Search
Search titles only
By:
Search titles only
By:
Log in
Register
Search
Search titles only
By:
Search titles only
By:
Menu
Install the app
Install
Forums
New posts
All threads
Latest threads
New posts
Trending threads
Trending
Search forums
What's new
New posts
New ads
New profile posts
Latest activity
Free Ads
Latest reviews
Search ads
Members
Current visitors
New profile posts
Search profile posts
Contact us
Latest ads
Pure VPN - Up to 27 Months
vgp
Updated:
Today at 8:10 AM
එක පැකේජ් එකයි මාසෙටම Unlimited Internet. තාමත් DATA CARD දාන්න සල්ලි වියදම් කරනවද? අඩුම මිලට අපෙන්.
sayuru bandara
Updated:
Tuesday at 12:30 PM
Ad icon
ඉන්ටර්නෙට් එකෙන් හරියටම සල්ලි හොයන්න සහ Success වෙන්න කැමතිද? 🚀 (E-Money & Success Stories)
siri sumana
Updated:
Saturday at 11:44 PM
Gemini AI PRO 18 months Offer
Hawaka
Updated:
May 27, 2026
Ad icon
koko account
DasunEranga
Updated:
May 27, 2026
Electronics
Vehicles
Property
Search
Reply to thread
Forums
Computers & Internet
Tips & Tricks
Software Troubleshooting Thread
Get the App
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Message
<blockquote data-quote="sanjeeme" data-source="post: 3844414" data-attributes="member: 86590"><p>When you open System Configuration Utility [MSCONFIG], Registry Editor or Task Manager, they flash for a second and quit. This symptom is caused by Viruses. These three are important system utilities which the viruses target.</p><p></p><p>A quick workaround is to rename the files and run them. Extracting new copies of these files with the same name may not help. Rename these utilities and run them or use MS-MVP Doug Knox's <a href="http://www.dougknox.com/xp/utils/xp_emerutils.htm" target="_blank">Emergency Msconfig, Regedit, Task Manager</a> utility. This utility creates usable copies of MSCONFIG, REGEDIT AND TASK MANAGER by creating copies of the actual files to C:\EmergencyUtils folder.</p><p></p><p><strong>More Information</strong></p><p></p><p> These viruses terminate regedit.exe / msconfig.exe / taskmgr.exe.</p><ul> <li data-xf-list-type="ul"><a href="http://securityresponse.symantec.com/avcenter/venc/data/w32.hllw.kefy.html" target="_blank"> W32.HLLW.Kefy</a></li> <li data-xf-list-type="ul"><a href="http://securityresponse.symantec.com/avcenter/venc/data/backdoor.irc.yoink.a.html" target="_blank">Backdoor.IRC.Yoink.A</a></li> <li data-xf-list-type="ul"><a href="http://securityresponse.symantec.com/avcenter/venc/data/w32.hllw.cydog@mm.html" target="_blank">W32.HLLW.Cydog@mm</a></li> <li data-xf-list-type="ul"><a href="http://securityresponse.symantec.com/avcenter/venc/data/backdoor.volac.dr.html" target="_blank">Backdoor.Volac.dr</a></li> <li data-xf-list-type="ul"><a href="http://www.symantec.com/avcenter/venc/data/w32.kwbot.r.worm.html" target="_blank">W32.Kwbot.R.Worm</a></li> <li data-xf-list-type="ul"><a href="http://securityresponse.symantec.com/avcenter/venc/data/w32.erkez.b@mm.html" target="_blank"> W32.Erkez.B@mm</a></li> <li data-xf-list-type="ul"><a href="http://securityresponse.symantec.com/avcenter/venc/data/w32.spybot.worm.html" target="_blank">W32.Spybot</a></li> <li data-xf-list-type="ul"> <a href="http://securityresponse.symantec.com/avcenter/venc/data/w32.mytob.ld@mm.html" target="_blank"> W32.Mytob.LD@mm</a></li> </ul><p>The following viruses delete Regedit.exe, Regedt32.exe, Msconfig.exe, Taskmgr.exe</p><ul> <li data-xf-list-type="ul"><a href="http://www.symantec.com/avcenter/venc/data/w32.petch.b.html" target="_blank">W32.Petch.B</a></li> <li data-xf-list-type="ul"><a href="http://securityresponse.symantec.com/avcenter/venc/data/w32.hllw.maax.b@mm.html" target="_blank">W32.HLLW.Maax.B@mm</a></li> </ul><p> <strong>Another reason why Regedit can't be launched from Run</strong></p><p></p><p> As of recent, I've seen reports of the bogus file named regedit.com in Windows systems. This file is actually a Trojan file, which is set the Hidden and System attributes. The regedit.com file may be present in %Systemroot% or %Systemroot%\System32 folders. This file should be deleted.</p><p> Normally, users type <strong>regedit</strong> in Start, Run dialog to launch the Registry Editor. But, if both Regedit.exe (legitimate) and Regedit.com (Trojan) are present in your Windows or System32 folder, the file with the .COM extension takes precedence. As a result, regedit.com process launches. When regedit.com file runs, nothing may happen. Or, the following error may be seen.</p><p> ERROR: An Extended Memory Manager is already installed. XMS Driver Not Installed.</p><p> To prevent this scenario, you must use the explicit file name and the Path to load the Registry Editor in emergencies. Examples:</p><p> <ul> <li data-xf-list-type="ul">Regedit.exe</li> <li data-xf-list-type="ul">%Systemroot%\Regedit.exe</li> </ul><p> Here is a trojan <a href="http://www3.ca.com/securityadvisor/virusinfo/virus.aspx?id=43234" target="_blank"> Win32.Alcan.C</a>, which copies the file regedit.com (and others) to the Windows folder.</p><p></p><p></p><p></p><p></p><p><strong><span style="font-size: 18px"><span style="color: DarkRed">Go To following Links to SOLVE the Problem</span></span></strong></p><p></p><p></p><p>First go <strong><a href="http://www.techspot.com/vb/topic17297.html" target="_blank">HERE</a></strong></p><p></p><p>Once you have done that, go <strong><a href="http://www.techspot.com/vb/topic19133.html" target="_blank">HERE</a></strong> and follow the instructions on how to post your Hijackthis log as an attatchment.</p></blockquote><p></p>
[QUOTE="sanjeeme, post: 3844414, member: 86590"] When you open System Configuration Utility [MSCONFIG], Registry Editor or Task Manager, they flash for a second and quit. This symptom is caused by Viruses. These three are important system utilities which the viruses target. A quick workaround is to rename the files and run them. Extracting new copies of these files with the same name may not help. Rename these utilities and run them or use MS-MVP Doug Knox's [URL="http://www.dougknox.com/xp/utils/xp_emerutils.htm"]Emergency Msconfig, Regedit, Task Manager[/URL] utility. This utility creates usable copies of MSCONFIG, REGEDIT AND TASK MANAGER by creating copies of the actual files to C:\EmergencyUtils folder. [B]More Information[/B] These viruses terminate regedit.exe / msconfig.exe / taskmgr.exe. [LIST] [*][URL="http://securityresponse.symantec.com/avcenter/venc/data/w32.hllw.kefy.html"] W32.HLLW.Kefy[/URL] [*][URL="http://securityresponse.symantec.com/avcenter/venc/data/backdoor.irc.yoink.a.html"]Backdoor.IRC.Yoink.A[/URL] [*][URL="http://securityresponse.symantec.com/avcenter/venc/data/w32.hllw.cydog@mm.html"]W32.HLLW.Cydog@mm[/URL] [*][URL="http://securityresponse.symantec.com/avcenter/venc/data/backdoor.volac.dr.html"]Backdoor.Volac.dr[/URL] [*][URL="http://www.symantec.com/avcenter/venc/data/w32.kwbot.r.worm.html"]W32.Kwbot.R.Worm[/URL] [*][URL="http://securityresponse.symantec.com/avcenter/venc/data/w32.erkez.b@mm.html"] W32.Erkez.B@mm[/URL] [*][URL="http://securityresponse.symantec.com/avcenter/venc/data/w32.spybot.worm.html"]W32.Spybot[/URL] [*] [URL="http://securityresponse.symantec.com/avcenter/venc/data/w32.mytob.ld@mm.html"] W32.Mytob.LD@mm[/URL][/LIST] The following viruses delete Regedit.exe, Regedt32.exe, Msconfig.exe, Taskmgr.exe [LIST] [*][URL="http://www.symantec.com/avcenter/venc/data/w32.petch.b.html"]W32.Petch.B[/URL] [*][URL="http://securityresponse.symantec.com/avcenter/venc/data/w32.hllw.maax.b@mm.html"]W32.HLLW.Maax.B@mm[/URL][/LIST] [B]Another reason why Regedit can't be launched from Run[/B] As of recent, I've seen reports of the bogus file named regedit.com in Windows systems. This file is actually a Trojan file, which is set the Hidden and System attributes. The regedit.com file may be present in %Systemroot% or %Systemroot%\System32 folders. This file should be deleted. Normally, users type [B]regedit[/B] in Start, Run dialog to launch the Registry Editor. But, if both Regedit.exe (legitimate) and Regedit.com (Trojan) are present in your Windows or System32 folder, the file with the .COM extension takes precedence. As a result, regedit.com process launches. When regedit.com file runs, nothing may happen. Or, the following error may be seen. ERROR: An Extended Memory Manager is already installed. XMS Driver Not Installed. To prevent this scenario, you must use the explicit file name and the Path to load the Registry Editor in emergencies. Examples: [LIST] [*]Regedit.exe [*]%Systemroot%\Regedit.exe[/LIST] Here is a trojan [URL="http://www3.ca.com/securityadvisor/virusinfo/virus.aspx?id=43234"] Win32.Alcan.C[/URL], which copies the file regedit.com (and others) to the Windows folder. [B][SIZE=5][COLOR=DarkRed]Go To following Links to SOLVE the Problem[/COLOR][/SIZE][/B] First go [B][URL="http://www.techspot.com/vb/topic17297.html"]HERE[/URL][/B] Once you have done that, go [B][URL="http://www.techspot.com/vb/topic19133.html"]HERE[/URL][/B] and follow the instructions on how to post your Hijackthis log as an attatchment. [/QUOTE]
Insert quotes…
Verification
Payakata winadi keeyak tibeda?
Post reply
Top
Bottom