![]() ![]() |
| Xane |
Dec 8 2009, 06:51 PM
Post
#1
|
|
Group: Members Posts: 57 Joined: 26-May 08 Member No.: 23,633 |
This problem just began today. I restarted my computer and explorer.exe won't start up. If I try to run it with Windows Task Manager it just crashes. I can't right click on my desktop, but it works everywhere else. I don't have:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\explorer.exe or HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iexplorer.exe in my registry. Help is appreciated. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 5:49:27 PM, on 12/8/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\Program Files\Faronics\Deep Freeze\Install C-0\DF5Serv.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\LSI SoftModem\agrsmsvc.exe C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\WINDOWS\eHome\ehRecvr.exe C:\WINDOWS\eHome\ehSched.exe C:\WINDOWS\system32\fsproflt.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe C:\Program Files\Faronics\Deep Freeze\Install C-0\_$Df\FrzState2k.exe C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\dllhost.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\TortoiseSVN\bin\TSVNCache.exe C:\Program Files\iPod\bin\iPodService.exe C:\WINDOWS\system32\taskmgr.exe C:\Program Files\Microsoft Office\Office12\WINWORD.EXE C:\Program Files\Trend Micro\Check\Check.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.gateway.com/g/sidepanel.html?Ch...TP&M=GT4024 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gateway.com/g/startpage.html?Ch...TP&M=GT4024 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.gateway.com/g/sidepanel.html?Ch...TP&M=GT4024 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8080 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files\Adobe\/Adobe Contribute CS4/contributeieplugin.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\windows\system32\BAE.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll O3 - Toolbar: StylerToolBar - {D2F8F919-690B-4EA2-9FA7-A203D1E04F75} - C:\Program Files\Styler\TB\StylerTB.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files\Adobe\/Adobe Contribute CS4/contributeieplugin.dll O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup O4 - HKLM\..\Run: [readericon] C:\Program Files\Digital Media Reader\readericon45G.exe O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O4 - HKLM\..\Run: [CHotkey] zHotkey.exe O4 - HKLM\..\Run: [Recguard] %WINDIR%\SMINST\RECGUARD.EXE O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe" O4 - HKLM\..\Run: [MSKDetectorExe] C:\Program Files\McAfee\SpamKiller\MSKDetct.exe /uninstall O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe" O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [DrvIcon] C:\Program Files\Vista Drive Icon\DrvIcon.exe O4 - HKLM\..\Run: [LogonStudio] "C:\Program Files\WinCustomize\LogonStudio\logonstudio.exe" /RANDOM O4 - HKLM\..\Run: [RemoteControl9] "C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe" O4 - HKLM\..\Run: [PDVD9LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe" O4 - HKLM\..\Run: [BDRegion] C:\Program Files\Cyberlink\Shared Files\brs.exe O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [MOD] "C:\Program Files\Microangelo On Display\MODmgr.exe" O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe" O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe" O4 - HKLM\..\Run: [Adobe_ID0ENQBO] C:\PROGRA~1\COMMON~1\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4Tray.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount O4 - HKCU\..\Run: [Power Memory Booster] C:\Program Files\Power Memory Booster\PowerMemoryBooster.exe /autorun O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe" O4 - HKCU\..\RunOnce: [Shockwave Updater] C:\WINDOWS\system32\Adobe\Shockwave 11\SwHelper_1150596.exe -Update -1150596 -"Mozilla/5.0_(Windows;_U;_Windows_NT_5.1;_en-US;_rv:1.9.0.13)_Gecko/2009073022_Firefox/3.0.13_GTB5_(.NET_CLR_3.5.30729)" -"http://www.mofunzone.com/popups/dragonballztournament.shtml" O4 - HKUS\S-1-5-18\..\Run: [Power2GoExpress] NA (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [Power2GoExpress] NA (User 'Default user') O4 - Startup: SDK Tray Menu.lnk = ? O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O4 - Global Startup: HP Photosmart Premier Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe O8 - Extra context menu item: Add to Banner Ad Blocker - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm O8 - Extra context menu item: Append to existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Customize Menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Fill Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html O8 - Extra context menu item: RoboForm Toolbar - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html O8 - Extra context menu item: Save Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html O8 - Extra context menu item: Set Fields - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSetFields.html O9 - Extra button: Web traffic protection statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html O9 - Extra button: Set Fields - {320AF880-6646-11D3-ABEE-C5DBF3571F52} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSetFields.html O9 - Extra 'Tools' menuitem: Set Fields - {320AF880-6646-11D3-ABEE-C5DBF3571F52} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSetFields.html O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: c:\windows\system32\prxernsp.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\prxerdrv.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\prxerdrv.dll O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL O20 - Winlogon Notify: DfLogon - C:\WINDOWS\SYSTEM32\LogonDll.dll O23 - Service: Adobe Version Cue CS4 - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Program Files\LSI SoftModem\agrsmsvc.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: DF5Serv - Faronics Corporation - C:\Program Files\Faronics\Deep Freeze\Install C-0\DF5Serv.exe O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: FSPro Filter Service (fsproflt) - FSPro Labs - C:\WINDOWS\system32\fsproflt.exe O23 - Service: Google Desktop Manager 5.9.911.3589 (GoogleDesktopManager-110309-193829) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files\WinPcap\rpcapd.exe O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- End of file - 15807 bytes |
| HKEd |
Dec 8 2009, 07:35 PM
Post
#2
|
![]() Carbon-Based Life Form Group: Administrator Posts: 12,339 Joined: 9-August 01 From: Hong Kong Member No.: 192 |
If you try to run C: or any other drives/partitions in the task manager, do the folders open?
Do you know if the recovery console is installed? What kind of XP CD do you have - full or recovery? -------------------- If I've helped you, please pass it on and help someone else.
SPAM is not tolerated here. New members posting SPAM will be banned with no warning. |
| Xane |
Dec 8 2009, 07:37 PM
Post
#3
|
|
Group: Members Posts: 57 Joined: 26-May 08 Member No.: 23,633 |
Yes, other folders/files open and stay opened when I run them using the task manager. There's a RECOVERY (D:) if that's what you mean by recovery console and I have a restore XP CD.
|
| HKEd |
Dec 8 2009, 07:46 PM
Post
#4
|
![]() Carbon-Based Life Form Group: Administrator Posts: 12,339 Joined: 9-August 01 From: Hong Kong Member No.: 192 |
I meant the recovery console that you can boot to. If it were installed, there would be an option to boot to it when the computer starts.
Have a look in C:\Windows\System32\dllcache and see if there's an Explorer.exe there. See if it will copy/paste to C:\Windows. -------------------- If I've helped you, please pass it on and help someone else.
SPAM is not tolerated here. New members posting SPAM will be banned with no warning. |
| Xane |
Dec 8 2009, 07:53 PM
Post
#5
|
|
Group: Members Posts: 57 Joined: 26-May 08 Member No.: 23,633 |
dllcache isn't there.
|
| HKEd |
Dec 8 2009, 08:05 PM
Post
#6
|
![]() Carbon-Based Life Form Group: Administrator Posts: 12,339 Joined: 9-August 01 From: Hong Kong Member No.: 192 |
The dllcache folder is there - it's just well hidden. Try this from the task manager:
%systemroot%\system32\dllcache Locate Explorer.exe and copy/paste to C:\Windows. -------------------- If I've helped you, please pass it on and help someone else.
SPAM is not tolerated here. New members posting SPAM will be banned with no warning. |
| Xane |
Dec 9 2009, 04:49 PM
Post
#7
|
|
Group: Members Posts: 57 Joined: 26-May 08 Member No.: 23,633 |
I found explorer.exe in C:/WINDOWS, but I couldn't find dllcache in system32. When I ran %systemroot%\system32\dllcache in windows task manager, the taskbar appeared for a fraction of a second and then disappeared.
This post has been edited by Xane: Dec 9 2009, 04:52 PM |
| HKEd |
Dec 9 2009, 06:49 PM
Post
#8
|
![]() Carbon-Based Life Form Group: Administrator Posts: 12,339 Joined: 9-August 01 From: Hong Kong Member No.: 192 |
Right-click on Explorer.exe in C:\Windows and select Properties. What is the exact file size?
Can you rename the file without error messages? Is there an i386 folder in C:? -------------------- If I've helped you, please pass it on and help someone else.
SPAM is not tolerated here. New members posting SPAM will be banned with no warning. |
| HKEd |
Dec 9 2009, 07:09 PM
Post
#9
|
![]() Carbon-Based Life Form Group: Administrator Posts: 12,339 Joined: 9-August 01 From: Hong Kong Member No.: 192 |
If the copy of Explorer.exe in C:\Windows is damaged or infected, we will go around in circles trying to replace it within Windows. It's near impossible to do without the Recovery Console installed and not having a full XP CD.
You need a working computer to install ImgBurn in order to make a Linux (Knoppix) CD. You'll need a clean USB stick as well. Do you have access to a working computer? -------------------- If I've helped you, please pass it on and help someone else.
SPAM is not tolerated here. New members posting SPAM will be banned with no warning. |
| Xane |
Dec 9 2009, 07:27 PM
Post
#10
|
|
Group: Members Posts: 57 Joined: 26-May 08 Member No.: 23,633 |
I'm getting a Dell Netbook on Friday so until then, no.
|
| Xane |
Dec 11 2009, 04:41 PM
Post
#11
|
|
Group: Members Posts: 57 Joined: 26-May 08 Member No.: 23,633 |
I received my Dell Mini 10v Netbook, and it runs Windows XP. Will this work?
|
| HKEd |
Dec 11 2009, 07:15 PM
Post
#12
|
![]() Carbon-Based Life Form Group: Administrator Posts: 12,339 Joined: 9-August 01 From: Hong Kong Member No.: 192 |
Should do. You need to install ImgBurn (linked in previous post).
Next, download Knoppix from here. It's all in German, so I'll walk you through it: Click on Download, then on the Knoppix Mirrors page, scroll down to the bottom of the page and click on the Purdue University link. On the next page, click on 'Akzeptieren', then click on KNOPPIX_V5.1.0CD-2006-12-30-EN.iso, 7th line from the top. Download the file to the desktop, pop a new DVD blank in the drive and click on the downloaded file. ImgBurn will handle the rest. You need a clean USB drive and you need a clean copy of Explorer.exe to put on the drive. I can send you a copy of Explorer.exe via email. Click on my member name for my email address and send me a message. -------------------- If I've helped you, please pass it on and help someone else.
SPAM is not tolerated here. New members posting SPAM will be banned with no warning. |
| Xane |
Dec 13 2009, 04:08 PM
Post
#13
|
|
Group: Members Posts: 57 Joined: 26-May 08 Member No.: 23,633 |
I've made the Knoppix CD and put the clean copy of explorer.exe on my flash drive.
|
| HKEd |
Dec 13 2009, 07:34 PM
Post
#14
|
![]() Carbon-Based Life Form Group: Administrator Posts: 12,339 Joined: 9-August 01 From: Hong Kong Member No.: 192 |
Put the Knoppix CD in the drive and restart the computer. Wait until all the icons have loaded on the desktop. The drive icons will be there as well. Click on each and familiarise yourself with what's what. Attach the USB drive and see if you can copy/paste files freely.
If you encounter a problem, right-click on sda2 (or whatever the USB drive is) and select 'Change read/write mode'. You'll get this message: "Do you really want to change the partition to be writable?". Click Yes. Do the same for the C: drive. Go to C:\Windows and delete the Explorer.exe there. Copy/paste the Explorer.exe file from the USB drive to C:\Windows. Log off from Knoppix, cross your fingers and reboot. -------------------- If I've helped you, please pass it on and help someone else.
SPAM is not tolerated here. New members posting SPAM will be banned with no warning. |
| Xane |
Dec 14 2009, 04:36 PM
Post
#15
|
|
Group: Members Posts: 57 Joined: 26-May 08 Member No.: 23,633 |
It doesn't let me change the C drive to writable. It says, "The remount command failed Maybe there is another process accessing the filesystem currently.
|
| HKEd |
Dec 14 2009, 06:43 PM
Post
#16
|
![]() Carbon-Based Life Form Group: Administrator Posts: 12,339 Joined: 9-August 01 From: Hong Kong Member No.: 192 |
I don't know of any way to resolve that. It happens a lot.
The next option is this: Go here and open the Microsoft link. Scroll down to the SP2 bootdisk link and choose either Home or Pro, whichever you have. Download WindowsXP-KB310994-SP2-Home (or Pro)-BootDisk-ENU.exe to the desktop and rename the file to BootDisk.exe. At the original link, click on 'Download the package here' and save the zip file to the desktop. Unzip it to there and copy BootDisk.exe to the folder. Put a new CD or DVD in the drive and click on the RecoveryCD.bat file. This will install the bootdisk files to the CD/DVD. Boot with that CD and let me know if it all goes well. The only other option is to remove the hard drive and hook it up to another system as a data drive and replace Explorer.exe. -------------------- If I've helped you, please pass it on and help someone else.
SPAM is not tolerated here. New members posting SPAM will be banned with no warning. |
| Xane |
Dec 15 2009, 04:50 PM
Post
#17
|
|
Group: Members Posts: 57 Joined: 26-May 08 Member No.: 23,633 |
What command do you want me to run? I chose repair then I got a huge list of commands and I didn't know what to pick.
This post has been edited by Xane: Dec 15 2009, 04:50 PM |
| HKEd |
Dec 15 2009, 06:59 PM
Post
#18
|
![]() Carbon-Based Life Form Group: Administrator Posts: 12,339 Joined: 9-August 01 From: Hong Kong Member No.: 192 |
I just need you to get to a DOS prompt, just as if you were using a floppy boot disk. Do not run any commands. Boot with the CD and let me know if it goes to a DOS screen.
-------------------- If I've helped you, please pass it on and help someone else.
SPAM is not tolerated here. New members posting SPAM will be banned with no warning. |
| Xane |
Dec 16 2009, 03:39 PM
Post
#19
|
|
Group: Members Posts: 57 Joined: 26-May 08 Member No.: 23,633 |
It goes to a DOS screen.
|
| HKEd |
Dec 16 2009, 06:52 PM
Post
#20
|
![]() Carbon-Based Life Form Group: Administrator Posts: 12,339 Joined: 9-August 01 From: Hong Kong Member No.: 192 |
If you're at a C:\> prompt, type the following, pressing Enter after each line:
cd windows ren explorer.exe explorer.old cd X:\ (Substitute the letter of your USB drive for X) copy explorer.exe c:\windows exit Let me know what happens after the system reboots. -------------------- If I've helped you, please pass it on and help someone else.
SPAM is not tolerated here. New members posting SPAM will be banned with no warning. |
![]() ![]() |
|
Lo-Fi Version | Time is now: 3rd September 2010 - 07:48 AM |