Link to home
Start Free TrialLog in
Avatar of beckyfildes
beckyfildes

asked on

task manager disabled and also regedit

task manager disabled and also regedit (not knowingly by myself) also windows media player will not run I've included a scan log from hijack this. don't really understand what to do - am after help in plain english!!
Avatar of luv2smile
luv2smile

Ok, first of all, are you logged into the machine as an administrator?

Have you tried uninstalling and re-installing windows media player?

For HiJackThis logs, you need to post your log at the following site to have it analyzied:

http://www.hijackthis.de/index.php?langselect=english

Please read the following tutorial on hijack this before using it:

http://www.spywareinfo.com/~merijn/htlogtutorial.html



Avatar of SheharyaarSaahil
Hello beckyfildes =)

Are they Disabled or Disappearing after u open them ??
coz if they are Disabled then its the permission problem, are u sure u are logged in as Administrative Account ??
check here,

Error Message: "Task Manager has been disabled by your administrator"
http://windowsxp.mvps.org/Taskmanager_error.htm

Registry Editing has been disabled by your administrator
http://windowsxp.mvps.org/tweakuirest.htm

and if they are Disappearing, then its due to viruses !!
look here,

Why does Task Manager, MSCONFIG, or REGEDIT disappear while opening?
http://windowsxp.mvps.org/ToolsQuit.htm
Avatar of beckyfildes

ASKER

ive pasted the text into 'RUN' it works but then defaukts back to showing the error message. I'm logged in as an administrator. I've tried registry mechanic it changed nothing (was that worth doing?) I've got another computer that runs fine is there anyway to compare settings? i also have sophos antivirus should i run that?
I've just downloaded new media player 10 it will not run still!
ive had the log analysed what do i do with the errors it found how do i get rid or repair things?
O4 - HKLM\..\Run: [Mike] c:\WINDOWS\Fonts\lsass.exe    
Nasty   The entered application Mike was identified: lsass. Hit rate: 29 % (result)   Must be fixed!

O4 - HKLM\..\Run: [stella] c:\WINDOWS\Fonts\lsass.exe    
Nasty   The entered application stella was identified: lsass. Hit rate: 47 % (result)   Must be fixed!

 c:\WINDOWS\Fonts\lsass.exe    
Nasty   running process. (lsass.exe)
This process is not running from the System32 folder as it is supposed to be.   This entry is not running from the System32 folder, so it is probably nasty.

O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1    
Nasty   Such entries should be fixed as a general rule.   To be fixed immediately!
Check these lines and clcik on Fix Checked !!
and then delete these nasty files manually from safemode !!
delete ONLY the files which are present above, dont delete the original lsass.exe which is present in C:\Windows\System32 !!
silly question but where do i check the lines - no tick boxes or anything like that on screen im looking at! I must be really thick! how do i get to safe mode an delete them?
ASKER CERTIFIED SOLUTION
Avatar of SheharyaarSaahil
SheharyaarSaahil
Flag of United Arab Emirates image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
luv2smile are u there :-?