Using BCEDIT

Mongoid

New member
Local time
12:54 AM
Messages
4
Hi folks,

I received a machine with Win 7 Ultimate 32bit installed from a neighbor to look at as he was having issues and it turned out he had a bad stick of RAM. Usually no big deal but I noticed he had a TEST MODE watermark showing on the lower right of his screen. He had several of his friends look aqt the machine before me so I assumed one of them had mistakenly used BCEDIT to turn testsigning off while messing with drivers. It turns out one of them had decided his problems could be fixed by patching my neighbors legitimate Ultimate installation's kernel with some Russian patched one. The kernel is listed as ntkrlstaforce in BCedit. Similar to this I think: UNAWAVE - 32-bit Windows 7 with full 4 GB or 8 GB RAM support
Anyhow the "testsigning on" is needed obviously for this modified kernel to load. His windows installation will not start or repair or restore. I need to be able to turn back on testsigning in BCEDIT and am having zero luck getting the command to complete successfully from the repair command prompt.
I used bcedit /set testsigning off to turn it off from the command prompt in windows before i rebooted.
I am totally lost using bcedit from the Windows Repair Command Prompt. Can anyone help me to get testsigning turned back on. I cant even get bcedit to list the boot options for me to see if there are mutiple boot options like in the patch i linked to earlier. Maybe just delete the option to use the modified bootloader?

Thanks to anyone and all in advance

Mongoid
 

My Computer

OS
Win 7 x64

My Computer

Computer Manufacturer/Model Number
Toshiba Satellite S875D-S7239 laptop
OS
MS Windows 7 Ultimate SP1 64-bit
CPU
AMD A10-4600M
Motherboard
AMD Pumori (Socket FT1)
Memory
6.00 GB Dual-Channel DDR3 @ 798MHz (11-11-12-28)
Graphics Card(s)
AMD Radeon HD 7660G
Sound Card
High Definition Audio Device
Monitor(s) Displays
Generic PnP Monitor (1600x900@60Hz)
Screen Resolution
1600x900@60Hz
Hard Drives
SSD 119GB Corsair CSSD-V128GB2 ATA Device
Keyboard
Standard PS/2 Keyboard
Mouse
HP Wireless Optical Mobile Mouse Model FHA-3410
Internet Speed
What the local pub, local coffee shop offers.
Other Info
Optical Drive:MATSHITA BD-CMB UJ160B ATA Device


Also have an Asus ha1002xp netbook with Win 7 Ultimate installed.
Really?

Thanks so much for that solution, Mr. 5000 posts. Exactly what i was looking for....sigh.
 

My Computer

OS
Win 7 x64
OK got it

If anyone is interested, I fixed the issue eventually after some more reading. After booting off the Ultimate DVD and choosing the option to repair, I chose command prompt. The commands are actually fairly simple and I was making it far more difficult than needed. I used the command bcdedit.exe /enum all. This listed all the objects in the store but more importantly gave me the GUID of the non-patched installation.
Once i found the guid that was using winloader instead of ntkrlstaforce i used the command bcdedit.exe /default {GUID}. This set the non patched version as first in the boot sequence and allowed me to get back into the non patched version. Now i will set about removing the patch entirely from the machine.

I have read a lot of informed answers here (including excellent info about bcedit) however; that being said, I must say i am diappointed by the lone reply I received from karlsnooks above. I mean really? All that status here and his first advice is to format and do a clean install? If i was less informed as most people are who search for help on the net, I may have followed his ludicrous directions. You guys have no way of filtering out post whores?

Y'all have a nice day

Mongoid
 

My Computer

OS
Win 7 x64
Hello Mongoid,

If you are somewhat certain that the system has not been compromised by the 'modified kernel', it's all Good!

Glad you found what you needed to recover the system... BCEDIT can appear rather intimidating at times...
 

My Computer

Computer Manufacturer/Model Number
Custom Creation
OS
Windows 7 Pro, Vista Business, Vista Ultimate, Windows XP
CPU
Core 2 Extreme
Mongoid
Ever heard the saying "Beggars can't be choosers"
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Own build
OS
Windows 7x64 Home Premium SP1
CPU
Intel i7 2600k
Motherboard
ASUS P8Z68 Deluxe
Memory
G.Skill Ripjaws (DDR3-1600) 2x4GB
Graphics Card(s)
Nvidia GeForce GTS 450; Intel HD Graphics 3000(GT2+)
Monitor(s) Displays
Dell Ultrasharp IPS panel U2311H, Samsung SyncMaster P2350
Screen Resolution
1920x1080
Hard Drives
Samsung 850 Pro SSD 256GB, Samsung SSD 840 120GB, Seagates 1TB Barracuda ST31000528AS x2
PSU
Seasonic M12II 520W
Case
Lian Li Lancool PC-K60
Cooling
Case: 1x120mm, 3x140mm CPU: Hyper 212+
Keyboard
Logitech MK520 (wireless)
Mouse
Logitech MK520
Internet Speed
6-7 Mbps
Antivirus
Norton Security Premium, Malwarebytes on 2 (MSE on 3rd PC)
Browser
FireFox
Other Info
Audio: Logitech Z523 2.1
Mongoid
Ever heard the saying "Beggars can't be choosers"

hes not begging, simply asking for help. maybe where your from help is considered begging, i would hate to be your kid.
 

My Computer

OS
7
S'all Good

@mjf ...its a good thing this beggar was a chooser....saved me a pile of unnecessary work :) Sorry if i seemed unappreciative to you, but an average user (the type that mostly read these posts) may assume from all the decorations and posts on karls avatar that his was an authoritative solution. To state that a zeroing of the drive is THE first and only solution....well I dont much appreciate that.

@pierre50...thanks....i'm pretty sure as long as the actual patched kernel file is deleted and any reference to it is removed using bcedit, it reverts to loading the usual kernel and its all good....not a peep from the neighbor and its been a couple of weeks.

Thanks again folks

Mongoid
 

My Computer

OS
Win 7 x64
Back
Top