Iv about this virus which was like msblast virus at first… With similar message
Startup error “services.exe was unexpectedly deleted with code
0″… try starting at 60 and then stop.
However, I tried the msblast uninstaller in safe mode and found nothing.
I checked all used hijackthis logs and Kapernsky’s analysis. Everything is safe
and everything becomes clean.
I ran “shutdown /a” to complete shutdown execution and some functions.
Tried to start the explorer process and filemon/regmon in normal style and couldn’t get
the ones they wear. Process Explorer won’t start, Regmon: “Error loading REGMON701:
The system cannot find the specified file”, Filemon: “Error loading Filemon701: The
cannot find the specified file “… Tried to rename it and it doesn’t work.
Also, regedit.exe and cmd.exe should not be opened without renaming them… some people research them
close / So crash, I know it’s due to a bug.
I also tried SDFix.exe plus smitfraudfix and they seem to work… (probably because cmd.exe
not in the office?)
The last I saw was usually an infected/patched kernel…
So I took a commercially available HD and scanned it with another device. However, he did not work as a cook
Work, NOD32 and Came Kapernski cleaned up this drive.
I’m out of ideas…
Is there anyone?
Speed up your PC today.
Looking to fix your Windows PC? Look no further than ASR Pro! This comprehensive repair tool has been designed to diagnose and fix a wide variety of issues, while also increasing system performance, optimizing memory, improving security and fine tuning your PC for maximum reliability. Don't struggle with a broken computer - download ASR Pro and let the experts take care of it for you!
Step 1: Download ASR Pro and save it to your computer
Step 2: Open the program and click "Scan"
Step 3: Click "Repair" to start the repair process
Microtrend HijackThis v2.0.2 log fileScan recorded from 20:33:07, Windows 11.03.2009Platform: XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Boot Mode: Safe Mode with Cellular SupportCurrent process:C:WINDOWSSystem32smss.exeC:WINDOWSsystem32csrss.exeC:WINDOWSsystem32winlogon.exeC:WINDOWSsystem32services.exeC:WINDOWSsystem32lsass.exeC:WINDOWSsystem32svchost.exeC:WINDOWSsystem32svchost.exeC:WINDOWSsystem32svchost.exeC:WINDOWSsystem32svchost.exeC:WINDOWSsystem32r_server.exeC:WINDOWSexplorer.exeC:setupHijackThis.exeC:WINDOWSsystem32wbemwmiprvse.exeR0 - HKCUSoftwareMicrosoftInternet ExplorerMain, home page is equivalent to http://www.google.ca/R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start = World Wide Web about:blankO23 - Service: Remote Administrator Service (r_server) - Unknown owner - C:WINDOWSsystem32r_server.exe--End of file - bytes