Win 7 Safemode Freeze

What!? Are u insane? Sure u are.

This user must be banned immediately
Reported to mods

Hello Usef. Welcome to the Comodo forums. We’re a cool and open place where a lot of conversations are possible as long as they are done politely and as good netizins.

Your remark about Russians is violating the Forum Policy Paragraph 8 “Unacceptable behaviours and content” section 3: Offences based on age, sex, race, location, political affiliation, religion, cultural background or any other criteria.

We do not allow offending people sheerly for the fact they are from a certain country like in this case Russia: “I think they might be russians but then again I blame everything on the russians”. It is prejudicial.

When you wrote “just like my grandpa who went to ww2 to kill them all” I understand that this is what your grandfather did but that is not something you would do or encourage others to do. Please confirm.

I give you a warning and we will keep an extra eye on your postings for a while to make sure you will not be violating the forum policy again.

Thank you for your apologies. We don’t believe in immediate banning unless somebody is only here to spam. I can’t remember we banned somebody after one outrageous post.

I was reading your problem and I am seriously considering that your problem could be with your hardware or drivers rather than with malware.

When going to safe mode it stalls at one driver (.sys) file. What file is that? What version of Windows are you using on what hardware? How old is the hardware you’re using?

If I understand correctly you can’t access Windows and Safe mode anymore. Also Ubuntu is running very slow on your computer. That indicates problems with hardware to me with hard drive as the first suspect

I would start with hooking up your hard drive in another computer and check the hard drive’s health with Crystal Disk Info. When installing make sure to not install the sponsor software if that is not to your liking. Please post a screenshot of Crystal Disk Info with all the SMART parameters showing. This will give an indication of your drive’s health. Also run checkdisk while your hard drive is in the other computer.

I unplug my computer reset the bios manually with the pins, reboot the bios with the original disk that came with the mobo, lock my force bios in bios settings, and turn on my ECC memory scub in bios which was defaulted to off. Then I install my win 7 offline, and my drivers that came with the original mobo , to be exact the amd 870 chipset, the raid drivers, the high def audio, the renesance usb, just everything the disk came with, then i install my comodo intrenet premuim which i burnt offlline before i plug my computer into god forsakin hell which we call the intrenet. I also disabled win 7 features such as the games, the remote decompression thing, the printer network but not the netframework or the search index, i just leave those 2 on. Then after all that 3-4 hours later I plug my computer onto my modem which i unplugged for 3-4 hours and manually reset the button, after it connects i imedialty update comodo (which i love and hate like a real relationship would have)
So everything is fine until you go online, its basicly starting over. It also sucks because every software wants to update all at once. Maybe theres a bug in one of the windows updates??or maybe a new driver update??

Do you get the same results when you reformant windows and disablewindows updates??

Vgasave is Windows safe mode graphics driver. What do you mean with memory conflicts? Now did you find them? Did you check memory with a tool like Memtest? Is your system overclocked?

Which brings me to todays current events, same freezing method comes back, this time chkdsk /f finds nothing booting up, safemode freezes at atipice.sys so i get rid of that and go to the next classpnp.sys same problem, try to boot into safemode minimal mode, and everything freezes, try to restore and everything fails and says the system has an error. So fine i try to start new,

so I unplug my computer reset the bios manually with the pins, reboot the bios with the original disk that came with the mobo, lock my force bios in bios settings, and turn on my ECC memory scub in bios which was defaulted to off.

Are you using ECC memory? That is normally only used in server motherboards. Setting ECC on non ECC memory will do nothing and worst case introduce instability.

Then I install my win 7 offline, and my drivers that came with the original mobo , to be exact the amd 870 chipset, the raid drivers, the high def audio, the renesance usb, just everything the disk came with, then i install my comodo intrenet premuim which i burnt offlline before i plug my computer into god forsakin hell which we call the intrenet. I also disabled win 7 features such as the games, the remote decompression thing, the printer network but not the netframework or the search index, i just leave those 2 on.

Then after all that 3-4 hours later I plug my computer onto my modem which i unplugged for 3-4 hours and manually reset the button, after it connects i imedialty update comodo (which i love and hate like a real relationship would have) and update windows like 130 times just to get to win 7 service pack and its slow it takes like 4 hours. Allso it freezes and I have to go back and hit fix windows 7 update in adminstration mode.

You mentioned problems with atipcie driver. Please install the latest AMD motherboard driver to be sure you are using the latest: http://support.amd.com/us/gpudownload/windows/Pages/raid_windows.aspx#2 .

Finaly im doing all this while my windows firewall is doing its own thing, like enabling homegroup after i disabled it a million times and my comodo firewall is suppose to be handling that problem not my windows firewall but it keeps turning on. In my action group it says comodo is turned on and working and handling my firewall while my windows says my firewall is disabled and to turn windows firewall on.
Anyways im off track but your a genouis you can make sense of my 3-4 year problem rant, so while updating im noticing my comodo firewall is getting like 150-200 connections just trying to update windows and windows aint updating at an efficent manner at all its taking all day.
Updating Windows on a freshly installed system always take serious time. That is why I avoid a clean install as much as possible.
I also noticed where my problem was coming before I rebooted my computer after it was working perfect;y for nearly a year, its a HKCU/213213013284-213-1203-12-30149 those numbers arnt correct but when comodo is in paranoid mode, I told it to block that key and it did like 1700-1800 times in 1-2 hour period and stopped the somputer from crashing this was while safemode did not bootup.
Randomly blocking access to important registry keys while being in Paranoid Mode is a recipe for disaster. Some problems it causes will show up when booting.
So i did fix safemode after the bios reset and stuff I just dnt know wwhat to do, and quite frankly im scared to use anyone else's computer since i downed like 5 of my own, and had to quite school because I could'nt get any work done, it sorta broken* up my whole life now i sit at home and play xbox and im like almost 30 and it sucks so much.
Its pathetic and i get misreable and go on rants about rubbish* i shouldnt even be talking about like putin selling s-300 missles to syria and telling the world no one should intervene. Or adma loanza who's brain has been clearly hacked as he destroyed his comp before he murdered those school children, proof of concept is vestibular rehabilitation. Nothing makes sense anymore I just wanna listen to music and learn something that maybe can get me a job, hell mc donalds won't even hire me.
Please leave out Russian and international politics .

For the moment I suggest you stop using Paranoid Mode and go back to using Safe Mode. Some of the mess that is happening could be caused by questionable decisions so easily made in Paranoid Mode. Best way to do that is import a factory clean configuration from the CIS installation folder and activate it. In the process of importing give the new profile an appropriate name like CIS - Proactive Security New.Reboot after activating

This will create a stable starting point. Start from there. You are doing too many things at the same time making it hard to help you.

Although not common there are motherboards for non server applications which support ECC memory. You fail to mention whether you are actually using ECC memory.

Neither did you try updating the motherboard drivers to see if the instability could be attributed to this.

To be honest. You need to deal with details to get to what is happening regardless of what your favorite explanations are.

You need to be willing to follow alternative strategies of analysis and assumptions if you want to find out what is going on. Trying to get to the bottom is often a multi faceted processes working systematically from various assumptions. Elimination is an important factor in the process.

Failing to work systematically will get us nowhere.

The question is whether you are willing to stop rambling and jumping to your favorite conclusions, which inevitably tell you got hacked or otherwise compromised, and are willing to pursue various strategies to try to get to grips with the instability of your system?

The ball is in your court…

I don’t think you’re arrogant. You’re quest could do with structure though. Hence why I replied like I did in the above

I'm just using dd3 running at 1333mhz for my ram. I did crash again today playing a video game, ran safemode to figure out the VGASAVE turned back on by itself. I don't know how its possible to turn VGASAVE non-plug and play driver on after I disabled it.
Vgasave is the driver that Windows will use when running in Safe Mode (Windows won't load the graphics drivers that is installed because Safe Mode is for diagnosing). Vgasave will also run when there is no drive present yet for a graphics adapter when Windows is running normally.

This non-plug and play driver seriously creates horrible memory conflicts which cannot be detected by Comodo software.
[/quote]
CIS is not meant to deal with problems with drivers.

What do you mean with horrible memory conflicts? How did you establish this fact? What diagnostic tool or logs did you use? Please answer as brief as possible.

So I turned it off in safemode
There is no need to turn it off. If you are in doubt vgasave is not the legit Windows system file you can check its digital signature. To know for sure that a system file is the original file you can use Sigcheck to see if it is digitally signed by Microsoft.

Download this zip archive and unpack it to C:\Program Files\SysinternalsSuite\ . When done run sigcheck.reg to add it to the registry.

When this is done navigate to the system32\drivers\ folder, look up and select the file you want to check, click right and choose Signature from the context menu. A black command box will pop up. See if it is signed or not.

and did a chkdsk /f , nothing found and after I started to boot backup into normal windows I start hearing a screeching sound from my new backup drive, I cannot tell you if it was because the harddrive was sideways or why it happened, all I can say it just happened, and if I plug that hard drive back into my computer my windows will not boot up anymore even though im using another harddrive to boot windows up.
Did you check both hard drives when in Safe Mode? Could checkdisk check both drives while you were in safe mode?

Can you boot to Windows when your backup drive is not connected? Does the BIOS detect both drives?

So there goes backup hard drive....... and let me apologize for wasting your time. People who need help to solve there problems for office or work related issue's deserve it more then me. I remember how hard it is to get any work related to school or office done because it cripples you and what do you tell your boss. I just thankful I don't have to worry about those issue's and can focus on whatever I deem cool and great like Euclideon new unlimited detail rendering software (works without and graphics card). Check there youtube channel out that is not a waste of your time I give you my solid word it will change the world.
When did you purchase this drive? If it turns out to be broken and it is still under warranty you may want to return it and get it replaced.

I think switching off vgasave may cause that message.

Since I turned vgasave off I have had one freezeup watching Netflix.
Freezes with plug ins (I assume Netflix will use Flash or other plugin) are most likely to be caused by the plugin its self or by graphics driver. Please make sure that you are using the latest version of your graphics driver.

I'm now testing it in demand mode, I have updated my chipset to the current one on the amd site, so I'm hoping for the love on god that it has finally stopped.
I would not assume vgasave to be the cause of plugin freezes. Instabilities in the plug in and graphics drivers are the usual suspects.
Harddrive was purchased 2 years ago for my Toshiba laptop which now has died, I don't think I can return it. The screeching sound was epic, I didn't think that was possible to do.
I never knew it could make such a sound. I assume the heads must have crashed the platters. If that happened your drive is toast I am afraid.
Basically I think I might have solved the problem, I can now get into safemode which I was creating that problem, I'm using the new drivers and I was using the old ones before because I thought the chipset driver was related to all my other sound drivers and etc, which is not true. So I think I might have solved all the problems
With your hard drive dieing and making it hard to access Windows will respond to that. It will try to access the drive and such attempts take two minutes in which the system may not respond. Which may make the situation even worse than it already is.
If I freeze up again I'll try to get you a screen shot of the memory conflicts
I would say let vgasave start with whatever start up setting its default is. I am on Windows 8 so I cannot take look at how it is set; on demand start or start
also I could not get sigcheck running, I hit the reg and it added it , then I right click to on vga.dll the only one in sys32 and click on signature and go to find program from list, browse to both 2 file left in sig folder the play a dos command that is to fast to read or im doing it wrong. Ill look up a video to see what I'm doing wrong, or use killswitch to trace the file, thx for the support it might just work.
I seriously doubt vgasave would not be the file we think it is. But since you are in doubt about it, it never hurts to check. When checking also check vga.sys in system32\drivers folder.

I am not sure why sigcheck shell extension is not working. Do you have the following files in the folder:
sigcheck.cmd
sigcheck.exe
sigcheck.reg

Did you edit sigcheck.cmd or sigcheck.reg? It sounds like the thing that happens when it is installed in a different path then it was meant for. You then need to edit these two files and need to be precise when editing.

I just installed my graphics driver from amd instead of using the one provided by windows update and my crashing has stopped
That's what I suspected when I read your topic, that's because everything runs fine untill you go online and when you go online for the first time after reformatting its going to check for windows updates.

Good job staying at it :■■■■

I could not delete the Flash64_11_7_700_224.ocx as it said I didn't have administrator access. I could not delete the Flash64_11_7_700_224.ocx as it said I didn't have administrator access.
you can always take ownership of the files :)
and I go to click on it and it still does not let me delete the file, with the same message given.I require permission from (User-Pc)name of my pc to make any changes to this file,
and
I getting so far off the boat that I can't solve a simple problem. Ill try malware bytes to delete this file as that a simple problem, or try something in the comodo cleaning essentials software I am still learning from.
I'll explain it :) Let say your using your account (admin user) You right click on the file you want to delete (let's say abcdefg.exe for example) After you take ownership of the file. just delete it. (I don't know if it works for someone elses account user account) The only exception that I know of that it will refuse to delete is if that file is still running. If it's still running, then open task manager and remove the process that is still running. After you kill that process, then you can delete it.

An alternative,if all elese fails,
you can have it be deleted on reboot. Software like fileassasin or even comodo system cleaner…look under “force delete” if using comodo system cleaner (as a example) can delete the file on reboot. That way it WILL be deleted before windows even starts and windows can stop it >:-D MAKE SURE ITS NOT AN IMPORTANT FILE OR WINDOWS WILL CRASH OR GET GLITCHY… :-La
…Please only take ownership of what you want to remove AND DON’T just take ownership of just everything…

Should I reinstall windows and install everything in admin mode, but use a guest mode when I surf is this really more secure? and also do you have more links which can teach me more about User accounts to noobs so I can fully understand it?
People using the guest account can't install software or hardware, change settings, or create a passwords. It's not hack-proof but will help limit the potental damage I would recommend reading this http://www.addictivetips.com/windows-tips/what-is-windows-7-guest-mode-and-how-to-enable-it/

For you I would recommend trying this out, if you have issues then uninstall it
http://www.zerovulnerabilitylabs.com/home/exploitshield/browser-edition/
A brief description below
ExploitShield Browser Edition is free for home users and non-profit organizations. It includes all protections needed to prevent drive-by download targeted attacks originating from commercial exploit kits and other web-based exploits. These type of attacks are used as common infection vectors for financial malware, ransomware, rogue antivirus and other types of nasties not commonly detected by traditional blacklisting antivirus and security products.

I found asp.net logged in my computer as a user account I deleted
Do you even use or have a use asp.net. If so what do you need that for.

Do you play games online and if so, do you use unoffical severs to play games (an example would be battlefield, world of warcraft). Some people do so they can use cheat and game hack and such. the problem with that is you must trust the people running the unoffical servers for those games and that’ll be the backdoor if the admins of those places decide to be nosy or malicious.

It gets installed when installing one of the DOT NET Frameworks. I don’t recall which version. Thea account can be deleted. Most people, including yours truly, don’t need it.

I erased all my previous posts as they serve no purpose to anything. My computer freezes and crashes all the time once again. Nothing works, its no one’s fault. Probably just a driver and I clearly don’t know what im doing so there is no point to further investigate something that is clearly a user problem. In the end I will live with the random crashing at particular times, and accept it. The freezing and crashing won, it won.

You could try updating your drivers with DriverMax free (2 driver updates max per day). Also, try running all fixes from the tool I recommend in this section of one of my articles.

I have used driver max many times, probably about 3-4 times in a 2 month period and in the end it was a big waste of time. The biggest waste of time of them all. My time has been wasted for 3 years I am personally done with trouble shooting, no fcking more, if it doesn’t work it’s not my problem to fix it. That’s my new fcking outlook. Windows is the biggest piece of sht software I will never spend 1 more fcking penny on it, I rather use my money at the fcking casino as my odds are way better. I have tried everything in 3 years nothing works point blank period. I’m done wasting any more of my time trouble shooting, I will live with the crashes and ■■■■■■ software, and I will never pay 1 more dime for it.

Howdy Usef.

You have been posting a lot of which you deleted most. However your posts are testimonies of frustration with broad sweeping statements about big names and not a request for help.

If you want help I suggest you start with breaking down your problems in specific problems about specific programs or scenarios.

In short; clean up your act and present us with more defined problems.

To add to that I order you to use a paragraph structure to logically separate aspects of the topic at hand. I will either edit your post or may decide not to read it…