amq
(Ad Francuz)
18 Lipiec 2006 20:44
#1
Witam i proszę o sprawdzenie loga.
“Silent Runners.vbs”, revision 46, http://www.silentrunners.org/ Operating System: Windows 98 Output limited to non-default values, except where indicated by “{++}” Startup items buried in registry: --------------------------------- HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++} “avgctrl” = ““C:\Program Files\AntiVir PersonalEdition Classic\avgctrl.exe” /min” [“Avira GmbH”] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\ {++} “LoadPowerProfile” = “Rundll32.exe powrprof.dll,LoadCurrentPwrScheme” [MS] “SchedulingAgent” = “C:\WINDOWS\SYSTEM\mstask.exe” [MS] “schedm” = ““C:\Program Files\AntiVir PersonalEdition Classic\schedm.exe”” [“Avira GmbH”] HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}(Default) = (no title provided) -> {HKLM…CLSID} = “SSVHelper Class” \InProcServer32(Default) = “C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll” [“Sun Microsystems, Inc.”] {08BEC6AA-49FC-4379-3587-4B21E286C19E}(Default) = (no title provided) -> {HKLM…CLSID} = “SearchToolbar” \InProcServer32(Default) = “C:\WINDOWS\SYSTEM\ZFYLB.DLL” [file not found] {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}(Default) = (no title provided) -> {HKLM…CLSID} = “AcroIEHlprObj Class” \InProcServer32(Default) = “C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX” ["("] HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\ “{B41DB860-8EE4-11D2-9906-E49FADC173CA}” = “WinRAR shell extension” -> {HKLM…CLSID} = “WinRAR” \InProcServer32(Default) = “C:\PROGRAM FILES\WINRAR\rarext.dll” [null data] HKLM\Software\Classes*\shellex\ContextMenuHandlers\ WinRAR(Default) = “{B41DB860-8EE4-11D2-9906-E49FADC173CA}” -> {HKLM…CLSID} = “WinRAR” \InProcServer32(Default) = “C:\PROGRAM FILES\WINRAR\rarext.dll” [null data] Shell Extension for Malware scanning(Default) = “{45AC2688-0253-4ED8-97DE-B5370FA7D48A}” -> {HKLM…CLSID} = “Shell Extension for Malware scanning” \InProcServer32(Default) = “C:\PROGRAM FILES\ANTIVIR PERSONALEDITION CLASSIC\SHLEXT.DLL” [“H+BEDV Datentechnik GmbH”] HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\ WinRAR(Default) = “{B41DB860-8EE4-11D2-9906-E49FADC173CA}” -> {HKLM…CLSID} = “WinRAR” \InProcServer32(Default) = “C:\PROGRAM FILES\WINRAR\rarext.dll” [null data] HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\ WinRAR(Default) = “{B41DB860-8EE4-11D2-9906-E49FADC173CA}” -> {HKLM…CLSID} = “WinRAR” \InProcServer32(Default) = “C:\PROGRAM FILES\WINRAR\rarext.dll” [null data] Shell Extension for Malware scanning(Default) = “{45AC2688-0253-4ED8-97DE-B5370FA7D48A}” -> {HKLM…CLSID} = “Shell Extension for Malware scanning” \InProcServer32(Default) = “C:\PROGRAM FILES\ANTIVIR PERSONALEDITION CLASSIC\SHLEXT.DLL” [“H+BEDV Datentechnik GmbH”] Enabled Scheduled Tasks: ------------------------ “Rozpoczęcie aplikacji dostrajania” -> launches: “walign” [MS] Winsock2 Service Provider DLLs: ------------------------------- Namespace Service Providers HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\ {++} 000000000001\LibraryPath = “C:\WINDOWS\SYSTEM\rnr20.dll” [MS] Transport Service Providers HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\ {++} 00000000000#\PackedCatalogItem (contains) DLL [Company Name], (at) # range: C:\WINDOWS\SYSTEM\mswsosp.dll [MS], 1 C:\WINDOWS\SYSTEM\msafd.dll [MS], 2 - 4 C:\WINDOWS\SYSTEM\rsvpsp.dll [MS], 5 - 6 Toolbars, Explorer Bars, Extensions: ------------------------------------ Toolbars HKLM\Software\Microsoft\Internet Explorer\Toolbar\ “{08BEC6AA-49FC-4379-3587-4B21E286C19E}” = “SearchToolbar” -> {HKLM…CLSID} = “SearchToolbar” \InProcServer32(Default) = “C:\WINDOWS\SYSTEM\ZFYLB.DLL” [file not found] Extensions (Tools menu items, main toolbar menu buttons) HKCU\Software\Microsoft\Internet Explorer\Extensions\ {BF69DF00-2734-477F-8257-27CD04F88779}\ “ButtonText” = “Start spyware remover” “MenuText” = “Start spyware remover” “Exec” = “C:\Program Files\UnSpyPC\UnSpyPC.exe” [file not found] HKLM\Software\Microsoft\Internet Explorer\Extensions\ {08B0E5C0-4FCB-11CF-AAA5-00401C608501}\ “MenuText” = “Sun Java Console” “CLSIDExtension” = “{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBC}” -> {HKLM…CLSID} = “Java Plug-in” \InProcServer32(Default) = “C:\PROGRAM FILES\JAVA\JRE1.5.0_06\BIN\SSV.DLL” [“Sun Microsystems, Inc.”] Miscellaneous IE Hijack Points ------------------------------ HKLM\Software\Microsoft\Internet Explorer\Version = (invalid data) The Internet Explorer version cannot be found! C:\WINDOWS\INF\IERESET.INF (used to “Reset Web Settings”) The contents of IERESET.INF cannot be reliably checked! Added lines (compared with English-language version): [strings]: START_PAGE_URL = “http://www.eu.microsoft.com/poland/ ” [strings]: SEARCH_PAGE_URL = “http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch ” [strings]: SAFESITE_VALUE = “ie.search.msn.com ” [strings]: MS_START_PAGE_URL = “http://www.eu.microsoft.com/poland/ ” Missing lines (compared with English-language version): [DeleteAutosearch.reg]: 1 line [strings]: 4 lines HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\ “{E656AE4D-8BA9-2894-A4A1-E8EAC17007D3}” = “ftbar” -> {HKLM…CLSID} = (no title provided) \InProcServer32(Default) = “Bogobot.dll” [file not found] ---------- + This report excludes default entries except where indicated. + To see *everywhere* the script checks and *everything* it finds, launch it from a command prompt or a shortcut with the -all parameter. + The search for DESKTOP.INI DLL launch points on all local fixed drives took 36 seconds. + The search for all Registry CLSIDs containing dormant Explorer Bars took 21 seconds. ---------- (total run time: 117 seconds)
Otwóz notatnik i wklej:
Plik>>>zapisz jako>>zmień rozszerzenie z .txt na wszystkie pliki>>>zapisz pod nazwą FIX.REG i uruchom w trybie awaryjnym
Przeleć fixwareout
amq
(Ad Francuz)
19 Lipiec 2006 18:01
#3
Witam ,dzięki za pomoc.Wkleiłem ale nie wiem co z tego wyszlo.Podaję nowego loga z prośbą o ocenę co wyszło z tego zabiegu. Jeśli zrobiłem żle proszę o “krok po kroku” W instrukcji o Silent niestety nie ma o tym mowy …Proszę też powiadzieć czego się można po tym wklejeniu spodziewać. Dzięki.“Silent Runners.vbs”, revision 46, http://www.silentrunners.org/
Operating System: Windows 98
Output limited to non-default values, except where indicated by “{++}”
Startup items buried in registry:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++} “avgctrl” = ““C:\Program Files\AntiVir PersonalEdition Classic\avgctrl.exe” /min” [“Avira GmbH”] “TaskMonitor” = “C:\WINDOWS\taskmon.exe” [MS] “dmrjg.exe” = “C:\WINDOWS\SYSTEM\dmrjg.exe” [file not found] “ScanRegistry” = “C:\WINDOWS\scanregw.exe /autorun” [MS] “SystemTray” = “SysTray.Exe” [MS] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\ {++} “LoadPowerProfile” = “Rundll32.exe powrprof.dll,LoadCurrentPwrScheme” [MS] “schedm” = ““C:\Program Files\AntiVir PersonalEdition Classic\schedm.exe”” [“Avira GmbH”] HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}(Default) = (no title provided) -> {HKLM…CLSID} = “SSVHelper Class” \InProcServer32(Default) = “C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll” [“Sun Microsystems, Inc.”] {08BEC6AA-49FC-4379-3587-4B21E286C19E}(Default) = (no title provided) -> {HKLM…CLSID} = “SearchToolbar” \InProcServer32(Default) = “C:\WINDOWS\SYSTEM\ZFYLB.DLL” [file not found] {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}(Default) = (no title provided) -> {HKLM…CLSID} = “AcroIEHlprObj Class” \InProcServer32(Default) = “C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX” ["("] HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\ “{B41DB860-8EE4-11D2-9906-E49FADC173CA}” = “WinRAR shell extension” -> {HKLM…CLSID} = “WinRAR” \InProcServer32(Default) = “C:\PROGRAM FILES\WINRAR\rarext.dll” [null data] HKLM\Software\Classes*\shellex\ContextMenuHandlers\ WinRAR(Default) = “{B41DB860-8EE4-11D2-9906-E49FADC173CA}” -> {HKLM…CLSID} = “WinRAR” \InProcServer32(Default) = “C:\PROGRAM FILES\WINRAR\rarext.dll” [null data] Shell Extension for Malware scanning(Default) = “{45AC2688-0253-4ED8-97DE-B5370FA7D48A}” -> {HKLM…CLSID} = “Shell Extension for Malware scanning” \InProcServer32(Default) = “C:\PROGRAM FILES\ANTIVIR PERSONALEDITION CLASSIC\SHLEXT.DLL” [“H+BEDV Datentechnik GmbH”] HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\ WinRAR(Default) = “{B41DB860-8EE4-11D2-9906-E49FADC173CA}” -> {HKLM…CLSID} = “WinRAR” \InProcServer32(Default) = “C:\PROGRAM FILES\WINRAR\rarext.dll” [null data] HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\ WinRAR(Default) = “{B41DB860-8EE4-11D2-9906-E49FADC173CA}” -> {HKLM…CLSID} = “WinRAR” \InProcServer32(Default) = “C:\PROGRAM FILES\WINRAR\rarext.dll” [null data] Shell Extension for Malware scanning(Default) = “{45AC2688-0253-4ED8-97DE-B5370FA7D48A}” -> {HKLM…CLSID} = “Shell Extension for Malware scanning” \InProcServer32(Default) = “C:\PROGRAM FILES\ANTIVIR PERSONALEDITION CLASSIC\SHLEXT.DLL” [“H+BEDV Datentechnik GmbH”] Enabled Scheduled Tasks: ------------------------ “Rozpoczęcie aplikacji dostrajania” -> launches: “walign” [MS] Winsock2 Service Provider DLLs: ------------------------------- Namespace Service Providers HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\ {++} 000000000001\LibraryPath = “C:\WINDOWS\SYSTEM\rnr20.dll” [MS] Transport Service Providers HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\ {++} 00000000000#\PackedCatalogItem (contains) DLL [Company Name], (at) # range: C:\WINDOWS\SYSTEM\mswsosp.dll [MS], 1 C:\WINDOWS\SYSTEM\msafd.dll [MS], 2 - 4 C:\WINDOWS\SYSTEM\rsvpsp.dll [MS], 5 - 6 Toolbars, Explorer Bars, Extensions: ------------------------------------ Toolbars HKLM\Software\Microsoft\Internet Explorer\Toolbar\ “{08BEC6AA-49FC-4379-3587-4B21E286C19E}” = “SearchToolbar” -> {HKLM…CLSID} = “SearchToolbar” \InProcServer32(Default) = “C:\WINDOWS\SYSTEM\ZFYLB.DLL” [file not found] Extensions (Tools menu items, main toolbar menu buttons) HKCU\Software\Microsoft\Internet Explorer\Extensions\ {BF69DF00-2734-477F-8257-27CD04F88779}\ “ButtonText” = “Start spyware remover” “MenuText” = “Start spyware remover” “Exec” = “C:\Program Files\UnSpyPC\UnSpyPC.exe” [file not found] HKLM\Software\Microsoft\Internet Explorer\Extensions\ {08B0E5C0-4FCB-11CF-AAA5-00401C608501}\ “MenuText” = “Sun Java Console” “CLSIDExtension” = “{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBC}” -> {HKLM…CLSID} = “Java Plug-in” \InProcServer32(Default) = “C:\PROGRAM FILES\JAVA\JRE1.5.0_06\BIN\SSV.DLL” [“Sun Microsystems, Inc.”] Miscellaneous IE Hijack Points ------------------------------ HKLM\Software\Microsoft\Internet Explorer\Version = (invalid data) The Internet Explorer version cannot be found! C:\WINDOWS\INF\IERESET.INF (used to “Reset Web Settings”) The contents of IERESET.INF cannot be reliably checked! Added lines (compared with English-language version): [strings]: START_PAGE_URL = “http://www.eu.microsoft.com/poland/ ” [strings]: SEARCH_PAGE_URL = “http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch ” [strings]: SAFESITE_VALUE = “ie.search.msn.com ” [strings]: MS_START_PAGE_URL = “http://www.eu.microsoft.com/poland/ ” Missing lines (compared with English-language version): [DeleteAutosearch.reg]: 1 line [strings]: 4 lines HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\ “{E656AE4D-8BA9-2894-A4A1-E8EAC17007D3}” = “ftbar” -> {HKLM…CLSID} = (no title provided) \InProcServer32(Default) = “Bogobot.dll” [file not found] ---------- + This report excludes default entries except where indicated. + To see *everywhere* the script checks and *everything* it finds, launch it from a command prompt or a shortcut with the -all parameter. + The search for DESKTOP.INI DLL launch points on all local fixed drives took 20 seconds. + The search for all Registry CLSIDs containing dormant Explorer Bars took 22 seconds. ---------- (total run time: 107 seconds)
sorry, zapomniałem że masz win 98
Otwórz notatnik i wklej:
Plik>>>zapisz jako>>zmień rozszerzenie z .txt na wszystkie pliki>>>zapisz pod nazwą FIX.REG i uruchom w trybie awaryjnym
Zapuść fixwareout tak jak prosiłem.
amq
(Ad Francuz)
19 Lipiec 2006 19:00
#5
Nie rozumię Twojego “sorry” -tak samo napisałeś czy to będzie WIN98 czy inny system.Mam wkleić ale napisz JAK-może da się jaśniej . Jeśli wkleję i odpale w tryb. awaryjnym to co dalej? Przepuścić przez "fix"i co dalej? a.
sorry oznaczało, że dałem nowy nagłówek fixa, któy jest przeznaczony dla xp. Fix nie zadziałał co widać.
Masz otworzyć notatnik (start>>>uruchom>>>notepad) wkleić:
Wybrać Plik>>>zapisz jako>>>zmień rozszerzenie z .txt na wszystkie pliki>>>zapisać pod nazwą FIX.REG np. na pulpicie i uruchomić w trybie awaryjnym. Zapuścić fixwareout, ponieważ masz resztki po rootkicie windows security center w wersji ruins/urls. I pokazać nowy log
amq
(Ad Francuz)
19 Lipiec 2006 21:16
#7
Wielkie dzięki za już… Wkleiłem. W tryb. awar. przepuścilem przez FIX ,ale się wydarł ,że cos mu nie pasuje. Odpaliłem w trybie norm. cos sobie pobrał z netu potem ,anty wir ,którego nie wyłączylem,w oknie typu DOS SHEll pokazał ,ze znalazł " C\win\sys\PPPCGM.exe ,kliknąlem DEL i… takiego ekranu jeszcze nie widziałem - caly w drobnych poziomych kreskach.Zrobilem reset i nowego loga ,ktorego przesylam"
Silent Runners.vbs", revision 46, http://www.silentrunners.org/ Operating System: Windows 98 Output limited to non-default values, except where indicated by “{++}” Startup items buried in registry: --------------------------------- HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++} “avgctrl” = ““C:\Program Files\AntiVir PersonalEdition Classic\avgctrl.exe” /min” [“Avira GmbH”] “TaskMonitor” = “C:\WINDOWS\taskmon.exe” [MS] “ScanRegistry” = “C:\WINDOWS\scanregw.exe /autorun” [MS] “SystemTray” = “SysTray.Exe” [MS] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\ {++} “LoadPowerProfile” = “Rundll32.exe powrprof.dll,LoadCurrentPwrScheme” [MS] “schedm” = ““C:\Program Files\AntiVir PersonalEdition Classic\schedm.exe”” [“Avira GmbH”] HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}(Default) = (no title provided) -> {HKLM…CLSID} = “SSVHelper Class” \InProcServer32(Default) = “C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll” [“Sun Microsystems, Inc.”] {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}(Default) = (no title provided) -> {HKLM…CLSID} = “AcroIEHlprObj Class” \InProcServer32(Default) = “C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX” ["("] HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\ “{B41DB860-8EE4-11D2-9906-E49FADC173CA}” = “WinRAR shell extension” -> {HKLM…CLSID} = “WinRAR” \InProcServer32(Default) = “C:\PROGRAM FILES\WINRAR\rarext.dll” [null data] HKLM\Software\Classes*\shellex\ContextMenuHandlers\ WinRAR(Default) = “{B41DB860-8EE4-11D2-9906-E49FADC173CA}” -> {HKLM…CLSID} = “WinRAR” \InProcServer32(Default) = “C:\PROGRAM FILES\WINRAR\rarext.dll” [null data] Shell Extension for Malware scanning(Default) = “{45AC2688-0253-4ED8-97DE-B5370FA7D48A}” -> {HKLM…CLSID} = “Shell Extension for Malware scanning” \InProcServer32(Default) = “C:\PROGRAM FILES\ANTIVIR PERSONALEDITION CLASSIC\SHLEXT.DLL” [“H+BEDV Datentechnik GmbH”] HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\ WinRAR(Default) = “{B41DB860-8EE4-11D2-9906-E49FADC173CA}” -> {HKLM…CLSID} = “WinRAR” \InProcServer32(Default) = “C:\PROGRAM FILES\WINRAR\rarext.dll” [null data] HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\ WinRAR(Default) = “{B41DB860-8EE4-11D2-9906-E49FADC173CA}” -> {HKLM…CLSID} = “WinRAR” \InProcServer32(Default) = “C:\PROGRAM FILES\WINRAR\rarext.dll” [null data] Shell Extension for Malware scanning(Default) = “{45AC2688-0253-4ED8-97DE-B5370FA7D48A}” -> {HKLM…CLSID} = “Shell Extension for Malware scanning” \InProcServer32(Default) = “C:\PROGRAM FILES\ANTIVIR PERSONALEDITION CLASSIC\SHLEXT.DLL” [“H+BEDV Datentechnik GmbH”] Enabled Scheduled Tasks: ------------------------ “Rozpoczęcie aplikacji dostrajania” -> launches: “walign” [MS] Winsock2 Service Provider DLLs: ------------------------------- Namespace Service Providers HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\ {++} 000000000001\LibraryPath = “C:\WINDOWS\SYSTEM\rnr20.dll” [MS] Transport Service Providers HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\ {++} 00000000000#\PackedCatalogItem (contains) DLL [Company Name], (at) # range: C:\WINDOWS\SYSTEM\mswsosp.dll [MS], 1 C:\WINDOWS\SYSTEM\msafd.dll [MS], 2 - 4 C:\WINDOWS\SYSTEM\rsvpsp.dll [MS], 5 - 6 Toolbars, Explorer Bars, Extensions: ------------------------------------ Extensions (Tools menu items, main toolbar menu buttons) HKLM\Software\Microsoft\Internet Explorer\Extensions\ {08B0E5C0-4FCB-11CF-AAA5-00401C608501}\ “MenuText” = “Sun Java Console” “CLSIDExtension” = “{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBC}” -> {HKLM…CLSID} = “Java Plug-in” \InProcServer32(Default) = “C:\PROGRAM FILES\JAVA\JRE1.5.0_06\BIN\SSV.DLL” [“Sun Microsystems, Inc.”] Miscellaneous IE Hijack Points ------------------------------ HKLM\Software\Microsoft\Internet Explorer\Version = (invalid data) The Internet Explorer version cannot be found! C:\WINDOWS\INF\IERESET.INF (used to “Reset Web Settings”) The contents of IERESET.INF cannot be reliably checked! Added lines (compared with English-language version): [strings]: START_PAGE_URL = “http://www.eu.microsoft.com/poland/ ” [strings]: SEARCH_PAGE_URL = “http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch ” [strings]: SAFESITE_VALUE = “ie.search.msn.com ” [strings]: MS_START_PAGE_URL = “http://www.eu.microsoft.com/poland/ ” Missing lines (compared with English-language version): [DeleteAutosearch.reg]: 1 line [strings]: 4 lines HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\ “{E656AE4D-8BA9-2894-A4A1-E8EAC17007D3}” = “ftbar” -> {HKLM…CLSID} = (no title provided) \InProcServer32(Default) = “Bogobot.dll” [file not found] ---------- + This report excludes default entries except where indicated. + To see *everywhere* the script checks and *everything* it finds, launch it from a command prompt or a shortcut with the -all parameter. + The search for DESKTOP.INI DLL launch points on all local fixed drives took 32 seconds. + The search for all Registry CLSIDs containing dormant Explorer Bars took 22 seconds. ---------- (total run time: 122 seconds)
amq
(Ad Francuz)
21 Lipiec 2006 08:57
#9
Raz jeszcze dziekuję za pomoc. Cieszę się ,że log jest czysty, jednak dzisiaj , kilkakrotnie , nawet teraz przy logowaniu, pojawia się komunikat “lexplore” (błędy wewnętrzne itd. ) po czym zamykają sie okna.Czy jeszcze coś “siedzi”? Co z tym zrobić? Proszę o odpowiedż. Pozdrawiam…
Złączono Posta : 25.07.2006 (Wto) 22:33
Witam, czekam cierpliwie i wierzę ,że z ostatnim mankamentem , " lexplore" dzięki Wam wygram. Pozdrawiam a.
Złączono Posta : 25.07.2006 (Wto) 22:35
Witam, czekam cierpliwie i wierzę ,że z ostatnim mankamentem , " lexplore" dzięki Wam wygram. Pozdrawiam a.