Solved

system32.exe

Posted on 2004-08-30
7
129 Views
Last Modified: 2010-04-14
When I boot the machine a popoup system32.exe shows up. There are no references to system32.exe nor cmd32.exe in the registry and I cannot find the files in the system. How do I determine what file is kicking off the process so that I can delete it. This is my daughters Laptop and she starts class tomorow.
0
Comment
Question by:JAgolio
  • 2
7 Comments
 
LVL 49

Expert Comment

by:sunray_2003
Comment Utility
that is a worm

Once your system is up and running , download msconfig from here and dictate the startup programs
http://www.techadvice.com/win2000/m/msconfig_w2k.htm

or
http://www.perfectdrivers.com/howto/msconfig.html

open msconfig , go to startup tab and if you find this exe there , disable it

Also look here and remove that specific registry key

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnceEx
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices

SR
0
 
LVL 20

Accepted Solution

by:
Dufo G. Belski earned 500 total points
Comment Utility
0
 

Author Comment

by:JAgolio
Comment Utility
I will have acess today to my daughters PC. My guess is that I can do all of this in safe mode since if it comes up in 2K it reboots after about 5 minutes. Could this be running as a service that will make it difficult to find the rogue exe file?  
0
 
LVL 20

Expert Comment

by:Dufo G. Belski
Comment Utility
I believe I provided the exact answer to the question that was specifically asked.  I missed the quesstioner's subsequent statement that the computer reboots after 5 minutes, but that's not related to the system32 folder popup problem, and would be the subject of a separate question.
0

Featured Post

Get up to 2TB FREE CLOUD per backup license!

An exclusive Black Friday offer just for Expert Exchange audience! Buy any of our top-rated backup solutions & get up to 2TB free cloud per system! Perform local & cloud backup in the same step, and restore instantly—anytime, anywhere. Grab this deal now before it disappears!

Join & Write a Comment

Suggested Solutions

NTFS file system has been developed by Microsoft that is widely used by Windows NT operating system and its advanced versions. It is the mostly used over FAT file system as it provides superior features like reliability, security, storage, efficienc…
Scam emails are a huge burden for many businesses. Spotting one is not always easy. Follow our tips to identify if an email you receive is a scam.
Internet Business Fax to Email Made Easy - With eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, fr…
Excel styles will make formatting consistent and let you apply and change formatting faster. In this tutorial, you'll learn how to use Excel's built-in styles, how to modify styles, and how to create your own. You'll also learn how to use your custo…

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now