1.0 HKCR\TypeLib\{A56FE01C-77C4-4F5E-8198-E4B72207890A}\1.0\0 HKCR\TypeLib\{A56FE01C-77C4-4F5E-8198-E4B72207890A}\1.0\0\win32 HKCR\TypeLib\{A56FE01C-77C4-4F5E-8198-E4B72207890A}\1.0\FLAGS HKCR\TypeLib\{A56FE01C-77C4-4F5E-8198-E4B72207890A}\1.0\HELPDIR HKCR\Interface\{AF55160D-CDE1-4A8B-8001-66DA06BEE740} HKCR\Interface\{AF55160D-CDE1-4A8B-8001-66DA06BEE740}\ProxyStubClsid HKCR\Interface\{AF55160D-CDE1-4A8B-8001-66DA06BEE740}\ProxyStubClsid32 HKCR\Interface\{AF55160D-CDE1-4A8B-8001-66DA06BEE740}\TypeLib HKCR\Interface\{AF55160D-CDE1-4A8B-8001-66DA06BEE740}\TypeLib#Version Adware.Vundo Variant/Rel HKLM\SOFTWARE\Microsoft\MS Optimization HKLM\SOFTWARE\Microsoft\MS Optimization#RID HKLM\SOFTWARE\Microsoft\MS Optimization\JKWL HKLM\SOFTWARE\Microsoft\MS Optimization\JKWL\Could+not+start+the+Automatic+Updates+service+on+Local+Computer.+Error+1058%3A+The+service+cannot+be+started%2C+either+because+it+is+disabled+or+because+it+has+no+enabled+devices+associated+with+it.+OK HKLM\SOFTWARE\Microsoft\MS Optimization\JKWL\could+not+start+the+Automatic+Updates+service+on+Local+Computer.+Error+1058%3A+The+service+cannot+be+started,+either+because+it+is+disabled+or+because+it+has+no+enabled+devices+associated+with+it.+spyware+removal+tool HKLM\SOFTWARE\Microsoft\MS Optimization\JKWL\Error+1058%3A+The+service+cannot+be+started%2C+either+because+it+is+disabled+or+because+it+has+no+enabled+devices+associated+with+it. HKLM\SOFTWARE\Microsoft\MS Optimization\JKWL\Error+1058%3A+The+service+cannot+be+started%2C+either+because+it+is+disabled+or+because+it+has+no+enabled+devices+associated+with+it.+virus+removal+tool HKLM\SOFTWARE\Microsoft\MS Optimization\JKWL\https://www.superantispyware.com/ HKLM\SOFTWARE\Microsoft\MS Optimization\JKWL\ould+not+start+the+Automatic+Updates+service+on+Local+Computer.+Error+1058%3A+The+service+cannot+be+started%2C+either+because+it+is+disabled+or+because+it+has+no+enabled+devices+associated+with+it.+spyware+removal+tool HKLM\SOFTWARE\Microsoft\MS Optimization\JKWL\ould+not+start+the+Automatic+Updates+service+on+Local+Computer.+Error+1058%3A+The+service+cannot+be+started%2C+either+because+it+is+disabled+or+because+it+has+no+enabled+devices+associated+with+it.+virus+removal+tool HKLM\SOFTWARE\Microsoft\MS Optimization\JKWL\superanitspyware HKLM\SOFTWARE\Microsoft\MS Optimization\JKWL\superanitspyware#LU HKLM\SOFTWARE\Microsoft\MS Optimization\JKWL\superanitspyware#CT HKLM\SOFTWARE\Microsoft\MS Optimization\JKWL\superanitspyware#LT HKLM\SOFTWARE\Microsoft\MS Optimization\JKWL\vundo+removal+tool HKLM\SOFTWARE\Microsoft\MS Optimization\JKWL\vundo+removal+tool#LU HKLM\SOFTWARE\Microsoft\MS Optimization\JKWL\vundo+removal+tool#CT HKLM\SOFTWARE\Microsoft\MS Optimization\JKWL\vundo+removal+tool#LT HKLM\SOFTWARE\Microsoft\MS Optimization\me HKLM\SOFTWARE\Microsoft\MS Optimization\me#LTM HKLM\SOFTWARE\Microsoft\MS Optimization\me#CDY HKLM\SOFTWARE\Microsoft\MS Optimization\me#CNT HKLM\SOFTWARE\Microsoft\MS Optimization\me#LBL HKLM\SOFTWARE\Microsoft\MS Optimization\me#MN HKLM\SOFTWARE\Microsoft\MS Optimization\mm HKLM\SOFTWARE\Microsoft\MS Optimization\mm#LTM HKLM\SOFTWARE\Microsoft\MS Optimization\mm#CDY HKLM\SOFTWARE\Microsoft\MS Optimization\mm#CNT HKLM\SOFTWARE\Microsoft\MS Optimization\s4 HKLM\SOFTWARE\Microsoft\MS Optimization\s4#LTM HKLM\SOFTWARE\Microsoft\MS Optimization\s4#CDY HKLM\SOFTWARE\Microsoft\MS Optimization\s4#CNT HKLM\SOFTWARE\Microsoft\MS Optimization\se HKLM\SOFTWARE\Microsoft\MS Optimization\se#LTM HKLM\SOFTWARE\Microsoft\MS Optimization\se#CDY HKLM\SOFTWARE\Microsoft\MS Optimization\se#CNT HKLM\SOFTWARE\Microsoft\MS Optimization\zz HKLM\SOFTWARE\Microsoft\MS Optimization\zz#LTM HKLM\SOFTWARE\Microsoft\MS Optimization\zz#CDY HKLM\SOFTWARE\Microsoft\MS Optimization\zz#CNT Share this post Link to post Share on other sites
prempujari Posted June 20, 2009 There are but this forum does not allow me to upload those files: 05/30/2009 05:27a 35 Quarantine - 05-30-2009 - 05-27-21.DSC 05/30/2009 05:27a 801,437 Quarantine - 05-30-2009 - 05-27-21.SBU 06/02/2009 10:03a 35 Quarantine - 06-02-2009 - 10-03-32.DSC 06/02/2009 10:03a 738 Quarantine - 06-02-2009 - 10-03-32.SBU 06/15/2009 12:30a 35 Quarantine - 06-15-2009 - 00-30-11.DSC 06/15/2009 12:30a 4,855 Quarantine - 06-15-2009 - 00-30-11.SBU Share this post Link to post Share on other sites
prempujari Posted June 21, 2009 Uploading quarantine files as RAR files Also I now recall the superantispyware program crashing with a message box showing a error message about "virtual function call" before I got the message to reboot. [Attachments removed for the safety of other forum users.] Share this post Link to post Share on other sites
prempujari Posted June 22, 2009 The log file above seems to indicate there were none found: //////////////////////////// File items scanned : 30503 File threats detected : 0 /////////////////////////// I also found a drwtsn32.log if you want to see it. Share this post Link to post Share on other sites
prempujari Posted June 23, 2009 No. This was the scan that caused the system to crash. Share this post Link to post Share on other sites
woctaog Posted June 27, 2009 This exact same thing happened to me. I installed SuperAntiSpyware, ran one scan, then restarted the computer. Upon restart I got a popup window that asked me to enter my name and password (none of the Windows XP account have passwords). I couldn't get past the window so I had to reset. Now I get a blue screen everytime I try and start Windows. Safe mode doesn't work, last good configuration doesn't work. I made a boot disk so I can access the file system via DOS, but can't do much else. I attached my log file. This is my wife's parent's computer, I work with computer's for a living and I'm pretty embarrassed that I managed to completely break theirs. Any help would be great. [attachment=0]logfile.zip[/attachment] Thanks! Share this post Link to post Share on other sites