Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

[Referred]Ad-Aware logfile help


  • Please log in to reply

#76
jasonfultz

jasonfultz

    Member

  • Topic Starter
  • Member
  • PipPip
  • 71 posts
Since zpu.exe isn't on any of my hard drives, should I click Fix in HijackThis for the following (I'll wait for you to tell me 'yes' before I actually 'fix' it):

O4 - HKCU\..\Run: [Terminate Popup] d:\Program Files\Zero-PopUps\zpu.exe

Also, I'm going to post my latest HijackThis.log file since it's been a while and who knows if I've done anything to change it since the last time. I hope you don't mind:

*************************************************

Logfile of HijackThis v1.99.1
Scan saved at 2:28:08 PM, on 7/12/2005
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v5.00 SP1 (5.00.3700.6690)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\Ati2evxx.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
D:\Program Files\Alias\Maya6.0\docs\Wrapper.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
D:\Program Files\Alias\Maya6.0\docs\jre\bin\java.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\WINNT\System32\DRIVERS\CDANTSRV.EXE
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\gearsec.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\system32\stisvc.exe
C:\WINNT\system32\Tablet.exe
C:\WINNT\system32\Ati2evxx.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\Explorer.EXE
C:\WINNT\system32\svchost.exe
D:\Program Files\EPoX\USDM\USDM.EXE
D:\Program Files\QuickTime\qttask.exe
D:\Program Files\Logitech\MouseWare\system\em_exec.exe
C:\WINNT\SOUNDMAN.EXE
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
D:\Program Files\Netscape\Netscape\Netscp.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
C:\WINNT\system32\Wtablet\TabUserW.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
D:\Program Files\Yahoo!\Messenger\YPager.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\taskmgr.exe
D:\Program Files\hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.cnn.com/
N3 - Netscape 7: user_pref("browser.startup.homepage", "http://www.cnn.com"); (C:\Documents and Settings\Jason Fultz\Application Data\Mozilla\Profiles\default\ojufvc3c.slt\prefs.js)
N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://D%3A%5CProgram%20Files%5CNetscape%5CNetscape%206%5Csearchplugins%5CSBWeb_02.src"); (C:\Documents and Settings\Jason Fultz\Application Data\Mozilla\Profiles\default\ojufvc3c.slt\prefs.js)
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - D:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_12_0.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - D:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_12_0.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [EPoXUSDM] "D:\Program Files\EPoX\USDM\USDM.EXE" "5000"
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [QuickTime Task] "D:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime
O4 - HKCU\..\Run: [Terminate Popup] d:\Program Files\Zero-PopUps\zpu.exe
O4 - HKCU\..\Run: [Mozilla Quick Launch] "d:\Program Files\Netscape\Netscape\Netscp.exe" -turbo
O4 - Global Startup: ATI CATALYST System Tray.lnk = C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
O4 - Global Startup: Microsoft Find Fast.lnk = D:\Program Files\Microsoft Office\Office\FINDFAST.EXE
O4 - Global Startup: TabUserW.exe.lnk = C:\WINNT\system32\Wtablet\TabUserW.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: Yahoo! Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0411.dll (file missing)
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0411.dll (file missing)
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....467&clcid=0x409
O16 - DPF: {62475759-9E84-458E-A1AB-5D2C442ADFDE} - http://a1540.g.akama...meInstaller.exe
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai...all/xscan53.cab
O16 - DPF: {A17E30C4-A9BA-11D4-8673-60DB54C10000} (YahooYMailTo Class) - http://us.dl1.yimg.c.../ymmapi_416.dll
O16 - DPF: {E7DBFB6C-113A-47CF-B278-F5C6AF4DE1BD} - http://download.abac...abasetup152.cab
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Alias Documentation Server (aliasdocserver) - Unknown owner - D:\Program Files\Alias\Maya6.0\docs\Wrapper.exe" -s "D:\Program Files\Alias\Maya6.0\docs/Wrapper.conf (file missing)
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINNT\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINNT\system32\ati2sgag.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINNT\System32\DRIVERS\CDANTSRV.EXE
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: Gear Security Service (GEARSecurity) - GEAR Software - C:\WINNT\system32\gearsec.exe
O23 - Service: iPod Service (iPodService) - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe (file missing)
O23 - Service: Alias Maya 5.0 PLE Help Server (Maya5PLEHelpServer) - Unknown owner - D:\Program Files\AliasWavefront\Maya 5.0 Personal Learning Edition\docs\Wrapper.exe" -s "D:\Program Files\AliasWavefront\Maya 5.0 Personal Learning Edition\docs/Wrapper.conf (file missing)
O23 - Service: TabletService - Wacom Technology, Corp. - C:\WINNT\system32\Tablet.exe
  • 0

Advertisements


#77
Metallica

Metallica

    Spyware Veteran

  • GeekU Moderator
  • 31,676 posts
I have the feeling we came a bit closer.

Check the following items in HijackThis.
Close all windows except HijackThis and click Fix checked:

O4 - HKCU\..\Run: [Terminate Popup] d:\Program Files\Zero-PopUps\zpu.exe
O4 - HKCU\..\Run: [Mozilla Quick Launch] "d:\Program Files\Netscape\Netscape\Netscp.exe" -turbo

O4 - Global Startup: Microsoft Find Fast.lnk = D:\Program Files\Microsoft Office\Office\FINDFAST.EXE

O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present

Then reboot and delete:
d:\Program Files\Zero-PopUps <= the entire folder

Let me know if and which files can't be deleted from that folder.

Regards,
  • 0

#78
jasonfultz

jasonfultz

    Member

  • Topic Starter
  • Member
  • PipPip
  • 71 posts
Alright, so I had HijackThis fix those 5 entries with all other windows closed. I rebooted and tried to start up IE without any luck. Same thing.

I still wasn't able to find d:\Program Files\Zero-PupUps. I must have uninstalled it a while back or just deleted it, thereby leaving the registry entry active.

In conclusion, my problem persists.

Jason...
  • 0

#79
Metallica

Metallica

    Spyware Veteran

  • GeekU Moderator
  • 31,676 posts
OK.

We have a few entries in your log that state "file missing"

O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0411.dll (file missing)
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0411.dll (file missing)

O23 - Service: iPod Service (iPodService) - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe (file missing)
O23 - Service: Alias Maya 5.0 PLE Help Server (Maya5PLEHelpServer) - Unknown owner - D:\Program Files\AliasWavefront\Maya 5.0 Personal Learning Edition\docs\Wrapper.exe" -s "D:\Program Files\AliasWavefront\Maya 5.0 Personal Learning Edition\docs/Wrapper.conf (file missing)

HijackThis is not always correct in this, so we doublecheck.

See if these files exist:
C:\Program Files\iPod\bin\iPodService.exe
D:\Program Files\AliasWavefront\Maya 5.0 Personal Learning Edition\docs\Wrapper.exe
C:\Program Files\Yahoo!\Messenger\yhexbmes0411.dll

Let me know.

You can also fix:

O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll

Regards,
  • 0

#80
jasonfultz

jasonfultz

    Member

  • Topic Starter
  • Member
  • PipPip
  • 71 posts
The following directories no longer exist (and thus the files in them are, indeed, missing):

C:\Program Files\iPod
D:\Program Files\AliasWavefront
C:\Program Files\Yahoo!\Messenger

I then fixed the 3 items that you noted above.
  • 0

#81
Metallica

Metallica

    Spyware Veteran

  • GeekU Moderator
  • 31,676 posts
OK. Some more we can throw out since we know the files are really gone.

Click Start > Run type services.msc > OK
In the list of services find:
Alias Maya 5.0 PLE Help Server (Maya5PLEHelpServer)
Rightclick that line and choose Properties.
On the General tab Stop and set the service to disabled.
In HijackThis click Config > Misc Tools > Delete an NT service
In the dialog box paste: Maya5PLEHelpServer

Then in the same list find:
iPod Service (iPodService)
Rightclick that line and choose Properties.
On the General tab Stop and set the service to disabled.
In HijackThis click Config > Misc Tools > Delete an NT service
In the dialog box paste: iPodService

Check the following items in HijackThis.
Close all windows except HijackThis and click Fix checked:

O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0411.dll (file missing)
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0411.dll (file missing)

Copy the part below into notepad and save it as unattYM.reg

REGEDIT4

[-HKEY_CLASSES_ROOT\CLSID\{4528BBE0-4E08-11D5-AD55-00010333D0AD}]

[-HKEY_CLASSES_ROOT\TypeLib\{4528BBE0-4E08-11D5-AD55-00010333D0AD}]

[-HKEY_CLASSES_ROOT\Interface\{4528BBE0-4E08-11D5-AD55-00010333D0AD}]



Doubleclick the file and confirm you want to merge it with the registry.

Reboot and let me know.

Regards,
  • 0

#82
jasonfultz

jasonfultz

    Member

  • Topic Starter
  • Member
  • PipPip
  • 71 posts
With the exception of our existing problem still being a problem (IE doesn't open), no further errors seem to have occured due to our last changes. I guess that's good. :tazz:

While we're working on this IE problem, let me know if there is anything I can do to optimize the following: whenever I open Explorer, it defaults to my C: drive, which is currently set up as compressed to save drive space; however it takes a minute or longer for it to let me do anything in the window, as if it's spending all of its time loading files or reading the hard drive. This isn't a big deal, and the IE is certainly the priority, but this one is rather annoying and if there is a simple fix short of uncompressing the drive, then I'd like to hear about it.

Thanks for your help so far. I know this is taking a ton of your time and probably patience too. So I want you to know that I do truly appreciate your effort.

Jason...
  • 0

#83
Metallica

Metallica

    Spyware Veteran

  • GeekU Moderator
  • 31,676 posts
How do you open explorer normally?

Doubleclicking "My Computer" ?

Let me know what happens when you click Start > Run > C:\Program Files or any other folder you want to reach > OK
  • 0

#84
jasonfultz

jasonfultz

    Member

  • Topic Starter
  • Member
  • PipPip
  • 71 posts
Wow! That opened fast! Now is there any way to get the 'Folders' option enabled when I open it that way? In other words, when I click on a link to a directory (as you have described) Explorer opens but doesn't automatically open the side 'Folders' heirarchy sub-window on the left.

I can certainly live with having to click the Folders button, but it'd be nice to have it open it automatically for me.

By the way, before I would right-click the start button -> Explore. And it took forever. I've noticed that clicking the My Computer link does the same thing that you've described and takes only a second.

Thanks! Now, about opening the Folders option automatically? :tazz:
  • 0

#85
Metallica

Metallica

    Spyware Veteran

  • GeekU Moderator
  • 31,676 posts
You may need IE6 for this to work. Let's try.

Click Start > Run > regedit.exe /e C:\leftpane.txt "HKEY_CLASSES_ROOT\CLSID\{EFA24E64-B078-11d0-89E4-00C04FC9E26E}\InProcServer32" >OK

That will create the file C:\leftpane.txt
Post the content of that file.

Also rightclick that "Explore" entry in your Startmenu and post the properties.
I'm curious about the full path and command options it shows.

Regards,
  • 0

Advertisements


#86
jasonfultz

jasonfultz

    Member

  • Topic Starter
  • Member
  • PipPip
  • 71 posts
Ok. The contents of leftpane.txt:

***********************************************

Windows Registry Editor Version 5.00

[HKEY_CLASSES_ROOT\CLSID\{EFA24E64-B078-11d0-89E4-00C04FC9E26E}\InProcServer32]
@=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,00,25,\
00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,00,68,00,\
64,00,6f,00,63,00,76,00,77,00,2e,00,64,00,6c,00,6c,00,00,00
"ThreadingModel"="Apartment"

**********************************************

Uhm, about the properties of "Explore" in my Startmenu...when I right click on the Start button, a menu pops up. I then right click on Explore as I would normally do, and it acts exactly as if I'm left clicking it (it opens the link). I can't get another menu by right clicking on it.

However, when I go into Start -> Programs -> Accessories -> (left click) Windows Explorer, I can select Properties from there. And here's what I find:

Shortcut Tab
*************
Target: %SystemRoot%\explorer.exe
Start in: %HOMEDRIVE%%HOMEPATH%

General Tab
*************
Location: C:\Documents and Settings\Jason Fultz\Start Menu\Programs\Accessories

I don't know if that's what you wanted, but that's all I could find for now.
  • 0

#87
Metallica

Metallica

    Spyware Veteran

  • GeekU Moderator
  • 31,676 posts
That is pointing to SHDOCVW.DLL as it should for IE6
You were however running IE5

I think it's time to install IE6

A few things I'd like to see (for the Explore shortcut):

Click Start > Run > copy&paste regedit.exe /e C:\startmenu.txt "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced" > OK

Click Start > Run > copy&paste regedit.exe /e C:\myputer.txt "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}" > OK

Post the content of the files C:\startmenu.txt & C:\myputer.txt

Regards,
  • 0

#88
jasonfultz

jasonfultz

    Member

  • Topic Starter
  • Member
  • PipPip
  • 71 posts
Ok. Here we go. myputer.txt:

*******************************************

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}]
@="My Computer"
"InfoTip"="Displays the files and folders on your computer"
"LocalizedString"="@C:\\WINNT\\system32\\shell32.dll,-9216@1033,My Computer"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\DefaultIcon]
@=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,00,25,\
00,5c,00,45,00,78,00,70,00,6c,00,6f,00,72,00,65,00,72,00,2e,00,65,00,78,00,\
65,00,2c,00,30,00,00,00

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\InProcServer32]
@=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,00,25,\
00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,00,68,00,\
65,00,6c,00,6c,00,33,00,32,00,2e,00,64,00,6c,00,6c,00,00,00
"ThreadingModel"="Apartment"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell]
@="none"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\find]
@="S&earch..."

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\find\command]
@=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,00,25,\
00,5c,00,45,00,78,00,70,00,6c,00,6f,00,72,00,65,00,72,00,2e,00,65,00,78,00,\
65,00,00,00

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\find\ddeexec]
@="[FindFolder(\"%l\", %I)]"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\find\ddeexec\application]
@="Folders"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\find\ddeexec\topic]
@="AppProperties"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\Manage]
@="Mana&ge"
"SuppressionPolicy"=dword:4000003c

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\Manage\command]
@=hex(2):25,00,77,00,69,00,6e,00,64,00,69,00,72,00,25,00,5c,00,73,00,79,00,73,\
00,74,00,65,00,6d,00,33,00,32,00,5c,00,6d,00,6d,00,63,00,2e,00,65,00,78,00,\
65,00,20,00,2f,00,73,00,20,00,25,00,77,00,69,00,6e,00,64,00,69,00,72,00,25,\
00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,63,00,6f,00,\
6d,00,70,00,6d,00,67,00,6d,00,74,00,2e,00,6d,00,73,00,63,00,00,00

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shellex]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shellex\ExtShellFolderViews]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shellex\ExtShellFolderViews\{5984FFE0-28D4-11CF-AE66-08002B2E1262}]
"PersistMoniker"="file://%webdir%\\folder.htt"

*****************************************

And startmenu.txt:

*****************************************

Windows Registry Editor Version 5.00

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"Hidden"=dword:00000001
"ShowCompColor"=dword:00000001
"HideFileExt"=dword:00000000
"DontPrettyPath"=dword:00000000
"ShowInfoTip"=dword:00000001
"HideIcons"=dword:00000000
"MapNetDrvBtn"=dword:00000000
"WebView"=dword:00000001
"Filter"=dword:00000000
"SuperHidden"=dword:00000001
"SeparateProcess"=dword:00000000
"StartButtonBalloonTip"=dword:00000001
"StartMenuInit"=dword:00000003
"ShowSuperHidden"=dword:00000001
"ClassicViewState"=dword:00000000
"StartMenuChevron"=dword:00000000
  • 0

#89
Metallica

Metallica

    Spyware Veteran

  • GeekU Moderator
  • 31,676 posts
Did you install IE6?

Regards,
  • 0

#90
jasonfultz

jasonfultz

    Member

  • Topic Starter
  • Member
  • PipPip
  • 71 posts
Well that's part of the problem. I've tried upgrading to IE6 about a gazillion times. Maybe that's the problem. Every time I try to upgrade I get the following message (and after doing what it says, nothing happens):

"A previous installation has pending work requiring a reboot. You need to restart your computer to complete that installation before running Internet Explorer Setup. Setup will now close."

Of course whenever I reboot (which I've done a gazillion times in the past month or so), it never finishes.

If this is different after I reboot this time, I'll post here within 15 minutes or so. Otherwise, assume it's as I've described.

Jason...
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP