duaban 0 Light Poster

My computer is beeing shut down by itself for a long time. And when I turn on my computer I got a message:
------------------------------------------------------
The system has recovered from a serious error.
------------------------------------------------------
Then I click for more info and get this message:
------------------------------------------------------
BCCode : 1000008e BCP1 : C0000005 BCP2 : F0CBD439 BCP3 : F0520A20
BCP4 : 00000000 OSVer : 5_1_2600 SP : 2_0 Product : 256_1
------------------------------------------------------
And I click to view technical info and get this:
------------------------------------------------------
C:\DOCUME~1\Adi\LOCALS~1\Temp\WER4878.dir00\Mini122206-14.dmp
C:\DOCUME~1\Adi\LOCALS~1\Temp\WER4878.dir00\sysdata.xml
------------------------------------------------------

Help please, cause it's being shut down all the time:sad:

duaban 0 Light Poster

I was wondering, if I reinstall MSN messenger will my contacts stay there..

duaban 0 Light Poster

I have this program on my desktop that is somehow ended here, but I can't delete it on easy way (right click, delete) cause it says it's full write protected or in use(but it's not in use). How to delete it forcely

duaban 0 Light Poster

It's not that

duaban 0 Light Poster

I don't know what's the problem but when I sign in I keep to send some links to my contacts, but I am not doing that. What is wrong

duaban 0 Light Poster

i can't find it

duaban 0 Light Poster

no, no, no. i haven't meant that. i ment about complete test of avg antivirus. it turns on and slows up my startup

duaban 0 Light Poster

I was wondering is there any way to turn off complete test at startup:?:

duaban 0 Light Poster

And I edited boot.ini file. Just simply deleted the other Windows and it now boots by itself. Thanks to everyone who posted here.

duaban 0 Light Poster

no i installed at the same partition. and thanks to caperjack. It worked

duaban 0 Light Poster

no. i had boot.ini problems with previous version so I formatted and reinstalled. so it boots into new version easily but it cant boot into the previous.

duaban 0 Light Poster

I formatted and reinstalled XP but now I have two versions of XP. What to do. And I tried at Add/Remove Programs but ther's no other windows

duaban 0 Light Poster

can i do something by not using the CD

duaban 0 Light Poster

I think beating them up is the best solution

duaban 0 Light Poster

I'm tired of this... simply my DVD ROM won't start this DVD I bought. I tried other DVD's and it can start them, I gave the DVD to my friend and he can start the game, but I can't. Why??? My DVD ROM is ASUS DRW - 1608P2S, and CD is(at least this is written on it) VERBATIM DVD-R 4,7 GB 1 20min 8x Certified

duaban 0 Light Poster

I have posted my problems regarding CRC. So I have bought a new DVD. But when I came home I saw that I bought an 8x speed DVD, and saw that my DVD-ROM doesn't support this(only 16x and 8x but on DL). Now it can't read this. What should I do? Is there any chance of avoiding this? Please, HELP!

duaban 0 Light Poster

I tried to install a game but this appears. Any ideas how to solve this problem.

duaban 0 Light Poster

---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at: 22:26:32 14.10.2006

+ Scan result:

C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP666\A2089794.exe -> Adware.AdURL : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP666\A2090788.exe -> Adware.AdURL : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP672\A2105997.exe -> Adware.CashDeluxe : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP679\A2113350.exe -> Adware.CashDeluxe : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP680\A2113437.exe -> Adware.CashDeluxe : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP681\A2113524.exe -> Adware.CashDeluxe : No action taken.
C:\WINDOWS\system32\intxt.exe -> Adware.CashDeluxe : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP708\A2203735.DLL -> Adware.IWon : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP708\A2215939.DLL -> Adware.IWon : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP708\A2216149.DLL -> Adware.Look2Me : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP708\A2216150.dll -> Adware.Look2Me : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP708\A2216151.dll -> Adware.Look2Me : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP708\A2216152.dll -> Adware.Look2Me : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP708\A2216153.dll -> Adware.Look2Me : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP708\A2216154.dll -> Adware.Look2Me : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP708\A2216155.dll -> Adware.Look2Me : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP708\A2216156.dll -> Adware.Look2Me : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP708\A2216157.DLL -> Adware.Look2Me : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP708\A2216158.dll -> Adware.Look2Me : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP708\A2216159.dll -> Adware.Look2Me : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP708\A2216160.dll -> Adware.Look2Me : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP708\A2216161.dll -> Adware.Look2Me : No action taken.
C:\System Volume Information\_restore{A589FD9B-37F3-45D6-A87A-148EB9F3DF7B}\RP708\A2216162.dll -> Adware.Look2Me : No action taken.
C:\System Volume …

duaban 0 Light Poster

the name of topic says it all. when i turn on computer boot.ini file not found

duaban 0 Light Poster

I have put it to ignore so I have to xhange it. Pleasee wait for another

duaban 0 Light Poster

I have installed SP2, but my Local Area connection for ADSL is messed up. It says <LIMITED OR NO CONECTIVITY>. I think this is something with IP adresses, but I can't handle it, and when I click repair it doesn't do anything

duaban 0 Light Poster

now merch had you installed any software after which you started getting this prob.for ex spysherrif and just curious have u tried system restore.
u can also try :- click on start->run->type regedit->enter
click on the folder
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System
"Wallpaper"=SZ:C:\WINDOWS\desktop.html
delete this key(I suggest backing it up first),
hope this works.

trapperj1986 please create a new post if you have a problem. furthermore, all hijackthis logs belong in the spyware forum.

any way, I found the following problems:
kill running:
kernels64.exe
ibm00001.exe ->http://www.sophos.com/virusinfo/analyses/trojtorpigc.html

unregister:
ubiwm.dll

start > run > cmd
regsvr32 /u ubiwm.dll

remove using hjt:

O4 - HKLM\..\Run: [System] C:\WINDOWS\System32\kernels64.
eO4 - HKCU\..\Run: [Shell] "C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.exe"
O20 - Winlogon Notify: nuclabdll - nuclabdll.dll (file missing)
O21 - SSODL: dIGJGkEIf - {EC5E7513-46F4-DFB9-A688-2F96BFC53D5B} - C:\WINDOWS\System32\ubiwm.dll

actually I haven't tried this cause I didn't understood this (bolded). I did ->run->type regedit->enter
click on the folder
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System

but there's no

"Wallpaper"=SZ:C:\WINDOWS\desktop.html
there is:
NoColorChoice
NoDispAppearancePage
NoDispBackgroundPage
NoDispCPL
NoDispScrSavPage
NoDispSettingsPage
NoSizeChoice
NoVisualStyleChoice

and I dont understand cmd step. it opens cmd but i dont know how to use it please help

duaban 0 Light Poster

yeah. i know that. but this happend to me yesterday so i decided to google and i have found this

duaban 0 Light Poster

I have the same problem. I tried all of this but still doesn't work. I am new here and I saw some awarnings so I have put HijackThis logfile here

http://www.daniweb.com/techtalkforums/post262608.html#post262608

duaban 0 Light Poster

Logfile of HijackThis v1.99.1
Scan saved at 10:03:56, on 12.10.2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\windows\System32\smss.exe
C:\windows\system32\winlogon.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\System32\Ati2evxx.exe
C:\windows\system32\svchost.exe
C:\windows\System32\svchost.exe
C:\windows\explorer.exe
C:\windows\system32\spoolsv.exe
C:\windows\system32\crypserv.exe
C:\Program Files\Pwrchute\ups.exe
C:\windows\System32\UAService7.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\windows\System32\mpcsvc.exe
C:\Program Files\D-Tools\daemon.exe
C:\PROGRA~1\MYWEBS~1\bar\3.bin\mwsoemon.exe
C:\windows\System32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Microsoft Office\Office\1050\msoffice.exe
C:\Program Files\Opera2\Opera.exe
C:\windows\System32\svchost.exe
C:\Program Files\TUGZip\TUGZip.exe
C:\DOCUME~1\Admin\LOCALS~1\Temp\tz_exec.tmp\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ba/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {9F2C253D-ECAA-E67A-ACFC-E13B82002192} - C:\windows\System32\urarkk.dll
R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\3.bin\MWSSRCAS.DLL
F2 - REG:system.ini: Shell=explorer.exe C:\windows\System32\sxlntr.exe
F3 - REG:win.ini: load=C:\windows\System32\sxlntr.exe
F3 - REG:win.ini: run=C:\windows\System32\sxlntr.exe
O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\3.bin\MWSSRCAS.DLL
O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\3.bin\MWSBAR.DLL
O2 - BHO: (no name) - {455875B5-93F3-429D-FF34-660B206D897A} - C:\windows\System32\lxdenroop105.dll
O3 - Toolbar: My &Web Search - {07B18EA9-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\3.bin\MWSBAR.DLL
O4 - HKLM\..\Run: [c‰¸u0–4C
}iÁzî[8C:\Program Files\ISTsvc\istsvc.exe] C:\WINDOWS\mmggoyl.exe
O4 - HKLM\..\Run: [c‰¸u0Ô@ÔÁÔ]­ú"ü‰üžiC:\Program Files\ISTsvc\istsvc.exe] C:\WINDOWS\mmggoyl.exe
O4 - HKLM\..\Run: [c‰¸u0Ô@ÔÁÔ]­ú"ü‰¸u0C:\Program Files\ISTsvc\istsvc.exe] C:\WINDOWS\mmggoyl.exe
O4 - HKLM\..\Run: [c‰¸u0Ô@ÔÁÔÁÔ]­ú"ü‰üC:\Program Files\ISTsvc\istsvc.exe] C:\WINDOWS\mmggoyl.exe
O4 - HKLM\..\Run: [c‰¸u0–4C
}iÁzîžigÝC:\Program Files\ISTsvc\istsvc.exe] C:\WINDOWS\mmggoyl.exe
O4 - HKLM\..\Run: [c‰¸u0Ô@ÔÁÔÁÔ]­ú"ü‰¸C:\Program Files\ISTsvc\istsvc.exe] C:\WINDOWS\mmggoyl.exe
O4 - HKLM\..\Run: [c‰¸u0ÔÁÔ]­ú"ü‰üžigÝC:\Program …