SpyWare BeWare! ASAP
July 22, 2017, 01:41:33 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News:
 
   Home   Help Search Calendar Donations Login Register Chat  



Google It!
Pages: [1] 2 3 ... 6   Go Down
  Print  
Author Topic: Pls help me!(se.dll, about:blank)  (Read 20890 times)
0 Members and 1 Guest are viewing this topic.
Caelus
Newbie
*
Offline Offline

Date Registered:February 23, 2005, 12:31:27 PM
Posts: 44


« on: February 24, 2005, 12:45:09 PM »

Could someone pls help me to remove the adware?  here is my situation:

1. homepage: hijacked by adware to a webpage called about:blank.

2. IE: 50% chance of redirecting me to some porn site whenever i open a new IE windows or click on a hyper link.

3. I'm unable to install some anti-virus and anti-spyware programs such as norton, sprware doctor, spywareblasters....etc.  everytime after i installed it it said the program is damaged or bad sectors.

4. my laptop is a bit slower and unstable than usual, sometimes a windows pop up and said an error with kernel32.dll or something... Sad

5. I dont know if it is related to this matter or not, but i noticed that in "add/remove program" there is a program called "search assistant" installed and I couldnt remove it......

whenever i open a new IE windows and then i press ctrl+alt+del, i notice that "rundll32" and a extra "Iexplore" is running, i deleted se.dll many times but it reinstalled itself every short period of time

i'm using an old laptop with windows me.

Thank you for ur help!!!   :lol:

here is my hijackthis log:

Logfile of HijackThis v1.99.1
Scan saved at 4:07:19 AM, on 2/25/2005
Platform: Windows ME (Win9x 4.90.3000)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\WINDOWS\SYSTEM\RESTORE\STMGR.EXE
C:\WINDOWS\SYSTEM\INTERNAT.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\STIMON.EXE
C:\WINDOWS\SYSTEM\IRMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\WINDOWS\SYSTEM\QTTASK.EXE
C:\WINDOWS\SYSTEM\BCMWLTRY.EXE
C:\PROGRAM FILES\COMMON FILES\REAL\UPDATE_OB\REALSCHED.EXE
C:\WINDOWS\SYSTEM\WMIEXE.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\SYSTEM\PSTORES.EXE
C:\HJT\HIJACKTHIS.EXE

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\TEMP\se.dll/sp.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\TEMP\se.dll/sp.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
O2 - BHO: NTIECatcher Class - {C56CB6B0-0D96-11D6-8C65-B2868B609932} - C:\PROGRAM FILES\XI\NETTRANSPORT 2\NTIEHELPER.DLL
O2 - BHO: (no name) - {B3298F27-2E89-4B1E-939C-B2FD587017D7} - C:\WINDOWS\SYSTEM\GHPI.DLL
O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
O4 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun
O4 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe
O4 - HKLM\..\Run: [PCHealth] C:\WINDOWS\PCHealth\Support\PCHSchd.exe -s
O4 - HKLM\..\Run: [IrMon] irmon.exe
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\Run: [QuickTime Task] C:\WINDOWS\SYSTEM\QTTASK.EXE
O4 - HKLM\..\Run: [DXM6Patch_981116] C:\WINDOWS\p_981116.exe /Q:A
O4 - HKLM\..\Run: [bcmwltry] bcmwltry.exe
O4 - HKLM\..\Run: [RemoveCpl] RemoveCpl.exe
O4 - HKLM\..\Run: [I/O Controllers] svcnet.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [sp] rundll32 C:\WINDOWS\TEMP\SE.DLL,DllInstall
O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
O4 - HKLM\..\RunServices: [*StateMgr] C:\WINDOWS\System\Restore\StateMgr.exe
O4 - HKCU\..\Run: [dllhelp] c:\windows\dllhlp.exe
O4 - HKCU\..\Run: [I/O Controllers] svcnet.exe
O4 - HKCU\..\Run: [jppvpxk] c:\windows\tjsobpt.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\OFFICE10\EXCEL.EXE/3000
O8 - Extra context menu item: Download by Net Transport - C:\Program Files\Xi\NetTransport 2\NTAddLink.html
O8 - Extra context menu item: Download all by Net Transport - C:\Program Files\Xi\NetTransport 2\NTAddList.html
O9 - Extra button: ICQ Pro - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
O12 - Plugin for .spop: C:\PROGRA~1\INTERN~1\Plugins\NPDocBox.dll
O16 - DPF: Yahoo! Towers 2.0 - http://download.games.yahoo.com/games/clients/y/ywt0_x.cab
O16 - DPF: Yahoo! Graffiti - http://download.games.yahoo.com/games/clients/y/grt5_x.cab
O16 - DPF: Yahoo! MahJong - http://download.games.yahoo.com/games/clients/y/ot0_x.cab
O16 - DPF: Yahoo! Literati - http://download.games.yahoo.com/games/clients/y/tt0_x.cab
O16 - DPF: Yahoo! Word Racer - http://download.games.yahoo.com/games/clients/y/wt0_x.cab
O16 - DPF: Yahoo! Bingo - http://download.games.yahoo.com/games/clients/y/xt0_x.cab
O16 - DPF: Yahoo! Dominoes - http://download.games.yahoo.com/games/clients/y/dot2_x.cab
O16 - DPF: Yahoo! Chinese Checkers - http://download.games.yahoo.com/games/clients/y/cct0_x.cab
O16 - DPF: JT's Blocks - http://download.games.yahoo.com/games/clients/y/blt1_x.cab
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - http://us.dl1.yimg.com/download.companion....ebio5_1_6_0.cab
O16 - DPF: Yahoo! Pool 2 - http://download.games.yahoo.com/games/clients/y/potc_x.cab
O16 - DPF: Yahoo! Dots - http://download.games.yahoo.com/games/clients/y/dtt1_x.cab
O16 - DPF: Yahoo! MahJong Solitaire - http://download.games.yahoo.com/games/clients/y/mjst3_x.cab
O16 - DPF: Yahoo! Poker - http://download.games.yahoo.com/games/clients/y/pt0_x.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/038cd80fdc4252...ip/RdxIE601.cab
O18 - Filter: text/html - {9FC573C1-6792-4003-9D1F-0B75394E6F57} - C:\WINDOWS\SYSTEM\GHPI.DLL

Thx! :lol:
Logged
EASTER
ASAP Members
Hero Member
*****
Offline Offline

Gender: Male
Date Registered:December 05, 2004, 06:12:53 PM
Posts: 732



WWW
« Reply #1 on: February 24, 2005, 09:20:45 PM »

[span style=\'color:blue\']Thanks For Coming In Today  [/span] Smiley

[span style=\'color:green\']Spyware Beware Welcomes You:[/span]

[span style=\'color:purple\']FIRST! Reveal hidden files this way, click (Windowskey+E) and in the toolbar click "Tools>Folder options" and under tab "View" checkmark "Show hidden files and folders" and uncheck "Hide protected system files" and "Hide file extentions for known filetypes" [/span]
[span style=\'color:purple\'] Close ALL other open applications & windows before scan with HijackThis, mark the entries below and then Press "FIX CHECKED"[/span]

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\TEMP\se.dll/sp.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\TEMP\se.dll/sp.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
O2 - BHO: (no name) - {B3298F27-2E89-4B1E-939C-B2FD587017D7} - C:\WINDOWS\SYSTEM\GHPI.DLL
O4 - HKLM\..\Run: [bcmwltry] bcmwltry.exe
O4 - HKLM\..\Run: [RemoveCpl] RemoveCpl.exe
O4 - HKLM\..\Run: [I/O Controllers] svcnet.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [sp] rundll32 C:\WINDOWS\TEMP\SE.DLL,DllInstall
O4 - HKCU\..\Run: [dllhelp] c:\windows\dllhlp.exe
O4 - HKCU\..\Run: [I/O Controllers] svcnet.exe
O4 - HKCU\..\Run: [jppvpxk] c:\windows\tjsobpt.exe
O18 - Filter: text/html - {9FC573C1-6792-4003-9D1F-0B75394E6F57} - C:\WINDOWS\SYSTEM\GHPI.DLL



Then Reboot PC into safe mode for best results! (press the F8-key repetedly on bootup).
[span style=\'color:red\']FIND FILEZ BELOW & DELETE THEM[/span]

C:\WINDOWS\TEMP\SE.DLL
c:\windows\dllhlp.exe
svcnet.exe
c:\windows\tjsobpt.exe
C:\WINDOWS\SYSTEM\GHPI.DLL

[span style=\'color:green\']Lastly, Post a new run from HijackThis on your return to normal windows again.[/span]
Logged

Maxthon 3.3.6 | X Iron 17.0 |  Chromium 19.0.
Caelus
Newbie
*
Offline Offline

Date Registered:February 23, 2005, 12:31:27 PM
Posts: 44


« Reply #2 on: February 24, 2005, 11:36:52 PM »

Thx for ur help Easter!     w00t

I did what u told me to but I couldnt find some of the files u told me to delete:
 -->   dllhlp.exe
 -->   tjsobpt.exe
 -->   and svcnet.exe ---- but I found a file named svcnet.LGC, so i deleted it anyway.....  

here is my new hijackthis log:

Logfile of HijackThis v1.99.1
Scan saved at 3:32:25 PM, on 2/25/2005
Platform: Windows ME (Win9x 4.90.3000)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\SYSTEM\RESTORE\STMGR.EXE
C:\WINDOWS\SYSTEM\STIMON.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\IRMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\WINDOWS\SYSTEM\QTTASK.EXE
C:\WINDOWS\SYSTEM\WMIEXE.EXE
C:\WINDOWS\SYSTEM\INTERNAT.EXE
C:\WINDOWS\SYSTEM\RNAAPP.EXE
C:\WINDOWS\SYSTEM\TAPISRV.EXE
C:\HJT\HIJACKTHIS.EXE

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
O2 - BHO: NTIECatcher Class - {C56CB6B0-0D96-11D6-8C65-B2868B609932} - C:\PROGRAM FILES\XI\NETTRANSPORT 2\NTIEHELPER.DLL
O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
O4 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun
O4 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe
O4 - HKLM\..\Run: [PCHealth] C:\WINDOWS\PCHealth\Support\PCHSchd.exe -s
O4 - HKLM\..\Run: [IrMon] irmon.exe
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\Run: [QuickTime Task] C:\WINDOWS\SYSTEM\QTTASK.EXE
O4 - HKLM\..\Run: [DXM6Patch_981116] C:\WINDOWS\p_981116.exe /Q:A
O4 - HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
O4 - HKLM\..\RunServices: [*StateMgr] C:\WINDOWS\System\Restore\StateMgr.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\OFFICE10\EXCEL.EXE/3000
O8 - Extra context menu item: Download by Net Transport - C:\Program Files\Xi\NetTransport 2\NTAddLink.html
O8 - Extra context menu item: Download all by Net Transport - C:\Program Files\Xi\NetTransport 2\NTAddList.html
O9 - Extra button: ICQ Pro - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
O12 - Plugin for .spop: C:\PROGRA~1\INTERN~1\Plugins\NPDocBox.dll
O16 - DPF: Yahoo! Towers 2.0 - http://download.games.yahoo.com/games/clients/y/ywt0_x.cab
O16 - DPF: Yahoo! Graffiti - http://download.games.yahoo.com/games/clients/y/grt5_x.cab
O16 - DPF: Yahoo! MahJong - http://download.games.yahoo.com/games/clients/y/ot0_x.cab
O16 - DPF: Yahoo! Literati - http://download.games.yahoo.com/games/clients/y/tt0_x.cab
O16 - DPF: Yahoo! Word Racer - http://download.games.yahoo.com/games/clients/y/wt0_x.cab
O16 - DPF: Yahoo! Bingo - http://download.games.yahoo.com/games/clients/y/xt0_x.cab
O16 - DPF: Yahoo! Dominoes - http://download.games.yahoo.com/games/clients/y/dot2_x.cab
O16 - DPF: Yahoo! Chinese Checkers - http://download.games.yahoo.com/games/clients/y/cct0_x.cab
O16 - DPF: JT's Blocks - http://download.games.yahoo.com/games/clients/y/blt1_x.cab
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - http://us.dl1.yimg.com/download.companion....ebio5_1_6_0.cab
O16 - DPF: Yahoo! Pool 2 - http://download.games.yahoo.com/games/clients/y/potc_x.cab
O16 - DPF: Yahoo! Dots - http://download.games.yahoo.com/games/clients/y/dtt1_x.cab
O16 - DPF: Yahoo! MahJong Solitaire - http://download.games.yahoo.com/games/clients/y/mjst3_x.cab
O16 - DPF: Yahoo! Poker - http://download.games.yahoo.com/games/clients/y/pt0_x.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/038cd80fdc4252...ip/RdxIE601.cab

 
Logged
Caelus
Newbie
*
Offline Offline

Date Registered:February 23, 2005, 12:31:27 PM
Posts: 44


« Reply #3 on: February 24, 2005, 11:40:35 PM »

*BUMP*   :evil:  
Logged
EASTER
ASAP Members
Hero Member
*****
Offline Offline

Gender: Male
Date Registered:December 05, 2004, 06:12:53 PM
Posts: 732



WWW
« Reply #4 on: February 25, 2005, 01:07:21 AM »

Go here and download StartDreck

[span style=\'color:purple\']Startdreck Program Link[/span]


Unzip and run StartDrek.exe:
Click config
click Unmark all
Check these boxes only:
[span style=\'color:purple\']*Registry->run keys
*Registry->Browser helper objects
*System/drivers> Running processes
[/span]
Click ok.

Post the log it makes in your next reply here please.
Logged

Maxthon 3.3.6 | X Iron 17.0 |  Chromium 19.0.
Caelus
Newbie
*
Offline Offline

Date Registered:February 23, 2005, 12:31:27 PM
Posts: 44


« Reply #5 on: February 25, 2005, 03:03:03 AM »

done~

StartDreck (build 2.1.7 public stable) - 2005-02-25 @ 18:57:16 (GMT +11:00)
Platform: Windows ME (Win 4.90.3000 )
Internet Explorer: 6.0.2800.1106
Logged in as Frank at ASUS F7400

舞egistry
 舞un Keys
  翟urrent User
   舞un
    *MSMsgSvc=
   舞unOnce
  聞efault User
   舞un
    *MSMsgSvc=
   舞unOnce
  腿ocal Machine
   舞un
    *ScanRegistry=C:\WINDOWS\scanregw.exe /autorun
    *TaskMonitor=C:\WINDOWS\taskmon.exe
    *PCHealth=C:\WINDOWS\PCHealth\Support\PCHSchd.exe -s
    *IrMon=irmon.exe
    *SystemTray=SysTray.Exe
    *LoadPowerProfile=Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
    *QuickTime Task=C:\WINDOWS\SYSTEM\QTTASK.EXE
    *DXM6Patch_981116=C:\WINDOWS\p_981116.exe /Q:A
    +OptionalComponents
     +MSFS
      *Installed=1
     +MAPI
      *Installed=1
      *NoChange=1
     +MAPI
      *Installed=1
      *NoChange=1
   舞unOnce
   舞unServices
    *LoadPowerProfile=Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
    *SchedulingAgent=mstask.exe
    **StateMgr=C:\WINDOWS\System\Restore\StateMgr.exe
   舞unServicesOnce
    **h=rundll32 C:\WINDOWS\BACKGRRD.GIF,DllGetClassObject
   舞unOnceEx
   舞unServicesOnceEx
 翡rowser Helper Objects (LM)
  *AcroIEHelper.AcroIEHlprObj.1/{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
   `InprocServer32=C:\PROGRAM FILES\ADOBE\ACROBAT 5.0\READER\ACTIVEX\ACROIEHELPER.OCX
  *NTIEHelper.NTIECatcher.1/{C56CB6B0-0D96-11D6-8C65-B2868B609932}
   `InprocServer32=C:\PROGRAM FILES\XI\NETTRANSPORT 2\NTIEHELPER.DLL
肇iles
艋ystem/Drivers
 舞unning Processes
  +FFEFC881=C:\WINDOWS\SYSTEM\KERNEL32.DLL
  +FFFF8E61=C:\WINDOWS\SYSTEM\MSGSRV32.EXE
  +FFFE6E6D=C:\WINDOWS\SYSTEM\mmtask.tsk
  +FFFE6451=C:\WINDOWS\SYSTEM\MPREXE.EXE
  +FFFEFE85=C:\WINDOWS\SYSTEM\MSTASK.EXE
  +FFFE9731=C:\WINDOWS\RUNDLL32.EXE
  +FFFEB5B9=C:\WINDOWS\EXPLORER.EXE
  +FFFD20D1=C:\WINDOWS\SYSTEM\RESTORE\STMGR.EXE
  +FFFC28A1=C:\WINDOWS\SYSTEM\STIMON.EXE
  +FFFC2EB5=C:\WINDOWS\TASKMON.EXE
  +FFFC3AF1=C:\WINDOWS\SYSTEM\IRMON.EXE
  +FFFCD7BD=C:\WINDOWS\SYSTEM\SYSTRAY.EXE
  +FFFC8E8D=C:\WINDOWS\SYSTEM\QTTASK.EXE
  +FFFB4529=C:\WINDOWS\SYSTEM\WMIEXE.EXE
  +FFF8F029=C:\WINDOWS\SYSTEM\SPOOL32.EXE
  +FFFA4399=C:\WINDOWS\SYSTEM\BCMWLTRY.EXE
  +FFFA5DAD=C:\WINDOWS\SYSTEM\DDHELP.EXE
  +FFF926B1=C:\STARTD\STARTDRECK.EXE
翠pplication specific
 
Logged
EASTER
ASAP Members
Hero Member
*****
Offline Offline

Gender: Male
Date Registered:December 05, 2004, 06:12:53 PM
Posts: 732



WWW
« Reply #6 on: February 25, 2005, 04:26:33 AM »

thumbsup

Navigate to this Location on your system: Find this file please:



C:\WINDOWS\BACKGRRD.GIF



I will wait your reply.
Logged

Maxthon 3.3.6 | X Iron 17.0 |  Chromium 19.0.
Caelus
Newbie
*
Offline Offline

Date Registered:February 23, 2005, 12:31:27 PM
Posts: 44


« Reply #7 on: February 25, 2005, 01:47:15 PM »

Hi Easter I couldnt find the fileu want but found a similar one: "backgrnd.GIF"   the one u typed is "backgrRd.GIF"

thx for u help... by the way my laptop is very unstable at the moment.....  it freezes so often everytime when i turn on or turn off my laptop.......
Logged
EASTER
ASAP Members
Hero Member
*****
Offline Offline

Gender: Male
Date Registered:December 05, 2004, 06:12:53 PM
Posts: 732



WWW
« Reply #8 on: February 25, 2005, 01:54:00 PM »

Did you get the chance to email that file requested?

Thanks........This could be important for a lot of peeps including your laptop.
Logged

Maxthon 3.3.6 | X Iron 17.0 |  Chromium 19.0.
Caelus
Newbie
*
Offline Offline

Date Registered:February 23, 2005, 12:31:27 PM
Posts: 44


« Reply #9 on: February 25, 2005, 02:35:23 PM »

yup, i've already sent that file to that email address   thumbsup


 
Logged
EASTER
ASAP Members
Hero Member
*****
Offline Offline

Gender: Male
Date Registered:December 05, 2004, 06:12:53 PM
Posts: 732



WWW
« Reply #10 on: February 25, 2005, 02:48:23 PM »

Launch Notepad, and copy/paste the box below into a new text file. Save it as type "all files" and name it Find.bat and save it on your Desktop.

Quote

dir %windir%\*.gif> files.txt
dir %windir%\BACKGRRD.GIF> files.txt
notepad files.txt
cls

Locate Find.bat on your Desktop and double-click on it. It will open Notepad with some text in it. Please post the text here.
Logged

Maxthon 3.3.6 | X Iron 17.0 |  Chromium 19.0.
Caelus
Newbie
*
Offline Offline

Date Registered:February 23, 2005, 12:31:27 PM
Posts: 44


« Reply #11 on: February 25, 2005, 03:26:34 PM »

done~    thumbsup


 Volume in drive C has no label
 Volume Serial Number is 214A-09D6
 Directory of C:\WINDOWS

BACKGRRD GIF        31,232  08/06/00  17:00 backgrrd.gif
         1 file(s)         31,232 bytes
         0 dir(s)        2,169.22 MB free
 
Logged
EASTER
ASAP Members
Hero Member
*****
Offline Offline

Gender: Male
Date Registered:December 05, 2004, 06:12:53 PM
Posts: 732



WWW
« Reply #12 on: February 25, 2005, 03:50:47 PM »

This is the file i wish for you to email : No typo. If it's what i suspect then we can safely put this mystery finally to rest for you.

C:\WINDOWS\backgrrd.gif <--GRRD

[span style=\'color:gray\']atlantic5002003@yahoo.com[/span]

Thanks.
Logged

Maxthon 3.3.6 | X Iron 17.0 |  Chromium 19.0.
Caelus
Newbie
*
Offline Offline

Date Registered:February 23, 2005, 12:31:27 PM
Posts: 44


« Reply #13 on: February 25, 2005, 04:45:15 PM »

ok big problem here......   i couldnt find backgrrd.gif !!!   i have searched the whole windows folder but no file named backgrrd, and i used "search" but nothing came out.....   i have checked "show hidden files and folders" and unchecked "hide file extensions..." and "hide protected...."   is there any other way to find a file?   what should i do next?    :wacko:  
Logged
EASTER
ASAP Members
Hero Member
*****
Offline Offline

Gender: Male
Date Registered:December 05, 2004, 06:12:53 PM
Posts: 732



WWW
« Reply #14 on: February 25, 2005, 04:52:55 PM »

Hmmm, interesting...........

Please standby while i evaluate this more.

In the meantime you can help by doing this.....

Go to Tools > Folder Options. Click on the View tab and make sure that "Show hidden files and folders" is checked.
Also uncheck "Hide protected operating system files" and "Hide extensions for known file types" . Now click "Apply to all folders"
Click "Apply" then "OK"

Now click Start>>Windows Explorer, and see if that C:\WINDOWS\backgrrd.gif is there now.  :cool:
Logged

Maxthon 3.3.6 | X Iron 17.0 |  Chromium 19.0.
Pages: [1] 2 3 ... 6   Go Up
  Print  
 
Jump to:  


Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2013, Simple Machines Valid XHTML 1.0! Valid CSS!