Tuesday, May 20, 2008

Computer Keeps on Restarting while loading Windows XP

Symptoms:

Computer boots like normal, Windows loading screen will appear, after a few seconds, a quick blue screen will appear and then your computer restarts. You can't even read the BSOD information because it just flash in less than a second. This will go on and on and you will be stuck in a loop. Computer will not boot even in safe mode or any other option.


Solution:

First thing to do is to disable the option that computer automatically restarts when a fatal error/system failure occurs. There is an option inside windows for that, but in this case we can't do that. So what you need to do is to press F8 before the Windows XP logo appears right after the BIOS screen (just like what you do when you want to boot in safe mode). This screen will appear:


















(this image is from Vista but it's basically the same) What you need to do is choose the option: "Disable automatic restart on system failure" (the one in the red box). After doing that, your computer will restart, and you will now see the Blue screen error message.

9 out of 10 computers that i worked on will show the BSOD (blue screen of death) message:

Unmountable_Boot_Volume

For some, the only solution when you see this error is to reformat the hard drive. But this problem can be easily repaired by using the built in Window Tool "Chkdsk" or checkdisk (same as scandisk on older windows version).

What you need is a Windows XP installer CD, put in you CD Drive, boot your computer from it.
When this screen appear, choose the Repair option:

You will now get to the command prompt. . Type chkdsk /p and hit Enter. This will launch a utility which will check for errors on your hard drive, it will take a while, just be patient. When it is finished, remove the installation disk on your cd rom drive, type EXIT and your computer will now be back to normal.

Thursday, May 15, 2008

Ubuntu Saves the Day - About Acer Aspire 4710

Somebody brought an Acer Aspire 4710 laptop here in my shop. The owner wants me to reformat it because she is planning to sell it. It's easy if you have the recovery cd/dvd, the problem is, she doesn't have one, because it never came with one when she bought it. FYI, majority of laptop manufacturer today do not include recovery disk, instead they put it in a hidden partition in your hard disk drive.

So I turned the laptop on, backed up any important files, restart the computer and fired up the recovery software by pressing alt+F10 (i believe this is the universal key sequence to enter recovery mode for acer laptops). Then another problem occur.

The eRecovery file has a password (Empowering Technology Password). A note under the setup of the password reads:

If you lose the Empowering Technology password, there is
no way to reset it except by reformatting your system. Make sure
to remember or write down your password!

According to some website, the default password is 000000 (that's six zeros). But it does not work in this laptop. It turned out that it was user generated password, the owner doesn't know what it is, or maybe she already forgot what it is.

I search the internet for an answer, according the some information i collected, the password is stored in a file on the hidden partition. The partition label is PQSERVICE. The best way to get at this is to use something like UBCD (The Ultimate Boot CD) that will run a complete system from a cd. Once it is booted, you should look for the file AIMDRS.DAT

Use any text editor or notepad to view this file and you can find the password there. Example:
"password" PD= "____" and "hint" HD="____"

I have UBCD but i cannot find the disk, so i look for my Ubuntu CD 7.10. It is a live cd so you can use it to load Ubuntu linux without installing it in your hard drive. You can also use any other Linux Live CD for this matter. The important thing is you can access the hidden eRecovery partition of you acer laptop (PQSERVICE).

You can edit the password, or you can leave it as it is. Remove the live Cd, restart the PC, boot to eRecovery, just enter the password and you can sit back and relax while it loads.

Note:
Some suggests that you can use Acronis Disk Director or other partition software to show up the hidden partition. You can try that one, but I haven't tested it yet.

Wednesday, May 14, 2008

Hewlett Packard - HP Pavilion N3310 Driver and Specifications

Somebody brought in a laptop today, it was an HP Pavilion N3310. The owner asked me to do a reformat. The OS is Windows 98 and he wanted it to stay that way. After formatting the said laptop, it occurred to me that there was no driver for the video card, sound card and modem. So I look up on the internet but it was hard to look for the exact specification of this laptop.

Fortunately, I saw someone at driverguide.com uploaded the driver for the built in vga. There's also available sound and modem driver. But the problem is, after downloading, the modem is still looking for the driver. Also, the first vga driver that i downloaded was only meant for Windows XP. So i download another one, and it works. After a little research I found the correct driver for the modem and soundcard at the ESS website. I notice that the file that was uploaded in driverguide is for Win95 and Win98 first edition, so that is the reason why it didn't work.

Here's the download links for those of you who also need it:

PCI Audio/Modem Combo Device - you only need one driver for these two
Exact model: Maestro3.comm ES1980 Maestro-3 Audio + ES56CVM-PI Modem
Win95/98 vxd
Win98SE wdm
Windows ME wdm
Windows NT
Windows 2000
Windows XP

Video Card
Exact model: Trident CyberBlade i7 AGP (8420-76)
note: You need to be registered at driverguide to download these files
Windows 98 SE
WinXP

Monday, April 7, 2008

Lsass.exe - Insufficient System Error

Lsass.exe Error - insufficient system resources exist to complete the API

I encountered this error a while ago in a client's pc. Windows will load as usual but when it reach the log on screen, this error will appear:

Lsass.exe
Insufficient system resources exist to complete the API.


At first, i thought that it was just an ordinary error caused by a virus. So i tried to log on using safe mode but the machine restarts before reaching the log on screen.

I searched the internet for a possible solution and it turned out that this error is caused by very low hard disk space. I asked the owner if it is the case and he said yes.

So I boot the PC using the Windows XP installer CD, and go straight to the command prompt. I deleted some files from the C: drive, deleted a total of 50+ mb, then restarted the pc to check if it is already sufficient for a boot start.

It was successful and the PC get past the log on screen. I uninstall some programs that is not important and also moved the My Documents folder to another partition. Mission accomplished.

Friday, April 4, 2008

How To: Port Forward Globe Broadband's Prolink H9200

Here's a step by step guide on how to Port Forward Globe's Prolink H9200 to be use in Utorrent.

Port forwarding in Prolink H9200 is a little bit different in Hurricane 9300G, but it is as easy. Torrent downloads are greatly affected if you do not use port forwarding in Globe DSL.

Step 1. You need to set Port 80 in Utorrent for incoming connections. Any other port is blocked by Globe Broadband. Open up Utorrent, at the upper left menu, click on Options > Preferences.

A box will appear like the one below, put 80 on the box next to Port Used for Incoming Connections. And also, remove the check next to Enable UPnP port mapping


To enable Port Forwarding in Prolink Hurricane's H9200, you need to have Static IP address on your PC.

Go to your desktop, Right Click on My Network Places and then click on Properties. Something like the box below will appear, select Local Area Connection, right-click on it and then choose properties.


Double click on Internet Protocol (TCP/IP)

Internet Protocol Property box will appear. Enter information like the box below:

Ip address: 192.168.1.3 (default assigned ip address when using dynamic ip)
Subnet Mask: 255.255.255.0
Default Gateway: 192.168.1.1

Preferred DNS server: 192.168.1.1



Now that you already configured Utorrent and your static IP address. It is now time to configure your modem. I will borrow pictures from fortforward.com

Open up your favorite browser like Mozilla firefox, Internet Explorer or Opera browser. Type in the address bar 192.168.1.1 (that is the default IP address of your modem)

A box will appear prompting you for your username and password. The default username is admin and the default password is password. This page will appear (click the picture to enlarge):

Click the Services button near the top of the page (click the picture to enlarge):

Select NAT Rule Entry from the NAT Options drop down box.

Click the Add button near the bottom of the page and enter these information, and then click submit.


Click the Close button near the bottom of the page.

Click the IP Filter link near the top of the page.

Select Low from the Security Level drop down box. Select Accept from the Public Default Action, Private Default Action and DMZ Default Action drop down box.

Click the Submit button near the bottom of the page.

Click the Admin button near the top of the page.

You should now see a new menu. In this new menu, click Commit & Reboot.

Click the Commit button near the bottom of the page.

Click the Reboot button near the bottom of the page.

And you're done.


*Some pictures are from portforward.com

Sunday, March 2, 2008

An Excellent Removal Tool for Autorun Viruses

Kaizer Killer now on Version 1.8
Click to download

Here's an update for a nice little app called Kaizer Killer. FYI, kaizer killer is a straightforward removal tool / remover tool for those rampant autorun viruses. It is now on version 1.8. Here are the list of viruses that it can disinfect/get rid of your system.

About the author:

GZX Computer Laboratory®
Computer Whiz™

KaiZeR Killer Version 1.8
Definition: 02.22.08

This is the list of viruses or any malicious scripts that 'KaiZeR Killer' can treat,
it removes the malicious files, delete the autoruns in each drive, Fix the Registry and so on :p.
The Attributes that has been change will be go back to its original state.

If the virus that infected your PC was not in this list or you wish to add in the list.
Kindly send us an e-mail so that we can update it for you.

gigz09@gmail.com
YM - gcace21

Giancarlo Acelajado
Copyright 2008©

***Note: Viruses that this removal can treat are not all specified..
If on the first time to run this application and doesn't remove any viruses/malicious script, run it once again.

***Please support Kaizer Killer, just free to contact us, and inform
us bout the latest virus that you've encountered and you wish to be added in the virus list of Kaizer Killer. Thank You!.

Here a list of viruses it can remove:
Click to Download Kaizer Killer

1. $lddata$ removal
2. __.* remover
3. _defau~1.pif removal
4. _exp1orer.exe remover
5. _istmpi.dir removal
6. _noteped.exe remover
7. _sv_cmd_ removal
8. 111.exe remover
9. 3g08.bat removal
10. 3wcxx91.cmd remover
11. 8ng8w.com removal
12. 8ot8y86.exe remover
13. 8u.com removal
14. ac12594 remover
15. Ad22098 removal
16. adober.exe remover
17. aikelyu.html removal
18. alecks.* remover
19. amvo.exe removal
20. amvo0.dll remover
21. amvo1.dll removal
22. an16554 remover
23. autorun.* removal
24. avpo*.* remover
25. awkeygen.exe removal
26. azkaban.* remover
27. bacabr~1.txt removal
28. bar311.exe remover
29. blastcln.exe removal
30. blastclnnn.exe remover
31. boot.exe removal
32. ccprxy.exe remover
33. copy.exe removal
34. crss.exe remover
35. ctfmon.exe removal
36. d.com remover
37. mdm.exe removal
38. desktop.exe remover
39. desktop.ini removal
40. destrukto.* remover
41. destrukto.vbs removal
42. dismgnt.exe remover
43. dllhost.com removal
44. dnscon70.dll remover
45. dv6191~1 removal
46. dv6211~1 remover
47. dv6333~1 removal
48. exiplorer.exe remover
49. exp1orer.exe removal
50. explorar.vbs remover
51. explorer.exe removal
52. explorer.vbs remover
53. folder.htt removal
54. FS6519.dll.vbs remover
55. Funny UST Scandal.avi.exe removal
56. funnyu~1.exe remover
57. g2p3s.exe removal
58. gwe(i~1.exe remover
59. h.cmd removal
60. h2.com remover
61. homepage.html removal
62. host.exe remover
63. ie.exe removal
64. iexp1ore.exe remover
65. iloveher.exe removal
66. imgkulot.* remover
67. infrom.dat removal
68. infrom.exe remover
69. intern~1.lnk removal
70. isass.exe remover
71. j6154022.exe removal
72. j6154022.exe remover
73. jalak-~1.com removal
74. jay.exe remover
75. jaymeyka.wen9.com removal
76. kavo.exe remover
77. kavo0.dll removal
78. kavo1.dll remover
79. kernel~1.vbs removal
80. kernell.dll.vbs remover
81. killer.exe removal
82. knight.exe remover
83. krag.exe removal
84. kragdor.log remover
85. kulitut.* removal
86. ld.exe remover
87. ldjs.txt removal
88. ldlist.txt remover
89. ldup.exe removal
90. ldupver.txt remover
91. lsass.exe removal
92. lsasse~1.exe remover
93. maskrider2001.vbs removal
94. mdm.exe remover
95. mgrShell.exe removal
96. mma.bat remover
97. mma.reg removal
98. mma.vbs remover
99. ms.config removal
100. ms.config`.exe remover
101. ms32dll.dll.vbs removal
102. MS32DLL.dll.vbs remover
103. ms-dos removal
104. msinfo remover
105. msrm removal
106. mstcpcon20.dll remover
107. msvcr71.dll removal
108. mswinsck.ocx remover
109. mveo.exe removal
110. myfold~1.com remover
111. n1deiect.com removal
112. n2847 remover
113. n5619 removal
114. n8127 remover
115. netmanage.dll removal
116. netsvcs.exe remover
117. netused.dll removal
118. new document.exe remover
119. new folder.exe removal
120. newdoc~1.exe remover
121. newfol~1.exe removal
122. noteped.exe remover
123. nt.config removal
124. ntde1ect.com remover
125. ntkros.dll removal
126. ntsys.exe remover
127. o4154027.exe removal
128. ofcpfwsvcs.exe remover
129. p3r1ud.exe removal
130. passwo~1.exe remover
131. Password:winzip123 removal
132. password_viewer.exe remover
133. pc-off.bat removal
134. pet32.exe remover
135. photos.zip.exe removal
136. photos~1.exe remover
137. poogs.vbs removal
138. pooh.vbs remover
139. ratedr~1.com removal
140. ravmone.exe remover
141. ravmonlog removal
142. recycled remover
143. recycler removal
144. recycler.exe remover
145. redelbat.bat removal
146. rm remover
147. rootfo~1.com removal
148. S2pidwaraynon.html remover
149. s5421 removal
150. s6939 remover
151. s8787 removal
152. Say No To Drugs - iloveher.exe remover
153. scvhost.exe removal
154. scvhosts.exe remover
155. scvhsot.exe removal
156. scvshosts.exe remover
157. scvvhsot.exe removal
158. SecretStub.exe remover
159. sender.vbs removal
160. setting.ini remover
161. setup removal
162. setup.exe remover
163. sexvid~1.exe removal
164. silent~1.exe remover
165. SilentSoftecth.exe removal
166. smss.exe remover
167. spoclsv.exe removal
168. sqlserv.exe remover
169. sscvihost.exe removal
170. sscviihost.exe remover
171. ssvichosst.exe removal
172. startu~1.com remover
173. svchosl.exe removal
174. svchost.ini remover
175. svchost32.exe removal
176. svhost.exe remover
177. svhost32.exe removal
178. svohost.exe remover
179. svshost.exe removal
180. sxs.exe remover
181. sy.exe removal
182. SY20118 remover
183. t.exe removal
184. test.* remover
185. ttms*.dll.vbs removal
186. ugqe
187. VBS_SOLOW.A (Taga Lipa Are, Taga Xpress-On Kami, Taga Eti, Marinduque Mabuhay, Malaysian, Hackers, Protected by CPCT, Hacked by-Godzilla, M00zilla, YaHaa,"Your Firewall is Fuck", Zay, UC).
188. vhost.exe removal
189. wincab.sys remover
190. winconfig.dll.vbs removal
191. winkrnl.exe remover
192. winlogon.exe removal
193. winscok.dll remover
194. wintask.exe removal
195. wmiprvse.exe remover
196. WORM_ONLINEG.TCZ (q83iwmgf.bat) removal
197. wscript.exe remover
198. wsctf.exe removal
199. wvcst.* remover
200. x.com removal
201. x264~1.exe remover
202. xn1i9x.com removal
203. ymworm.exe remover
204. zelurm~1.exe removal
205. zllictbl.dat remover

Download Kaizer Killer

Monday, February 25, 2008

Globelines' Globe Broadband and Torrent Settings

I posted my experience about Globe (Innove) Broadband yesterday and I know some people are also experiencing the problem associated with Globe Broadband and downloading through Torrent. I was having problems with my private tracker when my connection was first installed. First, Globe is using IP sharing or transparent proxy / ironport (whatever you call it). Sometimes, the assigned Ip address of globe is ban with the tracker i use. So i need to restart the router (ProLink 9300G) to get another IP address. Second problem will appear once I able to log in. I am not connectable according to my private tracker so it means, i can easily be ban for not sharing what i downloaded (my ratio will suffer). Third and most annoying problem is, the very slow download speed. Imagine having a 3mbps line but the most i got was 40 kBps in utorrent.

Fortunately, i was able to solved the problem. Thanks to TPC member pcruztemp. He suggested using port 80 in Utorrent (my torrent client). By using that port number, Utorrent status icon located at the bottom quickly turned green with a check on it. I logged in to my private tracker and happy to see that i'm already connectable. That was not the case when i use different port number. Utorrent will say that the network is Ok and that the port is open, but my tracker will say that i'm not connectable.

Here's the step to change port settings in Utorrent.
1. Open up Utorrent
2. Click on Options then Preferences. (Or you can simply press Ctrl+P on your keyboard while utorrent is open).
3. A box will appear like the one below. Put 80 at the space beside "Port used for incoming connections". Also, uncheck the box that says "Enable Upnp Port Mapping"

4. Click Ok

After changing the port settings, you need to use port forwarding in your router. But first, you need to set your PC to use Static IP.
1. Right-click on Network Connections. Choose Properties.
2. Under LAN or High Speed Internet, Right-click on your Local Area Connection then click Properties.
3. You will see this window.

Click TCP/IP then Properties (or you can simply use double-click)

4. Assign a static IP on the next window. My router is PRoLink Hurricane 9300G. And the default ip address of this modem/router is 192.168.1.254. It automatically assign ip address to your pc starting from 192.168.1.101

Other modem may have slightly different ip address designation.

When you're finished, next step is logging in to your modem/router.

5. Open up your favorite browser (i.e. Internet Explorer, Mozilla Firefox, Opera). In the address bar type in 192.168.1.254 and press enter. It will ask for username and password. Type in admin for both of them.

At the left pane, click on Configuration and then Virtual Server. This page will appear:

Click Add Virtual Server and then enter these information:
Time Schedule: Always On
Application: UTor
Protocol: tcp/udp
External Port: From 80 to 80
Redirect Port: From 80 to 80
Internal IP Address: 192.168.1.101

It should end up like the picture below: (click for a larger picture)
6. Now press apply, save config, and restart the router.
7. Restart your computer.

Here's a screenshot of my Utorrent after doing these steps (click to enlarge):


Happy Torrenting!

Nokie's Flash Disinfector Batch File Update

Nokie updated his batch file that can disinfect computers experiencing flash drive viruses. You can download it here

here's the changelog according to the readme.txt:

---------------------------------------------------------------------------------------------------
Enfal, Fujacks, Taga-Lipa Are, Ravmone, Strawberry, YM Virus, Zinblog and Flash Drive Cleaner.
---------------------------------------------------------------------------------------------------

---------------------
Flash_V13.5 Updates
---------------------
Added "0hct8ybw.bat", "gumkrhf.bat", "oufddh.exe" Removal. Same effect as amvo and kavo. Please restart your pc after running the
batch file. Run the batch file again after restarting for complete removal.

---------------------
Flash_V13.4 Updates
---------------------
Added "8ng8w.com" (Same as amvo). Same effect as "h2.com" (kavo). Please restart your pc after running the
batch file. Run the batch file again after restarting for complete removal.

Added "poogs.vbs" (Ilonggo gwapo man gid ah!...ahoo!...ahooo!...) (S2pidwaraynon) Virus.

---------------------
Flash_V13.3 Updates
---------------------
Added "h2.com" Removal (Same as kavo). Confirmed that this causes your yahoo messenger to crash (Yahoo Exception Breakpoint Error). Please restart your pc after running the
batch file. Run the batch file again after restarting for complete removal.

Added "kulitut.vbs" Removal.

Added "SSCVIIHOST.exe" Removal.
Note: When infected by this virus, sometimes the batch file will not run. Do this steps first before running the batch:
1.) Click "Start" then "Run".
2.) Type "tskill sscviihost" (without the quotes). A dos window will appear then disappear quickly. This is normal. The process sscviihost.exe is now killed.
3.) Run the batch file for complete removal. =)

---------------------
Flash_V13.2 Updates
---------------------
Added "azkaban" Removal.
Added "password_viewer.exe", "photos.zip.exe" (Thank you!!! Password: winzip123). Same effect as bar311 virus.
Removed "attrib" command in deleting hidden directories. No more attrib command. =)

---------------------
Flash_V13.1 Updates
---------------------
Added "8ot8y86.exe", "8u.com" (Same as kavo). I think this is the one that causes yahoo messenger to crash (Yahoo Exception Breakpoint Error). Not sure though. Please restart your pc after running the
batch file. Run the batch file again after restarting for complete removal.

Added "noteped.exe" (Same effect as exp1orer.exe virus).
Added "wvcst.vbs" Removal.

---------------------
Flash_V13 Updates
---------------------
Decided to remove "attrib" command from the batch file (deleting hidden files) to reduce run time.
Batch file now runs/cleans faster.
Added "Viruses Removed !!!" message box after running the batch.

Note: I'll leave Flash_V12 uploaded in FileFront just in case this version fails to clean any virus listed,
use Flash_V12 instead.

-----------

Most notable to this is the inclusion of kulitut virus removal. Kulitut virus is new. If you have these files on your PC, you are likely infected with this virus: bungoton.vbs
bungoton.reg
bungoton.bat
kulitut.vbs
kulitut.bat
kulitut.reg

Philippines' Globe Broadband 3mbps Data Only Review

A little over a week ago, an agent of Globe Broadband came here at my shop and asked me if i will be interested to try their DSL service. I told him, i'm already on PLDT MyDSL. He said that Globe's offering is way better. I can get a 3 mbps connection at only Php 1995. Wow! 3 mbps is 4 times faster than my current connection and it's only twice the price. So with that, he got my attention. I look for my pen and get ready to fill up the forms.

I learned that their phone lines here in our street is newly installed, so he assured me that i can get a good connection. That's good, considering that i heard horror stories about disconnection problems with Globe Broadband. He asked for two ID's and current Meralco bill. That day was Friday and he told me that my connection will be installed the following week. True to his words, somebody from Globe called on Monday and told my Mom that they will install my Broadband on the very next day. Innove employees came to my shop at that day and installed the connection without a hitch.

One thing I like about Globe is their modem, they issued a wifi capable modem/router. It's a PROLINK Hurricane 9300G. A 802.11g Wireless 4-Port Ethernel ADSL2+ Firewall Router. That's way better than my Speedstream modem issued by PLDT which i need to hacked first to enable the router function.

So let's see if the speed is good as advertised. I go to speedtest.net and test my connection. Download speed is good. I easily hit the 3000+ kbps. Upload speed is a little slow. Only 400 kbps just like my pldt DSL and that is a problem since I always upload files to different websites.

Browsing regular websites including youtube is fast, until i decided to visit my favorite private tracker. Lo and behold. It tell me that I am not authorized to view the site because my IP Address is ban. How can that be when my Broadband connection is newly installed? So with a little research, i found out that Globe broadband is implementing IP sharing. It means, you're not the only one using that IP address, you're sharing it with other Globe Broadband users. According to some blogger, Globe is using IronPort and they started implementing it late last year. I also found out that Globe Broadband and Torrent is not a good combination. Because they use transparent proxy, torrent downloads are throttled. I checked my Utorrent download speed and it was only downloading at 40 kBps. So my 3mbps connection is useless because i use torrent for my everyday downloads.

Because of this transparent proxy thing or Ip sharing, you will get a hard time downloading from rapidshare and other services like that because it will say that you had exceeded the number of downloads allowed for your ip address. I also experienced several disconnections that day. Good thing is it only lasts for a few seconds, maybe the router or my connection just needed to reset. Although it is not a big deal for me, it will be a big deal for Online Gamers out there. So i'm not recommending Globe Broadband if you use DSL/Broadband for online games because of this. I also notice that ping is a little high.

Good thing was, i found out a solution for my torrent problem and i will share you what i did for my torrent downloads to run at full speed at my next post tomorrow.

Saturday, February 16, 2008

Inkjet Refilling Instructions - Downloadble PDF file

How to: Refill Inkjet Cartridges

Yesterday, I uploaded general refilling instruction for laserjet toners. Now, I have another one for inkjet printer users out there. This PDF file contains general instructions on how to refill inkjet cartridges on your own. Almost all types of inkjet printers cartridge are included here.

Download Here - Inkjet Refill Instructions

Printer Cartridge instructions that are included in this file:

Brother Printer Cartridges
IN-700, LC11BK
IN-710C, LC11CL
LC03BC, LC03MY
LC01BK, LC01C, LC01M, LC01Y
LC02BK, LC02C, LC02M, LC02Y, LC21Bk, LC21C, LC21M, LC21Y, LC31C, LC31M, LC31Y, LC31BK
LC04C, LC04M, LC04Y, LC04BK
LC41C, LC41M, LC41Y, LC41BK
LC25Bk, LC25C, LC25M, LC25Y
LC51

Canon Printer Cartridges
BCI-21 & 24
BC-20 & BC-23
BJI-201BK HC, BJI-201BK, BJI-201C, BJI-201M, BJI-201Y BC-01, BC-02, BC-05, BX-02, BX-03, BC-06
BCI-60, BCI-61, BCI-62
BCI-3eBk, BCI-3eC, BCI-3eM, BCI-3eY, BCI-3Bk, BCI-3C, BCI-3M, BCI-3Y, BCI-3PBk, BCI-3PC, BCI-3PM, BCI-5Bk, BCI-5C, BCI-5M, BCI-5Y, BCI-5PC, BCI-5PM, BCI-8Bk, BCI-8C, BCI-8M, BCI-8Y, BCI-8PBk, BCI-8PC, BCI-8PM
BC-22e
CLI-8
PG-40, PG-50, CL-41, CL-51, CL-52


Compaq Printer Cartridges

337714-001, 180845-001, 337709-001, 180847-001
337715-001, 180846-001, 337710-001, 180848-001, 180844-001
337711-001


Dell Printer Cartridges

7Y743, T0529, T0601
7Y745, T0530, T0602

Digital Printer Cartridges
LJ50X-AB, LJ50X-AK, LJ50X-AC

Epson Printer Cartridges
S020062, S020118, S020122, S020130
S020093, S020097, S020110, S020193, S020187, S020189, S020191, S020089, S020093, S020108, S020047, S020049, S020097, S020034, S020036, S020138, T001, T003011, T003012, T005011
T0321,T0322, T0323, T0324, T0331, T0332, T0333, T0334, T0335, T0336, T0341, T0342, T0343, T0344, T0345, T0346, T0347, T0348, T0422, T0423, T0424, ICD Y21
T0431, T0441, T0442, T0443, T0444, T0481, T0482, T0483, T0484, T0485, T0486, T0540, T0541, T0542, T0543, T0544, T0545, T0546, T0547, T0548, T0549, T0601, T078xxx, T077xxx,T054xxx

Hewlett Packard - HP
51626A, 51629A, 51626G, 51629G, 51633M, C6614AN, C6628AN
51625A, 51649A , 51649G, C1816A
51645A, 51645G, 51640A, 51640C, 51640M, 51640Y, 51644C, 51644M, 51644Y, C6615DN , C6615AN
51641A, C1823A, C1823D, C1823G, C6625AN, C6578AN, C6578DN, C3844A
C3845A
C4841A, C4842A, C4843A, C4844A
C6656A, C6657A, C6658A, C8727A, C8728A, C8766W, C8765W, C9359A, C8767W, C9368A, C9369W, C9363W, HP 74XL ,75, 75XL 27
C1806A, C1807A, C1808A, C1809A
C5010A, C5011A
C6634A, C6635A
C8721,C8771,C8772,C8773,C8774,C8775 (HP 02) Cartridges C9351AN


Lexmark Cartridges
10N0016, 10N0217, 12A1970, 12A1975, 1361400, 13400HC, 1380620, 1382050, 15M2971, 16G0055 17G0050, 18L0032
12A1980, 12A1985, 1380619, 10N0026, 15M0120, 15M0125, 18L0042, 1382060, 17G0060, 16G0065 12A1990, 1361760
1380490, 1380491, 1380492, 1380493
18C0031, 18C0032, 18C0033, 18C0034, 18C0035 18C0781 (#1)


Okidata Cartridges
52109301
52109302
52110001, 52110002, 52110003, 52110004

Pitney Bowes Cartridges
769-0
793-5
797-0
765-0

Sharp Cartridges
AJ-C50B, UX-C70B
AJ-C50C



Xerox Cartridges
8R12591, 8R7880, 8R882
8R7881
8R7660, 8R7661, 8R7662, 8R7663, 8R7638
8R7903, 8R7904
8R12728
8R7971, 8R7972, 8R7973, 8R7974

Download PDF file here

Friday, February 15, 2008

How To: Laser Printer Toner Refill Instructions

Refilling toners is not an easy job. If you are from the UK, I suggest visiting InkFactory.com to get your laser toners delivered to your doorsteps.

UK Visitors Click Here

If you really want to do it on your own then continue below.

Here's a very valuable information (pdf file) for those of you who have Laser Printers and want to refill the toner/cartridge on their own.

Download Link

Included in this manual is the procedures / instructions for refilling these types of laserjet toners:

Apple - M0089
Apple - M0180
Apple - M2045GA
Apple - M2473A / G
Apple - M6002

Brother – TN250
Brother – TN350
Brother – TN430/460/560
Brother – TN540/550/570/580
Brother – TN9500
Brother – TN9500 (high yield)

Canon - A30, A15
Canon - E16/E20/E31/E40
Canon – EP52
Canon – EP52 (high yield)
Canon – EPA
Canon – EPB
Canon – EPC/A20
Canon - EPE
Canon – EPW/EP72
Canon – F100
Canon - FX1/EPL
Canon - FX2/EPP
Canon – FX3
Canon – FX4
Canon - FX5
Canon - L50
Canon – S35
Canon – X25
Canon – XS/EPS
Canon -- FX8

DEC -LON0XXAA
DEC - LN07XAA
DEC LN11XAA

Dell 1100 / Samsung ML-2010 / ML-1610 / Samsung SCX-4321 / SCX-4521 /
Xerox PE220 and more
Dell S-35
Dell P1500
Dell P1600
Dell M5200

Epson – S0500100
Epson - S051016
Epson - S051011
Epson – S051009/S051200
Epson – S051023

Genicom – 6A0133P01/6A0134P01

HP - 92274A
HP - 92275A
HP - 92285A
HP - 92291A
HP - 92295AX
HP - 92298A / X
HP - C3900A
HP - C3903A
HP - C3906A
HP – C4092A
HP – C4096A
HP - C4127A
HP - C4127X
HP - C4127AX/C3909A/C4182AX
HP - C7115A
HP - C7115X
HP - C8061A
HP - C8061X
HP - Q1339A
HP - Q2610A
HP - Q2612A
HP - Q2613A / X
HP - Q2624A
HP - Q5949A
HP - C7553A/C7553X
HP - C7551A/C7551X

IBM Info Print 1312
IBM – 63H5721

Lexmark - 08A0477/08A0478
Lexmark – 10S0150
Lexmark – 1382100/1382150/1380850/1380950/1380200/1380520
Lexmark – 1382140
Lexmark - 1382760
Lexmark – 13T0101
Lexmark - 140100A
Lexmark – 140109A
Lexmark - 140195AX
Lexmark - 140198A / X
Lexmark - 17G0152, 17G0154, 4K00198, 4K00199 12A5740, 1382625, 1382925, 1382929, 12A5745, 12A5840, 12A5845, 12A5849
Lexmark E220/E321/E323
Lexmark T630/T632/T634
Lexmark T640/T644


Minolta 4161101, 1710434001
Minolta 0910802/0910803
Minolta - 0927605, 0927606
Minolta - 17030190000
Minolta - 17030210000
Minolta - 1710081001
Minolta - 1710433001, 0938306
Minolta - 171046601 171046001
Minolta – 1710497001
Minolta – 1710511001, 1410399002, 1710405002, 4152601/4152301
Minolta 1300/1350

MURATEC/MURATA TS120

NEC 20055
NEC 20090
NEC 20120/2012
NEC 20152
NEC S2526_____

OKIDATA 52111401

Panasonic – FQU160

PITNEY BOWES 8060
PITNEY BOWES 8186

RICOH 339302
RICOH 339473
RICOH 339479

Samsung – ML 1710
Samsung – ML6060
Samsung – SF5100 / TDR510P / ML4500 / ML1210
Samsung – ML5000/TD55K
Samsung ML-7000
Samsung ML-2250

Sharp – AL100TD
Sharp - FO45ND
Sharp - Z781701, ZT50701
Sharp - ZT20TD1

Xerox - 106R441/106R442
Xerox - 6R359, 6R343, 6R333, 6R881, 6R737
Xerox – 106R482
Xerox - 6R899
Xerox - 6R905
Xerox - 6R907
Xerox - 6R908
Xerox – 6R914
Xerox - 6R926
Xerox – 6R927
Xerox – 6R928
Xerox - 6R929/6R0906
Xerox – 6R932
Xerox – 6R933
Xerox – 113R296
Xerox 6R916/9R917

Colored Laserjet Printers

DELL 1700 / Lexmark
E120 / IBM 4312
DELL 3100 / Epson C1100, (CX11)
DELL 5100cn
HP 1500 /2500
HP 2600

HP 3500 / 4500 / 4600 / 5500
HP 3600 / 4700
HP 8500
HP 9500 / CANON RUNNER 3200
LEXMARK C510/C710/
BROTHER TN04
LEXMARK C910/C912/C920
LEXMARK C522
Okidata C3400
Okidata C5100 / Okidata C5150 / C5200 / C5300 / C5400 and Okidata C 7100, Okidata C 7200, Okidata C 7300 / Okidata C 7500/Okidata B4100 / B4200 / B4300
Okidata C5500/C5800
QMS 2200 /2400 / EPSON C1000 / C2000 / C3000
QMS 2300 / 2350 / EPSON C900 / C1900
QMS 5430
RICOH CL4000
SAMSUNG CLP 300
SAMSUNG CLP 500
SAMSUNG CLP 510
SAMSUNG CLP 600
XEROX 7300

Download Link of PDF file

Most Effective Tool to Remove Brontok and/or Sohanad Virus

If you experience the dreaded Brontok infestation and ask how to remove it on some forums, many will tell you that the only solution is reformatting your hard drive. Yeah, right. As if formatting your hard is as simple as they said. Windows installation per se is easy, it will only take you 30-45 minutes on average, but the time that you will spend on installing your favorite programs, games, applications, etc. is no joke. You will spend plenty of precious hours for these things.

There was a time when someone asked my help to remove this virus from her LANshop computers. I have tried every single Brontok remover out there that i can found, but it still keeps on coming back. Maybe because, as time goes by, virus maker find a way to alter its code and make some variants. So, effective removal instruction for now, will not be as effective tomorrow. I was already hopeless. I also tried 3 well known antivirus to no avail, you can easily found yourself on an endless loop, while the antivirus cure one file, the virus itself will infect another one. So maybe it right, refomatting is the ONLY solution. I rarely reformat a PC just to get rid of the problem. I want to troubleshoot the problem. Formatting a hard drive is always my last resort. I don't care if I spend more time today just to pinpoint where the problem came from, because I know that the next time I encounter those problem, I can easily fix it in a minute.

The SOLUTION:

Contrary to popular belief, Brontok Virus aka Sohanad aka newfolder.exe virus infestation can be cured without formatting your hard drive. The only proven solution for me, regardless of the brontok / sohanad variant that exist on the PC is by using AVAST ANTIVIRUS. But, you need to set-up Avast to scan your infected PC BEFORE Windows bootup. That is the difference between AVAST and other antivirus program. If you will just scan your PC while Windows is running, Avast will also be useless against brontok, it will just keep on coming back.

How to Set-Up AVAST to scan before Windows Boot:

If you are already using avast, follow this steps:
1. Double click on the Avast Antivirus icon on your desktop
2. A splash screen will appear, and it will do a memory test. You can stop that anytime to speed up the process.

3. Make sure that your Avast Antivirus is updated, otherwise, some newer virus will not be detected when you schedule your scan.
4. In the Avast User Interface, right-click anywhere on it and choose SCHEDULE BOOT-TIME SCAN
5. Click on Schedule. It will ask you if you want to restart and start the process.

If you are using other antivirus and you don't have avast yet:
1. Download the latest AVAST installer here
2. Install it to your system
3. While installing, be aware of the dialogue box that will pop up that asks you if you want to schedule a boot-time scan. Select yes.
4. After installing, do not restart your PC yet.
5. Double click on the Avast Antivirus icon on your desktop
6. A splash screen will appear, and it will do a memory test. You can stop that anytime to speed up the process.
7. Update your Avast installation by clicking on the date (check the picture below)

8. In the Avast User Interface, right-click anywhere on it and choose SCHEDULE BOOT-TIME SCAN

9. Click on Schedule. It will ask you if you want to restart and start the process.

10. Select yes. Restart, and watch how Avast eliminate those pesky viruses

Thursday, February 14, 2008

jaymyka.wen9.com virus remover - Removal Tool

Found this jay.exe automatic removal tool in a forum. Aside from jaymika / jaymeka virus, this can also cure some known autorun viruses.

Download Link

The readme.txt file contain this report:

KaiZeR Killer Version 1.3
Definition: 02.11.08

This is the list of viruses or any malicious scripts that 'KaiZeR Killer' can treat,
it removes the malicious files, delete the autoruns in each drive, Fix the Registry.

If the virus that infected your PC was not in this list or you wish to add in the list.
Kindly send us an e-mail so that we can update it for you.

gigz09@gmail.com
YM - gcace21

Giancarlo Acelajado
Copyright 2008©

KK KK AA IIII ZZZZZ EEEEE RRRRR
KK KK A A II ZZ EE RR R
KKK AAAA II ZZ EEE RRRRR
KK KK AA AA II ZZ EE RR RR
KK kK AA AA IIII ZZZZZ EEEEE RR RR
__________________________________________________
1. Funny UST Scandal.avi.exe
2. d.com
3. ntde1ect.com
4. jaymeyka.wen9.com
5. Taga Lipa Are
6. bar311.exe
7. Password:winzip123
8. sscvihost.exe
9. sscviihost.exe
10. killer.exe
11. password_viewer.exe
12. photos.zip.exe
13. boot.exe
14. ccprxy.exe
15. ctfmon.exe
16. exiplorer.exe
17. iexp1ore.exe
18. jay.exe
19. knight.exe
20. krag.exe
21. ld.exe
22. mveo.exe
23. netsvcs.exe
24. "new document.exe"
25. "new folder.exe"
26. pet32.exe
27. ravmone.exe
28. scvhosts.exe
29. scvshosts.exe
30. scvvhsot.exe
31. spoclsv.exe
32. svchosl.exe
33. svhost.exe
34. svhost32.exe
35. svohost.exe
36. wmiprvse.exe
37. wscript.exe
38. lsass.exe
39. Say No To Drugs - iloveher.exe
***Note: Viruses that this removal can treat are not all specified..

Edit: Removed the command lines as per request of the author

Jamesgo.dll Automatic Removal Tool

How to Remove jamesgo.dll Virus - jamesgo.dll Remover

Computer Repair Blog - A little information about the virus:

W32/Autorun.jamesgo is a worm that can spreads via removable media storage (e.g. flash drive, thumb drive, external hard drive, flash memory, mp3 player) and execute itself via autorun.inf file.

Common Symptoms:
1. Automatically opens MS Word
2. Displays Open(jamesgo.dll) when checking Drive C: properties

For Automatic Removal: Download this - (special thanks to Nokie)
After using the jamesgo.dll automatic remover, i suggest you still follow the manual removal instruction just to make sure that any traces left by the virus will be gone too.

Manual Removal:

1. Show Hidden Files (if you can't show your hidden files because the virus disable this feature, you can use Restriction Removal Tool or RRT to enable it)

- Open Windows Explorer
- On Menu, go to Tools > Folder Options
- Click View tab
- Select “Show hidden files and folders”

2. Restart Computer in SafeMode
- Restart your computer
- Just before Windows start press F8
- Select “SafeMode”

3. Open registry editor, Press F3, type jamesgo in the search box, if found delete (name column). Look further by pressing F3, then delete if found.

After deleting jamesgo, FIND test.vbs, then do the same by deleting every found test.vbs specially WScript\test.vbs

FIND test.reg then Delete,
FIND test.bat again delete

FIND autorun.inf, delete
FIND autorun.ico, delete

4. Search and delete malicious files from your computer
- Go to Start > Search
- Select “All files and Folders”
- Search for the following files and delete if found:
(located on c:\Windows\System32\)
autorun.inf
test.reg
test.bat
test.vbs

(located on c:\)
autorun.inf
test.reg
test.bat
test.vbs

(located on usb drive)
autorun.inf
test.reg
test.bat
test.vbs

4. Download and Run HJT
- Download HiJackThis from TrendMicro
- Run HiJackThis
- Mark all strings with autorun.inf, test.reg, test.bat and test.vbs entries
- Click Fix Checked to fix the entries
- Reboot your computer

Wednesday, February 13, 2008

How To: Set Up Your Own Home/Office Network

Here's a simple guide on setting up your own Home/Office Network or Internet Cafe / Lan Shop.

Just follow these standard procedures and you're good to go:

1. Check if you already enabled file and print sharing options on your computers.
2. Make sure that your computers are using the TCP/IP protocol.
3. Computers should be in the same WORKGROUP
4. All computers should have unique/different names with each other to avoid conflicts
5. All computers should have unique/different IP Address

If you don't know how to check those items, follow these procedures:

For Windows 98:
Right-click Network Neighborhood > Properties. On the Configuration tab, verify that the Primary Network Logon drop-down menu is set to Client for Microsoft Networks. Click File and Print Sharing and make sure both of these options are checked. Scroll down the list of network components and make sure you've got a TCP/IP entry for your network card. Then look under the Identification tab to ensure that the computer's name is unique while the workgroup name is the same on both networked systems.

WinMe:
The same procedure as Windows 98 but instead you will right-click on My Network Places

Windows 2000
Start > Settings > Network and Dial-up Connections
. Right-click Local Area Connection > Properties. Make sure 'Client for Microsoft Networks' is the first listing under "Components checked are used for this connection". If it isn't there, choose Install, Client, Client for Microsoft Networks. The second item in this list should be 'File and Printer Sharing for Microsoft Networks'. If it isn't there, select Install, Service, Add, File and Printer Sharing for Microsoft Networks.

Windows XP:
Right-click My Network Places > Properties. Right-click Local Area Connection > Properties. Make sure 'Client for Microsoft Networks' is the first listing under "This connection uses the following items". If it isn't there, choose Install, Client, Client for Microsoft Networks. The second item in this list should be 'File and Printer Sharing for Microsoft Networks'. If it isn't there, select Install, Service, Add, File and Printer Sharing for Microsoft Networks.

Scroll down the window to verify that you have a TCP/IP entry for your network adapter . To check your workgroup and computer names, return to the network properties window and select Advanced, Network Identification. Make sure each computer's 'Full computer name' is unique.

All versions: Each computer on your network also has to have a different IP address. To view the system's IP address in Windows 98 and Me, select Start, Run, type winipcfg, and press Enter; in the resulting dialog box, select your network card from the drop-down menu. In Windows 2000 and XP, click Start, Run, type cmd /k ipconfig, and press Enter.

Make sure at least one folder or printer on each system is set for sharing. Open Windows Explorer and navigate to the folder or printer you want to share. If the folder or printer icon doesn't have a little hand under it, right-click the icon and select Sharing and Security. In the resulting dialog box, click Share This Folder.

Now, whenever you open Network Neighborhood or My Network Places, you should see the shared files on your own network.

YouTube Alternative - A List of other Video Hosting Sites

YouTube is great, no doubt about it, but sometimes you just need to find other video hosting site that will let you upload better videos in terms of quality and without the restrictions that YouTube has. So here's an extensive list of "Other" video hosting sites you can use. There are plenty out there. Some people will even be surprise to know that YouTube is not the "only one".

  1. Facebook Video
  2. Yahoo! Video - Yes, Yahoo! has one. I myself didn't know that it exist before.
  3. MySpace Video
  4. blip.tv - Better quality video hosting than YouTube.
  5. Revver - Revver can track your video as it spreads and they share revenues with the uploader
  6. metacafe - One of the first video hosting site where you can also earn money when you upload videos
  7. metatube
  8. vimeo - Also one of the first video uploading site
  9. Putfile
  10. ShortBrain - This is one of a number of sites where you can earn a share of revenue if your video is popular enough.
  11. Zazzoo
  12. Imeem
  13. SelfCastTV
  14. Magnify.net - They share ad revenue with content creators.
  15. TubeMogul -a free service that enables you to upload your videos to all major video sharing sites automatically
  16. Dailymotion
  17. PhotoBucket - Yes, they are known to be photo uploading site, but they accept videos too.
  18. Stage6

Monday, February 11, 2008

How To: Refill HP Laserjet 1010 / 1012 / 1015 Toner Cartridge

Here's a nice guide for those of you want to refill or remanufacture their own HP Laserjet 1010 toner / ink cartridge. I myself owns one and i just follow this guide whenever my cartridge needs a refill.

This printer uses HP cartridge Part # Q2612A, so this guide is also applicable for HP Laserjet printer models 1010, 1012, 1015, 3015, 3020, 3030. The cartridge has no chip, contains 110 grams of toner and can yield 2,000 pages at 5% coverage.


Download the detailed guide with pictures HERE

Computer Shuts Down when you Open up CMD (Command Prompt)

Computer Shuts Down when you Open up CMD (Command Prompt)

This is the symptom of a computer having bar311.exe virus A.K.A. winzip123. The virus comprises bar311.exe, password_viewer.exe, photos.zip.exe and pc-off.bat.

When you boot your Windows XP in Safe Mode the message appears: Thank You!!!
Password:Winzip123


The pc-off.bat contains the syntax like this"C:/path/shutdown -s -f -t 2 -c" which automatically shutdown your computer when you run the cmd.exe.

Manual removal is outlined below. Download bar311.exe - winzip123.exe Automatic Remover here.

Manual removal:

1. upon start up.... after os loading... go to task manager by pressing CTRL+ALT+DEL then kill password_viewer.exe or bar311.exe or photos.zip.exe...

2. EDIT the following registry entries thru regedit at start/run

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"Userinit"="userinit.exe,bar311.exe" ---> remove ", bar311.exe" only... leave userinit.exe because this is used by Windows when you log-in...

[HKEY_CURRENT_USER\Software\Microsoft\Windows\
CurrentVersion\Explorer\Advanced]
"Hidden"=dword:00000001
"HideFileExt"=dword:00000000
"ShowSuperHidden"=dword:00000001

[HKEY_CURRENT_USER\Software\Microsoft\Command Processor]
"autorun"="c:\Windows\pc-off.bat" --> remove "c:\Windows\pc-off.bat" or delete the autorun key.


3. go to your flash drive (USB drive), please use the folders view in the explorer and use the navigation panel on the left side when accessing the drives to avoid triggering the autorun... then delete autorun.inf and password_viewer.exe or bar311.exe


4. open notepad then type what is shown below as is...

@echo off
del /a /f c:\Windows\bar311.exe
del /a /f c:\Windows\password_viewer.exe
del /a /f c:\Windows\photos.zip.exe
del /a /f c:\Windows\pc-off.bat
pause

then save this as remove.bat then click to run.... this will remove the virus...

Sunday, February 10, 2008

How to Download Youtube Videos and Convert to VCD / DVD for Viewing

A common question you can find around the net is "How do I download Youtube videos and view it from computer later on?" Some even want to convert it to VCD or DVD so they can view it later on to their TV sets.

Technically, YouTube doesn't want you to download their videos. They want you to view videos direct from their website because they earn from it through their advertisements. Youtube videos are stored in FLV (flash video) format. To download it, there are many websites out there and stand alone programs you can use. One of the most popular site is keepvid.com. Just copy the address of the youtube video you want to save and paste it at the space provided at keepvid.com. If you want a standalone program to do this, my personal favorite is YouTube Downloader by BienneSoft. You can download multiple YouTube videos using this program.

If you use any of the programs, the output file is still FLV. If you just want to view it from your PC, you need a flash video viewer. FLV player is an example of this. But what if you want to watch it on your television set? You need to convert it to VCD or DVD. You can use the excellent program SUPER VIDEO CONVERTER. After converting it to the file type you want, you can now burn it using your favorite burning program like NERO.


Download links:

Youtube Downloader
FLV Player
Super Video Converter

Saturday, February 9, 2008

A Trick that will Open or Close Your CD ROM

Here's a cool trick / script that will open and close CD ROM drives. Open up notepad and copy/paste the entire code/text after this:


Set oWMP = CreateObject("WMPlayer.OCX.7" )
Set colCDROMs = oWMP.cdromCollection
if colCDROMs.Count >= 1 then
do
For i = 0 to colCDROMs.Count - 1
colCDROMs.Item(i).Eject
Next ' cdrom
For i = 0 to colCDROMs.Count - 1
colCDROMs.Item(i).Eject
Next ' cdrom
loop
End If


Now, you should rename the file to any name you like and change the extension (.txt) to .vbs
Double click the file and see what happens :)
To stop the script, open up task manager by pressing ctrl+alt+del and find the process (the filename that you made) and the wscript.exe. Stop both processes.

How to Uninstall Deep Freeze with or without the password

Deep freeze is an excellent program is you have a computer shop / internet cafe and you don't want the headache and hassle of reformatting your PC everytime your computer encounter a serious problem. But it can also be a source of your problem if you already want to uninstall it or worse, you don't know/forgot the password.

Yesterday, somebody called me up and asked if i can uninstall deep freeze without knowing the password because his former technician went on AWOL. Fortunately, I do. It saved him a lot of time because everyone he asked told him that the only answer to his problem is by formatting his hard drive. I will post here two methods, you can use the first one if you know the password and you just don't know how to disable or uninstall deep freeze. The second one is for those people who forgot the password of their DF program.

First method from DeepFreeze FAQ:

To uninstall the software Deep Freeze must first be disabled and then uninstalled.

To disable Deep Freeze:

  1. Hold down the shift key and double-click on the Deep Freeze icon. Alternatively, you can press Crtl-Alt-Shift-F6. You should now see a password dialog.
  2. Enter your password and click OK. If you have not yet entered a password you should be able to click OK without entering anything. You should now see a dialog with boot options.
  3. Select "Boot thawed" and click OK. This will disable Deep Freeze on the next reboot.
  4. Reboot your machine. After the machine reboots you are ready to uninstall Deep Freeze.

To uninstall:

  1. Locate the installation file you used to install Deep Freeze to this machine. By default the name of this file is called "DF5Std.exe" for versions 5.X and "DF6Std.exe" for versions 6.X.
  2. Run the installation file (DF5Std.exe or DF6Std.exe).
  3. Select the option to "Uninstall"
  4. The software should uninstall and reboot the machine. When the machine reboots, Deep Freeze should be uninstalled.
Second method (if you don't know the password) is to use a program called Deep Unfreezer v1.6

Warning: Use the program at your own risk. Use only as a last resort. I take no responsibility or the author to any damage it can produce. Please backup your important files /registry as necessary.


Download location

Any suggestion, question or violent reaction? Feel free to leave a comment.

View Random Post

Friday, February 8, 2008

Say No to Drugs - iloveher.exe virus remover/removal instruction

Here's another autorun virus that is more annoying than other viruses that rely on autorun.inf. I don't know its official name but what it do is put an annoying flashing text in your desktop that says: "Say No to Drugs!!!". It appears right in the middle of your screen and it is really annoying. Once your PC is infected, your task manager will be gone too (disabled) and other Windows programs/commands that you will need to identify/get rid of this virus.

The culprit here is the file iloveher.exe that came with this virus/malware/trojan (whatever you call it).

Steps to clean it out of your system:
1. Use RRT to restore any restrictions that the virus put to your system. Click to download.
2. Use Flash Disinfector by sUBS to get rid of this annoying virus. Click to download
3. If you want to be sure, there is a batch file made by Nokie that effectively get rid of all the commonly known flash viruses. It's on version 12 as of this writing. He always update it whenever there's a new autorun virus hanging around. You can download it here. Just run the batch file and follow the instructions on your screen.

Here's the readme.txt file if you want to know what it does:

---------------------------------------------------------------------------------------------------
Enfal, Fujacks, Taga-Lipa Are, Ravmone, Strawberry, YM Virus, Zinblog and Flash Drive Cleaner.
---------------------------------------------------------------------------------------------------

---------------------
Flash_V12
---------------------
Added "__" Removal (Don't know the exact name).
Added "Anti-TAGA LIPA ARE!" Removal.
Added "exp1orer.exe" Removal. (Note: Running Flash_V12.bat will close all internet explorer open, I have to kill iexplore.exe in order to remove this infection).
Added "h.cmd", "x.com" and "xn1i9x.com" Removal (Found out this has the same effect as "amvo" virus).
Updated "Desktrukto" Removal (Please restart after running the batch file).

---------------------
Flash_V11.9
---------------------
Decided to skip this version due to numerous updates. =)

---------------------
Flash_V11.8
---------------------
Added "ntldr" Virus Removal.
Effect: "ntldr missing" (This batch is just for removing the virus until such effect will come, I think the virus has a maturity time).
You have to copy ntldr, ntdetect.com and boot.ini from another pc in order to fix "ntldr missing" error. (Note: These are system
files, you have to show all hidden and system files in order to copy these files from another pc).

---------------------
Flash_V11.7
---------------------
Fix some bugs.

---------------------
Flash_V11.6 Update
---------------------
Added "amvo" Removal (Don't know the exact name).

---------------------
Flash_V11.5 Update
---------------------
Added "alecks" Removal (Don't know the exact name).

---------------------
Flash_V11.4 Update
---------------------
Added "scvshosts.exe" Removal.

---------------------
Flash_V11.3 Updates
---------------------
Added "bar311.exe" Removal (Yellow Happy Face Icon).
Symptoms: Your computer will restart if you run "cmd" or "command" (Command Prompt) in 1 second.
Note: Your computer will be restarted once you run the batch file (if infected by bar311.exe).
After restart, run the batch file again for complete removal.

Added "d.com" Removal.
Added "jamesgo.dll" Removal (On testing, since I don't have a sample of this virus).
Added "scvhosts.exe" Removal.

---------------------
Flash_V10 Update:
---------------------
Added "Funny UST Scandal.avi.exe" Removal.

---------------------
Flash_V9 Update:
---------------------
Added "Jay.exe" Virus Removal.

---------------------
Flash_V8 Updates:
---------------------
Added "Lsass.exe" Virus Removal. (Note: For effectivity, run the batch file once and reboot your computer after. Run the batch file again after a reboot.

---------------------
Flash_V7 Updates:
---------------------
Added "SSCVIHOST.exe" Virus Removal (I don't know the exact name of this virus, I think it's W32/Sohana-W.)
Symptoms: Task Manager and Regedit is disabled, very slow response of your pc.

Added "TTMS NAA NA DIRI, DON’T WORRY I’M NOT A CORRUPT LIKE YOU!" (VBS.Nokrupt) Removal.

Added "ntde1ect.com" Virus Removal.

---------------------
Flash_V6 Updates:
---------------------
Added Imgkulot and Destrukto Virus Removal (On testing, since I don't have samples of these viruses). Merged functions of Clean_NSL_V3.bat with this version. No need to run Clean_NSL_V3.bat this time. =)

---------------------
Notes:
---------------------

Windows Vista (Not tested, since there are only few infections for this OS).

Tested to run on Windows XP Professional (SP2 or below) and Windows 2003 Server Enterprise Edition.

Windows XP Home (You need a copy of taskkill.exe and place it on C:\WINDOWS\system32 before running the batch file).

Windows 2000 (Might run, haven't tried it yet).

Windows 98 (Not supported, since there are only few infections for this OS).

---------------------
Instructions:
---------------------

Extract the batch file anywhere (e.g. Desktop). Double-click to run and wait for "Press any key to continue...".

You can restart after running the batch and run it again after a restart if you like to (Optional).

You can plug your flashdrive/flashdisk/usbdrive before running the batch to clean it from these infections.
Unplugged it after and plug it again, you'll notice that it is cleaned. =) For harddisks/harddrives, you have to
restart or logoff after you run the batch, so that you can double-click it again. =)

You can add more drives in the batch file by editing it, use notepad or worpad (default is drive C to H). Just add a drive letter inside
the parenthesis, e.g. (C D E F G H I) - drive I is added.

----------------------------------------------------------
Download updated version of this batch at:
----------------------------------------------------------
http://hosted.filefront.com/nokie/ (Thanks to filefront for free hosting of this file).

Super Video Converter is now 100% Compatible with Vista

My favorite video converter is now 100% compatible with Windows Vista. So if you're a Vista user you can be sure that all the bugs from their previous releases are now gone. Latest version is SUPER©.v2008.build.25(Feb.5,2008)

Super © Video Converter by eRightSoft can do for FREE what other video encoders CAN'T do for money, and I totally agree with that.

For example, I always upload videos in YouTube to embed it to my other blog, the problem is, my videos always end up to other sites without even acknowledging my work. The best way to solve this problem for me is to have a watermark to all my videos. FLV is the file I use when uploading in Youtube, that way, it is much faster than uploading original/raw video. And it's the only way to break/bypass the 10-minute restriction in YouTube. So i searched the internet for an FLV encoder that can also add watermark to FLV videos. Guess what, I only found 1 program that can do it and it will cost a fortune for me if I want to have it. I forgot what's the name of that software and the exact price because I quickly become disinterested.

Then came a post I read somewhere that Super can add subtitle/watermark automatically while encoding your video. I'm using Super for my video conversion for a long time but I didn't know that it can do that (how dumb i am lol). To make the long story short, you don't need to pay for video encoding software because chances are Super can do that for free.

So try it out, if you haven't use it yet. Here's the download link:
Download Super

Unfortunately, Super official website was poorly designed. If you will try to download there, you can easily end up in an endless loop. Out of my three browsers (Firefox, IE and Opera) only Opera can see the download link/location. So use this download link if you are having a problem.

From their website:

SUPER © does for FREE what other encoders CAN'T do for money.
PS3, PSP, iPod, Zune, Nintendo DS, H.264/AVC, VCD, SVCD, DVD, FLV, 3GP, Xvid, DivX, MOV, MP4..
Whatever is your favorite multimedia format, you'll get what you want
SUPER © Simplified Universal Player Encoder & Renderer.
A GUI to ffmpeg, MEncoder, mplayer, x264, mppenc,
ffmpeg2theora & the theora/vorbis RealProducer plugIn.

If you need a simple, yet very efficient tool to convert (encode) or play any Multimedia file,
without reading manuals or spending long hours training, then SUPER © is all you need.
It is a Multimedia Encoder and a Multimedia Player, easy-to-use with 1 simple click.


SUPER © "The Player" surpasses any known player by supporting just
any Multimedia file format. SUPER © plays files that cannot be played with
WMP or even MPC and VLC the advanced Libavcodec based players.
SUPER © also plays and saves Internet Media Streams of different
protocols ( mms:// rtsp:// http://)

SUPER © "The Encoder" is the fastest and simpliest tool to encode full
length movies to any other format without any time or function limitation.

NO trial or evaluation version of SUPER © but one unique
Free to download and Free to use fully working version.

SUPER © does NOT require any additional external codec to
be installed, absolutely nothing. Necessary codecs are built in!

Super Official Site
Download Link


Any suggestion, question or violent reaction? Feel free to leave a comment.

View Random Post

Tuesday, January 29, 2008

How to Remove Kathyros Virus

Kathyros Virus Removal

There's a new virus in the wild named Kathyros Virus. As of this posting, i still can't find an automatic remover for this. But don't worry, there are several manual procedure you can do to get rid of this Kathyros virus.

1. First, you can use Flash_Disinfector <-- just click the link and download it there. Although this tool is primarily created for disinfecting flash drives, it can also clean your regular drives. Just double click the file you have downloaded and it will do the rest. If you have a flash/thumb drive that is also infected with Kathyros Virus, you should plug it first to your usb port before running flash disinfector. Flash disinfector specifically target these malwares/viruses: W32/Perlovga (copy.exe | host.exe) VBS_RESULOWS.A (Hacked by Godzilla, Hacked by Moozilla) Bha.dll.vbs w32automa worm (Autorun.vbs) Trojan.Win32.VB.atg | Win32/Dzan | Worm_vb.bnr (tel.xls.exe | mmc.exe) W32/RJump.worm (RavMonE) Worm.Win32.Delf.bf | W32.Fujacks (spoclsv.exe) W32.Fujacks.BH (Fucker.vbs) WORM_AGENT.PGV (soundmix.exe) W32/Hakaglan.worm (RVHost.exe) Trojan.Win32.VB.ayo [AVP] (Macromedia_Setup.exe) Trojan.VBS.DeltreeY.b#1 (Destrukto!!! | destrukto.vbs) So if you believe you have one of those viruses in your system or your flash disk, you can also use it there. If you seem to get rid of the Kathyros virus by using Flash Disinfector, then good for you. Second thing to do is to delete the Kathyros files. You should enable "Show hidden files and folders" in your explorer. To do this, open up My Computer then click on Tools>Folder Options>View> and then click on Show Hidden Files and Folders. Click Ok. Search for the files Kathyros.bat, Kathyros.exe, Kathyros.vbs in your C: drive and in c:\windows\system32 folder. Or you can use the search function of windows Xp to easily locate these files. If you found any file that has kathyros name on it, delete it.




Any suggestion, question or violent reaction? Feel free to leave a comment.

View Random Post

Tuesday, January 22, 2008

Privacy Policy

I respect your privacy and I am committed to safeguarding your privacy while online at my site.The following discloses the information gathering and dissemination practices for this Web site.

Log Files
Like most standard Web site servers, I use log files. This includes internet protocol (IP) addresses, browser type, internet service provider (ISP), referring/exit pages, platform type, date/time stamp, and number of clicks to analyze trends, administer the site, track user’s movement in the aggregate, and gather broad demographic information for aggregate use. IP addresses, etc. are not linked to personally identifiable information.

Cookies
A cookie is a piece of data stored on the user’s computer tied to information about the user. My site use cookies for tracking visitors’ activity. Some of my business partners use cookies on our site (for example, advertisers). However, I have no access to or control over these cookies, once I have given permission for them to set cookies for advertising. You can choose not to accept cookies by modifying your browser settings. At any time, you may remove any cookie stored on your hard drive by deleting them in your browser’s settings section.

Advertisers
I use outside ad companies to display ads on my site. These ads may contain cookies and are collected by the ad companies, and I do not have access to these information. I work with the ad company: Google Adsense. Please check their websites for respective privacy policies.