• Welcome to TechPowerUp Forums, Guest! Please check out our forum guidelines for info related to our community.

Virus/Windows error

Joined
Jan 19, 2009
Messages
201 (0.04/day)
Location
Pittsburgh, Pa
System Name Asus g751jy
Processor Intel Core i7
Memory 24gb ddr 3
Video Card(s) Nvidia GTX 980
Storage 2x msata2 160, 2x 500 gb 7200
Display(s) Seiko Epson 14" Monitor
Case Laptop
So I need some help with fixing a friends computer. The computer is an hp envy running windows 10. It shuts down shortly after booting normally stating windows has encountered an error and needs to shut down. I cant really access any windows programs or control panel options, internet isn't functioning, and I cant seem to install programs. Windows services also seem to be inactive/stopped. I attempted to install mbam, but received a runtime error (46:120) could not call proc error, but I was able to run mbar, which found 6 Trojans/windows hijacks. I'm at a loss, even tried running Kaspersky rescue cd but it found nothing. Last thing I tried was hirens boot cd, ran a mbam scan from that (highly outdated), found 1 item, but the issues are still persisting. Any advice or ideas would be appreciated
 

eidairaman1

The Exiled Airman
Joined
Jul 2, 2007
Messages
40,435 (6.58/day)
Location
Republic of Texas (True Patriot)
System Name PCGOD
Processor AMD FX 8350@ 5.0GHz
Motherboard Asus TUF 990FX Sabertooth R2 2901 Bios
Cooling Scythe Ashura, 2×BitFenix 230mm Spectre Pro LED (Blue,Green), 2x BitFenix 140mm Spectre Pro LED
Memory 16 GB Gskill Ripjaws X 2133 (2400 OC, 10-10-12-20-20, 1T, 1.65V)
Video Card(s) AMD Radeon 290 Sapphire Vapor-X
Storage Samsung 840 Pro 256GB, WD Velociraptor 1TB
Display(s) NEC Multisync LCD 1700V (Display Port Adapter)
Case AeroCool Xpredator Evil Blue Edition
Audio Device(s) Creative Labs Sound Blaster ZxR
Power Supply Seasonic 1250 XM2 Series (XP3)
Mouse Roccat Kone XTD
Keyboard Roccat Ryos MK Pro
Software Windows 7 Pro 64
Have you tried safe mode?

You need to find out what the bsod is by turning off automatic restarts after crash. You also need to find errors in the event viewer too to determine if you have faulty hardware or an os update that screwed it up or something resulting from not browsing the internet with smarts.
Use
Https://www.google.com to learn how to shut off automatic restarts, how to enter safemode.
 

Tallencor

TPU's First Patreon
Supporter
Joined
Nov 25, 2013
Messages
789 (0.21/day)
Location
N.S. Can.
System Name Francis
Processor 7700k @5.0 delid
Motherboard Rog Maximus IX Code
Cooling Corsair H100i V2
Memory 32 GB Gskill Trident Z RGB 3200 xmp
Video Card(s) MSI RX 480 Gaming x 8G
Storage Samsung960evo250GB os Samsung 860 evo 500GB (Games)Samsung 840 120 (Storage)
Display(s) Viewsonic XG 2701 Freesync
Case Corsair Crystal 570x
Audio Device(s) On board Supreme FX
Power Supply Evga 850 G3
Mouse Logitech G900
Keyboard Logitech G810
Software Win 10 Home 64
Benchmark Scores 11+12=19?
Copy the key backup important data and re install Windows.
 
Joined
Jan 19, 2009
Messages
201 (0.04/day)
Location
Pittsburgh, Pa
System Name Asus g751jy
Processor Intel Core i7
Memory 24gb ddr 3
Video Card(s) Nvidia GTX 980
Storage 2x msata2 160, 2x 500 gb 7200
Display(s) Seiko Epson 14" Monitor
Case Laptop
Ive been in safemode, still get the error but it doesn't restart. I'm not getting a bsod, its a pop up about 5 minutes after logging in that says windows encounted an error and needs to restart, and I was unable to stop the shutdown with cmd prompt
 
Joined
Oct 17, 2012
Messages
9,781 (2.32/day)
Location
Massachusetts
System Name Americas cure is the death of Social Justice & Political Correctness
Processor i7-11700K
Motherboard Asrock Z590 Extreme wifi 6E
Cooling Noctua NH-U12A
Memory 32GB Corsair RGB fancy boi 5000
Video Card(s) RTX 3090 Reference
Storage Samsung 970 Evo 1Tb + Samsung 970 Evo 500Gb
Display(s) Dell - 27" LED QHD G-SYNC x2
Case Fractal Design Meshify-C
Audio Device(s) on board
Power Supply Seasonic Focus+ Gold 1000 Watt
Mouse Logitech G502 spectrum
Keyboard AZIO MGK-1 RGB (Kaith Blue)
Software Win 10 Professional 64 bit
Benchmark Scores the MLGeesiest
You really need to do a fresh install there's no other feasible option. At this point if your friend wants a safe and secure computer ,it's the only sure option, especially with all the difficulty you're encountering when trying to access the pc,and address the issue
 
Joined
Jan 17, 2010
Messages
12,280 (2.36/day)
Location
Oregon
System Name Juliette // HTPC
Processor Intel i7 9700K // AMD Ryzen 5 5600G
Motherboard ASUS Prime Z390X-A // ASRock B550 ITX-AC
Cooling Noctua NH-U12 Black // Stock
Memory Corsair DDR4 3600 32gb //G.SKILL Trident Z Royal Series 16GB (2 x 8GB) 3600
Video Card(s) ASUS RTX4070 OC// GTX 1650
Storage Samsung 970 EVO NVMe 1Tb, Intel 665p Series M.2 2280 1TB // Samsung 1Tb SSD
Display(s) ASUS VP348QGL 34" Quad HD 3440 x 1440 // 55" LG 4K SK8000 Series
Case Seasonic SYNCRO Q7// Silverstone Granada GD05
Audio Device(s) Focusrite Scarlett 4i4 // HDMI to Samsung HW-R650 sound bar
Power Supply Seasonic SYNCRO 750 W // CORSAIR Vengeance 650M
Mouse Cooler Master MM710 53G
Keyboard Logitech 920-009300 G512 SE
Software Windows 10 Pro // Windows 10 Pro
Activate the recovery partition. Esc or F11 (I think) on restart.
clicking Troubleshoot, and then selecting HP Recovery Manager

reality is once you get hijacks a complete wipe of the drive is the best way
Ether clean install or use the recovery partition to put it back to factory, and then uninstall all the HP software (not drivers) and do the windows updates
The windows key will remain intact with the recovery partition
 
Last edited:

Solaris17

Super Dainty Moderator
Staff member
Joined
Aug 16, 2005
Messages
25,894 (3.79/day)
Location
Alabama
System Name Rocinante
Processor I9 14900KS
Motherboard EVGA z690 Dark KINGPIN (modded BIOS)
Cooling EK-AIO Elite 360 D-RGB
Memory 64GB Gskill Trident Z5 DDR5 6000 @6400
Video Card(s) MSI SUPRIM Liquid X 4090
Storage 1x 500GB 980 Pro | 1x 1TB 980 Pro | 1x 8TB Corsair MP400
Display(s) Odyssey OLED G9 G95SC
Case Lian Li o11 Evo Dynamic White
Audio Device(s) Moondrop S8's on Schiit Hel 2e
Power Supply Bequiet! Power Pro 12 1500w
Mouse Lamzu Atlantis mini (White)
Keyboard Monsgeek M3 Lavender, Akko Crystal Blues
VR HMD Quest 3
Software Windows 11
Benchmark Scores I dont have time for that.
The solver side of me wants to help you fix this. the realistic side of my tells me to explain its faster just to backup and format.
 
Joined
Jan 19, 2009
Messages
201 (0.04/day)
Location
Pittsburgh, Pa
System Name Asus g751jy
Processor Intel Core i7
Memory 24gb ddr 3
Video Card(s) Nvidia GTX 980
Storage 2x msata2 160, 2x 500 gb 7200
Display(s) Seiko Epson 14" Monitor
Case Laptop
I'm strongly considering the backup/reinstall option, but my friends a photographer, and theres a lot of programs/pictures to backup/replace afterward. I have 3 more ideas I'm gonna run through to try and fix but I think whatever virus she got has me beat lol
 
Joined
Jan 26, 2017
Messages
156 (0.06/day)
Location
Wales
System Name The Double Loader.
Processor Chocolate drop
Cooling Vanilla
Video Card(s) 2x chocolate flakes
Case hundreds and thousands cone
Benchmark Scores 170mhz of brain freeze, and 1062mhz of loving taste
I could be wrong. I use bitdeffender and I'm sure they have a way to scan the computer with out physically booting into windows I sometimes also use malwarebytes and I'm sure they have that type of way to. I highly suggest trying both even if just save mode.

Their is another way.

Take out his haRd drive plug it into yours as external and If you can then have the drive show on your pc. Scan that drive with yours then boom! ! Bye bye virus!
 
Last edited:
Joined
Jul 20, 2013
Messages
236 (0.06/day)
System Name Coffee Lake S
Processor i9-9900K
Motherboard MSI MEG Z390 ACE
Cooling Corsair H115i Platinum RGB
Memory Corsair Dominator Platinum RGB 32GB (2x16GB) DDR4 3466 C16
Video Card(s) EVGA RTX 2080 Ti XC2 Ultra
Storage Samsung 970 Pro M.2 512GB - Samsung 860 EVO 1TB SSD - WD Black 2TB HDD
Display(s) Dell P2715Q 27" 3840x2160 IPS @ 60Hz
Case Fractal Design Define R6
Power Supply Seasonic 860 watt Platinum
Mouse SteelSeries Rival 600
Keyboard Corsair K70 RGB MK.2
Software Windows 10 Pro 64 bit
Pull out the harddrive or SSD from the laptop. Copy all the photos and/or data to a new separate drive to back them up. Wipe drive from laptop and format. Re-insert drive back into laptop and do a fresh install of Windows. Its the best and safest way.

Just had to do something similar to my son's Dell laptop. It's all good now.
 

Tallencor

TPU's First Patreon
Supporter
Joined
Nov 25, 2013
Messages
789 (0.21/day)
Location
N.S. Can.
System Name Francis
Processor 7700k @5.0 delid
Motherboard Rog Maximus IX Code
Cooling Corsair H100i V2
Memory 32 GB Gskill Trident Z RGB 3200 xmp
Video Card(s) MSI RX 480 Gaming x 8G
Storage Samsung960evo250GB os Samsung 860 evo 500GB (Games)Samsung 840 120 (Storage)
Display(s) Viewsonic XG 2701 Freesync
Case Corsair Crystal 570x
Audio Device(s) On board Supreme FX
Power Supply Evga 850 G3
Mouse Logitech G900
Keyboard Logitech G810
Software Win 10 Home 64
Benchmark Scores 11+12=19?
I could be wrong. I use bitdeffender and I'm sure they have a way to scan the computer with out physically booting into windows I sometimes also use malwarebytes and I'm sure they have that type of way to. I highly suggest trying both even if just save mode.

Their is another way.

Take out his haRd drive plug it into yours as external and If you can then have the drive show on your pc. Scan that drive with yours then boom! ! Bye bye virus!
Unless of corse it infeces his pc.
Op. Just think how happy she will be with a clean install with all programs up to date smooth as silk os. Plus you can brag about how good u r at this kind of thing.
 
Joined
Oct 17, 2012
Messages
9,781 (2.32/day)
Location
Massachusetts
System Name Americas cure is the death of Social Justice & Political Correctness
Processor i7-11700K
Motherboard Asrock Z590 Extreme wifi 6E
Cooling Noctua NH-U12A
Memory 32GB Corsair RGB fancy boi 5000
Video Card(s) RTX 3090 Reference
Storage Samsung 970 Evo 1Tb + Samsung 970 Evo 500Gb
Display(s) Dell - 27" LED QHD G-SYNC x2
Case Fractal Design Meshify-C
Audio Device(s) on board
Power Supply Seasonic Focus+ Gold 1000 Watt
Mouse Logitech G502 spectrum
Keyboard AZIO MGK-1 RGB (Kaith Blue)
Software Win 10 Professional 64 bit
Benchmark Scores the MLGeesiest
Isn't doing any sort of back up very risky in a situation like this? Unless you have some knowledge as to the location of the supposed infection or rootkits, Making a back up would likely contain whatever viruses are plaguing the computer right now. Personally I would just cut my losses, and be certain to impress upon this user the importance of proper security so this situation can be avoided in the future.I understand that it's an inconvenience to lose photographs, important files, memorabilia, but it's better than losing your identity and bank information( worst case scenario )
 
Joined
Jan 26, 2017
Messages
156 (0.06/day)
Location
Wales
System Name The Double Loader.
Processor Chocolate drop
Cooling Vanilla
Video Card(s) 2x chocolate flakes
Case hundreds and thousands cone
Benchmark Scores 170mhz of brain freeze, and 1062mhz of loving taste
Isn't doing any sort of back up very risky in a situation like this? Unless you have some knowledge as to the location of the supposed infection or rootkits, Making a back up would likely contain whatever viruses are plaguing the computer right now. Personally I would just cut my losses, and be certain to impress upon this user the importance of proper security so this situation can be avoided in the future.I understand that it's an inconvenience to lose photographs, important files, memorabilia, but it's better than losing your identity and bank information( worst case scenario )
You could do my option. It "shouldn't" not saying 100% infect you of you have a good antivirus and protected setup. But if you wish just format and reinstall windows.
 
Joined
Jan 19, 2009
Messages
201 (0.04/day)
Location
Pittsburgh, Pa
System Name Asus g751jy
Processor Intel Core i7
Memory 24gb ddr 3
Video Card(s) Nvidia GTX 980
Storage 2x msata2 160, 2x 500 gb 7200
Display(s) Seiko Epson 14" Monitor
Case Laptop
Haha I have comodo and Malwarebytes pro (literally one of the few programs ive paid for), I'm not too concerned bout my laptop. If I had a docking bay for external drives, I think that's an awesome idea, I could even put her hd into one of my bays since my os is on a ss......ty for the ideas I didn't consider taking the harddrive out physically, I had the idea to update mbar before putting it on her computer, the version that found the hijacks was 2014, now I'm scanning it with a 2017 database, if that doesn't work to get the ability to install mbam ill try putting it in my computer and post back after I get another scan

Also, mbam doesn't have a bootable option, but they do have the rootkit tool that doesn't need to be installed. I tried the kaspersky rescue which boots into its own desktop, but if found nothing
 
Last edited by a moderator:
Joined
Jan 26, 2017
Messages
156 (0.06/day)
Location
Wales
System Name The Double Loader.
Processor Chocolate drop
Cooling Vanilla
Video Card(s) 2x chocolate flakes
Case hundreds and thousands cone
Benchmark Scores 170mhz of brain freeze, and 1062mhz of loving taste
Haha I have comodo and Malwarebytes pro (literally one of the few programs ive paid for), I'm not too concerned bout my laptop. If I had a docking bay for external drives, I think that's an awesome idea, I could even put her hd into one of my bays since my os is on a ss......ty for the ideas I didn't consider taking the harddrive out physically, I had the idea to update mbar before putting it on her computer, the version that found the hijacks was 2014, now I'm scanning it with a 2017 database, if that doesn't work to get the ability to install mbam ill try putting it in my computer and post back after I get another scan
You are welcome it'd actually best idea in my eyes having it connected to yours then cleaning it.
 
Joined
Jan 19, 2009
Messages
201 (0.04/day)
Location
Pittsburgh, Pa
System Name Asus g751jy
Processor Intel Core i7
Memory 24gb ddr 3
Video Card(s) Nvidia GTX 980
Storage 2x msata2 160, 2x 500 gb 7200
Display(s) Seiko Epson 14" Monitor
Case Laptop
what will suck is finding where hers is. My laptop has easy access to the 2 ssd's and 1 of the regular hd's. Hers....doesn't look to have easy access to anything.
 
Joined
Jan 26, 2017
Messages
156 (0.06/day)
Location
Wales
System Name The Double Loader.
Processor Chocolate drop
Cooling Vanilla
Video Card(s) 2x chocolate flakes
Case hundreds and thousands cone
Benchmark Scores 170mhz of brain freeze, and 1062mhz of loving taste
what will suck is finding where hers is. My laptop has easy access to the 2 ssd's and 1 of the regular hd's. Hers....doesn't look to have easy access to anything.
Darn that sounds like a pain
 

Solaris17

Super Dainty Moderator
Staff member
Joined
Aug 16, 2005
Messages
25,894 (3.79/day)
Location
Alabama
System Name Rocinante
Processor I9 14900KS
Motherboard EVGA z690 Dark KINGPIN (modded BIOS)
Cooling EK-AIO Elite 360 D-RGB
Memory 64GB Gskill Trident Z5 DDR5 6000 @6400
Video Card(s) MSI SUPRIM Liquid X 4090
Storage 1x 500GB 980 Pro | 1x 1TB 980 Pro | 1x 8TB Corsair MP400
Display(s) Odyssey OLED G9 G95SC
Case Lian Li o11 Evo Dynamic White
Audio Device(s) Moondrop S8's on Schiit Hel 2e
Power Supply Bequiet! Power Pro 12 1500w
Mouse Lamzu Atlantis mini (White)
Keyboard Monsgeek M3 Lavender, Akko Crystal Blues
VR HMD Quest 3
Software Windows 11
Benchmark Scores I dont have time for that.
Isn't doing any sort of back up very risky in a situation like this? Unless you have some knowledge as to the location of the supposed infection or rootkits, Making a back up would likely contain whatever viruses are plaguing the computer right now. Personally I would just cut my losses, and be certain to impress upon this user the importance of proper security so this situation can be avoided in the future.I understand that it's an inconvenience to lose photographs, important files, memorabilia, but it's better than losing your identity and bank information( worst case scenario )

It depends, as long as the host machine has an AV solution that supports active scanning it will clean whatever comes through.
 
Joined
Jan 20, 2017
Messages
328 (0.12/day)
System Name Burning a hole through my wallet
Processor 3700X
Motherboard Maximus 8 Hero
Cooling Custom loop (EK Extreme 360 Rad, Supremacy evo w/AM4 bracket)
Memory 2x16 Corsair Vengeance Pro RGB @3200MHz
Video Card(s) EVGA 2080s hybrid
Storage 960 Evo, 660p, P1, BX500, 2XWD Black, Ironwolf Proo
Display(s) Predator 27" 4k 144hz HDR
Case NZXT h700i
Power Supply EVGA G3 850
Mouse Logitech G502 hero
Keyboard Drop ALT W/holypanda switches
Software Win 10 Pro 64, Ubuntu 20.04, Manjaro (latest)
If you've got some sort of a spare system, leave it disconnected from any sort of network, plug in the drive, boot into your host os copy whatever valuables that you want off of it onto something like a USB stick, and from there do something like wipe both drives and reinstall
 
Joined
Oct 17, 2012
Messages
9,781 (2.32/day)
Location
Massachusetts
System Name Americas cure is the death of Social Justice & Political Correctness
Processor i7-11700K
Motherboard Asrock Z590 Extreme wifi 6E
Cooling Noctua NH-U12A
Memory 32GB Corsair RGB fancy boi 5000
Video Card(s) RTX 3090 Reference
Storage Samsung 970 Evo 1Tb + Samsung 970 Evo 500Gb
Display(s) Dell - 27" LED QHD G-SYNC x2
Case Fractal Design Meshify-C
Audio Device(s) on board
Power Supply Seasonic Focus+ Gold 1000 Watt
Mouse Logitech G502 spectrum
Keyboard AZIO MGK-1 RGB (Kaith Blue)
Software Win 10 Professional 64 bit
Benchmark Scores the MLGeesiest
I wonder if @OP is able to access windows defender ( long shot& not a great program) but it does have an off-line scan option. It shuts down windows and does the scan in a boot state. Worth a shot if there's no other option
 
Joined
Jan 19, 2009
Messages
201 (0.04/day)
Location
Pittsburgh, Pa
System Name Asus g751jy
Processor Intel Core i7
Memory 24gb ddr 3
Video Card(s) Nvidia GTX 980
Storage 2x msata2 160, 2x 500 gb 7200
Display(s) Seiko Epson 14" Monitor
Case Laptop
I was able to use mrt, so once mbar is done ill look into that. I didn't realize it had a boot state scan option.
 
Joined
Jan 26, 2017
Messages
156 (0.06/day)
Location
Wales
System Name The Double Loader.
Processor Chocolate drop
Cooling Vanilla
Video Card(s) 2x chocolate flakes
Case hundreds and thousands cone
Benchmark Scores 170mhz of brain freeze, and 1062mhz of loving taste
I was able to use mrt, so once mbar is done ill look into that. I didn't realize it had a boot state scan option.
Make sure to update us!
 
Joined
Oct 17, 2012
Messages
9,781 (2.32/day)
Location
Massachusetts
System Name Americas cure is the death of Social Justice & Political Correctness
Processor i7-11700K
Motherboard Asrock Z590 Extreme wifi 6E
Cooling Noctua NH-U12A
Memory 32GB Corsair RGB fancy boi 5000
Video Card(s) RTX 3090 Reference
Storage Samsung 970 Evo 1Tb + Samsung 970 Evo 500Gb
Display(s) Dell - 27" LED QHD G-SYNC x2
Case Fractal Design Meshify-C
Audio Device(s) on board
Power Supply Seasonic Focus+ Gold 1000 Watt
Mouse Logitech G502 spectrum
Keyboard AZIO MGK-1 RGB (Kaith Blue)
Software Win 10 Professional 64 bit
Benchmark Scores the MLGeesiest
I didn't realize it had a boot state scan option.

neither did i , until i was screwing around in windows seeign what new shit was added, and came upon the option. it isnt in the windows defender interface that You find in the taskbar though, you have to go into system settings, by right clicking on taskbar/settings/, then into accounts/security.
Frankly, i was surprised, but its about damn time M$ get in the game with some decent settings/options regarding theyre Security programs...all in all, it isnt terrible for a free program, but there are others i would go with personally. I recently bought MBAM on newegg.com for $30, but it came with a $10 gift card refund 4 days after purchase....its a 1 year key, for 3 PC's, so it will cover me on 3 of my machines atleast..since you have MBAM, try out chameleon too, it is good @ finding nasty shit on your PC...lemme see what tools i have from MBAM's team, some are pretty good.



Lots of goodies from malwarebytes CAN be useful in the right situation..


Malwarebytes AdwCleaner
LEARN MORE
DOWNLOAD
Junkware Removal Tool by Malwarebytes
LEARN MORE
DOWNLOAD
Malwarebytes Anti-Rootkit beta
LEARN MORE
DOWNLOAD
Malwarebytes Chameleon
LEARN MORE
DOWNLOAD
Malwarebytes StartUpLITE
LEARN MORE
DOWNLOAD
Malwarebytes FileASSASSIN
LEARN MORE
DOWNLOAD
Malwarebytes RegASSASSIN
LEARN MORE
DOWNLOAD
 
Last edited:
Joined
Jan 19, 2009
Messages
201 (0.04/day)
Location
Pittsburgh, Pa
System Name Asus g751jy
Processor Intel Core i7
Memory 24gb ddr 3
Video Card(s) Nvidia GTX 980
Storage 2x msata2 160, 2x 500 gb 7200
Display(s) Seiko Epson 14" Monitor
Case Laptop
I finished the Malwarebytes anti rootkit tool fully updated, it found nothing this time. Tried to do the offline scan, says an error occurred...try again later. I'm thinking I may have already removed the viruses present and now my issues are simply windows file based. I am currently making a windows 10 boot drive to run recovery and see if that gets me anywhere, thanks for the ideas so far, ill post more when I'm done with that
 

eidairaman1

The Exiled Airman
Joined
Jul 2, 2007
Messages
40,435 (6.58/day)
Location
Republic of Texas (True Patriot)
System Name PCGOD
Processor AMD FX 8350@ 5.0GHz
Motherboard Asus TUF 990FX Sabertooth R2 2901 Bios
Cooling Scythe Ashura, 2×BitFenix 230mm Spectre Pro LED (Blue,Green), 2x BitFenix 140mm Spectre Pro LED
Memory 16 GB Gskill Ripjaws X 2133 (2400 OC, 10-10-12-20-20, 1T, 1.65V)
Video Card(s) AMD Radeon 290 Sapphire Vapor-X
Storage Samsung 840 Pro 256GB, WD Velociraptor 1TB
Display(s) NEC Multisync LCD 1700V (Display Port Adapter)
Case AeroCool Xpredator Evil Blue Edition
Audio Device(s) Creative Labs Sound Blaster ZxR
Power Supply Seasonic 1250 XM2 Series (XP3)
Mouse Roccat Kone XTD
Keyboard Roccat Ryos MK Pro
Software Windows 7 Pro 64
Try SFC /SCANNOW from a console
 
Top