|
Well, so far, no joy. I went through all of the settings to see if they matched up, and they did. I don't need a super efficient search. I know better than to search "C:\". My typical use is to start at the top of a source tree and see if I can locate a header file.
This is just weird.
Charlie Gilley
Will program for food...
Whoever said children were cheaper by the dozen... lied.
Overheard in a cubicle: "A project is just a bug under development."
Seeking to rise above the intelligence of a one eared rabbit...
Caught in a vortex of weirdness...
|
|
|
|
|
I have developed a server and client application for lan monitoring.The problem is that I have to change the permissions of of my client application for all users, but changing permissions in all the computers is hectic task(when we have a large no. of computers connected to server). so I want to cahnge permissions from server only without going to all computers.
Is there any application to do this.
please help urgently
|
|
|
|
|
rahul_31366 wrote: please help urgently
originSH has already told you what influence this has, stil, you don't get it. OK.
I know the answer, but I certainly won't tell you.
Cheers,
Sebastian
--
"If it was two men, the non-driver would have challenged the driver to simply crash through the gates. The macho image thing, you know." - Marc Clifton
|
|
|
|
|
Hi - trying to check connectivity with tracert command
(1) from here to pdir.bloomberg.net
C:\>tracert pdir.bloomberg.net
Tracing route to pdir.bloomberg.net [206.156.53.131]
over a maximum of 30 hops:
<br />
1 <1 ms <1 ms <1 ms 10.20.43.250<br />
2 <1 ms <1 ms <1 ms shk1-ge-1-13.macbank [10.20.1.77]<br />
3 1 ms <1 ms 1 ms 10.20.1.26<br />
4 2 ms 1 ms 1 ms 146.199.53.73<br />
5 154 ms 154 ms 155 ms 146.199.45.105<br />
6 160 ms 156 ms 155 ms 146.199.45.106<br />
7 157 ms 158 ms 157 ms msm301--pchan1-159.macbank [10.129.20.5]<br />
8 156 ms 156 ms 156 ms msfc301--Gi5-1.macbank [10.130.17.53]<br />
9 157 ms 157 ms 164 ms ssr1-te-8-1.macbank [10.130.17.61]<br />
10 157 ms 157 ms 156 ms rsrz1--gigeth-0-0.macbank [10.137.129.134]<br />
11 * * * Request timed out.<br />
12 * * * Request timed out.<br />
13 * * * Request timed out.<br />
14 * * * Request timed out.<br />
15 * * * Request timed out.<br />
16 * * * Request timed out.<br />
17 * * * Request timed out.<br />
18 * * * Request timed out.
What's with the timed out?
(2) how do I check connectivity to a subnet:
<br />
208.134.161.0 [255.255.255.0]
Thanks very much!
|
|
|
|
|
(1) That means that tracert stopped waiting on a reponse by that node because it took too long.
(2) Use Ping. ICMP Type 3 Code 0 is for "Network unreachable". You might get that reply from a chatty (not stealthy) router which realized it has no port to send your ping request to.
However, these computers could be anywhere, they don't have to be in the same room physically, so "checking for subnet connectivity" is not something you usually do.
Cheers,
Sebastian
--
"If it was two men, the non-driver would have challenged the driver to simply crash through the gates. The macho image thing, you know." - Marc Clifton
|
|
|
|
|
Like the other poster said, there are 3 possibilities.
1. The 11th hop is down for some reason.
2. The 11th hop takes too long to respond, where TRACERT times out and give up waiting for a response.
3. The 11th hop is configured to ignore/drop/misroute ICMP ECHO requests.
|
|
|
|
|
Thanks - I get timeout after hop 11th. Is it possible for me to get timeout on 11th hop, then some response say 115ms from 12th hop, then timeout again on 13th hop?
30th hop total - what does it suggest? max depends on routing protocol? 30 seems a big number...?
<br />
C:\>tracert pdir.bloomberg.net<br />
<br />
Tracing route to pdir.bloomberg.net [206.156.53.131]<br />
over a maximum of 30 hops:<br />
<br />
1 <1 ms <1 ms <1 ms 10.20.43.250<br />
2 <1 ms <1 ms <1 ms shk1-ge-1-13.macbank [10.20.1.77]<br />
3 1 ms <1 ms 1 ms 10.20.1.26<br />
4 1 ms 1 ms 1 ms 146.199.53.73<br />
5 154 ms 159 ms 155 ms 146.199.45.105<br />
6 157 ms 157 ms 156 ms 146.199.45.106<br />
7 157 ms 156 ms 156 ms msm301--pchan1-159.macbank [10.129.20.5]<br />
8 158 ms 156 ms 155 ms msfc301--Gi5-1.macbank [10.130.17.53]<br />
9 157 ms 158 ms 156 ms ssr1-te-8-1.macbank [10.130.17.61]<br />
10 160 ms 157 ms 158 ms rsrz1--gigeth-0-0.macbank [10.137.129.134]<br />
11 * * * Request timed out.<br />
12 * * * Request timed out.<br />
13 * * * Request timed out.<br />
14 * * * Request timed out.<br />
15 * * * Request timed out.<br />
16 * * * Request timed out.<br />
17 * * * Request timed out.<br />
18 * * * Request timed out.<br />
19 * * * Request timed out.<br />
20 * * * Request timed out.<br />
21 * * * Request timed out.<br />
22 * * * Request timed out.<br />
23 * * * Request timed out.<br />
24 * * * Request timed out.<br />
25 * * * Request timed out.<br />
26 * * * Request timed out.<br />
27 * * * Request timed out.<br />
28 * * * Request timed out.<br />
29 * * * Request timed out.<br />
30 * * * Request timed out.<br />
<br />
Trace complete.<br />
<br />
|
|
|
|
|
devvvy wrote: Is it possible for me to get timeout on 11th hop, then some response say 115ms from 12th hop, then timeout again on 13th hop?
Oh yeah it is. This happens, usually, because of a router configuration problem, but can also be caused by a bad link between the 11th and 12th hop. The 11th hop can time out and you get a response back from the 12th hop, probably because the reply packet had another path back to your machine.
When you send a ping packet down a route, there is NOTHING that says the reply packet has to take the same route back! The replys can take take route available to get back to your machine.
devvvy wrote: 30th hop total - what does it suggest? max depends on routing protocol? 30 seems a big number...?
By default, TraceRoute will only go the first 30 hops. There is no way for it to know how many hops are actually in the path to the destination, so in the event of a Timeout, TraceRoute just assumes that A hop failed. It has no way of knowing WHICH hop failed, or how many hops are required to reach the destination machine.
|
|
|
|
|
Option 3 is highly likely in the modern internet. No sense allowing attackers to know that you're there. It's amazing anything responds to 'trace route' packets nowadays.
|
|
|
|
|
dear friends,
can any one of you tell me what is diff b/w evalauation ver RC1 and license
ver of Windows vista.
thanks and regards
prashant
|
|
|
|
|
Y! T LV o WV i mm soph 'n gnrly m stb! A, u mb using pir8 ver!
|
|
|
|
|
The RC1 (Release Candidate 1) version was coded to expire on June 1, 2007. It won't run anymore.
|
|
|
|
|
I already told him.
.
.
.
Cheers,
Sebastian
--
"If it was two men, the non-driver would have challenged the driver to simply crash through the gates. The macho image thing, you know." - Marc Clifton
|
|
|
|
|
You mean with this indecipherable garbage:
Y! T LV o WV i mm soph 'n gnrly m stb! A, u mb using pir8 ver!
|
|
|
|
|
have an application in visual c++ relating to client and server. this appliaction does many types of work like getting all user names logged on to computers,remote shutdown,remote logoff, getting the remote desktop view and many others types of functioning related to "lan monitoring" through server. but for this , client application has to be executed all the time whenever any user logon through his local account.
but the problem is that I couldn't find any way to execute the "client exe" automatically whenever any user logon through his/her local account.But I could execute the client exe automatically for the administrator by making changes in the registry but I have to execute it "for all users".
So please help me to find any way to execute the client exe for all users automatically whenever they logon through their local account.Is there any win api or by making any registry changes or any program which can call the exe automatically whenever any user login.
ps:since this is all a part of a domain so all the other users are less priviliged than admin
HELP HELP URGENT SITUATION
RAHUL CHHABRA
RAHUL CHHABRA
|
|
|
|
|
rahul3985 wrote: HELP HELP URGENT SITUATION
That really, really makes me want to delay giving my answer by another couple of hours :P
Putting anything like isn't going to make anyone rush to help you any quicker than they normally would. If your problem is time critical go pay someone to help, if you want free help be prepared to wait on other people because they have jobs and other stuff which is more important and URGENT than you.
Heres your answer anyway:
Stick a shortcut to the app in "C:\Documents and Settings\All Users\Start Menu\Programs\Startup" and whenever a user logs in it'll start up. Obviously making sure that C:\ is actually whichever drive the system is installed on.
|
|
|
|
|
If you're an administrator, right-click the Start button and select Open All Users. That opens the folder to the right location.
|
|
|
|
|
|
Hi - is there a command line alternative to Sysinternals' procmon to monitor proesses running on a machine?
Thanks in advance
|
|
|
|
|
I prefer TaskManager Extension from CodeProject. It is not a commandline but a rich GUI which plugs itself into the existing TaskManager.
|
|
|
|
|
|
Why would you recommend a GUI when he asked for a Commandline?
Cheers,
Sebastian
--
"If it was two men, the non-driver would have challenged the driver to simply crash through the gates. The macho image thing, you know." - Marc Clifton
|
|
|
|
|
Sebastian Schneider wrote: Why would you recommend a GUI
It actually is an extension only and available in Source. So you can try getting the source and integrate into any of the commandline application also. TME is not an independant application. It actually hooks up into the Windows (default) Task Manager.
|
|
|
|
|
i am using a WinXp machine in office. recently i found that there is a virus named TROJ_VUNDO.ATO in the machine..
i wanna get rid of this and clean it.....i tried VundoFix.exe..not working...
Here i can attach my Hijack Log file
Plz someone help me get rid of this.....
Thanx in advance....
Logfile of HijackThis v1.99.1
Scan saved at 10:42:14 AM, on 7/10/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Microsoft SQL Server\MSSQL\Binn\sqlservr.exe
C:\Program Files\Trend Micro\OfficeScan Client\ntrtscan.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Program Files\Trend Micro\OfficeScan Client\tmlisten.exe
C:\Program Files\Trend Micro\OfficeScan Client\ofcdog.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
C:\Program Files\Trend Micro\OfficeScan Client\pccntmon.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\PROGRA~1\MICROS~3\rapimgr.exe
C:\Program Files\Microsoft Visual Studio 8\Common7\IDE\devenv.exe
C:\Program Files\Flock\flock\flock.exe
C:\Documents and Settings\Administrator\Desktop\VundoFix.exe
C:\Documents and Settings\Administrator\Desktop\hijackthis1991\HijackThis.exe
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {830675A3-6EEA-44C5-A464-83A939A0DD95} - C:\WINDOWS\system32\xkgplbvf.dll (file missing)
O2 - BHO: (no name) - {CD3447D4-CA39-4377-8084-30E86331D74C} - C:\WINDOWS\system32\pdobohaa.dll (file missing)
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O4 - HKLM\..\Run: [S3Trayp] S3trayp.exe
O4 - HKLM\..\Run: [OfficeScanNT Monitor] "C:\Program Files\Trend Micro\OfficeScan Client\pccntmon.exe" -HideWindow
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [setup] rundll32.exe "C:\WINDOWS\system32\thyhpefp.dll",realset
O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res:
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00134F72-5284-44F7-95A8-52A619F70751} (ObjWinNTCheck Class) - http:
O16 - DPF: {08D75BC1-D2B5-11D1-88FC-0080C859833B} (OfficeScan Corp Edition Web-Deployment SetupCtrl Class) - http:
O16 - DPF: {5EFE8CB1-D095-11D1-88FC-0080C859833B} (OfficeScan Corp Edition Web-Deployment ObjRemoveCtrl Class) - http:
O16 - DPF: {66D393D5-4D80-497C-9F4F-F3839E090202} (PlayerOCX Control) - http:
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = TELESOFTBLORE.COM
O17 - HKLM\Software\..\Telephony: DomainName = TELESOFTBLORE.COM
O17 - HKLM\System\CCS\Services\Tcpip\..\{5F6E2A4A-7F0F-44C2-84AE-A389334EA3F5}: NameServer = 192.168.1.3,85.255.112.99
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = TELESOFTBLORE.COM
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = TELESOFTBLORE.COM
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O20 - Winlogon Notify: winxnz32 - C:\WINDOWS\SYSTEM32\winxnz32.dll
O23 - Service: SQL Server (SQLEXPRESS) (MSSQL$SQLEXPRESS) - Unknown owner - C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS (file missing)
O23 - Service: Visual Studio 2005 Remote Debugger (msvsmon80) - Unknown owner - C:\Program Files\Microsoft Visual Studio 8\Common7\IDE\Remote Debugger\x86\msvsmon.exe" /service msvsmon80 (file missing)
O23 - Service: OfficeScanNT RealTime Scan (ntrtscan) - Trend Micro Inc. - C:\Program Files\Trend Micro\OfficeScan Client\ntrtscan.exe
O23 - Service: OfficeScanNT Listener (tmlisten) - Unknown owner - C:\Program Files\Trend Micro\OfficeScan Client\tmlisten.exe
SAJAN A PILLAI
C#.NET Programmer
TELESOFT INDIA PVT LTD...
BANGALORE
|
|
|
|
|
Hello,
after a quick search at Symantec's threat library I found the following removal software for Trojan.Vundo: http://www.symantec.com/security_response/writeup.jsp?docid=2004-112111-3912-99&tabid=3[^]
Now, I'm not positive whether or not this will also remove Trojan.Vundo.ATO, but I'd recommend trying it. Download the software from symantec and follow their step-by-step instructions.
To avoid any further infections you should take care to keep your anti-viru's definitions up to date, preferably downloading daily definition updates.
Good luck!
|
|
|
|