Virus/Trojan etc messed me up need help

nycste

nycste

Well-known member
Awards
1
  • Established
hi all. last night i got hit with some kinda virus worn spyware thing and my AV picked it up right away so i went into safemode and cleaned everything up ran all my cleaning programs and believe the issue to be gone.

the issue was called.
sysmngt.exe
remacc radmin r_server.exe c:/windows/system32
trojan horse instsvc.exe c/windows/sysmngt

edit. just noticed the **** thing also shared the folder that the original problem file was found in a key g e n. i think. so the program made that folder shared on my network and full access to those files i just noticed that deleted it all.


i rebooted into xp like normal and for some reason 3 things ive noticed so far have changed or stopped working.

start menu doesnt do anything now. whether it be clicking it or hitting key on keyboard. it just blinks when clicked.

i use quicklaunch and for some reason the extra programs that dont fit on the line that little >> thingy doesnt work. it doesnt show me my extra programs to use.

and lastly humm think i forgot lastly. maybe only 2 issues. looking for any help.

But i did find this. on lockergnome

Copy the lines below into a file named 'IEReg.bat' and double click it to
run it. This will reregister some DLLs for IE and the operating system.
Restart for effect.

--------------------------------
regsvr32 comcat.dll /s
regsvr32 shdoc401.dll /s
regsvr32 shdoc401.dll /i /s
regsvr32 asctrls.ocx /s
regsvr32 oleaut32.dll /s
regsvr32 shdocvw.dll /I /s
regsvr32 shdocvw.dll /s
regsvr32 browseui.dll /s
regsvr32 browseui.dll /I /s
regsvr32 msrating.dll /s
regsvr32 mlang.dll /s
regsvr32 hlink.dll /s
regsvr32 mshtmled.dll /s
regsvr32 urlmon.dll /s
regsvr32 plugin.ocx /s
regsvr32 sendmail.dll /s
regsvr32 scrobj.dll /s
regsvr32 mmefxe.ocx /s
regsvr32 corpol.dll /s
regsvr32 jscript.dll /s
regsvr32 msxml.dll /s
regsvr32 imgutil.dll /s
regsvr32 thumbvw.dll /s
regsvr32 cryptext.dll /s
regsvr32 rsabase.dll /s
regsvr32 inseng.dll /s
regsvr32 iesetup.dll /i /s
regsvr32 cryptdlg.dll /s
regsvr32 actxprxy.dll /s
regsvr32 dispex.dll /s
regsvr32 occache.dll /s
regsvr32 occache.dll /i /s
regsvr32 iepeers.dll /s
regsvr32 urlmon.dll /i /s
regsvr32 cdfview.dll /s
regsvr32 webcheck.dll /s
regsvr32 mobsync.dll /s
regsvr32 pngfilt.dll /s
regsvr32 licmgr10.dll /s
regsvr32 icmfilter.dll /s
regsvr32 hhctrl.ocx /s
regsvr32 inetcfg.dll /s
regsvr32 tdc.ocx /s
regsvr32 MSR2C.DLL /s
regsvr32 msident.dll /s
regsvr32 msieftp.dll /s
regsvr32 xmsconf.ocx /s
regsvr32 ils.dll /s
regsvr32 msoeacct.dll /s
regsvr32 inetcomm.dll /s
regsvr32 msdxm.ocx /s
regsvr32 dxmasf.dll /s
regsvr32 l3codecx.ax /s
regsvr32 acelpdec.ax /s
regsvr32 mpg4ds32.ax /s
regsvr32 voxmsdec.ax /s
regsvr32 danim.dll /s
regsvr32 Daxctle.ocx /s
regsvr32 lmrt.dll /s
regsvr32 datime.dll /s
regsvr32 dxtrans.dll /s
regsvr32 dxtmsft.dll /s
regsvr32 WEBPOST.DLL /s
regsvr32 WPWIZDLL.DLL /s
regsvr32 POSTWPP.DLL /s
regsvr32 CRSWPP.DLL /s
regsvr32 FTPWPP.DLL /s
regsvr32 FPWPP.DLL /s
regsvr32 wshom.ocx /s
regsvr32 wshext.dll /s
regsvr32 vbscript.dll /s
regsvr32 scrrun.dll mstinit.exe /setup /s
regsvr32 msnsspc.dll /SspcCreateSspiReg /s
regsvr32 msapsspc.dll /SspcCreateSspiReg /s
exit
--------------------------------


--

Regards,

Dave Patrick ....Please no email replies - reply in newsgroup.
Microsoft Certified Professional
Microsoft MVP [Windows]
[L=http://www.microsoft.com/protect]http://www.microsoft.com/protect[/L]

-to no help didnt solve anything.


still no one can offer any help. noticed a third issue.

1. title bars on all folders are missing the words the aka abilty to actually change stuff i think called title bar here is a pick

there are 4 things circled in red to show what my known problems ARE.

2. start button wont do anything. when clicked it changes color and does nothing. hitting the windows buttomon keyboard does nothing either

3. that little >> thing at bottom right of screen on taskbar quciklaunch doesnt work either even though there are programs hidden there.

looking for some advice or at least where better to post this question and problem.

-again this happened because i was hit wiht 2 diff types of virus/trojan/things which i believe to be fully removed.
 

ReaperX

Well-known member
Awards
1
  • Established
I'm not exactly sure what is going on with your computer since there are a bajillion different viruses out there. I recently had one in my computer. You can use a bunch of scanners, etc, etc but I personally don't believe your computer can 100% purge itself. I've been down the scanner route and it never worked 100%. I just backup important stuff and when something screwed up starts happening on my computer I just re-format the whole thing. (i.e. delete everything so it literally is like coming fresh out of the box again).


It sucks that you lose everything, but in my own personal expierence, the virus scanners do not work 100%.....and I've ran 3 different scanners looking for the virus. Still had to re-format in the end anyway.
 
nycste

nycste

Well-known member
Awards
1
  • Established
I'm not exactly sure what is going on with your computer since there are a bajillion different viruses out there. I recently had one in my computer. You can use a bunch of scanners, etc, etc but I personally don't believe your computer can 100% purge itself. I've been down the scanner route and it never worked 100%. I just backup important stuff and when something screwed up starts happening on my computer I just re-format the whole thing. (i.e. delete everything so it literally is like coming fresh out of the box again).


It sucks that you lose everything, but in my own personal expierence, the virus scanners do not work 100%.....and I've ran 3 different scanners looking for the virus. Still had to re-format in the end anyway.
im a computer nerd i know everything about fixing things. but this i cannot fix yet.

ive been cleaning peoples computers for over 5 years now and dealth with many issues some of which had to reformat and i tend to reformate 1-2 x a year anyway i really dont mind in general i just dont want too right now. haha.

i wanna fix this problem and then maybe once fixed ill just reformat after backing all my files up reorganaizing everything cuz im a total neat freak.

CHECKOUT ALL MY CLEANER PROGRAMS use weekly. list not including special scanners if known viruses are present.

Antivir
AVG
Claimwin
symantec corp av
adaware se (used to use newest one but annoying processes made me go back)
regscrubxp
rogueremover
spyware terminator
wise disk cleaner
wise registry cleaner
a2 anti dialer
a2 free
a2 hijackfree
spybot search and destroy
free window registry repair
crap cleaner


im on some dorky forums about computers and hopefully someone will be able to help. checkout this page its interesting.

http://www.elitekiller.com/malware.htm
 
sdmf45

sdmf45

Well-known member
Awards
1
  • Established
stop lookin at so much goat porn! FAG!
 
Trauma1

Trauma1

Legend
Awards
3
  • RockStar
  • Legend!
  • Established
stop lookin at so much goat porn! FAG!
Um yes i second that......it's the porn you're watching forrest:lol: :lol:
 
nycste

nycste

Well-known member
Awards
1
  • Established
stop lookin at so much goat porn! FAG!
cant help it when gixxer chad trip and mace spend all their time at my place checking out

wwww.goatsforhire.orgy

and wwww.goats4show.wow

ya know the basic sites and stuff.

i wont let them over anymore
 
Trauma1

Trauma1

Legend
Awards
3
  • RockStar
  • Legend!
  • Established
cant help it when gixxer chad trip and mace spend all their time at my place checking out

wwww.goatsforhire.orgy

and wwww.goats4show.wow

ya know the basic sites and stuff.

i wont let them over anymore
:rolleyes: we all know you're the goat master:lol: :lol:
 
nycste

nycste

Well-known member
Awards
1
  • Established
im just gonna keep this thread updated maybe some info in here will be usefull for others to read someday.

Originally posted by: mechBgon
1) Give us the precise names of the viruses/trojans/things. Your antivirus logs should say. Paste it in here. If you can pin down the site that the infection might've come from, send me a PM or paste it here in non-clickable form, for example: hXXp://www.mechbgon(DOT)com

2) If you want to go forward with the fight against the malware, follow all the instructions on this page. My advice would also include removing AVG Free Edition and installing a 30-day trial version of Kaspersky AntiVirus 7, then going through all the settings and maxing out everything, including the heuristics, and then updating and doing a full scan, including the rootkit scan.

3) If you want to go backward, then use System Restore to "go back in time" to before the attack.

4) If you want to do what is absolutely guaranteed to work, back up your data safely, then make a DBAN CD-ROM, unplug all drives except your boot drive, DBAN it, then reinstall Windows while taking security precautions (scroll halfway down that page). After finishing, absolutely do not run any infectable filetypes from your old files. DO scan them with a bunch of online virus scanners to try to reduce the chance there's bad things left in them.


just wanted to say thanks for your reply im reading stuff now. i have actually removed the AV program i was using when i got infected.

here is a list of all the programs i use whenever i think i have a problem.

Antivir
AVG
Claimwin
symantec corp av
adaware se (used to use newest one but annoying processes made me go back)
regscrubxp
rogueremover
spyware terminator
wise disk cleaner
wise registry cleaner
a2 anti dialer
a2 free
a2 hijackfree
spybot search and destroy
free window registry repair
crap cleaner

ok thats my list of programs i run weekly. maybe im a clean freak haha.


in response to you.

1. ill try and list everything i can find in any log files. some of them i cant read. as posted in beginning of this thread these are the things i know popped up.
sysmngt.exe
remacc radmin r_server.exe c:/windows/system32
trojan horse instsvc.exe c/windows/sysmngt
msn something.exe in system32 folder i think

2. intersting advice to remove avg run tiral program and scan everything. ill prob try this maybe not tonight though. great idea.
-and reading everything on that site and finding all and more free scanner programs i know there are a few more i ran that i didnt list like cwshredder and avast tool and stuff

3. system restore on my computers are always turned off instantly. is this bad i dont know ive never had a problem. i usually reformat if i really run into a problem.

4. alittle confused on that dban thing ill reread it. i have my harddrives partitioned and only 2 sections might be at risk if at all anymore.

-due to all my cleaning of the computer with all above mentioned programs nothing shows up as infected or issues anymore. but im still left with my 3 broken things.

thanks for respodning ill try and track more stuff down.
Go to the top of the pageReport Post


Edit Post+Quote Post
V Full Edit
V Quick Edit
nycste
View Member Profile
Add as Friend
Send Message
Find Member's Topics
Find Member's Posts

post Today, 12:13 AM
Post #13


Newbie


Group: Members
Posts: 20
Joined: 12-March 05
Member No.: 47418
Country Flag



finnally found something usefull going through all my log files on entire computer.

a-squared Free - Version 3.0
Last update: 6/12/2007 7:47:10 PM

Scan settings:

Objects: Memory, Traces, Cookies, C:\WINDOWS\, C:\Program Files
Scan archives: On
Heuristics: On
ADS Scan: On

Scan start: 9/5/2007 4:26:16 AM

c:\windows\system32\syscfg32.exe detected: Trace.File.Sbot
Value: HKEY_CLASSES_ROOT\CLSID\{30349568-DAB5-4FA9-B254-4D3BA77C7952}\InprocServer32 --> ThreadingModel detected: Trace.Registry.Radlight
Value: HKEY_CLASSES_ROOT\CLSID\{68D6728A-D715-492A-A57B-8DDA01F4921F}\InprocServer32 --> ThreadingModel detected: Trace.Registry.Radlight
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3034956 8-DAB5-4FA9-B254-4D3BA77C7952}\InprocServer32 --> ThreadingModel detected: Trace.Registry.Radlight
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68D6728 A-D715-492A-A57B-8DDA01F4921F}\InprocServer32 --> ThreadingModel detected: Trace.Registry.Radlight
C:\WINDOWS\sysmngt\admin.exe detected: Trojan.Win32.Agent.awz
C:\WINDOWS\sysmngt\install.exe detected: Trojan.Win32.Agent.awz
C:\WINDOWS\sysmngt\nzm.exe detected: Trojan.Win32.Agent.awz
C:\WINDOWS\sysmngt\preinstall.exe detected: Trojan.Win32.Agent.awz
C:\WINDOWS\sysmngt\sysmngt.exe detected: Riskware.Server-FTP.Win32.Serv-U.6105
C:\WINDOWS\system32\syscfg32.exe detected: Trojan.Win32.Agent.awz
C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL detected: Riskware.AdTool.Win32.MyWebSearch.a

Scanned

Files: 32259
Traces: 135708
Cookies: 1
Processes: 15

Found

Files: 7
Traces: 5
Cookies: 0
Processes: 0
Registry keys: 0

Scan end: 9/5/2007 5:02:27 AM
Scan time: 12:36:11 AM

C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL Quarantined Riskware.AdTool.Win32.MyWebSearch.a
C:\WINDOWS\sysmngt\sysmngt.exe Quarantined Riskware.Server-FTP.Win32.Serv-U.6105
C:\WINDOWS\sysmngt\admin.exe Quarantined Trojan.Win32.Agent.awz
C:\WINDOWS\sysmngt\install.exe Quarantined Trojan.Win32.Agent.awz
C:\WINDOWS\sysmngt\nzm.exe Quarantined Trojan.Win32.Agent.awz
C:\WINDOWS\sysmngt\preinstall.exe Quarantined Trojan.Win32.Agent.awz
C:\WINDOWS\system32\syscfg32.exe Quarantined Trojan.Win32.Agent.awz
Value: HKEY_CLASSES_ROOT\CLSID\{30349568-DAB5-4FA9-B254-4D3BA77C7952}\InprocServer32 --> ThreadingModel Quarantined Trace.Registry.Radlight
Value: HKEY_CLASSES_ROOT\CLSID\{68D6728A-D715-492A-A57B-8DDA01F4921F}\InprocServer32 --> ThreadingModel Quarantined Trace.Registry.Radlight
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3034956 8-DAB5-4FA9-B254-4D3BA77C7952}\InprocServer32 --> ThreadingModel Quarantined Trace.Registry.Radlight
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68D6728 A-D715-492A-A57B-8DDA01F4921F}\InprocServer32 --> ThreadingModel Quarantined Trace.Registry.Radlight
c:\windows\system32\syscfg32.exe Quarantined Trace.File.Sbot

Quarantined

Files: 7
Traces: 5
Cookies: 0
 
nycste

nycste

Well-known member
Awards
1
  • Established
Originally posted by: mechBgon
Generally you'd start the program and then go to its Reports or Logs or whatever, and it would list them. visual example

The info you gave there indicates Trojans, which is not very surprising. People might run a Trojan and infect their own computer (infected warez, music files or video files containing exploits, etc), and that's up to them to wise up and stop being gullible idiots.

Exploits can also hit you with Trojans, and they are preventible/containable --> http://www.mechbgon.com/build/security2.html

At this point, you have your options. Fight your way forward, System-Restore your way back, or burn it to the ground and start over. If you are patient and can follow instructions exactly, then the CastleCops.com HijackThis forum has experts who would get you cleaned up, but it can be a lengthy process and requires restraint and self-discipline on your part to NOT go willy-nilly doing stuff they didn't tell you.


im glad your here and solving issues like this are really exciting for me. wow that sounded corny but yea its true. thanks for spending time trying to help you are helping and im learning about new sites and programs that help.

1. currently im running online fsecure test.
2. downloaded and installing
-Comodo BOClean Anti-Malware_4.25.exe
-AVG Anti-Spyware 7.5-7.5.1.43.exe
-avast! Virus Cleaner - free virus removal tool v1.0.211, built on 11.5.2007.exe
-SUPERAntiSpyware Version 3.9.1008 .exe
3. gonna install them all figure them out and run them.
4. im pretty sure im cleaned up but my issues remain soo maybe im not fully clean.

thanks for you help. ill keep this thread updated. and am interested in castlecops site.
 
Zombie

Zombie

Registered User
Awards
1
  • Established
im to ****ing lazy to read all that but. what i would do is disable System restore. Look for Hirems boot cd, then now that you know the files boot with the Boot cd and and look for the option to boot on NTFS and delete the folders, also if some of your windows files are compromised, you can extract them from CABs files and put them on a folder directly on the hard drive and replace them while on Boot CD NTFS acces utility
 
nycste

nycste

Well-known member
Awards
1
  • Established
rule #1: back yo sh*t up! son
i always got my stuff backed up sonnn.

im to ****ing lazy to read all that but. what i would do is disable System restore. Look for Hirems boot cd, then now that you know the files boot with the Boot cd and and look for the option to boot on NTFS and delete the folders, also if some of your windows files are compromised, you can extract them from CABs files and put them on a folder directly on the hard drive and replace them while on Boot CD NTFS acces utility
zombie i aint a newb. system restore nEVER TURNS ON MY RIG !

second part ill think abou t all hail zombie
 

FitnFirm

Banned
Awards
1
  • Established
WTF !!!!! Do I need to summon Bill Gates to AM to help you ? :D Ya stop surfing the goat porn, LOL :D
 
Zombie

Zombie

Registered User
Awards
1
  • Established
Ya stop surfing the goat porn, LOL :D
i take offense on that. it depends on the source for the goat porn.

i havent had a virus in years on my computer.
I have some "Test systems" that i infect from time to time with new virus/spyware to see if i could remove it manually and use diferent methods or if witch programs works better to remove certain virus/spyware.
 
nycste

nycste

Well-known member
Awards
1
  • Established
i take offense on that. it depends on the source for the goat porn.

i havent had a virus in years on my computer.
I have some "Test systems" that i infect from time to time with new virus/spyware to see if i could remove it manually and use diferent methods or if witch programs works better to remove certain virus/spyware.
read my thread findout whats wrong. AND FIX IT PLZZ

im running 4 online scanner programs now.
 
Zombie

Zombie

Registered User
Awards
1
  • Established
did u checked the Host file to see if it was changed ?
 
Chad

Chad

Banned
Awards
1
  • Established
ummmmmmmm............ GOAT PORN???????

i think my computer has a std too. :( guess ill just buy a new one with my wife`s money :)
 
Zombie

Zombie

Registered User
Awards
1
  • Established
did you manage to fix the problem ? ?? or did u had to format ?
 
neoborn

neoborn

Well-known member
Awards
1
  • Established
Once you have finished with this nightmare:

1. Download partition magic

2. Make 2 partitions A) for windows B) for "program files" and maybe even C) for downloads etc

3. After creating the three partitions install windows to your first partition ( About ten GB's in size should do it )

4. Get into windows and set it up how you like it.

5. Make a ghost image of this partition and burn to DVD or keep on a separate partition.

6. You can use the ghost floppies for this or make an iso. I can help if you run into problems.

so you basically keep windows on one partition and all your my documents / programs and files on another partition, so if windows takes a dive you can just restore the partition with the ghost image you have instead of starting all over again.

After this:

1. Get Kerio firewall

2. Nod32

3. Adaware 2007

4. Use firefox with adblock instead of IE.

Problem solved no hassle ever again .....sigh unless you succumb to clicky clicky syndome on flashy popups :D

Much Love,

Neoborn
 
T-Bone

T-Bone

Banned
Awards
3
  • RockStar
  • Legend!
  • Established
Restore/reformating your pc is the best thing you can do for it. Just like an oil change for your car. There is nothing like a fresh clean install of windows, it just makes you feel good!
 
nycste

nycste

Well-known member
Awards
1
  • Established
Restore/reformating your pc is the best thing you can do for it. Just like an oil change for your car. There is nothing like a fresh clean install of windows, it just makes you feel good!
fullly aware of it i just wanna learn how to fix this problem cuz none of the computer dorks on 2 major computer dork sites cannot figure it out either.

Once you have finished with this nightmare:

1. Download partition magic

2. Make 2 partitions A) for windows B) for "program files" and maybe even C) for downloads etc

3. After creating the three partitions install windows to your first partition ( About ten GB's in size should do it )

4. Get into windows and set it up how you like it.

5. Make a ghost image of this partition and burn to DVD or keep on a separate partition.

6. You can use the ghost floppies for this or make an iso. I can help if you run into problems.

so you basically keep windows on one partition and all your my documents / programs and files on another partition, so if windows takes a dive you can just restore the partition with the ghost image you have instead of starting all over again.

After this:

1. Get Kerio firewall

2. Nod32

3. Adaware 2007

4. Use firefox with adblock instead of IE.

Problem solved no hassle ever again .....sigh unless you succumb to clicky clicky syndome on flashy popups :D

Much Love,

Neoborn
neo baby im way ahead of you . as alwready mentioned i use programs that far surpass detection rates of nod32 and kerio but they are great suggestions for those not running an AV and softeware firewall.

im also behind a hardware firewall. and have continued to run scans which ill update this log later.

did you manage to fix the problem ? ?? or did u had to format ?
havent fixed anything yet. ordered new 500gb harddrive !!!! and it arrived today gonna reformat soon on that but might still use this setup to try and fix the problem. ill prob dual boot off both after i set that up and transfer files and stuff.

thanks for interest help and concerns people but the war has just begun.
 
T-Bone

T-Bone

Banned
Awards
3
  • RockStar
  • Legend!
  • Established
fullly aware of it i just wanna learn how to fix this problem cuz none of the computer dorks on 2 major computer dork sites cannot figure it out either.



neo baby im way ahead of you . as alwready mentioned i use programs that far surpass detection rates of nod32 and kerio but they are great suggestions for those not running an AV and softeware firewall.

im also behind a hardware firewall. and have continued to run scans which ill update this log later.



havent fixed anything yet. ordered new 500gb harddrive !!!! and it arrived today gonna reformat soon on that but might still use this setup to try and fix the problem. ill prob dual boot off both after i set that up and transfer files and stuff.

thanks for interest help and concerns people but the war has just begun.

Registry "cleaners" just cause problems. Also on your list of applications it looks like you use more than one Antivirus....?..If your behind a hardware firewall you don't necessarily need a software firewall. The problems you are experiencing may be related to registry keys that have may have been deleted/corupted....Wait, I just did a search for you. I cut a paste the name of the infection, and found a response on the Symantec site. I think I am correct about your registry problems. The link describes everything and the virus is difficult to remove. It does also add values to a certain registry key....Check out this link, follow the directions exactly in the order they apear.

W32.HLLP.Shodi.B - Symantec.com

Again though, run one Anti-virus program and maybe two anti-spyware apps, one free one and one paid. All those other cleaner/optimizer programs cause more problems than they solve. Especially the registry "cleaners"... Thats about all the thinking I can do today, just trying to maybe help you out. It is extremely difficult to diagnose problems over the internet.
 
nycste

nycste

Well-known member
Awards
1
  • Established
Registry "cleaners" just cause problems. Also on your list of applications it looks like you use more than one Antivirus....?..If your behind a hardware firewall you don't necessarily need a software firewall. The problems you are experiencing may be related to registry keys that have may have been deleted/corupted....Wait, I just did a search for you. I cut a paste the name of the infection, and found a response on the Symantec site. I think I am correct about your registry problems. The link describes everything and the virus is difficult to remove. It does also add values to a certain registry key....Check out this link, follow the directions exactly in the order they apear.

W32.HLLP.Shodi.B - Symantec.com

Again though, run one Anti-virus program and maybe two anti-spyware apps, one free one and one paid. All those other cleaner/optimizer programs cause more problems than they solve. Especially the registry "cleaners"... Thats about all the thinking I can do today, just trying to maybe help you out. It is extremely difficult to diagnose problems over the internet.
great find thanks gonna check it out now. ive all about given up totally. ive done my best but ill checkout this link and see if i can fix things.

1. i would disagree with you about using only a few progmams
2. there are several tried and true programs for malware, spyware etc that have been around for years and cause almost no problems ever
3. i have usually 2-4 AV programs installed on my rig. but only one actually runs 24-7 the others are used just as scanners when i want them to scan they do nothing otherwise. not sure howmany others do a similiar method but ive been using it for years and dont think it bothers anything
4. i think perhaps some new cleaners ive been using tried to remove or did remove lots of files which i didnt think should be removed but i prob clicked ok since at this point i dont care cuz ive tried everything but your LINK.

ONTO THE LINK !
 
neoborn

neoborn

Well-known member
Awards
1
  • Established
blah blah blah
Can you summarize where you are at and what the problem is in one sentence for me?

If you follow all of my advice, you won't be having problems again for a long long time, I don't and use the same setup / standard.

Much Love,

Neoborn
 
nycste

nycste

Well-known member
Awards
1
  • Established
Can you summarize where you are at and what the problem is in one sentence for me?

If you follow all of my advice, you won't be having problems again for a long long time, I don't and use the same setup / standard.

Much Love,

Neoborn
1. title bars on all folders are missing the words the aka abilty to actually change stuff i think called title bar here is a pick
ImageShack - Hosting :: viruspicturere0.jpg
there are 4 things circled in red to show what my known problems ARE.

2. start button wont do anything. when clicked it changes color and does nothing. hitting the windows buttomon keyboard does nothing either

3. that little >> thing at bottom right of screen on taskbar quciklaunch doesnt work either even though there are programs hidden there.

looking for some advice or at least where better to post this question and problem.
 
nycste

nycste

Well-known member
Awards
1
  • Established
Registry "cleaners" just cause problems. Also on your list of applications it looks like you use more than one Antivirus....?..If your behind a hardware firewall you don't necessarily need a software firewall. The problems you are experiencing may be related to registry keys that have may have been deleted/corupted....Wait, I just did a search for you. I cut a paste the name of the infection, and found a response on the Symantec site. I think I am correct about your registry problems. The link describes everything and the virus is difficult to remove. It does also add values to a certain registry key....Check out this link, follow the directions exactly in the order they apear.

W32.HLLP.Shodi.B - Symantec.com

Again though, run one Anti-virus program and maybe two anti-spyware apps, one free one and one paid. All those other cleaner/optimizer programs cause more problems than they solve. Especially the registry "cleaners"... Thats about all the thinking I can do today, just trying to maybe help you out. It is extremely difficult to diagnose problems over the internet.
tried all this wasnt on my system. im pretty sure ive cleaned everything out i really think im just missing a few files or settings were screwed up now allowing these things to work.

even on two dork forums anandtech and msfn they cannot find a solution either much more data posted on my threads there.

ive tried just about everything. and just got a 500gb harddrive in mail today hummmm YEAAAAAAAAAAA BABBY


on a related topic if you had

sata
500
250
200

how would you run what. 500 is fastest with 16mb cache vs 8mb on the others i believe not sure if that diff is even noticeable
 
neoborn

neoborn

Well-known member
Awards
1
  • Established
Can you fix your link to the picture please?
 
neoborn

neoborn

Well-known member
Awards
1
  • Established
If you start in safe mode does it do the same thing?
 
nycste

nycste

Well-known member
Awards
1
  • Established
Ok before conclusion, have you tried this?

Missing File, Edit, View etc from windows
reading it now never seen this site.


i love playing with registry. im more curious why i got this problem to begin with too.

ill prob try this fix if i feel its safe



ok- i dont have the files they are mentioning. gonna ask the nerds on other forums and send that page to them.

sweet neo this might help but not sure yet !
 
Zombie

Zombie

Registered User
Awards
1
  • Established
reading it now never seen this site.


i love playing with registry. im more curious why i got this problem to begin with too.
ill prob try this fix if i feel its safe
i always get that scuse, or the other one "i dont know why a porn pop up just came out of no where and since then the computer has been infected it even downloaded by it selfsome porn pics to my computer and videos"

lol good thing that you like learning :)
 
nycste

nycste

Well-known member
Awards
1
  • Established
i always get that scuse, or the other one "i dont know why a porn pop up just came out of no where and since then the computer has been infected it even downloaded by it selfsome porn pics to my computer and videos"

lol good thing that you like learning :)
i liek learning and my problem has nothing to do with porn.

the file ITBarLayout doesnt exist in my registry. soo problemo.

gonna tell dorks this on other site and see whats up.
 
nycste

nycste

Well-known member
Awards
1
  • Established
the file ITBarLayout doesnt exist in my registry. soo problemo.

this is all i got.


Windows Registry Editor Version 5.00

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar]
"LinksFolderName"="Links"
"Locked"=dword:00000001
"ShowDiscussionButton"="Yes"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Explorer]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser]
"{01E04581-4EEE-11D0-BFE9-00AA005B4383}"=hex:81,45,e0,01,ee,4e,d0,11,bf,e9,00,\
aa,00,5b,43,83,10,00,00,00,00,00,00,00,01,e0,32,f4,01,00,00,00

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{01E04581-4EEE-11D0-BFE9-00AA005B4383}"=hex:81,45,e0,01,ee,4e,d0,11,bf,e9,00,\
aa,00,5b,43,83,10,00,00,00,00,00,00,00,01,e0,32,f4,01,00,00,00
"{0E5CBF21-D15F-11D0-8301-00AA005B4383}"=hex:21,bf,5c,0e,5f,d1,d0,11,83,01,00,\
aa,00,5b,43,83,22,00,1c,00,08,00,00,00,06,00,00,00,01,00,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,4c,00,00,00,01,14,02,00,00,00,00,00,c0,00,00,00,00,\
00,00,46,81,00,00,00,10,20,00,00,b6,cb,53,42,c5,dc,c6,01,5c,0f,66,75,69,dc,\
c6,01,5c,0f,66,75,69,dc,c6,01,00,00,00,00,00,00,00,00,01,00,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,4b,01,14,00,1f,50,e0,4f,d0,20,ea,3a,69,10,a2,d8,\
08,00,2b,30,30,9d,19,00,2f,43,3a,5c,00,00,00,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,00,5c,00,31,00,00,00,00,00,24,37,a4,1e,10,20,44,4f,43,55,4d,\
45,7e,31,00,00,44,00,03,00,04,00,ef,be,34,35,17,55,24,37,a4,1e,14,00,00,00,\
44,00,6f,00,63,00,75,00,6d,00,65,00,6e,00,74,00,73,00,20,00,61,00,6e,00,64,\
00,20,00,53,00,65,00,74,00,74,00,69,00,6e,00,67,00,73,00,00,00,18,00,34,00,\
31,00,00,00,00,00,24,37,6f,81,10,20,75,73,65,72,00,00,20,00,03,00,04,00,ef,\
be,34,35,52,77,24,37,6f,81,14,00,00,00,75,00,73,00,65,00,72,00,00,00,14,00,\
56,00,31,00,00,00,00,00,34,35,31,20,11,20,46,41,56,4f,52,49,7e,31,00,00,3e,\
00,03,00,04,00,ef,be,34,35,52,77,34,35,31,20,14,00,28,00,46,00,61,00,76,00,\
6f,00,72,00,69,00,74,00,65,00,73,00,00,00,40,73,68,65,6c,6c,33,32,2e,64,6c,\
6c,2c,2d,31,32,36,39,33,00,18,00,36,00,31,00,00,00,00,00,34,35,31,20,10,20,\
4c,69,6e,6b,73,00,22,00,03,00,04,00,ef,be,34,35,55,77,34,35,31,20,14,00,00,\
00,4c,00,69,00,6e,00,6b,00,73,00,00,00,14,00,00,00,60,00,00,00,03,00,00,a0,\
58,00,00,00,00,00,00,00,6e,65,77,62,69,65,00,00,00,00,00,00,00,00,00,00,8a,\
60,c4,a9,2a,da,fc,43,8a,f7,47,d3,fc,d3,87,e7,e4,9f,91,72,57,48,db,11,9f,4a,\
00,16,e6,80,e2,8d,8a,60,c4,a9,2a,da,fc,43,8a,f7,47,d3,fc,d3,87,e7,e4,9f,91,\
72,57,48,db,11,9f,4a,00,16,e6,80,e2,8d,00,00,00,00
"{F4D76F09-7896-458A-890F-E1F05C46069F}"=hex:09,6f,d7,f4,96,78,8a,45,89,0f,e1,\
f0,5c,46,06,9f
 
nycste

nycste

Well-known member
Awards
1
  • Established
current hijack log.

run hijackthis and post the log
for sure brotha


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 3:47:10 AM, on 9/13/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Sygate\SPF\smc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avguard.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Premium\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avesvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Prevx2\PXAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avgnt.exe
C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe
C:\Program Files\Pidgin\pidgin.exe
C:\Program Files\Outlook Express\msimn.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\WINDOWS\regedit.exe
C:\Documents and Settings\user\Desktop\HiJackThis v.200b.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: Octh Class - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files\Orbitdownloader\orbitcth.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Malicious Scripts Scanner - {55EA1964-F5E4-4D6A-B9B2-125B37655FCB} - C:\Documents and Settings\All Users\Application Data\Prevx\pxbho.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O3 - Toolbar: (no name) - {F4D76F09-7896-458a-890F-E1F05C46069F} - (no file)
O4 - HKLM\..\Run: [SmcService] "C:\PROGRA~1\Sygate\SPF\smc.exe" -startgui
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Premium\avgnt.exe" /min
O4 - HKUS\S-1-5-19\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'Default user')
O8 - Extra context menu item: &Download by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/201
O8 - Extra context menu item: &Grab video by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/204
O8 - Extra context menu item: Do&wnload selected by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/203
O8 - Extra context menu item: Down&load all by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/202
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O16 - DPF: {49E71DB9-E803-43BA-AF81-1CAF61A6C4CB} (F-Secure Online Scanner 3.2) - http://support.f-secure.com/ols/beta/fscax.cab
O16 - DPF: {512FC5A1-7DE1-43F1-BC0C-371622FCB409} (TotalScan Installer Class) - http://www.nanoscan.com/as/v1/cabs/ascstubie.cab
O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} - http://www.eset.eu/buxus/docs/OnlineScanner.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {E473A65C-8087-49A3-AFFD-C5BC4A10669B} - http://mvnet.xlontech.net/qm/fox/06101102/qsp2ie06101001.cab
O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://www.driveragent.com/files/driveragent.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: a-squared Anti-Dialer Service (a2AntiDialer) - Emsi Software GmbH - C:\Program Files\a-squared Anti-Dialer\a2service.exe
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe
O23 - Service: AntiVir PersonalEdition Premium MailGuard (AntiVirMailService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avmailc.exe
O23 - Service: AntiVir PersonalEdition Premium Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\sched.exe
O23 - Service: AntiVir PersonalEdition Premium Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avguard.exe
O23 - Service: AntiVir PersonalEdition Premium MailGuard helper service (AVEService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Premium\avesvc.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Indexing Service (CiSvc) - Unknown owner - C:\WINDOWS\system32\cisvc.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PREVXAgent - Prevx - C:\Program Files\Prevx2\PXAgent.exe
O23 - Service: Sandra Data Service (SandraDataSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Pro Home 2007\Win32\RpcDataSrv.exe
O23 - Service: Sandra Service (SandraTheSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Pro Home 2007\RpcSandraSrv.exe
O23 - Service: Sygate Personal Firewall Pro (SmcService) - Sygate Technologies, Inc. - C:\Program Files\Sygate\SPF\smc.exe
O23 - Service: Windows Live OneCare (winss) - Unknown owner - C:\Program Files\Microsoft Windows OneCare Live\winss.exe (file missing)

--
End of file - 7477 bytes

O3 - Toolbar: (no name) - {F4D76F09-7896-458a-890F-E1F05C46069F} - (no file)

O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe

those two things i dont like look of otherwise everything i am familiar with.

just checked
bdoscandel.exe is the uninstaller for BitDefender Online Scanner. It is located at %WinDir% directory. This is a non-essential program. You can safely remove it.
 
neoborn

neoborn

Well-known member
Awards
1
  • Established
You have way too many scanners n bs. Seriously you need three things at best!

Conflicts etc.

Remove all the junk you don't need and did you add in the key again?

Do as you wish, here is my suggestion, just do an in place repair on your system you should not lose anything and the OS will be installed again.

1. reboot.

2. Put OS disc in drive

3. Choose to boot from cd ( whatever key it is for you to press )

4. Agree to MS agreement

5. Install OS on current C: partition if that's where you have it ( you do )

6. Repair OS

7. leave it to do it's thing.

Much Love,

Neoborn

If you want to fix it Zombie be my guest bro, if you need anymore help nyste just pm me.

/unsub.
 
neoborn

neoborn

Well-known member
Awards
1
  • Established
The fact that this is still happening in safe mode means you have a different issues / more serious. Safe mode doesn't load everything / usual start up. This is a clue.
 
neoborn

neoborn

Well-known member
Awards
1
  • Established
I am a "dork" as you call it .....so ....be nice. noob!

:D
 
nycste

nycste

Well-known member
Awards
1
  • Established
1. cool advice
2. dorks are kewl its 2007 bro
3. i attempted to repair my windows installation but instead installed another copy of xp and now i got 2 stupid bootups with the first one being garbage. how do i remove that?
4. i supppose i can try repairing the main drive again but i messed up last time for whatever reason. never saw the repair thing i think

ok last thought. find the registry files on your rig and post them plzz? wondering what you got. what im missing or whatever if you dont mind anyone reading this.
 
Zombie

Zombie

Registered User
Awards
1
  • Established
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install



this seems like you tried or just installed NAV and it hasnt restart since it was intalled or it got frozzen and you shut down and it didnt cleaned up


O4 - HKUS\S-1-5-19\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'Default user')

this is weird since is in the start up Runonce registry entry but it calls Cmd and then send to the blank Command promt then copys the comand move then it has /y witch executes whats after /C


im testing a program right now if it works or something im going to send you the file or link to get it
 
nycste

nycste

Well-known member
Awards
1
  • Established
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install



this seems like you tried or just installed NAV and it hasnt restart since it was intalled or it got frozzen and you shut down and it didnt cleaned up


O4 - HKUS\S-1-5-19\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'Default user')

this is weird since is in the start up Runonce registry entry but it calls Cmd and then send to the blank Command promt then copys the comand move then it has /y witch executes whats after /C


im testing a program right now if it works or something im going to send you the file or link to get it
sounds good bed time soon thou :p
 
neoborn

neoborn

Well-known member
Awards
1
  • Established
1. cool advice
2. dorks are kewl its 2007 bro
3. i attempted to repair my windows installation but instead installed another copy of xp and now i got 2 stupid bootups with the first one being garbage. how do i remove that?
4. i supppose i can try repairing the main drive again but i messed up last time for whatever reason. never saw the repair thing i think

ok last thought. find the registry files on your rig and post them plzz? wondering what you got. what im missing or whatever if you dont mind anyone reading this.
Go into the root of your C:\ drive and edit your boot.ini remove the line for the OS that you do not want to boot.

I think you may be right on the "not seeing the repair option" I had that happen to me for some reason. If not I would honestly just install the OS to the free space on C: then transfer everything over.

Just open the zip and double click the reg file to enter into your registry, reboot and see if that fixes it.

Personally I think you fudged your OS.
 

Attachments

Zombie

Zombie

Registered User
Awards
1
  • Established
Go into the root of your C:\ drive and edit your boot.ini remove the line for the OS that you do not want to boot.

I think you may be right on the "not seeing the repair option" I had that happen to me for some reason. If not I would honestly just install the OS to the free space on C: then transfer everything over.
dont for get about changin the permision sometimes its write protected, you have to right click on it and next to attributes un check the Read-only option
 
nycste

nycste

Well-known member
Awards
1
  • Established
hey neo your file is damaged or something

nothing in it. wont open
\


PS. you can also just open msconfig. go to boot.ini and change it there
 
Zombie

Zombie

Registered User
Awards
1
  • Established
hey neo your file is damaged or something

nothing in it. wont open
\


PS. you can also just open msconfig. go to boot.ini and change it there
you can also right click on my computer> properties> Advanced> Startup and recovery> settings > and chenge it there
 

Similar threads


Top