<?xml version="1.0" encoding="utf-8"?>
				<!-- generator="e107" -->
				<!-- content type="Forum / topic" -->
				<!-- test="This site is powered by Lao Anti-Virus<br />(C) 2007-2010<br /><br /><a href="http://www.pagerankbar.com/" target="_blank"><img src="http://www.pagerankbar.com/prbutton.png" alt="Page Rank Checker Button" border="0" /></a>" -->
				<rss  version="2.0">
				<channel>
				<title>LAO AV WEBSITE : Forum / topic</title>
				<link>http://www.laoav.net/</link>
				<description>This is Lao Anti-virus's Website</description>

<language>en-gb</language>
				<copyright>This site is powered by Lao Anti-Virus(C) 2007-2010<a href="http://www.pagerankbar.com/" target="_blank"><img src="http://www.pagerankbar.com/prbutton.png" alt="Page Rank Checker Button" border="0" /></a></copyright>
				<managingEditor>Admin - maillaoav@nospam.com</managingEditor>
				<webMaster>maillaoav@nospam.com</webMaster>
				<pubDate>Sun, 05 Sep 2010 10:19:57 -0400</pubDate>
				<lastBuildDate>Sun, 05 Sep 2010 10:19:57 -0400</lastBuildDate>
				<docs>http://backend.userland.com/rss</docs>
				<generator>e107 (http://e107.org)</generator>
				<ttl>60</ttl>
				<image>
				<title>LAO AV WEBSITE : Forum / topic</title>
				<url>http://www.laoav.net/images/adminlogo.png</url>
				<link>http://www.laoav.net/</link>
				<width>88</width>
				<height>31</height>
				<description>This is Lao Anti-virus's Website</description>
				</image>
				<textInput>
				<title>Search</title>
				<description>Search LAO AV WEBSITE</description>
				<name>query</name>
				<link>http://www.laoav.net/search.php</link>
				</textInput>
						<item>
						<title></title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?</link>
<description></description>
<pubDate>Thu, 01 Jan 1970 02:00:00 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"> 1.    ໄວຣັສຈະສ້າງໄຟ<br /> -    vkq.dll ໃນໂພນເດີ Temp<br /> -    avpo.exe ໃນໂພນເດີ System32<br /> -    avpo0.dll ໃນໂພນເດີ System32<br /> -    ntde1ect.com ແລະ Autorun.inf ໃນແຕ່ລະຊອ່ງເຊັ່ນ C:&#092;,D:&#092;,E:&#092;...<br /> ໄວຣັສຈະສ້າງ  ntde1ect.com ແລະ Autorun.inf ເຂົ້າໃນ USB ເຮົາ<br /> ເມື່ອເຮົາເອົາ USB ໃສ່ຄອມ<br /> ໃນໄຟ Autorun.inf ມີໂຄດຄຳສັ່ງດັ່ງນີ້<br /><br /> [AutoRun]<br /> open=ntde1ect.com<br /> ;shell&#092;open=Open(&amp;O)<br /> shell&#092;open&#092;Command=ntde1ect.com<br /> shell&#092;open&#092;Default=1<br /> ;shell&#092;explore=Manager(&amp;X)<br /> shell&#092;explore&#092;Command=ntde1ect.com<br /><br /> 2.  ໄວຣັສຈະສ້າງຄ່າໃນຄີ<br /> -HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;<br /> CurrentVersion&#092;Run&#092;<br /> ມີຄ່າ avp0= C:&#092;Windows&#092;System32&#092;avp0.exe<br /> -HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;<br /> CurrentVersion&#092;Explorer&#092;Advanced&#092;Folder&#092;Hidden&#092;SHOWALL<br /> ມີຄ່າ CheckedValue= 0 ຊື່ງເຮັດໃຫ້ເຮົາບໍ່ສາມາດສະແດງໄຟທີ່ເຊື່ອງໄວ້<br /><br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:03:31 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"> <div style='text-align:center'><strong class='bbcode bold'>Virus Worm Fullhouse</strong></div><br /> 1.    ເມື່ອໄວຣັສນີ້ຖືກ Run ແລ້ວມັນຈະສ້າງຟາຍແລະ Folder<br /> -    ສ້າງ Folder ຊື່ Config ໃນຊອງ C:&#092;Config<br /> -    ສ້າງຟາຍ smss.exe ໃນ C:&#092;Config&#092;smss.exe<br /> -    ສ້າງຟາຍ Taskmgr.exe ໃນ C:&#092;Taskmgr.exe<br /> -    ສ້າງ Folder ຊື່ Fullhouse ໃນຊອງ C:&#092;Fullhouse<br /> -    ສ້າງຟາຍ Fullhouse.jpg ໃນຊອງ C:&#092;Fullhouse&#092;Fullhouse.jpg<br /> 2.    ອາການເມື່ອຕິດໄວຣັສນີ້ແລ້ວ<br /> -    ມີ Folder ຊື່ Full House ໃນ My Computer ແລະ Control Panel<br /> -    ເປີດ Task Manager ບໍ່ໄດ້<br /> -    ເປີດ Regedit ບໍ່ໄດ້<br /> - ເມື່ອເຮົາເອົາ Handy Drive ໃສ່ ມັນຈະ Copy ຕົວເອງໃສ່ Handy Drive ໂດຍມັນຈະໃສ່ຊື່ Folder ຂອງເຮົາເລີຍສ່ວນ Folder ຂອງເຮົາແທ້ຈະຖືກ Hidden ໄວ້<br /> 3.    ສ້າງຄ່າໃນ Regedit<br /> - HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;<br /> Policies&#092;Explore&#092;Run<br /> ມີຄ່າ Manager Task= C:&#092;Config&#092;smss.exe<br /> -    HKEY_CLASSES_ROOT&#092;exefile<br /> ມີຄ່າ NeverShowExt = ””<br /> - HKEY_CLASSES_ROOT&#092;CLSID&#092;<br /> {00020D75-0000-0000-C000-0000000000AA}<br /> ມີຄ່າ Default= Full House<br /> -    HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;<br /> CurrentVersion&#092;Explorer&#092;MyComputer&#092;NameSpace&#092;<br /> {00020D75-0000-0000-C000-0000000000AA}<br /> ມີທໍ່ນີ້ແລະຕາມທີ່ເອົາມາວິເຄາະໄດ້  ::)<br /><br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:04:20 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><br /> 1.   Goto Start>Run ພິມ Tskill smss ແລ້ວ Enter<br /> 2. Goto My computer>Folder Options>View>ຕິກເອົາ Show hidden file.....>ຕິກອອກ Hide protect operating......>ok<br /> 3. ໄປລົບ Folder ໃນຊອງ C:&#092;Config ແລະ C:&#092;Taskmgr.exe ແລະ C:&#092;FullHouse  ອອກ<br /> 3. ໄປ ເປີດ Regedit  Start>Run ພິມ Regedit  ແລ້ວ Enter<br /> 4. ໃນ Regedit ໃຫ້ໄປລົບຄີລຸ່ມນີ້ອອກໃຫ້ໝົດ<br /> - HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;E
xplore&#092;Run<br /> ລົບ -> Manager Task= C:&#092;Config&#092;smss.exe<br /> -   HKEY_CLASSES_ROOT&#092;exefile<br /> ລົບ  ->NeverShowExt = ””<br /> - HKEY_CLASSES_ROOT&#092;CLSID&#092;<br /> ລົບ  ->{00020D75-0000-0000-C000-0000000000AA}<br /> -   HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
MyComputer&#092;NameSpace&#092;<br /> ລົບ  ->{00020D75-0000-0000-C000-0000000000AA}<br /> 5. ແລ້ວ Restart  ຈົບ<br /> Lao antivirus ກະຂ້າໄດ້ແລ້ວ<br /> Visit  http://laoav.pt.nu<br /><br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:02:38 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"> ເຮັດຕາມຂັ້ນຕອນດັ່ງລຸ່ມນີ້<br /> <img src='http://laoav.izihost.org/Installlaoav/1.JPG' class='bbcode' alt=''  /><br /> <img src='http://laoav.izihost.org/Installlaoav/2.JPG' class='bbcode' alt=''  /><br /> <img src='http://laoav.izihost.org/Installlaoav/3.JPG' class='bbcode' alt=''  /><br /> <img src='http://laoav.izihost.org/Installlaoav/4.JPG' class='bbcode' alt=''  /><br /> <img src='http://laoav.izihost.org/Installlaoav/5.JPG' class='bbcode' alt=''  /><br /> <img src='http://laoav.izihost.org/Installlaoav/Wait.JPG' class='bbcode' alt=''  /><br /> <img src='http://laoav.izihost.org/Installlaoav/6.JPG' class='bbcode' alt=''  /><br /> <img src='http://laoav.izihost.org/Installlaoav/7.JPG' class='bbcode' alt=''  /><br /><br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:01:35 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"> -    Worm ຕົວນີ້ເມື່ອຖືກໃຊ້ງານມັນຈະກອບປີຕົວເອງໄປຢູ່ທີ່<br /> • %SYSDIR%&#092;dvupdate.exe<br /> ແລ້ວມັນກໍ່ຈະລົບຟາຍທີ່ຖືກໃຊ້ງານເທື່ອທຳອິດຂອງມັນດ້ວຍຕົວມັນເອງ<br /> -    Worm ມັນຈະໄປສ້າງຄີໃນ Registry<br />     [HKLM&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]<br /> ມີຄ່າ<br /> • Driver Update="%SYSDIR%&#092;dvupdate.exe"<br /> -    Worm ຍັງສົ່ງຕົວມັນເອງໄປທາງອີເມວອີກຊື່ງມີ<br /> Subject:<br /> One of the following:<br />    • A friendly warning<br />    • Greetings. Please read on.<br />    • Hello there! Read on.<br />    • Hey, just warning you<br />    • HEY, THIS IS KINDA URGENT<br />    • Some important information<br />    • You might want to read this...<br />    • You need to protect yourself<br /> ແລະ Attachment ທີ່ມີຊື່ຟາຍ<br />    • ReadMe_TXT<br />    • ReadThisNow_TXT<br />    • UrgentInfo<br />    • MSWinFix<br />    • MSHotFix_Latest<br />    • Latest_Patch<br />    • Info_Doc<br />    • ImportantInfo<br />    • %random character string%<br /> ຕາມດ້ວຍນາມສະກຸນເປັນ .exe ແລະ .zip<br /> -    Worm ຕົວນີ້ແມ່ນພັດທະນາຂື້ນມາໂດຍໃຊ້ພາສາ MS Visual C++<br /> ເບີ່ງຂໍ້ມູນເພີ່ມທີ່<br /><br /><a href='http://www.avira.com/en/threats/section/fulldetails/id_vir/3900/worm_mydoom.bh.1.html' rel='external'>http://www.avira.com/en/threats/section/fulldetails/id_vir/3900/
worm_mydoom.bh.1.html</a><br /><br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:05:06 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"> ໄວຣັສ ນີ້ ເປັນປະເພດ ໜອນ ມັນຈະກອບປີຕົວເອງຕາມທີ່ເຫັນລຸ່ມນີ້<br />    • %SYSDIR%&#092;stwinsdat.exe<br />    • %SYSDIR%&#092;odcwinst.exe<br />    • %SYSDIR%&#092;windb32.exe<br />    • %SYSDIR%&#092;servftc.exe<br /> ແປງຄ່າ Registry<br /> –  HKLM&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon<br />    • Windows Sysdat="explorer.exe odcwinst.exe"<br />    •<br /><br /> –  HKLM&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon<br />    • "Logon Settings2"="odcwinst.exe"<br /><br /> –  HKLM&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;Explorer&#092;<br />    Run<br />    • "Policies Options2"="o﷽﷽�ā쵨ĊⷨĂ"<br /><br /> –  HKCU&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run<br />    • System Driver2=-<br /><br /> –  HKCU&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;RunOnce<br />    • "Services Start2"="odcwinst.exe"<br /><br /><br /><br /> The following registry keys are added:<br /><br /> – HKLM&#092;Software&#092;RMX&#092;cfg<br />    • j="j"<br /><br /> – HKCU&#092;Software&#092;RMX&#092;cfg<br />    • j="j"<br /><br /> ໄວຣັສນີ້ຂຽນດ້ວຍພາສາ Ms C++<br /><br /> <strong class='bbcode bold'>ລາຍລະອາດເພີ່ມເຕີ່ມ</strong><br /><br /><a href='http://www.avira.com/en/threats/section/fulldetails/id_vir/3691/worm_skipi.c.html' rel='external'>http://www.avira.com/en/threats/section/fulldetails/id_vir/3691/
worm_skipi.c.html</a><br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:05:44 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"> ທ່ານສາມາດໃຊ້ ໂປຣແກຣມ Lao anti virus ແກ້ບັບຫານີ້ໄດ້ ໂດຍ:<br /><br /> <img src='http://laoav.izihost.org/Fileup/Lav1.JPG' class='bbcode' alt=''  /><br /><br /> 1 ກົດ ຕົວຊ່ວຍອື່ນໆ<br /> 2 ກົດ Registry Edit<br /> 3 ໃນ Disable registry Tools ຖ້າຫາກຖືກເລືອກໄວ້ໃຫ້ຕິກອອກ ຫລືຕົວເລືອກອື່ນໆຄືກັນໃຫ້ຕິອອກໝົດ<br /> ແລ້ວທ່ານລອງເຂົ້າ Regedit ເບີ່ງວ່າໄດ້ບໍ<br /> ຖ້າມີບັນຫາຫຍັງກ່ຽວກັບຄອມສາມາດລົງຄຳຖາມໄວ້ໄດ້ ເວັບບອດນີ້ (ກ່ອນອື່ນຕ້ອງສະໝັກເປັນສຳມະຊິກກ່ອນ)<br /> ຂອບໃຈ<br /><br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:06:17 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"> ສະເພາະຜູ້ໃຊ້ Lao antivirus 2008<br /><br /> <img src='http://img142.imageshack.us/img142/4204/nofolderzf3.jpg' class='bbcode' alt=''  /><br /> or<br /> http://img142.imageshack.us/my.php?image=nofolderzf3.jpg<br /> ແລ້ວ Restart Computer<br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:06:44 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"> ສະບາຍດີຊາວໄອທີທັງຫລາຍ<br /> ທ່ານສາມາດລົງຄຳຄິດເຫັນຫລືມີບັນຫາໄວຣັສຄອມສາມາດລົງຄຳຖາມໄດ້<br /> ຂອບໃຈ<br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:07:19 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span class="av_chapter" style="font-size: small"><br />ມັນຈະ copy ຕົວເອງໄປທີ່</span><span style="font-size: small">:<br />  • </span><span class="dictionary" style="font-size: small">%SYSDIR%</span><span style="font-size: small">&#092;&#092;Norton Update.exe<br /><br /><br /><br />ຕາມດ້ວຍຟາຍທີ່ສ້າງ:<br /><br />– A file that contains collected email addresses:<br />  • </span> <span class="dictionary" style="font-size: small">%SYSDIR%</span><span style="font-size: small">&#092;&#092;<em>%random%</em>.dll<br /><br />–  C:&#092;&#092;s.cm <br /><br />ເພີ່ມຄ່າໃນ Registry:<br /><br />–  HKLM&#092;&#092;Software&#092;&#092;Microsoft&#092;&#092;Windows&#092;&#092;CurrentVersion&#092;&#092;Run <br /> • "Wxp4" = "</span><!--NO_BR--><!--NO_BR--><span style="font-size: small"> </span><span class="dictionary" style="font-size: small">%SYSDIR%</span><span style="font-size: small">&#092;&#092;Norton Update.exe"<br /><br />–  [HKLM&#092;&#092;Software&#092;&#092;Microsoft&#092;&#092;Wxp4]<br />  • rD=dword:00000101<br />  • t1="<em>%current username%</em>"<br />  • t3="</span><span style="font-size: small"> </span><!--NO_BR--> <span class="dictionary" style="font-size: small">%SYSDIR%</span><span style="font-size: small">&#092;&#092;Norton Update.exe"<br />  • t4="</span><span class="dictionary" style="font-size: small">%SYSDIR%</span><span style="font-size: small">&#092;&#092;<em>%random character string%</em>.dll"<br />  • lA="</span><span class="dictionary" style="font-size: small">%PROGRAM FILES%</span><span style="font-size: small">&#092;&#092;MSN&#092;&#092;MSNCoreFiles"<br /><br /><br />ພາສາທີ່ໃຊ້ຂຽນໄວຣັສນີ້<strong>:<br /></strong>MS Visual C++.<br /><br /><strong>ບີບອັດດ້ວຍໂປຣແກຣມ:</strong><br /><br />  • FSG 2.0<br /><br /><a href="http://www.avira.com/en/threats/section/fulldetails/id_vir/3986/worm_zafi.d.html" rel="external">ລາຍລະອຽດເພີ່ມເຕີມ</a><br /><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 31 Oct 2007 08:53:29 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<!--[if !supportLists]--><span style="font-size: small"><span><span>-<span style="font-style: normal; font-variant: normal; font-weight: normal; font-size: 7pt; line-height: normal; font-size-adjust: none; font-stretch: normal">         </span></span></span><span>ຖ້າ Virus ຖືກ​ຮຽກ​ໃຊ້ ມັນ​ສ້າງ​ຄ່າ Autorun ​ໃນ Registry</span></span><!--[endif]-->  <span style="font-size: small"><span>HKCU&#092;&#092;Software&#092;&#092;Microsoft&#092;&#092;Windows&#092;&#092;CurrentVersion&#092;&#092;Run</span></span><span style="font-size: small"> <br /></span><span style="font-size: small"><span>ມີຄ່າ Yahoo Messengger=C:&#092;&#092;WINDOWS&#092;&#092;system32&#092;&#092;scvshosts.exe</span></span><span style="font-size: small"> <br /></span><!--[if !supportLists]--><span style="font-size: small"><span><span>-<span style="font-style: normal; font-variant: normal; font-weight: normal; font-size: 7pt; line-height: normal; font-size-adjust: none; font-stretch: normal">         </span></span></span><span>Copy ຕົວ​ເອງ​ອອກ​ໄປ​ທີ່</span></span><!--[endif]--><span style="font-size: small"> <br /></span><span style="font-size: small"><span>> C:&#092;&#092;WINDOWS&#092;&#092;system32&#092;&#092;scvshosts.exe</span></span><span style="font-size: small"> <br /></span><span style="font-size: small"><span>> C:&#092;&#092;WINDOWS&#092;&#092;hinhem.scr</span></span><span style="font-size: small">  </span><span style="font-size: small"><span><br />> C:&#092;&#092;WINDOWS&#092;&#092;scvshosts.exe</span></span><span style="font-size: small">  </span><span style="font-size: small"><span><br />> C:&#092;&#092;WINDOWS&#092;&#092;system32&#092;&#092;blastclnnn.exe</span></span><span style="font-size: small"><br /></span><span style="font-size: small"><span>> C:&#092;&#092;WINDOWS&#092;&#092;Tasks&#092;&#092;At1.job (​ແມ່ນ​ຟາຍ​ທີ່​ໄວຣັສຕັ້ງ​ເວລາ​ເປີດ​ອັດຕະນາ​ໂນ​ມັດ)</span></span><span style="font-size: small"> <br /></span><span style="font-size: small"><span>> C:&#092;&#092;WINDOWS&#092;&#092;system32&#092;&#092;autorun.ini</span></span><span style="font-size: small">  </span><span style="font-size: small"><span>​​ແລະ​ມັນ​ຈະຕິດ​ໄປ​ທາງ​ຟາຍ​ແຊ​ໃນ​ເນັດ​ເວີກ​ແລະ USB</span></span><span style="font-size: small">  </span><span style="font-size: small"><span>​ໃນ​ຟາຍ Autorun.inf ​ແລະ Autorun.ini<br />ມີ​ໂຄດ</span></span><span style="font-size: small"> <br /></span><span style="font-size: small"><span>[Autorun]</span></span><span style="font-size: small">  </span><span style="font-size: small"><span>Open=scvshosts.exe</span></span><span style="font-size: small">  </span><span style="font-size: small"><span><br />Shellexe cute=scvshosts.exe</span></span><span style="font-size: small">  </span><span style="font-size: small"><span><br />Shell&#092;&#092;Open&#092;&#092;command=scvshosts.exe</span></span><span style="font-size: small">  </span><span style="font-size: small"><span><br />Shell=Open</span></span><span style="font-size: small"> <br /></span><span style="font-size: small"><span>ຊື່​ງ​ເຮັດ​ໃຫ້​​ເປີດ​ໄວຣັສ​ອັດຕະນາ​ໂນ​ມັດ​ເວລາ​ເຮົາ​ເປີດ​ຊ່ອງ USB ນັ້ນ</span></span><span style="font-size: small"><br />Antivirus ລາຍຕົວທີ່ອັບເດດສາມາດຂ້າໄດ້ແລ້ວແຕ່ທ່ານໃດຍັງມີບັນຫານີ້ຢູ່ກໍ່ສາມາດອ່ານລາຍລະອຽດນີ້ໄດ້<br /></span><span style="font-size: small">ວິທີການກຳຈັດແມ່ນຖ້າໄວຣັສໄດ້ໄປສ້າງຄ່າຢູ່ໃສໃຫ້ທ່ານໄປນຳລົບອອກຕາມນັ້ນ</span><span style="font-size: small"><br />ຕົວຢ່າງ:</span><span style="font-size: small"><span>HKCU&#092;&#092;Software&#092;&#092;Microsoft&#092;&#092;Windows&#092;&#092;CurrentVersion&#092;&#092;Run</span></span><span style="font-size: small">   </span><span style="font-size: small"><span><br />ລົບ -> Yahoo Messengger=C:&#092;&#092;WINDOWS&#092;&#092;system32&#092;&#092;scvshosts.exe</span></span><span style="font-size: small"><br />ແລະ ຢຸດການທຳງານຂອງໄວຣັສກ່ອນ<br /></span><span style="font-size: small">ໄປທີ່ Start>Run ພິມ Tskill </span><span style="font-size: small"><span>scvshosts enter<br /><br />ຮູບໄວຣັສທີ່ຕິດ USB ແລ້ວຈະເຫັນໄວຣັສແບບນີ້ແລະໃນແຕ່ລະ Sub folder ກໍ່ຈະມີ<br /><br /><br /><br /></span></span><span style="font-size: small"><span><img src="http://img100.imageshack.us/img100/5415/scvshostscr3.jpg" /><br /></span></span><span style="font-size: small"><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 02 Nov 2007 05:09:21 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຊ່ວງນີ້ຂ້າພະເຈົ້າໄດ້ເຫັນໄວຣັສ "Dancer.exe" ກຳລັງລະບາດດ້ວຍການສົ່ງເມວມາ<br />ຊື່ງມີລາຍລະອຽດດັ່ງຮູບ<br /></span><img src="http://img409.imageshack.us/img409/6213/virusdancing1az8.jpg" /><br /><br /><img src="http://img150.imageshack.us/img150/3451/virusdancing2ao2.jpg" /><br /><img src="http://img136.imageshack.us/img136/9228/virusdancinggm6.jpg" style="border: 0px solid black" /><br /><br /><br /><br /><span style="font-size: small">ຫ້າມເປີດເດັດຂາດໃຫ້ລົບເມວອອກເລີຍ</span><br /><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 12 Nov 2007 04:51:34 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><span style="font-size: small"><strong>Virus Knight.exe</strong></span> <br /></div><span style="font-size: small"><strong>1. Files </strong><strong><span>​ໄວຣັສຈະ​ສ້າງ​ຟາຍ</span></strong></span> <span style="font-size: small"><br /><span><span>-<span style="font-style: normal; font-variant: normal; font-weight: normal; font-size: 7pt; line-height: normal; font-size-adjust: none; font-stretch: normal">         </span></span></span><span>C:&#092;WINDOWS&#092;Knight.exe</span></span><!--[endif]--> <br /><!--[if !supportLists]--><span style="font-size: small"><span><span>-<span style="font-style: normal; font-variant: normal; font-weight: normal; font-size: 7pt; line-height: normal; font-size-adjust: none; font-stretch: normal">         </span></span></span><span>C:&#092;WINDOWS&#092;recover.reg</span></span><!--[endif]-->  <span style="font-size: small"><strong><span><br />2. ຕິດ​ທາງ USB ​ໃນ​ຊ່ອງ​ຈະ​ມີ 2 ຟາຍ</span></strong></span> <br /><span style="font-size: small"><span>- Autorun.inf</span></span>  <span style="font-size: small"><span><br />- Knight.exe</span></span>  <span style="font-size: small"><span><br />-> Code ​ໃນຟາຍ Autorun.inf</span></span> <br /><br /><span style="font-size: small"><span>[autorun]</span></span>  <span style="font-size: small"><span><br />open=Knight.exe open</span></span>  <span style="font-size: small"><span><br /><br />icon=Knight.exe,0</span></span>  <span style="font-size: small"><span><br /><br />shellexecute=Knight.exe open</span></span> <br /><span style="font-size: small"><span><br />shell=auto</span></span>  <span style="font-size: small"><span><br /><br />action=Disk Knight(Protection Against Mobile Disk Viruses)</span></span>  <span style="font-size: small"><span><br /><br />shell&#092;auto=&amp;Auto</span></span>  <span style="font-size: small"><span><br /><br />shell&#092;auto&#092;command=Knight.exe open</span></span>  <span style="font-size: small"><span><br /><br />shell&#092;open=&amp;Open</span></span>  <span style="font-size: small"><span><br /><br />shell&#092;open&#092;command=Knight.exe open</span></span>  <span style="font-size: small"><span><br /><br />shell&#092;explore=E&amp;xplore</span></span> <br /><span style="font-size: small"><span><br />shell&#092;explore&#092;command=Knight.exe open</span></span>  <span style="font-size: small"><span><br /><br />shell&#092;find=S&amp;earch...</span></span>  <span style="font-size: small"><span><br /><br />shell&#092;find&#092;command=Knight.exe open</span></span>  <span style="font-size: small"><span><br /><br />shell&#092;install=&amp;Disk Knight</span></span>  <span style="font-size: small"><span><br /><br />shell&#092;install&#092;command=Knight.exe open</span></span> <br /><span style="font-size: small"><strong><span><br />3. ສ້າງ​ຄ່າ​ໃນ Registry</span></strong></span>  <span style="font-size: small"><span>- HKLM&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run</span></span>  <span style="font-size: small"><span>ມີຄ່າ Disk Knight=C:&#092;WINDOWS&#092;Knight.exe</span></span><br /><br /><br /><span style="font-size: small"><span></span></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 26 Nov 2007 04:39:21 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><span style="color: #ff0000"><u><strong><span style="font-size: small">ໄວຣັສ Seacon.exe<br /><br /></span></strong></u></span></div><span style="font-size: small"><strong>1. ເມື່ອມັນທຳງານຫລືຖືກ Run</strong><br />-> Copy ຕົວເອງໄປຢູ່ <br />-C:&#092;Windows&#092;Seacon.exe  (Hidden)<br />-</span><span style="font-size: small">C:&#092;Windows&#092;PPstream.exe<br /></span><span style="font-size: small">-</span><span style="font-size: small">C:&#092;Windows&#092;Save.sos</span><br /><span style="font-size: small">-</span><span style="font-size: small">C:&#092;</span><span style="font-size: small">Seacon.exe<br /></span><span style="font-size: small">-</span><span style="font-size: small">C:&#092;</span><span style="font-size: small">Mp3.exe<br /></span><span style="font-size: small">-</span><span style="font-size: small">C:&#092;Autorun.inf<br /></span><span style="font-size: small">-</span><span style="font-size: small">C:&#092;</span><span style="font-size: small">PPstream.exe<br />ແລະໃນແຕ່ລະຊ່ອງລວມເຖີ່ງຊອງ USB ຈະມີໄຟເຫລົ່ານີ້<br />-</span><span style="font-size: small">Seacon.exe<br />-</span><span style="font-size: small">Mp3.exe<br />-</span><span style="font-size: small">Autorun.inf<br />-</span><span style="font-size: small">PPstream.exe<br /><strong>2. ສ້າງຄ່າໃນ Registry</strong><br /><br />-HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;<br />CurrentVersion&#092;Explorer&#092;Advanced&#092;Folder&#092;SuperHidden<br />CheckedValue=1<br /></span><span style="font-size: small"><br />-HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;<br />CurrentVersion&#092;Explorer&#092;Advanced&#092;Folder&#092;SuperHidden<br />DefaultValue=1<br /><br />-HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon<br /></span><span style="font-size: small">Userinit=C:&#092;Windows&#092;System32&#092;Userinit.exe,C:&#092;Windows&#092;Seacon.exe<br /><br />-HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Advanced<br />SuperHidden=1<br /><strong><br />3. ອາການຕອນຕິດໄວຣັສ<br />-</strong>ເຄື່ອງທຳງານຊ້າປົກກະຕິ<br />-ໄວຣັສຈະລົບໄຟລ *.MP3 ໃນທຸກຊ່ອງ<br />-ເມື່ອເອົາ USB ໃສ່ ຈະຖືກລົບຂໍ້ມູນອອກທັງໝົດ (ອັນຕະລາຍຫລາຍ)<br />-Process ຂອງໄວຣັສບໍ່ສາມາດເຫັນໄດ້ Windows Task manager ເມື່ອໄວ<br />ຣັສກຳລັງທຳງານ<br />-ໄວຣັສໃຊ້ ICON ຂອງຮູບ Folder XP ເພື່ອລວງຕາຜູ້ໃຊ້ຄອມວ່າເປັນ Folder<br /><strong>4. ການລົບໄວຣັສ<br /></strong>-ໃຫ້ທ່ານດາວໂລດເອົາຕົວຂ້າໄວຣັສນີ້ສະເພາະສະມາຊິກໃຫ້ດາວໂລດເອົາໄດ້ໃນໜ້າ<br />ທຳອິດໃນເມນູ Remove tool<br /><br /><strong><br /></strong><br /><br /><br /></span><span style="font-size: small"><br /></span><span style="font-size: small"></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 14 Dec 2007 04:49:33 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><strong><u><span style="font-size: 14pt">Virus Cetix (Worm)</span></u></strong>   <br /></div><span style="font-size: small"><strong><span>1. ເມື່ອຖືກ<span>  </span>Run ມັນຈະສ້າງໄຟລ</span></strong></span> <br /><span style="font-size: small"><span>-C:&#092;WINDOWS&#092;cetix.exe</span></span>  <span style="font-size: small"><span><br />-C:&#092;WINDOWS&#092;system32&#092;toxic.exe<br /><br /></span></span><span style="font-size: small"><span>-C:&#092;WINDOWS&#092;system32&#092;poison.exe<br /><br /></span></span> <span style="font-size: small"><span>-C:&#092;WINDOWS&#092;racun.exe</span></span> <br /><br /><span style="font-size: small"><span>-C:&#092;Documents and Settings&#092;%UserProfile%&#092;Start Menu&#092;Programs&#092;Startup&#092;vserve.exe</span></span> <br /><br /><span style="font-size: small"><span>-C:&#092;aboutCetix.html</span></span> <br /><br /><span style="font-size: small"><span>-C:&#092;infoBali.txt</span></span> <br /><br /><span style="font-size: small"><span>-C:&#092;Documents and Settings&#092;%UserProfile%&#092;Desktop&#092;aboutCetix.html<br /><br /></span></span> <span style="font-size: small"><span>-C:&#092;Autorun.inf</span></span> <br /><br /><span style="font-size: small"><span>ແລະຍັງລະບາດໄປທົ່ວທຸກຊ່ອງລວມທັງ USB ລັກສະນະຊື່ໄຟລແມ່ນເອົາຕາມຊື່ໄຟລ</span></span>  <span><span style="font-size: small">ແລະໂຟນເດີໃນຊ່ອງນັ້ນຊື່ງມີຮູບດັ່ງນີ້</span></span> <br /><br /><span><span style="font-size: small">-View ແບບ Tiles<br /><br /></span></span> <img src="http://img299.imageshack.us/img299/4622/titleop6.jpg" style="border: 0px solid black" /> <br /><br /><span><span style="font-size: small">ຈະເປັນຮູບ Folder</span></span><br /><span style="font-size: small"><span style="font-size: 12pt">-View ແບບ Icon<br /><br /></span></span><img src="http://img101.imageshack.us/img101/7524/iconuy5.jpg" style="border: 0px solid black" /><br /><br /> <span style="font-size: small"><span>ຈະເປັນຮູບ ຂອງໄຟລ Ms Word</span></span>       <span style="font-size: small"><span style="font-size: 12pt"><br />-View ແບບ List and Details<br /><br /></span></span><img src="http://img101.imageshack.us/img101/7758/detailwp6.jpg" style="border: 0px solid black" /><br /><br /> <span style="font-size: small"><span>ເພື່ອເປັນການລວງຕາໃຫ້ເຮົາຄິດວ່າ Folder ແລ້ວ ເປີດມັນແລ້ວໄວຣັສກໍ່ຈະຕິດຄອມ</span></span>  <span style="font-size: small"><span>ທັນທີ</span></span><span style="font-size: small"><strong><span><br /></span></strong></span><span style="font-size: small"><strong><span>2. ສ້າງຄ່າໃນ      Registry</span></strong></span>    <span style="font-size: small"><span>-HKCU&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run&#092;</span></span>  <span style="font-size: small"><span><br />ມີຄ່າ cetix ,</span> poison<br /></span><span style="font-size: small"><span>-HKLM&#092;SYSTEM&#092;CurrentControlSet&#092;Control&#092;SafeBoot&#092;</span></span>  <span style="font-size: small"><span>ແປງຄ່າຂອງ AlternateShell</span></span>  <span style="font-size: small"><span>-HKLM&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon<br /></span></span> <span style="font-size: small"><span>ແປງຄ່າຂອງ Shell , Userinit , </span></span>  <span style="font-size: small"><span>ແລະແປງຄ່າ</span></span> <br /><span style="font-size: small"><span>-</span><span>HKCR&#092;exefile&#092;shell&#092;open&#092;command</span></span> <br /><span style="font-size: small"><span>-</span><span>HKCR&#092;lnkfile&#092;shell&#092;open&#092;command</span></span> <br /><span style="font-size: small"><span>-</span><span>HKCR&#092;piffile&#092;shell&#092;open&#092;command</span></span> <br /><span style="font-size: small"><span>-</span><span>HKCR&#092;batfile&#092;shell&#092;open&#092;command</span></span>  <span style="font-size: small"><span><br />-HKCR&#092;comfile&#092;shell&#092;open&#092;command</span></span>  <span style="font-size: small"><span><br />-</span><span>HKCU&#092;Control Panel&#092;International</span></span>  <span style="font-size: small"><span><br />-</span><span>HKLM&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion</span></span>  <span style="font-size: small"><span>ແປງຄ່າຂອງ RegisteredOwner, RegisteredOrganization, </span></span>  <span style="font-size: small"><span>-HKLM&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer</span></span>  <span style="font-size: small"><span>&#092;Advanced&#092;Folder&#092;SuperHidden</span></span> <br /><span style="font-size: small"><span>ແປງຄ່າຂອງ UncheckedValue</span></span>  <span style="font-size: small"><span>-HKCU&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;Advanced</span></span>  <span style="font-size: small"><span>ແປງຄ່າຂອງ HideFileExt<span>  </span>, ShowSuperHidden</span></span><span style="font-size: small"><strong><span><br /></span></strong></span><span style="font-size: small"><strong><span>3. ການກຳຈັດ</span></strong></span>    <span style="font-size: small"><span><br />ໄວຣັສນີ້ ບິບອັດດ້ວຍ Compressor ແລະສ້າງດ້ວຍ VB 6.0</span></span>  <span style="font-size: small"><span>ດາວໂລດເອົາຕົວອັບເດດຂອງໂປຣແກຣມ ລາວແອັນຕີໄວຣັສລ່າສຸດເພື່ອຂ້າໄວຣັສຕົວນີ້</span></span> <br /><br /><strong><span style="color: #0000ff"><span style="font-size: small">ໂດຍ Lao Antivirus</span></span>  </strong><br /><span style="font-size: small"><span style="font-size: 12pt"><br /></span></span><br /><span></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 21 Dec 2007 04:56:22 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">=>ມື້ນີ້ຂ້າພະເຈົ້າໄດ້ກວດເມວເຊື່ງໄດ້ຮັບເມວທີ່ບໍ່ຮູ້ຈັກມາສະບັບໜື່ງເຊື່ງເ
ນື້ອໃນແມ່ນການ<br />ອວຍພອນປີໃໝ່ 2008 ແລະວັນ </span><span><span style="font-size: small">Christmas ນີ້ ດັ່ງຮູບ<br /></span></span><img src="http://img174.imageshack.us/img174/1714/virus20081rc8.jpg" style="border: 0px solid black" /><br /><span><span style="font-size: small">ຕ້ອງລົບເມວນັ້ນອອກເລີຍຫລືມີເມວໃນລັກສະນະນີ້ <br />ຖ້າເຮົາກົດລີ້ງມັນຈະເຂົ້າເວັບດັ່ງນີ້<br /></span></span><img src="http://img174.imageshack.us/img174/3683/virus20082pw7.jpg" style="border: 0px solid black" /><br /><span><span style="font-size: small"><br />ເມື່ອເຮົາເປີດມັນຈະໄດ້ດາວໂລດໄຟໄວຣັສມາໃສ່ເຄື່ອງຖ້າເປີດໄຟນັ້ນກໍ່ຈະຕິດໄວຣັ
ສທັນທີ<br />ເມວມາລັສະນະນີ້ມັກມີຊ່ວງວັນສຳຄັນຕ່າງໆເຊັ່ນ ປີໃໝ່ , </span></span><span style="font-size: small">ວັນ </span><span><span style="font-size: small">Christmas ແລະອື່ນໆ<br />By Lao antivirus<br /><br /></span></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 26 Dec 2007 05:11:06 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ເຈິໄວລັດຕົວໃໝ່ ເວລາພິມເອກະສານເປັນພາສາລາວ ຈະມີພາສາຫວຽດນາມເຂົ້າມາແທນພາສາລາວທີ່ເຮົາພິມ, ເປັນແບບນີ້ຕະຫຼອດ ເຮັດໃຫ້ລົບກວນຫຼາຍໃນການພິມເອກະສານ ແລະ ມັນມັກຈະຂຶ້ນເປັນພາສາຫວຽດນາມອາດຈະເປັນຊື່ຂອງຜູ້ຂຽນໄວລັດກໍ່ເປັນໄດ້ຢູ່ຂ້າງ
<br />ເອກກະສານຊ່ວຍແກ້ໄຂໃຫ້ແດ່ ຂອບໃຈລ່ວງໜ້າ<br /></span>]]></description>
<author>raffee&lt;pmc_abcd@nospam.com&gt;</author>
<pubDate>Tue, 15 Jan 2008 17:50:44 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><span style="color: #00ffff"><u><strong><span style="font-size: small">ໄວຣັສ Ntdelect.com<br /></span></strong></u></span><div align="left"><span style="font-size: small"><span style="color: #ccffcc"><strong>+ ເມື່ອຄອມຕິດໄວຣັສຕົວນີ້ມັນຈະກອບປີຕົວເອງດັ່ງນີ້</strong></span><br />-<span style="font-size: 12pt">C:&#092;windows&#092;system32&#092;kavo.exe<br /></span></span>  <span style="font-size: small">-C:&#092;windows&#092;system32&#092;kavo0.dll</span><span style="font-size: small">ແລະໃນແຕ່ລະຊ່ອງຈະມີໄຟດັ່ງນີ້</span><span style="font-size: small"><br />-ntdelect.com</span>  <span style="font-size: small"><br />-autorun.inf<br /></span><span style="font-size: small">ຖ້າເອົາ USB ໃສ່ຈະຕິດໄວຣັສຕົວນີ້ທັນທີໂດຍມີ 2 ໄຟນັ້ນ</span><span style="font-size: small"><br /><span style="color: #ccffcc"><strong>+ ໄວຣັສຍັງມີການແກ້ໄຂ Registry</strong></span></span>  <span style="font-size: small">-HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;</span>  <span style="font-size: small">CurrentVersion&#092;Run</span><span style="font-size: 12pt"><br />ມີຄ່າ<span style="font-size: small"> Kavo= C:&#092;windows&#092;system32&#092;kavo.exe<br /></span></span>+<span style="color: #ccffcc"><strong><span style="font-size: small">ການກຳຈັດແມ່ນດາວໂລດເອົາຕົວອັບເດດຂອງ Lao AV ລ່າສຸດ</span></strong></span><br /><span style="font-size: 12pt"></span>      </div></div>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 18 Jan 2008 04:40:10 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><span style="color: #ffff99"><strong><u><span style="font-size: small">ໄວຣັສ W32.DashferX.PE<br /><br /></span></u></strong></span><div align="left"><span style="font-size: small"><span style="color: #ccffcc"><strong>+ເມື່ອຕິດໄວຣັສນີ້ຈະກອບປີໄປທີ່</strong></span><br /><span style="font-size: 9pt"></span></span><span style="font-size: small"><span style="font-size: 9pt">%SysDir%&#092;Com&#092;smss.exe<br /></span></span><span style="font-size: small"><span style="font-size: 9pt">%SysDir%&#092;Com&#092;lsass.exe</span></span><br /><span style="font-size: small"><span style="font-size: 9pt">%SysDir%&#092;Com&#092;netcfg.dll<br />%SysDir%&#092;Com&#092;netcfg.000<br />%SysDir%&#092;dnsq.dll<br />ແລະ pagefile.pif ກັບ autorun.inf ທຸກໆຊ່ອງລວມເຖີ່ງຊ່ອງ USB<br />ທີ່ສຳຄັນມັນຍັງສາມາດຕິດກັບບັນດາໄຟດັ່ງນີ້<br /></span></span><span style="font-size: 9pt">jsp, php, spx, asp, tml, htm  ແລະຂຽນໂຄດໃສ່ຄື<br /></span><span style="font-size: 9pt">"&lt;script src="http://js.k01[removed].com/01.asp">&lt;/script>"</span><br /><span style="font-size: 9pt"><br />ແລະຍັງຕິດກັບບັນດາໄຟໂປຣແກຣມອີກເຊັ່ນ ໄຟທີ່ມີນາມສະກຸນ .exe  (ອັນຕະລາຍ)<br />ຈະເຮັດໃຫ້ໂປຣແກຣມຫລືໄຟນັ້ນເສຍຫາຍບໍ່ສາມາດແປງໄດ້ ໝາຍວ່າເປັນໄວຣັສໝົດ<br /><span style="color: #ccffcc"><strong>+ ແປງຄ່າໃນ Registry</strong></span><br /></span><span style="font-size: 9pt">HKLM&#092;...&#092;SafeBoot&#092;Minimal&#092;{4D36E967-E325-11CE-BFC1-08002BE10318}<br />HKLM&#092;...&#092;SafeBoot&#092;Network&#092;{4D36E967-E325-11CE-BFC1-08002BE10318}<br /></span><span style="font-size: 9pt">"AppInit_DLLs" = "C:&#092;&#092;WINDOWS&#092;&#092;system32&#092;&#092;dnsq.dll"</span><br /><span style="font-size: small"><span style="font-size: 9pt"><br /></span></span></div></div>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 18 Jan 2008 08:12:57 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">Withlove.exe ມານຳເມວ ເປັນລັກສະນະຊວນເຊື່ອໃຫ້ເປີດມັນ<br />ດັ່ງຮູບ<br /><br /></span><img src="http://img250.imageshack.us/img250/4081/withlovesr0.jpg" style="border: 0px solid black" /><br /><span style="font-size: small">ຊື່ໄຟລໄວຣັສ ແມ່ນ Withlove.exe ແລະອາດຈະມີຫລາຍແບບໃນລັກສະນະນີ້<br />ຖ້າເຮົາດາວໂລດແລ້ວເປີດຈະຕິດເຊື້ອທັນທີ<br /><br /><br /><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 21 Jan 2008 11:52:01 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">+Trojan gen_host.exe ເປັນປະເພດດັກຈັບຂໍ້ມູນຕ່າງໆທີ່ເຮົາພິມໃນຄອມພິວເຕີ<br />ລວມໄປເຖີ່ງ ລະຫັດ ຊື່ Credit card number ແລະອື່ນໆ.<br />+ ຄອມທີ່ຕິດໂຕຣຈັນຕົວນີ້ມັນຈະຢູ່ໃນລະບົບເຊັ່ນ:<br />- %System%&#092;gen_host.exe<br />- ຂະໜາດໄຟ 131,072 bytes<br />ແລະມັນຍັງດາວໂລດເອົາໂປຣແກຣມໃນເວັບຂອງມັນມາລົງໃນຄອມອີກທີ່ເວັບ<br />-</span> <span style="font-size: small">http://www.microsofttw.com/jj/cc.rar<br />ແລະລົງໄປທີ່ %Temp%&#092;cc.rar</span><br /><span style="font-size: small"><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 25 Jan 2008 04:21:31 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><u><span style="font-size: small"><strong>Trojan.Zlob<br /><br /></strong></span></u><div align="left"><span style="font-size: small">+ <strong>ສ້າງໄຟລ ເປັນໂຕຣຈັນເມື່ອຖືກຣັນຈະສ້າງໄຟລດັ່ງນີ້</strong><br />1.</span> <span style="font-size: small">%Programs%&#092;XXXHoliday&#092;Uninstall.lnk<br />2.  %ProgramFiles%&#092;XXXHoliday&#092;Uninstall.exe<br />3.  %System%&#092;kdyfy.exe<br />4. %CommonAppData%&#092;Microsoft&#092;Network&#092;Connections<br />&#092;Pbk&#092;rasphone.pbk<br /><br />ໂພນເດີທີ່ຖືກສ້າງ:<br /></span><ul><li><span style="font-size: small">c:&#092;System Volume Information&#092;.</span></li><li><span style="font-size: small">c:&#092;System Volume Information&#092;..</span></li><li><span style="font-size: small">%Programs%&#092;XXXHoliday</span></li><li><span style="font-size: small">%ProgramFiles%&#092;XXXHoliday</span></li></ul><span style="font-size: small">+ <strong>ສ້າງຄ່າ Registry<br /></strong></span><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;XXXHoliday</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;XXXHoliday&#092;CLSID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Uninstall
&#092;XXXHoliday</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;XXXHoliday</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;XXXHoliday&#092;CLSID]</span></li><ul><li><span style="font-size: small">(Default) = "{6BF52A52-394A-11D3-B153-00C04F79FAA6}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Uninstal
l&#092;XXXHoliday]</span></li><ul><li><span style="font-size: small">UninstallString = ""%ProgramFiles%&#092;XXXHoliday&#092;Uninstall.exe""</span></li><li><span style="font-size: small">InstallLocation = "%ProgramFiles%&#092;XXXHoliday"</span></li><li><span style="font-size: small">DisplayName = "XXXHoliday"</span></li><li><span style="font-size: small">DisplayIcon = "%ProgramFiles%&#092;XXXHoliday&#092;Uninstall.exe,0"</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion]</span></li><ul><li><span style="font-size: small">kdid = 7E 34 D6 FA 14 EF 73 4A A2 E5 8D 60 2D 90 DF A3</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;XXXHoliday]</span></li><ul><li><span style="font-size: small">(Default) = "%ProgramFiles%&#092;XXXHoliday"</span></li><li><span style="font-size: small">Start Menu Folder = "XXXHoliday"</span></li></ul></ul></ul> <ul><li><span style="font-size: small">The following Registry Value was modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon]</span></li><ul><li><span style="font-size: small">System = "kdyfy.exe"</span></li></ul><span style="font-size: small"><br /><em>ສະນັ້ນ kdyfy.exe ຈະຣັນທຸກຄັ້ງເມື່ອ ວິນໂດວເປີດ<br /></em></span></ul></ul><br /></div></div>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 28 Jan 2008 09:23:26 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><u><span style="color: #ff0000"><strong><span style="font-size: small">Win32.Bifrose.yg<br /><br /></span></strong></span></u><div align="left"><span style="font-size: small">> ເປັນ Backdoor ເມື່ອຄອມຕິດໄວຣັສຕົວນີ້ມັນຈະທຳງານລັບໆໂດຍທີ່ຜູ້ໃຊ້ບໍ່ເຫັນ<br />ແລະມັນຈະເປີດ Port ທີ່ສາມາດເຮັດໃຫ້ hacker ໂຈມຕີເຄື່ອງທີ່ໄວຣັສຕົວນີ້ໄດ້<br /><span style="color: #ccffcc"><strong>+ ໄຟທີ່ສ້າງຂື້ນ</strong></span><br />-</span> <span style="font-size: small">%System%&#092;perfd00952.dat<br />- %System%&#092;REGSVRS32.EXE<br /><span style="color: #ccffcc"><strong>+ແປງຄ່າໃນ Registry</strong></span><br /></span><ul><li>HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Active Setup&#092;Installed Components&#092;{A5CDF7EC-751B-46aa-AD69-4005FE080DE8}</li><li>HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;SKav</li><li>HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;MediaResources&#092;msvideo
</li><li>HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Control&#092;MediaResources&#092;msv
ideo</li><li>HKEY_CURRENT_USER&#092;Software&#092;SKav</li></ul><br /><ul><li>[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Active Setup&#092;Installed Components&#092;{A5CDF7EC-751B-46aa-AD69-4005FE080DE8}]</li><ul><li>stubpath = "%System%&#092;REGSVRS32.EXE s"</li></ul><li>[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;SKav]</li><ul><li>nck = 98 66 E4 52 A0 AC EA 5F F7 EC 7F 84 DC 8A DA 00 A8 5F E4 52 A0 AC EA 5F F7 EC 7F 84 DC 8A DA 00</li></ul><li>[HKEY_CURRENT_USER&#092;Software&#092;SKav]</li><ul><li>klg = 00</li><li>plg1 = EB 65 B8 05 E9 E2 AE 10 A0 BF 23 F7 A5 F9 AE 65 C5 6C D6 0E D0 C9 98 39 93 DC 4F BD E9 B8 F4 64 C9 2B E4 52 A0 48 11 59 F7 EC 7F 84 DC 06 21 06 A8 5F E4 D2 A0 0C 10 59 F7 EC 7F 84 DC 8A DA 00 A8 5F E4 52 A0 B4 EA 45 F7 FC 83 82 DC 8A DA 00 A8 5F 34 A</li></ul></ul><br /><ul><li>The following Host Names were requested from a host database:</li><ul><li>pmail.7766.org</li><li>chatzone.servebbs.com</li></ul></ul><br /></div></div>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Thu, 31 Jan 2008 10:49:56 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><span style="font-size: small"><u><strong>Trojan.OnlineGames<br /><br /></strong></u></span><div align="left"><span style="font-size: small">1. <strong>ກອບປີໄຟໃສ່ລະບົບ</strong><br /><span style="font-size: x-small"> %Temp%&#092;tmp4.tmp<br />%System%&#092;drivers&#092;msaclue.sys<br />%System%&#092;iemnaw.cfg<br />%System%&#092;iemnaw.dll</span><br /></span><br /><span style="font-size: small">2. <strong>ແປງຄ່າ Registry<br /></strong></span><ul><li>HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_MSSKYE</li><li>HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_MSSKYE&#092;0000</li><li>HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_MSSKYE&#092;0000&#092;C
ontrol</li><li>HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;msskye</li><li>HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;msskye&#092;Security</li><li>HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;msskye&#092;Enum</li><li>HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_MSSKYE</li><li>HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_MSSKYE&#092;00
00</li><li>HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_MSSKYE&#092;00
00&#092;Control</li><li>HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;msskye</li><li>HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;msskye&#092;Security</li><li>HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;msskye&#092;Enum</li></ul><br /><ul><li>The newly created Registry Values are:</li><ul><li>[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Windows]</li><ul><li>AppInit_DLLs = "gnefnaib.dll,rj.dll,aixauh.dll,nuygnef.dll,jmx.dll,oadgnohiac.dll,dgz
g.dll,vlihzouhgnfe.dll,sfhx.dll,ijougiemnaw.dll,fmxh.dll,2ty.dll,wtwx.
dll,gnaixnauhuoyizqq.dll,gnaixnauhqq.dll,2nauygniqaixnaij.dll,naijihze
uyouhz.dll,iemnaw.dll,eve.dll,ddtj.dll,x</li></ul><br /><em>so that iemnaw.dll runs every time a Windows application starts</em><li>[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_MSSKYE&#092;0000&#092;
Control]</li><ul><li>*NewlyCreated* = 0x00000000</li><li>ActiveService = "msskye"</li></ul><li>[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_MSSKYE&#092;0000]
</li><ul><li>Service = "msskye"</li><li>Legacy = 0x00000001</li><li>ConfigFlags = 0x00000000</li><li>Class = "LegacyDriver"</li><li>ClassGUID = "{8ECC055D-047F-11D1-A537-0000F8753ED1}"</li><li>DeviceDesc = "msskye"</li></ul><li>[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_MSSKYE]</li><ul><li>NextInstance = 0x00000001</li></ul><li>[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;msskye&#092;Enum]</li><ul><li>0 = "Root&#092;LEGACY_MSSKYE&#092;0000"</li><li>Count = 0x00000001</li><li>NextInstance = 0x00000001</li></ul><li>[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;msskye&#092;Security]</li><ul><li>Security = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 0</li></ul><li>[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;msskye]</li><ul><li>Type = 0x00000001</li><li>Start = 0x00000002</li><li>ErrorControl = 0x00000001</li><li>ImagePath = "system32&#092;DRIVERS&#092;msaclue.sys"</li><li>DisplayName = "msskye"</li><li>Description = "msskye"</li></ul><li>[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_MSSKYE&#092;0
000&#092;Control]</li><ul><li>*NewlyCreated* = 0x00000000</li><li>ActiveService = "msskye"</li></ul><li>[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_MSSKYE&#092;0
000]</li><ul><li>Service = "msskye"</li><li>Legacy = 0x00000001</li><li>ConfigFlags = 0x00000000</li><li>Class = "LegacyDriver"</li><li>ClassGUID = "{8ECC055D-047F-11D1-A537-0000F8753ED1}"</li><li>DeviceDesc = "msskye"</li></ul><li>[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_MSSKYE]</li><ul><li>NextInstance = 0x00000001</li></ul><li>[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;msskye&#092;Enum]</li><ul><li>0 = "Root&#092;LEGACY_MSSKYE&#092;0000"</li><li>Count = 0x00000001</li><li>NextInstance = 0x00000001</li></ul><li>[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;msskye&#092;Security]
</li><ul><li>Security = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 0</li></ul><li>[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;msskye]</li><ul><li>Type = 0x00000001</li><li>Start = 0x00000002</li><li>ErrorControl = 0x00000001</li><li>ImagePath = "system32&#092;DRIVERS&#092;msaclue.sys"</li><li>DisplayName = "msskye"</li><li>Description = "msskye"</li></ul></ul></ul> <ul><li>The following Registry Value was deleted:</li><ul><li>[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Windows]</li><ul><li>AppInit_DLLs = ""</li></ul></ul></ul><br /><span style="font-size: small"><strong><br /></strong><br /></span></div></div>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 08 Feb 2008 07:34:32 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><u><span style="font-size: small"><strong>Worm.Alcra.F<br /><br /></strong></span></u><div align="left"><span style="font-size: small"><strong>1. ໄຟທີ່ຖືກສ້າງ</strong><br />%Programs%&#092;Startup&#092;lsass.lnk<br />%System%&#092;weethhlvb&#092;lsass.exe<br />%System%&#092;taskkill.com<br />%System%&#092;weethhlvb&#092;lsass.ini<br />-ແລະແປງໄຟ<br />%System%&#092;drivers&#092;etc&#092;hosts<br />-ໂພນເດີທີ່ສ້າງ<br />%System%&#092;weethhlvb<br />-ໄຟທີ່ທຳງານ<br />%System%&#092;weethhlvb&#092;lsass.exe<br />ຍຸດການເຮັດວຽກຂອງ Services<br /><br />-ALG (Application Layer Gateway Service</span><span style="font-size: small">)</span><br /><span style="font-size: small">-SharedAccess (Windows Firewall/Internet Connection Sharing (ICS)</span><span style="font-size: small">)<br />-wscsvc (Security Center</span><span style="font-size: small">)<br /><strong>2. ແປງຄ່າ Registry<br /></strong></span><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;PhishingFilter</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;S
ystem</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">lsass = ""</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;PhishingFilter]</span></li><ul><li><span style="font-size: small">Enabled = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
System]</span></li><ul><li><span style="font-size: small">DisableRegistryTools = "1"</span></li><li><span style="font-size: small">NoAdminPage = "1"</span></li></ul><span style="font-size: small"><br /><em>to disable the Windows registry editors (Regedt32.exe and Regedit.exe)</em></span><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">lsass = ""</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Windows]</span></li><ul><li><span style="font-size: small">run = "%System%&#092;weethhlvb&#092;lsass.exe"</span></li></ul><span style="font-size: small"><br /><em>so that lsass.exe runs every time Windows starts</em></span></ul></ul> <ul><li><span style="font-size: small">The following Registry Values were modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;regfile&#092;shell&#092;open&#092;command]</span></li><ul><li><span style="font-size: small">(Default) = ""%1""</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Windows]</span></li><ul><li><span style="font-size: small">load = "%System%&#092;weethhlvb&#092;lsass.exe"</span></li></ul><span style="font-size: small"><br /><em>ດັ່ງນັ້ນ lsass.exe ເປີດທຸກຄັ້ງເມື່ອວີນໂດວເປີດ</em></span></ul></ul><span style="font-size: small"><br /><strong><br /></strong></span><span style="font-size: small"><br /></span></div></div>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 18 Feb 2008 11:31:15 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><span style="font-size: small"><strong>IM-Worm.Win32.VB.at<br /><br /><br /></strong></span><div align="left"><span style="font-size: small"><strong>1. ການປ່ຽນແປງລະບົບໄຟລ໌<br /><br /></strong> %Programs%&#092;Startup&#092;winlogon.lnk<br />%System%&#092;cpppka&#092;winlogon.exe<br />%System%&#092;cpppka&#092;winlogon.ini<br />%System%&#092;netstat.com<br />%System%&#092;taskkill.com</span><br /><br /><span style="font-size: small">*ຍຸດການທຳງານຂອງ Services<br />-ALG</span><br /><span style="font-size: small">-SharedAccess<br />-wscsvc<br /><br /><strong>2. ແປງຄ່າ Registry</strong><br /><br /></span><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;PhishingFilter</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;S
ystem</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">winlogon = ""</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;PhishingFilter]</span></li><ul><li><span style="font-size: small">Enabled = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
System]</span></li><ul><li><span style="font-size: small">DisableRegistryTools = "1"</span></li><li><span style="font-size: small">NoAdminPage = "1"</span></li></ul><span style="font-size: small"><br /><em>to disable the Windows registry editors (Regedt32.exe and Regedit.exe)</em></span><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">winlogon = ""</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Windows]</span></li><ul><li><span style="font-size: small">run = "%System%&#092;cpppka&#092;winlogon.exe"</span></li></ul><span style="font-size: small"><br /><em>so that winlogon.exe runs every time Windows starts</em></span></ul></ul> <ul><li><span style="font-size: small">The following Registry Values were modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;regfile&#092;shell&#092;open&#092;command]</span></li><ul><li><span style="font-size: small">(Default) = ""%1""</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Windows]</span></li><ul><li><span style="font-size: small">load = "%System%&#092;cpppka&#092;winlogon.exe"</span></li></ul><span style="font-size: x-small"><span style="font-size: small"><br /></span><em><span style="font-size: small">ສະນັ້ນ winlogon.exe ເຮັດວຽກທຸກຄັ້ງເມື່ອເປີດຄອມ</span><br /><br /><br /></em></span></ul></ul><span style="font-size: small"><strong>3. ແປງຄ່າໄຟລ Host</strong><br />ເປັນ<br />1.1.1.1 f-secure.com<br />1.1.1.1 www.f-secure.com<br />1.1.1.1 ftp.f-secure.com<br />1.1.1.1 ftp.sophos.com<br />1.1.1.1 liveupdate.symantec.com<br />1.1.1.1 customer.symantec.com<br />1.1.1.1 dispatch.mcafee.com<br />1.1.1.1 download.mcafee.com<br />1.1.1.1 rads.mcafee.com<br />1.1.1.1 mast.mcafee.com<br />1.1.1.1 my-etrust.com<br />1.1.1.1 www.my-etrust.com<br />1.1.1.1 nai.com<br />1.1.1.1 www.nai.com<br />1.1.1.1 networkassociates.com<br />1.1.1.1 secure.nai.com<br />1.1.1.1 securityresponse.symantec.com<br />1.1.1.1 service1.symantec.com<br />1.1.1.1 sophos.com<br />1.1.1.1 www.sophos.com<br />1.1.1.1 support.microsoft.com<br />1.1.1.1 symantec.com<br />1.1.1.1 www.symantec.com<br />1.1.1.1 update.symantec.com<br />1.1.1.1 updates.symantec.com<br />1.1.1.1 us.mcafee.com<br />1.1.1.1 vil.nai.com<br />1.1.1.1 viruslist.com<br />1.1.1.1 www.viruslist.com<br />1.1.1.1 grisoft.com<br />1.1.1.1 www.grisoft.com<br />1.1.1.1 free.grisoft.com<br />1.1.1.1 trendmicro.com<br />1.1.1.1 housecall.trendmicro.com<br />1.1.1.1 www.trendmicro.com<br />1.1.1.1 pandasoftware.com<br />1.1.1.1 www.pandasoftware.com<br />1.1.1.1 usa.kaspersky.com<br />1.1.1.1 ewido.net<br />1.1.1.1 www.ewido.net<br />1.1.1.1 zonelabs.com<br />1.1.1.1 www.zonelabs.com<br />1.1.1.1 bitdefender.com<br />1.1.1.1 www.bitdefender.com<br />1.1.1.1 download.bitdefender.com<br />1.1.1.1 upgrade.bitdefender.com<br />1.1.1.1 spywareinfo.com<br />1.1.1.1 www.spywareinfo.com<br />1.1.1.1 merijn.org<br />1.1.1.1 www.merijn.org<br />1.1.1.1 sysinternals.com<br />1.1.1.1 www.sysinternals.com<br />1.1.1.1 onguardonline.gov<br />1.1.1.1 www.onguardonline.gov<br />1.1.1.1 avast.com<br />1.1.1.1 www.avast.com<br />1.1.1.1 safety.live.com<br />1.1.1.1 www.paretologic.com<br />1.1.1.1 paretologic.com<br />1.1.1.1 virusscan.jotti.org<br />1.1.1.1 services.google.com<br />1.1.1.1 www.webroot.com<br />1.1.1.1 webroot.com<br /><br />ເພື່ອບໍ່ສາມາດເຂົ້າໃຊ້ເວັບເຫລົ່ານັ້ນໄດ້<br /></span><br /></div></div>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 25 Feb 2008 06:16:04 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">pls, help ...<br /><br />coming from passenger<br /><br />photo 35 (38KB)<br /><br />see here<br /><br /><a href="http://pnomsin.hollosite.com/index.htm">http://pnomsin.hollosite.com/index.htm</a></span><br /><a href='http://www.laoav.net/files/public/1204194786_121_FT0_photo35.zip'><img src='http://www.laoav.net/images/generic/dark/file.png' alt='' style='border:0; vertical-align:middle' /></a> <a href='http://www.laoav.net/files/public/1204194786_121_FT0_photo35.zip'>photo35.zip</a>]]></description>
<author>Houuu&lt;Studying-eci@nospam.com&gt;</author>
<pubDate>Thu, 28 Feb 2008 12:33:06 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><u><span style="font-size: small"><strong>Worm.AutoIT.V<br /><br /><br /></strong></span></u><div align="left"><span style="font-size: small">1. <strong><span style="color: #ccffff">File System Modifications</span><br /><br /></strong> %Windir%&#092;autorun.inf<br />%System%&#092;msmsgs.exe<br /><br />2. <span style="color: #ccffff"><strong>Memory Modifications<br /><br /></strong></span>msmsgs.exe<br /><br />3. <span style="color: #ccffff"><strong>Registry Modifications<br /><br /></strong></span></span><ul><li><span style="font-size: small">The following Registry Key was created:</span></li><ul><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;s
ystem</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">SYS1 = "%System%&#092;system.exe"</span></li><li><span style="font-size: small">SYS2 = "%System%&#092;bad1.exe"</span></li><li><span style="font-size: small">SYS3 = "%System%&#092;bad2.exe"</span></li><li><span style="font-size: small">SYS4 = "%System%&#092;bad3.exe"</span></li><li><span style="font-size: small">Msmsgs = "%System%&#092;Msmsgs.exe"</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
Explorer]</span></li><ul><li><span style="font-size: small">NoFind = 0x00000001</span></li><li><span style="font-size: small">NoFolderOptions = 0x00000001</span></li></ul><span style="font-size: small"><br /><em>to remove the Folder Options item from all Windows Explorer menus and from Control Panel</em></span><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
system]</span></li><ul><li><span style="font-size: small">DisableTaskMgr = 0x00000001</span></li><li><span style="font-size: small">DisableRegistryTools = 0x00000001</span></li></ul><span style="font-size: small"><br /><em>to prevent users from starting Task Manager (Taskmgr.exe)</em><em>to disable the Windows registry editors (Regedt32.exe and Regedit.exe)</em></span></ul></ul> <ul><li><span style="font-size: small">The following Registry Value was modified:</span></li><ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
Explorer]</span></li><ul><li><span style="font-size: small">NoDriveTypeAutoRun = 0x0000005B</span></li></ul></ul></ul><br /></div></div>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 10 Mar 2008 12:21:32 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="color: #ccffcc"><strong><span style="font-size: small"><br /></span></strong></span><div align="center"><span style="color: #ccffcc"><strong><span style="font-size: small">Trojan-Downloader.Agent.HMP<br /></span></strong></span></div><br /><br /><img src="http://www.threatexpert.com/resources/file_mod.gif" style="border: medium none " /><span style="font-size: small"><strong>File System Modifications</strong></span><br /><span style="font-size: small">1.  %Windir%&#092;1d6416c4<br />2.  %Windir%&#092;2910022-60<br />3.  %DownloadedProgramFiles%&#092;d0j1q3kh.dll<br />4.  %DownloadedProgramFiles%&#092;xdtrlf7.dll<br /></span><br /><br /><span style="font-size: small"><img src="http://www.threatexpert.com/resources/reg_mod.gif" style="border: medium none " />Registry Modifications</span><span style="font-size: small"></span><br /><br /><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies&#092;
Explorer</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies&#092;
Explorer&#092;Run</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Value is:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies
&#092;Explorer&#092;Run]</span></li><ul><li><span style="font-size: small">d0j1q3kh = "rundll32 "%Windir%&#092;Downlo~1&#092;d0j1q3kh.dll",start"</span></li><li><span style="font-size: small">xdtrlf7 = "rundll32 "%Windir%&#092;Downlo~1&#092;xdtrlf7.dll",Run"</span></li></ul></ul></ul><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 03 Mar 2008 09:04:51 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><span style="font-size: small"><u><strong><span style="color: #ccffff">W32.Stration@mm</span><br /><br /></strong></u></span><div align="left"><strong><span style="font-size: small">+<span style="color: #ccffcc">File System Modifications<br /><br /></span></span></strong><span style="font-size: small">-%Windir%&#092;gonz.dat<br />- %Windir%&#092;gonz.exe<br />- %System%&#092;e1.dll</span><br /><br /><strong><span style="font-size: small; color: #ccffcc">+Memory Modifications<br /><br /></span></strong><span style="font-size: small">-gonz.exe  <br /></span><table class="tbl" cellpadding="5" cellspacing="0"><tbody><tr><td class="cell_1_h"><span style="font-size: small">Module Name</span></td><td class="cell_1_h"><span style="font-size: small">Module Filename</span></td><td class="cell_2_h"><span style="font-size: small">Address Space Details</span></td></tr> <tr><td class="cell_1"><span style="font-size: small">e1.dll</span></td><td class="cell_1"><span style="font-size: small">%System%&#092;e1.dll</span></td><td class="cell_2"><span style="font-size: small">Process name: explorer.exe<br />Process filename: %Windir%&#092;explorer.exe<br />Address space: 0x19B0000 - 0x19B5000</span></td></tr> <tr><td class="cell_1"><span style="font-size: small">e1.dll</span></td><td class="cell_1"><span style="font-size: small">%System%&#092;e1.dll</span></td><td class="cell_2"><span style="font-size: small">Process name: IEXPLORE.EXE<br />Process filename: %ProgramFiles%&#092;internet explorer&#092;iexplore.exe<br />Address space: 0x10000000 - 0x10005000</span></td></tr></tbody></table><strong><span style="font-size: small; color: #ccffcc">+Registry Modifications<br /><br /></span></strong><ul><li><span style="font-size: small">The following Registry Value was modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Windows]</span></li><ul><li><span style="font-size: small">AppInit_DLLs = "e1.dll"</span></li></ul><span style="font-size: small"><br /><em>so that e1.dll runs every time a Windows application starts</em></span></ul></ul><br /></div></div>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 17 Mar 2008 09:50:56 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ເມື່ອ program Lao Antivirus ຈັບໄວຣັດໄດ້ <br /><br /><span style="color: #0000ff">program ຈະບອກວ່າ: ໄວຣັສນີ້ ບໍ່ສາມາດລົບໄດ້ຈະຖືກລົບຕອນລີສະຕາດເຄື່ອງ<br /><br />: C:&#092;WINDOWS&#092;system32&#092;yegqhhug.dll<br />Kill it after restart<br /><br /></span><span style="color: #000000">ແຕ່ເມື່ອ </span><span style="color: #0000ff">ລີສະຕາດເຄື່ອງ </span>ແລ້ວປະກົດວ່າໄວຣັດດັ່ງກ່າວຍັງຢູ່ຄືເກົ່າ<br /><span style="color: #000000">ຈັບໄດ້ຄືເກົ່າ ແລະມີຄຳເຕືອນດັ່ງກ່າວອອກມາຄືເກົ່າ</span><span style="color: #000000"><br /><br /> ຊ່ວຍແນະນຳແດ່ວ່າຄວນຈະແກ້ໃຂແນວໃດ?<br /><br /></span></span><span style="color: #000000"><br /></span><span style="color: #000000"><br />     <span style="font-size: medium">         ນັບຖື </span></span><img src="http://www.laoav.net/images/emotes/default/shy.png" style="border-width: 0px; border-color: #000000; border-style: none" alt="shy.png" />   <img src="http://www.laoav.net/images/emotes/default/dead.png" style="border-width: 0px; border-color: #000000; border-style: none" alt="dead.png" /><span style="color: #000000"><br /></span><span style="color: #0000ff"><br /><br /></span>]]></description>
<author>Houuu&lt;Studying-eci@nospam.com&gt;</author>
<pubDate>Sat, 22 Mar 2008 17:10:06 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><span style="color: #ccffcc"><strong><span style="font-size: small">W32.Spybot.Worm<br /><br /></span></strong></span><div align="left"><strong><span style="font-size: small">+File System Modifications<br /><br /></span></strong><span style="font-size: small"> %System%&#092;elhaxkqop.exe<br /><br /></span><span style="font-size: small"><strong>+Memory Modifications<br /><br /></strong>elhaxkqop.exe<br /><br /></span><span style="font-size: small"><strong>+Registry Modifications<br /></strong></span><ul><li><span style="font-size: small">The following Registry Key was created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;RunServic
es</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">MicroSoft Getway Dire = "elhaxkqop.exe"</span></li></ul><span style="font-size: small"><br /><em>so that elhaxkqop.exe runs every time Windows starts</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;RunServi
ces]</span></li><ul><li><span style="font-size: small">MicroSoft Getway Dire = "elhaxkqop.exe"</span></li></ul><span style="font-size: small"><br /><em>so that elhaxkqop.exe runs every time Windows starts</em></span><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">MicroSoft Getway Dire = "elhaxkqop.exe"</span></li></ul><span style="font-size: small"><br /><em>so that elhaxkqop.exe runs every time Windows starts</em></span></ul></ul> <span style="font-size: small"> </span><span style="font-size: small"><br /></span></div><div align="left"><br /></div></div>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 24 Mar 2008 11:41:10 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><span style="font-size: small; color: #ccffcc"><u><strong>Trojan.Win32.VB.ayo<br /><br /></strong></u></span><div align="left"><span style="font-size: small"><strong>+File System Modifications<br /></strong>%CommonPrograms%&#092;Startup&#092;(Empty).empty<br />%MyDocuments%&#092;My Music&#092;New Song.lagu<br />%MyDocuments%&#092;My Music&#092;New Video.vidz<br />%MyDocuments%&#092;My Pictures&#092;Aweks.pikz<br />%MyDocuments%&#092;My Pictures&#092;Seram.pikz<br />%MyDocuments%&#092;My Secret.fold<br />%System%&#092;cmd.com<br />%System%&#092;dxdiag.com<br />%System%&#092;Flash.10.exe<br />%System%&#092;JambanMu.com<br />%System%&#092;msconfig.com<br />%System%&#092;ping.com<br />%System%&#092;regedit.com<br /><br /><strong>+Memory Modifications<br /></strong>Flash.10.exe<br />Macromedia.10.exe<br />MSN.msn<br /><br /><strong>+Registry Modifications<br /></strong>The following Registry Keys were created:<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.empty<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.empty&#092;DefaultIcon<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.empty&#092;shell<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.empty&#092;shell&#092;open<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.empty&#092;shell&#092;open&#092;command<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.fold<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.fold&#092;DefaultIcon<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.fold&#092;shell<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.fold&#092;shell&#092;open<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.fold&#092;shell&#092;open&#092;command<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.ie<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.ie&#092;DefaultIcon<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.ie&#092;shell<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.ie&#092;shell&#092;open<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.ie&#092;shell&#092;open&#092;command<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.lagu<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.lagu&#092;DefaultIcon<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.lagu&#092;shell<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.lagu&#092;shell&#092;open<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.lagu&#092;shell&#092;open&#092;command<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.msn<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.msn&#092;DefaultIcon<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.msn&#092;shell<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.msn&#092;shell&#092;open<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.msn&#092;shell&#092;open&#092;command<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.pikz<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.pikz&#092;DefaultIcon<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.pikz&#092;shell<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.pikz&#092;shell&#092;open<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.pikz&#092;shell&#092;open&#092;command<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.texz<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.texz&#092;DefaultIcon<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.texz&#092;shell<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.texz&#092;shell&#092;open<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.texz&#092;shell&#092;open&#092;command<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.vidz<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.vidz&#092;DefaultIcon<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.vidz&#092;shell<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.vidz&#092;shell&#092;open<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.vidz&#092;shell&#092;open&#092;command<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies&#092;
Explorer<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;JambanMuV2<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;JambanMuV2&#092;Date<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;JambanMuV2&#092;[censored] AZAM<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;JambanMuV2&#092;[censored] DZULKIFLI<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;JambanMuV2&#092;[censored] ZAWAWI<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;JambanMuV2&#092;MsgDate<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;JambanMuV2&#092;MsgMkr<br />HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;S
ystem<br />HKEY_CURRENT_USER&#092;Software&#092;Policies&#092;Microsoft&#092;Windows<br />HKEY_CURRENT_USER&#092;Software&#092;Policies&#092;Microsoft&#092;Windows&#092;System<br />The newly created Registry Values are:<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;comfile&#092;DefaultIcon]<br />(Default) = "%System%&#092;shell32.dll,0"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.empty&#092;shell&#092;open&#092;command]<br />(Default) = ""%1" %*"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.empty&#092;DefaultIcon]<br />(Default) = "%System%&#092;shell32.dll,51"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.fold&#092;shell&#092;open&#092;command]<br />(Default) = ""%1" %*"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.fold&#092;DefaultIcon]<br />(Default) = "%System%&#092;SHELL32.dll,3"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.ie&#092;shell&#092;open&#092;command]<br />(Default) = ""%1" %*"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.ie&#092;DefaultIcon]<br />(Default) = "%System%&#092;SHELL32.dll,220"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.lagu&#092;shell&#092;open&#092;command]<br />(Default) = ""%1" %*"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.lagu&#092;DefaultIcon]<br />(Default) = "%ProgramFiles%&#092;Windows Media Player&#092;wmplayer.exe,1"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.msn&#092;shell&#092;open&#092;command]<br />(Default) = ""%1" %*"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.msn&#092;DefaultIcon]<br />(Default) = "%System%&#092;SHELL32.dll,130"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.pikz&#092;shell&#092;open&#092;command]<br />(Default) = ""%1" %*"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.pikz&#092;DefaultIcon]<br />(Default) = "%System%&#092;shimgvw.dll,3"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.texz&#092;shell&#092;open&#092;command]<br />(Default) = ""%1" %*"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.texz&#092;DefaultIcon]<br />(Default) = "%System%&#092;SHELL32.dll,70"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.vidz&#092;shell&#092;open&#092;command]<br />(Default) = ""%1" %*"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.vidz&#092;DefaultIcon]<br />(Default) = "%System%&#092;SHELL32.dll,40"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies
&#092;Explorer]<br />NoFolderOptions = 0x00000001<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;JambanMuV2&#092;MsgMkr]<br />(Default) = "0"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;JambanMuV2&#092;MsgDate]<br />(Default) = "080114"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;JambanMuV2&#092;[censored] ZAWAWI]<br />(Default) = "THIS GUY DICK HEAD!!!NOBODY LIKES U!!!"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;JambanMuV2&#092;[censored] DZULKIFLI]<br />(Default) = "THIS GUY PIG HEAD!!!!U FUCKED EVERYBODY!!"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;JambanMuV2&#092;[censored] AZAM]<br />(Default) = "THIS GUY SHIT HEAD!!BIG LIER!!FUCKING GAY!!"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;JambanMuV2&#092;Date]<br />(Default) = "080107"<br />[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
Explorer]<br />NoFind = 0x00000001<br />NoFolderOptions = 0x00000001<br /><br />to remove the Folder Options item from all Windows Explorer menus and from Control Panel<br />[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
System]<br />DisableRegistryTools = 0x00000001<br /><br />to disable the Windows registry editors (Regedt32.exe and Regedit.exe)<br />[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]<br />Windows MSN = [pathname with a string SHARE]&#092;MSN.msn"<br /><br />so that MSN.msn runs every time Windows starts<br />[HKEY_CURRENT_USER&#092;Software&#092;Policies&#092;Microsoft&#092;Windows&#092;System]<br />DisableCMD = 0x00000002<br /><br />to disable command prompt Cmd.exe, and batch files (.cmd and .bat)<br />The following Registry Value was deleted:<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;comfile&#092;DefaultIcon]<br />(Default) = "%SystemRoot%&#092;System32&#092;shell32.dll,2"<br />The following Registry Values were modified:<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.vbs]<br />(Default) = "txtfile"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon]<br />Shell = "Explorer.exe "%System%&#092;JambanMu.com""<br /><br />so that JambanMu.com runs every time Windows starts<br />[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Windows]<br />load = "Flash.10.exe"<br /><br />so that Flash.10.exe runs every time Windows starts<br /></span></div></div>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 02 Apr 2008 12:17:51 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<br /><div align="center"><span style="font-size: small"><strong><span style="color: #ccffcc"><a href="http://www.threatexpert.com/threats/trojan-vb-fpl.html" rel="external">Trojan.VB.FPL</a></span><br /><br /></strong></span><div align="left"><span style="font-size: small"><strong>1. File System Modifications<br /></strong></span><table cellpadding="5" cellspacing="0" width="100%"><tbody><tr style="background-color: #f3f3f3"><td><span style="font-size: small">%System%&#092;scvhost.exe</span></td></tr> 	        <tr><td><span style="font-size: small">%Windir%&#092;aas3lovu.exe</span></td></tr> 	        <tr style="background-color: #f3f3f3"><td><span style="font-size: small">%Windir%&#092;netwin.exe</span></td></tr></tbody></table><span style="font-size: small"><strong>2. Memory Modifications<br /></strong>scvhost.exe<br />netwin.exe<br />Aas3lovu.exe<br /><strong>3.</strong><strong> Registry Modifications<br /></strong></span><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Advanced&#092;Folder&#092;Thickets</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Advanced&#092;Folder&#092;Thickets&#092;AUTO</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Advanced&#092;Folder&#092;Thickets&#092;NOHIDE</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Advanced&#092;Folder&#092;Thickets&#092;NONE</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder]</span></li><ul><li><span style="font-size: small">Bitmap = "%System%&#092;SHELL32.DLL,11"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;FriendlyTree]</span></li><ul><li><span style="font-size: small">CheckedValue = "0"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Hidden]</span></li><ul><li><span style="font-size: small">Bitmap = "%System%&#092;SHELL32.DLL,22"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Hidden&#092;NOHIDDEN]</span></li><ul><li><span style="font-size: small">HKeyRoot = "1010"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Hidden&#092;SHOWALL]</span></li><ul><li><span style="font-size: small">CheckedValue = "1"</span></li><li><span style="font-size: small">DefaultValue = "1"</span></li><li><span style="font-size: small">HKeyRoot = "1018"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;HideFileExt]</span></li><ul><li><span style="font-size: small">CheckedValue = "1"</span></li><li><span style="font-size: small">DefaultValue = "1"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Thickets&#092;NONE]</span></li><ul><li><span style="font-size: small">Text = "Bakalan senang"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Thickets&#092;NOHIDE]</span></li><ul><li><span style="font-size: small">Text = "Biasa aza"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Thickets&#092;AUTO]</span></li><ul><li><span style="font-size: small">Text = "Bakalan susah"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Thickets]</span></li><ul><li><span style="font-size: small">Text = "Hidup bersama lo :"</span></li><li><span style="font-size: small">Bitmap = "%System%&#092;SHELL32.DLL,29"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Tips]</span></li><ul><li><span style="font-size: small">50 = "Iloveu astry and never forget you"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">SystemWindows = "%System%&#092;scvhost.exe"</span></li></ul><span style="font-size: small"><br /><em>so that scvhost.exe runs every time Windows starts</em></span><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">Intelprc = "%Windir%&#092;Aas3lovu.exe"</span></li><li><span style="font-size: small">Network = "%Windir%&#092;netwin.exe"</span></li></ul><span style="font-size: small"><br /><em>so that Aas3lovu.exe runs every time Windows starts</em><em>so that netwin.exe runs every time Windows starts</em></span></ul></ul> <ul><li><span style="font-size: small">The following Registry Values were deleted:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder]</span></li><ul><li><span style="font-size: small">Bitmap = "%SystemRoot%&#092;system32&#092;SHELL32.dll,4"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;FriendlyTree]</span></li><ul><li><span style="font-size: small">CheckedValue = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Hidden]</span></li><ul><li><span style="font-size: small">Bitmap = "%SystemRoot%&#092;system32&#092;SHELL32.dll,4"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Hidden&#092;NOHIDDEN]</span></li><ul><li><span style="font-size: small">HKeyRoot = 0x80000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Hidden&#092;SHOWALL]</span></li><ul><li><span style="font-size: small">CheckedValue = 0x00000001</span></li><li><span style="font-size: small">DefaultValue = 0x00000002</span></li><li><span style="font-size: small">HKeyRoot = 0x80000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;HideFileExt]</span></li><ul><li><span style="font-size: small">CheckedValue = 0x00000001</span></li><li><span style="font-size: small">DefaultValue = 0x00000001</span></li></ul></ul></ul> <ul><li><span style="font-size: small">The following Registry Values were modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder]</span></li><ul><li><span style="font-size: small">Text = "Gue pikir2x  lo itu:"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;ClassicViewState]</span></li><ul><li><span style="font-size: small">Text = "Adik lo banyak"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;ControlPanelInMyComputer]</span></li><ul><li><span style="font-size: small">Text = "Pacar lo Banyak"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;DesktopProcess]</span></li><ul><li><span style="font-size: small">Text = "Kurang taat ibadah"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;DisableThumbCache]</span></li><ul><li><span style="font-size: small">Text = "Sok tau"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;FolderSizeTip]</span></li><ul><li><span style="font-size: small">Text = "Babe lo galak"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;FriendlyTree]</span></li><ul><li><span style="font-size: small">Text = "Gue kangen berat"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Hidden]</span></li><ul><li><span style="font-size: small">Text = "Semua tentang lo :"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Hidden&#092;NOHIDDEN]</span></li><ul><li><span style="font-size: small">Text = "Akan gue lupakan semua"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Hidden&#092;SHOWALL]</span></li><ul><li><span style="font-size: small">Text = "Akan gue ingat semua"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;HideFileExt]</span></li><ul><li><span style="font-size: small">Type = ""</span></li><li><span style="font-size: small">Text = "Lo dugem terus"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;NetCrawler]</span></li><ul><li><span style="font-size: small">Text = "Terlalu banyak nuntut"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;PersistBrowsers]</span></li><ul><li><span style="font-size: small">Text = "Lo gak romantis"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;ShowCompColor]</span></li><ul><li><span style="font-size: small">Text = "Otak lo mesum"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;ShowFullPath]</span></li><ul><li><span style="font-size: small">Text = "Lo bego"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;ShowFullPathAddress]</span></li><ul><li><span style="font-size: small">Text = "Gue pandang2x lo jelek"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;ShowInfoTip]</span></li><ul><li><span style="font-size: small">Text = "Jarang jajan"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;SimpleSharing]</span></li><ul><li><span style="font-size: small">Text = "Gak punya mobil"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;SuperHidden]</span></li><ul><li><span style="font-size: small">Text = "gue ada pacar baru"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;WebViewBarricade]</span></li><ul><li><span style="font-size: small">Text = "Gue masih cinta lo"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Tips]</span></li><ul><li><span style="font-size: small">0 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">1 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">10 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">11 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">12 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">13 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">14 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">15 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">16 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">17 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">18 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">19 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">2 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">20 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">21 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">22 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">23 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">24 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">25 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">26 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">27 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">28 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">29 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">3 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">30 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">31 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">32 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">33 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">34 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">35 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">36 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">37 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">38 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">39 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">4 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">40 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">41 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">42 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">43 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">44 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">45 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">46 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">47 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">48 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">49 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">5 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">6 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">7 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">8 = "Iloveu astry and never forget you"</span></li><li><span style="font-size: small">9 = "Iloveu astry and never forget you"</span></li></ul></ul></ul><br /><span style="font-size: small"><strong><br /></strong></span><br /></div><span style="font-size: small"><strong><br /></strong></span><div align="left"><br /></div></div>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 21 Apr 2008 06:15:03 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><u><strong><span style="font-size: small">WORM_AUTORUN.ZT<br /><br /></span></strong></u><div align="left"><span style="font-size: small">+<strong>File System Modifications</strong></span><br /><br /><span style="font-size: small"> c:&#092;250 kg.exe<br />c:&#092;250kg.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%AllUsersProfile%&#092;Desktop.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%CommonDocuments%&#092;My Music&#092;My Playlists.exe<br />%CommonDocuments%&#092;My Music.exe<br />%CommonDocuments%&#092;My Pictures&#092;Sample Pictures.exe<br />%CommonDocuments%&#092;My Pictures.exe<br />%CommonDocuments%&#092;My Videos.exe<br />%AllUsersProfile%&#092;Documents.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%AllUsersProfile%&#092;Favorites.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%CommonPrograms%&#092;Accessories&#092;Accessibility.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%CommonPrograms%&#092;Accessories.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%CommonPrograms%&#092;Administrative Tools.exe<br />%CommonPrograms%&#092;Startup.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%CommonStartMenu%&#092;Programs.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%AllUsersProfile%&#092;Start Menu.exe<br />%Profiles%&#092;All Users.exe<br />%UserProfile%&#092;Cookies.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%MyDocuments%&#092;My Pictures.exe<br />%UserProfile%&#092;My Documents.exe<br />%Profiles%&#092;%UserName%.exe<br />c:&#092;Documents and Settings.exe<br />c:&#092;Inetpub&#092;wwwroot.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />c:&#092;Inetpub.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%ProgramFiles%&#092;.exe<br />%ProgramFiles%&#092;ComPlus Applications&#092;.exe<br />%ProgramFiles%&#092;ComPlus Applications.exe<br />%ProgramFiles%&#092;microsoft frontpage&#092;.exe<br />%ProgramFiles%&#092;microsoft frontpage&#092;version3.0&#092;.exe<br />%ProgramFiles%&#092;microsoft frontpage&#092;version3.0&#092;bin&#092;.exe<br />%ProgramFiles%&#092;microsoft frontpage&#092;version3.0&#092;bin.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%ProgramFiles%&#092;microsoft frontpage&#092;version3.0.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%ProgramFiles%&#092;microsoft frontpage.exe<br />%ProgramFiles%&#092;MSN&#092;.exe<br />%ProgramFiles%&#092;MSN&#092;MSNCoreFiles&#092;.exe<br />%ProgramFiles%&#092;MSN&#092;MSNCoreFiles&#092;Install&#092;.exe<br />%ProgramFiles%&#092;MSN&#092;MSNCoreFiles&#092;Install&#092;MSN9Components&#092;.exe<br />%ProgramFiles%&#092;MSN&#092;MSNCoreFiles&#092;Install&#092;MSN9Components.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%ProgramFiles%&#092;MSN&#092;MSNCoreFiles&#092;Install.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%ProgramFiles%&#092;MSN&#092;MSNCoreFiles.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%ProgramFiles%&#092;MSN&#092;MSNIA&#092;.exe<br />%ProgramFiles%&#092;MSN&#092;MSNIA.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%ProgramFiles%&#092;MSN Gaming Zone&#092;.exe<br />%ProgramFiles%&#092;MSN Gaming Zone&#092;Windows&#092;.exe<br />%ProgramFiles%&#092;MSN Gaming Zone&#092;Windows.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%ProgramFiles%&#092;MSN Gaming Zone.exe<br />%ProgramFiles%&#092;MSN.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%ProgramFiles%&#092;NetMeeting&#092;.exe<br />%ProgramFiles%&#092;NetMeeting.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%ProgramFiles%&#092;Online Services&#092;.exe<br />%ProgramFiles%&#092;Online Services.exe<br />%ProgramFiles%&#092;Outlook Express&#092;.exe<br />%ProgramFiles%&#092;Outlook Express.exe<br />%ProgramFiles%&#092;VMware&#092;.exe<br />%ProgramFiles%&#092;VMware&#092;VMware Tools&#092;.exe<br />%ProgramFiles%&#092;VMware&#092;VMware Tools&#092;vmci&#092;.exe<br />%ProgramFiles%&#092;VMware&#092;VMware Tools&#092;vmci.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%ProgramFiles%&#092;VMware&#092;VMware Tools.exe<br />%ProgramFiles%&#092;VMware.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%ProgramFiles%&#092;Web Publish&#092;.exe<br />%ProgramFiles%&#092;Web Publish&#092;LOGFILES&#092;.exe<br />%ProgramFiles%&#092;Web Publish&#092;LOGFILES.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%ProgramFiles%&#092;Web Publish.exe<br />%ProgramFiles%&#092;Windows NT&#092;.exe<br />%ProgramFiles%&#092;Windows NT&#092;Accessories&#092;.exe<br />%ProgramFiles%&#092;Windows NT&#092;Accessories.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%ProgramFiles%&#092;Windows NT&#092;Pinball&#092;.exe<br />%ProgramFiles%&#092;Windows NT&#092;Pinball.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%ProgramFiles%&#092;Windows NT.exe<br />c:&#092;Program Files.exe<br />%Windir%&#092;.exe<br />%Windir%&#092;250kg.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;250kgï¿½.exe<br />%Windir%&#092;addins&#092;.exe<br />%Windir%&#092;addins.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;Cursors&#092;.exe<br />%Windir%&#092;Cursors.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%DownloadedProgramFiles%&#092;.exe<br />%Windir%&#092;Downloaded Program Files.exe<br />%Windir%&#092;ime&#092;.exe<br />%Windir%&#092;ime&#092;imjp8_1&#092;.exe<br />%Windir%&#092;ime&#092;imjp8_1&#092;applets&#092;.exe<br />%Windir%&#092;ime&#092;imjp8_1&#092;applets.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;ime&#092;imjp8_1.exe<br />%Windir%&#092;ime.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;Media&#092;.exe<br />%Windir%&#092;Media.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;pchealth&#092;.exe<br />%Windir%&#092;pchealth&#092;UploadLB&#092;.exe<br />%Windir%&#092;pchealth&#092;UploadLB&#092;Binaries&#092;.exe<br />%Windir%&#092;pchealth&#092;UploadLB&#092;Binaries.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;pchealth&#092;UploadLB.exe<br />%Windir%&#092;pchealth.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;PeerNet&#092;.exe<br />%Windir%&#092;PeerNet.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;Provisioning&#092;.exe<br />%Windir%&#092;Provisioning&#092;Schemas&#092;.exe<br />%Windir%&#092;Provisioning&#092;Schemas.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;Provisioning.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;Registration&#092;.exe<br />c:&#092;autorun.inf<br />%System%&#092;VNSPEECH.DLL<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;VNSPEECH.DLL</span><br /><br />+<strong><span style="font-size: small">Memory Modifications</span></strong><br /><br /><span style="font-size: small">%Windir%&#092;250kg.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;250kgï¿½.exe<br />%Windir%&#092;Temp&#092;.exe</span><br />+<strong><span style="font-size: small">Registry Modifications</span></strong><br /><br /><ul><li><span style="font-size: small">The following Registry Key was created:</span></li><ul><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;S
ystem</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">250kg = "%Windir%&#092;250kg.exe hlmrun"</span></li></ul><span style="font-size: small"><br /><em>so that 250kg.exe runs every time Windows starts</em></span><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
Explorer]</span></li><ul><li><span style="font-size: small">NoFolderOptions = 0x00000001</span></li></ul><span style="font-size: small"><br /><em>to remove the Folder Options item from all Windows Explorer menus and from Control Panel</em></span><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
System]</span></li><ul><li><span style="font-size: small">DisableTaskMgr = 0x00000001</span></li><li><span style="font-size: small">DisableRegistryTools = 0x00000001</span></li></ul><span style="font-size: small"><br /><em>to prevent users from starting Task Manager (Taskmgr.exe)</em><em>to disable the Windows registry editors (Regedt32.exe and Regedit.exe)</em></span><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">250kgï¿½ = "%Windir%&#092;250kgï¿½.exe hcurun"</span></li></ul><span style="font-size: small"><br /><em>so that .exe runs every time Windows starts</em></span></ul></ul> <ul><li><span style="font-size: small">The following Registry Values were modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{871C5380-42A0-1069-A2EA-
08002B30309D}&#092;shell&#092;OpenHomePage&#092;Command]</span></li><ul><li><span style="font-size: small">(Default) = "%Windir%&#092;Temp.exe ie"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;exefile&#092;shell&#092;open&#092;command]</span></li><ul><li><span style="font-size: small">(Default) = "%Windir%&#092;Temp&#092;.exe %1250kylogam%*"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon]</span></li><ul><li><span style="font-size: small">Shell = "Explorer.exe %Windir%&#092;250kgï¿½.exe shell"</span></li><li><span style="font-size: small">Userinit = "%Windir%&#092;250kg.exe init"</span></li></ul><span style="font-size: small"><br /><em>so that .exe runs every time Windows starts</em><em>so that 250kg.exe runs every time Windows starts</em></span></ul></ul><br /></div></div>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 30 Apr 2008 09:37:03 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><strong>+File System Modifications<br /><br /></strong></span><span style="font-size: small"> %Temp%&#092;etcnitob.drv<br />%Temp%&#092;jedkfmhgr.drv<br />%Temp%&#092;jmlcrqtkrqd.nls<br />%System%&#092;dknapof.drv<br />%System%&#092;ilojmpcfmpkjmh.dll<br />%System%&#092;jalsj.drv<br />%Temp%&#092;gkbfmupi.dat<br />%Temp%&#092;gruktnjy.ini<br />%System%&#092;drivers&#092;suhwczfq.dat<br />%System%&#092;filgn.dll<br />%System%&#092;jitonits.dll<br /><br /><strong>+Memory Modifications<br /><br /></strong>%System%&#092;jitonits.dll<br /><br /></span><strong><span style="font-size: small">+Registry Modifications<br /><br /></span></strong><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{07212E3D-94F6-9164-BEAC-
3C60E82844A2}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{07212E3D-94F6-9164-BEAC-
3C60E82844A2}&#092;Storage</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies&#092;
Explorer</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies&#092;
Explorer&#092;Run</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon&#092;Notify&#092;ilojmpcfmpkjmh</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_PNCKJRTC</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_PNCKJRTC&#092;0000
</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_PNCKJRTC&#092;0000
&#092;Control</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;pnckjrtc</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;pnckjrtc&#092;Enum</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_PNCKJRTC</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_PNCKJRTC&#092;
0000</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_PNCKJRTC&#092;
0000&#092;Control</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;pnckjrtc</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;pnckjrtc&#092;Enum</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies
&#092;Explorer&#092;Run]</span></li><ul><li><span style="font-size: small">ridojato = "rundll32.exe "%System%&#092;dknapof.drv" WLEntryPoint"</span></li></ul><span style="font-size: small"><br /><em>so that dknapof.drv runs every time Windows starts</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">nmlsrqhs = "rundll32.exe "%Temp%&#092;etcnitob.drv" WLEntryPoint"</span></li></ul><span style="font-size: small"><br /><em>so that etcnitob.drv runs every time Windows starts</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion]</span></li><ul><li><span style="font-size: small">NTInternalSign = 0x01C8AFF2</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon]</span></li><ul><li><span style="font-size: small">taskman = "rundll32.exe "%System%&#092;jalsj.drv" WLEntryPoint"</span></li></ul><span style="font-size: small"><br /><em>so that jalsj.drv runs every time Windows starts</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon&#092;Notify&#092;ilojmpcfmpkjmh]</span></li><ul><li><span style="font-size: small">Asynchronous = 0x00000000</span></li><li><span style="font-size: small">Impersonate = 0x00000000</span></li><li><span style="font-size: small">DLLName = "ilojmpcfmpkjmh.dll"</span></li><li><span style="font-size: small">Logon = "WLEventLogon"</span></li></ul><span style="font-size: small"><br /><em>so that ilojmpcfmpkjmh.dll is installed as a Winlogon notification package</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_PNCKJRTC&#092;000
0&#092;Control]</span></li><ul><li><span style="font-size: small">*NewlyCreated* = 0x00000000</span></li><li><span style="font-size: small">ActiveService = "pnckjrtc"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_PNCKJRTC&#092;000
0]</span></li><ul><li><span style="font-size: small">Service = "pnckjrtc"</span></li><li><span style="font-size: small">Legacy = 0x00000001</span></li><li><span style="font-size: small">ConfigFlags = 0x00000000</span></li><li><span style="font-size: small">Class = "LegacyDriver"</span></li><li><span style="font-size: small">ClassGUID = "{8ECC055D-047F-11D1-A537-0000F8753ED1}"</span></li><li><span style="font-size: small">DeviceDesc = "pnckjrtc"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_PNCKJRTC]</span></li><ul><li><span style="font-size: small">NextInstance = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;pnckjrtc&#092;Enum]</span></li><ul><li><span style="font-size: small">0 = "Root&#092;LEGACY_PNCKJRTC&#092;0000"</span></li><li><span style="font-size: small">Count = 0x00000001</span></li><li><span style="font-size: small">NextInstance = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;pnckjrtc]</span></li><ul><li><span style="font-size: small">Start = 0x00000000</span></li><li><span style="font-size: small">ImagePath = "%System%&#092;Drivers&#092;suhwczfq.dat"</span></li><li><span style="font-size: small">ErrorControl = 0x00000001</span></li><li><span style="font-size: small">File = "&#092;pnckjrtc"</span></li><li><span style="font-size: small">0 = 0x80618BD2</span></li><li><span style="font-size: small">Name = "&#092;pnckjrtc"</span></li><li><span style="font-size: small">8 = 0x80619F68</span></li><li><span style="font-size: small">7 = 0x80617292</span></li><li><span style="font-size: small">9 = 0x805C5AD0</span></li><li><span style="font-size: small">10 = 0x8057832A</span></li><li><span style="font-size: small">5 = 0x8061A8CC</span></li><li><span style="font-size: small">4 = 0x805B0714</span></li><li><span style="font-size: small">Group = "Boot Bus Extender"</span></li><li><span style="font-size: small">Type = 0x00000001</span></li><li><span style="font-size: small">F4 = 77 00 69 00 6E 00 64 00 6F 00 77 00 73 00 5C 00 73 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 69 00 6C 00 6F 00 6A 00 6D 00 70 00 63 00 66 00 6D 00 70 00 6B 00 6A 00 6D 00 68 00 2E 00 64 00 6C 00 6C 00 00 00</span></li><li><span style="font-size: small">R7 = 5C 00 72 00 65 00 67 00 69 00 73 00 74 00 72 00 79 00 5C 00 6D 00 61 00 63 00 68 00 69 00 6E 00 65 00 5C 00 73 00 6F 00 66 00 74 00 77 00 61 00 72 00 65 00 5C 00 6D 00 69 00 63 00 72 00 6F 00 73 00 6F 00 66 00 74 00 5C 00 77 00 69 00 6E 00 64 00 6F 0</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_PNCKJRTC
&#092;0000&#092;Control]</span></li><ul><li><span style="font-size: small">*NewlyCreated* = 0x00000000</span></li><li><span style="font-size: small">ActiveService = "pnckjrtc"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_PNCKJRTC
&#092;0000]</span></li><ul><li><span style="font-size: small">Service = "pnckjrtc"</span></li><li><span style="font-size: small">Legacy = 0x00000001</span></li><li><span style="font-size: small">ConfigFlags = 0x00000000</span></li><li><span style="font-size: small">Class = "LegacyDriver"</span></li><li><span style="font-size: small">ClassGUID = "{8ECC055D-047F-11D1-A537-0000F8753ED1}"</span></li><li><span style="font-size: small">DeviceDesc = "pnckjrtc"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_PNCKJRTC
]</span></li><ul><li><span style="font-size: small">NextInstance = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;pnckjrtc&#092;Enum]</span></li><ul><li><span style="font-size: small">0 = "Root&#092;LEGACY_PNCKJRTC&#092;0000"</span></li><li><span style="font-size: small">Count = 0x00000001</span></li><li><span style="font-size: small">NextInstance = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;pnckjrtc]</span></li><ul><li><span style="font-size: small">Start = 0x00000000</span></li><li><span style="font-size: small">ImagePath = "%System%&#092;Drivers&#092;suhwczfq.dat"</span></li><li><span style="font-size: small">ErrorControl = 0x00000001</span></li><li><span style="font-size: small">File = "&#092;pnckjrtc"</span></li><li><span style="font-size: small">0 = 0x80618BD2</span></li><li><span style="font-size: small">Name = "&#092;pnckjrtc"</span></li><li><span style="font-size: small">8 = 0x80619F68</span></li><li><span style="font-size: small">7 = 0x80617292</span></li><li><span style="font-size: small">9 = 0x805C5AD0</span></li><li><span style="font-size: small">10 = 0x8057832A</span></li><li><span style="font-size: small">5 = 0x8061A8CC</span></li><li><span style="font-size: small">4 = 0x805B0714</span></li><li><span style="font-size: small">Group = "Boot Bus Extender"</span></li><li><span style="font-size: small">Type = 0x00000001</span></li><li><span style="font-size: small">F4 = 77 00 69 00 6E 00 64 00 6F 00 77 00 73 00 5C 00 73 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 69 00 6C 00 6F 00 6A 00 6D 00 70 00 63 00 66 00 6D 00 70 00 6B 00 6A 00 6D 00 68 00 2E 00 64 00 6C 00 6C 00 00 00</span></li><li><span style="font-size: small">R7 = 5C 00 72 00 65 00 67 00 69 00 73 00 74 00 72 00 79 00 5C 00 6D 00 61 00 63 00 68 00 69 00 6E 00 65 00 5C 00 73 00 6F 00 66 00 74 00 77 00 61 00 72 00 65 00 5C 00 6D 00 69 00 63 00 72 00 6F 00 73 00 6F 00 66 00 74 00 5C 00 77 00 69 00 6E 00 64 00 6F 0</span></li></ul></ul></ul> <ul><li><span style="font-size: small">The following Registry Values were modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;exefile&#092;shell&#092;open&#092;command]</span></li><ul><li><span style="font-size: small">(Default) = "rundll32.exe "%Temp%&#092;jmlcrqtkrqd.nls" WLEntry %1 %*"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Command Processor]</span></li><ul><li><span style="font-size: small">AutoRun = "rundll32.exe "%Temp%&#092;jedkfmhgr.drv" WLEntryPoint"</span></li></ul></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 07 May 2008 08:15:12 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><strong>+File System Modifications</strong></span><br /><span style="font-size: small"> %Temp%&#092;ms5855.tmp<br />%Windir%&#092;aaa.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;bbb.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%System%&#092;export&#092;services.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%System%&#092;normal.dot<br /><strong>+Memory Modifications</strong><br />services.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />bbb.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />aaa.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /></span><br /><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Applets&#092;Wo
rdpad</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Applets&#092;Wo
rdpad&#092;IP</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Applets&#092;Wo
rdpad&#092;Options</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Applets&#092;Wo
rdpad&#092;RTF</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Applets&#092;Wo
rdpad&#092;Settings</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Applets&#092;Wo
rdpad&#092;Text</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Applets&#092;Wo
rdpad&#092;Word6</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Applets&#092;Wo
rdpad&#092;Write</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Value is:</span></li><ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">vbwg cute = "%Windir%&#092;aaa.exe"</span></li><li><span style="font-size: small">this free = "%Windir%&#092;bbb.exe"</span></li></ul><span style="font-size: small"><br /><em>so that aaa.exe runs every time Windows starts</em><em>so that bbb.exe runs every time Windows starts</em></span></ul></ul> <ul><li><span style="font-size: small">The following Registry Values were modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.inf]</span></li><ul><li><span style="font-size: small">(Default) = "txtfile"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.reg]</span></li><ul><li><span style="font-size: small">(Default) = "txtfile"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;SuperHidden]</span></li><ul><li><span style="font-size: small">Type = ""</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon]</span></li><ul><li><span style="font-size: small">Shell = "Explorer.exe %Windir%&#092;aaa.exe"</span></li></ul><span style="font-size: small"><br /><em>so that aaa.exe runs every time Windows starts</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;SafeBoot]</span></li><ul><li><span style="font-size: small">AlternateShell = "%Windir%&#092;bbb.exe"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Control&#092;SafeBoot]</span></li><ul><li><span style="font-size: small">AlternateShell = "%Windir%&#092;bbb.exe"</span></li></ul></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Thu, 15 May 2008 03:51:46 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><strong>+File System Modifications</strong></span><br /><span style="font-size: small"> c:&#092;autorun.inf<br />%System%&#092;dllcache&#092;autorun.inf<br />c:&#092;MS-DOS.com<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%FontsDir%&#092;Fonts.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%FontsDir%&#092;tskmgr.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;Help&#092;microsoft.hlp<br />%Windir%&#092;Media&#092;rndll32.pif<br />%Windir%&#092;pchealth&#092;Global.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;pchealth&#092;helpctr&#092;binaries&#092;HelpHost.com<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;system&#092;KEYBOARD.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%System%&#092;dllcache&#092;Default.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%System%&#092;dllcache&#092;Global.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%System%&#092;dllcache&#092;Recycler.{645FF040-5081-101B-9F08-00AA002F954E}
&#092;Global.exe<br />%System%&#092;dllcache&#092;Recycler.{645FF040-5081-101B-9F08-00AA002F954E}
&#092;svchost.exe<br />%System%&#092;dllcache&#092;Recycler.{645FF040-5081-101B-9F08-00AA002F954E}
&#092;system.exe<br />%System%&#092;dllcache&#092;svchost.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%System%&#092;drivers&#092;drivers.cab.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%System%&#092;regedit.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;Cursors&#092;Boom.vbs<br />%FontsDir%&#092;wav.wav<br />%System%&#092;dllcache&#092;rndll32.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%System%&#092;dllcache&#092;tskmgr.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /></span><br /><span style="font-size: small"><strong>+Memory Modifications</strong></span><br /><span style="font-size: small">%Windir%&#092;system&#092;keyboard.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%FontsDir%&#092;tskmgr.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;pchealth&#092;global.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%System%&#092;dllcache&#092;Default.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%FontsDir%&#092;fonts.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;pchealth&#092;helpctr&#092;binaries&#092;helphost.com<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /></span><br /><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies&#092;
Explorer</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies&#092;
Explorer&#092;Run</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;auto.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;autorun.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;autoruns.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;boot.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;ctfmon.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;msconfig.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;procexp.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;taskmgr.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Policies&#092;Microsoft&#092;Windows&#092;System</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Policies&#092;Microsoft&#092;Windows&#092;System&#092;Scripts</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Policies&#092;Microsoft&#092;Windows&#092;System&#092;Scripts&#092;
Shutdown</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Policies&#092;Microsoft&#092;Windows&#092;System&#092;Scripts&#092;
Shutdown&#092;0</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Policies&#092;Microsoft&#092;Windows&#092;System&#092;Scripts&#092;
Shutdown&#092;0&#092;0</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Policies&#092;Microsoft&#092;Windows&#092;System&#092;Scripts&#092;
Startup</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Policies&#092;Microsoft&#092;Windows&#092;System&#092;Scripts&#092;
Startup&#092;0</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Policies&#092;Microsoft&#092;Windows&#092;System&#092;Scripts&#092;
Startup&#092;0&#092;0</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;RunOnce</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Policies&#092;Microsoft&#092;Windows</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Policies&#092;Microsoft&#092;Windows&#092;System</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Policies&#092;Microsoft&#092;Windows&#092;System&#092;Scripts</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Policies&#092;Microsoft&#092;Windows&#092;System&#092;Scripts&#092;L
ogoff</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Policies&#092;Microsoft&#092;Windows&#092;System&#092;Scripts&#092;L
ogoff&#092;0</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Policies&#092;Microsoft&#092;Windows&#092;System&#092;Scripts&#092;L
ogoff&#092;0&#092;0</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;comfile]</span></li><ul><li><span style="font-size: small">NeverShowExt = "1"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;exefile]</span></li><ul><li><span style="font-size: small">NeverShowExt = "1"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;MSCFile&#092;Shell&#092;Open&#092;Command]</span></li><ul><li><span style="font-size: small">(Default) = "%FontsDir%&#092;Fonts.exe"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies
&#092;system]</span></li><ul><li><span style="font-size: small">DisableStatusMessages = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies
&#092;Explorer&#092;Run]</span></li><ul><li><span style="font-size: small">sys = "%FontsDir%&#092;Fonts.exe"</span></li></ul><span style="font-size: small"><br /><em>so that Fonts.exe runs every time Windows starts</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">(Default) = "%Windir%&#092;system&#092;KEYBOARD.exe"</span></li></ul><span style="font-size: small"><br /><em>so that KEYBOARD.exe runs every time Windows starts</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;RunOnce]
</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;dllcache&#092;Default.exe"</span></li></ul><span style="font-size: small"><br /><em>so that Default.exe runs every time Windows starts</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;auto.exe]</span></li><ul><li><span style="font-size: small">Debugger = "%System%&#092;drivers&#092;drivers.cab.exe"</span></li></ul><span style="font-size: small"><br /><em>so that drivers.cab.exe is injected into the execution sequence of auto.exe by being installed as its default debugger</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;autorun.exe]</span></li><ul><li><span style="font-size: small">Debugger = "%System%&#092;drivers&#092;drivers.cab.exe"</span></li></ul><span style="font-size: small"><br /><em>so that drivers.cab.exe is injected into the execution sequence of autorun.exe by being installed as its default debugger</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;autoruns.exe]</span></li><ul><li><span style="font-size: small">Debugger = "%System%&#092;drivers&#092;drivers.cab.exe"</span></li></ul><span style="font-size: small"><br /><em>so that drivers.cab.exe is injected into the execution sequence of autoruns.exe by being installed as its default debugger</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;boot.exe]</span></li><ul><li><span style="font-size: small">Debugger = "%FontsDir%&#092;fonts.exe"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;ctfmon.exe]</span></li><ul><li><span style="font-size: small">Debugger = "%FontsDir%&#092;Fonts.exe"</span></li></ul><span style="font-size: small"><br /><em>so that Fonts.exe is injected into the execution sequence of ctfmon.exe by being installed as its default debugger</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;msconfig.exe]</span></li><ul><li><span style="font-size: small">Debugger = "%Windir%&#092;Media&#092;rndll32.pif"</span></li></ul><span style="font-size: small"><br /><em>so that rndll32.pif is injected into the execution sequence of msconfig.exe by being installed as its default debugger</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;procexp.exe]</span></li><ul><li><span style="font-size: small">Debugger = "%Windir%&#092;pchealth&#092;helpctr&#092;binaries&#092;HelpHost.com"</span></li></ul><span style="font-size: small"><br /><em>so that HelpHost.com is injected into the execution sequence of procexp.exe by being installed as its default debugger</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;taskmgr.exe]</span></li><ul><li><span style="font-size: small">Debugger = "%FontsDir%&#092;tskmgr.exe"</span></li></ul><span style="font-size: small"><br /><em>so that tskmgr.exe is injected into the execution sequence of taskmgr.exe by being installed as its default debugger</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Policies&#092;Microsoft&#092;Windows&#092;System&#092;Scripts
&#092;Shutdown&#092;0&#092;0]</span></li><ul><li><span style="font-size: small">Parameters = ""</span></li><li><span style="font-size: small">Script = "%Windir%&#092;Cursors&#092;Boom.vbs"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Policies&#092;Microsoft&#092;Windows&#092;System&#092;Scripts
&#092;Shutdown&#092;0]</span></li><ul><li><span style="font-size: small">DisplayName = "Local Group Policy"</span></li><li><span style="font-size: small">FileSysPath = ""</span></li><li><span style="font-size: small">GPO-ID = "LocalGPO"</span></li><li><span style="font-size: small">GPOName = "Local Group Policy"</span></li><li><span style="font-size: small">SOM-ID = "Local"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Policies&#092;Microsoft&#092;Windows&#092;System&#092;Scripts
&#092;Startup&#092;0&#092;0]</span></li><ul><li><span style="font-size: small">Parameters = ""</span></li><li><span style="font-size: small">Script = "%Windir%&#092;Cursors&#092;Boom.vbs"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Policies&#092;Microsoft&#092;Windows&#092;System&#092;Scripts
&#092;Startup&#092;0]</span></li><ul><li><span style="font-size: small">DisplayName = "Local Group Policy"</span></li><li><span style="font-size: small">FileSysPath = ""</span></li><li><span style="font-size: small">GPO-ID = "LocalGPO"</span></li><li><span style="font-size: small">GPOName = "Local Group Policy"</span></li><li><span style="font-size: small">SOM-ID = "Local"</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Control Panel&#092;Desktop]</span></li><ul><li><span style="font-size: small">SCRNSAVE.EXE = "%Windir%&#092;pchealth&#092;helpctr&#092;binaries&#092;HelpHost.com"</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;RunOnce]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;dllcache&#092;Default.exe"</span></li></ul><span style="font-size: small"><br /><em>so that Default.exe runs every time Windows starts</em></span><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Policies&#092;Microsoft&#092;Windows&#092;System&#092;Scripts&#092;
Logoff&#092;0&#092;0]</span></li><ul><li><span style="font-size: small">Parameters = ""</span></li><li><span style="font-size: small">Script = "%Windir%&#092;Cursors&#092;Boom.vbs"</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Policies&#092;Microsoft&#092;Windows&#092;System&#092;Scripts&#092;
Logoff&#092;0]</span></li><ul><li><span style="font-size: small">DisplayName = "Local Group Policy"</span></li><li><span style="font-size: small">FileSysPath = ""</span></li><li><span style="font-size: small">GPO-ID = "LocalGPO"</span></li><li><span style="font-size: small">GPOName = "Local Group Policy"</span></li><li><span style="font-size: small">SOM-ID = "Local"</span></li></ul></ul></ul> <ul><li><span style="font-size: small">The following Registry Value was deleted:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;MSCFile&#092;Shell&#092;Open&#092;Command]</span></li><ul><li><span style="font-size: small">(Default) = "%SystemRoot%&#092;system32&#092;mmc.exe "%1" %*"</span></li></ul></ul></ul> <ul><li><span style="font-size: small">The following Registry Values were modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;regfile&#092;shell&#092;open&#092;command]</span></li><ul><li><span style="font-size: small">(Default) = "%Windir%&#092;pchealth&#092;Global.exe"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;SuperHidden]</span></li><ul><li><span style="font-size: small">ValueName = "ShowSuperHiden"</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Control Panel&#092;Desktop]</span></li><ul><li><span style="font-size: small">AutoEndTasks = "1"</span></li><li><span style="font-size: small">ScreenSaveTimeOut = "30"</span></li></ul></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 26 May 2008 11:32:31 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">Filesize: 40,960 bytes<br /><br /></span><span style="font-size: small"><strong>+File System Modifications<br /><br /></strong></span><span style="font-size: small"> c:&#092;RECYCLER&#092;S-1-5-21-1482476501-1644491937-682003330-1013&#092;Desktop.ini<br />c:&#092;RECYCLER&#092;S-1-5-21-1482476501-1644491937-682003330-1013&#092;ise32.exe<br />c:&#092;RECYCLER&#092;S-1-5-21-1482476501-1644491937-682003330-1013</span><br /><span style="font-size: small"><strong><br />+Registry Modifications</strong></span><br /><ul><li><span style="font-size: small">The following Registry Key was created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Active Setup&#092;Installed Components&#092;{28ABC5C0-4FCB-11CF-AAX5-81CX1C635612}</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Value is:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Active Setup&#092;Installed Components&#092;{28ABC5C0-4FCB-11CF-AAX5-81CX1C635612}]</span></li><ul><li><span style="font-size: small">StubPath = "c:&#092;RECYCLER&#092;S-1-5-21-1482476501-1644491937-682003330-1013&#092;ise32.exe"</span></li></ul></ul></ul><span style="font-size: small"><strong>+Other details</strong></span><br /><ul><li><span style="font-size: small">The following Host Name was requested from a host database:</span></li><ul><li><span style="font-size: small">http.xn--mg-kka.com</span></li></ul></ul> <ul><li><span style="font-size: small">There was registered attempt to establish connection with the remote host. The connection details are:</span></li></ul>  <table class="tbl" cellpadding="5" cellspacing="0"><tbody><tr><td class="cell_1_h"><span style="font-size: small">Remote Host</span></td><td class="cell_2_h"><span style="font-size: small">Port Number</span></td></tr> <tr><td class="cell_1"><span style="font-size: small">http.xn--mg-kka.com</span></td><td class="cell_2"><span style="font-size: small">81</span></td></tr></tbody></table><strong><span style="font-size: small">+Outbound traffic (potentially malicious)</span></strong> <ul><li><span style="font-size: small; color: #990000"><strong>Attention! </strong></span><span style="font-size: small">There was a new connection established with a remote IRC Server. The generated outbound IRC traffic is provided below:</span></li></ul> <table class="tbl" cellpadding="0" cellspacing="0"><tbody><tr><td> <span style="font-size: small">PASS ohai NICK szwdtl<br />USER nrkuyl "" "fqy" :nrkuyl </span></td></tr></tbody></table>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Tue, 03 Jun 2008 07:36:37 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<strong><span style="font-size: small">+File System Modifications</span></strong><br /><br /><span style="font-size: small"> c:&#092;autorun.inf<br />%Temp%&#092;8qo28.dll<br />c:&#092;e.cmd<br />%System%&#092;amvo.exe<br />%System%&#092;amvo0.dll<br /><br /><strong>+Memory Modifications<br /><br /></strong>amvo.exe<br />amvo1.dll</span><br /><br /><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><br /><ul><li><span style="font-size: small">The newly created Registry Value is:</span></li><ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">amva = "%System%&#092;amvo.exe"</span></li></ul><span style="font-size: small"><br /><em>so that amvo.exe runs every time Windows starts</em></span></ul></ul> <ul><li><span style="font-size: small">The following Registry Value was modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Hidden&#092;SHOWALL]</span></li><ul><li><span style="font-size: small">CheckedValue = 0x00000000</span></li></ul><span style="font-size: small"><br /><em>so that hidden files and folders are not displayed in explorer when browsing the file system</em></span></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 06 Jun 2008 07:28:39 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><strong>+File System Modifications</strong></span><br /><br /><span style="font-size: small"> %System%&#092;drivers&#092;npf.sys<br />%System%&#092;packet.dll<br />%System%&#092;svehost.exe<br />%System%&#092;wpcap.dll</span><br /><br /><span style="font-size: small"><strong>+Memory Modifications</strong></span><br /><br /><span style="font-size: small">svehost.exe</span><br /><br /><strong><span style="font-size: small">+Registry Modifications</span></strong><br /><br /><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{90EFE3EF-AD11-CDEE-F24D-
51D818FE3D08}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{90EFE3EF-AD11-CDEE-F24D-
51D818FE3D08}&#092;Implemented Categories</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{90EFE3EF-AD11-CDEE-F24D-
51D818FE3D08}&#092;Implemented Categories&#092;{0DE86A54-2BAA-11CF-A229-00AA003D7352}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{90EFE3EF-AD11-CDEE-F24D-
51D818FE3D08}&#092;Implemented Categories&#092;{0DE86A57-2BAA-11CF-A229-00AA003D7352}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{90EFE3EF-AD11-CDEE-F24D-
51D818FE3D08}&#092;Implemented Categories&#092;{7DD95801-9882-11CF-9FA9-00AA006C42C4}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{90EFE3EF-AD11-CDEE-F24D-
51D818FE3D08}&#092;Implemented Categories&#092;{7DD95802-9882-11CF-9FA9-00AA006C42C4}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{90EFE3EF-AD11-CDEE-F24D-
51D818FE3D08}&#092;InprocServer32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{90EFE3EF-AD11-CDEE-F24D-
51D818FE3D08}&#092;ProgID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{90EFE3EF-AD11-CDEE-F24D-
51D818FE3D08}&#092;Programmable</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{90EFE3EF-AD11-CDEE-F24D-
51D818FE3D08}&#092;TypeLib</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{90EFE3EF-AD11-CDEE-F24D-
51D818FE3D08}&#092;VersionIndependentProgID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;RunServic
es</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Licenses</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;NPF</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;NPF&#092;Security</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;NPF</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;NPF&#092;Security</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;OLE</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{90EFE3EF-AD11-CDEE-F24D-
51D818FE3D08}&#092;VersionIndependentProgID]</span></li><ul><li><span style="font-size: small">(Default) = "BDATuner.DVBTuneRequest"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{90EFE3EF-AD11-CDEE-F24D-
51D818FE3D08}&#092;TypeLib]</span></li><ul><li><span style="font-size: small">(Default) = "{9B085638-018E-11D3-9D8E-00C04F72D980}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{90EFE3EF-AD11-CDEE-F24D-
51D818FE3D08}&#092;ProgID]</span></li><ul><li><span style="font-size: small">(Default) = "BDATuner.DVBTuneRequest.1"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{90EFE3EF-AD11-CDEE-F24D-
51D818FE3D08}&#092;InprocServer32]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;msvidctl.dll"</span></li><li><span style="font-size: small">ThreadingModel = "Both"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{90EFE3EF-AD11-CDEE-F24D-
51D818FE3D08}]</span></li><ul><li><span style="font-size: small">(Default) = "BDA Tuning Model DVB Tune Request"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">Microsoft Updates = "svehost.exe"</span></li></ul><span style="font-size: small"><br /><em>so that svehost.exe runs every time Windows starts</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;RunServi
ces]</span></li><ul><li><span style="font-size: small">Microsoft Updates = "svehost.exe"</span></li></ul><span style="font-size: small"><br /><em>so that svehost.exe runs every time Windows starts</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Licenses]</span></li><ul><li><span style="font-size: small">{R7C0DB872A3F777C0} = 4A 8D 7D 4C</span></li><li><span style="font-size: small">{K7C0DB872A3F777C0} = B9 CE 35 F0 DD 0C 1F FF FF FF FF 9D C6 25 CF 03 07 99 01 65 14 0F C8 1F F3 29 FB 4A 8D 7D 4C FF FF FF FF 87 30 0C C3 FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF F</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;NPF&#092;Security]</span></li><ul><li><span style="font-size: small">Security = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 0</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;NPF]</span></li><ul><li><span style="font-size: small">Type = 0x00000001</span></li><li><span style="font-size: small">Start = 0x00000003</span></li><li><span style="font-size: small">ErrorControl = 0x00000001</span></li><li><span style="font-size: small">ImagePath = "%System%&#092;Drivers&#092;npf.sys"</span></li><li><span style="font-size: small">DisplayName = "Netgroup Packet Filter"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;NPF&#092;Security]</span></li><ul><li><span style="font-size: small">Security = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 0</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;NPF]</span></li><ul><li><span style="font-size: small">Type = 0x00000001</span></li><li><span style="font-size: small">Start = 0x00000003</span></li><li><span style="font-size: small">ErrorControl = 0x00000001</span></li><li><span style="font-size: small">ImagePath = "%System%&#092;Drivers&#092;npf.sys"</span></li><li><span style="font-size: small">DisplayName = "Netgroup Packet Filter"</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;OLE]</span></li><ul><li><span style="font-size: small">Microsoft Updates = "svehost.exe"</span></li></ul></ul></ul> <ul><li><span style="font-size: small">The following Registry Values were modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Ole]</span></li><ul><li><span style="font-size: small">EnableDCOM = "N"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;Lsa]</span></li><ul><li><span style="font-size: small">restrictanonymous = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Control&#092;Lsa]</span></li><ul><li><span style="font-size: small">restrictanonymous = 0x00000001</span></li></ul></ul></ul><br /><strong><span style="font-size: small">+Other details</span></strong><br /><br /><ul><li><span style="font-size: small">To mark the presence in the system, the following Mutex objects were created:</span></li><ul><li><span style="font-size: small">DBWinMutex</span></li><li><span style="font-size: small">RALC4FF5B2B</span></li><li><span style="font-size: small">C4FF5B2B::WK</span></li><li><span style="font-size: small">qdrvfqbnf</span></li></ul></ul> <ul><li><span style="font-size: small">The following ports were open in the system:</span></li></ul> <table class="tbl" cellpadding="5" cellspacing="0"> <tbody><tr><td class="cell_1_h"><span style="font-size: small">Port</span></td><td class="cell_1_h"><span style="font-size: small">Protocol</span></td><td class="cell_2_h"><span style="font-size: small">Process</span></td></tr> <tr><td class="cell_1"><span style="font-size: small">1035</span></td><td class="cell_1"><span style="font-size: small">TCP</span></td><td class="cell_2"><span style="font-size: small">svehost.exe (%System%&#092;svehost.exe)</span></td></tr> <tr><td class="cell_1"><span style="font-size: small">1036</span></td><td class="cell_1"><span style="font-size: small">TCP</span></td><td class="cell_2"><span style="font-size: small">svehost.exe (%System%&#092;svehost.exe)</span></td></tr> <tr><td class="cell_1"><span style="font-size: small">1037</span></td><td class="cell_1"><span style="font-size: small">TCP</span></td><td class="cell_2"><span style="font-size: small">svehost.exe (%System%&#092;svehost.exe)</span></td></tr> </tbody></table> <ul><li><span style="font-size: small">The following Host Name was requested from a host database:</span></li><ul><li><span style="font-size: small">ns01.begone.info</span></li></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 18 Jun 2008 12:36:32 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<strong><span style="font-size: small">+Possible Security Risk</span></strong><br /><br /><table class="tbl" cellpadding="5" cellspacing="0"><tbody><tr><td class="cell_1_h"><span style="font-size: small">Security Risk</span></td><td class="cell_2_h"><span style="font-size: small">Description</span></td></tr><tr><td class="cell_1"><span style="font-size: small; color: #505050">Backdoor.SdBot</span></td><td class="cell_1"><span style="font-size: small">Backdoor.Sdbot is a Backdoor Trojan Horse that allows its creator to control a computer by using Internet Relay Chat (IRC) which is designed for group communication in discussion forums. The Trojan can update itself by checking for newer versions over the Internet.</span></td></tr></tbody></table><br /><strong><span style="font-size: small">+File System Modifications</span></strong><br /><br /><span style="font-size: small">%Windir%&#092;system&#092;<span style="color: #505050">services.exe</span><br />%System%&#092;Explorer.sm1<br /></span><br /><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><br /><ul><li><span style="font-size: small">The following Registry Keys were created: </span><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.sm1 </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;sm1_Auto_File </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;sm1_Auto_File&#092;shell </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;sm1_Auto_File&#092;shell&#092;open </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;sm1_Auto_File&#092;shell&#092;open&#092;command </span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;E
xplorer&#092;Run </span></li></ul></li></ul><ul><li><span style="font-size: small">The newly created Registry Values are: </span><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.sm1] </span><ul><li><span style="font-size: small">(Default) = "sm1_Auto_File" </span></li></ul></li><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;sm1_Auto_File&#092;shell&#092;open&#092;command] </span><ul><li><span style="font-size: small">(Default) = "%Windir%&#092;system&#092;services.exe %1" </span></li></ul></li><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;sm1_Auto_File] </span><ul><li><span style="font-size: small">(Default) = "" </span></li></ul></li><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
Explorer&#092;Run] </span><ul><li><span style="font-size: small">AudioMan = "%System%&#092;Explorer.sm1" </span></li></ul><br /><span style="font-size: small"><em>so that Explorer.sm1 runs every time Windows starts</em><br /></span></li></ul></li></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Thu, 19 Jun 2008 10:22:49 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><strong>+File System Modifications</strong></span><br /><br /><span style="font-size: small"> %Windir%&#092;syste.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%Windir%&#092;system.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /> </span><br /><br /><strong><span style="font-size: small">+Memory Modifications</span></strong><br /><br /><span style="font-size: small">system.exe</span><br /><br /><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><br /><ul><li><span style="font-size: small">The newly created Registry Value is:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">system = "%Windir%&#092;system.exe"</span></li></ul><span style="font-size: small"><br /><em>so that system.exe runs every time Windows starts<br /><br /></em></span><li><span style="font-size: small">Analysis of the file resources indicate the following possible country of origin:</span></li></ul></ul> <table class="tbl" cellpadding="15" cellspacing="0"> <tbody><tr> </tr><tr><td class="cell_1"><span style="font-size: small"><img src="http://www.threatexpert.com/resources/flags/china.gif" /></span></td> <td class="cell_2"><span style="font-size: small">China</span></td></tr><tr> </tr></tbody></table> <ul><li><span style="font-size: small">To mark the presence in the system, the following Mutex object was created:</span></li><ul><li><span style="font-size: small">kuai1</span></li></ul></ul> <ul><li><span style="font-size: small">The following Internet download was started (the retrieved bits are saved into the local file):</span></li></ul>  <table class="tbl" cellpadding="5" cellspacing="0"><tbody><tr><td class="cell_1_h"><span style="font-size: small">URL to be downloaded</span></td><td class="cell_2_h"><span style="font-size: small">Filename for the downloaded bits</span></td></tr> <tr><td class="cell_1"><span style="font-size: small">http://www.drsunbo.cn/net.jpg</span></td><td class="cell_2"><span style="font-size: small">%System%&#092;system.exe</span></td></tr></tbody></table><ul><ul><span style="font-size: small"><br /></span></ul></ul><span style="font-size: small"><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Tue, 24 Jun 2008 17:17:14 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><strong>+Possible Security Risk</strong></span><br /><br /><table class="tbl" cellpadding="5" cellspacing="0"><tbody><tr><td class="cell_1_h"><span style="font-size: small">Security Risk</span></td><td class="cell_2_h"><span style="font-size: small">Description</span></td></tr> <tr> <td class="cell_1"><span style="font-size: small">Worm.Autorun.DHA<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /></span></td> <td class="cell_1"><span style="font-size: small">Worm.AutoRun.DHA is a network-aware worm that attempts to replicate across the existing network(s).</span></td></tr></tbody></table><br /><span style="font-size: small"><strong>+File System Modifications</strong></span><br /><br /><span style="font-size: small"> c:&#092;RECYCLER&#092;S-1-5-21-1482476501-1644491937-682003330-1013&#092;Desktop.ini<br />c:&#092;RECYCLER&#092;S-1-5-21-1482476501-1644491937-682003330-1013&#092;ise32.exe<br /></span><span style="font-size: small"><strong><br />+Memory Modifications</strong></span><br /><br /><span style="font-size: small">ise32.exe </span><br /><br /><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><span style="font-size: small"><br /></span><ul><li><span style="font-size: small">The following Registry Key was created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Active Setup&#092;Installed Components&#092;{28ABC5C0-4FCB-11CF-AAX5-81CX1C635612}</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Value is:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Active Setup&#092;Installed Components&#092;{28ABC5C0-4FCB-11CF-AAX5-81CX1C635612}]</span></li><ul><li><span style="font-size: small">StubPath = "c:&#092;RECYCLER&#092;S-1-5-21-1482476501-1644491937-682003330-1013&#092;ise32.exe"</span></li></ul></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 27 Jun 2008 08:19:42 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<strong><span style="font-size: small">+File System Modifications</span></strong><br /><br /><span style="font-size: small"> c:&#092;autorun.inf<br />c:&#092;SysInfo2.Dll<br />%System%&#092;SysInfo.dll<br />...<br />All Drives</span><br /><br /><span style="font-size: small"><strong>+Memory Modifications</strong></span><br /><br /><span style="font-size: small">SysInfo.dll</span><br /><br /><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><br /><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{989D2FEB-5411-4565-8988-
1DD2C5263377}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{989D2FEB-5411-4565-8988-
1DD2C5263377}&#092;InprocServer32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Browser Helper Objects</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Browser Helper Objects&#092;{989D2FEB-5411-4565-8988-1DD2C5263377}</span></li><li><span style="font-size: small">HKEY_USERS&#092;.DEFAULT&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced</span></li></ul></ul> <ul><li><span style="font-size: small">The following Registry Keys were deleted:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Advanced&#092;Folder&#092;SuperHidden</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Advanced&#092;Folder&#092;SuperHidden&#092;Policy</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Advanced&#092;Folder&#092;SuperHidden&#092;Policy&#092;DontShowSuperHidden</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{989D2FEB-5411-4565-8988-
1DD2C5263377}&#092;InprocServer32]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;SysInfo.dll"</span></li><li><span style="font-size: small">ThreadingModel = "Apartment"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Browser Helper Objects&#092;{989D2FEB-5411-4565-8988-1DD2C5263377}]</span></li><ul><li><span style="font-size: small">(Default) = "MyBHO_0.1"</span></li></ul><li><span style="font-size: small">[HKEY_USERS&#092;.DEFAULT&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explore
r&#092;Advanced]</span></li><ul><li><span style="font-size: small">ShowSuperHidden = 0x00000000</span></li></ul></ul></ul> <ul><li><span style="font-size: small">The following Registry Values were deleted:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;SuperHidden&#092;Policy&#092;DontShowSuperHidden]</span></li><ul><li><span style="font-size: small">(Default) = ""</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;SuperHidden]</span></li><ul><li><span style="font-size: small">Type = "checkbox"</span></li><li><span style="font-size: small">Text = "@shell32.dll,-30508"</span></li><li><span style="font-size: small">WarningIfNotDefault = "@shell32.dll,-28964"</span></li><li><span style="font-size: small">HKeyRoot = 0x80000001</span></li><li><span style="font-size: small">RegPath = "Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;Advanced"</span></li><li><span style="font-size: small">ValueName = "ShowSuperHidden"</span></li><li><span style="font-size: small">CheckedValue = 0x00000000</span></li><li><span style="font-size: small">UncheckedValue = 0x00000001</span></li><li><span style="font-size: small">DefaultValue = 0x00000000</span></li><li><span style="font-size: small">HelpID = "shell.hlp#51103"</span></li></ul></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Thu, 03 Jul 2008 10:44:43 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><strong>+Possible Security Risk</strong></span><br /><br /><table class="tbl" cellpadding="5" cellspacing="0"><tbody><tr><td class="cell_1_h"><span style="font-size: small">Security Risk</span></td><td class="cell_2_h"><span style="font-size: small">Description</span></td></tr> <tr> <td class="cell_1"><span style="font-size: small">Trojan-PWS.OnlineGames.ARun</span></td> <td class="cell_1"><span style="font-size: small">Trojan-PWS.OnlineGames.ARun attempts to steal password information associated to popular online games such as MapleStory, Legend of Mir and World of Warcraft. It has the ability to spread itself via removable disk such as USB drives.</span></td> </tr> <tr> <td class="cell_1"><span style="font-size: small">Adware.URLBlaze_Adware_Bundler</span></td> <td class="cell_1"><span style="font-size: small">URLBlaze bundles various adware/spyware products including Bargain Buddy, TurboDownload and other malware applications. If this was installed for a purpose then it is advisable that you add it to the Ignore List.</span></td> </tr> <tr> <td class="cell_1"><span style="font-size: small">Trojan.Generic</span></td> <td class="cell_1"><span style="font-size: small">Common Components that may be used by Trojans Small, DRSN Search, Binet, Euniverse, Adrotator and Dloader among others.</span></td></tr></tbody></table><br /><br /><span style="font-size: small"><strong>+File System Modifications</strong></span><br /><br /><span style="font-size: small"> c:&#092;autorun.inf<br />%Temp%&#092;qett5cd.dll<br />c:&#092;ig.bat<br />%System%&#092;fool0.dll<br />%System%&#092;ieso0.dll<br />%System%&#092;kxvo.exe</span><br /><br /><span style="font-size: small"><strong>+Memory Modifications</strong></span><br /><br /><span style="font-size: small">kxvo.exe<br />fool1.dll<br />%System%&#092;fool1.dll<br />%System%&#092;fool0.dll<br /><br /><strong>+Registry Modifications</strong><br /><br /></span><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{CE7C3CF0-4B15-11D1-ABED-
709549C10000}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{CE7C3CF0-4B15-11D1-ABED-
709549C10000}&#092;InprocServer32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{CE7C3CF0-4B15-11D1-ABED-
709549C10000}&#092;ProgID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{CE7C3CF0-4B15-11D1-ABED-
709549C10000}&#092;Programmable</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{CE7C3CF0-4B15-11D1-ABED-
709549C10000}&#092;VersionIndependentProgID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;IEHlprObj.IEHlprObj</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;IEHlprObj.IEHlprObj&#092;CurVer</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;IEHlprObj.IEHlprObj.1</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;IEHlprObj.IEHlprObj.1&#092;CLSID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Browser Helper Objects</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Browser Helper Objects&#092;{CE7C3CF0-4B15-11D1-ABED-709549C10000}</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{CE7C3CF0-4B15-11D1-ABED-
709549C10000}&#092;VersionIndependentProgID]</span></li><ul><li><span style="font-size: small">(Default) = "IEHlprObj.IEHlprObj"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{CE7C3CF0-4B15-11D1-ABED-
709549C10000}&#092;ProgID]</span></li><ul><li><span style="font-size: small">(Default) = "IEHlprObj.IEHlprObj.1"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{CE7C3CF0-4B15-11D1-ABED-
709549C10000}&#092;InprocServer32]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;ieso0.dll"</span></li><li><span style="font-size: small">ThreadingModel = "Apartment"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{CE7C3CF0-4B15-11D1-ABED-
709549C10000}]</span></li><ul><li><span style="font-size: small">(Default) = "IEHlprObj Class"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;IEHlprObj.IEHlprObj&#092;CurVer]</span></li><ul><li><span style="font-size: small">(Default) = "IEHlprObj.IEHlprObj.1"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;IEHlprObj.IEHlprObj]</span></li><ul><li><span style="font-size: small">(Default) = "IEHlprObj Class"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;IEHlprObj.IEHlprObj.1&#092;CLSID]</span></li><ul><li><span style="font-size: small">(Default) = "{CE7C3CF0-4B15-11D1-ABED-709549C10000}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;IEHlprObj.IEHlprObj.1]</span></li><ul><li><span style="font-size: small">(Default) = "IEHlprObj Class"</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">kxva = "%System%&#092;kxvo.exe"</span></li></ul><span style="font-size: small"><br /><em>so that kxvo.exe runs every time Windows starts</em></span></ul></ul> <ul><li><span style="font-size: small">The following Registry Value was modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Hidden&#092;SHOWALL]</span></li><ul><li><span style="font-size: small">CheckedValue = 0x00000000</span></li></ul><span style="font-size: small"><br /><em>so that hidden files and folders are not displayed in explorer when browsing the file system</em></span></ul></ul><br /><span style="font-size: small"><strong>+Other details</strong></span><br /><br /><ul><li><span style="font-size: small">The following Internet download was started (the retrieved bits are saved into the local file):</span></li></ul>  <table class="tbl" cellpadding="5" cellspacing="0"><tbody><tr><td class="cell_1_h"><span style="font-size: small">URL to be downloaded</span></td><td class="cell_2_h"><span style="font-size: small">Filename for the downloaded bits</span></td></tr> <tr><td class="cell_1"><span style="font-size: small">http://www.hg7890.com/hg2/ll.rar</span></td><td class="cell_2"><span style="font-size: small">%Temp%&#092;ll.rar</span></td></tr></tbody></table><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 09 Jul 2008 10:38:57 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">+<strong>File System Modifications<br /><br /></strong> %System%&#092;dllcache&#092;spoolsv.exe<br />%Windir%&#092;Tasks&#092;SysFile.brk<br />%Windir%&#092;Tasks&#092;0x01xx8p.exe<br /><br /></span><span style="font-size: small"><br /></span><span style="font-size: small"><strong>+Memory Modifications</strong></span><br /><br /><span style="font-size: small">spoolsv.exe<br />0x01xx8p.exe</span><br /><span style="font-size: small"><strong><br />+Registry Modifications</strong></span><br /><br /><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Data</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Data&#092;Config</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_ZZZ</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_ZZZ&#092;0000</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_ZZZ&#092;0000&#092;Cont
rol</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;zzz</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;zzz&#092;Security</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;zzz&#092;Enum</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_ZZZ</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_ZZZ&#092;0000</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_ZZZ&#092;0000&#092;
Control</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;zzz</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;zzz&#092;Security</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;zzz&#092;Enum</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_ZZZ&#092;0000&#092;Con
trol]</span></li><ul><li><span style="font-size: small">*NewlyCreated* = 0x00000000</span></li><li><span style="font-size: small">ActiveService = "zzz"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_ZZZ&#092;0000]</span></li><ul><li><span style="font-size: small">Service = "zzz"</span></li><li><span style="font-size: small">Legacy = 0x00000001</span></li><li><span style="font-size: small">ConfigFlags = 0x00000000</span></li><li><span style="font-size: small">Class = "LegacyDriver"</span></li><li><span style="font-size: small">ClassGUID = "{8ECC055D-047F-11D1-A537-0000F8753ED1}"</span></li><li><span style="font-size: small">DeviceDesc = "zzz"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_ZZZ]</span></li><ul><li><span style="font-size: small">NextInstance = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;zzz&#092;Enum]</span></li><ul><li><span style="font-size: small">0 = "Root&#092;LEGACY_ZZZ&#092;0000"</span></li><li><span style="font-size: small">Count = 0x00000001</span></li><li><span style="font-size: small">NextInstance = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;zzz&#092;Security]</span></li><ul><li><span style="font-size: small">Security = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 0</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;zzz]</span></li><ul><li><span style="font-size: small">Type = 0x00000002</span></li><li><span style="font-size: small">Start = 0x00000004</span></li><li><span style="font-size: small">ErrorControl = 0x00000001</span></li><li><span style="font-size: small">ImagePath = "&#092;??&#092;c:&#092;zzz.sys"</span></li><li><span style="font-size: small">DisplayName = "zzz"</span></li><li><span style="font-size: small">DeleteFlag = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_ZZZ&#092;0000
&#092;Control]</span></li><ul><li><span style="font-size: small">*NewlyCreated* = 0x00000000</span></li><li><span style="font-size: small">ActiveService = "zzz"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_ZZZ&#092;0000
]</span></li><ul><li><span style="font-size: small">Service = "zzz"</span></li><li><span style="font-size: small">Legacy = 0x00000001</span></li><li><span style="font-size: small">ConfigFlags = 0x00000000</span></li><li><span style="font-size: small">Class = "LegacyDriver"</span></li><li><span style="font-size: small">ClassGUID = "{8ECC055D-047F-11D1-A537-0000F8753ED1}"</span></li><li><span style="font-size: small">DeviceDesc = "zzz"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_ZZZ]</span></li><ul><li><span style="font-size: small">NextInstance = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;zzz&#092;Enum]</span></li><ul><li><span style="font-size: small">0 = "Root&#092;LEGACY_ZZZ&#092;0000"</span></li><li><span style="font-size: small">Count = 0x00000001</span></li><li><span style="font-size: small">NextInstance = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;zzz&#092;Security]</span></li><ul><li><span style="font-size: small">Security = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 0</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;zzz]</span></li><ul><li><span style="font-size: small">Type = 0x00000002</span></li><li><span style="font-size: small">Start = 0x00000004</span></li><li><span style="font-size: small">ErrorControl = 0x00000001</span></li><li><span style="font-size: small">ImagePath = "&#092;??&#092;c:&#092;zzz.sys"</span></li><li><span style="font-size: small">DisplayName = "zzz"</span></li><li><span style="font-size: small">DeleteFlag = 0x00000001</span></li></ul></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 16 Jul 2008 09:36:22 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<ul><li><span style="font-size: small"><strong>File System Modifications</strong></span></li></ul><span style="font-size: small"> c:&#092;autorun.inf<br />c:&#092;zPharaoh.exe</span><br /><ul><li><span style="font-size: small"><strong>The following files were modified:</strong></span></li><ul><li><span style="font-size: small">%ProgramFiles%&#092;NetMeeting&#092;conf.exe</span></li><li><span style="font-size: small">%ProgramFiles%&#092;Outlook Express&#092;msimn.exe</span></li><li><span style="font-size: small">%ProgramFiles%&#092;Outlook Express&#092;wab.exe</span></li><li><span style="font-size: small">%ProgramFiles%&#092;Outlook Express&#092;wabmig.exe</span></li><li><span style="font-size: small">%ProgramFiles%&#092;VMware&#092;VMware Tools&#092;VMip.exe</span></li><li><span style="font-size: small">%ProgramFiles%&#092;VMware&#092;VMware Tools&#092;VMwareTray.exe</span></li><li><span style="font-size: small">%ProgramFiles%&#092;Windows Media Player&#092;wmplayer.exe</span></li><li><span style="font-size: small">%ProgramFiles%&#092;Windows NT&#092;dialer.exe</span></li><li><span style="font-size: small">%ProgramFiles%&#092;Windows NT&#092;Pinball&#092;PINBALL.EXE</span></li><li><span style="font-size: small">%Windir%&#092;pchealth&#092;helpctr&#092;binaries&#092;HelpCtr.exe</span></li><li><span style="font-size: small">%Windir%&#092;pchealth&#092;helpctr&#092;binaries&#092;msconfig.exe</span></li></ul></ul><br /><ul><li><span style="font-size: x-small"><strong>The following directory was created:</strong></span></li><ul><li><span style="font-size: small">%AppData%&#092;tazebama</span></li></ul></ul><ul><li><span style="font-size: small"><strong>Registry Modifications</strong></span></li></ul><br /><ul><li><span style="font-size: small">The following Registry Key was created:</span></li><ul><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Exchange</span></li></ul></ul> <ul><li><span style="font-size: small">The following Registry Value was deleted:</span></li><ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
Explorer]</span></li><ul><li><span style="font-size: small">NoDriveTypeAutoRun = 0x00000091</span></li></ul></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 18 Jul 2008 14:04:50 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຄຶວ່າຂ້າພະເຈົ້າຫຼິ້ນເນັດຢູ່ແລ້ວມັນຟ້ອງຂຶ້ນແລະບໍ່ສາມາດເຂົ້າເວັບຕ່າງໆໄດ້
ມາບອກໃຫ່ໂຫຼດ IE Antivirus ຫຼັງຈາກໂຫຼດໄປແລ້ວຄົ້ນເຫັນແຕ່ຂ້າບໍ່ໄດ້<br />ມັນບອກໃຫ້ໃຊ້Serial ແຕ່ຂ້າພະເຈົ້າຈັ່ງໃດກະບໍ່ເຫັນ ຊິ້ເຮັດແນວໃດຊ່ວຍບອກວິທີແດ່<br /><a class='bbcode' href='http://www.laoav.net/files/public/1216510387_690_FT0_virus.jpg' rel='external' ><img src='http://www.laoav.net/files/public/1216510387_690_FT0_virus_.jpg' class='bbcode' alt='' width='120' height='94'  /></a><br />]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sun, 20 Jul 2008 02:33:07 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ລອງໄປເຮັດເບີ່ງ</span><br /><a href='http://www.laoav.net/files/public/1216512724_690_FT0_danger.zip'><img src='http://www.laoav.net/images/generic/dark/file.png' alt='' style='border:0; vertical-align:middle' /></a> <a href='http://www.laoav.net/files/public/1216512724_690_FT0_danger.zip'>danger.zip</a>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sun, 20 Jul 2008 03:12:04 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຄຶວ່າມັນບໍ່ສາມາດເຂົ້າMy computer,My Documents and folder,ແລະໂປຮແກມຮທີ່ຕັ້ງຢູ່ໃນຄວມຍັງບໍ່ສາມາດໃຊໄດ້ຈັກຢ່າງ<br />ຊ່ວຍບອກວີທີແດ່ທ່ານ ອາເລັກໄຊ]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Mon, 21 Jul 2008 06:33:19 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">Backdoor.Small.LS installs itself into the system directory. It allows remote attackers to gain access to the computer. It also adds itself to the authorized applications list of Windows Firewall Policy so that it can communicate to a remote server.</span><br /><br /><span style="font-size: small"><strong>+File System Modifications</strong></span><br /><span style="font-size: small"> %System%&#092;wininet.exe<br />%System%&#092;svshost.dll</span><br /><span style="font-size: small"><strong>+Memory Modifications</strong></span><br /><span style="font-size: small">wininet.exe</span><br /><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{D7FFD784-5276-42D1-887B-
00267870A4C7}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{D7FFD784-5276-42D1-887B-
00267870A4C7}&#092;InProcServer32</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;RIT</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;RIT&#092;The Bat!</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{D7FFD784-5276-42D1-887B-
00267870A4C7}&#092;InProcServer32]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;svshost.dll"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;ShellSer
viceObjectDelayLoad]</span></li><ul><li><span style="font-size: small">SysRun = "{D7FFD784-5276-42D1-887B-00267870A4C7}"</span></li></ul></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 23 Jul 2008 11:27:53 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">Email-Worm.Zhelatin normally received as an email attachment; may consist of a rootkit, a peer-to-peer client, and a mass-mailing worm component. Its code may be injected and run from the legitimate services.exe process in order to bypass firewalls.</span><br /><span style="font-size: small"><strong>+File System Modifications</strong></span><br /><span style="font-size: small"> %Windir%&#092;helloserv.config<br />%Windir%&#092;helloserv.exe</span><br /><span style="font-size: small"><strong>+Memory Modifications</strong></span><br /><span style="font-size: small">helloserv.exe</span><br /><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;ITStorage&#092;Finders]</span></li><ul><li><span style="font-size: small">ID = 0x794F7168</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">helloserv = "%Windir%&#092;helloserv.exe"</span></li></ul><span style="font-size: small"><br /><em>so that helloserv.exe runs every time Windows starts</em></span></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Thu, 24 Jul 2008 08:48:55 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">SpyAxe is a Rogue Anti-Spyware product which comes bundled along with a malicious downloader. It is downloaded and installed without the users consent.<br /><br /><strong>+</strong><span style="color: #ff0000"><strong>File System Modifications<br /></strong></span> %System%&#092;funfsnv.dll<br /><br />+<span style="color: #ff0000"><strong>Memory Modifications<br /></strong></span>funfsnv.dll<br /><br /><span style="color: #ff0000"><strong>+Registry Modifications<br /></strong></span></span><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{99f8405b-63d1-421a-83bb-
7b4b0642ac28}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{99f8405b-63d1-421a-83bb-
7b4b0642ac28}&#092;InProcServer32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Uninstall
&#092;Windows Safety Alert</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{99f8405b-63d1-421a-83bb-
7b4b0642ac28}&#092;InProcServer32]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;funfsnv.dll"</span></li><li><span style="font-size: small">ThreadingModel = "Apartment"</span></li></ul><li><span style="font-size: small">[[pathname with a string SHARE]&#092;SharedTaskScheduler]</span></li><ul><li><span style="font-size: small">{99f8405b-63d1-421a-83bb-7b4b0642ac28} = "eulogical"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Uninstal
l&#092;Windows Safety Alert]</span></li><ul><li><span style="font-size: small">DisplayName = "Windows Safety Alert"</span></li><li><span style="font-size: small">UninstallString = "[file] /del"</span></li></ul></ul></ul><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Thu, 24 Jul 2008 08:55:47 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">Trojan.Downloader.Zlob.GEN is a generic trojan horse that downloads other trojans and attempts to hijack Internet Explorers home page.<br /><br /><strong>Adware.Component.Generic<br /></strong>Common Components that may be used by AdMedia, Adware.Allsum, Adware.Agent.BN, Trojan.Downloader.VideoCach and other adwares.<br /><br />+</span><strong><span style="font-size: small; color: #ff0000">File System Modifications<br /></span></strong><span style="font-size: small"> %DesktopDir%&#092;AntiSpyCheck 2.1.lnk<br />%StartMenu%&#092;AntiSpyCheck 2.1.lnk<br />%Programs%&#092;AntiSpyCheck 2.1&#092;AntiSpyCheck 2.1.lnk<br />%ProgramFiles%&#092;ASC 2.1&#092;ASC 2.1.exe<br />%ProgramFiles%&#092;ASC 2.1&#092;ASCWarning32.dll<br />%ProgramFiles%&#092;ASC 2.1&#092;uninst.exe<br /><strong><br /><span style="color: #ff0000">+Memory Modifications<br /></span></strong>asc 2.1.exe<br /><br />+<span style="color: #ff0000"><strong>Registry Modifications<br /></strong></span></span><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{58472BC6-BEA3-42d4-8917-
7A8BCB0711B5}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{58472BC6-BEA3-42d4-8917-
7A8BCB0711B5}&#092;InprocServer32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{58472BC6-BEA3-42d4-8917-
7A8BCB0711B5}&#092;ProgID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{58472BC6-BEA3-42d4-8917-
7A8BCB0711B5}&#092;Programmable</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{58472BC6-BEA3-42d4-8917-
7A8BCB0711B5}&#092;TypeLib</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{58472BC6-BEA3-42d4-8917-
7A8BCB0711B5}&#092;VersionIndependentProgID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{D2608046-DD09-A225-01BF-
70C1EDD8B2E8}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{D2608046-DD09-A225-01BF-
70C1EDD8B2E8}&#092;InprocServer32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{967A494A-6AEC-4555-
9CAF-FA6EB00ACF91}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{967A494A-6AEC-4555-
9CAF-FA6EB00ACF91}&#092;ProxyStubClsid</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{967A494A-6AEC-4555-
9CAF-FA6EB00ACF91}&#092;ProxyStubClsid32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{967A494A-6AEC-4555-
9CAF-FA6EB00ACF91}&#092;TypeLib</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{9692BE2F-EB8F-49D9-
A11C-C24C1EF734D5}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{9692BE2F-EB8F-49D9-
A11C-C24C1EF734D5}&#092;ProxyStubClsid</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{9692BE2F-EB8F-49D9-
A11C-C24C1EF734D5}&#092;ProxyStubClsid32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{9692BE2F-EB8F-49D9-
A11C-C24C1EF734D5}&#092;TypeLib</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{A8954909-1F0F-41A5-A7FA-
3B376D69E226}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{A8954909-1F0F-41A5-A7FA-
3B376D69E226}&#092;1.0</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{A8954909-1F0F-41A5-A7FA-
3B376D69E226}&#092;1.0&#092;0</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{A8954909-1F0F-41A5-A7FA-
3B376D69E226}&#092;1.0&#092;0&#092;win32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{A8954909-1F0F-41A5-A7FA-
3B376D69E226}&#092;1.0&#092;FLAGS</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{A8954909-1F0F-41A5-A7FA-
3B376D69E226}&#092;1.0&#092;HELPDIR</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ASCWarning32.WarningBHO</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ASCWarning32.WarningBHO&#092;CLSID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ASCWarning32.WarningBHO&#092;CurVer</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ASCWarning32.WarningBHO.1</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ASCWarning32.WarningBHO.1&#092;CLSID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Browser Helper Objects</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Browser Helper Objects&#092;{58472BC6-BEA3-42d4-8917-7A8BCB0711B5}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Uninstall
&#092;asc 2.1</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Licenses</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;ASC 2.1</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;ASC 2.1&#092;Update</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{58472BC6-BEA3-42d4-8917-
7A8BCB0711B5}&#092;VersionIndependentProgID]</span></li><ul><li><span style="font-size: small">(Default) = "ASCWarning32.WarningBHO"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{58472BC6-BEA3-42d4-8917-
7A8BCB0711B5}&#092;TypeLib]</span></li><ul><li><span style="font-size: small">(Default) = "{DEC7D971-C561-4350-8B18-73FBC3339459}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{58472BC6-BEA3-42d4-8917-
7A8BCB0711B5}&#092;ProgID]</span></li><ul><li><span style="font-size: small">(Default) = "ASCWarning32.WarningBHO.1"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{58472BC6-BEA3-42d4-8917-
7A8BCB0711B5}&#092;InprocServer32]</span></li><ul><li><span style="font-size: small">(Default) = "%ProgramFiles%&#092;ASC 2.1&#092;ASCWarning32.dll"</span></li><li><span style="font-size: small">ThreadingModel = "Apartment"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{58472BC6-BEA3-42d4-8917-
7A8BCB0711B5}]</span></li><ul><li><span style="font-size: small">(Default) = "ASCWarningBHO Class"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{D2608046-DD09-A225-01BF-
70C1EDD8B2E8}&#092;InprocServer32]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;wbem&#092;wbemcons.dll"</span></li><li><span style="font-size: small">ThreadingModel = "Both"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{D2608046-DD09-A225-01BF-
70C1EDD8B2E8}]</span></li><ul><li><span style="font-size: small">(Default) = "Microsoft WBEM Log File Event Consumer Provider"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{967A494A-6AEC-4555-
9CAF-FA6EB00ACF91}&#092;TypeLib]</span></li><ul><li><span style="font-size: small">(Default) = "{A8954909-1F0F-41A5-A7FA-3B376D69E226}"</span></li><li><span style="font-size: small">Version = "1.0"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{967A494A-6AEC-4555-
9CAF-FA6EB00ACF91}&#092;ProxyStubClsid32]</span></li><ul><li><span style="font-size: small">(Default) = "{00020420-0000-0000-C000-000000000046}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{967A494A-6AEC-4555-
9CAF-FA6EB00ACF91}&#092;ProxyStubClsid]</span></li><ul><li><span style="font-size: small">(Default) = "{00020420-0000-0000-C000-000000000046}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{967A494A-6AEC-4555-
9CAF-FA6EB00ACF91}]</span></li><ul><li><span style="font-size: small">(Default) = "_IBhoAppEvents"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{9692BE2F-EB8F-49D9-
A11C-C24C1EF734D5}&#092;TypeLib]</span></li><ul><li><span style="font-size: small">(Default) = "{A8954909-1F0F-41A5-A7FA-3B376D69E226}"</span></li><li><span style="font-size: small">Version = "1.0"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{9692BE2F-EB8F-49D9-
A11C-C24C1EF734D5}&#092;ProxyStubClsid32]</span></li><ul><li><span style="font-size: small">(Default) = "{00020424-0000-0000-C000-000000000046}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{9692BE2F-EB8F-49D9-
A11C-C24C1EF734D5}&#092;ProxyStubClsid]</span></li><ul><li><span style="font-size: small">(Default) = "{00020424-0000-0000-C000-000000000046}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{9692BE2F-EB8F-49D9-
A11C-C24C1EF734D5}]</span></li><ul><li><span style="font-size: small">(Default) = "IBhoApp"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{A8954909-1F0F-41A5-A7FA-
3B376D69E226}&#092;1.0&#092;0&#092;win32]</span></li><ul><li><span style="font-size: small">(Default) = "%ProgramFiles%&#092;ASC 2.1&#092;ASCWarning32.dll"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{A8954909-1F0F-41A5-A7FA-
3B376D69E226}&#092;1.0&#092;HELPDIR]</span></li><ul><li><span style="font-size: small">(Default) = "%ProgramFiles%&#092;ASC 2.1&#092;"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{A8954909-1F0F-41A5-A7FA-
3B376D69E226}&#092;1.0&#092;FLAGS]</span></li><ul><li><span style="font-size: small">(Default) = "0"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{A8954909-1F0F-41A5-A7FA-
3B376D69E226}&#092;1.0]</span></li><ul><li><span style="font-size: small">(Default) = "BhoNew 1.0 Type Library"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ASCWarning32.WarningBHO&#092;CurVer]</span></li><ul><li><span style="font-size: small">(Default) = "ASCWarning32.WarningBHO.1"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ASCWarning32.WarningBHO&#092;CLSID]</span></li><ul><li><span style="font-size: small">(Default) = "{58472BC6-BEA3-42d4-8917-7A8BCB0711B5}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ASCWarning32.WarningBHO]</span></li><ul><li><span style="font-size: small">(Default) = "WarningBHO Class"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ASCWarning32.WarningBHO.1&#092;CLSID]</span></li><ul><li><span style="font-size: small">(Default) = "{58472BC6-BEA3-42d4-8917-7A8BCB0711B5}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ASCWarning32.WarningBHO.1]</span></li><ul><li><span style="font-size: small">(Default) = "WarningBHO Class"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Browser Helper Objects&#092;{58472BC6-BEA3-42d4-8917-7A8BCB0711B5}]</span></li><ul><li><span style="font-size: small">NoExplorer = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">asc32 = ""%ProgramFiles%&#092;ASC 2.1&#092;asc 2.1.exe""</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Uninstal
l&#092;asc 2.1]</span></li><ul><li><span style="font-size: small">DisplayName = "AntiSpyCheck 2.1"</span></li><li><span style="font-size: small">UninstallString = "%ProgramFiles%&#092;ASC 2.1&#092;uninst.exe"</span></li><li><span style="font-size: small">DisplayIcon = "%ProgramFiles%&#092;ASC 2.1&#092;asc 2.1.exe"</span></li><li><span style="font-size: small">DisplayVersion = "2.1"</span></li><li><span style="font-size: small">NSIS:StartMenuDir = "AntiSpyCheck 2.1"</span></li><li><span style="font-size: small">URLInfoAbout = "http://www.AntiSpyCheck.com"</span></li><li><span style="font-size: small">Publisher = "AntiSpyCheck Software"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Licenses]</span></li><ul><li><span style="font-size: small">{R7C0DB872A3F777C0} = 4A 8D 7D 4C</span></li><li><span style="font-size: small">{K7C0DB872A3F777C0} = B9 CE 35 F0 DD 0C 1F FF FF FF FF 9D C6 25 CF 03 07 99 01 65 14 0F C8 1F F3 29 FB 4A 8D 7D 4C FF FF FF FF 87 30 0C C3 FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF F</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">AUTORUN_VAL = "%ProgramFiles%&#092;ASC 2.1&#092;asc 2.1.exe "</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;ASC 2.1]</span></li><ul><li><span style="font-size: small">aid = "1012"</span></li></ul></ul></ul><br /><span style="font-size: small"><span style="color: #ff0000"><strong><br /></strong></span></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Thu, 24 Jul 2008 08:59:52 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ເປັນເວັບໄຊຫລອກລວງວ່າເປັນເວັບໃຫ້ດາວໂລດໂປຣແກຣມ Antivirus XP Security ໃນລັກສະນະ ນີ້ເມື່ອດວາວໂລດແລ້ວຕິດຕັ້ງໃນຄອມທ່ານຈະສ້າງຄວາມລຳຄານເຊັ່ນ ທີ່ເຫັນ<br />ຫລາຍແມ່ນ ໃຫ້ລົງທະບຽນຫລືສັ່ງຊື້ໂປຣແກຣມເປັນຕົ້ນແລະມີຂໍ້ຄວາມເຕື່ອນຕະຫລອດວ່າ<br />ຄອມເຮົາຕິດໄວຣັສໃນລັກສະນະນີ້ ເຊື່ງຈະເຫັນຫລາຍໃນໂລກອິນເຕີເນັດສະນັ້ນທານຄວນ<br />ລະວັງເວັບໃນລັກສະນະນີ້ທີ່ບໍ່ເຊື່ອຖືຫ້າມດາວໂລດທົ່ວຖີບ<br />ອັນນີ້ກະເວັບໜື່ງຄ້າຍໆກັນ<br /></span><span style="font-size: small">ຮູບເວັບ  (www.xpsecuritycenter.com)<br /></span><img src="http://maillaoav.googlepages.com/fakeAV.JPG" style="border: 0px solid black" /><br /><span style="font-size: small">(http://antivirus2009-freescan.com) ຫລອກຫລວງມີ  TROJ_FAKEAV.BG</span><br /><img src="http://maillaoav.googlepages.com/alertwww.JPG" style="border: 0px solid black" /><span style="font-size: small"><br /><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Sat, 02 Aug 2008 13:14:11 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ໜ້າຕາຂອງເວັບ ຫລອກໃຫ້ດາວໂລດໂປຣແກຣມມາຕິດຕັ້ງທີ່ເປັນໂຕຣຈັນ<br /></span><img src="http://maillaoav.googlepages.com/winav2008www.JPG" style="border: 0px solid black" /><br /><span style="font-size: small">ແລະອີກເວັບລັກສະນະຄືກັນ<br /></span><img src="http://maillaoav.googlepages.com/powerav2008www.JPG" style="border: 0px solid black" /><br /><br /><br /><span style="font-size: small">ຢ່າຫລົ້ງກົນເດີໄພອີນເຕີເນັດ</span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Sat, 02 Aug 2008 15:43:12 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຫ້າມດາວໂລດໂປຣແກຣມໃນເວັບດັ່ງກ່າວ<br /><br /></span><img src="http://maillaoav.googlepages.com/fav2009prowww.JPG" style="border: 0px solid black" />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Sat, 02 Aug 2008 20:08:56 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<h2>Technical Details:</h2><strong><span style="font-size: small">+File System Modifications</span></strong><br /><span style="font-size: small">c:&#092;RECYCLER&#092;S-1-5-21-1202660629-412668190-725345543-500&#092;smss.exe<br />c:&#092;RECYCLER&#092;Taskmgr.exe</span><br /><br /><ul><li><span style="font-size: small">The following directory was created:</span></li><ul><li><span style="font-size: small">c:&#092;RECYCLER&#092;S-1-5-21-1202660629-412668190-725345543-500</span></li></ul></ul><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{10020D75-0000-0000-C000-
000000000000}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{10020D75-0000-0000-C000-
000000000000}&#092;DefaultIcon</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{10020D75-0000-0000-C000-
000000000000}&#092;InProcServer32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{10020D75-0000-0000-C000-
000000000000}&#092;Shell</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{10020D75-0000-0000-C000-
000000000000}&#092;Shell&#092;Open</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{10020D75-0000-0000-C000-
000000000000}&#092;Shell&#092;Open&#092;Command</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{10020D75-0000-0000-C000-
000000000000}&#092;ShellFolder</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
ControlPanel&#092;NameSpace&#092;{10020D75-0000-0000-C000-000000000000}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Desktop&#092;NameSpace&#092;{10020D75-0000-0000-C000-000000000000}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
MyComputer&#092;NameSpace&#092;{10020D75-0000-0000-C000-000000000000}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies&#092;
Explorer</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies&#092;
Explorer&#092;Run</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;E
xplorer&#092;Run</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{10020D75-0000-0000-C000-
000000000000}&#092;Shell&#092;Open&#092;Command]</span></li><ul><li><span style="font-size: small">(Default) = "C:&#092;RECYCLER&#092;Taskmgr.exe"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{10020D75-0000-0000-C000-
000000000000}&#092;ShellFolder]</span></li><ul><li><span style="font-size: small">Attributes = 0x00000000</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{10020D75-0000-0000-C000-
000000000000}&#092;InProcServer32]</span></li><ul><li><span style="font-size: small">(Default) = "Shell32.dll"</span></li><li><span style="font-size: small">ThreadingModel = "Apartment"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{10020D75-0000-0000-C000-
000000000000}&#092;DefaultIcon]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;shell32.dll,-8"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{10020D75-0000-0000-C000-
000000000000}]</span></li><ul><li><span style="font-size: small">(Default) = "FullHouse Drive"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;exefile]</span></li><ul><li><span style="font-size: small">NeverShowExt = ""</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;ControlPanel&#092;NameSpace&#092;{10020D75-0000-0000-C000-000000000000}]</span></li><ul><li><span style="font-size: small">(Default) = ""</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Desktop&#092;NameSpace&#092;{10020D75-0000-0000-C000-000000000000}]</span></li><ul><li><span style="font-size: small">(Default) = ""</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;MyComputer&#092;NameSpace&#092;{10020D75-0000-0000-C000-000000000000}]</span></li><ul><li><span style="font-size: small">(Default) = ""</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies
&#092;Explorer&#092;Run]</span></li><ul><li><span style="font-size: small">Task Manager = "C:&#092;RECYCLER&#092;S-1-5-21-1202660629-412668190-725345543-500&#092;smss.exe"</span></li></ul><span style="font-size: small"><br /><em>so that smss.exe runs every time Windows starts</em></span><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
Explorer&#092;Run]</span></li><ul><li><span style="font-size: small">Manager Task = "C:&#092;RECYCLER&#092;S-1-5-21-1202660629-412668190-725345543-500&#092;smss.exe"</span></li></ul><span style="font-size: small"><br /><em>so that smss.exe runs every time Windows starts</em></span></ul></ul> <ul><li><span style="font-size: small">The following Registry Value was modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;exefile]</span></li><ul><li><span style="font-size: small">(Default) = "File Folder"</span></li></ul></ul></ul><strong><span style="font-size: small">+Other details</span></strong><br /><ul><li><span style="font-size: small">Analysis of the file resources indicate the following possible country of origin:</span></li></ul>  <table class="tbl" cellpadding="15" cellspacing="0"><tbody><tr> </tr><tr><td class="cell_1"><span style="font-size: small"><img src="http://threatexpert.com/resources/flags/thailand.gif" /></span></td> <td class="cell_2"><span style="font-size: small">Thailand</span></td></tr></tbody></table><br /><br /><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Thu, 07 Aug 2008 11:44:08 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[- ນຳໃຊ້ໂປຣແກຣມ Regedit.exe<br />1 ໄປທີ່ Start  > Run ແລ້ວພິມຄຳສັ່ງ Regedit ແລ້ວ Enter<br />2 ໄປທີ່ HKEY_CURRENT_USER&#092;Software&#092;Google&#092;NavClient&#092;1.1&#092;History<br />3 ຄຣິກຂວາທີ່ຄີຍ່ອຍ (Sub Key) ຂອງ History ແລ້ວເລືອກຄຳສັ່ງ Delete ແລ້ວກະສຳເລັດ<br /><br />]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:09:48 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ເວລາທີ່ເຮົາເຂົ້າ My computer ຈະເຫັນວ່າ Icon ເປັນຮູບດຽວກັນໝົດແລ້ວຖະຍອຍກັນອກກເປັນ Icon ທີ່ ຖືກຕ້ອງ<br />ເຮົາສາມາດແກ້ໄຂໄດ້<br /> 1 ໄປທີ່ My computer > Tools > Folder Options<br />2 ຈາກນັ້ນເລືອກ View<br />3 ຄຣິກຍົກເລີກທີ່ ຂໍ້ຄວາມ Automatically search for network folder and printer<br />4 ຄຣິກ Apple > OK ແລ້ວ Icon ທີ່ຊ້າກໍ່ຈະໄວຂື້ນ<br />]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:10:15 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[Cache ຄືໜ່ວຍຄວາມຈຳທີ່ຢູ່ໃນ CPU ໂດຍທີ່ CPU ຈະຄາດເດົາເຖີ່ງສີ່ງທີ່ຜູ້ໃຊ້ງານຕ້ອງການກະທຳແລະຈັດເກັບຂໍ້ມູນເຫລົ່ານັ້ນເອົ
າໄວ້ໃນ L2 Cache ສ່ວນ L1 Cache ຈະເປັນຕົວເລັ່ງ<br />ຄວາມໄວໃນການສົ່ງຂໍ້ມູນໃຫ້ກັບ CPU ນັ້ນເອງ<br />ສ່ວນການເລືອກຊື CPU ຖ້າມີຄວາມຈຳ Cache ສູງຈະເປັນການດີກ່ວາເດີພີນ້ອງ ;D<br />]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:10:50 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[Hello inlao.net, i usually open inlao.net web site, its has alot of usefull topic here<br />And i want to know the way rto kill the virus "Full house" I couldn't delete from my PC, i use Nod32, Kaspersky, AVG, Adware, spyware anti and antivia, but couldn't kill it<br />Please tell me the way how to kill it<br />Thank you very much,<br />]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:11:19 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[1 ບາງທ່ານອາດເຄີຍພົບບັນຫາ "Low on virtual memory" ກໍລະນີມີຂໍ້ຄວາມເຕື່ອນແບບນີ້ບອກໃຫ້ຮູ້ວ່າຄອມຂອງທ່ານໃຊ Ram ຂອງລະບົບຈົນໝົດແຕ່ຍັງບໍ່ພຽງພໍກັບໂປຣແກຣມທີ່ທ່ານກຳລັງໃຊ້ງານຢູ່ ລະບົບຈີ່ງຕ້ອງໃຊ້ພື້ນທີ່ Hard disk ຈຳນວນໜື່ງມາໃຊ້ ເປັນ (Swapfile) <br />ກໍລະນີແບບນີ້ເກີດຈາກທ່ານໄດ້ເປີດໂປຣແກຣມທີ່ມີຂະໜາດໃຫຍ່ໆ ເຊັ່ນ Photoshop ເປັນຕົ້ນ<br />2 ຂັ້ນຕອນການຕັ້ງຄ່າ<br />      1 ຄຣິກຂວາທີ່ My computer > Properties<br />      2 Advance > Setting ໃນຂອບຂອງ Performance<br />      3 ຄຣິກແທັບ Advance > ໄປທີ່ Virtual memory > Change<br />      4 ໃນຂອບຂອງ Paging file size for selcted drive  ໃຫ້ເລືອກ ເປັນ System managed size ແລ້ວ ກະ OK ຖືວ່າສຳເລັດ<br />3 ຖ້າຫາກທ່ານເຮັດຕາມຂັ້ນຕອນນີ້ໝົດແລ້ວຍັງມີຂໍ້ຄວາມເຕື່ອນຄືຂໍ້ 1 ແນະນຳໃຫ້ທ່ານເພີ່ມ RAM ເປັນ 512 MB ຈະດີກ່ວານອກຈາກຈະເຮັດໃຫ້ລະບົບໃຫ້ໃຊ້ Swapfile<br />ນ້ອຍທີ່ສຸດແລ້ວຍັງຊ່ວຍໃຫ້ເປີດໂປຣແກຣມໄວຂື້ນແລະເປັນການເພີ່ມຄວາມໄວຂອງລະບົບ
ອີກ ::)<br />]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:11:49 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: x-small">ຄວາມຈີ່ງແລ້ວການ Format HDD ຫລາຍໆຄັ້ງບໍ່ວ່າຈັກກີ່ຄັ້ງກໍ່ຕາມຈະບໍ່ສົ່ງຜົນຕໍ່ການເຮັດວຽກຂອງ HDD ແຕ່ຢ່າງໃດຊື່ງເປັນເລື່ອງປົກກະຕິທີ່ຫລາຍໆຄົນຈະຄິດວ່າມີສວ່ນເຮັດໃຫ້ອາຍຸການໃ
ຊ້ງານສັ້ນລົງແຕ່ຄມຈີ່ງແລ້ວເປັນຄວາມເຊື່ອທີ່ຜິດເທົ່ານັ້ນການ Format HDD ບໍ່ຖືເປັນນເຮັດວຽກທີ່ຈະເຮັດໃຫ້ HDD ຕ້ອງຮັບພາລະໜັກຫົວອ່ານຂອງ HDD ຈະບໍ່ມີການສຳພັດກັບໃບຈານດິສຂໍ້ມູນແຕ່ຢ່າງໃດລະຫວ່າງການ Format ສະລຸບແລ້ວຄືວ່າເຮົາສາມາດ Format HDD ຄັ້ງລະວັນກະໄດ້ ນະທ່ານ ອາຍຸການໃຊ້ງານມັນກະບໍ່ແຕກຕ່າງຈາກ HDD ຕົວອື່ນໆດອກ ຮູ້ແລ້ວຢ່າຄິດອີກວ່າ Format ຫລາຍມັນເຟຫັນ <img src='http://www.laoav.net/images/emotes/default/cheesey.png' alt='' style='vertical-align:middle; border:0' /><br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:12:36 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສຳລັບ Power Supply ແບບ ATX<br />ສົມໝຸດວ່າຄອມພິວເຕີຂອງທ່ານເປີດລະໄຟບໍ່ເຂົ້າໃນລັກສະນະນີ້ເປັນຕົ້ນແຕ່ປັກສຽບ
ໄຟຕ່າງໆແມ່ນຖືກຕ້ອງແລ້ວແລະສາຍໄຟກະບໍ່ມີບັນຫາແຕ່ເປີດໄຟບໍ່ເຂົ້າ Case<br />(ບໍ່ເຂົ້າເມນບອດ) ເຮົາສາມາດກວດ Power Supply ໄດ້ດັ່ງນີ້<br />1 ກ່ອນອື່ນໄຂຝາ case ອອກ<br />2 ຖອດສາຍໄຟອອກໃຫ້ໝົດຈາກສາຍທີ່ມາຈາກ Power Supply<br />3 ເອົາສາຍໄຟສຽບໃສ່ Power Supply (ທາງຫລັງ Power Supply)<br />4 ຊອກສາຍລວດທອງນ້ອຍໆມີຢາງຫຸ້ມມາເສັ້ນໜື່ງຍາວປະມານ 4 ຊມ ແລ້ວປອກສາຍຢາງທີ່ຫຸ້ມສາຍທອງທັງ 2 ສົ້ນອອກ<br />5 ໃນຫົວປັກສາຍໄຟຈາກ Power  Supply ໃສ່ເມນບອດ (ທີ່ມີຫລາຍເສັ້ນກ່ວາໝູ່ນັ້ນ) ໃຫ້ເລືອກເອົາສາຍໄຟສີຂຽວ ກັບສີ ດຳເສັ້ນໃດກະໄດ້ມາຕິດກັນ 2 ສົ້ນ ໂດຍໃຊ້ສາຍລວດທອງທີ່ເຮົາກຽມໄວ້ນັ້ນ<br />6 ແລ້ວໃຫ້ເຮົາສັງເກດເບີ່ງວ່າພັດລົມ  Power Supply ປີ່ນບໍ ຖ້າບໍ່ປີ່ນສະແດງວ່າອາດເປັນຍ້ອນ Power Supply  ນັ້ນຕາຍແລ້ວ<br />ນີ້ກະແມ່ນ ເທັກນິກນ້ອຍໆຖ້າທ່ານໃດບໍ່ທັນຮູ້ກະນຳໄປໃຊ້ເບີ່ງ<br /><br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:13:19 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">1. ທຳອິດເປີດໂປຣແກຣມດອສ Start>Run ພີມ CMD ໃນບັອກ Run ແລ້ວ Enter<br />2. ໃນດອສ ພີມຄຳສັ່ງ convert c: /FS:NTFS ແລ້ວ ENTER<br />3. ຫລັງຈາກ Restart ແລ້ວຈີ່ງໄດ້ຜົນ<br /> :o<br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:13:56 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ການບິບອັດຂໍ້ມູນໃນ HDD ເປັນການທີ່ເຮັດໃຫ້ເນື້ອທີ່ HDD ມີທີ່ວ່າງເພີ່ມຂື້ນເນື້ອງຈາກເມື່ອໄດ້ທຳການບິບອັດຂໍ້ມູນແລ້ວເຮັດໃຫ້ຂໍ້ມູນມ
ີຂະໜາດນ້ອຍລົງຊື່ງສ່ວນໃຫຍ່ຈະໃຊ້ການບິບອັດເພື່ອຕ້ອງການພື້ນທີ່ຫລາຍຂື້ນ<br />ແຕ່ບໍ່ໄດ້ເຮັດໃຫ້ລະບົບເຮັດວຽກໄວຂື້ນແຕ່ຢ່າງໄດແຕ່ກັບເຮັດໃຫ້ລະບົບເຮັດວຽກຊ້
າລົງເນື້ອງຈາກເມື່ອທ່ານໄດ້ບິບອັດຂໍ້ມູນແລ້ວເມື່ອຕ້ອງການໃຊ້ງານຂອງ<br />ຂໍ້ມູນຕ້ອງໃຫ້ລະບົບທຳການຄາຍຂໍ້ມູນກ່ອນມາໃຊ້ກະເລີຍຕ້ອງເຮັດໃຫ້ລະບົບເຮັດວຽກ
ເພີ່ມຂື້ນກາຍເປັນການລົດຄວາມໄວໃຫ້ກັບລະບົບເລີຍ<br /><br /> ::) ::) ::)<br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:14:30 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຫລາຍໆທ່ານຄງຈະເຄີຍເຫັນ My Recent Documents ທີ່ຢູ່ໃນສະຕາດເມນູຈະມີລາຍການທີ່ເຮົາເຄີຍໃຊ້ມາ<br />ຖ້າຕ້ອງການລົບຈະເຮັດແນວໃດມີວິທີມາບອກ<br />1 ໃຫ້ຄຣິກຂວາທີ່ Taskbar ແລ້ວເລືອກ Properties<br /><img src='http://img514.imageshack.us/img514/9617/93020508it2.jpg' class='bbcode' alt=''  /><br />2 ຄຣິກແທັບ Start Menu ແລ້ວເລືອກ Start Menu<br /><img src='http://img514.imageshack.us/img514/9517/58669408nf6.jpg' class='bbcode' alt=''  /><br />3 ຄຣິກ Customizes...<br /><img src='http://img444.imageshack.us/img444/8919/38188103ff5.jpg' class='bbcode' alt=''  /><br />4 ຄຮິກແທັບ Advanced ແລ້ວກົດປຸ່ມ Clear List ເພື່ອໃຫ້ມັນລົບອອກ<br />5 ໃຫ້ຄຣິກົກເລີກ ໃນຂໍ້ຄວາມ List my most recent opened document ອອກເພື່ອບໍ່ໃຫ້ມີການເກັບຂໍ້ມູນໄວ້ອີກ<br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:15:13 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">RAM ເປັນໜ່ວຍຄວາມຈຳທີ່ສາມາດຂຽນແລະລົມໄດ້ແບບບໍ່ສິ້ນສຸດແຕ່ບໍ່ສາມາດເກັບຂໍ້ມູນໄດ
້ຖ້າບໍ່ມີໄຟລ້ຽງໃຫ້ກັບຕົວເອງປະຈຸບັນນີ້ທີ່ນິຍົມໃຊ້ແມ່ນຊະນິດ SDRAM<br />ແລະ DDRAM ຊື່ງແຕ່ກ່ອນຈະມີຊະນິດ EDO ຊື່ງປະຈຸບັນບໍ່ນິຍົມແລ້ວແລະສຸດທ້າຍເປັນຊະນິດ RDR ຫລືທີ່ຮຽກກັນໃນນາມ Rambus RAM ການທີ່ຈະເລືອກຊື້<br />RAM ໃນປະຈຸບັນກໍ່ຄວນຈະເລືອກຊື້ຊະນິດ SDRAM ແລະ DDRAM ແລະບໍ່ຄວນຕ່ຳກ່ວາ 256 MB ຖ້າຈະໃຫ້ດີຄວນເປັນ DDRAM ຊື່ມີາຄາທີ່ຕ່ຳລົງກ່ວາແຕ່ກ່ອນ<br />ແຕ່ທ່ານຕ້ອງຄຳນືງເຖີງວ່າເຂົ້າກັບເມນບອດຂອງເຮົາໄດ້ບໍ<br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:15:50 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ທ່ານຣູ້ບໍ່ວ່າທ່ານສາມາດເພີ່ມຄວາມໄວໃຫ້ເຄື່ອງຂອງທ່ານທີ່ໃຊ້ Win XP Pro ຊີ່ງເປັນການເພີ່ມ bandwidth  ໃຫ້ XP ໂດຍປົກກະຕິຈະກຳຈັດສ່ວນຂອງຈັດການຂໍ້ມູນ<br />Packet scheduler ເອົາໄວ້ທີ່ 20% ຂອງ bandwidth  ທີ່ໃຊ້ເຊື່ອມຕໍ່ກັບອີນເຕີເນັດແຕ່ທ່ານສາມາດປ່ຽນຄ່ານີ້ໂດຍ:<br /><br /><img src='http://img181.imageshack.us/img181/1635/speedinterxy4.jpg' class='bbcode' alt=''  /><br /><br />1 Start>Run ພີມ gpedit.msc  ແລ້ວ Enter<br />2 ໄປທີ່  Local computer policy>Administrative Templates>Nextwork>QoSPacket Scheduler<br />3 ໃຫ້ດັບເບີນຄຣິກທີ່ Limit reservable bandwidth >enable<br />4 ໃຫ້ Bandwidth limit(%): = 0<br />5 aply>ok ແລ້ວ Restart ເປັນອັນວ່າສຳເລັດ<br /><br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:16:20 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<ol><li><span style="font-size: small">ເປີດ ໂປຣແກຣມ Regedit ໄປທີ່ Start>run ພິມ Regedit ແລ້ວ Enter</span></li><li><span style="font-size: small">ໄປທີ່ <em>HKEY_CLASSES_ROOT&#092;&#092;AllFilesystemObjects&#092;&#092;shellex&#092;&#092;ContextMenuHandlers</em></span></li><li><span style="font-size: small">ຄຣິກຂວາທີ່ <em>ContextMenuHandlers >new>key</em></span></li><li><span style="font-size: small">ປຽນຊື່ມັນເປັນ Copy To ແລ້ວໃຫ້ Double Click ທີ່ (Default) ທາງຂວາມື<br /></span></li><li><span style="font-size: small">ແລ້ວ Copy ເອົາຄ່າ {C2FBB630-2971-11D1-A18C-00C04FD75D13} ນີ້ໃສ່ ບ່ອນ  new data:</span></li><li><span style="font-size: small">ຄຣິກຂວາທີ່ <em>ContextMenuHandlers >new>key</em></span></li><li><span style="font-size: small">ປຽນຊື່ມັນເປັນ Move To ແລ້ວໃຫ້ Double Click ທີ່ (Default) ທາງຂວາມື</span></li><li><span style="font-size: small">ແລ້ວ Copy ເອົາຄ່າ {C2FBB630-2971-11D1-A18C-00C04FD75D13} ນີ້ໃສ່ ບ່ອນ  new data:</span></li><li><span style="font-size: small">ຄຣິກ OK ແລ້ວປິດໂປຣແກຣມ</span></li><li><span style="font-size: small">ບັດແລ້ວ Copy To ແລະ Move To ກໍ່ຈະອອກມາເຫັນຢູ່ໃນ Explorer right menu<br /></span></li></ol><span style="font-size: small"><br /></span><span style="font-size: small">  </span> <img src="http://img152.imageshack.us/img152/4460/copytokx1.jpg" alt="Image Hosted by ImageShack.us" />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Tue, 30 Oct 2007 13:27:26 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"> 1.<br />copy ເອົາ ທີ່ຢູ່ຂອງ VDO ທີ່ເຮົາກຳລັງເບີ່ງ<br /><img src="http://img210.imageshack.us/img210/4652/31985444fw8.jpg" /><br />2.<br />ເຂົ້າເວັບ<br /><img src="http://img210.imageshack.us/img210/8381/25181905do6.jpg" /><br />3.<br /><img src="http://img111.imageshack.us/img111/1976/67373435qz4.jpg" /><br />4.<br />ກົດ ທີ່ Download ໃນເວັບນີ້ກໍ່ຈະໄດ້ດັ່ງຮູບ<br /><img src="http://img210.imageshack.us/img210/7130/94854109fi2.jpg" /><br /></span> <span style="font-size: small"><br />ສຳລັບໂປຣແກຣມທີ່ອ່ານ VDO ນີ້ແມ່ນສາມາດດາວໂລດໄດ້ທີ່ນີ້<br /><br /><a href="http://dl.filekicker.com/send/file/193122-0O88/FLVPlayerSetup.exe">ດາວໂລດ</a><br /><br /></span><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 02 Nov 2007 08:26:05 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຖ້າຫາກວ່າເວັບໄຊຂອງທ່ານບໍ່ຕ້ອງການບໍເຜີຍແຜ່ສູ່ສາທາລານະໂດຍບໍ່ຕ້ອງການ<br />ໃຫ້ຄົນອື່ນຄົ້ນຫາພົບໃນ Google ທ່ານສາມາດແຈ້ງລົບລາຍຊື່ເວັບຂອງທ່ານໄດ້<br />ໄປທີ່ </span> <span style="font-size: small"><a href="http://www.google.com/remove.html" rel="external">www.google.com/remove.html</a></span><span style="font-size: x-small"><span style="font-size: small">ແລ້ວຜູ້ດູແລລະບົບຈະເຮັດຕາມທີ່ທ່ານຂໍ<br /><br /></span></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Tue, 06 Nov 2007 06:26:59 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສຳລັບຜູ້ທີ່ໃຊ້ບໍລິການ Gmail<br />1. ໃຫ້ທ່ານໄປຕັ້ງຄ່າໃນ Gmail ຂອງທ່ານກ່ອນ ໄປທີ່ setting ແລະ enable IMAP<br /></span><img src="http://img204.imageshack.us/img204/1712/useimapmi0.jpg" style="border: 0px solid black" /><br /><span style="font-size: small">ແລ້ວ ກົດ Save Change<br />2. ໄປເປີດ Outlook Exprss ໃນ Windows        Start>>Programs>>Outlook Express<br />3. ເຮັດຕາມໃນຮູບໃນໂປຣແກຣມ<br /></span><img src="http://img211.imageshack.us/img211/58/outlsetqb0.jpg" style="border: 0px solid black" /><br /><br /><img src="http://img516.imageshack.us/img516/6563/out34vw0.jpg" style="border: 0px solid black" /><br /><br /><img src="http://img516.imageshack.us/img516/2775/out5pf2.jpg" style="border: 0px solid black" /><br /><span style="font-size: small">ກົດ Next<br /></span><img src="http://img401.imageshack.us/img401/1494/out6vs9.jpg" style="border: 0px solid black" /><br /><span style="font-size: small">ກົດ Next<br /></span><img src="http://img401.imageshack.us/img401/6136/out78pv4.jpg" style="border: 0px solid black" /><br /><br /><span style="font-size: small">ກົດ Next<br /></span><img src="http://img401.imageshack.us/img401/4231/out910de4.jpg" style="border: 0px solid black" /><br /><br /><span style="font-size: small">ກົດ Next>>Finish<br />4. ໄປເມນູ Tools>Account<br /></span><img src="http://img516.imageshack.us/img516/3723/outendsk9.jpg" style="border: 0px solid black" /><br /><br /><span style="font-size: small">ແລ້ວກົດ OK<br />5. ສຸດທ້າຍລອງ Send/Recieve<br /></span><img src="http://img267.imageshack.us/img267/241/outrecvtj8.png" style="border: 0px solid black" /><br /><span style="font-size: small">ຖ້າບໍ່ມີບັນຫາລາຍການເມວຂອງທ່ານໃນ Account Gmail ກໍ່ຈະໂລດລົງມາໄວ້ ໃນຄອມຂອງການແລະບໍ່ຈຳເປັນຕອງເຂົ້າໄປເວັບກວດເມວອີກພຽງໃຊ້ Outlook ນີ້ກະໄດ້ແລ້ວ (ມີຫລາຍໂປແກຣມທີ່ໃຊ້ກວດເມວມີແຕ່ເອົາແບບການຕັ້ງຄ່ານີ້ໄປໃຊ້ ກໍ່ໄດ້)<br />ຖ້າມີແນວຂ້ອງໃຈຖາມໄດ້ໃນ Forum ນີ້<br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 21 Nov 2007 06:55:31 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">1. ເປີດໂປຣແກຣມ Regedit ໄປທີ່ Start>run ພິມ Regedit ແລ້ວ Enter<br />2. HKEY_CLASSES_ROOT&#092;lnkfile<br />ໃຫ້ລົບ ຄ່າ IsShortcut ທາງແທັບຂວາອອກ<br /></span><img src="http://img520.imageshack.us/img520/2605/remarrowtl9.png" style="border: 0px solid black" /><br /><span style="font-size: small"><br />3. ແລ້ວ Restart Com ຫາກຈະໄດ້ດັ່ງໃຈ<br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Tue, 27 Nov 2007 12:08:32 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ເຄື່ອງພີມເລເຊີບໍ່ຄືກັບອີງເຈັດທີ່ໃຊ້ນ້ຳເມິກເວລາຍ້າຍຫລືຍົກໄປໃຊ້ງານໃນທີ່ຕ
່າງໆຈະ<br />ເຮັດໄດ້ສະດວກກ່ວາແຕ່ສຳລັບເລເຊີນັ້ນການເຄື່ອນຍ້າຍອາດເຮັດໃຫ້ຟົງເມິກໃນກ້ອງ<br />ເມິກກະຈາຍໃນເຄື່ອງໄດ້ດັ່ງນັ້ນແນະນຳໃຫ້ຖອດກັບເມິກຫລືໂທນເນີອອກກ່ອນການ<br />ເຄື່ອນຍ້າຍເພື່ອຄວາມປອດໄພ<br /><br /><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Tue, 11 Dec 2007 04:41:01 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><span style="color: #0000ff"><strong><u><span style="font-size: small">ເປັນເທັກນິກໃນການປິດ Control Panel ຂອງ Windows</span></u></strong></span><br /></div><span style="font-size: small"><br />1. ເປີດໂປຣແກຣມ Regedit ກ່ອນ<br />2. ໄປທີ່<br />-HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;<br />CurrentVersion&#092;Policies&#092;Explorer<br />ໃຫ້ເພີ່ມຄ່າ NoControlPanel =1 ໃສ່ຖ້າບໍ່ມີກໍ່ສ້າງຂື້ນມາໃໝ່<br />ເບີ່ງລາຍລະອຽດໃນຮູບ<br /><br /></span><img src="http://img245.imageshack.us/img245/818/discontrldl2.jpg" style="border: 0px solid black" /><br /><span style="font-size: small">3. Restart com<br /><br />ໂຊກດີ<br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 28 Dec 2007 10:12:17 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ທ່ານຮູ້ບໍວ່າທ່ານສາມາດຕັ້ງເວລາການປິດຄອມພິວເຕີຂອງທ່ານໂດຍອັດຕະໂນມັດໃນ<br />ເວລາທີ່ທ່ານຕ້ອງການ<br />ມີວິທີດັ່ງນີ້<br /><br />1. ຄຣິກຂວາທີ່ໜ້າຄອມຂອງທ່ານແລ້ວໄປທີ່ New>Shortcut<br />2. ໃນບັອກນັ້ນໃຫ້ພິມຄຳສັ່ງດັ່ງນີ້:<br /></span><strong><span style="font-size: small; font-family: Trebuchet MS,Arial,Helvetica"><span style="font-family: Tunga">    shutdown -s -t 3600   </span></span></strong><span style="font-size: small; font-family: Trebuchet MS,Arial,Helvetica"><span style="font-family: Tunga">ແລ້ວ Next<br /><span style="font-size: small">- 3600 ແມ່ນຈຳນວນວິນາທີ ກ່ອນຄອມຈະ Shutdown ສະນັ້ນ 60 secs*60 mins=<br />3600 secs  ໝາຍຄວາມວ່າ ຄອມຈະມອດພາຍໃນ 60 ນາທີ ຫລື 1 ຊົ່ວໂມງນັ້ນເອງ<br />3. ກົດ Finish ຖ້າຕ້ອງການໃຊ້ກໍ່ພຽງແຕ່ດັບເບີ້ນຄຣິກໄຟລທີ່ສ້າງມານັ້ນ<br /><br />ໝາຍເຫດ: ກໍລະນີຕ້ອງການຍົກເລີກແມ່ນໄປທີ່ Start>Run ພີມຄຳສັ່ງດັ່ງນີ້:<br /><br />Shutdown -a ແລ້ວ Ok ກໍ່ຍົກເລີກແລ້ວ<br /><br /><br /></span></span></span><strong><span style="font-size: small; font-family: Trebuchet MS,Arial,Helvetica"><span style="font-family: Tunga"><br /></span></span></strong>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Thu, 10 Jan 2008 05:33:00 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<strong><u><span style="font-size: small">ເຮັດຕາມຮູບ:<br /><br /></span></u></strong><img src="http://img297.imageshack.us/img297/6370/outl1xf5.jpg" style="border: 0px solid black" /><br /><br /><img src="http://img300.imageshack.us/img300/3923/outl2hl6.jpg" style="border: 0px solid black" /><br /><br /><img src="http://img300.imageshack.us/img300/4930/outl3mq6.jpg" style="border: 0px solid black" /><br /><br /><img src="http://img50.imageshack.us/img50/4760/outl4dm3.jpg" style="border: 0px solid black" /><br /><br /><img src="http://img300.imageshack.us/img300/3991/outl5fg2.jpg" style="border: 0px solid black" /><br /><br /><img src="http://img50.imageshack.us/img50/2198/outl6ht0.jpg" style="border: 0px solid black" /><br /><br /><img src="http://img339.imageshack.us/img339/9963/outl7ag6.jpg" style="border: 0px solid black" /><br /><br /><span style="font-size: small">ແລ້ວປິດໂປຣແກຣມແລະເປີດໃໝ່</span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 11 Jan 2008 12:16:32 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ການແກ້ບັນຫາ Folder ຖືກ Hidden ໄວ້ໃນ USB  ອາດຈະແມ່ນຍ້ອນຖືກໄວຣັສ<br />ເຊັ່ນ:  ໄວຣັສ Fullhouse,Flashy ເປັນຕົ້ນ<br /><br />ມີວິທີການແກ້ໄຂດັ່ງນີ້<br /><br />1. Start...>Run<br />2. Type Cmd ແລ້ວ Enter<br />3. ແລ້ວເຂົ້າໃນ Dos<br /><br />ໃຫ້ທ່ານສັງເກດເບີ່ງວ່າ USB ຂອງທ່ານແມ່ນເປັນ ຊ່ອງໃດ<br />ຕົວຢ່າງ:<br /><br />F:&#092;  ແມ່ນຊ່ອງ USB Drive<br /><br />ໃນ Dos ໃຫ້ພິມ   F: ແລ້ວ Enter<br />ມັນຈະຢູ່ໃນລັກສະນະນີ້<br /><br />F:&#092;><br />ໃຫ້ທ່ານພີມຄຳສັ່ງນີ້ໃສ່ຕໍ່ຈາກ </span><span style="font-size: small">F:&#092;><br /><br />F:&#092;><span style="color: #ccffcc"><strong>attrib -h -s /D /S</strong></span>  ແລ້ວ Enter ຖ້າຈົນແລ້ວ<br />Folder ທີ່ຖືກ ເຊື່ອງໄວ້ກໍ່ຈະກັບມາປົກກະຕິ<br /><br /><br /></span><span style="font-size: small"><strong>ໂຊກດີ</strong><br /><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 19 Mar 2008 11:29:08 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຊ່ວຍບອກວີແດ່ທ່ານ ອາເລັກໄຊຮ໌</span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Mon, 21 Jul 2008 07:12:26 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຂອບໃຈຫຼາຍລວ່ງໜ້າຫຼາຍທ່ານ ອາເລັກໄຊ<br />ບອກເບີເຈົ້າໃຫ້ ບາງເທື່ອມີບັນຫາຄວມພໍຊິ້ໄດ້ໂທຫາ<br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Mon, 21 Jul 2008 08:38:58 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ມັນສາມາດປ້ອງກັນໄດ້ໜົດທຸກພາກສ່ວນບໍທ່ານ ແລະສາມາດແທນ Anti-Virus ໄດ້ບໍ<br />ມັນກ່ອນ Antivirus ບໍ<br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Mon, 21 Jul 2008 09:37:19 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຄຶວ່າຢູ່ເຮືອນຂ້າພະເຈົ້າໄດ້ຕໍ່ Network ແລ້ວຕໍ່ພ່ວງກັນຫຼາຍໜ່ວຍຂ້າພະເຈົ້າພັດໄປຄິກທີ່ ໄອຄ້ອນທີ່ມັນສະແດງການ<br />ເສື່ອມຢູ່ລຸ່ມໜ້າຈໍ ແລ້ວໄປຄິກຂວາ Disable ແລ້ວມັນບໍ່ສາມາດຫຼິ້ນ ອິນເຕິເນັດ ທ່ານພໍມິວີແກ້ບໍ່ຊ່ວຍບອກມັນ<br /><br />+++++++5555555555+++++++++++<br /><br />ຂອບໃຈລ່ວງໜ້າ
ຫຼາຍ]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Thu, 31 Jul 2008 02:52:29 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: x-small">ຄຶວ່າຂ້າພະເຈົ້າຊື່ໂປຮແກຮມນຳຮ້ານ ເຖົ້ານາລິນ ທີ່ ມ.ຊ ແລ້ວຕ້ອງການຢາກ Copy ຊີ້ເອົາໂປຮແກຮມໃດເຮັດ<br />ລອງຫລາຍໂປຮແກຮມແລ້ວເຊັ່ນ: Bad copy,UltraISO,Nero...<br />ແລະແມ່ນເຂົາເຈົ້າເອົາໂປຮແກຮມໃດເຮັດ ເຮັດເປັນລິ້ງດາວໂຫດໃຫ້ແດ່ *ຂອບໃຈລ່ວງໜ້າ*</span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Thu, 14 Aug 2008 00:11:06 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຄຶວ່າ:ຄອມຂ້າພະເຈົ້າໄດ້ລົງ ວິນໂດໃໜ່ແລ້ວ ພໍແຕ່ລົງສຳເລັດ ແລະຂ້າພະເຈົ້າໄດ້ເປີດ<br />My Computer ແລ້ວຍ້າຍແທັກຫົວຂໍ້ທີ່ເປິນຢູ່ຂ້າງເທີງສຸດທີ່ເປິນສີ<br />ຄຶວ່າອາການຂອງການຂອງມັນແມ່ນຊ້າໆທ່ານພໍມີວິທີແກ້ໄຂ້ໃຫ້ມັນໄວບໍ<br />ເປີດໂປຮແກຮມ,ໂຟຮເດີໂຕໃດກະຄຶກັນໜົດ<br /><br />*ຂອບໃຈລວງໜ້າຫລາຍ*</span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Mon, 18 Aug 2008 00:31:03 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຢາກຮູ້ວິທີການ ໃນເວລາທີ່ເຮົາຂຽນຄຳສັບ ແລ້ວໃຫ້ google search ແລ້ວເຫັນເວັບໃຊ້ເຮົາຢູ່ໃນໜ້າອິນເດັກຂອງ google ເລີຍພ້ອມເຫັນລາຍລະອຽດຂອງເວັດໃຊ້ເຮົາ]]></description>
<author>xathanong&lt;xathanong@nospam.com&gt;</author>
<pubDate>Wed, 20 Aug 2008 11:22:01 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຄຶວ່າ: ທ່ານຂ້າພະເຈົ້າຢາກກ່ຽວເວັບໄຊສ໌ຂອງຄົນລາວ ມັນມີເວັບໜຶ່ງທີ່ລືກລັບ<br />ແຕ່ວ່າຂ້າພະເຈົ້າບໍ່ຈື່ເພາະເວັບໂຕນັ້ນມັນຈະສອນກ່ຽວການສ້າງ ໂທຈັ້ນ ແລະກນາແຮັກ<br />ເປັນເວັບເດີທ່ານ ຢາກໃຫ້ຊ່ວຍໃຫ້ແດ່.<br />http://duongforum.awardspace.com<br />ຊື່ຂອງມັນຄ້າຍໆຄືກັບເວັບນີ້ ແຕ່ປັນຈຸບັນເວັບນິ້ກະເຂົ້າບໍ່ໄດ້<br /><br />ຢາກຂໍອະນຸຍາດວ່າແຕ່ທ່ານມີ ວິດິໂອສອນການສ້າງໂທຈັ້ນບໍ ຖ້າມີກະເອົາມາຕ້ອນແດ່<br />ເພາະສ້າງເປັນ ເພື່ອຄົນລາວແດ່ເດີທ່ານ.<br /><br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sun, 24 Aug 2008 00:06:26 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຄຶວ່າ: ຂ້າພະເຈົ້າຕ້ອງຢາກຈະເຂົ້າຫົວຂໍ້ VIP ຂອງເວັບlaozaa ເພາະວ່າຂ້າພະເຈົ້າຍັງ<br />ບໍ່ທັນເປັນ VIP ຫົວຂໍ້ຈຳພວກເລົ່ານັ້ນແມ່ນມັນເວົ້າກ່ຽວກັບ Hack<br />ຄັນວ່າທ່ານໄດ້ເປັນ ວິໄອພີທີ່ເວັບນັ້ນກະຢາກໃຫ້ທ່ານ Copy ເອົາ URL ທີ່ກຳລັງເຂົ້າ<br />ມາໃຫ້ແດ່ ຫຼຶທ່ານມີວິທີແນວໃດ<br />ຕ້ອງການຢາກຈະເປັນ Hack. *ເພື່ອຄົ້ນລາວເດີທ່ານ*<br />ຂອບໃຈຫຼາຍເດີທ່ານ<br /><br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sun, 24 Aug 2008 22:58:55 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ໂດຍນຳໃຊ້ ໂປຣແກຣມ Regedit <br />1 ເປີດໂປຣແກຣມ ໄປທີ່ Start>Run ແລ້ວພີມ Regedit ແລ້ວ Enter<br />2 ໄປທີ່ HKEY_LOCAL_MACHINE<br />                    Software<br />                            Microsoft<br />                                    Windows<br />                                            CurrentVersion<br />                                                        Explorer<br />                                                               DriveIcons<br />                                                                      D       (ໝາຍເຖີ່ງຊ່ອງ ຖ້າ ຊ່ອງຊີຕ້ອງແມ່ນ C)<br />                                                                      
     DefaultIcon<br />                                                                      
          ມີຄ່າ (Default) = c:&#092;icons&#092;myicons.dll,4   (ແມ່ນທີ່ຢູ່ຂອງຟາຍໄອຄອນ)<br />                                                                      
               DefaultLabel<br />                                                                      
                  ມີຄ່າ (Default) = My ZIP Drive (ຊື່ຊ່ອງ)<br />3 Restart Computer<br />ສຳເລັດແລ້ວລອງເບີ່ງໄດ້ຜົນບໍ<br /><br /><br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:17:30 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ປົກກິແລ້ວເຮົາເອົາ CD-ROM ໃສ່ມັນຈະເປີດອັດຕະມັດ ເຮົາສາມາດຍຸດຄຳສັ່ງນີ້ໄດ້ດ້ວຍວິທີນີ້<br />1 ເຂົ້າໂປຣແກຣມ Regeit<br />2 ໄປທີ່ HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;CDRom<br />3 ຕັ້ງຄ່າ:<br />System Key: [HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;CDRom]<br />Name: Autorun<br />Type: REG_DWORD (DWORD Value)<br />Value: (0=disable, 1=enable)<br /><br /><img src='http://img150.imageshack.us/img150/6425/cdautoia2.jpg' class='bbcode' alt=''  /><br /><br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:18:10 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຖ້າທ່ານຕ້ອງການເພີ່ມຂໍ້ມູນກ່ຽວກັບ Device ເປັນປະເພດໃດນັ້ນໃນ Device Manager ທ່ານສາມາດໃຊ້ເທັກນິກນີ້ເພື່ອໃຫ້ Device Manager ສະແດງຂໍ້ມູນ Device ໃຫ້ລະອຽດ<br />1 ເປີດໂປຣແກຣມ Regedit<br />2 ຊອກຫາ HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Control&#092;Session Manager&#092;Environment<br />ໃຫ້ສ້າງ ຄ່າ DEVMGR_SHOW_DETAILS ໃໝ່ຖ້າບໍ່ມີ<br />3 ຕັ້ງຄ່າ<br />System Key: [HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Control&#092;Session Manager&#092;<br />Environment]<br />Name: DEVMGR_SHOW_DETAILS<br />Type: REG_SZ (String Value)<br />Value: (0 = default, 1 = show detailed info)<br /><img src='http://img149.imageshack.us/img149/7240/setdvinfoot0.jpg' class='bbcode' alt=''  /><br />4 Restart Computer<br /><br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:18:36 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ການສ້າງຄ່າຫລືປ່ຽນແປງຄ່ານີ້ PowerdownAfterShutdown ແລະຕັ້ງຄ່າ =1 ແມ່ນ  to power off the computer at shutdown ຫລື =0 ແມ່ນ Reboot<br /><img src='http://img144.imageshack.us/img144/4437/powerddb1.jpg' class='bbcode' alt=''  /><br /><br />Settings:<br />System Key: [HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon]<br />Name: PowerdownAfterShutdown<br />Type: REG_SZ (String Value)<br />Value: (0 = default, 1 = power down)<br /> <br />ຫລັງຈາກຕັ້ງຄ່າແລ້ວຕ້ອງ Restart ຄອມຈີ່ງສົມບູນ<br /></span>]]></description>
<author>Admin&lt;noauthor@nospam.com&gt;</author>
<pubDate>Sat, 27 Oct 2007 16:19:11 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"> 1 ເຂົ້າໄປທີ່ HKEY_LOCAL_MACHINE&#092;&#092;SOFTWARE&#092;&#092;Microsoft&#092;&#092;Ole<br />2 ໃຫ້ແປງຄ່າ ຫລືເພີ່ມຄ່າ </span><span style="font-size: small">EnableRemoteConnect =N<br /></span><table cellpadding="0" cellspacing="0"><tbody> <tr> <td bgcolor="#dddddd"><span style="font-size: small; font-family: verdana,arial">Settings:</span></td> </tr><tr> <td bgcolor="#eeeeee"><span style="font-size: small; font-family: verdana,arial"><strong>System Key:</strong>  [HKEY_LOCAL_MACHINE&#092;&#092;SOFTWARE&#092;&#092;Microsoft&#092;&#092;Ole]</span><span style="font-size: small"><br /></span><span style="font-size: small; font-family: verdana,arial"><strong>Name:</strong>  EnableRemoteConnect</span><span style="font-size: small"><br /></span><span style="font-size: small; font-family: verdana,arial"><strong>Type:</strong> REG_SZ (String  Value)</span><span style="font-size: small"><br /></span><span style="font-size: small; font-family: verdana,arial"><strong>Value:</strong> "Y" = enable  automatic connections, "N" = disabled</span><span style="font-size: small"><br /></span></td></tr></tbody></table><span style="font-size: small"><br /><img src="http://img146.imageshack.us/img146/1776/dismodemwr3.jpg" /><br />3 ອອກໂປຣແກຣມ ແລ້ວ Restart Windows<br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 05 Nov 2007 09:48:03 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ທ່ານຄົງຈະເຄີຍເຫັນແບບວ່າເຂົ້າໃຊ້ໂປຣແກຣມ Regedit ບໍ່ໄດ້ເປັນຍ້ອນຖືກໄວຣັສ ຫລືເປັນຍ້ອນອື່ນໆ<br />ສຳລັບການໃຊ້ຄ່ານີ້ທ່ານຕ້ອງ Backup Registry ກ່ອນການແກ້ໄຂ<br />1. ໄປທີ່ Start>run ພິມ Regedit then Enter<br />2. ໄປທີ່ HKEY_CURRENT_USER&#092;&#092;SOFTWARE&#092;&#092;Microsoft&#092;&#092;Windows&#092;&#092;<br />CurrentVersion&#092;&#092;Policies&#092;&#092;System<br />3. ສ້າງຄ່າ DisableRegistryTools ດັ່ງນີ້<br /></span><table cellpadding="0" cellspacing="0"><tbody><tr> <td bgcolor="#dddddd"><span style="font-size: x-small; font-family: verdana,arial">Settings:</span></td> </tr><tr> <td bgcolor="#eeeeee"><span style="font-size: 9pt; font-family: verdana,arial"><strong>User Key:</strong>  [HKEY_CURRENT_USER&#092;&#092;SOFTWARE&#092;&#092;Microsoft&#092;&#092;Windows&#092;&#092;CurrentVersion&#092;&#092;Poli
cies&#092;&#092;<br />System]</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Name:</strong>  DisableRegistryTools</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Type:</strong> REG_DWORD (DWORD  Value)   "ໂດຍການຄຣິກທາງແທັບຂວາມືຈະມີ New></span><span style="font-size: 9pt; font-family: verdana,arial">DWORD  Value"</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Value:</strong> (0 = allow  regedit, 1 = disable regedit)</span><br /></td></tr></tbody></table><span style="font-size: small">4. Restart Computer<br /><br />ຮູບຕົວຢາງ<br /><img src="http://img120.imageshack.us/img120/9979/disreglz6.jpg" /><br /></span><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Thu, 08 Nov 2007 09:01:50 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<br /><span style="font-size: small">ທ່ານສາມາດປິດຄຳສັ່ງປຸ່ມ Shutdown ຂອງ Windows ໄດ້ດ້ວຍການໃຊ້ວິທີນີ້<br />- ເຮັດຕາມຄຳແນະນຳນີ້<br />ໃຊ້ Regedit ໂປຣແກຣມ<br />ເຂົ້າໄປທີ່<br /></span>HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies<br /><br /><span style="font-size: small">ຫລື<br /></span>HKEY_LOCAL_MACHINE&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies<br /><br /><span style="font-size: small">ສ້າງຄ່າ </span>NoClose <span style="font-size: small">ປະເພດ </span>REG_DWORD <span style="font-size: small">ມີຄ່າ=1 ເບີ່ງຮູບຕື່ມອີກ<br /><br /></span><table cellpadding="0" cellspacing="0" width="100%"><tbody><tr> <td><span style="font-size: x-small; font-family: verdana,arial">Settings:</span></td> </tr><tr> <td><span style="font-size: 9pt; font-family: verdana,arial"><strong>User Key:</strong>  [HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
<br />Explorer]</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>System Key:</strong>  [HKEY_LOCAL_MACHINE&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies
&#092;<br />Explorer]</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Name:</strong>  NoClose</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Type:</strong> REG_DWORD (DWORD  Value)</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Value:</strong> (0 = shutdown  enabled, 1 = shutdown disabled)</span><br /></td></tr></tbody></table><br /><br /><img src="http://img261.imageshack.us/img261/3240/noclosequ6.jpg" style="border: 0px solid black" /><br /><br /><img src="http://img340.imageshack.us/img340/1815/noclose0al9.jpg" style="border: 0px solid black" /><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 14 Nov 2007 12:35:15 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ເປີດໂປຣແກຣມ Regedit.exe<br />ຕົວຢ່າງ ເຊືອງຊ່ອງ D:<br /></span><span style="font-size: 9pt; font-family: verdana,arial"><span style="font-size: small">ຄ່າ NoDrives=8<br /><br />ລາຍລະອຽດຂອງຄ່າແຕ່ລະຊ່ອງ</span><br /><br /></span><span>A: 1, B: 2, C: 4, D: 8, E: 16, F: 32, G: 64, H: 128, I: 256, J: 512, K: 1024,  L: 2048, M: 4096, N: 8192, O: 16384, P: 32768, Q: 65536, R: 131072, S: 262144,  T: 524288, U: 1048576, V: 2097152, W: 4194304, X: 8388608, Y: 16777216, Z:  33554432, ALL: 67108863</span><br /><br /><br /><span style="font-size: 9pt; font-family: verdana,arial"> <table cellpadding="0" cellspacing="0" width="550"> <tbody> <tr> <td><img src="window_title.gif" alt="Registry Editor Example" /></td></tr></tbody></table> <table cellpadding="0" cellspacing="0" width="550"> <tbody> <tr> <td><img src="side_left.gif" alt="|" /></td> <td><img src="databar_name.gif" alt="Name" /></td> <td><img src="databar_type.gif" alt="Type" /></td> <td><img src="databar_data.gif" alt="Data" /></td> <td><img src="side_right.gif" alt="|" /></td></tr> <tr> <td><img src="side_left.gif" alt="|" /></td> <td>&nbsp;</td> <td align="left" width="170"><span style="font-size: xx-small; font-family: arial">(Default)</span></td> <td align="left"><span style="font-size: xx-small; font-family: arial">REG_SZ</span></td> <td align="left"><span style="font-size: xx-small; font-family: arial">(value not set)</span></td> <td><img src="side_right.gif" alt="|" /></td></tr> <tr> <td><img src="side_left.gif" alt="|" /></td> <td>&nbsp;</td> <td align="left" width="170"><span style="font-size: xx-small; font-family: arial">NoDrives</span></td> <td align="left"><span style="font-size: xx-small; font-family: arial">REG_DWORD</span></td> <td align="left"><span style="font-size: xx-small; font-family: arial">0x03ffffff (67108863)</span></td> <td><img src="side_right.gif" alt="|" /></td></tr></tbody></table> <table cellpadding="0" cellspacing="0" width="550"> <tbody> <tr> <td><img src="statusbar_top.gif" alt="-" /></td></tr> <tr> <td><img src="side_left.gif" alt="|" /></td> <td width="525"><span style="font-size: xx-small; font-family: arial">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;E
xp...</span></td> <td valign="right"><img src="statusbar_right.gif" alt="|" /></td></tr> <tr> <td><img src="statusbar_bottom.gif" alt="-" /></td></tr></tbody></table><!-- End Example --></span>   <table cellpadding="0" cellspacing="0" width="100%"> <tbody> <tr> <td><span style="font-size: x-small; font-family: verdana,arial">Settings:</span></td> </tr><tr> <td><span style="font-size: 9pt; font-family: verdana,arial"><strong>User Key:</strong>  [HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;<br />Explorer]</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>System Key:</strong>  [HKEY_LOCAL_MACHINE&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;<br />Explorer]</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Name:</strong>  NoDrives</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Type:</strong> REG_DWORD (DWORD  Value)</span><br /></td></tr></tbody></table><br /><span><span style="font-size: small">ຫລັງຈາກຕັ້ງຄ່າແລ້ວຕ້ອງ Restart Computer</span><br /></span><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 05 Dec 2007 06:37:36 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">-<u><strong>ເພື່ອການສືກສາ ກະລຸນາ Backup Registry ກ່ອນການທົດລອງ</strong></u><br />1. ທຳອິດໄປເປີດ Regedit.exe ໃນ box Run (Start>Run)<br />2. ໃນ Registry ໄປທີ່<br />- HKEY_CURRENT_USER / HKEY_LOCAL_MACHINE><br />&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;<br />ActiveDesktop&#092;</span><span style="font-size: small"><br /><br />ຊື່ງມີຄ່າດັ່ງນີ້<br /><br /></span><span style="font-size: small"><li><strong>NoChangingWallpaper</strong> - Disable the ability to change wallpapers.  </li><li><strong>NoComponents</strong> - Disable components.  </li><li><strong>NoAddingComponents</strong> - Disable the ability to add components.  </li><li><strong>NoDeletingComponents</strong> - Disable the ability to delete components.  </li><li><strong>NoEditingComponents</strong> - Disable the ability to edit components.  </li><li><strong>NoCloseDragDropBands</strong>  </li><li><strong>NoMovingBands</strong> - retrict adjustments to desktop toolbars  </li><li><strong>NoHTMLWallPaper</strong> - only allow bitmaps (BMP) as wallpaper </li><br /></span><span style="font-size: small; font-family: verdana,arial"><strong>Type:</strong> REG_DWORD  (DWORD Value)</span><span style="font-size: small"><br /></span><span style="font-size: small; font-family: verdana,arial"><strong>Value:</strong> (0 = disable  restriction, 1 = enable restriction)<br /><br /><strong><u>ຕົວຢ່າງໃນຮູບ</u></strong><br /></span><img src="http://img172.imageshack.us/img172/9933/actdesktopxn6.jpg" style="border: 0px solid black" /><br /><span style="font-size: small; font-family: verdana,arial"><br />3. ແລ້ວ Restart com<br /><br />ໂຊກດີ<br /><br /></span><span style="font-size: small"><br /><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 19 Dec 2007 11:19:40 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">1. ເປີດໂປຣແກຣມ Regedit.exe<br />2. ຈາກນັ້ນໄປທີ່<br /><span style="font-size: small">-</span></span><span style="font-size: small; font-family: verdana,arial">HKEY_CURRENT_USER</span><span style="font-size: small"></span><span style="font-size: 9pt; font-family: verdana,arial"><span style="font-size: small">&#092;Software&#092;Microsoft&#092;Windows&#092;<br />CurrentVersion&#092;Policies&#092;Uninstall<br />3.ມີຄ່າກຳນົດດັ່ງນີ້<br /></span></span><ul><span style="font-size: x-small"><li><strong>NoAddRemovePrograms</strong> - Disable Add/Remove Programs  </li><li><strong>NoRemovePage</strong> - Disable Change and Remove Programs  </li><li><strong>NoAddPage</strong> - Disable Add Programs  </li><li><strong>NoWindowsSetupPage</strong> - Disable Windows Components Wizard  </li><li><strong>NoAddFromCDorFloppy</strong> - Hide "Add a program from CD-ROM or disk" option   </li><li><strong>NoAddFromInternet</strong> - Hide "Add programs from Microsoft" option  </li><li><strong>NoAddFromNetwork</strong> - Hide "Add programs from your network" option  </li><li><strong>NoServices</strong> - Go directly to Windows Components Wizard  </li><li><strong>NoSupportInfo</strong> - Disable Support Information </li></span></ul><span style="font-size: small">ຮູບຕົວຢ່າງ:<br /></span><img src="http://img341.imageshack.us/img341/6702/disaddprote2.jpg" style="border: 0px solid black" /><br /><span style="font-size: 9pt; font-family: verdana,arial"><span style="font-size: small">4. Restart computer<br /><br />Good Luck!<br /></span><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 09 Jan 2008 08:49:30 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">>> ທ່ານຄົງເຄີຍເຫັນທີ່ Handy Drive ຫລື USB ຂອງທ່ານທີ່ມີອັນລ້ອກໄວ້ເພື່ອ<br />ບໍ່ໃຫ້ສາມາດລົບຫລືປ່ຽນແປງຂໍ້ມູນໄດ້ໃນ USB ຂອງທ່ານ.<br />ແຕ່ສຳລັບວິທີນີ້ແມ່ນເປັນການລັອກການກອບປີຂໍ້ມູນໃນຄອມເຂົ້າ USB Drive<br />ມີວິທີການດັ່ງນີ້:<br />1. ເປີດໂປຣແກຣມ Registry Editor<br />ກົດ Start>run ພີມ Regedit ແລ້ວ Enter<br />2. ໄປທີ່ HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Control<br />&#092;StorageDevicePolicies<br /><br /><span style="color: #ccffff">ຖ້າຫາກວ່າບໍ່ມີ Folder </span></span><span style="font-size: small; color: #ccffff">StorageDevicePolicies ກໍ່ຕ້ອງສ້າງເອົາເອງ<br />ວິທີສ້າງ Folder ນີ້ ແມ່ນ ຄຣິກຂວາທີ່ Folder </span><span style="font-size: small; color: #ccffff">Control > New >Key<br />ແລ້ວຕັ້ງຊື່ </span><span style="font-size: small; color: #ccffff">StorageDevicePolicies<br /><span style="color: #ffffff">3. ໃນ Folder </span></span><span style="font-size: small"><span style="color: #ffffff">StorageDevicePolicies</span> ໃຫ້ທ່ານສ້າງຄ່າໜື່ງຂື້ນມາ<br />ດັ່ງໃນຮູບນີ້<br /></span><img src="http://img98.imageshack.us/img98/1331/disusbjm0.jpg" style="border: 0px solid black" /><br /><span style="font-size: small; color: #ccffff"><br /></span><span style="font-size: small">4. ສຸດທ້າຍປິດໂປຣແກຣມແລ້ວ ເອົາ USB ຊຸບໃສ່ເບີ່ງຈະສາມາດກອບປີຫລືສ້າງ<br />ຂໍ້ມູນໃນ USB ໄດ້ບໍ<br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 01 Feb 2008 06:30:18 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><span style="font-size: x-small; font-family: verdana,arial; color: #ccffcc"><strong>Disable the Ability to Right Click on the  Desktop<br /><br /></strong></span><div align="left"><span style="font-size: small">ສຳລັບເທັກນິກນີ້ແມ່ນການປິດເມນູຄຣິກຂວາທີ່ໜ້າ Desktop<br />ມີຂັ້ນຕອນດັ່ງນີ້:<br /><br />1. Start>Run ພີມ Regedit.exe ແລ Enter<br />2. </span><span style="font-size: 9pt; font-family: verdana,arial">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;<br />Explorer<br /><br /><span style="font-size: small">3. ສ້າງຄ່າດັ່ງນີ້<br /></span></span><span style="font-size: 9pt; font-family: verdana,arial"><strong>Name:</strong>  NoViewContextMenu</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Type:</strong> REG_DWORD (DWORD  Value)</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Value:</strong> (0 = disabled,  1 = enabled)</span><br /><br /><img src="http://img352.imageshack.us/img352/858/dismendeskub7.jpg" style="border: 0px solid black" /><br /><br /><span style="font-size: small">4. Restart computer<br /><br />Good Luck!<br /></span><br /></div></div>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Tue, 12 Feb 2008 08:59:49 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ການປິດແລະເປີດໃຊ້ Folder Options<br /><br />ທ່ານອາດເຄີຍເຫັນບັນຫາທີ່ໃນ My computer ຂອງເຮົາໃນເມນູ Tools ທີ່ບໍ່ເຫັນຄຳສັ່ງ Folder Options ເຊີ່ງປົກກະຕິແລ້ວຕ້ອງເຫັນຄຳສັ່ງນີ້ຖ້າຫາກວ່າ<br />ບໍ່ເຫັນກໍ່ໝາຍວ່າມີການປ່ຽນແປງຄ່ານີ້ໃນລະບົບແລ້ວອາດສາເຫດມາຈາກການຕິດໄວຣັສ<br />ຫລືມີການແປງຄ່ານັ້ນເປັນຕົ້ນ<br /><br />ໃນທີ່ນີ້ແມ່ນວິທີການປິດຫລືເປີດໃຊ້ </span><span style="font-size: small">Folder Options ມີວິທີການດັ່ງນີ້<br /><br />1. ເປີດ Regedit ກ່ອນ "Start>Run"<br />2. ໄປທີ່<br /><br />-HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
<br />Explorer<br />ຫລື<br />-HKEY_LOCAL_MACHINE&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies
&#092;<br />Explorer<br /><br />ມີຄ່າດັ່ງນີ້<br /></span><span style="font-size: 9pt; font-family: verdana,arial"><strong>Name:</strong>  NoFolderOptions</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Type:</strong> REG_DWORD (DWORD  Value)</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Value:</strong> (0 = show  options, 1 = hide options)<br /><br /></span><img src="http://img75.imageshack.us/img75/4724/disfoloptionvj9.jpg" style="border: 0px solid black" /><br /><br /><span style="font-size: small">3. Restart computer for success</span><br /><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 22 Feb 2008 12:08:18 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><span style="font-size: small"><strong><span style="color: #ffff99">ການປິດແລະເປີດໃຊ້ Windows Task Manager</span><br /><br /></strong></span><div align="left"><span style="font-size: small">ການປິດການໃຊ້ງານຂອງໂປຣແກຣມນີ້ສວ່ນຫລາຍແມ່ນຄອມທີ່ຖືກໄວຣັສຫລືບາງ<br />ໂປແກຣມທີ່ບໍ່ອະນຸຍາດໃຫ້ໃຊ້ </span><span style="font-size: small"><strong>Task Manager </strong>ນີ້<br />ມີວິທີການແກ້ໄຂດັ່ງນີ້:<br /><br />1. Start>Run ພີມ Regedit ແລ້ວ Enter<br />2. ໄປຫາໂພນເດີດ່ງນີ້<br /><br />-HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
<br />System  <br />(ໝາຍເຫດ: ຖ້າບໍ່ມີໂພນເດີຕາມທີ່ບອກກໍ່ສາມາດສ້າງເອງໄດ້ໂດຍການຄຣິກຂວາໃນ<br />ໂຟນເດີທີ່ສດທ້າຍນັ້ນ)<br />3. ກຳນົດຄ່າດັ່ງນີ້<br /></span><span style="font-size: 9pt; font-family: verdana,arial"><strong><br />Name:</strong>  DisableTaskMgr</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Type:</strong> REG_DWORD (DWORD  Value)</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Value:</strong> (0 = default, 1  = disable Task Manager)<br /><br /></span><img src="http://img214.imageshack.us/img214/9885/distaskij8.jpg" style="border: 0px solid black" /><br /><span style="font-size: 9pt; font-family: verdana,arial"><br />4. Restart computer <br /><br /><br /><span style="color: #ccffff"><strong>ໂຊກດີ</strong></span><br /></span><br /><span style="font-size: small"><br /></span></div></div>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Thu, 28 Feb 2008 05:49:59 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ການລົບ Tab Security ນີ້ອອກຈາກ Windows explorer ເຊື່ງປ້ອງກັນບໍ່ໃຫ້ຜູ້<br />ໃຊ້ທົ່ວໄປເຂົ້າມາປ່ຽນແປງຄ່ານີ້ສຳລັບ Folders ແລະ Files<br />ມີວິທີ່ ດັ່ງນີ້<br />+ ເປີດໂປຣແກຣມ Regedit ໂດຍ Start>Run  ພີມ </span><span style="font-size: small">Regedit then enter<br />ການຕັ້ງຄ່າ:<br /></span><table cellpadding="0" cellspacing="0" width="100%"><tbody><tr> <td><span style="font-size: x-small; font-family: verdana,arial">Settings:</span></td> </tr><tr> <td><span style="font-size: 9pt; font-family: verdana,arial"><strong>User Key:</strong>  [HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
<br />Explorer]</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Name:</strong>  NoSecurityTab</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Type:</strong> REG_DWORD (DWORD  Value)</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Value:</strong> (0 = default, 1  = enable restriction)</span><br /></td></tr></tbody></table><br /><br /><span style="font-size: small">ຮູບຕົວຢ່າງ:<br /></span><img src="http://img442.imageshack.us/img442/9764/distabsecusp1.jpg" style="border: 0px solid black" /><br /><span style="font-size: small"><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Tue, 25 Mar 2008 11:12:42 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສຳລັບການໃຊ້ສິດທິນີ້ແມ່ນແມ່ນການເອົາ Tab Hardware ໃນ Control panel<br />ແລະ local drive properties ເພື່ອປ້ອງກັນໃຊ້ຜູ້ໃຊ້ມາປ່ຽນແປງຄ່າຂອງ hardware device properties<br /><u><strong>ວິທີ<br /></strong></u>ເປີດ program Regedit.exe<br />1. Start>Run ພິມ </span><span style="font-size: small">Regedit.exe ແລ້ວ Enter<br />2. ໄປຫາຄ່າໃນ HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;<br />CurrentVersion&#092;Policies&#092;Explorer<br /><br />ຕົວຢ່າງ ການຕັ້ງຄ່າ<br /></span><table cellpadding="0" cellspacing="0" width="100%"><tbody><tr> <td><span style="font-size: x-small; font-family: verdana,arial">Settings:</span></td> </tr><tr> <td><span style="font-size: 9pt; font-family: verdana,arial"><strong>User Key:</strong>  [HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
<br />Explorer]</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Name:</strong>  NoHardwareTab</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Type:</strong> REG_DWORD (DWORD  Value)</span><br /><span style="font-size: 9pt; font-family: verdana,arial"><strong>Value:</strong> (0 = default, 1  = enable restriction)</span><br /></td></tr></tbody></table><br /><span style="font-size: small">3. ເມື່ອໃສ່ຄ່າໄດ້ແລ້ວ Restart computer<br />+ເບີ່ງຮູບຕົວຢ່າງ:<br /></span><img src="http://img206.imageshack.us/img206/7189/hardwtab1td8.jpg" style="border: 0px solid black" /><br /><span style="font-size: small">ເອົາອອກແລ້ວ<br /></span><img src="http://img206.imageshack.us/img206/531/hardwnotabjr3.jpg" style="border: 0px solid black" /><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Thu, 24 Apr 2008 05:11:36 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small; font-family: ms sans serif">There is an undocumented way to disable the Ctrl Alt Del key sequence on Windows NT/2000/XP using the registry. <br /><br />The key, 'HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon : AutoAdminLogon (REG_SZ)' has only two legal values, according to Microsoft: "0" and "1". 0 disables automatic logon of the account stored, and 1 enables it. The strange thing is that if you set the key to "2", it will enable automatic logon AND disable CTRL + ALT + DEL sequence registration by windows on boot, effectively disabling Task Manager, etc... Of course for this to work you will have to set the "DefaultUserName" and "DefaultPassword" keys to the username to automatically logon.<br /><br />I've found this the easiest way to kill the Ctrl-Alt-Del sequence.<br /><br />Again, here are the keys needed to be set:<br /><br /><span style="color: #0000ff"><strong>HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon : AutoAdminLogon = "2" </strong></span></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 15 Aug 2008 08:04:54 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຂອບໃຈລ່ວງໜ້າຫຼາຍ<br />ຊ່ວຍຊອກໃຫ້ແດ່ທ່ານ</span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Wed, 20 Aug 2008 15:34:03 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຊ່ວຍບອກວິທີແດ່ລະອ່ຽດສຸດໆເດີທ່ານ<br />ຂອບໃຈລ່ວງໜ້າຫລາຍ<br />+1</span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Thu, 21 Aug 2008 14:39:09 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຄຶວ່າ: ຂ້າພະເຈົ້າຕິດ ໄວສ໌ຮັດທີ່ສ້າງຂຶ້ນ ຄຶ Fullhouse Drive<br />ຢາກຮູ້ວິທີສ້າງແດ່ທ່ານ ບອກວິທີແດ່ ພ້ອມໂຄດ ແລະໂປຮແກຮມສ້າງ<br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Thu, 28 Aug 2008 04:15:19 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><strong>+ File System Modifications</strong></span><br /><span style="font-size: small">c:&#092;autorun.inf<br />c:&#092;explorer.exe<br />%System%&#092;init.exe<br />%Windir%&#092;windowsmp.exe<br />%Windir%&#092;yoos.b<br /><strong>+Memory Modifications</strong><br />windowsmp.exe<br />init.exe</span>  <br /><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;4LLI</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;4LLI</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">windowsmp = "%Windir%&#092;windowsmp.exe"</span></li></ul><span style="font-size: small"><br /><em>so that windowsmp.exe runs every time Windows starts</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;4LLI]</span></li><ul><li><span style="font-size: small">UI = "%System%&#092;userinit.exe,"</span></li><li><span style="font-size: small">DisplayName = "Microsoft Services"</span></li><li><span style="font-size: small">ImagePath = "%Windir%&#092;yoos.b"</span></li><li><span style="font-size: small">ErrorControl = 0x00000001</span></li><li><span style="font-size: small">ObjectName = "LocalSystem"</span></li><li><span style="font-size: small">Start = 0x00000002</span></li><li><span style="font-size: small">Type = 0x00000110</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;4LLI]</span></li><ul><li><span style="font-size: small">UI = "%System%&#092;userinit.exe,"</span></li><li><span style="font-size: small">DisplayName = "Microsoft Services"</span></li><li><span style="font-size: small">ImagePath = "%Windir%&#092;yoos.b"</span></li><li><span style="font-size: small">ErrorControl = 0x00000001</span></li><li><span style="font-size: small">ObjectName = "LocalSystem"</span></li><li><span style="font-size: small">Start = 0x00000002</span></li><li><span style="font-size: small">Type = 0x00000110</span></li></ul></ul></ul> <ul><li><span style="font-size: small">The following Registry Value was modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon]</span></li><ul><li><span style="font-size: small">Userinit = "%System%&#092;userinit.exe,,%System%&#092;init.exe,"</span></li></ul><span style="font-size: small"><br /><em>so that init.exe runs every time Windows starts</em></span></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 01 Sep 2008 19:06:53 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ໃຜຮູ້ແດ່ວ່າໄວຣັດ full house drive ຕິດຕໍ່ໄດ້ຈາກທາງໃດແດ່ຊ່ວຍບອກແດ່</span>]]></description>
<author>bearbss&lt;sengsouliya@nospam.com&gt;</author>
<pubDate>Wed, 03 Sep 2008 04:57:10 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ ແລະ ທີມງານ Laoav ທຸກທ່ານ<br /><br />ຂໍສະແດງຄວາມຊົມເຊີຍ ມາຍັງ ທີມງານLaoav ຂ້າພະເຈົ້າເຄີຍໃຊ້ Program Antivirus ມາແລ້ວຫຼາຍ Program ແຕ່ລະ Program ຍີ່ຫໍ້ດັງໆທັງນັ້ນ ເຊັ່ນ Kaspersky,Nod32,Avast,Norton,<span style="color: #cc0033">McArfee</span> ,Bitdefender,AVG...ແຕ່ກໍ່ບໍ່ສາມາດຂ້າ ໄວຮັສ fullhouse drive ໄດ້ເຣັດໃຫ້ ຂ້າພະເຈ້າຫມົດປັນຍາ ແຕ່ວ່າໂຊກຍັງດີທີ່ມີຫມູ່ແນະນຳວ່າ ລອງໃຊ້ Laoav ເບິ່ງ ,ຂ້າພະເຈົ້າລອງແລ້ວປະກົດວ່າ ໄດ້ຜົນ<br />ໃນເບື້ອງຕົ້ນ ຂ້າພະເຈົ້າບໍ່ເຊື່ອວ່າ ຂອງ Lao ຊິຂ້າ virus ໄດ້ບໍ ? ເພາະ anti ຂອງຕ່າງປະເທດ<br />ເຂົາແຮ່ງເກ່ງຍັງຂ້າບໍ່ໄດ້, ແຕ່ເມື່ອລອງໃຊ້ເບິ່ງແລ້ວ ຂ້າພະເຈົ້າຄິດວ່າເຈງທີ່ສຸດ , ບໍ່ຄວນປະມາດຝືມືຄົນລາວ<br />ທ້າຍນີ້ ຂໍອວຍໄຊໃຫ້ພອນ ທີມງານ Laoav ຈົ່ງປະສົບຜົນສຳເລັດ ແລະ ພັດທະນາຕໍ່ໄປ<br /><br /></span>]]></description>
<author>sook&lt;john3up@nospam.com&gt;</author>
<pubDate>Wed, 03 Sep 2008 13:54:17 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຍິນນຳທ່່ານ ຫລາຍໆໆ ທີໄດ້ປະສົລຜົນສຳເລັດ ໃນການກຳຈັດ ຂ້າໄວຣັດ ເຕັມເຮືອນີ້ ແລະເປັນທີ ຍອມຮັບໃນສັງຄົມລາວ ຂໍຊົມເຊີຍນຳທ່ານ ເດີ ຂໍໃຫ້ປະສົບຜັນສຳເລັດ ໃນຂັ້ນຕອນຕໍ່ໄປ ສູ້ໆໆ</span>]]></description>
<author>sithanome&lt;yuki.sith79@nospam.com&gt;</author>
<pubDate>Tue, 09 Sep 2008 10:26:45 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ໃນຄະນະນີ້ ຂ້າພະເຈົ້າມີບັນຫາ ກ່ຽວກັບໄວຣັດ boot sector ເຊິ່ງຂ້າເຈົ້າ ບໍ່ສາມາດ ເຂົ້າໄປໃນ HDD ໄດ້ເລີຍ ແລະບໍ່ສາມາດເຂົ້າໄປ format ໄດ້<br />ນຳອີກ ເຊິ່ງເປັນບັນຫາໃຫ້ກັບ ຂ້າພະເຈົ້າຫລາຍ ຊ່ວຍຫາວິທາງ ໃຫ້ ຂ້າພະເຈົ້າແດ່ ແລະ ວິການກະຈັດນັ້ນແມ່ນມີ ແບບໃດ<br /><br />ຂອບໃຈລ່ວງໜ້າ </span>]]></description>
<author>sithanome&lt;yuki.sith79@nospam.com&gt;</author>
<pubDate>Tue, 09 Sep 2008 10:30:43 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ<br /><br />ຂ້າພະເຈົ້າໃຊ້ program Laoav scan ຫາ virus ແລະ ກໍ່ພົບວ່າ<br />ພົບ virus ໃນ c:&#092;windows&#092;system32&#092;see32z.dll ແມ່ນ file ແທ້ບໍ່ ສາມາດລຶບອອກໄດ້ບໍ່ ຂໍຄຳແນະນຳແດ່ ເພາະຢ້ານວ່າ: ເປັນ file ທີ່ຕິດ spyware ລຶບໄປແລ້ວຢ້ານວ່າເປິດເຄື່ອງບໍ່ໄດ້<br /><br />ຂໍຂອບໃຈ</span>]]></description>
<author>vong2009&lt;johnmgmc@nospam.com&gt;</author>
<pubDate>Mon, 15 Sep 2008 07:20:50 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><strong>+File System Modifications</strong></span><br /><span style="font-size: small">%ProgramFiles%&#092;Microsoft Common&#092;wuauclt.exe</span><br /><strong><span style="font-size: small">+Registry Modifications</span></strong><br /><ul><li><span style="font-size: small">The following Registry Key was created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;explorer.exe</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;explorer.exe]</span></li><ul><li><span style="font-size: small">Debugger = "%ProgramFiles%&#092;Microsoft Common&#092;wuauclt.exe"</span></li></ul><span style="font-size: small"><br /><em>so that wuauclt.exe is injected into the execution sequence of explorer.exe by being installed as its default debugger</em></span><li><span style="font-size: small">[HKEY_USERS&#092;.DEFAULT&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Interne
t Settings]</span></li><ul><li><span style="font-size: small">ProxyEnable = 0x00000000</span></li></ul></ul></ul> <ul><li><span style="font-size: small">The following Registry Values were modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Internet Settings&#092;Cache&#092;Paths]</span></li><ul><li><span style="font-size: small">Directory = "%System%&#092;config&#092;systemprofile&#092;Local Settings&#092;Temporary Internet Files&#092;Content.IE5"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Internet Settings&#092;Cache&#092;Paths&#092;path1]</span></li><ul><li><span style="font-size: small">CachePath = "%System%&#092;config&#092;systemprofile&#092;Local Settings&#092;Temporary Internet Files&#092;Content.IE5&#092;Cache1"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Internet Settings&#092;Cache&#092;Paths&#092;path2]</span></li><ul><li><span style="font-size: small">CachePath = "%System%&#092;config&#092;systemprofile&#092;Local Settings&#092;Temporary Internet Files&#092;Content.IE5&#092;Cache2"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Internet Settings&#092;Cache&#092;Paths&#092;path3]</span></li><ul><li><span style="font-size: small">CachePath = "%System%&#092;config&#092;systemprofile&#092;Local Settings&#092;Temporary Internet Files&#092;Content.IE5&#092;Cache3"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Internet Settings&#092;Cache&#092;Paths&#092;path4]</span></li><ul><li><span style="font-size: small">CachePath = "%System%&#092;config&#092;systemprofile&#092;Local Settings&#092;Temporary Internet Files&#092;Content.IE5&#092;Cache4"</span></li></ul><li><span style="font-size: small">[HKEY_USERS&#092;.DEFAULT&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explore
r&#092;Shell Folders]</span></li><ul><li><span style="font-size: small">Cookies = "%System%&#092;config&#092;systemprofile&#092;Cookies"</span></li><li><span style="font-size: small">Cache = "%System%&#092;config&#092;systemprofile&#092;Local Settings&#092;Temporary Internet Files"</span></li><li><span style="font-size: small">History = "%System%&#092;config&#092;systemprofile&#092;Local Settings&#092;History"</span></li></ul></ul></ul><span style="font-size: small"><strong>+Other details</strong></span><br /><ul><li><span style="font-size: small">The following Host Name was requested from a host database:</span></li><ul><li><span style="font-size: small">www.microsoft.com</span></li></ul></ul> <ul><li><span style="font-size: small">The data identified by the following URLs was then requested from the remote web server:</span></li><ul><li><span style="font-size: small">http://aaszxu.ru/load3/ld.php?v=1&amp;rs=13441600&amp;n=1&amp;uid=1</span></li><li><span style="font-size: small">http://aaszxr.ru/loadx/ld.php?v=1&amp;rs=13441600&amp;n=1&amp;uid=1</span></li></ul></ul><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 15 Sep 2008 11:41:34 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: x-large; color: #999999">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ ກ່ອນອື່ນຕ້ອງຂໍຊົມເຊີຍໃນຜົນງານກ່ຽວກັບ Lao Antivirus ຂອງທ່ານ ແຕ່ວ່າ ເຮົາມີເລື່ອງຢາກຖາມທ່ານວ່າ ເຮົາໄດ້ Update Lao Antivirus 9 ເພື່ອຂ້າ Virus Full house ໄດ້ສຳເລັດ ແຕ່ເມື່ອສຽບ USB ເຂົ້າໄປໃນເຄື່ອງ ມັນຈະສະແກນຫາໃຫ້ໂດຍອັດຕະໂນມັດ ເມື່ອສະແກນຣຽບຣ້ອຍແລ້ວໄປເປີດ Folder ໃນ USB ປາກົດວ່າ Folder ນັ້ນບໍ່ມີ ໄປປິດ Hide ໃນ Folder Option ແລ້ວ ແຕ່ກໍ່ບໍ່ເຫັນ<br />ລົບກວນທ່ານອາເລັກໄຊ ຈົ່ງແກ້ໄຂໃຫ້ດ້ວຍ ເດີ...<br /></span>]]></description>
<author>raffee&lt;pmc_abcd@nospam.com&gt;</author>
<pubDate>Wed, 17 Sep 2008 16:34:43 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຢາກຖາມທ່ານ Admin ກ່ຽວກັບບັນຫາຟາຍ System.exe ທີ່ພົບເຫັນໃນເມື່ອເວລາເປີດຄອມກໍ່ຄື Startup ແລະໃນ Regedit ໂດຍມີຊື່ວ່າ HBService32 ມັນແມ່ນຟາຍຫຍັງແທ້, ເຊີ່ງເຮົາກໍ່ໄດ້ທຳການລືບອອກ ແຕ່ເມື່ອເວລາເປີດຄອມໃໝ່ມັນກໍ່ຍັງກັບມາຄືເກົ່າ<p><a href='http://img.laoupload.com/' rel='external'><img src='http://img.laoupload.com/images/smm0eav4it05fkxg33d.jpg' class='bbcode' alt=''  /></a></p><a href='http://img.laoupload.com/' rel='external'><img src='http://img.laoupload.com/images/iaeohhy4j6z4jm3dqbk.jpg' class='bbcode' alt=''  /></a><p>&nbsp;</p>ຂໍຂອບໃຈ]]></description>
<author>duong&lt;laosabaidee@nospam.com&gt;</author>
<pubDate>Fri, 19 Sep 2008 09:19:02 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">A malicious backdoor trojan that runs in the background and allows remote access to the compromised system<br />A keylogger program that can capture all user keystrokes (including confidential details such username, password, credit card number, etc.)</span><br /><br /><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;HBKernel32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;HBKernel32&#092;Security</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;HBKernel32&#092;Enum</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;HBKernel32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;HBKernel32&#092;Securi
ty</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;HBKernel32&#092;Enum</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">HBService32 = "System.exe"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;HBKernel32&#092;Enum]</span></li><ul><li><span style="font-size: small">Count = 0x00000000</span></li><li><span style="font-size: small">NextInstance = 0x00000000</span></li><li><span style="font-size: small">INITSTARTFAILED = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;HBKernel32&#092;Security]
</span></li><ul><li><span style="font-size: small">Security = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 0</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;HBKernel32]</span></li><ul><li><span style="font-size: small">Type = 0x00000001</span></li><li><span style="font-size: small">Start = 0x00000000</span></li><li><span style="font-size: small">ErrorControl = 0x00000000</span></li><li><span style="font-size: small">ImagePath = "%System%&#092;Drivers&#092;HBKernel32.sys"</span></li><li><span style="font-size: small">DisplayName = "HBKernel32 Driver"</span></li><li><span style="font-size: small">Group = "Boot Bus Extender"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;HBKernel32&#092;Enum]
</span></li><ul><li><span style="font-size: small">Count = 0x00000000</span></li><li><span style="font-size: small">NextInstance = 0x00000000</span></li><li><span style="font-size: small">INITSTARTFAILED = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;HBKernel32&#092;Secur
ity]</span></li><ul><li><span style="font-size: small">Security = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 0</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;HBKernel32]</span></li><ul><li><span style="font-size: small">Type = 0x00000001</span></li><li><span style="font-size: small">Start = 0x00000000</span></li><li><span style="font-size: small">ErrorControl = 0x00000000</span></li><li><span style="font-size: small">ImagePath = "%System%&#092;Drivers&#092;HBKernel32.sys"</span></li><li><span style="font-size: small">DisplayName = "HBKernel32 Driver"</span></li><li><span style="font-size: small">Group = "Boot Bus Extender"</span></li></ul></ul></ul> <ul><li><span style="font-size: small">The following Registry Value was modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Windows]</span></li><ul><li><span style="font-size: small">AppInit_DLLs = "HBmhly.dll,HB1000Y.dll,HBWOOOL.dll,HBXY2.dll,HBJXSJ.dll,HBSO2.dll,HBF
S2.dll,HBXY3.dll,HBSHQ.</span></li></ul></ul></ul><span style="font-size: small">dll,HBFY.dll,HBWULIN2.dll,HBW2I.dll,HBKDXY.dll,HBWORLD2.dll,HBASKTAO.d
ll,HBZHUXIAN.dll,HBWOW.dll,<br /><br />HBZERO.dll,HBBO.dll,HBCONQUER.dll,HBSOUL.dll,HBCHIBI.dll,HBD<br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 19 Sep 2008 10:01:08 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[Khor tharm tharn ALEXAI :  me processess t sue wa YUR1, YUR2... kert kuen u process nai task manager la, khit wa na ja tit virus or spyware malware yang? la ja kae khai neo dai?  <br />THXSS ting.]]></description>
<author>tingmagician&lt;tingmagician@nospam.com&gt;</author>
<pubDate>Fri, 19 Sep 2008 10:39:51 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<strong><span style="font-size: small">+File System Modifications</span></strong><br /><span style="font-size: small">%DesktopDir%&#092;BEST ZOO [censored].url<br />%DesktopDir%&#092;QUALITY [censored].url<br />%System%&#092;YUR1.exe </span><br /><span style="font-size: small">c:&#092;x </span><strong><span style="font-size: small"><br />+Memory Modifications</span></strong><br /><span style="font-size: small">yur1.exe</span><br /><strong><span style="font-size: small">+Registry Modifications</span></strong><br /><ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">&#092;YUR1.exe = "%System%&#092;YUR1.exe"</span></li></ul><span style="font-size: small"><br /><em>so that YUR1.exe runs every time Windows starts</em></span><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">&#092;YUR1.exe = "%System%&#092;YUR1.exe"</span></li></ul><span style="font-size: small"><br /></span><em><span style="font-size: small">so that YUR1.exe runs every time Windows starts</span><br /><br /><br /></em></ul></ul><strong><span style="font-size: small">+Other details</span></strong> <ul><li><span style="font-size: small">Analysis of the file resources indicate the following possible country of origin:</span></li></ul>  <table class="tbl" cellpadding="15" cellspacing="0"><tbody><tr> </tr><tr><td class="cell_1"><span style="font-size: small"><img src="http://www.threatexpert.com/resources/flags/russian_federation.gif" /></span></td> <td class="cell_2"><span style="font-size: small">Russian Federation</span></td></tr></tbody></table><ul><ul><br /></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 19 Sep 2008 12:04:31 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<strong><span style="font-size: small">+File System Modifications</span></strong><br /> <span style="font-size: small">%System%&#092;drivers&#092;HBKernel32.sys<br />%System%&#092;HBFY.dll<br />%System%&#092;System.exe</span><br /><span style="font-size: small"><strong>+ Memory Modifications</strong></span><br /><span style="font-size: small">System.exe<br />HBFY.dll<br />HBFY.dll</span><br /><strong><span style="font-size: small">+Registry Modifications</span></strong><br /><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_HBKERNEL32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_HBKERNEL32&#092;00
00</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_HBKERNEL32&#092;00
00&#092;Control</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;HBKernel32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;HBKernel32&#092;Security</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;HBKernel32&#092;Enum</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet002&#092;Services&#092;HBKernel32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_HBKERNEL3
2</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_HBKERNEL3
2&#092;0000</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_HBKERNEL3
2&#092;0000&#092;Control</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;HBKernel32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;HBKernel32&#092;Securi
ty</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;HBKernel32&#092;Enum</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">HBService32 = "System.exe"</span></li></ul><span style="font-size: small"><br /><em>so that System.exe runs every time Windows starts</em></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_HBKERNEL32&#092;0
000&#092;Control]</span></li><ul><li><span style="font-size: small">*NewlyCreated* = 0x00000000</span></li><li><span style="font-size: small">ActiveService = "HBKernel32"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_HBKERNEL32&#092;0
000]</span></li><ul><li><span style="font-size: small">Service = "HBKernel32"</span></li><li><span style="font-size: small">Legacy = 0x00000001</span></li><li><span style="font-size: small">ConfigFlags = 0x00000000</span></li><li><span style="font-size: small">Class = "LegacyDriver"</span></li><li><span style="font-size: small">ClassGUID = "{8ECC055D-047F-11D1-A537-0000F8753ED1}"</span></li><li><span style="font-size: small">DeviceDesc = "HBKernel32 Driver"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_HBKERNEL32]</span></li><ul><li><span style="font-size: small">NextInstance = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;HBKernel32&#092;Enum]</span></li><ul><li><span style="font-size: small">0 = "Root&#092;LEGACY_HBKERNEL32&#092;0000"</span></li><li><span style="font-size: small">Count = 0x00000001</span></li><li><span style="font-size: small">NextInstance = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;HBKernel32&#092;Security]
</span></li><ul><li><span style="font-size: small">Security = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 0</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;HBKernel32]</span></li><ul><li><span style="font-size: small">Type = 0x00000001</span></li><li><span style="font-size: small">Start = 0x00000000</span></li><li><span style="font-size: small">ErrorControl = 0x00000000</span></li><li><span style="font-size: small">ImagePath = "%System%&#092;Drivers&#092;HBKernel32.sys"</span></li><li><span style="font-size: small">DisplayName = "HBKernel32 Driver"</span></li><li><span style="font-size: small">Group = "Boot Bus Extender"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet002&#092;Services&#092;HBKernel32]</span></li><ul><li><span style="font-size: small">DisplayName = "HBKernel32 Driver"</span></li><li><span style="font-size: small">ErrorControl = 0x00000000</span></li><li><span style="font-size: small">ImagePath = "%System%&#092;Drivers&#092;HBKernel32.sys"</span></li><li><span style="font-size: small">Start = 0x00000000</span></li><li><span style="font-size: small">Type = 0x00000001</span></li><li><span style="font-size: small">Group = "Boot Bus Extender"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_HBKERNEL
32&#092;0000&#092;Control]</span></li><ul><li><span style="font-size: small">*NewlyCreated* = 0x00000000</span></li><li><span style="font-size: small">ActiveService = "HBKernel32"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_HBKERNEL
32&#092;0000]</span></li><ul><li><span style="font-size: small">Service = "HBKernel32"</span></li><li><span style="font-size: small">Legacy = 0x00000001</span></li><li><span style="font-size: small">ConfigFlags = 0x00000000</span></li><li><span style="font-size: small">Class = "LegacyDriver"</span></li><li><span style="font-size: small">ClassGUID = "{8ECC055D-047F-11D1-A537-0000F8753ED1}"</span></li><li><span style="font-size: small">DeviceDesc = "HBKernel32 Driver"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_HBKERNEL
32]</span></li><ul><li><span style="font-size: small">NextInstance = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;HBKernel32&#092;Enum]
</span></li><ul><li><span style="font-size: small">0 = "Root&#092;LEGACY_HBKERNEL32&#092;0000"</span></li><li><span style="font-size: small">Count = 0x00000001</span></li><li><span style="font-size: small">NextInstance = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;HBKernel32&#092;Secur
ity]</span></li><ul><li><span style="font-size: small">Security = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 0</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;HBKernel32]</span></li><ul><li><span style="font-size: small">Type = 0x00000001</span></li><li><span style="font-size: small">Start = 0x00000000</span></li><li><span style="font-size: small">ErrorControl = 0x00000000</span></li><li><span style="font-size: small">ImagePath = "%System%&#092;Drivers&#092;HBKernel32.sys"</span></li><li><span style="font-size: small">DisplayName = "HBKernel32 Driver"</span></li><li><span style="font-size: small">Group = "Boot Bus Extender"</span></li></ul></ul></ul> <ul><li><span style="font-size: small">The following Registry Value was modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Windows]</span></li><ul><li><span style="font-size: small">AppInit_DLLs = "HBmhly.dll,HB1000Y.dll,HBWOOOL.dll,HBXY2.dll,HBJXSJ.dll,HBSO2.dll,HBF
S2.dll,HBXY3.dll,HBSHQ.dll,HBFY.dll,HBWULIN2.dll,HBW2I.dll,HBKDXY.dll,
HBWORLD2.dll,HBASKTAO.dll,HBZHUXIAN.dll,HBWOW.dll,HBZERO.dll,HBBO.dll,
HBCONQUER.dll,HBSOUL.dll,HBCHIBI.dll,HBD</span></li></ul><span style="font-size: small"><br /></span><em><span style="font-size: small">so that HBFY.dll runs every time a Windows application starts</span><br /></em></ul></ul><div align="left"><span style="font-size: small"><strong><em>+</em>Other details</strong></span><br /><ul><li><span style="font-size: small">Analysis of the file resources indicate the following possible country of origin:</span></li></ul> <table class="tbl" cellpadding="15" cellspacing="0"> <tbody><tr> </tr><tr><td class="cell_1"><span style="font-size: small"><img src="http://www.threatexpert.com/resources/flags/china.gif" /></span></td> <td class="cell_2"><span style="font-size: small">China</span></td></tr><tr> </tr></tbody></table> <ul><li><span style="font-size: small">To mark the presence in the system, the following Mutex object was created:</span></li><ul><li><span style="font-size: small">HBInjectMutex</span></li></ul></ul> <ul><li><span style="font-size: small">There was application-defined hook procedure installed into the hook chain (e.g. to monitor keystrokes). The installed hook is handled by the following module:</span></li><ul><li><span style="font-size: small">%System%&#092;HBFY.dll</span></li><ul><li><span style="font-size: small">the hook is handled by its export "_ServiceRouteEx@12()"</span></li></ul></ul></ul><span style="font-size: small"><br /></span></div>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Sat, 27 Sep 2008 05:19:11 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">Trojan.FakeAlert will hijack the desktop background with an image alerting the user that their computer system has been infected with spyware. It also changes some settings of windows which include:- disabling permissions for the user to change the background image and setting the active desktop to 'show web content'. It is usually installed in conjunction with a rogue anti-spyware application.</span><br /><span style="font-size: small"><strong>+File System Modifications</strong></span><br /><span style="font-size: small">%System%&#092;iefl.dll</span><br /><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><br /><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{8B2AE9C0-1555-4C92-905A-
531532F15698}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{8B2AE9C0-1555-4C92-905A-
531532F15698}&#092;InprocServer32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{8B2AE9C0-1555-4C92-905A-
531532F15698}&#092;ProgID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{8B2AE9C0-1555-4C92-905A-
531532F15698}&#092;Programmable</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{8B2AE9C0-1555-4C92-905A-
531532F15698}&#092;TypeLib</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{8B2AE9C0-1555-4C92-905A-
531532F15698}&#092;VersionIndependentProgID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{4937D5D1-2039-409A-
BD83-FEC9B39B2356}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{4937D5D1-2039-409A-
BD83-FEC9B39B2356}&#092;ProxyStubClsid</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{4937D5D1-2039-409A-
BD83-FEC9B39B2356}&#092;ProxyStubClsid32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{4937D5D1-2039-409A-
BD83-FEC9B39B2356}&#092;TypeLib</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{CAF9D798-C659-4B9B-
8E19-EE27C3D04EE7}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{CAF9D798-C659-4B9B-
8E19-EE27C3D04EE7}&#092;ProxyStubClsid</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{CAF9D798-C659-4B9B-
8E19-EE27C3D04EE7}&#092;ProxyStubClsid32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{CAF9D798-C659-4B9B-
8E19-EE27C3D04EE7}&#092;TypeLib</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{15C7D7AD-A87A-4C0D-9D8B-
637FCD3488EF}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{15C7D7AD-A87A-4C0D-9D8B-
637FCD3488EF}&#092;1.0</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{15C7D7AD-A87A-4C0D-9D8B-
637FCD3488EF}&#092;1.0&#092;0</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{15C7D7AD-A87A-4C0D-9D8B-
637FCD3488EF}&#092;1.0&#092;0&#092;win32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{15C7D7AD-A87A-4C0D-9D8B-
637FCD3488EF}&#092;1.0&#092;FLAGS</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{15C7D7AD-A87A-4C0D-9D8B-
637FCD3488EF}&#092;1.0&#092;HELPDIR</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;BhoNew.Bho</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;BhoNew.Bho&#092;CLSID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;BhoNew.Bho&#092;CurVer</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;BhoNew.Bho.1</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;BhoNew.Bho.1&#092;CLSID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Browser Helper Objects</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Browser Helper Objects&#092;{8B2AE9C0-1555-4C92-905A-531532F15698}</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Bind</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{8B2AE9C0-1555-4C92-905A-
531532F15698}&#092;VersionIndependentProgID]</span></li><ul><li><span style="font-size: small">(Default) = "BhoNew.Bho"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{8B2AE9C0-1555-4C92-905A-
531532F15698}&#092;TypeLib]</span></li><ul><li><span style="font-size: small">(Default) = "{15C7D7AD-A87A-4C0D-9D8B-637FCD3488EF}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{8B2AE9C0-1555-4C92-905A-
531532F15698}&#092;ProgID]</span></li><ul><li><span style="font-size: small">(Default) = "BhoNew.Bho.1"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{8B2AE9C0-1555-4C92-905A-
531532F15698}&#092;InprocServer32]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;iefl.dll"</span></li><li><span style="font-size: small">ThreadingModel = "Apartment"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{8B2AE9C0-1555-4C92-905A-
531532F15698}]</span></li><ul><li><span style="font-size: small">(Default) = "IE.Filter"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{4937D5D1-2039-409A-
BD83-FEC9B39B2356}&#092;TypeLib]</span></li><ul><li><span style="font-size: small">(Default) = "{15C7D7AD-A87A-4C0D-9D8B-637FCD3488EF}"</span></li><li><span style="font-size: small">Version = "1.0"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{4937D5D1-2039-409A-
BD83-FEC9B39B2356}&#092;ProxyStubClsid32]</span></li><ul><li><span style="font-size: small">(Default) = "{00020420-0000-0000-C000-000000000046}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{4937D5D1-2039-409A-
BD83-FEC9B39B2356}&#092;ProxyStubClsid]</span></li><ul><li><span style="font-size: small">(Default) = "{00020420-0000-0000-C000-000000000046}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{4937D5D1-2039-409A-
BD83-FEC9B39B2356}]</span></li><ul><li><span style="font-size: small">(Default) = "_IBhoEvents"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{CAF9D798-C659-4B9B-
8E19-EE27C3D04EE7}&#092;TypeLib]</span></li><ul><li><span style="font-size: small">(Default) = "{15C7D7AD-A87A-4C0D-9D8B-637FCD3488EF}"</span></li><li><span style="font-size: small">Version = "1.0"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{CAF9D798-C659-4B9B-
8E19-EE27C3D04EE7}&#092;ProxyStubClsid32]</span></li><ul><li><span style="font-size: small">(Default) = "{00020424-0000-0000-C000-000000000046}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{CAF9D798-C659-4B9B-
8E19-EE27C3D04EE7}&#092;ProxyStubClsid]</span></li><ul><li><span style="font-size: small">(Default) = "{00020424-0000-0000-C000-000000000046}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{CAF9D798-C659-4B9B-
8E19-EE27C3D04EE7}]</span></li><ul><li><span style="font-size: small">(Default) = "IBho"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{15C7D7AD-A87A-4C0D-9D8B-
637FCD3488EF}&#092;1.0&#092;0&#092;win32]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;iefl.dll"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{15C7D7AD-A87A-4C0D-9D8B-
637FCD3488EF}&#092;1.0&#092;HELPDIR]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{15C7D7AD-A87A-4C0D-9D8B-
637FCD3488EF}&#092;1.0&#092;FLAGS]</span></li><ul><li><span style="font-size: small">(Default) = "0"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{15C7D7AD-A87A-4C0D-9D8B-
637FCD3488EF}&#092;1.0]</span></li><ul><li><span style="font-size: small">(Default) = "Type Library"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;BhoNew.Bho&#092;CurVer]</span></li><ul><li><span style="font-size: small">(Default) = "BhoNew.Bho.1"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;BhoNew.Bho&#092;CLSID]</span></li><ul><li><span style="font-size: small">(Default) = "{8B2AE9C0-1555-4C92-905A-531532F15698}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;BhoNew.Bho]</span></li><ul><li><span style="font-size: small">(Default) = "IE.Filter"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;BhoNew.Bho.1&#092;CLSID]</span></li><ul><li><span style="font-size: small">(Default) = "{8B2AE9C0-1555-4C92-905A-531532F15698}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;BhoNew.Bho.1]</span></li><ul><li><span style="font-size: small">(Default) = "IE.Filter"</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Bind]</span></li><ul><li><span style="font-size: small">comment = "3913170"</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Devices]</span></li><ul><li><span style="font-size: small">_#VMwareVirtualPrinter = "winspool,TPVM:"</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;PrinterPorts]</span></li><ul><li><span style="font-size: small">_#VMwareVirtualPrinter = "winspool,TPVM:,15,45"</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Windows]</span></li><ul><li><span style="font-size: small">Device = "_#VMwareVirtualPrinter,winspool,TPVM:"</span></li></ul></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 08 Oct 2008 18:03:27 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<strong><span style="font-size: small">+File System Modifications</span></strong><span style="font-size: small"><br /><br />The following files were created in the system:<br />%Windir%&#092;cmd.bat </span><br /><span style="font-size: small"><strong>+Memory Modifications</strong></span><br /><ul><li><span style="font-size: small">There was a new service created in the system:</span></li></ul>  <table class="tbl" cellpadding="5" cellspacing="0"><tbody><tr><td class="cell_1_h"><span style="font-size: small">Service Name</span></td><td class="cell_1_h"><span style="font-size: small">Display Name</span></td><td class="cell_1_h"><span style="font-size: small">Status</span></td><td class="cell_2_h"><span style="font-size: small">Service Filename</span></td></tr> <tr><td class="cell_1"><span style="font-size: small">Acceset Interface</span></td><td class="cell_1"><span style="font-size: small">Accesset Interface</span></td><td class="cell_1"><span style="font-size: small">"Stopped"</span></td><td class="cell_2"><span style="font-size: small">%Windir%&#092;cmd.bat</span></td></tr></tbody></table><strong><span style="font-size: small">+Registry Modifications</span></strong> <ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;Acceset Interface</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;Acceset Interface&#092;Security</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;Acceset Interface</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;Acceset Interface&#092;Security</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;Acceset Interface&#092;Security]</span></li><ul><li><span style="font-size: small">Security = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 0</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;Acceset Interface]</span></li><ul><li><span style="font-size: small">Type = 0x00000110</span></li><li><span style="font-size: small">Start = 0x00000002</span></li><li><span style="font-size: small">ErrorControl = 0x00000000</span></li><li><span style="font-size: small">ImagePath = "%Windir%&#092;cmd.bat"</span></li><li><span style="font-size: small">DisplayName = "Accesset Interface"</span></li><li><span style="font-size: small">ObjectName = "LocalSystem"</span></li><li><span style="font-size: small">Description = "Í¨ï¿½ï¿½ï¿½ï¿½ï¿½ï¿½Ñ¯ï¿½ï¿½ï¿½ï¿½ï¿½á¹©ï¿½Ä¼ï¿½ï¿½ï¿½ï¿½Ù·ï¿½ï¿½ï¿½"
</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;Acceset Interface&#092;Security]</span></li><ul><li><span style="font-size: small">Security = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 0</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;Acceset Interface]</span></li><ul><li><span style="font-size: small">Type = 0x00000110</span></li><li><span style="font-size: small">Start = 0x00000002</span></li><li><span style="font-size: small">ErrorControl = 0x00000000</span></li><li><span style="font-size: small">ImagePath = "%Windir%&#092;cmd.bat"</span></li><li><span style="font-size: small">DisplayName = "Accesset Interface"</span></li><li><span style="font-size: small">ObjectName = "LocalSystem"</span></li><li><span style="font-size: small">Description = "Í¨ï¿½ï¿½ï¿½ï¿½ï¿½ï¿½Ñ¯ï¿½ï¿½ï¿½ï¿½ï¿½á¹©ï¿½Ä¼ï¿½ï¿½ï¿½ï¿½Ù·ï¿½ï¿½ï¿½"
</span></li></ul></ul></ul> <span style="font-size: small"> </span><table style="width: 100%" cellpadding="0" cellspacing="0"><tbody><tr><td><img src="http://www.threatexpert.com/resources/other_mod.gif" style="border: medium none " /></td><td class="h3" width="100%"><span style="font-size: small">Other details</span></td></tr></tbody></table> <ul><li><span style="font-size: small">Analysis of the file resources indicate the following possible country of origin:</span></li></ul>  <table class="tbl" cellpadding="15" cellspacing="0"><tbody><tr> </tr><tr><td class="cell_1"><span style="font-size: small"><img src="http://www.threatexpert.com/resources/flags/china.gif" /></span></td> <td class="cell_2"><span style="font-size: small">China</span></td></tr></tbody></table>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 08 Oct 2008 18:10:07 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຄືວ່າ antivirus ຂ້ອຍມັນຟ້ອງຂື້ນມາຕະຫຼອດວ່າ  js/TrojanDownloader.small.NBC trojan ບໍ່ຮູ້ວ່າມັນຊິເຮັດແນວໃດ....................... ຂໍຄຳແນະນຳແດ່ທ່ານ...]]></description>
<author>spcomputer&lt;sandp_0268@nospam.com&gt;</author>
<pubDate>Fri, 10 Oct 2008 06:28:22 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຄອມພິວເຕ່ ຂ້າພະເຈົ້າ ເວລາເອົາ usb ສຽບໃສ່ ໂປແກມ Antivirus ຈະຟ້ອງ autorun.inf ຂື້ນມາທຸກເທີ່ອ ຂພຈ ລົບຟາຍດັ່ງກ່າວອອກແລ້ວແຕ່ມ ໂປແກມ antivrus ຍັງຟ້ອງຢູ່ຕະລອດເວລາ ແຕ່ຖ້າເອົາ usb ອອກ ມັນຈະບໍ່ຟ້ອງ ຢາກໃຫ້ທ່ານຊ່ວຍແດ່ (ຂອບໃຈລ່ວງໜ້າ).</span>]]></description>
<author>Mr_seuth&lt;seuth83@nospam.com&gt;</author>
<pubDate>Wed, 29 Oct 2008 17:51:38 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">Backdoor.Bifrose.PG Backdoor.Bifrose.PG injects itself into other running processes in attempts to hide from the user. It also opens up a port which allows attackers access and control over the infected machine.</span><br /><ul><li><span style="font-size: small"><strong>File System Modifications</strong></span></li></ul><span style="font-size: small">%System%&#092;wmipst.exe<br />%AppData%&#092;waultc.exe</span><br /><ul><li><strong><span style="font-size: small">Memory Modifications</span></strong></li></ul><table class="tbl" cellpadding="5" cellspacing="0"><tbody><tr><td class="cell_1"><span style="font-size: small">waultc.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /></span></td><td class="cell_1"><span style="font-size: small">%AppData%&#092;waultc.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /></span></td><td class="cell_2"><span style="font-size: small">86,016 bytes</span></td></tr> <tr><td class="cell_1"><span style="font-size: small">wmipst.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /></span></td><td class="cell_1"><span style="font-size: small">%System%&#092;wmipst.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /></span></td><td class="cell_2"><span style="font-size: small">49,152 bytes</span></td></tr> <tr><td class="cell_1"><span style="font-size: small">update.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /></span></td><td class="cell_1"><span style="font-size: small">%AppData%&#092;update.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /></span></td><td class="cell_2"><span style="font-size: small">49,152 bytes</span></td></tr></tbody></table><ul><li><span style="font-size: small"><strong>Registry Modifications</strong></span></li></ul><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Active Setup&#092;Installed Components&#092;{A5CDF7EC-751B-46aa-AD69-4005FE080DE8}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;SKav</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;MediaResources&#092;msvideo
</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Control&#092;MediaResources&#092;msv
ideo</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;SKav</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Active Setup&#092;Installed Components&#092;{A5CDF7EC-751B-46aa-AD69-4005FE080DE8}]</span></li><ul><li><span style="font-size: small">stubpath = "%System%&#092;wmipst.exe s"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;SKav]</span></li><ul><li><span style="font-size: small">nck = 98 67 D6 6A CC D9 84 5F F7 EC 7F 84 DC 8A DA 00 A8 5F E4 52 A0 AC EA 5F F7 EC 7F 84 DC 8A DA 00</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Identities]</span></li><ul><li><span style="font-size: small">Last User Identity = 0x00029AD1</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">waultc = "%AppData%&#092;waultc.exe"</span></li></ul><span style="font-size: small"><br /><em>so that waultc.exe runs every time Windows starts</em><br /></span><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;SKav]</span></li><ul><li><span style="font-size: small">klg = 00</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Windows]</span></li><ul><li><span style="font-size: small">Device = "_#VMwareVirtualPrinter,winspool,TPVM:"</span></li></ul></ul></ul> <span style="font-size: small"> </span><table style="width: 100%" cellpadding="0" cellspacing="0"><tbody><tr><td> </td><td class="h3" width="100%"><ul><li><span style="font-size: small"><strong>Other details</strong></span></li></ul></td></tr></tbody></table> <ul><li><span style="font-size: small">Analysis of the file resources indicate the following possible country of origin:</span></li></ul> <table class="tbl" cellpadding="15" cellspacing="0"> <tbody><tr> </tr><tr><td class="cell_1"><span style="font-size: small"><img src="http://www.threatexpert.com/resources/flags/china.gif" /></span></td> <td class="cell_2"><span style="font-size: small">China</span></td></tr><tr> </tr></tbody></table> <ul><li><span style="font-size: small">To mark the presence in the system, the following Mutex object was created:</span></li><ul><li><span style="font-size: small">09AE1F65372CD881</span></li></ul></ul> <ul><li><span style="font-size: small">The following Host Names were requested from a host database:</span></li><ul><li><span style="font-size: small">securitybbs.ddns.info</span></li><li><span style="font-size: small">61.34.203.120</span></li></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Sat, 01 Nov 2008 10:23:35 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ເຖິງທ່ານອາເລັກໄຊທີ່ເຄົາລົບ<br />ຄອມຂອງຂ້າພະເຈົ້າຖືກໄວຣັດຫຍັງກະບໍ່ຮູ້ ມັນເຊື່ອງໝົດທຸກໄອຄອນຢູ່ໜ້າຈໍຄອມພິວເຕີ້ເລີຍ, ເມື່ອນຳຫຍັງກໍ່ຕາມໄປໄວ້ທີ່ເຖິງໜ້າຈໍກໍ່ຈະຖືກເຊື່ອງໝົດເລີຍ. ແຕ່ກໍ່ບໍ່ຮູ້ວ່າການທຳລາຍຂອງໄວຣັດນີ້ເປັນແນວໃດຄືກັນ<br />ຮຽນທ່ານອາເລັກໄຊໃຫ້ຊ່ວຍເຫຼືອຂ້າພະເຈົ້າດ້ວຍ<p>ດ້ວຍຄງາມເຄົາລົບແລະບັນຖື</p>]]></description>
<author>pickachu&lt;piggy_pick@nospam.com&gt;</author>
<pubDate>Fri, 07 Nov 2008 05:41:20 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ເຈົ້າສະບາຍດີທ່ານ, ຂ້າພະເຈົ້າຂໍຖາມແດ່. ເລື່ອງກໍຄືວ່າຂ້າພະເຈົ້າຢາກສືກສາການສ້າງ file autorun ຂອງໂປຣແກຣມໃດໜື່ງຂື້ນມາອັນໜື່ງເພື່ອທົດສອບການເຮັດວຽກຂອງມັນໂດຍໃຫ້ມັນ run ເອງເມື່ອເຮົາມີການ boot ເຄື່ອງ </span><span style="font-size: medium">ແລະ file autorun ນັ້ນໃຫ້ຕິດໄປກັບໂປຣແກຣມເລີຍ</span><span style="font-size: medium"><br /></span><span style="font-size: medium">ເຮົາມີວີທີເຮັດແນວໃດ?                  ຂອບໃຈຫຼາຍໆ</span><span style="font-size: medium"><img src="http://www.laoav.net/images/emotes/default/amazed.png" style="border: 0px none " alt="amazed.png" /></span>]]></description>
<author>latthaphone&lt;latthaphone9898527@nospam.com&gt;</author>
<pubDate>Thu, 27 Nov 2008 06:03:53 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ເປັນ ໜອນອີນເຕິເນັດ<br />ມັນຈະກອບປີຕົນເອງໄປໃນລະບົບ<br />%System%&#092;explorer.exe</span><br /><span style="font-size: medium">%System%&#092;hh.exe</span><br /><span style="font-size: medium">ແລະໃນລາຍການໂປຣແກຣມທີ່ເຮັດວຽກຈະມີຊື່ໄຟລ<br /></span><span style="font-size: medium">explorer.exe ແລະ </span><span style="font-size: medium">hh.exe<br />ນອກນັ້ນຍັງສ້າງຄ່າອໍໂຕລັນໃນ Registry<br /></span><br /><span style="font-size: medium">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon]</span><br /><span style="font-size: medium">Userinit = "%System%&#092;userinit.exe,,explorer.exe"</span><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Tue, 09 Dec 2008 07:36:33 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ເປັນໜອນອີນເຕີເນັດແລະລະບາດໄປທາງ USB...<br />ລະບົບທີ່ຕິດມັນຈະກອບປີໄປທີ່<br />%DesktopDir%&#092;manager.exe</span><br /> <span style="font-size: medium">c:&#092;melt.bat </span><br /><span style="font-size: medium">ແລະຊື່ໄຟລທີ່ລັນແມ່ນ</span> <span style="font-size: medium">manager.exe<br />ນອກນັ້ນສ້າງຄ່າອໍໂຕລັນໃນ Registry<br />HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Active Setup&#092;Installed Components&#092;{5FA6F268-CE88-0CA3-93B3-8190D34C6BD4}<br />StubPath = "%Windir%&#092;system32:msupdate.exe"<br />[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]<br />Microsoft Update Service = "%Windir%&#092;system32:msupdate.exe"</span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Tue, 09 Dec 2008 07:42:53 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ເຖິງ ມ່ານອາເລັກໄຊ ທີ່ນັບຖື<br /><br />ຂ້າພະເຈົ້າຂອງຄວາມຊ່ວຍເຫຼືອມາຍັງທ່ານດ້ວຍ, ເນື່ອງຈາກວ່າຄອມຂອງຂ້າພະເຈົ້າ ຖືໄວຣັດ work.exe ເຂົ້າ ແລະອາການຂອງມັນ ແມ່ນ ເວລາເປີດ msconfig ຫຼື regedit ແມ່ນມັນຈະລີສະຕາດຕົວເອງໂລດ ໂດຍທີ່ບໍ່ໄດ້ບອກໃຫ້ລີສະຕາດ ເອ໋າະ ແລະກໍ່ມີອີກຢ່າງໜຶ່ງຄື ຄອມຂອງຂ້າພະເຈົ້າຍັງມີໄວຣັດ system.exe ນຳ. ຮືໆໆໆໆໆ<br /><br />ດັ່ງນັ້ນຈິ່ງຂໍຄວາມກະລຸນາມາຍັງທ່ານເພື່ອຄວາມຊ່ວຍເຫຼືອດ້ວຍ<br />ຂໍຂອບໃຈຫຼ່ວງໜ້າ]]></description>
<author>pickachu&lt;piggy_pick@nospam.com&gt;</author>
<pubDate>Wed, 10 Dec 2008 04:53:41 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ ທີ່ນັບຖື<br />ມີເລື້ອງມີລົບກວນອີກແລ້ວ ຄືວ່າ ຄອມຂອງ ຂ້າພະເຈົ້າຕິດ <br /><br />autorun.inf<br />Threat:<br />INF/Autorun.gen trojan ຫຼືອາດຈະແມ່ນ ໄວຮັສຕົວອື່ນອີກ<br />ອາການຂອງ ຄອມ ແມ່ນ ເຂົ້າຄຳສັ່ງ runບໍ່ໄດ້ ເວລາStart >run ພິມຂໍ້ຄວາມໃສ່ runແລ້ວກົດ Enter ປັ໊ບ ຫນ້າຈໍຈະຫາຍ ຄ້າຍຄື Screen saver ປະມານ 3 ວິນາທີມັນຈະກັບສູ່ສະພາບເດີມ ບໍ່ຮູ້ວ່າເປັນຫຍັງ ແລະ ເວລາຊິລົງ Program ໃດໆກໍລົງບໍ່ໄດ້ ແມ້ແຕ່ຊິລົງຕິດຕັ້ງ Laoav ເພື່ອ Scan ຫາກໍ່ບໍ່ໄດ້ ,ເຂົ້າ Safe mode ກໍ່ຕິດຕັ້ງບໍ່ໄດ້ ຊວ່ຍແດ່ ທ່ານ<br />ຂໍຂອບໃຈ ເປັນຢ່າງສູງ</span>]]></description>
<author>sook&lt;john3up@nospam.com&gt;</author>
<pubDate>Thu, 11 Dec 2008 06:08:16 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ ທີ່ເຄົາລົບ ນັບຖື<br /><br />ເຄື່ອງຂອງ ຂ້າພະເຈົ້າໂດນ virus.win32.Sality.aa ເຮັດໃຫ້ ຂພຈ ຍອມ<br />ລົງ windowໃຫມ່ກໍ່ແກ້ບໍ່ໄດ້ ມັນກັບມາຄືນອີກ ເຂົ້າ Task Ma..ກໍ່ບໍ່ໄດ້ ລົງProgram ຫຍັງ ກໍ່ບໍ່ໄດ້ ,ເຂົ້າ Safe mode ກໍ່ບໍ່ໄດ້ ຊິລົງ Laoav ມັນກໍ່ບໍ່ໃຫ້ລົງ.....ໂອ໊ຍ!!!!....ຊວ່ຍເດ ຕັ້ງwindow ໃຫມ່ 3 ເທື່ອແລ້ວ<br />ກໍ່ຄືເກົ່າ  ຂໍໃຫ້ທ່ານ ຊວ່ຍຫາວິທີແກ້ໄຂໃຫ້ແດ່......ຂໍຂອບໃຈ ເປັນຢ່າງສູງ</span>]]></description>
<author>sook&lt;john3up@nospam.com&gt;</author>
<pubDate>Sat, 13 Dec 2008 06:45:48 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ເປັນໜອນ Internet ຍັງສາມາດຕິດຕາມເນັດເວີກອີກ<br />ເມື່ອລະບົບຫາກຕິດໜອນຕົວນີ້ແລ້ວຈະມີໄຟລແປກໆດັ່ງນີ້<br />%Temp%&#092;Flu Burung.txt<br />c:&#092;Recycled&#092;CTFMON.EXE<br />c:&#092;Recycled&#092;SMSS.EXE<br />c:&#092;Recycled&#092;SPOOLSV.EXE<br />c:&#092;Recycled&#092;SVCHOST.EXE</span><br /><span style="font-size: medium">ແລະສ້າງຄ່າໃນ Registry<br /></span><ul><li><span style="font-size: medium">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Applets&#092;Wo
rdpad</span></li><li><span style="font-size: medium">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Applets&#092;Wo
rdpad&#092;IP</span></li><li><span style="font-size: medium">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Applets&#092;Wo
rdpad&#092;Options</span></li><li><span style="font-size: medium">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Applets&#092;Wo
rdpad&#092;RTF</span></li><li><span style="font-size: medium">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Applets&#092;Wo
rdpad&#092;Settings</span></li><li><span style="font-size: medium">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Applets&#092;Wo
rdpad&#092;Text</span></li><li><span style="font-size: medium">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Applets&#092;Wo
rdpad&#092;Word6</span></li><li><span style="font-size: medium">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Applets&#092;Wo
rdpad&#092;Write</span></li></ul><span style="font-size: medium">ມັນລົບຄ່ານີ້ອອກ<br /></span><ul><li><span style="font-size: medium">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;scrfile&#092;shell&#092;config</span></li><li><span style="font-size: medium">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;scrfile&#092;shell&#092;config&#092;command</span></li><li><span style="font-size: medium">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;scrfile&#092;shell&#092;install</span></li><li><span style="font-size: medium">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;scrfile&#092;shell&#092;install&#092;command</span></li><li><span style="font-size: medium">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;scrfile&#092;shell&#092;config&#092;command]</span></li><ul><li><span style="font-size: medium">(Default) = ""%1""</span></li></ul><li><span style="font-size: medium">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;scrfile&#092;shell&#092;config]</span></li><ul><li><span style="font-size: medium">(Default) = "C&amp;onfigure"</span></li></ul><li><span style="font-size: medium">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;scrfile&#092;shell&#092;install&#092;command]</span></li><ul><li><span style="font-size: medium">(Default) = "rundll32.exe desk.cpl,InstallScreenSaver %l"</span></li></ul><li><span style="font-size: medium">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;scrfile&#092;shell&#092;install]</span></li><ul><li><span style="font-size: medium">(Default) = "&amp;Install"</span></li></ul></ul><span style="font-size: medium">ສ້າງຄ່ານີ້ໃໝ່</span><br /><ul><li><span style="font-size: medium">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon]</span></li><ul><li><span style="font-size: medium">Shell = "Explorer.exe "C:&#092;recycled&#092;SVCHOST.exe""</span></li></ul></ul><span style="font-size: medium">ແລະແປງຄ່າ<br /></span><ul><li><span style="font-size: medium">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;*]</span></li><ul><li><span style="font-size: medium">QuickTip = "prop:Type;Size"</span></li><li><span style="font-size: medium">InfoTip = "prop:Type;Write;Size"</span></li></ul><li><span style="font-size: medium">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;scrfile]</span></li><ul><li><span style="font-size: medium">(Default) = "Microsoft Word Document"</span></li></ul><li><span style="font-size: medium">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;scrfile&#092;shell&#092;open]</span></li><ul><li><span style="font-size: medium">(Default) = ""</span></li></ul><li><span style="font-size: medium">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;HideFileExt]</span></li><ul><li><span style="font-size: medium">UncheckedValue = 0x00000001</span></li></ul><li><span style="font-size: medium">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;SuperHidden]</span></li><ul><li><span style="font-size: medium">UncheckedValue = 0x00000000</span></li></ul><li><span style="font-size: medium">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon]</span></li><ul><li><span style="font-size: medium">Userinit = "C:&#092;recycled&#092;SVCHOST.exe,"</span></li></ul></ul><br /><img src="http://www.laoav.net/images/emotes/default/dead.png" style="border: 0px none " alt="dead.png" /><br /><br /><br /><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Sat, 20 Dec 2008 06:12:46 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">A malicious backdoor trojan that runs in the background and allows remote access to the compromised system<br /></span><ul><li><strong><span style="font-size: small">File System Modifications</span></strong></li></ul><span style="font-size: small">c:&#092;AutoRun.Inf<br />%System%&#092;arf<br />c:&#092;Documents and Settings.lnk<br />c:&#092;Thumbs.lnk<br />%System%&#092;IPv6.dll<br />%System%&#092;NvCpl64.dll<br />%System%&#092;WinXP.bmp<br />%System%&#092;cryptnet21.dll<br />%System%&#092;ReSSDT.sys<br /></span><ul><li><strong><span style="font-size: small">Registry Modifications</span></strong></li></ul>  <ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;SaveInfo</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{00000231-1000-0010-8000-
00AA006D2EA4}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{00000231-1000-0010-8000-
00AA006D2EA4}&#092;InprocServer32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Browser Helper Objects</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Browser Helper Objects&#092;{00000231-1000-0010-8000-00AA006D2EA4}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon&#092;Notify&#092;cryptnet21</span></li></ul></ul> <ul><li><span style="font-size: small">The following Registry Keys were deleted:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Advanced&#092;Folder&#092;SuperHidden</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Advanced&#092;Folder&#092;SuperHidden&#092;Policy</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Advanced&#092;Folder&#092;SuperHidden&#092;Policy&#092;DontShowSuperHidden</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{00000231-1000-0010-8000-
00AA006D2EA4}&#092;InprocServer32]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;WinXP.bmp"</span></li><li><span style="font-size: small">ThreadingModel = "Apartment"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Browser Helper Objects&#092;{00000231-1000-0010-8000-00AA006D2EA4}]</span></li><ul><li><span style="font-size: small">(Default) = "Thunder5BHO"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">NvCpl = "RunDll32.exe "%System%&#092;NvCpl64.dll",NvStartup"</span></li></ul><span style="font-size: small"><br /><em>so that NvCpl64.dll runs every time Windows starts</em><br /></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon&#092;Notify&#092;cryptnet21]</span></li><ul><li><span style="font-size: small">Impersonate = 0x00000000</span></li><li><span style="font-size: small">Asynchronous = 0x00000000</span></li><li><span style="font-size: small">Startup = "WLSStartEvent"</span></li><li><span style="font-size: small">DllName = "%System%&#092;cryptnet21.dll"</span></li></ul><span style="font-size: small"><br /><em>so that cryptnet21.dll is installed as a Winlogon notification package</em><br /></span></ul></ul> <ul><li><span style="font-size: small">The following Registry Values were deleted:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;SuperHidden&#092;Policy&#092;DontShowSuperHidden]</span></li><ul><li><span style="font-size: small">(Default) = ""</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;SuperHidden]</span></li><ul><li><span style="font-size: small">Type = "checkbox"</span></li><li><span style="font-size: small">Text = "@shell32.dll,-30508"</span></li><li><span style="font-size: small">WarningIfNotDefault = "@shell32.dll,-28964"</span></li><li><span style="font-size: small">HKeyRoot = 0x80000001</span></li><li><span style="font-size: small">RegPath = "Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;Advanced"</span></li><li><span style="font-size: small">ValueName = "ShowSuperHidden"</span></li><li><span style="font-size: small">CheckedValue = 0x00000000</span></li><li><span style="font-size: small">UncheckedValue = 0x00000001</span></li><li><span style="font-size: small">DefaultValue = 0x00000000</span></li><li><span style="font-size: small">HelpID = "shell.hlp#51103"</span></li></ul></ul></ul> <ul><li><span style="font-size: small">The following Registry Value was modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Windows]</span></li><ul><li><span style="font-size: small">AppInit_DLLs = "%System%&#092;IPv6.dll"</span></li></ul><span style="font-size: small"><br /><em>so that IPv6.dll runs every time a Windows application starts</em></span></ul></ul><span style="font-size: small"><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 29 Dec 2008 06:40:47 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium"><strong>ເວັບ<a href="http://www.laozaa.com/forum/viewthread.php?tid=5674&amp;extra=page%3D1" rel="external">ນີ້</a></strong></span> <span style="font-size: medium">ເມຶ່ອເຮັດຕາມທີ່ບອກແຕ່ວ່າ lao antivirus ບໍບອກຄືມັນວ່າ. ຢາກຖາມວ່າມັນເປັນໄວຣັດສ໌ຫລືບໍ??</span>]]></description>
<author>Love Never End&lt;xarhang@nospam.com&gt;</author>
<pubDate>Fri, 02 Jan 2009 03:57:00 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ເຖິງທ່ານ ອາເລັກໄຊ ທີ່ນັບຖື<br /><br />ຂ້າພະເຈົ້າມີແນວທີ່ຈະຕ້ອງຂໍຄວາມກາລຸນາ ລົບກວນທ່ານອີກແລ້ວ<br />ຄອມຂອງໝູ່ຂ້າພະເຈົ້າຖືກໄວຣັດantivirusເຂົ້າ ແລ້ວantivirus ກະເລີຍບໍ່ສາມາດໃຊ້ງານໄດ້ ແລະ ຂ້າພະເຈົ້າໄດ້ລີມູບອອກ ແລ້ວເອົາອັນໃໝ່ມາລົງກະລົງບໍ່ໄດ້ເລີຍ ຫຼືລົງໄດ້ແຕ່ບໍ່ເຮັດວຽກກະບໍ່ແນ່ໃຈຄືກັນ ເພາະບໍ່ເຫັນມັນຂື້ນມາ ຫຼື ອັບເດດໄດ້ເລີຍ<br /><br />ດັ່ງນັ້ນຈິ່ງຂໍຄວາມກະລຸນາມາຍັງທ່ານ ຊ່ວຍຂ້າພະເຈົ້າແກ້ໄຂບັນຫານີ້ດ້ວຍ<br />ໝູ່ຂອງຂ້າພະເຈົ້!ບໍ່ຍາກລົງວິນໂດໃໝ່ ເພາະເປັນຄອມໂນແນມ ແລະ ບໍ່ມີ ໄດເວີ້<br /><br />ຮຽນມາດ້ວຍຄວາມເຄົາລົບແລະນັບຖືຢ່າງສູງ]]></description>
<author>pickachu&lt;piggy_pick@nospam.com&gt;</author>
<pubDate>Wed, 07 Jan 2009 11:26:14 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><br /></span><span style="font-size: small">  ຂໍຄວາມຊ່ວຍເຫຼືອແດ່ທ່ານ ເລື່ອງມີຢູ່ວ່າ: ຂ້າພະເຈົ້າກະໃຊ້ usb ນັ້ນໄປຕາມປົກກະຕິ ແຕ່ມີມື້ໜື່ງເອົາມາໃຊ້ມັນບອກວ່າ: <span style="color: #ff9900">the disk in drive G is not </span></span><span style="font-size: small"><span style="color: #ff9900">formatted. do you want to format it now?</span> ແຕ່ເມື່ໄປ format ພັດບອກວ່າ <span style="color: #ff9900">windows was unable to complete the format.</span> </span><span style="font-size: small">ແລະ ເບິ່ງ properties ແລ້ວ <span style="color: #ff9900">file system</span> ເປັນ <span style="color: #ff9900">RAW</span> ແລະ ເນື້ອທີ່ປັນ <span style="color: #ff9900">0 bytes</span><br />ຊ່ວຍແນະນຳວິທີແກ້ໄຂແດ່ທ່ານ</span><span style="font-size: small"><img src="http://www.laoav.net/images/emotes/default/neutral.png" style="border: 0px none " alt="neutral.png" /> </span><span style="font-size: small">.               ຂໍຂອບໃຈລ່ວງໜ້າ</span>]]></description>
<author>latthaphone&lt;latthaphone9898527@nospam.com&gt;</author>
<pubDate>Thu, 08 Jan 2009 06:18:13 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium"><span style="font-size: small">ເມື່ອຕິດໄວຣັສນີ້ມັນຈະສ້າງໄຟລໃນຄອມດັ່ງນີ້:<br />%Temp%&#092;Network.txt<br />%Temp%&#092;DeathTime.Die<br />c:&#092;My Girls&#092;FolderData.exe<br />c:&#092;RECYCLER&#092;lsass.exe<br />ສ້າງຄ່າໃສ່ Registry</span><br /></span><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;ctfmon.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;msnmsgr.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;msnmsgs.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Nod32.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Nod32krn.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Regedit.exe</span></li></ul><br /><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;exefile]</span></li><ul><li><span style="font-size: small">NeverShowExt = ""</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;ctfmon.exe]</span></li><ul><li><span style="font-size: small">Debugger = "C:&#092;RECYCLER&#092;lsass.exe"</span></li></ul><span style="font-size: small"><br /><em>so that lsass.exe is injected into the execution sequence of ctfmon.exe by being installed as its default debugger</em><br /></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;msnmsgr.exe]</span></li><ul><li><span style="font-size: small">Debugger = "C:&#092;RECYCLER&#092;lsass.exe"</span></li></ul><span style="font-size: small"><br /><em>so that lsass.exe is injected into the execution sequence of msnmsgr.exe by being installed as its default debugger</em><br /></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;msnmsgs.exe]</span></li><ul><li><span style="font-size: small">Debugger = "C:&#092;RECYCLER&#092;lsass.exe"</span></li></ul><span style="font-size: small"><br /><em>so that lsass.exe is injected into the execution sequence of msnmsgs.exe by being installed as its default debugger</em><br /></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Nod32.exe]</span></li><ul><li><span style="font-size: small">Debugger = "C:&#092;RECYCLER&#092;lsass.exe"</span></li></ul><span style="font-size: small"><br /><em>so that lsass.exe is injected into the execution sequence of Nod32.exe by being installed as its default debugger</em><br /></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Nod32krn.exe]</span></li><ul><li><span style="font-size: small">Debugger = "C:&#092;RECYCLER&#092;lsass.exe"</span></li></ul><span style="font-size: small"><br /><em>so that lsass.exe is injected into the execution sequence of Nod32krn.exe by being installed as its default debugger</em><br /></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Regedit.exe]</span></li><ul><li><span style="font-size: small">Debugger = "C:&#092;RECYCLER&#092;lsass.exe"</span></li></ul><span style="font-size: small"><br /><em>so that lsass.exe is injected into the execution sequence of Regedit.exe by being installed as its default debugger</em><br /></span></ul> <ul><li><span style="font-size: small">The following Registry Values were modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;exefile]</span></li><ul><li><span style="font-size: small">(Default) = "File Folder"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Hidden&#092;SHOWALL]</span></li><ul><li><span style="font-size: small">CheckedValue = 0x00000000</span></li></ul></ul></ul><span style="font-size: small">ດາວໂລດຕົວກຳຈັດ ແມ່ນ <strong>Kill FolderData</strong></span><br /><span style="font-size: small">http://</span><span style="font-size: small">laoav.co.cc/download.php?view.60</span><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 14 Jan 2009 15:48:39 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຄອມຂ້ອຍຈັກໄປຖືກໄວຣັສໂຕໃດ ຢູ່ດີໆກະລົງໂປຼແກຼມຫຍັງບໍ໋ໄດ້ເລີຍ, ເຂົາໜ້າຕ່າງ Run ກໍ່ດີດອອກຄືນ, ແຖມລົງໂປຼແກມຫຍັງກໍບໍໄດ້ແລ້ວ.<br />Nod32 ທີ່ໃຊ້ຢູ່ກໍໃຊ້ງານບໍໄດ້ເລີຍ. ທ່ານໃດມີວິທີແກ້ໄຂບອກຂ້າພະເຈົ້າແດ່<br />ຂອບໃຈຢ່າງສູງ</span>]]></description>
<author>vanhnakone&lt;rucktersamer@nospam.com&gt;</author>
<pubDate>Mon, 19 Jan 2009 13:50:31 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ເມື່ອຕິດຄອມທ່ານແລ້ວມັນຈະສ້າງໄຟລ<br />c:&#092;Zita.exe<br /></span> <span style="font-size: small">ແລະສ້າຄ່າໃນ Registry</span><br /><ul><li><span style="font-size: small">The following Registry Key was created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;ctfmon.exe</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;exefile]</span></li><ul><li><span style="font-size: small">NeverShowExt = ""</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;ctfmon.exe]</span></li><ul><li><span style="font-size: small">Debugger = "C:&#092;Zita.exe"</span></li></ul><span style="font-size: small"><br /><em>so that Zita.exe is injected into the execution sequence of ctfmon.exe by being installed as its default debugger</em><br /></span></ul></ul> <ul><li><span style="font-size: small">The following Registry Value was modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;exefile]</span></li><ul><li><span style="font-size: small">(Default) = "File Fol</span>der"</li></ul></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Tue, 20 Jan 2009 16:04:15 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ສະບາຍດີທ່ານ<br />ຄອມຂອງຂ້າພະເຈົ້!ຫຼັງຈາກທີ່ຂ້າໄວຣັດແລ້ວ ໂຕໜັງສືຂອງໄອຄອນຢູ່ເທິງໜ້າຈໍມັນມີຂອບພື້ນສີຟ້າຂຶ້ນມາ<br />ເບິ່ງແລ້ວບໍ່ງາມເລີຍຍາກໃຫ້ມັນກັບມາເປັນຄືເກົ່າ ແຕ່ບໍ່ຮູ້ວ່າຈະສາມາດເຮັດໄດ້ແນວໃດ ດັ່ງນັ້ນຈິ່ງຂໍຮ້ອງມາຢັງທ່ານ ຂໍຄວາມກະລຸນານຳທ່ານດ້ວຍ<br /><br />ຂໍຂອບໃຈລ່ວງໜ້າ]]></description>
<author>pickachu&lt;piggy_pick@nospam.com&gt;</author>
<pubDate>Wed, 21 Jan 2009 04:21:07 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ເປັນໜອນອີນເຕີເນັດສົງເມວຫາຄົນອື່ນດ້ວຍຕົນເອງແລະແຜ່ກະຈາຍໄປຕາມເນັດເວີກ<br />ເມື່ອຕິດຄອມ ແລ້ວຈະມີໄຟລ<br />%System%&#092;javaqs.exe </span><br /><span style="font-size: small">%System%&#092;javaupd.exe </span><br /><span style="font-size: small">ສ້າງຄ່າໃນ Registry</span><br /><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
CabinetFileStateKAV</span><br /><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">Kaspersky Email Security = "%System%&#092;javaupd.exe"</span></li></ul></ul><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Tue, 27 Jan 2009 17:11:28 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ເປັນໜອນອິນເຕີເນັດແລະລະບາດຕາມ Handy Drive ໂດຍອາໃສໄຟລ Autorun.inf<br />ແລະ ໃສ່ຊືໄຟລຕົວເອງເປັນ clfmon.exe<br />ເມື່ອຄອມທ່ານຕິດມັນຈະສ້າງໄຟລດັ່ງນີ້<br />c:&#092;Autorun.inf<br />c:&#092;clfmon.exe<br />%System%&#092;clfmon.exe</span><br /><span style="font-size: small">ສ້າງຄ່າໃນ Registry<br /></span><ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
System]</span></li><ul><li><span style="font-size: small">DisableTaskMgr = 0x00000001</span></li><li><span style="font-size: small">DisableRegistryTools = 0x00000001</span></li></ul></ul><br /><ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">clfmon = "%System%&#092;clfmon.exe"</span></li></ul></ul><br /><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Hidden&#092;SHOWALL]</span></li><ul><li><span style="font-size: small">CheckedValue = 0x00000000</span></li></ul></ul><span style="font-size: small">ໄວຣັສນີ້ມັນຍັງພະຍາຍາມຕິດຕໍ່ຫາທີ່ຢູ່ນີ້ອີກ<br />http://users.cjb.net/d15839d0/clfmon.txt</span><br /><img src="http://www.laoav.net/images/emotes/default/special.png" style="border: 0px none " alt="special.png" /><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 04 Feb 2009 15:56:30 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ມັນເປັນໜອນໄວຣັສທີ່ແຜ່ຕາມ USB Drive ເຊື່ງມີໄຟລ autorun.inf ແລະ Secret.exe<br />ເມື່ອຄອມທ່ານຕິດແລ້ວມັນສ້າງໄຟລດັ່ງນີ້<br />%Windir%&#092;kdcoms.dll<br />%System%&#092;system.exe<br />%Windir%&#092;userinit.exe<br />ແລະສ້າງຄ່າໃນ Registry</span><br /><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon]</span></li><ul><li><span style="font-size: small">Userinit = "%Windir%&#092;userinit.exe"</span></li></ul></ul><span style="font-size: small">ເຊີ່ງມັນມາປ່ຽນຄ່າຂອງວິນໂດວໂດຍປົກະຕິແລ້ວຄ່າແມ່ນ<br /></span><span style="font-size: small">Userinit = "C:&#092;Windows&#092;System32&#092;userinit.exe"</span><br /><br /><span style="font-size: small">ສະນັ້ນຖ້າເຮົາຂ້າໄວຣັສແລ້ວຖ້າຫາກບໍ່ມາແປງຄ່ານີ້ຄືເກົ່າຂອງວິນໂດວເມື່ອທ່ານ
<br />ມອດແລ້ວມາເປີດເທື່ອໜ້າຈະເຂົ້າວິນໂດວບໍ່ໄດ້ມີແຕ່ກັບໄປກັບມາບ່ອນ Login<br />ດັ່ງນັ້ນ Laoav ຈີ່ງສ້າງຕົວຂ້າທີ່ປອດໄພກວ່າ ແມ່ນໃສ່ຊື່ Secret.exe Killer ທ່ານ<br />ສາມາດດາວໂລດມາໃຊ້ພຣີໄດ້<br /></span><img src="http://www.laoav.net/images/emotes/default/cry.png" style="border: 0px none " alt="cry.png" /><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 04 Feb 2009 16:15:29 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ໍຊ່ວຍແດ່ຄອມຕິດໄວຣັດ skynet.exe ມັນ coppy folder ເປັນນາມສະກຸນ .exe ຫມົດເລີຍ ຂ້າກໍ່ບໍ່ຫມົດຈັກເທື່ອ]]></description>
<author>jepop&lt;st_maithong@nospam.com&gt;</author>
<pubDate>Sat, 07 Feb 2009 08:47:12 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ປຸ່ມ turn off ຫາຍໄປ ເຫຼືອແຕ່ log off ຈະປິດເຄື່ງແຕ່ລະເທືອຕ້ອງຜ່ານຫຼາຍຂັ້ນຕອນ ເອີ້ນປຸ່ມ turn off ມາໄດ້ແນວໄດ<br />please, tell us, thank  you before hand]]></description>
<author>fueyching&lt;fueyching@nospam.com&gt;</author>
<pubDate>Mon, 16 Feb 2009 09:37:19 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: x-large">ບໍສາມາດມອດຄອມໄດ້ເນື່ອງຈາກຕິດໄວຣັສ<br />ຊ່ວຍແນະນຳວິທີແກ້ໄຂແດ່<br /><br />ຂອບໃຈຫລາຍໆ</span>]]></description>
<author>sompasong&lt;to555na@nospam.com&gt;</author>
<pubDate>Thu, 19 Feb 2009 04:40:16 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[i have a problem on my computer. i call to computer shop they always recommend me to install new windows coz no way to solve. i think they don't know much about internet.<br />i don't want to install new windows coz i already install it 2 times.<br /><br />if anyone can help call me plz 7830745<br /><br />thanks]]></description>
<author>Gen hustler&lt;ningscott@nospam.com&gt;</author>
<pubDate>Mon, 23 Feb 2009 05:49:32 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີທ່ານ ຕ້ອງການບົດຮຽນຕາມດ້ານລ້າງ:<br /></span><span><span></span></span><span style="font-size: small"><a href="http://www.laozaa.com/board/index.php?topic=4944.0">- ວິທີການ ຍິງ MSN ຂອງຄົນອື່ນໃຫ້ Online ບໍ່ໄດ້</a><br />-</span><span><span></span></span><a href="http://www.laozaa.com/board/index.php?topic=4046.0"> <span style="font-size: small">Live CD_-_Wireless_hacking ວ່າກັນວ່າ FBI ກໍ່ໃຊ້ຕົວນີ້</span></a><br /><span style="font-size: small">- </span><span><span></span></span><a href="http://www.laozaa.com/board/index.php?topic=4128.0"><span style="font-size: small">ໂປຣແກຣມ Hack Hotmail , Yahoo , Gmail ທັ້ງຫລາຍ</span></a><br /><span><span></span></span><span style="font-size: small"><a href="http://www.laozaa.com/board/index.php?topic=4128.0">- ໂປຣແກຣມ Hack Hotmail , Yahoo , Gmail ທັ້ງຫລາຍ</a><br /><br />ຊ່ວຍຊອກໃຫ້ແດ່ທ່ານ ຈະບໍ່ລືມບຸນຄຸນຕໍ່ທ່ານຢ່າງສູງ<br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sun, 24 Aug 2008 23:49:06 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ທ່ານພໍມີວິທີບໍ່ທີ່ຈະສາມາດ Hack ຫຼຶ Password ໃນຕອນ Login<br />ທີ່ເວັບ www.laohacker.com<br />ເພາະມັນມີບົດຄວາມກ່ຽວການ Hack ຫລາຍ ຊ່ວຍບອກວິທີແດ່ທ່ານ<br /><br />ແລະ ຢາກຮູ້ວ່າແມ່ນໃຜເປັນຜູ້ສ້າງເວັບນັ້ນ<br /><br /><br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Mon, 25 Aug 2008 01:26:28 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<img src="http://img53.imageshack.us/my.php?image=3z70ozcvy6.gif" alt="ຮູບ" title="ຮູບ" /><br /><img src="http://img53.imageshack.us/my.php?image=3z70ozcvy6.gif" alt="good" title="good" />]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Tue, 26 Aug 2008 02:54:54 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ເຮົາຈະເຮັດແນວໃດເພື່ອບໍ່ໃຫ້ຜູ້ໃຊ້ສາມາດ save ຂໍ້ມູນລົງໃນ Hard drive( C,D) ໄດ້ ທ່ານມີວິທີໃດ ຊ່ວຍບອກແດ່.<br />" <a href="mailto:phet_info@yahoo.com">phet_info@yahoo.com</a> "<br />ຂອບໃຈ]]></description>
<author>phetchamphone&lt;phet_info@nospam.com&gt;</author>
<pubDate>Tue, 26 Aug 2008 12:03:39 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຂ້ອຍພໍມີພື້ນຖານກ່ຽວກັບ Computer ພໍສົມຄວນ ແລະ ຂ້ອຍເຄີຍອອກແບບລະບົບ Network ນ້ອຍໆ ແຕ່ຂ້ອຍໄດ້ຮັບວຽກທີ່ເປັນໂຄງການໃຫຍ່ຂ້ອຍອາດຈະເຣັດຜິດພາດ. ສະນັ້ນ, ຈຶ່ງຂໍຄຳແນະນຳຈາກທ່ານທີ່ມີ ຂໍ້ມູນ ແລະ ບົດຮຽນກ່ຽວກັບເລື່ອງດັ່ງກ່າວ ຫລື website ທີ່ຄັກໆມີບົດຮຽນລະອຽດ. ກະລຸນາສົ່ງມາທີ bounpanhs@yahoo.com<br /><br />ຂໍຂອບໃຈລ່ວງໜ້າ<img src="http://www.laoav.net/images/emotes/default/smile.png" style="border: 0px" alt="smile.png" /><img src="http://www.laoav.net/images/emotes/default/smile.png" style="border: 0px" alt="smile.png" /><img src="http://www.laoav.net/images/emotes/default/smile.png" style="border: 0px" alt="smile.png" /><img src="http://www.laoav.net/images/emotes/default/smile.png" style="border: 0px" alt="smile.png" /><img src="http://www.laoav.net/images/emotes/default/smile.png" style="border: 0px" alt="smile.png" /></span>]]></description>
<author>bounpanh&lt;bounpanhs@nospam.com&gt;</author>
<pubDate>Wed, 27 Aug 2008 12:35:33 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ສະບາຍດີ, ສະມາຊິກໃໝ່ຂໍລາຍງານຕົວ<br /><br />ມາແວ່ລົງທະບຽນເປັນສະມາຊິກແຕ່ເຊົ້າຮອດຄຳນີ້ ຫາກໍ່ລົງທະບຽນໄດ້ ແຕ່ຈັງໃດກໍ່ຍັງດີກວ່າບໍ່ໄດ້ເນາະ]]></description>
<author>duong&lt;laosabaidee@nospam.com&gt;</author>
<pubDate>Wed, 27 Aug 2008 19:20:14 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຄຶວ່າ: ດ່ຽວນິ້ຢູ່ເຮືອນຂ້າພະເຈົ້າໃຊ້ ອິນເຕີເນັດລາຍເດືອນຂອງ ລາວໂທລະຄົມ ແລະ<br />ເປັນລະບົບ Adsl 128kbps<br />ຂ້າພະເຈົ້າໄດ້ລົງ Windows ໃໜ່ແລ້ວມັນບໍສາມາດຫຼິ້ນອິນເຕີເນັດ ແລະ ດ່າຍເວີ ກະລົງໄດ້ຄົບຖ້ວນແລ້ວ ແຕ່ວ່າ Connection ແມ່ນເຊື່ອມຕໍ່ໄດ້ ແຕ່ພໍເຂົ້າໂປມແກຮມ<br />Internet Explorer ແລ້ວອາການຂອງມັນຄຶບໍ່ໄດ້ເຊື່ອມຕໍ່ກັບ ອິນເຕີເນັດ<br />ທ່ານພໍຈະມີວິທີແກ້ໄຂ້ບໍ່ຊ່ວຍບອກວິທີແດ່ທ່ານ.<br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Thu, 28 Aug 2008 04:00:44 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">Autorun, or "Autoplay", are extended automatic                     functions associated with removable media such as CDs and                     DVDs. The foundation of this feature is the insert notification                     support in the device driver.  Most, if not all, removable                     devices available today support this feature.  After                     Windows detects that a disk has been inserted, it looks in                     the disk's root directory, finds, reads, and follows                     specific instructions defined in a text based configuration                     file, Autorun.inf. </span>                   <span style="font-size: small">In short, a computer looks for an "autorun.inf"                     file within any removable media inserted into it, such as                     a floppy, CD, or DVD, and if such a file is found, treats                     the media as an Autorun device. This is the essense of applications                     automatically launching when a CD/DVD is inserted into a computer.                     An prime example of this would be the "setup" application                     executing when a product's CD is inserted.</span>                   <span style="font-size: small">The Autorun.inf file defines the process or application that                     will automatically run when a disk is inserted.  The                     Autorun file can also define the following, among other things:                   </span>                   <table cellpadding="0" cellspacing="0" width="100%">                     <tbody><tr>                       <td valign="middle" align="center">                         <table cellpadding="4" cellspacing="0" width="100%">                           <tbody><tr>                             <td valign="top"><span style="font-size: small"><img src="http://autorun.moonvalley.com/images/bullet.gif" /></span></td>                             <td><span style="font-size: small">The Icon that will represent your application's                               CD or DVD when the drive is viewed with My Computer                               or Explorer. </span></td>                           </tr>                         </tbody></table>                       </td>                       <td align="center" width="41%"><img src="http://autorun.moonvalley.com/images/autorun_icon.gif" alt="Autorun file determines icon" /></td>                     </tr>                     <tr>                       <td align="center" width="41%"><img src="http://autorun.moonvalley.com/images/context_menu.gif" alt="Autorun.inf determines menu commands" /></td>                     </tr>                     <tr>                       <td valign="middle" align="center">                         <table cellpadding="4" cellspacing="0" width="100%">                           <tbody><tr>                             <td valign="top"><span style="font-size: small"><img src="http://autorun.moonvalley.com/images/bullet.gif" /></span></td>                             <td><span style="font-size: small">Menu commands displayed when the user right-clicks                               the CD-ROM icon from My Computer or Explorer. </span></td>                           </tr>                         </tbody></table>                       </td>                     </tr>                   </tbody></table>                   <span style="font-size: small"><strong>Note:</strong> Autorun can be disabled by the user through                     the device manager or with an entry in SYSTEM.INI. Click <a href="http://autorun.moonvalley.com/enable.htm">here</a>                     for more information on enabling/disabling autorun.</span><h1>Autorun Menu, What is it?                     </h1><span style="font-size: small">An Autorun Menu is the list of items presented to the user                     in the Context menu, (Right mouse click) on the CD in Explorer                     or My Computer. This menu, its items and the functions that                     they perform are defined in the Autorun.inf file. </span>                   <span style="font-size: small">This section describes the configuration of the Autorun.inf                     file that creates menu items.</span>                   <table cellpadding="4" cellspacing="1" width="100%">                     <tbody><tr align="left" valign="top" bgcolor="#e1e3ea">                       <td width="124"><strong>TERMINOLOGY:</strong></td>                       <td width="417"><strong>DEFINITION:</strong></td>                     </tr>                     <tr align="left" valign="top">                       <td width="124"><span style="font-size: x-small">Context menu</span></td>                       <td width="417"><span style="font-size: x-small">Or popup menu, is the                         menu displayed when the user selects (right mouse click)                         the cd drive icon in Explorer or My Computer.</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="124"><span style="font-size: x-small">Keyword</span></td>                       <td width="417"><span style="font-size: x-small">Defines the item to be                         added to the Popup or Context menu and defines the item                         that an action is to be taken.</span></td>                     </tr>                     <tr align="left" valign="top" bgcolor="#f9f9fb">                       <td width="124"><span style="font-size: x-small">Keyword modifier</span></td>                       <td width="417"><span style="font-size: x-small">Keyword modifier distinguishing                         the Popup or Context menu item from others.</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="124"><span style="font-size: x-small">Shell </span></td>                       <td width="417"><span style="font-size: x-small">The root of the command                         that specifies both the display of a Popup or Context                         menu item and its action. </span></td>                     </tr>                     <tr align="left" valign="top" bgcolor="#f9f9fb">                       <td width="124"><span style="font-size: x-small">Hotkey</span></td>                       <td width="417"><span style="font-size: x-small">Placement of the ampersand                         (&amp;) defines the hotkey or access key for the menu                         item. The next character adjacent to the ampersand will                         be the hot key. A hot key is not required. Note: Be careful                         to select unique hotkeys. Any duplication will result                         in the second instance being null.</span></td>                     </tr>                   </tbody></table>                 <br />               <br />                                      <table cellpadding="4" cellspacing="1" width="100%"><tbody><tr align="left" valign="top" bgcolor="#e1e3ea">                       <td width="218"><strong>EXAMPLE AUTORUN FILE:</strong></td>                       <td><strong>DEFINITION:</strong></td>                     </tr>                     <tr align="left" valign="top">                       <td width="218"><span style="font-size: x-small">[autorun]</span></td>                       <td><span style="font-size: x-small">The flag used to signify the start                         of the Autorun procedures. All autorun instructions follow                         this flag.</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="218"><span style="font-size: x-small">open=filename.exe /argument1                       </span></td>                       <td><span style="font-size: x-small">An instruction to the system to open                         the program called <strong>filename.exe</strong> in the current                         directory passing in <strong>argument1</strong></span> as the supplied                         parameter. </td>                     </tr>                     <tr align="left" valign="top">                       <td width="218"><span style="font-size: x-small">icon=&#092;foldername&#092;filename.dll,5                       </span></td>                       <td><span style="font-size: x-small">This command sets the icon of the                         drive that the autorun CD is inserted into. Windows is                         instructed to set the CD-ROM icon as the 5th icon found                         within the <strong>filename.dll</strong></span> library.</td>                     </tr>                     <tr align="left" valign="top">                       <td width="218"><span style="font-size: x-small">shell&#092;install = &amp;Install</span></td>                       <td><span style="font-size: x-small"><strong>shell&#092;install = &amp;Install</strong>                         <strong> Shell</strong> is the keyword to define the item to be                         added to the Popup or Context menu. &#092;<strong>install</strong> is                         the keyword modifier distinguishing the Popup or Context                         menu item from others. <strong> &amp;Install</strong> is the value                         defining the text to be displayed in the Popup menu. The                         ampersand preceding Install, defines the Hotkey for that                         item.</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="218"><span style="font-size: x-small">shell&#092;install&#092;command                         = setup.exe</span></td>                       <td><span style="font-size: x-small"><strong>shell&#092;install&#092;command</strong> is the                         keyword defining that an action is to be taken. <strong>setup.exe</strong>                         is the value defining the action to be taken when the                         user selects the item in the Popup menu. </span></td>                     </tr>                     <tr align="left" valign="top" bgcolor="#f9f9fb">                       <td width="218"><span style="font-size: x-small">shell&#092;uninstall = &amp;UnInstall</span></td>                       <td><span style="font-size: x-small">Additional Popup menu examples: Uninstall                         runs an uninstall application</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="218"><span style="font-size: x-small">shell&#092;uninstall&#092;command                         = Uninstall.exe</span></td>                       <td><span style="font-size: x-small"> </span></td>                     </tr>                     <tr align="left" valign="top" bgcolor="#f9f9fb">                       <td width="218"><span style="font-size: x-small">shell&#092;readme = &amp;Read Me</span></td>                       <td><span style="font-size: x-small"><strong>Readme</strong> displays a readme file                         using notepad passing the filename readme.txt as an argument.</span></td>                     </tr>                     <tr align="left" valign="top" bgcolor="#f9f9fb">                       <td width="218"><span style="font-size: x-small">shell&#092;readme&#092;command =                         notepad readme.txt</span></td>                       <td><span style="font-size: x-small"> </span></td>                     </tr>                     <tr align="left" valign="top" bgcolor="#f9f9fb">                       <td width="218"><span style="font-size: x-small">shell&#092;help = &amp;Help</span></td>                       <td><span style="font-size: x-small"><strong>Help</strong> displays a helpfile using                         the default registration of winhelp</span></td>                     </tr>                     <tr align="left" valign="top" bgcolor="#f9f9fb">                       <td width="218"><span style="font-size: x-small">shell&#092;help&#092;command = helpfilename.hlp</span></td>                       <td><span style="font-size: x-small"> </span></td>                     </tr>                     <tr align="left" valign="top" bgcolor="#ffffff">                       <td>                                                   <p><span style="font-size: small"><strong>Note:</strong> Each of the shell keywords are followed                           by a unique modifier distinguishing each context menu                           items and providing an id association to their action.</span></p></td></tr></tbody></table><br /><h1> Autorun.inf, What is it?                     <hr />                   </h1>                   <!-- #EndEditable -->                                                <!-- #BeginEditable "body" -->                   <span style="font-size: small">Autorun.inf is the primary instruction file associated with                     the Autorun function. Autorun.inf itself is a simple text-based                     configuration file that tells the operating system which executable                     to start, which icon to use, and which additional menu commands                     to make available. In other words, autorun.inf tells Windows                     how to deal open the presentation and treat the contents of                     the CD. </span>                   <span style="font-size: small">The entire sequence is initiated when the "disk change notifcation"                     polling discovers a new disk in the CD or DVD ROM drive. Then,                     if the "Auto insert notification" feature is enabled (it is                     by default), Windows checks in the new disk's root directory                     for the existence of an "autorun.inf" file. If found, Windows                     then reads and follows the specific instructions this file                     defines. If no autorun.inf file is found, then Windows refers                     to the new disk by its serial number and executes the default                     actions associated with the (data or audio) content on the                     disk.                   </span><span style="font-size: small"><strong class="bigBlue">The Autorun.inf file defines the following:</strong></span>                                      <table cellpadding="5" cellspacing="0" width="90%">                     <tbody><tr>                       <td valign="top" align="center"><span style="font-size: small"><img src="http://autorun.moonvalley.com/images/bullet.gif" alt="Autorun.inf Defines the following:" /></span></td>                       <td><span style="font-size: small">The process or application that will automatically run                         when a disk is inserted</span></td>                     </tr>                     <tr>                       <td valign="top" align="center"><span style="font-size: small"><img src="http://autorun.moonvalley.com/images/bullet.gif" alt="Automatically run when CD is inserted" /></span></td>                       <td><span style="font-size: small">Optionally, one can define the process or application                         that will run for specific Operating environments.</span></td>                     </tr>                     <tr>                       <td valign="top" align="center"><span style="font-size: small"><img src="http://autorun.moonvalley.com/images/bullet.gif" alt="Icon Representing CD or DVD" /></span></td>                       <td><span style="font-size: small">The icon that will represent your application's CD or                         DVD when the drive is viewed with My Computer or Explorer.                       </span></td>                     </tr>                     <tr>                       <td valign="top" align="center"><span style="font-size: small"><img src="http://autorun.moonvalley.com/images/bullet.gif" alt="Menu Commands when CD-ROM is clicked" /></span></td>                       <td><span style="font-size: small">Menu commands displayed when the user right-clicks the                         CD-ROM icon from My Computer or Explorer.</span></td>                     </tr>                   </tbody></table>                   <span style="font-size: small"><br /><br /></span>                                      <table cellpadding="3" cellspacing="0" width="100%">                     <tbody><tr>                       <td><span style="font-size: small"><strong>A simple Autorun.inf                         example:</strong></span></td>                     </tr>                     <tr align="center">                       <td align="left" width="11%"> <span style="font-size: small"><br /></span></td>                       <td align="left" width="89%"><span style="font-size: small">[autorun]                       </span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small">open=autorun.exe</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small">icon=autorun.ico</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small"> </span></td>                     </tr>                     <tr>                       <td><span style="font-size: small"><strong>A complex Autorun.inf                         example:</strong></span></td>                     </tr>                     <tr>                       <td align="left"><span style="font-size: small"><em>This example                         is used in the following section for complete definition                         and descriptions. </em></span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small"> [autorun]                       </span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small"> open=filename.exe                         /argument1</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small">icon=&#092;foldername&#092;filename.dll,5</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small">[autorun.mips]</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small">open=filenam2.exe</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small">icon=filename.ico</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small"> [autorun.alpha]</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small">open=filenam3.exe</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small">icon=filename.ico</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small"> [autorun.ppc]</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small">open=filenam4.exe</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small">icon=filename.ico</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small">shell&#092;install                         = &amp;Install</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small">shell&#092;install&#092;command                         = setup.exe</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small">shell&#092;uninstall                         = &amp;UnInstall</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small">shell&#092;uninstall&#092;command                         = Uninstall.exe</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small">shell&#092;readme                         = &amp;Read Me</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small">shell&#092;readme&#092;command                         = notepad readme.txt</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small">shell&#092;help                         = &amp;Help</span></td>                     </tr>                     <tr>                       <td align="left" width="11%"><span style="font-size: small"> </span></td>                       <td align="left" width="89%"><span style="font-size: small">shell&#092;help&#092;command                         = helpfilename.hlp</span></td>                     </tr>                   </tbody></table>                   <hr />                   <strong>This section describes the configuration of the Autorun.inf                   file and each of the potential items.</strong><br />                <br />                 <table cellpadding="3" cellspacing="0" width="100%">                     <tbody><tr align="left" valign="top" bgcolor="#e1e3ea">                       <td width="40%"><strong>Example Autorun File:</strong></td>                       <td width="60%"><strong>Description:</strong></td>                     </tr>                     <tr align="left" valign="top">                       <td width="40%"><span style="font-size: x-small">[autorun]</span></td>                       <td width="60%"><span style="font-size: x-small"><strong>[autorun]</strong> is the                         primary, required section name.</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="40%"><span style="font-size: x-small">open=filename.exe /argument1</span></td>                       <td>                         <span style="font-size: x-small"><strong>Open</strong> is the keyword to determine what action                           to take upon insert notification.</span>                       </td>                     </tr>                     <tr align="left" valign="top">                       <td><span style="font-size: x-small"><strong>filename.exe</strong> is the value defining                         the application that will be automatically started.</span></td>                     </tr>                     <tr align="left" valign="top">                       <td><span style="font-size: x-small"><strong>/argument1</strong> is the argument,                         parameter or switch passed to the application being run.                         Logically, any command line parameters used must be supported                         by the application.</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="40%"><span style="font-size: x-small">icon=&#092;foldername&#092;filename.dll,5</span></td>                       <td>                         <span style="font-size: x-small"><strong>Icon</strong> is the keyword to determine the icon used                           for the disk.</span>                       </td>                     </tr>                     <tr align="left" valign="top">                       <td><span style="font-size: x-small"><strong>filename.dll</strong> is the value defining                         the file containing the icon.</span></td>                     </tr>                     <tr align="left" valign="top">                       <td><span style="font-size: x-small"><strong>,5 </strong>is the argument to the icon                         resource defining which icon to display.</span></td>                     </tr>                     <tr align="left" valign="top">                       <td>                         <span style="font-size: x-small"><strong>Note: </strong>By default, the system looks for the file                           in the root directory of the inserted disk. If you want                           to access a file located in a specific folder or subdirectory,                           specify a path relative to the root. </span>                         <span style="font-size: x-small">Example: open = foldername&#092;filename.exe This will not                           change the current directory.</span>                         <span style="font-size: x-small">Although AutoPlay is the default menu item, you can                           define a different command to be the default by including                           the following line. shell = verb</span>                         <span style="font-size: x-small">When the user double-clicks on the icon, the command                           associated with this entry will be carried out. </span>                         <span style="font-size: x-small"><strong>Note:</strong> a more common method of defining the icon                           resouce is an explicit reference to a .ico file. Example:                           icon=autorun.ico</span>                         <span style="font-size: x-small"><strong>Note:</strong> The icon defined representing your application's                           CD or DVD is the drive icon as viewed with My Computer                           or Explorer. Valid file types containing icons include                           .ICO .BMP .EXE .DLL If the file includes more than one                           icon, by default, the second icon in the files icon                           resource will be displayed. </span>                       </td>                     </tr>                   </tbody></table>                                                            <table cellpadding="4" cellspacing="1" width="100%"><tbody><tr align="left" valign="top" bgcolor="#e1e3ea">                       <td width="225"><strong>Example Autorun File:</strong></td>                       <td width="317"><strong>Description:</strong></td>                     </tr>                     <tr align="left" valign="top">                       <td width="225"><span style="font-size: x-small">[autorun.mips]</span></td>                       <td width="317"><span style="font-size: x-small">Defining the                         autorun items for a mips machine</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="225"><span style="font-size: x-small">open=filenam2.exe</span></td>                       <td width="317"><span style="font-size: x-small">The platform                         specific application to run</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="225"><span style="font-size: x-small">icon=filename2.ico</span></td>                       <td width="317"><span style="font-size: x-small">The platform                         specific autorun icon</span></td>                     </tr>                     <tr align="left" valign="top">                       <td height="21" width="225"><span style="font-size: x-small">[autorun.alpha]</span></td>                       <td height="21" width="317"><span style="font-size: x-small">Defining                         the autorun items for a DEC Alphamachine</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="225"><span style="font-size: x-small">open=filenam3.exe</span></td>                       <td width="317"><span style="font-size: x-small">The platform                         specific application to run</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="225"><span style="font-size: x-small">icon=filename3.ico</span></td>                       <td width="317"><span style="font-size: x-small">The platform                         specific autorun icon</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="225"><span style="font-size: x-small">[autorun.ppc]</span></td>                       <td width="317"><span style="font-size: x-small">Defining the                         autorun items for a Power PC</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="225"><span style="font-size: x-small">open=filenam4.exe</span></td>                       <td width="317"><span style="font-size: x-small">The platform                         specific application to run</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="225"><span style="font-size: x-small">icon=filename4.ico</span></td>                       <td width="317"><span style="font-size: x-small">The platform                         specific autorun icon</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="225"><span style="font-size: x-small">shell&#092;install = &amp;Install</span></td>                       <td width="317"><span style="font-size: x-small">The Keyword                         defining a menu item and the Hot key for that item</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="225"><span style="font-size: x-small">shell&#092;install&#092;command                         = setup.exe</span></td>                       <td width="317"><span style="font-size: x-small">The keyword                         defining the operation to perform when the user selects                         this item</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="225"><span style="font-size: x-small">shell&#092;uninstall = &amp;UnInstall                       </span></td>                       <td width="317"><span style="font-size: x-small">Additional                         menu item example</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="225"><span style="font-size: x-small">shell&#092;uninstall&#092;command                         = Uninstall.exe </span></td>                       <td width="317"><span style="font-size: x-small">Additional                         menu item example</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="225"><span style="font-size: x-small">shell&#092;readme = &amp;Read                         Me </span></td>                       <td width="317"><span style="font-size: x-small">Additional                         menu item example</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="225"><span style="font-size: x-small">shell&#092;readme&#092;command =                         notepad readme.txt</span></td>                       <td width="317"><span style="font-size: x-small">Additional                         menu item example</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="225"><span style="font-size: x-small">shell&#092;help = &amp;Help</span></td>                       <td width="317"><span style="font-size: x-small">Additional                         menu item example</span></td>                     </tr>                     <tr align="left" valign="top">                       <td width="225"><span style="font-size: x-small">shell&#092;help&#092;command = helpfilename.hlp</span></td>                       <td width="317"><span style="font-size: x-small">Additional                         menu item example</span></td></tr></tbody></table><br /><h1>How to Test Autorun.inf Without Burning to a CD                     <hr />                   </h1>                   <!-- #EndEditable -->                                                <!-- #BeginEditable "body" -->                   <span style="font-size: x-small">It is possible to test an Autorun.inf file without burning                     all the necessary files onto CD-ROM, as long as the computer                     has autorun enabled on at least one of its removeable devices.                     More information on such procedures to enable autorun can                     be found <a href="http://autorun.moonvalley.com/enable.htm">here</a>.</span>                   <span style="font-size: x-small">By utilizing the following methods, constant refining of                     the Autorun.inf file is possible without the need to burn                     multiple CDs.</span>                    <h2><strong>Using removable media (Floppy/Zip/etc...)</strong></h2>                   <span style="font-size: x-small">1. <a href="http://autorun.moonvalley.com/enable.htm#autoFloppy">Enable</a> autorun on                     the desired removable media drive.</span>                   <span style="font-size: x-small">2. Copy the autorun.inf and all dependant files onto the                     removable media.</span>                   <span style="font-size: x-small">3. Remove and insert the media.</span>                    <h2><strong>Using a Virtual Drive</strong></h2>                    <span style="font-size: x-small">1. Download and install a virtual CD/DVD-ROM emulator, such                     as the tool available from <a href="http://www.daemon-tools.cc/portal/download.php">Daemon-Tools</a>.                   </span>                   <span style="font-size: x-small">2. Using CD-Burning software, such as provided by <a href="http://www.nero.com/">Nero</a>                     or <a href="http://www.roxio.com/en/products/ecdc/index.jhtml">Roxio</a>,                     create a CD project with the Autorun.inf file inserted into                     the root directory of the CD.</span>                   <span style="font-size: x-small">3. Save the project to a CD project file, usually with a                     .bin or .iso or .cdi extension, with the CD-Burning software.</span>                   <span style="font-size: x-small">4. Using the CD/DVD-ROM emulator, load the project file into                     the virtual drive. This has the same effect as physically                     inserting the CD with the Autorun.inf into the CD/DVD-ROM.</span><h1> Enable/Disable Autorun                     <hr />                   </h1>                   <!-- #EndEditable -->                                                <!-- #BeginEditable "body" -->                   <h2><strong>How To Enable/Disable Autorun (Windows 95/98/Me)</strong></h2>                   <ol><li><span style="font-size: x-small">Access the System Properties Dialog. Using Control Panel:                       My Computer: Properties or Explorer: My Computer: Properties.<br /><br /></span>                                            </li><li><span style="font-size: x-small">Select the Device Manager tab.<br /><br /></span>                                            </li><li><span style="font-size: x-small">Select the CD-ROM folder.<br /><br /></span>                                            </li><li><span style="font-size: x-small">Select the entry for your CD-ROM drive.<br /><br /></span>                                            </li><li><span style="font-size: x-small">Select Properties.<br /><br /></span>                                            </li><li><span style="font-size: x-small">Select the Settings tab.<br /><br /></span>                                            </li><li><span style="font-size: x-small">Turn on or off the Auto insert notification option.<br /><br /></span>                                            </li><li><span style="font-size: x-small">Select OK.<br /><br /></span>                                            </li><li><span style="font-size: x-small">Select OK</span></li></ol>                        <hr />                       <h2><strong>How To Enable/Disable Autorun (Windows NT/2000)</strong></h2>                       <ol><li><span style="font-size: x-small">Start RegEdit (regedt32.exe).<br /><br /></span>                                                    </li><li><span style="font-size: x-small">Go to HKEY_LOCAL_MACHINE/System/CurrentControlSet/Services/Cdrom.<br /><br /></span>                                                    </li><li><span style="font-size: x-small">Edit the Autorun value to '1' to enable autorn, and                           '0' to disable autorun.<br /><br /></span>                                                    </li><li><span style="font-size: x-small">Close RegEdit</span></li></ol>                            <hr />                           <h2><strong>How To Enable/Disable Autorun (Windows XP)</strong></h2>                           <ol><li><span style="font-size: x-small">Open Windows Explorer by pressing the Windows                               + "e" key.<br /><br /></span>                                                            </li><li><span style="font-size: x-small">Right-click the desired CD-ROM and select Properties                               from the menu.<br /><br /></span>                                                            </li><li><span style="font-size: x-small">Select the AutoPlay tab.<br /><br /></span>                                                            </li><li><span style="font-size: x-small">Select each item from the pulldown list and for                               the Action to perform, select "Take no action"                               to disable autorun, or pick the apporpriate action                               to take if enabling autorun.<br /><br /></span>                                                            </li><li><span style="font-size: x-small">Select OK.</span></li></ol>                               <hr />                               <h2><a name="autoFloppy"></a>How To Enable Autorun                                 for Other Removable Media</h2>                               <span style="font-size: x-small">Autorun can be enabled or disabled for all Removable                                 media types, such as a floppy or Zip disk. Windows                                 systems are configured to enable CD Notification,                                 other removable media are by default disabled. </span>                               <span style="font-size: x-small">The System Properties User interface only exposes                                 the CD Enable or Disable selection. The setting                                 reflected in this dialog makes an entry in the                                 System Registry. It is in this same location that                                 other media types are configured.</span>                               <span style="font-size: x-small"><strong>Notes:</strong></span>                                <ol><li><span style="font-size: x-small"> Modifiying the Registry is not for the inexperienced                                   user. Anyone will tell you, be VERY careful.</span></li><li><span style="font-size: x-small"> The modifications made in this case use Hex                                   not Decimal numbers. If you are unfamiliar with                                   the Registry or the characteristics of base                                   numbering and Hex, studying these topics prior                                   to making these modifications is advisable. </span></li></ol>                               <span style="font-size: x-small">To Modify these Registry Settings, Use Regedit                                 and navigate to the following Key:</span>                               <blockquote>                                 <blockquote>                                   <span style="font-size: x-small">HKEY_CURRENT_USER<br />                                    Software<br />                                    Microsoft<br />                                    Windows<br />                                    CurrentVersion<br />                                    Policies<br />                                    Explorer<br />                                    "NoDriveTypeAutoRun"  </span>                                 </blockquote>                               </blockquote>                               <span style="font-size: x-small">The default value for the setting is 95 0 0 0.                                 Change the first byte to 91. Restart the computer                                 to make the new setting take effect. You may have                                 to right-click on the floppy and choose AutoPlay                                 from the menu to see the AutoPlay behavior.</span>                               <hr />                               <h2><strong>Additional Technical Info</strong></h2>                               <span style="font-size: x-small">The first byte defines which drive types to EXCLUDE                                 from Autorun behavior. The hex value of the byte                                 is the sum of all of the drive type values to                                 exclude + 128.</span>                               <blockquote>                                 <blockquote>                                   <span style="font-size: x-small">DRIVE_UNKNOWN 1<br />                                    DRIVE_NO_ROOT_DIR 2<br />                                    DRIVE_REMOVABLE 4 (floppy disks and removable                                     cartridges)<br />                                    DRIVE_FIXED 8 (hard disks)<br />                                    DRIVE_REMOTE 16 (network drives)<br />                                    DRIVE_CDROM 32 (CD-ROMs)<br />                                    DRIVE_RAMDISK 64  </span>                                 </blockquote>                               </blockquote>                               <span style="font-size: x-small">The default configuration excludes UNKNOWN (1),                                 REMOVABLE (4) and REMOTE (16) which would be 16                                 + 4 + 1 + 128 = 149, which is hex 95. If you take                                 out REMOVABLE you get 16 + 1 + 128 = 145, which                                 is hex 91.</span>                               <span style="font-size: x-small">The calculation for this value is 1 + 4 + 16                                 + 128 = 149. 149 Decimal is 95 Hex</span>                               <span style="font-size: x-small">The new calculation is 1 + 16 + 128 = 145. 149                                 Decimal is 91 Hex</span>                               <span style="font-size: x-small">You may have to restart for the system to recognize                                 a floppy or Zip as an Autoplay drive. If your                                 floppy drive does not show a custom icon or AutoPlay                                 in the menu when right-clicked, double-click on                                 the icon for your computer on the desktop and                                 press F5 to refresh the information in the Explorer                                 window. Zips and floppies will not autolaunch                                 when media is inserted. You must double-click                                 their icon or right-click and choose AutoPlay                                 from the menu.</span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 29 Aug 2008 05:13:21 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຕອນນີ້ ຂ້າພະເຈົ້າຫຼີ້ນ internet ຜ່ານ wireless ໂດຍທີ່ຜູ້ຈະໃຊ້ສັນຍານ ຈະຕ້ອງມີ key ໃສ່ ຈິ່ງຈະສາມາດເຊື່ອມຕໍ່ໄດ້ ແລະເຄື່ອງຂອງຂ້າພະເຈົ້າກໍ່ໄດ້ໃສ່key ດັ່ງກ່າວລົງໄປແລ້ວ<br />ແຕ່ຂ້າພະເຈົ້າຢາກຣູ້ວ່າ key ທີ່ໃສ່ແມ່ນຫຍັງເພາະມີພະນັກງານ ITໃສ່ໃຫ້ ຢາກລົບທ່ານ ອາເລັກໄຊວ່າ<br />ມີfile ທີ່ preview ຫາ key ໄດ້ບໍ່ ເພາະເວລາລົງ windows ໃຫມ່ key ຈະຫາຍໄປ<br />ຂໍຂອບໃຈ</span>]]></description>
<author>vong2009&lt;johnmgmc@nospam.com&gt;</author>
<pubDate>Sat, 30 Aug 2008 08:21:35 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ<br /><br />ຂ້າພະເຈົ້າຂໍລົບກວນທ່ານແດ່ ຄືວ່າຂ້າພະເຈົ້າຢາກອັດສຽງເວົ້າ ເຂົ້າເຄື່ອງຄອມພິວເຕີ້ ແລ້ວບັນທຶກເປັນຣູບແບບ file ສຽງ ທີ່ສາມາດເປີດຟັງໄດ້ ຄືກັບ file ສຽງເພງ<br />ຂໍລົບກວນເທົ່ານີ້<br />ຂໍຂອບໃຈເປັນຢ່າງສູງ</span>]]></description>
<author>vong2009&lt;johnmgmc@nospam.com&gt;</author>
<pubDate>Mon, 01 Sep 2008 06:02:56 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ<br />ຂ້າພະເຈົ້າມີບັນຫາ ມາລົບກວນທ່ານອີກແລ້ວ ຄືວ່າຂ້າພະເຈົ້າໃຊ້ Internet ຮວ່ມກັນ ຫຼາຍຫນວ່ຍ ແຕ່ລະຫນວ່ຍສາມາດເບິ່ຯ drive ຂອຯຫນວ່ຍອື່ນໄດ້ ໂດຍເປີດຜ່ານ<br />My Network places ແລະ click ເຂົ້າໄປເບິ່ຯຂໍ້ມູນຜູ້ອື່ນ ແລະ ມີຜູ້ບໍ່ປະສົຯດີຕໍ່ເຣົາ<br />ເປີດຂໍ້ມູນໃນເຄື່ອຯຂອຯເຣົາອອກມາ ແລ້ວລຶບຖີ້ມ ດັ່ໍັຯນັ້ນຂ້າພະເຈົ້າຈີ່ຯ ຢາກຣູ້ວິທີ lock<br />ໃສ່ password ບໍ່ໃຫ້ຜູ້ອື່ນເປີດເບິ່ຯໄດ້<br /><br />ຂໍຂອບໃຈ</span>]]></description>
<author>vong2009&lt;johnmgmc@nospam.com&gt;</author>
<pubDate>Mon, 01 Sep 2008 13:18:50 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ ທີ່ນັບຖື<br /><br />ຂ້າພະເຈົ້າມີບັນຫາອີກແລ້ວ ຄືວ່າ ຂໍ້ມູນຂອຯຂ້າພະເຈົ້າທີ່ save ໄວ້ໃນ drive D: ຖືກຜູ້ອື່ນເປີດເຂົ້າໄປລຶບ ຊະແລ້ວ!!! ສ້າຯຄວາມປວດຫົວຫຼາຍ ຈິ່ຯຢາກຂໍລົບກວນ ທ່ານ ອາເລັກໄຊ<br />ຊວ່ບຫາວິທີ ກູ້ file ຄືນມາໃຫ້ແດ່<br /><br />ຂໍຂອບໃຈເປັນຢ່າຯສູູຯ</span>]]></description>
<author>vong2009&lt;johnmgmc@nospam.com&gt;</author>
<pubDate>Mon, 01 Sep 2008 13:25:56 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ເຖິງທ່ານ ອາເລັກໄຊ ທີ່ນັບຖື<br />ຄືວ່າຄອມຂອງຂ້າພະເຈົ້າບໍ່ສາມາດໃຊ້ປຸ່ມສະແຕນບາຍໄດ້ ແລະ ຄອມຢູ່ຫ້ອງການກໍ່ເຊັ່ນດຽວກັນ ແຕ່ວ່າເປັນປຸ່ມ trun off<br />ອາການຂອງມັນກໍ່ແມ່ນ ມັນເປັນປຸ່ມລາງໆແຕ່ບໍ່ສາມາດກົດໄດ້<br />ດັ່ງນັ້ນຈິ່ງຂໍຄວາມຊ່ວຍເຫຼືອມາເຖິງທ່ານອາເລັກໄຊຊ່ວຍຂ້າພະເຈົ້າດ້ວຍ T.T<br /><br />ຮຽນມາດ້ວຍຄວາມນັບຖືຍ່າງສູງ<br />]]></description>
<author>pickachu&lt;piggy_pick@nospam.com&gt;</author>
<pubDate>Fri, 05 Sep 2008 07:38:23 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຂອບໃຈລວງໜ້າ ຖ້າມັນມີ ຄີກະເອົາໃຫ້ພ້ອມແດ່</span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Fri, 05 Sep 2008 18:08:59 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຄຶວ່າ: ຄອມຂ້າພະເຈົ້າຊື້ມາຈາ ຮ້ານ ດາຕ່າຄອມ ແລ້ວເຂົາເຈົ້າມີການ Protestion<br />ຫຼຶມີ ການປ້ອງກັນບໍ່ໃຫ້ລົງ ວິນໂດນໄດ້ ແລະ ລີ່ແພ່ກະຍັງບໍ່ໄດ້<br />ແມ່ນຢູ່ໃນຊ່ວງ ຄາລັງຕີ່ ຈຳເປັນຕ້ອງໄດ້ເອີ້ນເຂົາເຈົ້າມາ ແຕ່ກົງກັນຂ້າມພໍກາຍຊ່ວງ<br />ຄາລັງຕີ່ ຖ້າເກີດບັນຫາຂຶ້ນມາ ແລ້ວຢາກລົງເອົາເອງ<br />ຊ່ວຍບອກວິທີແດ່ ບໍ່ຮູ້ຊີເຮັດແນວໃດ  ແລະອີກຢ່າງໜື່ງຂ້າພະເຈົ້າກະຕ້ອງການເກັ່ງຄຶກັນ<br />ຊ່ວຍບອກວີທີສ້າງໃຫ້ມີການ Protestion.<br /></span><div align="center"><span style="font-size: medium"><u><strong>ຂໍຂອບພະເຈົ້າຕໍ່ທ່ານຢ່າງສູງ</strong></u></span><br /></div>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Mon, 08 Sep 2008 01:59:47 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ທ່ານພໍຈະມີ ໂປຮແກຮມ Block ບໍ່ໃຫ້ຄົນອື່ນຫິ້ຼນ Messenger online ໄດ້<br />ຂ້ອຍເຄີຍເຫັນທີ່ເວັບ laozaa ແຕ່ເຂົາເຈົ້າບໍ່ໃຫ້ໂລດຕ້ອງເປັນ ວິໄອຟີ<br />ຊ່ວຍຊອກໂປຮແກມຮໃຫ້ແດ່ທ່ານ ແລະວີທີໃຊ້<br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Mon, 08 Sep 2008 08:13:16 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ<br /><br />ຂ້າພະເຈົ້າ ໄດ້ scan ກວດຫາ file ທີ່ຜິດພາດໃນ window ໂດຍການເຂົ້າ run>cmd>sfc /scannow ແລ້ວພົບ file ທີ່ມີບັນຫາຄື ມັນຟ້ອງວ່າ<br /></span><span style="font-size: small">The specific error code is 0X000006ba [the RPC server is unavailable.<br />ເມື່ອມັນຟ້ອງແນວນີ້ ເຣົາຕ້ອງແກ້ຢ່າງໃດ<br /><br />ຊວ່ຍບອກແດ່ ຂໍຂອບໃຈ</span>]]></description>
<author>vong2009&lt;johnmgmc@nospam.com&gt;</author>
<pubDate>Wed, 10 Sep 2008 10:08:05 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<!--[if gte mso 9]><xml>  <w:WordDocument>   <w:View>Normal</w:View>   <w:Zoom>0</w:Zoom>   <w:PunctuationKerning/>   <w:ValidateAgainstSchemas/>   <w:SaveIfXMLInvalid>false</w:SaveIfXMLInvalid>   <w:IgnoreMixedContent>false</w:IgnoreMixedContent>   <w:AlwaysShowPlaceholderText>false</w:AlwaysShowPlaceholderText>   <w:Compatibility>    <w:BreakWrappedTables/>    <w:SnapToGridInCell/>    <w:ApplyBreakingRules/>    <w:WrapTextWithPunct/>    <w:UseAsianBreakRules/>    <w:DontGrowAutofit/>   </w:Compatibility>  </w:WordDocument> </xml><![endif]--><!--[if gte mso 9]><xml>  <w:LatentStyles DefLockedState="false" LatentStyleCount="156">  </w:LatentStyles> </xml><![endif]--> <!--  /* Font Definitions */  @font-face 	{font-family:"Angsana New"; 	panose-1:2 2 6 3 5 4 5 2 3 4; 	mso-font-charset:0; 	mso-generic-font-family:roman; 	mso-font-pitch:variable; 	mso-font-signature:16777219 0 0 0 65537 0;} @font-face 	{font-family:"Saysettha OT"; 	panose-1:2 11 5 4 2 2 7 2 2 4; 	mso-font-charset:0; 	mso-generic-font-family:swiss; 	mso-font-pitch:variable; 	mso-font-signature:-2097151825 268443658 0 0 65537 0;}  /* Style Definitions */  p.MsoNormal, li.MsoNormal, div.MsoNormal 	{mso-style-parent:""; 	margin:0cm; 	margin-bottom:.0001pt; 	mso-pagination:widow-orphan; 	font-size:12.0pt; 	mso-bidi-font-size:14.0pt; 	font-family:"Times New Roman"; 	mso-fareast-font-family:"Times New Roman"; 	mso-bidi-font-family:"Angsana New";} @page Section1 	{size:595.3pt 841.9pt; 	margin:72.0pt 90.0pt 72.0pt 90.0pt; 	mso-header-margin:36.0pt; 	mso-footer-margin:36.0pt; 	mso-paper-source:0;} div.Section1 	{page:Section1;} --> <!--[if gte mso 10]> <style>  /* Style Definitions */  table.MsoNormalTable 	{mso-style-name:"Table Normal"; 	mso-tstyle-rowband-size:0; 	mso-tstyle-colband-size:0; 	mso-style-noshow:yes; 	mso-style-parent:""; 	mso-padding-alt:0cm 5.4pt 0cm 5.4pt; 	mso-para-margin:0cm; 	mso-para-margin-bottom:.0001pt; 	mso-pagination:widow-orphan; 	font-size:10.0pt; 	font-family:"Times New Roman"; 	mso-bidi-font-family:"Times New Roman"; 	mso-ansi-language:#0400; 	mso-fareast-language:#0400; 	mso-bidi-language:#0400;} </style> <![endif]-->  <!--[if gte mso 9]><xml>  <w:WordDocument>   <w:View>Normal</w:View>   <w:Zoom>0</w:Zoom>   <w:PunctuationKerning/>   <w:ValidateAgainstSchemas/>   <w:SaveIfXMLInvalid>false</w:SaveIfXMLInvalid>   <w:IgnoreMixedContent>false</w:IgnoreMixedContent>   <w:AlwaysShowPlaceholderText>false</w:AlwaysShowPlaceholderText>   <w:Compatibility>    <w:BreakWrappedTables/>    <w:SnapToGridInCell/>    <w:ApplyBreakingRules/>    <w:WrapTextWithPunct/>    <w:UseAsianBreakRules/>    <w:DontGrowAutofit/>   </w:Compatibility>  </w:WordDocument> </xml><![endif]--><!--[if gte mso 9]><xml>  <w:LatentStyles DefLockedState="false" LatentStyleCount="156">  </w:LatentStyles> </xml><![endif]--> <!--  /* Font Definitions */  @font-face 	{font-family:"Angsana New"; 	panose-1:2 2 6 3 5 4 5 2 3 4; 	mso-font-charset:0; 	mso-generic-font-family:roman; 	mso-font-pitch:variable; 	mso-font-signature:16777219 0 0 0 65537 0;} @font-face 	{font-family:"Saysettha OT"; 	panose-1:2 11 5 4 2 2 7 2 2 4; 	mso-font-charset:0; 	mso-generic-font-family:swiss; 	mso-font-pitch:variable; 	mso-font-signature:-2097151825 268443658 0 0 65537 0;}  /* Style Definitions */  p.MsoNormal, li.MsoNormal, div.MsoNormal 	{mso-style-parent:""; 	margin:0cm; 	margin-bottom:.0001pt; 	mso-pagination:widow-orphan; 	font-size:12.0pt; 	mso-bidi-font-size:14.0pt; 	font-family:"Times New Roman"; 	mso-fareast-font-family:"Times New Roman"; 	mso-bidi-font-family:"Angsana New";} @page Section1 	{size:595.3pt 841.9pt; 	margin:72.0pt 90.0pt 72.0pt 90.0pt; 	mso-header-margin:36.0pt; 	mso-footer-margin:36.0pt; 	mso-paper-source:0;} div.Section1 	{page:Section1;} --> <!--[if gte mso 9]><xml>  <w:WordDocument>   <w:View>Normal</w:View>   <w:Zoom>0</w:Zoom>   <w:PunctuationKerning/>   <w:ValidateAgainstSchemas/>   <w:SaveIfXMLInvalid>false</w:SaveIfXMLInvalid>   <w:IgnoreMixedContent>false</w:IgnoreMixedContent>   <w:AlwaysShowPlaceholderText>false</w:AlwaysShowPlaceholderText>   <w:Compatibility>    <w:BreakWrappedTables/>    <w:SnapToGridInCell/>    <w:ApplyBreakingRules/>    <w:WrapTextWithPunct/>    <w:UseAsianBreakRules/>    <w:DontGrowAutofit/>   </w:Compatibility>  </w:WordDocument> </xml><![endif]--><!--[if gte mso 9]><xml>  <w:LatentStyles DefLockedState="false" LatentStyleCount="156">  </w:LatentStyles> </xml><![endif]--> <!--  /* Font Definitions */  @font-face 	{font-family:"Angsana New"; 	panose-1:2 2 6 3 5 4 5 2 3 4; 	mso-font-charset:0; 	mso-generic-font-family:roman; 	mso-font-pitch:variable; 	mso-font-signature:16777219 0 0 0 65537 0;} @font-face 	{font-family:"Saysettha OT"; 	panose-1:2 11 5 4 2 2 7 2 2 4; 	mso-font-charset:0; 	mso-generic-font-family:swiss; 	mso-font-pitch:variable; 	mso-font-signature:-2097151825 268443658 0 0 65537 0;}  /* Style Definitions */  p.MsoNormal, li.MsoNormal, div.MsoNormal 	{mso-style-parent:""; 	margin:0cm; 	margin-bottom:.0001pt; 	mso-pagination:widow-orphan; 	font-size:12.0pt; 	mso-bidi-font-size:14.0pt; 	font-family:"Times New Roman"; 	mso-fareast-font-family:"Times New Roman"; 	mso-bidi-font-family:"Angsana New";} @page Section1 	{size:595.3pt 841.9pt; 	margin:72.0pt 90.0pt 72.0pt 90.0pt; 	mso-header-margin:36.0pt; 	mso-footer-margin:36.0pt; 	mso-paper-source:0;} div.Section1 	{page:Section1;} --> <!--[if gte mso 10]> <style>  /* Style Definitions */  table.MsoNormalTable 	{mso-style-name:"Table Normal"; 	mso-tstyle-rowband-size:0; 	mso-tstyle-colband-size:0; 	mso-style-noshow:yes; 	mso-style-parent:""; 	mso-padding-alt:0cm 5.4pt 0cm 5.4pt; 	mso-para-margin:0cm; 	mso-para-margin-bottom:.0001pt; 	mso-pagination:widow-orphan; 	font-size:10.0pt; 	font-family:"Times New Roman"; 	mso-bidi-font-family:"Times New Roman"; 	mso-ansi-language:#0400; 	mso-fareast-language:#0400; 	mso-bidi-language:#0400;} </style> <![endif]-->  <span style="font-size: small">ສະບາຍດີ​ທຸກໆ ທ່າ</span><span style="font-size: small">­</span><span style="font-size: small">ຂ້າພະ​ເຈົ້າ​ມີ​ບັ</span><span style="font-size: small">­</span><span style="font-size: small">ຫາ​ກ່ຽວ​ກັບ </span><span style="font-size: small">External hard disk ( USB 2), </span><span style="font-size: small">​ເວລາ​ສຽບ​ເຂົ້າ​ຊ່ອງ </span><span style="font-size: small">USB </span><span style="font-size: small">ມັ</span><span style="font-size: small">­</span><span style="font-size: small">​ນບໍ່​ອ່າ</span><span style="font-size: small">­</span><span style="font-size: small">ນ ແລະ ​ໄດ້​ລອງ​ມາ​ແລ້ວ​</span><span style="font-size: small">­</span><span style="font-size: small">ນຳ​ຈັກ​ຫລາຍ​</span><span style="font-size: small">­</span><span style="font-size: small">ໜ່ວຍທີ່​ໄຊ້ລະບົບ </span><span style="font-size: small">window 95​ </span><span style="font-size: small">​ຫາ </span><span style="font-size: small">vista ​, </span><span style="font-size: small">​ແຕ່​ຂ້າພະ​ເຈົ້າ​ເອົາ​ໄປ​ສຽບ​ໃສ່​ຊ່ອງ </span><span style="font-size: small">USB </span><span style="font-size: small">ຂອງ </span><span style="font-size: small">notebook </span><span style="font-size: small">ຂອງ​ໝູ່​ຂ້າພະ​ເຈົ້າ​ມັນ</span><span style="font-size: small">­</span><span style="font-size: small">​ພັດ​ອ່າ</span><span style="font-size: small">­</span><span style="font-size: small">ນພຽງ​ແຕ່ໜ່​</span><span style="font-size: small">­</span><span style="font-size: small">່ວຍດຽວ​ເທົ່ານັ້ນ</span><span style="font-size: small">­, </span><span style="font-size: small">ຈັກ​ຂອງ​ໝູ່​ຂ້າພະ​ເຈົ້າ​ໃຊ້ ຍີ່ຫໍ້ </span><span style="font-size: small">TOSHIBA ( Window XP professional ) , </span><span style="font-size: small">ຖ້າ​ຜູ້​ໃດ​ຮູ້ກາລຸນ​</span><span style="font-size: small">­</span><span style="font-size: small">າ​ແນ</span><span style="font-size: small">­</span><span style="font-size: small">ະ</span><span style="font-size: small">­</span><span style="font-size: small">ນຳ​ຂ້າພະ​ເຈົ້າ​ແດ່</span><span style="font-size: small"> </span><span style="font-size: small">ຂໍ​ຂອບ​ໃຈ​ເປັ</span><span style="font-size: small">­</span><span style="font-size: small">​ນຢ່າງ​ສູງ</span><span style="font-size: small">   </span>  <span style="font-size: small"><br /></span>]]></description>
<author>luangsay&lt;luangsaybv@nospam.com&gt;</author>
<pubDate>Thu, 11 Sep 2008 09:00:50 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຊ່ວຍຊອກໃຫ້ແດ່ທ່ານ</span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Fri, 12 Sep 2008 02:09:08 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div class="postbody">ຂໍຄວາມຊ່ວຍເຫຼືອ<br /><span style="font-size: medium">ຄືວ່າລົງໂປແກມບັນຊີແລ້ວເມນູຕ່າງໆພ້ອມດ້ວຍພາສາລາວສະແດງເປັນ ???????? ມັນບໍ່ຂຶ້ນເປັນຕົວໜັງສືລາວ<br />ມີວິທີແກ້ຈັ່ງໃດແດ່ ລົງຄອມບາງໜ່ວຍໄດ້ບາງໜ່ວຍກໍ່ບໍ່ໄດ້ ບໍ່ຮູ້ວ່າມັນຜິດພາດບ່ອນໃດ ແລ້ວຕ້ອງແກ້ຈັ່ງໃດ</span></div>]]></description>
<author>g-men&lt;EZ.Gman@nospam.com&gt;</author>
<pubDate>Fri, 12 Sep 2008 09:30:03 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ ທີ່ເຄົາລົບ ນັບຖື<br />ຄືວ່າ ຂ້າພະເຈົ້າ ເປີດ website ອອກມາແລ້ວຖືກລ໋ອກ ມັນບອກວ່າ web filter ຕາມດ້ວຍຂໍ້ຄວາມດັ່ງນີ້</span><br /><span style="font-size: small">This web page was blocked because it is considered inappropriate.<br /></span><span style="font-size: small"><strong>Reason:</strong> extension (exe)</span><span style="font-size: small">Please contact your network administrator<br />ຢາກຮູ້ວ່າ ມີວິທີແກ້ໄຂໄດ້ບໍ່ ?<br />ຂໍຂອບໃຈ</span>]]></description>
<author>vong2009&lt;johnmgmc@nospam.com&gt;</author>
<pubDate>Mon, 15 Sep 2008 09:26:15 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[Dear sir<br />I tried to install laoscript v6.04 on winxp<br />it just stay on installing Saysettha Lao<br />it won't complete for the instalation<br />help please?]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Wed, 17 Sep 2008 07:20:33 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><span style="font-size: medium"><strong><u>ດ້ວຍຄົບລົບ ແລະນັບຖືຢ່າງສູງ</u><em><u><br /></u></em></strong></span><div align="left"><span style="font-size: medium">ຄຶວ່າ: ຂ້າພະເຈົ້າຕ້ອງປ່ຽນຮູບ ແລະ Welcome ຕອນເວລາບູດຂຶ້ນມາແລ້ວຈະເຫັນ<br />ຄຳວ່າ: welcome ແລະມັນມີຮູບສີຟ້າ ຕ້ອງການປ່ຽນໃຫ້ເປັນຮູບອື່ນ.<br />ຊ່ວຍບອກວິທີແດ່ທ່ານ<br /></span></div><span style="font-size: medium"><strong><br /></strong></span></div><span style="font-size: medium"><br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Tue, 16 Sep 2008 02:48:55 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ<br /><br />ຄອມ ຂພຈ ມີບັນຫາ ເລື່ອງ driver ບໍ່ຖືກຕ້ອງເພາະ ຂ້າເຊັກເບິ່ງແລ້ວໃ<br /></span><span style="font-size: x-small">driver Verifier Manager<br />The list of unsigned drivers chosen to be verified:<br /><span style="color: #ff0000">Name                         Description<br /></span>amdk8.sys                   AMD Processor Driver<br />klif.sys                       spuper-ptor<br />secdrv.sys                  Macrovision SECURITY Driver<br />syslib.sys                    &lt;unknown><br />tcpip.sys                    TCT/IP Protocol Driver<br />usbport.sys                 USB 1.1 &amp; 2.0 Port Driver<br /><br /></span><span style="font-size: small">ຢາກໃຫ້ທ່ານ ຊອກຫາໃຫ້ແດ່ ຫຼືບອກ website ກໍ່ໄດ້<br /><br />ຂໍຂອບໃຈເປັນຢ່າງສູງ</span>]]></description>
<author>vong2009&lt;johnmgmc@nospam.com&gt;</author>
<pubDate>Wed, 17 Sep 2008 08:26:33 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[Hi<br />I'm using Lao dictionary professional v.20<br />I can type english only<br />how can I type in Lao?]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Wed, 17 Sep 2008 09:03:23 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ</span><br /><span style="font-size: small">ຄອມ ຂພຈ ມີບັນຫາ ເລື່ອງ driver ບໍ່ຖືກຕ້ອງເພາະ ຂ້າເຊັກເບິ່ງແລ້ວໃນ<br /><span style="color: #0000ff"> driver Verifier Manager<br />The list of unsigned drivers chosen to be verified:<br /></span><span style="color: #ff0000">Name           Description<br /></span>amdk8.sys    AMD Processor Driver<br />klif.sys         spuper-ptor<br />secdrv.sys    Macrovision SECURITY Driver syslib.sys tcpip.sys      TCT/IP Protocol Driver<br />usbport.sys   USB 1.1 &amp; 2.0 Port Driver<br /> ຢາກໃຫ້ທ່ານ ຊອກຫາໃຫ້ແດ່ ຫຼືບອກ website ກໍ່ໄດ້ ຄອມ notebook ຍີ່ຫໍ້ HP pavilion zv5000,cpuຍີ່ຫໍ້ AMD Athlon<br />ຂໍຂອບໃຈເປັນຢ່າງສູງ</span>]]></description>
<author>vong2009&lt;johnmgmc@nospam.com&gt;</author>
<pubDate>Wed, 17 Sep 2008 11:36:11 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ ທີ່ເຄົາລົບ<br /><br />ຂພຈ ມີເລື່ອງ ຂໍລົບກວນທ່ານແດ່ ຄືວ່າ notebook ຂອງ ຂພຈ ຟ້ອງຕອນເປີດເຄື່ອງໃຫມ່ ວ່າຕິດຕັ້ງ find new hardware ເພາະຂາດ driver ຕົວຫນື່ງຄື<br />ໃນກຸ່ມຂອງ device Manager ໃນຫມວດ + system Device<br />                                           ->    Base system deviceທີ່ຟ້ອງເປັນສີເຫຼືອງ ຂໍໃຫ້ທ່ານ ອາເລັກໄຊ ຊວ່ຍຊອກໃຫ້ແດ່ Link ໄປ download ເລີຍ ເພາະບໍ່ຮູ້ຊອກ<br /><br />ຂໍຂອບໃຈເປັນຢ່າງສູງ<br /><br /></span>]]></description>
<author>vong2009&lt;johnmgmc@nospam.com&gt;</author>
<pubDate>Thu, 18 Sep 2008 05:59:26 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><span style="font-size: small">ຫລັງຈາກທີຂ້ອຍຕິດຕັ້ງ Laoscript v7.03 ແລ້ວຈະມີ small pop up windows ຂື້ນມາຂຽນວ່າ Laoscript for windows ແລະ ມັນກໍ່ບໍ່ຫາຍໄປ ຈັກເທື່ອ ມັນຄ້າງຢູ່ຫັ້ນຕະຫລອດ ເຣັດໃຫ້ພາສາລາວບໍ່ເຣັດວຽກ<br />ຂ້ອຍຄວນຈະແກ້ແນວໃດ?<br /><br /></span><br /></span>]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Thu, 18 Sep 2008 06:04:02 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ<br />ຫລັງຈາກທີຂ້ອຍ installed laoscript v 7.03<br />ແລ້ວ program dictionary lao ບໍໍ່ເຣັດວຽກມັນຈະຟ້ອງຢູ່ຕະຫລອດ ເວລາວ່າ Cannot lacate program files! reinstall lao script for windows ຂ້ອຍກໍ່ຕິດຕັ້ງໃໝ່ແລ້ວກໍ່ເປັນຄືເກົ່າ<br />ຄວນຈະເຣັດແນວໃດ? please help?<br /></span>]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Thu, 18 Sep 2008 11:07:39 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">The Laoscript for windows v 7.03 that you gave me not working on windows vista<br />even I copy the Laokey.exe to the laoscript folder in programs file<br />when i turn the laoscript on it keep asking<br />C:&#092;Programe files&#092;LsWin7&#092;Laokey.exe<br />A referral was returned from the server<br />can you help me please?<br /></span>]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Thu, 18 Sep 2008 11:59:44 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ<br /><br />ຂ້າພະເຈົ້າໄດ້ ຊື້ key ປົດລ໋ອກນຳ ທ່ານ ເກດ ແລະ ໄດ້ນຳໃຊ້ແລ້ວ<br />ຢາກຖາມວ່າ ເວລາທີ່ ຂພຈ ລົງwindows ໃຫມ່ keyມັນຈະຫາຍໄປ<br />ຕ້ອງໄດ້ເອົາ key ໃຫມ່ບໍໍ? ແຕ່ ທ່ານ ເກດໄດ້ ຈົດ key user ແລະ ຕົວປົດລ໋ອກໄວ້ໃຫ້ ຂພຈ ສາມາດເອົາຕົວເກົ່າມາໃຊ້ໄດ້ອີກບໍ່ ແລະ ເວລາ setup<br />ມັນຈະປ່ຽນ user ບໍ່<br /><br />ຂອບໃຈ</span>]]></description>
<author>vong2009&lt;johnmgmc@nospam.com&gt;</author>
<pubDate>Fri, 19 Sep 2008 07:52:36 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຄຶວ່າ:ຂ້າພະເຈົ້າຢາກໃຫ້ທ່ານຊ່ວຍແນນນຳການຈັດລຽນສາຍແລນ<br />ແລະ ຢູ່ເຮືອນມີຄອມ 2ໜ່ວຍ ຂ້າພະເຈົ້າໄດຊື້ສາຍເລນມາ ແລະ ຫົວຂອງມັນ,ເຄື່ອງນີບພ້ອມ ແລ້ວຂ້ອຍບໍ່ເຂົ້າໃຈກ່ຽວກັບການຈັດລຽນ<br />ແຕ່ລະສີ<br />-ຢາກໃຫ້ຊ່ວຍຕໍ່ແບບ2ໜ່ວຍໂດຍບໍ່ມີເຄື່ອງຮັບ ເຮົາຊີ້ຈັດສີແຕ່ສີໃດຫາສີໃດ<br />-ແລະ ຕໍ່ແບບມີເຄື່ອງຮັບ ເຮົາຊີ້ລຽນແຕ່ສີໃດຫາສີໃດ<br />  ບອກແຕ່ລະສົນເດີທ່ານ<br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Mon, 22 Sep 2008 03:07:40 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ອາເລັກໄຊ<br />ຂ້າພະເຈົ້າ ໄດ້ຊື້ <span style="font-size: small; font-family: Calibri">Licens ລາວແອນຕີ້ມາໃຊ້ ເຄື່ອງມີບັນຫາເລື່ອງ file window ໄດ້<br /></span><span style="font-family: Calibri">ລົງ window ໃຫມ່ ກໍ່ໄປເອົາ<span style="font-size: small">Licens ລາວແອນຕີ້ມາເປັນຄັ້ງທີ <span style="color: #ffcc00">ສອງແລ້ວ</span> ແຕ່ວ່າຍັງທັນເຖິງ 3 ເດືອນ ໃນຊວ່ງຣັບປະກັນ.ຖ້າຫາກວ່າ ຂພຈ ຈະລົງວິນໂດອີກ ຈະສາມາດໃຊ້ Licens ລາວແອນຕີ້ ໄດ້ອີກບໍ? ຫຼືຕ້ອງໄດ້ຊື້ໃຫມ່ <span style="color: #ffcc00">ຫຼືນຳໃຊ້ key ເກົ່າໄດ້ບໍ່</span><br />ເຫດຜົນທີ່ລົງ window ໃຫມ່ spec ເຄື່ອງຕໍ່າ<br /><br />ຂໍຂອບໃຈ</span></span></span>]]></description>
<author>vong2009&lt;johnmgmc@nospam.com&gt;</author>
<pubDate>Mon, 22 Sep 2008 05:38:51 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ<br />ຫລັງຈາກທີຂ້ອຍ installed laoscript v 7.03<br />ແລ້ວ program dictionary lao ບໍໍ່ເຣັດວຽກມັນຈະຟ້ອງຢູ່ຕະຫລອດ ເວລາວ່າ Cannot lacate program files! reinstall lao script for windows<br />ຂ້ອຍໄດ້ຕັ້ງໃໝ່ທັງ Laoscript and Lao dictionary</span><span style="font-size: medium">ແລ້ວກໍ່ເປັນຄືເກົ່າ</span><br /><span style="font-size: medium">ສຳລັບ laoscript ນັ້ນມັນເຣັດວຽກດີກັບ Microsoft winword<br /><br />ຄວນຈະເຣັດແນວໃດ? please help?</span>]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Mon, 22 Sep 2008 08:56:58 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">- ຂ້າພະເຈົ້າຢາກໃຫ້ທ່ານ ສ້າງໂປຮແກຮມ Lao Anti-Virus ໃຫ້ມັນສາ<br />ມາດລົງໃນໂທລະສັບໄດ້<br />- ແລະ ຂ້ອຍຕ້ອງການ ໂປຮແກຮມ ຄົ້ນຫາໄດເວີ ວ່າອຸປະກອນຄອມຊື່<br />ຫຍັງ,ລຸ້ນ<br />ຂ້າພະເຈົ້າມີ Modem ຕົວໜຶ່ງ ແລ້ວບໍ່ຮູ້ວ່າແມ່ນຍີ່ຫຍໍ້ໃດ,ເວີຊັນ<br />ເພາະຕ້ອງການໄດເວີຂອງມັນ<br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Tue, 23 Sep 2008 23:56:32 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ<br />ຂ້ອຍມີເລື່ອງກ່ຽວກັບ FileMaker Pro ມາຖາມ<br /></span><img src="file:///C:/DOCUME%7E1/Lin.VIS/Local%20Settings/Temp/moz-screenshot.jpg" /><img src="file:///C:/DOCUME%7E1/Lin.VIS/Local%20Settings/Temp/moz-screenshot-1.jpg" /><span style="font-size: small">ເວລາຂ້ອຍເປີດ File/Open remote ມັນບໍ່ສາມາດເປີດໄດ້<br />ມັນຈະມີ popup windows ຂື້ນມາວ່າ FileMaker cannot share or be a client of a file because the networking stack could not be intialized.<br />ບໍ່ຣູ້ວ່າຈະເຣັດເວໃດ?<br /></span>]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Mon, 22 Sep 2008 09:11:38 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ ທີ່ນັບຖື<br />ຂ້າພະເຈົ້າ ຢາກຮູ້ຂໍ້ມູນກ່ຽວກັບ windows truefaster(wtf)<br />1. wtf ແມ່ນລູ້ນໃດ ຖັດຈາກwindow xp 2008 ບໍ່?ຫຼືລູ້ນພິເສດ?<br />2. wtf ສາມາດເປີດ window updateໄດ້ບໍ?ຖ້າ update ມັນຊິບໍເກີດwindow genuineບໍ່ ?(windowເຖື່ອນ)<br />3. wtf ມີຂໍ້ບົກຜ່ອງບໍ່? ເຊັ່ນວ່າ ລົງ software ບາງຕົວບໍ່ໄດ້<br />4. wtf ລົງກັບເຄື່ອງລຸ້ນເກົ່າໄດ້ບໍ່ ສະເປກຕໍ່າ CPU700MHz,Ram128<br />5 .wtf  ຈຸດເດ່ນຂອງມັນແມ່ນຫຍັງ? (ຄວາມສາມາດທີ່ເປັນເອກະລັກ) ໄວບໍ່ ?<br /><br />ຂໍຂອບໃຈ ເປັນຢ່າງສູງ<br /><br /></span>]]></description>
<author>sook&lt;john3up@nospam.com&gt;</author>
<pubDate>Fri, 10 Oct 2008 06:00:41 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຄຶວ່າ: Notebook ຂອງຂ້າພະເຈົ້າເມື່ອເວລາເປີດຂຶ້ນມາ ແລ້ວ CPU<br />ມັນເຮັດວຽກຮອດ 50%-60% ແລ້ວເຮັດເຄື່ອງຊ້າ.ຖ້າປົກກະຕິມັນຈະພຽງແຕ່<br />3%-6% ເທົ່ານັ້ນ.ລຸ້ນ Toshiba Satellite M300<br /><br /></span><span style="font-size: large"><strong><div align="center"><span style="font-size: large"><strong>ຊ່ວຍຂ້າພະເຈົ້າແດ່ທ່ານ<br />                     ດ້ວຍເຄົາລົບນັບຖື</strong></span></div></strong></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Wed, 15 Oct 2008 02:09:07 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ ທີ່ນັບຖື<br /><br />ຂ້າພະເຈົ້າ ມີເລື່ອງຂໍລົບກວນ ທ່ານ ຄືວ່າ com ຂອງ ຂພຈ ຊອກຫາ system information ບໍ່ເຫັນ ໃນຊ່ອງ c ເປີດ show all ແລ້ວກໍ່ຍັງບໍ່ເຫັນ ບໍ່ຮູ້ວ່າມັນຕັ້ງບໍ່ມີບໍ່ ? ຂພຈ ໃຊ້ window xp 2007 v.5<br />ພົບແຕ່ system restore ສ່ວນ system information ບໍ່ເຫັນ<br />ຂໍໃຫ້ທ່ານ ຊ່ວຍແດ່<br /><br />ຂໍຂອບໃຈ ເປັນຢ່າງສູງ</span>]]></description>
<author>vong2009&lt;johnmgmc@nospam.com&gt;</author>
<pubDate>Thu, 16 Oct 2008 06:09:17 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຂ້າພະເຈົ້າຕ້ອງການ Driver VGA ຂອງ Notebook ລຸ້ນ<br /><strong>Toshiba Satellite M300<br /><br />ຊ່ວຍຊອກໃຫ້ແດ່ທ່ານ ຂອບໃຈລ່ວງຫນ້າຫລາຍ</strong></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Thu, 23 Oct 2008 01:15:08 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium"><div align="center"><span style="font-size: medium"></span></div>ຄຶວ່າ:ຂ້າພະເຈົ້າຕ້ອງການໂປຮແກຮມ ລຶບຂໍ້ມູນທິ່ຕໍ່ແລນກັນຫລາຍໜ່ວຍ<br /><u>ຕົວຢ່າງ</u>:ທີ່ເຮືອນຂ້າພະເຈົ້າມີຄອມ 10ໜ່ວຍແລ້ວແຊ່ຮໃສ່ກັນໜົດທຸກໜ່ວຍ<br />ໜ່ວຍທີ່1 ເປັນໜ່ວຍແມ່ ແລະຂ້າພະເຈົ້າຫລີ້ນໜ່ວຍທີ່ 10 ແລ້ວເຫັນຂໍ້ມູນ ຫຼຶ<br />ເອກະສານ ທີ່ໜ່ວຍທີ1 ແລ້ວຍາກລຶບຂໍ້ມູນໜ່ວຍທີ 1 ຖິ້ມບາງອັນ<br />ແຕ່ໜ່ວຍທີ1 ມີການປ້ອງບໍ່ໃຫ້ລຶບຫຍັງ? ມີແຕ່ Copy ໄດ້ ແຕ່ບໍ່ສາມາດລຶບໄດ້<br /><strong><div align="left"><strong>ຢາກໃຫ້ທ່ານຊ່ວຍຊອກໂປຮແກຮມໃດທີ່ມັນສາມາດລຶບໄດ້<br />-ອີກບັນຫາໜຶ່ງຂ້າພະເຈົ້າຫລິ້ນໜ່ວຍທີ່10 ແລ້ວຢາກໃຫ້ໜ່ວຍທີ່ 1<br />Restart,Ture off,Stand by ເຮັດຈັງໃດທ່ານຊ່ວຍບອກແດ່.</strong></div></strong></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Thu, 23 Oct 2008 01:26:27 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ ທີ່ນັບຖື<br /><br />ຂ້າພະເຈົ້າໄດ້ລົງ window ໃຫມ່ ແຕ່ບໍ່ເຫັນ driver Audio ບໍ່ຮູ້ຊິຊອກແນວໃດ ? com ກໍເປັນເຄື່ອງປະກອບ ບໍ່ຮູ້ ຍີ່ຫໍ້ອີກ<br />ຂໍຄຳແນະນຳຈາກທ່ານ (ແຜ່ນ CD ທີ່ແຖມມານຳກໍ່ບໍມີ Driver)<br />ຂໍຂອບໃຈ<br /><br /></span>]]></description>
<author>sook&lt;john3up@nospam.com&gt;</author>
<pubDate>Thu, 30 Oct 2008 05:19:33 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຢາກເອົາ ເມວ ຈາກຄອມໜື່ງມາໃສ່ອີກຄອມໜື່ງເຮັດແນວໃດຊວ່ຍບອກເທັກນິກແດ່]]></description>
<author>ti007&lt;noauthor@nospam.com&gt;</author>
<pubDate>Fri, 31 Oct 2008 10:28:56 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຄຶວ່າ:ຂ້າພະເຈົ້າຕ້ອງການໂປຮແກຮມແຕກຟາຍຕິດຕັ້ງໂປຮແກຮມ<br />ຕົວຢ່າງ:ໂປຮແກຮມ Anti-Virus kaspersky<br />ແລ້ວຕ້ອງການແຕກຟາຍໂຕຕິດຕັ້ງຫັນລະ ແລະ ເມື່ອແຕກອອກມາແລ້ວ<br />ຢາກເຫັນທຸກຟາຍເລີຍນັບທັງໄອຄ້ອນ,ແລະຮູບພາບຕ່າງໆຂອງໂປຮແກຮມ<br />-ໜາຍເຫດ:ເມື່ອແຕກອອກມາແລ້ວຢາກໃຫ້ມັນກັບມາເປັນຟາຍຕິດຕັ້ງ<br />ແບບປົກກະຕິ.<br /></span><div align="center"><strong><span style="font-size: medium">ຊ່ວຍຊອກໃຫ້ແດ່ທ່ານ (Thank you)</span></strong><br /></div>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sun, 02 Nov 2008 01:08:23 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ ທີ່ນັບຖື<br />ຂ້າພະເຈົ້າ ໄດ້ upload file unlocker 1.8.7 ທີ່ຟ້ອງວ່າເປັນ Trojan<br />ຢາກໃຫ້ ທ່ານ check ວ່າທີ່ ຈະນຳ file ດັ່ງກ່າວມາຕິດຕັ້ງ ໃນເຄື່ອງໄດ້ບໍ່ ?<br />ຖ້າໃຊ້ laoav ຂ້າ ກໍ່ບໍ່ສາມາດນຳໃຊ້ file ດັ່ງກ່າວໄດ້ ແລະ ເຣັດແນວໃດ<br />ຈິ່ງຈະໄດ້ ຕິດຕັ້ງ file unlocker ລົງເຄື່ອງໄດ້ ເພາະມັນຖືກລຶບຕະຫຼອດ<br />ຂໍຂອບໃຈ<br /></span>]]></description>
<author>sook&lt;john3up@nospam.com&gt;</author>
<pubDate>Tue, 04 Nov 2008 04:55:31 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຊ່ວຍຊອກໃຫ້ແດ່ທ່ານ.<br /><br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Tue, 04 Nov 2008 12:27:56 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: large">ຊ່ວຍຊອກໃຫ້ແດ່ທ່ານເອົາ Crack ພ້ອມເດີທ່ານ</span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Tue, 04 Nov 2008 13:48:01 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><em><u><span style="font-size: x-large">ຂອບໃຈລວງຫນ້າ</span></u></em><br /></div>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Tue, 04 Nov 2008 14:29:27 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຄອມຂອງ ຂ້າພະເຈົ້າ ເວລາເປີດເຄື່ອງໃໝ່ທຸກເທື່ອ ວັນທີ ຈະເລີ່ມວັນທີ 1 ເດືອນ 1 ປີ 2003 ແລະ ເວລາຈະເລີ່ມທີ 00ຊົ່ວໂມງ ທຸກເທື່ອ ຂພຈ ລອງປ່ຽນແບັດເຕີລີໃໝ່ແລ້ວ ແຕ່ກໍ່ຍັງເປັນຄືເກົ່າ ຂໍຄວາມຊ່ວຍເຫຼືອຈາກທ່ານອາເລັກໄຊແດ່ ຂໍຂອບໃຈ.</span>]]></description>
<author>Mr_seuth&lt;seuth83@nospam.com&gt;</author>
<pubDate>Wed, 05 Nov 2008 16:05:01 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ ທີ່ນັບຖື<br />ຂ້າພະເຈົ້າ ຢາກຮູ້ວ່າLaoav ທີ່ປັບປຸງ ໃນວັນທີ 4 ຕຸລາ ມີຫຍັງເພີ້ມເຕີມແນ່<br />ເພາະວ່າ ຂພຈ ຊື້ License ນຳ ແມ່ນປັບປຸງ <u>ໃນວັນທີ 8 ສິງຫາ </u>ຖ້າວ່າ ຂພຈ ຢາກ update program ໄດ້ບໍ ຫາກວ່າຕິດຕັ້ງຕົວເຂົ້າໄປ key ປົດລ໋ອກຊິລຶບບໍ່ ?<br />ຂໍໃຫ້ທ່ານ ແນະນຳດ້ວຍ<br />ຂໍຂອບໃຈ</span>]]></description>
<author>sook&lt;john3up@nospam.com&gt;</author>
<pubDate>Mon, 10 Nov 2008 07:34:05 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ເມື່ອເປີດຄອມ ແລ້ວ ມັນບູດ ວິນໂດບໍ່ຂື້ນ, ພໍປະໄວ້ຄອມ ກໍ່ປິດເປີດໃຫ່ມເອງມັນກໍ່ບູດ ວິນໂດບໍ່ຂື້ນ ຄືເກົ່າ, ຂພຈ ເລີຍຈັດການລົງວິນໂດໃຫ່ມແຕ່ກະຍັງບູດບໍ່ໄດ້ ຂພຈ ກະບໍ່ຮູ້ເລີຍວ່າເປັນຍ້ອນຫຍັງ? ເພາະໃຊ້ມາດີໆຢູ່ກະມາເປັນຈັ່ງຊີ້ ເປັນຍ້ອນຊອບແວທາງໃນ ຫຼື ເປັນຍ້ອນຮາດແວທາງນອກ ຈຶ່ງຢາກໃຫ້ທຸກທ່ານໃນທີ່ນີ້ ຊ່ວຍໃຫ້ຄຳແນະນຳໃຫ້ແນ່...ຂໍຂອບໃຈ<br /></span><img src="http://www.laoav.net/images/emotes/default/sad.png" style="border: 0px" alt="sad.png" /><span style="font-size: small"><br /></span>]]></description>
<author>Billy_dexd&lt;Billy_dexd@nospam.com&gt;</author>
<pubDate>Wed, 12 Nov 2008 02:04:19 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ ທີ່ນັບຖື<br />ຂພຈ download Program Rocover My file ແລະ ຂພຈ ຢາກໄດ້key ຂອງມັນ ຂໍໃຫ້ທ່ານ ຊ່ວຍຫາໃຫ້ແດ່<br />ຂໍຂອບໃຈ ເປັນຢ່າງຍິ່ງ</span>]]></description>
<author>sook&lt;john3up@nospam.com&gt;</author>
<pubDate>Thu, 13 Nov 2008 09:14:35 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຢາກທ່ານຊອກໃຫ້ແດ່ທ່ານ ເອົາຟາຍ PDFເດີທ່ານ ແລະ ກ່ຽວກັບຖານຂໍ້<br />ມູນ ໂດຍໃຊ້ໂປຮແກຮມ Cmd  ເອົາເປັນພາສາໄທເດີ ທ່ານ<br />ດ່ຽວນີ້ ຂ້າພະເຈົ້າກຳລັງສືກສາຢູ່.<br /></span><div align="center"><em><u><strong><span style="font-size: medium">ຂອບໃຈລວງຫນ້າຫຼາຍໆທ່ານ</span></strong></u></em><br /></div>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Thu, 13 Nov 2008 14:56:59 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ<br /><br />ຂ້າພະເຈົ້າໃຊ້ Program ກວດສອບອາຍຸການ ຂອງHDD ແຕ່ມັນໃຫ້ໄຊ້ພຽງ14ວັນເທົ່ານັ້ນ ແລະມັນຊວນໃຫ້ຊື້ຢູ່ຕະຫຼອດ ລຳຄານຫຼາຍ ຂ້າພະເຈົ້າ ຢາກໄດ້ key<br />ຈິ່ງຂໍຄຳແນະນຳຈາກ ທ່ານ<br />ຂໍຂອບໃຈ ເປັນຢ່າງສູງ</span>]]></description>
<author>sook&lt;john3up@nospam.com&gt;</author>
<pubDate>Sat, 15 Nov 2008 07:44:42 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div align="center"><span style="font-size: small">                      **ຂອບໃຈຫຼາຍໆທີ່ໃຫ້ຄວາມສົນໃຈ** </span><br /></div><span style="font-size: small">ເຈົ້າສະບາຍດີທ່ານ, ຂໍຄວາມຊ່ວຍເຫຼືອແດ່ ຂ້າພະເຈົ້າຢາກຮູ້ກ່ຽວກັບ web server</span>. <span style="font-size: small">ພໍດີຂ້າພະເຈົ້າໄປອ່ານປື້ມຫົວໜື່ງມາແຕ່ເຂົາເຈົ້າບໍ່ບອກລະອຽດເລີຍບໍ່ເຂົ້າໃຈ
ກ່ຽວກັບ ເວັບເຊີເວີ ເຮົາມີວິທີເບິ່ງແນວໃດຈື່ງຮູ້ວ່າເວັບເຊີເວີນັ້ນໃຊ້ Apache,PHP,MySQL. ແລະ ບໍ່ຮູ້ວ່າ FTP Server ມັນໝາຍເຖີງຫຍັງ? FTP ມັນເປັນໂປຣແກຣມຫວາ?</span><img src="http://www.laoav.net/images/emotes/default/question.png" style="border: 0px none " alt="question.png" /><br /><span style="font-size: small">                    ທ່ານຜູ້ຮູ້ຊ່ວຍອະທິບາຍແດ່ຢາກເຂົ້າໃຈ       <br />                          **ຂອບໃຈຫຼາຍໆທ່ານ**<br /></span>]]></description>
<author>latthaphone&lt;latthaphone9898527@nospam.com&gt;</author>
<pubDate>Fri, 28 Nov 2008 10:11:11 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີທ່ານ ຂໍຄວາມຊ່ວຍເຫຼືອແດ່ ເນື່ອງຈາກວ່າຂ້າພະເຈົ້າຢາກຮຽນສ້າງເວັບໄຊ໌ ແຕ່ຍັງບໍ່ຮູ້ວິທີສະມັກໂດເມນເທື່ອເລີຍຂໍລົບກວນໃຫ້ທ່ານຊ່ວຍອະທິບາຍ</span> <span style="font-size: small">ແລະ ບອກຂັ້ນຕອນການສະມັກແດ່ໄດ້ບໍ?</span> <span style="font-size: small">ເຊິ່ງວ່າຂ້າພະເຈົ້າຢາກຮູ້ໂຕທີ່ມີໂຄສະນາໃນໜ້າເວບຂອງທ່ານເລີຍ (http://www.co.cc)</span><br /><span style="font-size: small">                      *****ຂອບໃຈຫຼາຍໆ*****</span>]]></description>
<author>latthaphone&lt;latthaphone9898527@nospam.com&gt;</author>
<pubDate>Mon, 01 Dec 2008 05:21:07 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span class="text" style="font-family: MS Sans Serif; color: #000099"><strong>ຕ້ອງການ Diver ມັນເປັນສະແປ່ຄອມຂ້າພະເຈົ້າເດີທ່ານ<br />- VGA<br />-Video controller<br /><br />Note Book TOSHIBA Satellite M300-A403T</strong></span> <ul><li><span style="font-size: xx-small"><span style="font-family: MS Sans Serif"><strong>Type : Satellite M300-A403T</strong></span></span> </li><li><span style="font-size: xx-small"><span style="font-family: MS Sans Serif,Tahoma,sans-serif"><strong>CPU :</strong> Intel Pentium Core2 Duo T5850   <div align="left"> <div align="left">2.16GHz,  2 MB L2 Cache, 667 MHz FSB </div></div></span></span></li><li><span style="font-size: xx-small"><span style="font-family: MS Sans Serif,Tahoma,sans-serif"> <div align="left"> <div align="left"><span style="font-size: xx-small"><span style="font-family: MS Sans Serif,Tahoma,sans-serif"><strong>Chipset :</strong>  Express Chipset </span></span></div></div></span></span></li><li><span style="font-size: xx-small"><span style="font-family: MS Sans Serif,Tahoma,sans-serif"><strong>Memory :</strong> 1024MB DDR2-667 </span></span></li><li><span style="font-size: xx-small"><span style="font-family: MS Sans Serif,Tahoma,sans-serif"><strong>Display :</strong> 14.1inch TFT wide display  <u>Built-in Webcam</u></span></span> </li><li><span style="font-size: xx-small"><span style="font-family: MS Sans Serif,Tahoma,sans-serif"><strong>Graphic :</strong> Intel X3100 Share</span></span> </li><li><span style="font-size: xx-small"><span style="font-family: MS Sans Serif,Tahoma,sans-serif"><strong>Hard Drive :</strong> 200 GB.</span></span> </li><li><span style="font-size: xx-small"><span style="font-family: MS Sans Serif,Tahoma,sans-serif"><strong>Optical Drive :</strong> DVD Super Multi Recorder  </span></span></li><li><span style="font-size: xx-small"><span style="font-family: MS Sans Serif,Tahoma,sans-serif"><strong>Modem :</strong> 56 K </span></span></li><li><span style="font-size: x-small; font-family: Times New Roman">Bluetooth</span> </li><li><span style="font-size: xx-small"><span style="font-family: MS Sans Serif,Tahoma,sans-serif"><strong>Audio </strong> : 82801H (ICH8 Family ) HD Audio Controller  </span></span></li><li><span style="font-size: xx-small"><span style="font-family: MS Sans Serif,Tahoma,sans-serif"><strong>Network :</strong> Integrated 10/100/1000 Gigabit Ethernet </span></span></li><li><span style="font-size: xx-small"><span style="font-family: MS Sans Serif,Tahoma,sans-serif"><strong>wireless :</strong> Broadcom 802.11bg wireless </span></span></li><li><span style="font-size: xx-small"><span style="font-family: MS Sans Serif,Tahoma,sans-serif"><strong>I/O Port :</strong> VGA Out </span></span></li><li><span style="font-size: xx-small"><span style="font-family: MS Sans Serif,Tahoma,sans-serif"><strong>Option :</strong> Four-in-one multicard reader with Secure Digital, MultiMedia and Memory Stick cards , Express Port</span></span></li></ul>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Mon, 15 Dec 2008 14:36:30 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຫລັງຈາກຕິດຕັ້ງ internet explorer 8 beta ແລ້ວຊ້ຳອ່ານພາສາລາວບໍ່ໄດ້ ໄຜມີວິທີແກ້ໄຂຊ່ວຍແດ່ sumlane@yahoo.com or 0202565595<br /></span>]]></description>
<author>sumlane&lt;sumlane@nospam.com&gt;</author>
<pubDate>Thu, 18 Dec 2008 02:32:07 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: large">ສະບາຍດີທ່ານ A.L.</span><span style="font-size: large">X ຄືວ່າຂ້າພະເຈົ້າໄປສະໝັກ</span><a href="banner.php?5" rel="external" rel="external"><img src="http://www.laoav.net/images/banners/Freehost.gif" style="border: 0pt none " alt="http://www.000webhost.com/64952.html" /></a> <span style="font-size: large">ເເຕ່ບໍ່ຮູ້ວ່າມັນ Upload ແນວໃດ ??<br />ໍຊ່ວຍບອກວິທີ Upload ໃຫ້ຂ້າພະເຈົ້່່າແດ່<br />  ຮຽນມາດ້ວຍຄວາມນັບຖື<br /></span>]]></description>
<author>Love Never End&lt;xarhang@nospam.com&gt;</author>
<pubDate>Sun, 21 Dec 2008 03:28:27 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[່<span style="font-size: medium"><strong>່              ສາທາລະນະລັັດ ປະຊາທິປະໄຕ ປະຊາຊົນລາວ<br /> ສັນຕິພາບ ເອກະລາດ ປະຊາທິປະໄຕ ເອກະພາບ ວັດທະນາຖາວອນ<br />                       ****000****<br />  ສະບາຍດີທ່ານ A.L.X  ທ່ານຊ່ວຍແກ້ໄຂໃຫ້ແດ່ວ່າເປັນຫຍັງ USB<br />ຂອງຂ້ານ້ອຍກາຍເປັນ File FILE.CHK ຫມົດເລີຍ ??<br />  ກ່ອນທີ່ມັນຈະກາຍເປັນ </strong></span><span style="font-size: medium"><strong>File ດັ່ງກ່າວຂ້ານ້ອຍໄດ້ໄປປົດບ່ອນວ່າ Hidden ອອກແຕ່ມັນອອກຫຍັງກໍບໍ່ຮູ້ຂ້ານ້ອຍ click ok(ລືມອ່ານ​)<br />ແລ້ວມັນກໍກາຍເປັນ </strong></span><span style="font-size: medium"><strong>File </strong></span><span style="font-size: medium"><strong>FILE.CHK  ຫມົດເລີຍເຮັດແນວໃດກໍບໍ່<br />ໄດ້............. ຂໍຄວາມຊ່ວຍເຫລືອແດ່ທ່ານ (ຂອບໃຈຢ່າງສູງ)</strong></span><span style="font-size: medium"><strong> </strong></span>]]></description>
<author>Love Never End&lt;xarhang@nospam.com&gt;</author>
<pubDate>Tue, 06 Jan 2009 09:51:45 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ ທີ່ເຄົາລົບ<br />ຂ້າພະເຈົ້າພົບ ໄວຮັສ c:&#092;Recycler&#092;lsass.exe ຂ້າຈັ່ງໃດກໍ່ບໍ່ໄດ້<br />ມັນສ້າງຄວາມລຳຄານ ໃຊ້ Laoav ກໍ່ບໍ່ໄດ້ ຂໍໃຫ້ທ່ານ ແນະນຳວິທີ ຫຼືຊອກຕົວ Remove ໃຫ້ແດ່ ພ້ອມກັນນີ້ file lsass.exe ຂ້າພະເຈົ້າໄດ້ ບີບໃສ່ Winrar ສົ່ງທ່ານກວດສອບຫາວິທີແກ້ໄຂໃຫ້<br />ຂໍຂອບໃຈ</span>]]></description>
<author>sook&lt;john3up@nospam.com&gt;</author>
<pubDate>Tue, 13 Jan 2009 03:30:01 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ ທີ່ນັບຖື<br />ຂ້າພະເຈົ້າ ໄດ້ນຳໃຊ້ Laoav Explorer 2.0 ກວດຫາໄວຮັສ ແລະ ກໍ່ພົບ ໃນ Drive C:&#092;Recyler&#092;lsass.exe ແລະ ຂພຈ click ຂວາ delete ມັນຄືບໍ່ໃຫ້ delete ແຕ່ມາເບິ່ງMy computer&#092;C: ກໍບໍ່ເຫັນ ນອກຈາກເບິ່ງໃນ Laoav Explorer 2.0ແລ້ວ ເບິ່ງບ່ອນອື່ນກໍ່ບໍ່ເຫັນvirus<br />ຢາກຮູ້ວ່າ ຂພຈ ໃຊ້ເຄື່ອງມື ຖືກ ຫຼື ບໍ່ ຂໍຄຳແນະນຳດ້ວຍ<br />ຂໍຂອບໃຈ ເປັນຢ່າງສູງ</span>]]></description>
<author>sook&lt;john3up@nospam.com&gt;</author>
<pubDate>Wed, 14 Jan 2009 03:11:00 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ທ່ານເອີ້ຍ ຊ່ວຍແນ່<br /><br />ຄືວ່າບັນດາ folder ຂອງຂ້າພະເຈົ້ານະ ພາກັນໄປ .exe ກັນທົ່ວຫນ້າ ແລະ ກໍ່ສະແດງເນື້ອທີ່ ເປັນ 44kb ຫມົດທຸກອັນເລີຍ<br /><br />ແລະ ຢູ່ທີ່ task manager ກໍ່ມີແຕ່ຄຳວ່າ Zita ເຕັມໄປຫມົດ ມັນເຮັດໃຫ້ເຄື່ອງຊ້າລົງ<br /><br />ຈັກເປັນນຳຫຍັງ ໄວລັດໂຕໃດ ກະບໍ່ຮຸ້<br /><br />ຊ່ວຍແນ່ທ້ອນທ່ານ<br /><br />ຂອບໃຈ]]></description>
<author>esl&lt;khong856@nospam.com&gt;</author>
<pubDate>Sat, 17 Jan 2009 18:03:39 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຄຶວ່າ: Notebook ຂ້າພະເຈົ້າໄດແບ່ງ harddisk ອອກເປັນ 4ຊ່ອງ ແລະຊ່ອງC<br />ໄດ້ລົງ Windows XP ຫັຼງຈາກລົງໃຊ້ແລ້ວ ແລະຊ່ອງ D ຂ້າພະເຈົ້າພັດລົງ Windows Vista ແລະ ເວລາເປີດຂຶ້ນມັນກໍວ່າຊິ້ເຂົ້າ windows xp or Vista<br />ແລະກໍໃຊ້ປົກະຕິໜົດ.ແຕ່ເວລາທີ່ Windows XP ມີບັນຫາແລ້ວພະເຈົ້າໄດ້ລົງ Windows Xp ໃຫມ່ ແລະຊ່ອງທີ່ລົງWindows Vista ກໍບໍ່ໄດ້ກວນຫຍັງມັນເລີຍ<br />ຫຼັງຈາກລົງແລ້ວໃນເວລາເປີດມັນພັດບໍ່ຟ້ອງຂຶ້ນມາວ່າຊິ້ເຂົ້າ Windows ຕົວໃດ ແລະມັນເຂົ້າແຕ່ Windows XP ທີ່ລົງໃໜ່,ຂ້ອຍໄດ້ລອງລົງ Windows vista <br />ໃໜ່ພັດໄດ້ມັນກໍຂຶ້ນມາແບບເກົ່າ.ບັນຫາຂ້າພັດບໍ່ຍາກລົງ windows vista new <br />ບໍ່ຮູ້ວ່າຊິ້ແກ້ໄຂບັນຫາແນວໃດເພື່ອໃຫ້ Windows ເຕືອນໃເວລາເປີດວ່າຊິ້ເຂົ້າ Windows ຕົວໃດ.   <br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Fri, 23 Jan 2009 04:23:26 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຄຶວ່າ: ມັນບໍ່ມີບ່ອນອັດເພັງ MP3 ແລະຂ້າພະເຈົ້າບໍ່ຮູ້ວິທີ<br />ແກ້ແລະຍາກໃຫ້ທ່ານຊ່ວຍບອກວິທີແດ່ທ່ານ ຫຼຶທ່ານມີ<br />Plug in ຕົວໃດມາເສີມ, ຍາກໃຫ້ທ່ານຊ່ວຍຊອກໃຫ້ແດ່.<br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sun, 01 Feb 2009 17:58:35 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<strong>ສະບາຍດີທູກທ່່ານທີເຄົາລົບແລະນັບຖື............... ມີ້ນີ້ເຮັາໄດໄປເວັບໄໍຊແຫ່ງນີ້<a href="http://smsfree4all.com/free-sms-laos.php?number=75698&amp;provider=free+sms+Laos+Laotel+(2056)&amp;message=+hi+nyob+zoo+os+&amp;keystring=K47dC&amp;submit3=Submit&amp;to=&amp;sendto=&amp;sendername=&amp;senderemail=" rel="external" title="FREE SMS TO LAOS">http://smsfree4all.com/free-sms-laos.php?
number=75698&amp;provider=free+sms+Laos+Laotel+(2056)
&amp;message=+hi+nyob+zoo+os+&amp;keystring=K47dC&amp;submit3=Submit&amp;to=&amp;sendto=&amp;s
endername=&amp;senderemail=</a> ຈູດປະສົງກໍຄືມັນໃຊ້ງານແນວໃດ<br />          ຊ່ວຍບອກແດ່........... ຂອບໃຈລ່ວງໜ້າ<br /></strong>]]></description>
<author>Love Never End&lt;xarhang@nospam.com&gt;</author>
<pubDate>Mon, 02 Feb 2009 15:53:00 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ<br />ຂ້າພະເຈົ້າຢາກໄດ້ໂປແກມ Unlocked iPhone 3G ທີບໍ່ເສຍເງິນເອົາໄດ້ຢູ່ໃສ່<br />ຊ່ວຍບອກແດ່<br />ຂອບໃຈ<br /></span>]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Fri, 06 Feb 2009 10:46:15 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຄຶວ່າ: ຂ້າພະເຈົ້າຢາກໃຫ້ທ່ານຊ່ວຍບອກວິທີກວດເບີ່ງ<br /> Virus or Spyware ໃນຄອມພິວເຕີວ່າມັນມີ Virus ບໍ່.<br /></span><div align="center"><strong><span style="font-size: medium">ຊ່ວຍບອກແດ່ທ່ານ</span></strong><br /></div><span style="font-size: medium"><br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sun, 08 Feb 2009 01:57:26 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຂ້າພະເຈົ້າຕ້ອງການບົດຮຽນ ກ່ຽວກັບການສ້າງໂປຮແກຮມຕົວດຽວແລ້ວເອົາໂປຮ<br />ແກຮມ ຫຼາຍໆຕົວມາລວມກັນໃຫ້ເປັນໂປຮແກຮມດຽວຄຶກັບໂປຮແກຮມຂອງທ່ານ<br />ເຊັ່ນ: <strong>"ລວມຕົວກຳຈັກໄວຣັສ ແລະເຄື່ອງມື"</strong> ພ້ອມໂປຮແກຮມສ້າງເດີທ່ານ<strong><br /></strong></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sun, 08 Feb 2009 02:10:19 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ມີທ່ານໃດທີ່ສາມາດຫາຟ້ອນດັ່ງນີ້ໄດ້ເດ່ເນ໋າະ<br />NOSNR60.TTF<br />NSSB60.TTF<br />NSTSB60.TTF<br />ກະລຸນາຊ່ວຍບອກເດ່<br />ຂໍຂອບໃຈ ລ່ວງໜ້າ]]></description>
<author>pickachu&lt;piggy_pick@nospam.com&gt;</author>
<pubDate>Mon, 09 Feb 2009 18:42:14 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ....... </span><span style="font-size: small">  ກ່ອນອື່ນຂໍຂອບໃຈທຸກທ່ານທີ່ຕອບຄຳຖາມຂອງເຮົາ..........</span><img src="http://www.laoav.net/images/emotes/default/biglaugh.png" style="border: 0px" alt="biglaugh.png" /> <span style="font-size: small">ມາເຂົ້າເລື່ອງກັນເລີຍ........ ຂ້ອຍເຫັນເຂົາເຈົ້າມີ programs ເປັນຂອງຕົນເອງເລີຍຢາກຈະສ້າງ programs ໜື່ງເປັນຂອງຕົນເອງແຕ່ບໍຮູ້ວ່າຈະສ້າງດ້ວຍໂປຣແກຣັມສໃດຊ່ວຍບອກແດ່! ແລະສາມາດດາວໂຫຼດໄດ້ ຢູ່ໃສ ແ</span><span style="font-size: small">ລະສຸດທ້າຍກໍຂໍຂອບ</span><span style="font-size: small">ໃຈອິກຄັ້ງທ່ານທີ່ຕອບ</span><span style="font-size: small">ທຸກທ່ານ</span>]]></description>
<author>hlub&lt;hlubkojtshajkuvtxojsias@nospam.com&gt;</author>
<pubDate>Sun, 08 Feb 2009 10:10:00 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີທຸກທ່ານ<br />ເມື່ອເຮົາເອົາ usb ສຽບໃສ່ຄອມແລ້ວຈະເຫັນ Dialog box Autoplay ຂື້ນມາມັນ<br />ອາດງ່າຍທີ່ຂົ້າໃຊ້ ແຕ່ຫາກວ່າຄອມຂອງທ່ານບໍ່ເປັນລັກສະນະແລ້ວສາມາດແກ້ໄຂ<br />ເຮັດຕາມທີ່ຈະແນະນຳຕໍ່ໄປນີ້<br /><br />1. Open your run box (Start | Run) and type<strong> regedit</strong> and click OK.<br />2. Go to HKLM&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;Explorer.<br />3. You should see a key called <strong>NoDriveTypeAutoRun</strong> (see picture below). Double click it and set the Value Data to 91 (hexadecimal).<br />4. Restart your computer and it should be fixed. </span><br /><br /><a href="http://theonegreatx.com/wp-content/uploads/2007/11/regtip.jpg" rel="external"><span style="font-size: small">ຮູບປະກອບ</span></a><br /><img src="http://www.laoav.net/images/emotes/default/idea.png" style="border: 0px none " alt="idea.png" /><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Thu, 12 Feb 2009 16:54:44 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: x-small">1./ ຄອມຂ້າພະເຈົ້າ Icon on Desktop ຢູ່ພຶ້ນຕົວໜັງສືມັນພັດເປັນສີ ຟ້າແລ້ວຕົວໜັງສືສີຂາວ.<br />ຂ້າພະເຈົ້າໄດ້ລ້ອງຄິກຂວາ Arrange Icons By/Lock web Items on Desktop<br />ລ້ອງຄິກໄປຄິກມາກະບໍ່ໄດ້ ແລະຢາກໃຫ້ທ່ານຊ່ວຍບອກວິທີແດ່.<br /><br />2./ ຄອມຂ້າພະເຈົ້າໃນShare ເວລາຂໍ້ມູນບໍ່ວ່າຈະshare folder ກໍຕາມ ໃນເວລາຄິກຂວາຊ່ອງ C ເລືອກ<br />Sharing and security.../ແລ້ວເລືອກຫົວຂໍທີ່ວ່າSharing/ແລ້ວເລືອກ<br />If you understant the risk but still want to share the root of the drive,Click here<br />ແລ້ວຄິກຄຳວ່າ: Share this folder on the Network ແລ້ວຄິກ Apply ແລ້ວມັນຈະຂໍ້ຄວາມຂຶ້ນແບບຂ້າງລາງລຸ່ມນິ້: ແລະ ກໍບໍ່ສາມາດ Share ຫຍັງໄດ້ເລີຍ  <br />An error occurred while trying to share C. The Sever service is not started.<br />The shared resourec was not created at this time</span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Fri, 13 Feb 2009 02:14:22 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານອາເລັກໄຊ ຂ້ອຍໄດ້ເປັນສະມາຊິກເວບນີ້ດົນແລ້ວ ແລະ ກໍ່ໃຊ້ເຄື່ອງມືລີມູບທູນທ່ີທ່ານສ້າງຂື້ນມາໄດ້ຜົນດີຫຼາຍ ແຕ່ຂ້ອຍມີບັນຫາເລື່ອງVirus explorer.exe and secret.exe ເພາະຂ້ອຍໃຊ້ ລີມູບທູນຂອງທ່ານແລ້ວ  ພັດບໍ່ສາມາດເຂົ້າ Window ໄດ້ ຮອດແຕ່ ບອ່ນລອກອິນແລ້ວກໍ່ກັບຄືນຄືເກົ່າ ຂ້ອຍຄວນແກ້ໄຂຫຍັງແນ່ຈິງຊິເຂົ້າວິນໂດ ໄດ້ ຂອບໃຈລວ່ງໜ້າ</span>]]></description>
<author>pixky&lt;ood_laos@nospam.com&gt;</author>
<pubDate>Fri, 13 Feb 2009 04:12:19 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ສະບາຍດີ ທ່ານ A L X ຊ່ວຍບອກວິທີໃຊ້ງານ VB 6 ໃຫ້ແດ່ທ່ານ ຂອບໃຈລ່ວງໜ້າຫຼາຍໆເດີ້ທ່ານ]]></description>
<author>hlub&lt;hlubkojtshajkuvtxojsias@nospam.com&gt;</author>
<pubDate>Sat, 14 Feb 2009 05:34:46 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: xx-large"><strong><em>Happy valentine</em></strong></span>]]></description>
<author>hlub&lt;hlubkojtshajkuvtxojsias@nospam.com&gt;</author>
<pubDate>Sat, 14 Feb 2009 10:55:17 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[Dear,Admin<br />1.I can't write jump menu in lao on dreamwaver.  what is your  suggestion?<br />2. how to block pop up in my webpage]]></description>
<author>fueyching&lt;fueyching@nospam.com&gt;</author>
<pubDate>Thu, 19 Feb 2009 14:14:37 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຕ້ອງການໂປຮແກຮມ Hide user name and password ສະເພາະຄົນທີ່ໃຊ້ການຫລິ້ນ Internet ແບບ Dialup.<br />ແລະ ທ່ານ ອາເລັກໄຊ ຮ້ານ KK computer ແມ່ນຮ້ານຂອງທ່ານເອງບໍ່<br /><br /><br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Fri, 20 Feb 2009 00:15:34 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ช่วยข้อยแด คอมข้อยเวลาสุม port USB แล้วคอมมันค้างตะลอดเลีย นะ]]></description>
<author>aloun_n&lt;aloun_n@nospam.com&gt;</author>
<pubDate>Sun, 22 Feb 2009 06:24:57 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">1.ຄຶວ່າຂ້າພະເຈົ້າເອງໃຊ້Windows Vista Ultimate ແລ້ວໄດ້ໃສ່<br />password ໄວ້ແລ້ວລືມຂ້າພະເຈົ້າບໍ່ຮູ້ວິທີແກ້ຊ່ວຍບອກແດ່<br />2.ຄອມຂ້າພະເຈົ້າໄດ້ແບ່ງອອກເປັນຊ່ອງC,D,E ແລະຂ້າພະເຈົ້າໄດ້ຕິດຕັ້ງ<br />ໂປຮແກຮມ <strong>folderaccess2.1 </strong>ແລ້ວຂ້າເຈົ້າໄດ້ລັອກfolder ຢູ່ໃນຊ່ອງ E<br />ແລ້ວມັນກໍລັອກຳໄດ້ປົກະຕີ ແລະມາມື້ໜື່ງຄອມມີບັນເລີຍລົງ Windows ໃໜ່<br />ຫຼັງລົງແລ້ວຂ້າພະເຂົ້າລືມປົດ Folder ທີ່ຖືກລັອກໄວ້ຫັນແລະໄດ້ຕິດຕັ້ງ<br />ໂປຮແກຮມ <strong>folderaccess2.1 .ໃຫ່ມແລະກໍຫຍັງບໍ່ສາມາດປົດລັອກອອກ<br />ໄດ້ ແລະຢາກໃຫ້ທ່ານ ຊ່ວຍຊອກວີທີແກ້ໄຂ້ໃຫ້ແດ່<br /></strong></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Wed, 25 Feb 2009 01:44:20 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຂ້າພະເຈົ້າໄດ້ສະແກນ USB ເນື່ອງຈາກຕີດໄວລັດFullhouse drive ແລ້ວscan ທີ່ Lao antivirus 2009 ຜົນທີ່ອອກມາກໍ່ຄືຂໍ້ມູນທີ່ມີຢູ່ຖືກລືບຈົນຫມົດ .</span>]]></description>
<author>sonetavanh&lt;sonetavanh@nospam.com&gt;</author>
<pubDate>Thu, 28 Aug 2008 05:26:34 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ເລື່ອງມີຢູ່ວ່າ ເຄື່ອງຄອມ ຂພຈ ມີ Message Box ຂືນມາຝ້ອງຕະຫລອດ ປິດອອກກໍບໍໄດ້ ຂພຈ ຄິດວ່າຕ້ອງແມ່ນຕິດ Virus ແນ່ນອນ ຈາກນັນ ຂພຈ ດາວໂຫລດ ເອົາ Lao AV 2009 ມາສະແກນ ປະກົດວ່າພົບເຫັນ Virus 22 ໂຕສ່ວນຫລາຍຈະຕິດຢູ່ ໃນ File c:&#092;Windows&#092;System32&#092;</span>...... <span style="font-size: small">ເມື່ອ ໂປຣແກຣມທຳການລົບອອກໝົດ 22 File ຈາກນັນ Restart Com ປະກົດວ່າ Com ຂພຈ ລອກອີນເຂົາ windows ບໍໃດ້ ເວລາເຂົາມັນຈະ Reset ເຂົາມາໜ້າຕ່າງ ລອກອີນຄືເກົ່າເປັນຈັ່ງຊີຕະຫລອດ ຂໍໃຫ້ທ່ານຊ່ວຍຊີແນະແດ່ .<br />ຂອບໃຈ.......</span>]]></description>
<author>icesman_007&lt;icesman_007@nospam.com&gt;</author>
<pubDate>Mon, 01 Sep 2008 14:38:34 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຢາກໃຫ້ປັບປຸງ Anti virus 2009 ຄຶວ່າຫຼັງ ອັບເດດ ແລ້ວສ່ວນຫຼາຍມັນມັກກິນຟາຍ<br />ວິນໂດນ ເຊັ່ນ: ຟາຍທີ່ລົງທ້າຍດ້ວຍ .exe ບາງເທື່ອກິນຮອດຟາຍ explorer<br />ຖ້າມັນກິນຟາຍໂຕນີ້ເວລາເປີດຄອມມັນຈະບໍ່ສະແດງ Icon ຕ່າງ ເຫັນແຕ່ພາບໜ້າຈໍ<br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Mon, 08 Sep 2008 02:21:43 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[How can I update from file on Lao AV 2009<br />when I go to the download update file it doesn't show the correct date<br />please help?]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Mon, 15 Sep 2008 10:03:52 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ເລື່ອງມີຢູ່ວ່າ ກ່ອນໜ້ານີ້ ຂພຈ ໃຊ້ laoAV 9.5 ເປັນໂປຣແກຣມທົດລອງໃຊ້ແຕ່ດຽວນີ້ ວັນໝົດອາຍຸ ແລະ ກວດໄວຣັດກໍບໍ່ເຫັນ ຂພຈ ຈຶ່ງລືບຖີ້ມເພື່ອຈະລົງໂຕໄຫມ່ 2009 ແຕ່ເມື່ອລືບຖີ້ມແລ້ວ RST ເຄື່ອງໄຫມ່ແລ້ວ Install Laoav 2009 ສະແກນ ຢູ່ປະມານ 30ນາທີ ສຳເລັດ ພົບໄວຣັດ 15ໂຕ ແລະ ຂພຈ ລືບທັງໝົດຈາກນັ້ນ RST ເຄື່ອງໄຫມ່ປະກົດວ່າເຂົ້າ Windows ບໍ່ໄດ້ມີແຕ່ໜັງສືຂື້ນມາເຕືອນ<br />Windows could not start because the following file is missing or corrupt:<br />&#092;WINDOWS&#092;SYSTEM32&#092;CONFIG&#092;SYSTEM<br /><br />You can attempt to repair this file by starting Windows setup using the original Setup CD-ROM.<br />Select 'r' at the first screen to start repair.<br /></span><span style="font-size: small">ຂພຈ ກໍ່ລອງເອົາແຜ່ນ CD Windows XP ເຂົ້າລອງເບີງຕາມທີ່ມັນບອກແລ້ວກົດ 'r' ແຕ່ກໍ່ຍັງບໍ່ໄດ້ ຂໍລົບກວນທ່ານມີວິທີແກ້ໄຂບໍໂດຍບໍ່ຢາກລົງ WD ໄຫມ່</span><span style="font-size: small">ຂອບໃຈລວງໜ້າທີ່ແວະເຂົ້າມາອ່ານ ແລະຄຳແນະນຳ </span><span style="font-size: small"></span>]]></description>
<author>icesman_007&lt;icesman_007@nospam.com&gt;</author>
<pubDate>Tue, 16 Sep 2008 09:10:06 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຂ້ອຍຕັ້ງ laoav ໃສ່ user A ກໍ່ເຮັດວຽກດີ ແຕ່ຍາມຂ້ອຍ login ເປັນ user B ມັນບໍ່ເຮັດວຽກ, ຂ້ອຍມີ ຫຼາຍໆ</span><span style="font-size: medium">user </span><span style="font-size: medium"> ຢາກໃຫ້ມັນເຮັດວຽກ ໝົດ ຄວນຈະເຮັດແນວໃດ?</span>]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Wed, 01 Oct 2008 09:20:11 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">Program Laoav ບໍ່ເຮັດວຽກນຳ user ອື່ນ<br />ຕົວຢ່າງ: ຂ້ອຍ login ຊື່ວ່າ user A ແລະກໍ່ຕິດຕັ້ງ LaoAV ໃສ່ມັນກໍ່ເຮັດວຽກດີ ແລ້ວຂ້ອຍກໍ່ logoff user A and login ຊື່ວ່າ user B ແຕ່ມັນບໍ່ເຮັດວຽກ,ມັນມີ error message ແລະກໍ່ບໍ່ສາມາດເປີດ Laoav ໄດ້ ເມື່ອຂ້ອຍ logoff user B and login back to user A it working fine ໝາຍຄວາມວ່າ laoav ເຮັດວຽກນຳ ແຕ່ user ທີທຳການຕິດຕັ້ງ laoav ລົງເທົ່ານັ້ນ ສ່ວນ user ອື່ນທີ່ຢູ່ ຄອມດຽວກັນ ມັນບໍ່ເຮັດວຽກ.<br />ຖ້າຂ້ອຍມີ ຫຼາຍໆ</span><span style="font-size: medium">user </span><span style="font-size: medium">ຢູ່ ຄອມດຽວກັນ</span><span style="font-size: medium"> ຢາກໃຫ້ມັນເຮັດວຽກ ໝົດ ຄວນຈະເຮັດແນວໃດ?</span>]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Fri, 03 Oct 2008 09:14:59 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຄອມຂອງຂ້າພະເຈົ້າໄດ້ຖືກໄວລັດບໍ່ຮູ້ຊື່ຫລິ້ນງານເອົາ ເພາະວ່າຂ້າພະເຈົ້າຈະກອບປີຟາຍຫຍັງບໍ່ໄດ້ເລີຍ ແລະເມື່ອເຮົາດາວໂຫລດໂປຮແກມແອນຕິໄວລັດໃຊ້ຢູເອສບີ<br />ແລ້ວໄປກອບປີ້ລົງຄອມມັນກໍ່ບໍ່ໃຫ້ກອບ ຖ້າກອບໄດ້ແຕ່ຕິດຕັ້ງບໍ່ໄດ້ ເວລາຕິດຕັ້ງໄດ້ ແລ້ວແຕ່ເຮົາເປີດ,ປແກມມັນບໍ່ໃຫ້ເປີດແລະ ເຄື່ອງກໍ່ບໍ່ມີຫຍັງຢູ່ຫນ້າຈໍເລີຍ ໄອຕອນກໍ່ຫາຍແລະ ສະຕາດເມນູກໍ່ຫາຍແລະບາງເທື່ອກໍ່ແຮ້ງໄປເລີຍແຕ່ ເຮົາລີ່ສະຕາດເຄື່ອງໃຫມ່ກໍ່ເຫັນຄືເກົ່າແຕ່ເຮົາໃຊ້ງານຫຍັງບໍ່ໄດ້ເລີຍ ລອງລົງວິນ,ດໄປໃຫມ່ແລ້ວ ຫລາຍເທື່ອແຕ່ກໍ່ເປັນຄືເກົ່າເມື່ອເຮົາສຸບ ຢູເອສບີເຂົ້າຈະຕິດຕັ້ງແອນຕິໄວລັດ ທ່ານຜູ້ຮູ້ ຊ່ວບບອກແດ່ ຂໍຂອບໃຈລ່ວງຫນ້າ<br />ຖ້າທ່ານຮູ້ ສ່ວຍສົ່ງເຂົ້າເມວຂ້າພະເຈົ້າກໍ່ໄດ້ jamskone@hotmail.com </span>]]></description>
<author>jamskone&lt;jamskone@nospam.com&gt;</author>
<pubDate>Thu, 23 Oct 2008 14:57:34 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ ທີ່ເຄົາລົບ<br />ຂ້າພະເຈົ້າ ຂໍຖາມບັນຫາເລື່ອງ LAN ຄອມຂອງ ຂພຈ ໃຊ້LAN ຣ່ວມກັນ 5 ຫນວ່ຍ ແລະ ເມື່ອ ເຂົ້າRun ພິມ <a href="file://somsy/">&#092;&#092;somsy</a>... ກໍ່ສາມາດເຂົ້າໄປຫາຫນວ່ຍທີ່ຊື່ ສົມສີໄດ້ ແລະ ຂພຈ ຢາກໃສ່ password ບໍ່ໃຫ້ run ເຂົ້າມາໄດ້ ເພື່ອປ້ອງກັນຂໍ້ມູນຫາຍ<br />ຈິ່ງຢາກຂໍຄຳແນະ ວິທີໃສ່ password ຈາກທ່ານ<br /><br />ຂໍຂອບໃຈ ຢ່າງສູງ</span>]]></description>
<author>sook&lt;john3up@nospam.com&gt;</author>
<pubDate>Fri, 24 Oct 2008 09:09:51 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານອາເລັກ ຂ້າພະເຈົ້າເປັນຜູ້ໜື່ງທີ່ສົນໃຈກ່ຽວກັບເລື່ອງໄອທີ ແຕ່ບໍ່ມີທີ່ປືກສາເລີຍ ຊື່ງໄດ້ພະຍາຍາມສຶກສາການເຮັດວຽກຂອງໄວຣັດ ແລະ ເພື່ອເປັນການສຶກສາ ດັ່ງນັ້ນຈື່ງຂໍຖາມທ່ານແດ່ໄດ້ບໍວ່າເຮົາມີວິທີແນວໃດທີ່ຈະສ້າງໄວຣັດຂື້ນມາ ຫຼື ດັດແປງ code ໄວຣັດ ເຊັ່ນວ່າໄວຣັດ fullhouse, fullhouse drive, flashy.... ຂໍຂອບໃຈລ່ວງໜ້າ</span>]]></description>
<author>latthaphone&lt;latthaphone9898527@nospam.com&gt;</author>
<pubDate>Wed, 12 Nov 2008 11:09:41 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຂອບໃຈຫຼາຍໆທີ່ໃຫ້ຄວາມສົນໃຈ. ເຈົ້າ, ສະບາຍດີທ່ານ ຂອງຄາມຊ່ວຍເຫຼືອແດ່ ເນື່ອງຈາກຄວາມຢາກຮູ້ຢາກສຶກສາຈື່ງມີຄຳຖາມນີ້ຂື້ນມາ ໂດຍທີ່ບໍ່ຮູ້ມາກ່ອນວ່າເຄີຍມີແບບນີ້ມາກ່ອນຫຼືບໍ່ ແລະ ມັນມີວິທີຫຼືບໍ່ ເລື່ອງກໍ່ຄືວ່າ:ຢາກຮູ້ວິທີສ້າງໃຫ້ file ຂໍ້ມູນໄຫຼເຂົ້າ USB ອັດຕະໂນມັດເມື່ອມີການດັບໂບ clik ໃສ່ file ດັ່ງກ່າວໃນຂະນະທີມີການສີບ USB ຢູ່</span><span style="font-size: medium"> ໂດຍພຽງແຕ່ດັບໂບຄລີກກໍ່ເຂົ້າUSBເລີຍ<img src="http://www.laoav.net/images/emotes/default/question.png" style="border: 0px none " alt="question.png" />.        ຂໍຂອບໃຈຫຼາຍທ່ານ(ຄົງບໍ່ວ່າກັນຖ້າການໃຊ້ງານແບບນີ້ບໍ່ມີໃນການໃຊ້ງານwindows) ຂອບໃຈອີກເທື່ອໜື່ງທີ່ໃຫ້ຄວາມສົນໃຈ. </span>]]></description>
<author>latthaphone&lt;latthaphone9898527@nospam.com&gt;</author>
<pubDate>Fri, 21 Nov 2008 07:26:26 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: large">- <span style="font-size: medium">ຂ້າພະເຈົ້າຕ້ອງການບົດຮຽນກ່ຽວກັບການສ້າງ  Crack ຂອງໂປຮແກຮມ<br />   ເອົາເປັນພາສາໄທເດີທ່ານ ເຮັດໃຫ້ໂປຮແກຮມສາມາດໃຊ້ໄດ້ຕະຫຼອດ<br />- ແລະ ຕ້ອງການບົດຮຽນກ່ຽວກັບການ Hack Server<br /></span></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Tue, 25 Nov 2008 13:09:14 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<a href="download.php?view.20">Internet Cafe Master 1.0  </a><br /><span style="font-size: small"><strong>ໃໍຊ້ງານແນວໃດ</strong></span>]]></description>
<author>hlub&lt;hlubkojtshajkuvtxojsias@nospam.com&gt;</author>
<pubDate>Sat, 13 Dec 2008 09:06:00 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><strong>ສະບາຍດີ<br />ມື້ນີ້ຂ້າພະເຈົ້າໄດໄປເບີ່ງເວັບໄຊແຫ່ງນີ້ <a href="http://alx.freewebspace.com/index.htm" rel="external" title="http://alx.freewebspace.com/index.htm">http://alx.freewebspace.com/index.htm </a><br />ເຂົາບອກວ່າເປັນ lao antivirus 2007 ແຕ່ວ່າເມື່ອດາວໂຫຼດມາແລ້ວຕິດຕັ້ງບໍ່<br />ໄດ້ເລີຍ........... ມັນເປັນ virus ຫຼືບໍ່</strong>???<strong><br /></strong></span>]]></description>
<author>hlub&lt;hlubkojtshajkuvtxojsias@nospam.com&gt;</author>
<pubDate>Sat, 13 Dec 2008 09:32:53 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທ່ານ ອາເລັກໄຊ ທີ່ນັບຖື<br />ຂ້າພະເຈົ້າ ໄດ້ download remove Trojan ມາແລ້ວ ແຕ່ວ່າ ອະນຸຍາດໃຫ້ໃຊ້ 30 ວັນ ທ່ານ ພໍມີ key ບໍ່<br />ຂໍຂອບໃຈ ເປັນຢ່າງສູງ</span>]]></description>
<author>sook&lt;john3up@nospam.com&gt;</author>
<pubDate>Tue, 16 Dec 2008 03:27:15 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[My computer have virus my girl i think it maybe new virus<br />please help me. if you know to kill this virus]]></description>
<author>vimoua&lt;vinness3000@nospam.com&gt;</author>
<pubDate>Thu, 22 Jan 2009 02:34:53 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ເປັນຫຍັງຄືວ່່າລາວແອນຕີ້ໄວຣັດສຈື່ງບໍອັບເດດເລີຍໄດ້ 10 ມື້ແລ້ວ]]></description>
<author>Love Never End&lt;xarhang@nospam.com&gt;</author>
<pubDate>Thu, 29 Jan 2009 02:40:56 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ສະບາຍດີ ນີ້ເປັນຄັ້ງທຳອິດຂອງຂ້ອຍ<br />ຄອມພິວເຕີຂອງຂ້ອຍໄດ້ໄປຕິດເອົາ Spyware Protect 2009 ນະຄະນະທີ່ຂ້ອຍ Oline ໂດຍບໍ່ຮູ້ໂຕ<br />ເຊິ່ງມັນສ້າງຄວາມລຳຄານຫຼາຍຖ້າຕິດ Spyware Protect 2009 ເພາະມັນຈະສະແດງ Popup ຕະຫຼອດ<br />ຢາກຮູ້ຈັກວິທີແກ້ໄຂ ແລະປ້ອງກັນ?]]></description>
<author>aibasst&lt;aibasst@nospam.com&gt;</author>
<pubDate>Wed, 11 Feb 2009 11:10:06 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: x-small">Now your anti virus has out of user, so how can i register</span>]]></description>
<author>Kinoi&lt;soukvisays@nospam.com&gt;</author>
<pubDate>Wed, 11 Feb 2009 13:28:40 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີທ່ານ A L X  ຂ້ານ້ອຍຂໍອະນຸຍາດເອົາ lao antivirus ໄປວາງໃນເວັບໄຊຂອງຂ້ານ້ອຍແດ່ເດີ້ ຂອບໃຈລ່ວງໜ້າ<br /> ເວັບຂອງຂ້ານ້ອຍຄື: <a href="http://www.xarhang.co.cc/" rel="external" title="xarhang.co.cc">www.xarhang.co.cc </a><br />                <br /></span>]]></description>
<author>Love Never End&lt;xarhang@nospam.com&gt;</author>
<pubDate>Fri, 13 Feb 2009 16:20:00 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຢາກຮຽນພິເສດ ພັດທະນາເວບໄຊ ໃຊ້ເວລາ ປະມານ 1-2 ເດືອນ<br />ໃຜຮູ້ອາຈານທີ່ເກ່ງໆ ຫຼື ໂຮງຮຽນດີໆ ຊ່ວຍບອກແດ່<br /><br /><a href="mailto:fueyching@hotmail.com">fueyching@hotmail.com</a>]]></description>
<author>fueyching&lt;fueyching@nospam.com&gt;</author>
<pubDate>Wed, 18 Feb 2009 10:05:09 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ສະບາຍດີ ທ່ານ ອາເລັກໄຊ<br /><br />ຂ້າພະເຈົ້າມີແນວລົບກວນທ່ານອີກແລ້ວ<br />ຄືວ່າ ຄອມຂອງຂ້າພະເຈົ້າຢູ່ຊື່ໆກະບໍ່ສາມາດເປີດ properties ໄດ້, ກ່ອນໜ້ານີ້ແມ່ນມີໂຟນເດີ້ທີ່ຍາກລຶບຖິ້ມແຕ່ມັນບໍ່ໃຫ້ລຶບ ກະເລີຍລອງເປີດເບິ່ງ properties ແຕ່ປະກົດວ່າ ບໍ່ສາມາດເຂົ້າຫາ properties ໄດ້. ບໍ່ຮູ້ວ່າທ່ານສາມາດພໍຮູ້ບໍ່ວ່າມັນເປັນຍ້ອນຫຍັງ? ແລະ ທ່ານມີຕົວລີມູບ ທີ່ສາມາດຊ່ວຍຄອມຂອງຂ້າພະເຈົ້າໄດ້ບໍ່ເຍ໋າະ. ຂ້າພະເຈົ້າບໍ່ຍາກເຮັດວິນໂດລີແພນະທ່ານ.<br /><br />ຂໍຂອບໃຈລ່ວງໜ້າ]]></description>
<author>pickachu&lt;piggy_pick@nospam.com&gt;</author>
<pubDate>Thu, 26 Feb 2009 03:27:09 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ເມື່ອຕິດຄອມແລ້ວຈະມີການສ້າງໄຟລ<br />c:&#092;autorun.inf<br />c:&#092;gi2ky.exe<br />%System%&#092;olhrwef.exe<br />%System%&#092;nmdfgds0.dll<br />%System%&#092;nmdfgds2.dll</span><br /><span style="font-size: small">ແລະສ້າງຄ່າໃນ registry<br /></span><ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">cdoosoft = "%System%&#092;olhrwef.exe"</span></li></ul></ul><span style="font-size: small"><br /></span><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Hidden&#092;SHOWALL]</span></li><ul><li><span style="font-size: small">CheckedValue = 0x00000000</span></li></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Sun, 01 Mar 2009 16:36:54 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ເມື່ອຕິດຄອມມັນຈະສ້າງໄຟລ<br />c:&#092;RECYCLER&#092;S-1-5-21-1482476501-1644491937-682003330-1013&#092;Desktop.ini<br />c:&#092;RECYCLER&#092;S-1-5-21-1482476501-1644491937-682003330-1013&#092;svchost.exe </span><br /><span style="font-size: small">ແລະສ້າງຄ່າໃນ Registry<br /></span><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Active Setup&#092;Installed Components&#092;{28ABC5C0-4FCG-11CF-AAX5-81CX5C625612}]</span></li><ul><li><span style="font-size: small">StubPath = "c:&#092;RECYCLER&#092;S-1-5-21-1482476501-1644491937-682003330-
1013&#092;svchost.exe"</span></li></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Sun, 01 Mar 2009 16:45:14 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">Repair Safemode ເປັນໂປຣແກຣມນ້ອຍທີ່ໃຊ້ສຳລັບແກ້ບັນຫາ ການເຂົ້າ Safemode ບໍ່​ໄດ້​ເນືອງ​ຈາກ​ຖືກ​ໄວຣັສ ສະ​ນັ້ນ​ຈີ່​ງສ້າງ​ໂປຣ​ແກຣມນີ້​ມາ​ເພື່ອ<br />ງ່າຍ​ໃນ​ການ​ແກ້​ບັນຫາ​ນີ້<br /><span class="caption">ດາວ​ໂລດ<br />http://laoav.co.cc/download.php?view.64</a><br /></span></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 02 Mar 2009 16:44:36 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຄຶວ່າ:ຂ້າພະເຈົ້າມີບົດຮຽນທີ່ມີຟາຍເປັນນາມສະກຸນ mhc ທີ່ສ້າງດ້ວຍ<br />ໂປຮແກຮມ html workshop ແລ້ວຢາກຮູ້ວ່າຕ້ອງເອົາໂປຮແກຮມໃດ<br />ມາລົງຈຶ່ງຈະສາມາດອ່ານໄດ້.<br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Thu, 05 Mar 2009 16:26:06 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສ້າງໄຟລ<br />c:&#092;RESTORE&#092;S-1-5-21-1482476501-1644491937-682003330-1013&#092;Desktop.ini<br />c:&#092;RESTORE&#092;S-1-5-21-1482476501-1644491937-682003330-1013&#092;Drive13.exe</span><br /><span style="font-size: small">ສ້າງໂພນເດີ<br /></span><ul><li><span style="font-size: small">c:&#092;RESTORE</span></li><li><span style="font-size: small">c:&#092;RESTORE&#092;S-1-5-21-1482476501-1644491937-682003330-1013</span></li></ul><span style="font-size: small">ສ້າງຄ່າໂອໂຕລັນໃນ registry<br /></span><ul><li><span style="font-size: small">The following Registry Key was created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Active Setup&#092;Installed Components&#092;{28ABC5C0-4FCB-11CF-AAX5-21CX1C635622}</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Value is:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Active Setup&#092;Installed Components&#092;{28ABC5C0-4FCB-11CF-AAX5-21CX1C635622}]</span></li><ul><li><span style="font-size: small">StubPath = "c:&#092;RESTORE&#092;S-1-5-21-1482476501-1644491937-682003330-1013&#092;Drive13.exe"
</span></li></ul></ul></ul><span style="font-size: small"><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 09 Mar 2009 18:39:25 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຄືວ່າ ຄອມພິວເຕີຂອງເພື່ອນຮ່ວມຫ້ອງການດຽວກັບ ເປັນຫຍັງບໍ່ຣູ້ ວ່າລາ ເສບ ໂປແກມ ເວີດ ແລ້ວ ພັດເວລາເປີດອອກມາມັນພັດໃຫ້ໃສ່ password ທັງທັງບໍໄດ້ຕັ້ງຄ່າຍັງເລີຍ ແລະ ກໍ່ເປັນຄືກັນ 4 ໜ່ວຍ<br />ແກ້ໄຂກາບໍ່ໄດ້ ລິບແລ້ວຕັ້ງໃໝ່ ທຳອິດໄດ້ຢູ່ພັດໄຊ້ໄປດົນແລ້ວ ກໍ່ເປັນຄືເກົ່າ  ຂ້າພະເຈົ້າສົ່ງໃສ່ ແຕ່ ບັກໄວລັດອັນດຽວນີ້ລະເພາະ  ບໍ່ເຄີຍເປັນແບບນີ້ຈັກເທື່ອ   ຊ່ວຍໃຫ້ຄຳຄິດເຫັນແນ່ ທ້ານ ອາເລັກໃຊ້</span>]]></description>
<author>pixky&lt;ood_laos@nospam.com&gt;</author>
<pubDate>Tue, 10 Mar 2009 04:47:25 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຄຶວ່າອາການມັນເປັນແບບນິ້:ຂ້າພະເຈົ້າໄດ້ໃຊ້ <span style="font-size: small">Kaspersky </span></span><span style="font-size: small">Internet</span><br /><span style="font-size: small">Security 7.0 ແລະເວລາໃຊ້ຄອມມັນຈະຟ້ອງວ່າຟາຍທີ່ສຳຄັນຂອງWindows<br />ແມ່ນ ໄວສ໌ຮັດເຊັ່ນ:Winlogon,explorer ແລະຟາຍອື່ນໆທີ່ສຳຄັນຂອງ<br />ວິນໂດຮ ພ້ອມທັງຟາຍໂປຮແກຮມອີກ ແລະຂ້າພະເຈົ້າໄດ້ລົງAnti-Virus ໂຕອື່ນ<br />ກະເປັນຄຶກັນ<br /><br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Mon, 23 Mar 2009 02:06:21 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ເປັນໂຕຣເຈັນແລະ Rootkit ເຊື່ງເຮັດໃຫ້ຄອມທີ່ຕິດນັ້ນເນັດເວີກມີບັນຫາເຊັ່ນ Share drive ,share printer ແລະ Connection ມີບັນຫາພ້ຽນໄປ<br />ທ່ານສາມາດສັງເກດງ່າຍໆໃຫ້ກວດເບີ່ງວ່າໃນຄອມທ່ານມີໄຟລນີ້ບໍໃນ ໂພນເດີ<br />C:&#092;Windows&#092;System32&#092;Drivers<br />ndisio.sys ຫລື ndisi.sys ຖ້າມີແມ່ນຕິດແລ້ວ<br /> <br /><strong>+ ສ້າງໄຟລໃນຄອມ</strong><br />%UserProfile%&#092;netsf.inf<br />%Windir%&#092;inf&#092;netsf.inf<br />%UserProfile%&#092;netsf_m.inf<br />%Windir%&#092;inf&#092;netsf_m.inf<br />%UserProfile%&#092;xwc.exe<br />%System%&#092;wcjp.exe<br />%Windir%&#092;inf&#092;netsf.PNF<br />%Windir%&#092;inf&#092;netsf_m.PNF<br />%System%&#092;drivers&#092;ndisio.sys<br />+????????? Registry<br /><br />    * The following Registry Keys were created:<br />          o HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;Class&#092;{4D36E972-E325-
11CE-BFC1-08002bE10318}&#092;0012<br />          o HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;Class&#092;{4D36E972-E325-
11CE-BFC1-08002bE10318}&#092;0013<br />          o HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;Network&#092;{4D36E974-
E325-11CE-BFC1-08002BE10318}&#092;{9F28D4A4-EE69-4EDE-A325-8CC29527CA6A}<br />          o HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;Network&#092;{4D36E974-
E325-11CE-BFC1-08002BE10318}&#092;{9F28D4A4-EE69-4EDE-A325-8CC29527CA6A}
&#092;Ndi<br />          o HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;Network&#092;{4D36E974-
E325-11CE-BFC1-08002BE10318}&#092;{9F28D4A4-EE69-4EDE-A325-8CC29527CA6A}
&#092;Ndi&#092;Interfaces<br />          o HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;Network&#092;{4D36E974-
E325-11CE-BFC1-08002BE10318}&#092;{9F28D4A4-EE69-4EDE-A325-8CC29527CA6A}
&#092;Parameters<br />          o HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;Network&#092;RefNames<br />          o HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;MS_PASSTHRUMP<br />          o HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;MS_PASSTHRUMP&#092;0000<br />          o HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;MS_PASSTHRUMP&#092;0000&#092;D
evice Parameters<br />          o HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;MS_PASSTHRUMP&#092;0000&#092;L
ogConf<br />          o HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;MS_PASSTHRUMP&#092;0001<br />          o HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;MS_PASSTHRUMP&#092;0001&#092;D
evice Parameters<br />          o HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;MS_PASSTHRUMP&#092;0001&#092;L
ogConf<br />          o HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;Passthru<br />          o HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;Passthru&#092;Security<br /><br />    * The newly created Registry Values are:<br />          o [HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Setup]<br />                + Installation Sources = "%Profiles%&#092;%UserName%"<br />          o [HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;Class&#092;{4D36E972-E325-
11CE-BFC1-08002bE10318}&#092;0012]<br />                + Characteristics = 0x00000029<br />                + ComponentId = "ms_passthrump"<br />                + InfPath = "netsf_m.inf"<br />                + InfSection = "PassthruMP.ndi"<br />                + ProviderName = "Microsoft"<br />                + DriverDateData = 00 00 87 80 D4 BD BE 01<br />                + DriverDate = "6-24-1999"<br />                + DriverVersion = "5.0.2071.1"<br />                + MatchingDeviceId = "ms_passthrump"<br />                + DriverDesc = " "<br />                + NetCfgInstanceId = "{E109290D-C1C4-4E9C-A08A-E5750D8BA28E}"<br />                + FilterInfId = "ms_passthru"<br />          o [HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;Class&#092;{4D36E972-E325-
11CE-BFC1-08002bE10318}&#092;0013]<br />                + Characteristics = 0x00000029<br />                + ComponentId = "ms_passthrump"<br />                + InfPath = "netsf_m.inf"<br />                + InfSection = "PassthruMP.ndi"<br />                + ProviderName = "Microsoft"<br />                + DriverDateData = 00 00 87 80 D4 BD BE 01<br />                + DriverDate = "6-24-1999"<br />                + DriverVersion = "5.0.2071.1"<br />                + MatchingDeviceId = "ms_passthrump"<br />          o [HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;Network&#092;{4D36E972-
E325-11CE-BFC1-08002BE10318}&#092;Descriptions]<br />                + = "1 2"<br />          o [HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;Network&#092;{4D36E974-
E325-11CE-BFC1-08002BE10318}&#092;{9F28D4A4-EE69-4EDE-A325-8CC29527CA6A}
&#092;Ndi&#092;Interfaces]<br />                + UpperRange = "noupper"<br />                + LowerRange = "nolower"<br />                + FilterMediaTypes = "ethernet, tokenring, fddi, wan"<br />          o [HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;Network&#092;{4D36E974-
E325-11CE-BFC1-08002BE10318}&#092;{9F28D4A4-EE69-4EDE-A325-8CC29527CA6A}
&#092;Parameters]<br />                + Param1 = "4"<br />          o [HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;Network&#092;{4D36E974-
E325-11CE-BFC1-08002BE10318}&#092;{9F28D4A4-EE69-4EDE-A325-8CC29527CA6A}
&#092;Ndi]<br />                + HelpText = "Client For Microsoft Sharing"<br />                + FilterClass = "failover"<br />                + FilterDeviceInfId = "ms_passthrump"<br />                + Service = "Passthru"<br />          o [HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;Network&#092;{4D36E974-
E325-11CE-BFC1-08002BE10318}&#092;{9F28D4A4-EE69-4EDE-A325-8CC29527CA6A}]<br />                + Characteristics = 0x00004410<br />                + InfPath = "netsf.inf"<br />                + InfSection = "Passthru.ndi"<br />                + Description = "Client For Microsoft Sharing"<br />                + ComponentId = "ms_passthru"<br />          o [HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;Network&#092;RefNames]<br />                + = " "<br />          o [HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;MS_PASSTHRUMP&#092;0000&#092;
Device Parameters]<br />                + InstanceIndex = 0x00000001<br />          o [HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;MS_PASSTHRUMP&#092;0001&#092;
Device Parameters]<br />                + InstanceIndex = 0x00000002<br />          o [HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;MS_PASSTHRUMP&#092;0001]
<br />                + ClassGUID = "{4D36E972-E325-11CE-BFC1-08002BE10318}"<br />                + Class = "Net"<br />                + HardwareID = "ms_passthrump"<br />                + Driver = "{4D36E972-E325-11CE-BFC1-08002BE10318}&#092;0013"<br />                + FriendlyName = " #2"<br />                + Mfg = "Microsoft"<br />          o [HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;MS_PASSTHRUMP&#092;0000]
<br />                + ClassGUID = "{4D36E972-E325-11CE-BFC1-08002BE10318}"<br />                + Class = "Net"<br />                + HardwareID = "ms_passthrump"<br />                + Driver = "{4D36E972-E325-11CE-BFC1-08002BE10318}&#092;0012"<br />                + Mfg = "Microsoft"<br />                + Service = "Passthru"<br />                + DeviceDesc = " "<br />                + ConfigFlags = 0x00000000<br />                + FriendlyName = "WAN Miniport (Network Monitor) - "<br />          o [HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;Passthru&#092;Security]<br />                + Security = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 0<br />          o [HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;Passthru]<br />                + Type = 0x00000001<br />                + Start = 0x00000003<br />                + ErrorControl = 0x00000001<br />                + Tag = 0x00000008<br />                + ImagePath = "%System%&#092;Drivers&#092;ndisio.sys"<br />                + DisplayName = "Service"<br />                + Group = "PNP_TDI"<br /><br /><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 25 Mar 2009 15:53:25 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຮຽນທ່ນ Administrator ຄອມຂ້ອຍສົງໃສຕິດໄວລັດ ບໍ່ຮູ້ວ່າເປັນຫຍັງມັນຄືລົງ ໂປຼແກມ Antivirus ບໍ່ໄດ້ ຍົກຕົວຢ່າງ ເວລາເຮົາຊິຕິດຕັ້ງໂປຼແກມເມື່ອເປີດ File ໂປຼແກມອອກມາເພື່ອກຽມຕິດຕັ້ງ Box ມັນກໍ່ຫາຍໄປເລີຍ ເມື່ອປົກະຕິແລ້ວ Box ກໍ່ຫາຍເລີຍເມື່ອເຂົ້າໄປ FILE  ໂປຼແກມອີກ ມັນກໍ່ຫາຍໄປຄືເກົ່າ. ນອກຈາກນີ້ເວລາ ເຮົາເປີດ Folder ທີ່ມີໂປຼແກມ Antivirus, Box ກໍ່ຫາຍໄປອີກ. ບໍ່ຮູ້ວ່າມັນເປັນຫຍັງ, ກະລຸນາຊ່ວຍບອກວິທີ່ແກ້ໄຂໃຫ້ແດ່ເດີທ່ານ. Thank you!<img src="http://www.laoav.net/images/emotes/default/smile.png" style="border: 0px none " alt="smile.png" />]]></description>
<author>can&lt;Khaenthong@nospam.com&gt;</author>
<pubDate>Mon, 30 Mar 2009 11:32:06 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ສະບາຍດີທ່ານ ອາເລັກໄຊ<br /><br />ຄືວ່າຄອມຂອງຂ້າພະເຈົ້າມີໄວຣັດ ຊື່ວ່າnetmon.exe ບໍ່ຮູ້ວ່າເຄີຍໄດ້ຍິນໄວຣັດຕົວນີ້ມາກ່ອນບໍ່<br />ຄືວ່າມັນເຮັດໃຫ້server ແຮ້ງຕະຫຼອດເລີຍ ແລະ ສັ່ງພິມກະບໍ່ໄດ້ ແຖມຍັງອັບເດດເອນຕິໄວຣັດກະບໍ່ໄດ້ນຳອີກ<br />ຂ້າພະເຈົ້າຍາກຊິບສົ່ງໄປໃຫ້ທ່ານຢູ່ແຕ່ວ່າ ສັ່ງຊິບຍາມໃດລະຄອມມັນກະແຮ້ງໂລດ ກະເລີຍບໍ່ຮູ້ວ່າທ່ານ ພໍທີ່ຈະຊ່ວຍສ້າງໂຕລີມູບໃຫ້ຂ້າພະເຈົ້າເດ່ໄດ້ບໍ່ເນ໋າະທ່ານ<br /><br />ຂໍຂອບໃຈຫຼ່ວງໜ້າ]]></description>
<author>pickachu&lt;piggy_pick@nospam.com&gt;</author>
<pubDate>Fri, 03 Apr 2009 10:52:48 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">Trojan ຕົວນີ້ມັນເຊື່ອງຕົວເອງໃນ<br />%Windir%&#092;system&#092;msddll.exe</span><br /><span style="font-size: small">ແລະສ້າງ Services ຊື msddll ກັບໃນ Registry ດັ່ງນີ້<br /></span><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_MSDDLL</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_MSDDLL&#092;0000</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_MSDDLL&#092;0000&#092;C
ontrol</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;msddll</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;msddll&#092;Security</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;msddll&#092;Enum</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_MSDDLL</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_MSDDLL&#092;00
00</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_MSDDLL&#092;00
00&#092;Control</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;msddll</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;msddll&#092;Security</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;msddll&#092;Enum</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_MSDDLL&#092;0000&#092;
Control]</span></li><ul><li><span style="font-size: small">*NewlyCreated* = 0x00000000</span></li><li><span style="font-size: small">ActiveService = "msddll"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_MSDDLL&#092;0000]
</span></li><ul><li><span style="font-size: small">Service = "msddll"</span></li><li><span style="font-size: small">Legacy = 0x00000001</span></li><li><span style="font-size: small">ConfigFlags = 0x00000000</span></li><li><span style="font-size: small">Class = "LegacyDriver"</span></li><li><span style="font-size: small">ClassGUID = "{8ECC055D-047F-11D1-A537-0000F8753ED1}"</span></li><li><span style="font-size: small">DeviceDesc = "msddll"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Enum&#092;Root&#092;LEGACY_MSDDLL]</span></li><ul><li><span style="font-size: small">NextInstance = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;msddll&#092;Enum]</span></li><ul><li><span style="font-size: small">0 = "Root&#092;LEGACY_MSDDLL&#092;0000"</span></li><li><span style="font-size: small">Count = 0x00000001</span></li><li><span style="font-size: small">NextInstance = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;msddll&#092;Security]</span></li><ul><li><span style="font-size: small">Security = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 0</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;msddll]</span></li><ul><li><span style="font-size: small">Type = 0x00000110</span></li><li><span style="font-size: small">Start = 0x00000002</span></li><li><span style="font-size: small">ErrorControl = 0x00000000</span></li><li><span style="font-size: small">ImagePath = ""%Windir%&#092;system&#092;msddll.exe""</span></li><li><span style="font-size: small">DisplayName = "msddll"</span></li><li><span style="font-size: small">ObjectName = "LocalSystem"</span></li><li><span style="font-size: small">FailureActions = 0A 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 01 00 00 00 B8 0B 00 00</span></li><li><span style="font-size: small">Description = "msddll"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_MSDDLL&#092;0
000&#092;Control]</span></li><ul><li><span style="font-size: small">*NewlyCreated* = 0x00000000</span></li><li><span style="font-size: small">ActiveService = "msddll"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_MSDDLL&#092;0
000]</span></li><ul><li><span style="font-size: small">Service = "msddll"</span></li><li><span style="font-size: small">Legacy = 0x00000001</span></li><li><span style="font-size: small">ConfigFlags = 0x00000000</span></li><li><span style="font-size: small">Class = "LegacyDriver"</span></li><li><span style="font-size: small">ClassGUID = "{8ECC055D-047F-11D1-A537-0000F8753ED1}"</span></li><li><span style="font-size: small">DeviceDesc = "msddll"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Enum&#092;Root&#092;LEGACY_MSDDLL]</span></li><ul><li><span style="font-size: small">NextInstance = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;msddll&#092;Enum]</span></li><ul><li><span style="font-size: small">0 = "Root&#092;LEGACY_MSDDLL&#092;0000"</span></li><li><span style="font-size: small">Count = 0x00000001</span></li><li><span style="font-size: small">NextInstance = 0x00000001</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;msddll&#092;Security]
</span></li><ul><li><span style="font-size: small">Security = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 0</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;msddll]</span></li><ul><li><span style="font-size: small">Type = 0x00000110</span></li><li><span style="font-size: small">Start = 0x00000002</span></li><li><span style="font-size: small">ErrorControl = 0x00000000</span></li><li><span style="font-size: small">ImagePath = ""%Windir%&#092;system&#092;msddll.exe""</span></li><li><span style="font-size: small">DisplayName = "msddll"</span></li><li><span style="font-size: small">ObjectName = "LocalSystem"</span></li><li><span style="font-size: small">FailureActions = 0A 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 01 00 00 00 B8 0B 00 00</span></li><li><span style="font-size: small">Description = "msddll"</span></li></ul></ul></ul> <ul><li><span style="font-size: small">The following Registry Values were modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control]</span></li><ul><li><span style="font-size: small">WaitToKillServiceTimeout = "7000"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Control&#092;ServiceCurrent]</span></li><ul><li><span style="font-size: small">(Default) = 0x00000128</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Control]</span></li><ul><li><span style="font-size: small">WaitToKillServiceTimeout = "7000"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Control&#092;ServiceCurrent]</span></li><ul><li><span style="font-size: small">(Default) = 0x00000128</span></li></ul><li><span style="font-size: small">[HKEY_USERS&#092;.DEFAULT&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explore
r&#092;Shell Folders]</span></li><ul><li><span style="font-size: small">Cookies = "%Profiles%&#092;LocalService&#092;Cookies"</span></li><li><span style="font-size: small">History = "%Profiles%&#092;LocalService&#092;Local Settings&#092;History"</span></li></ul></ul></ul><span style="font-size: small">ສຳລັບຕົວ Remove ແມ່ນສ້າງແລ້ວຫາດາວໂລດໄດ້ທີ່ເວັບນີ້ Kill msddll.exe Trojan<br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Thu, 09 Apr 2009 17:05:08 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">-Registers a 32-bit in-process server DLL<br />-Registers a Browser Helper Object (Microsoft's Internet Explorer plugin module).</span><br /><strong><span style="font-size: small">+File System Modifications</span></strong><br /><span style="font-size: small">%ProgramFiles%&#092;Common&#092;helper.dll</span><br /><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;AppID&#092;main.DLL</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;AppID&#092;X-33A0E1054B-01EE-4D57-A059-
4D99F339709FX.,-</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AFD4AD01-58C1-47DB-A404-
FBE00A6C5486}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AFD4AD01-58C1-47DB-A404-
FBE00A6C5486}&#092;InprocServer32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AFD4AD01-58C1-47DB-A404-
FBE00A6C5486}&#092;ProgID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AFD4AD01-58C1-47DB-A404-
FBE00A6C5486}&#092;Programmable</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AFD4AD01-58C1-47DB-A404-
FBE00A6C5486}&#092;TypeLib</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AFD4AD01-58C1-47DB-A404-
FBE00A6C5486}&#092;VersionIndependentProgID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{986A8AC1-AB4D-4F41-
9068-4B01C0197867}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{986A8AC1-AB4D-4F41-
9068-4B01C0197867}&#092;ProxyStubClsid</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{986A8AC1-AB4D-4F41-
9068-4B01C0197867}&#092;ProxyStubClsid32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{986A8AC1-AB4D-4F41-
9068-4B01C0197867}&#092;TypeLib</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{8E3C68CD-F500-4A2A-8CB9-
132BB38C3573}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{8E3C68CD-F500-4A2A-8CB9-
132BB38C3573}&#092;1.0</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{8E3C68CD-F500-4A2A-8CB9-
132BB38C3573}&#092;1.0&#092;0</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{8E3C68CD-F500-4A2A-8CB9-
132BB38C3573}&#092;1.0&#092;0&#092;win32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{8E3C68CD-F500-4A2A-8CB9-
132BB38C3573}&#092;1.0&#092;FLAGS</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{8E3C68CD-F500-4A2A-8CB9-
132BB38C3573}&#092;1.0&#092;HELPDIR</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;main.BHO</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;main.BHO&#092;CLSID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;main.BHO&#092;CurVer</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;main.BHO.1</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;main.BHO.1&#092;CLSID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Browser Helper Objects</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Browser Helper Objects&#092;{AFD4AD01-58C1-47DB-A404-FBE00A6C5486}</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;AppID&#092;main.DLL]</span></li><ul><li><span style="font-size: small">AppID = "X-33A0E1054B-01EE-4D57-A059-4D99F339709FX.,-"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;AppID&#092;X-33A0E1054B-01EE-4D57-
A059-4D99F339709FX.,-]</span></li><ul><li><span style="font-size: small">(Default) = "Browser Helper Object"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AFD4AD01-58C1-47DB-A404-
FBE00A6C5486}&#092;VersionIndependentProgID]</span></li><ul><li><span style="font-size: small">(Default) = "main.BHO"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AFD4AD01-58C1-47DB-A404-
FBE00A6C5486}&#092;TypeLib]</span></li><ul><li><span style="font-size: small">(Default) = "{8E3C68CD-F500-4A2A-8CB9-132BB38C3573}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AFD4AD01-58C1-47DB-A404-
FBE00A6C5486}&#092;ProgID]</span></li><ul><li><span style="font-size: small">(Default) = "main.BHO.1"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AFD4AD01-58C1-47DB-A404-
FBE00A6C5486}&#092;InprocServer32]</span></li><ul><li><span style="font-size: small">(Default) = "%ProgramFiles%&#092;Common&#092;helper.dll"</span></li><li><span style="font-size: small">ThreadingModel = "Apartment"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AFD4AD01-58C1-47DB-A404-
FBE00A6C5486}]</span></li><ul><li><span style="font-size: small">(Default) = "Browser Helper Object"</span></li><li><span style="font-size: small">AppID = "X-?9 "</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{986A8AC1-AB4D-4F41-
9068-4B01C0197867}&#092;TypeLib]</span></li><ul><li><span style="font-size: small">(Default) = "{8E3C68CD-F500-4A2A-8CB9-132BB38C3573}"</span></li><li><span style="font-size: small">Version = "1.0"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{986A8AC1-AB4D-4F41-
9068-4B01C0197867}&#092;ProxyStubClsid32]</span></li><ul><li><span style="font-size: small">(Default) = "{00020424-0000-0000-C000-000000000046}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{986A8AC1-AB4D-4F41-
9068-4B01C0197867}&#092;ProxyStubClsid]</span></li><ul><li><span style="font-size: small">(Default) = "{00020424-0000-0000-C000-000000000046}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{986A8AC1-AB4D-4F41-
9068-4B01C0197867}]</span></li><ul><li><span style="font-size: small">(Default) = "IBHO"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{8E3C68CD-F500-4A2A-8CB9-
132BB38C3573}&#092;1.0&#092;0&#092;win32]</span></li><ul><li><span style="font-size: small">(Default) = "%ProgramFiles%&#092;Common&#092;helper.dll"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{8E3C68CD-F500-4A2A-8CB9-
132BB38C3573}&#092;1.0&#092;HELPDIR]</span></li><ul><li><span style="font-size: small">(Default) = "%ProgramFiles%&#092;Common&#092;"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{8E3C68CD-F500-4A2A-8CB9-
132BB38C3573}&#092;1.0&#092;FLAGS]</span></li><ul><li><span style="font-size: small">(Default) = "0"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{8E3C68CD-F500-4A2A-8CB9-
132BB38C3573}&#092;1.0]</span></li><ul><li><span style="font-size: small">(Default) = "mainLib"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;main.BHO&#092;CurVer]</span></li><ul><li><span style="font-size: small">(Default) = "main.BHO.1"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;main.BHO&#092;CLSID]</span></li><ul><li><span style="font-size: small">(Default) = "{AFD4AD01-58C1-47DB-A404-FBE00A6C5486}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;main.BHO]</span></li><ul><li><span style="font-size: small">(Default) = "Browser Helper Object"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;main.BHO.1&#092;CLSID]</span></li><ul><li><span style="font-size: small">(Default) = "{AFD4AD01-58C1-47DB-A404-FBE00A6C5486}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;main.BHO.1]</span></li><ul><li><span style="font-size: small">(Default) = "Browser Helper Object"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Browser Helper Objects&#092;{AFD4AD01-58C1-47DB-A404-FBE00A6C5486}]</span></li><ul><li><span style="font-size: small">(Default) = ""</span></li><li><span style="font-size: small">NoExplorer = 0x00000001</span></li></ul></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 24 Apr 2009 05:43:42 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ກະລຸນາຊ່ວຍຂ້າພະເຈົ້າແດ່ ຄອມຕິດໄວລັດທີ່ສ້າງໂຟເດີຂື້ນເອງ ຂອບໃຈລອງໜ້າ</span>]]></description>
<author>ti007&lt;noauthor@nospam.com&gt;</author>
<pubDate>Wed, 29 Apr 2009 11:50:24 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຄືວ່າເວລາເປີດຄອມໃຊ້ເມື່ອຮອດໂລໂກ້ຂອງວິນໂດຣມັນມັກຈະ restartໃໜ່ຕະຫວຼດນະທ່ານ, ກ່ອນໜ້ານັ້ນ ຂພຈ ເອົາ usb ໂອນຂໍ້ມູນເຂົ້າ , ສົງໃນ ຢ້ານຕິດໄວຣັດແລ້ວ ມີວິທີແກ້ບໍ່ທ່ານ ຂໍຄຳແນະນຳແດ່ທ່ານ .<br /> ຂອບໃຈ !<br /></span>]]></description>
<author>sp-computer&lt;sandp_0268@nospam.com&gt;</author>
<pubDate>Sat, 02 May 2009 09:58:38 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຂພຈ ໃຊ້ ວິນໂດຣ , ມັນບໍສາມາດ ຄິຣກທີ່ໄດ້ຊ່ອງທີ່ຕ້ອງການໄດ້. ຕ້ອງໄດ້ເປີດຢູ່ຫນ້າ explore ຢ່າງດຽວທ່ານ.  <br />, ແລະ ໂຟນເດີອ໋ອບເຊີນມັນກາຫາຍ. ແຕ່ ຂພຈ ແກ້ໃຫ້ ໂຟນເດີອ໋ອບເຊີນກັບມາໄດ້ແລ້ວແຕ່ບໍ່ສາມາດໂຊ໌ວຟາຍທີ່ມັນເຊື່ອງບໍໄດ້ ຂໍຄຳແນະນຳແດ່ທ່ານ .</span>]]></description>
<author>sp-computer&lt;sandp_0268@nospam.com&gt;</author>
<pubDate>Sun, 03 May 2009 09:16:28 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ສະບາຍດີທ່ານຜູ້ຮູ້ທັງຫຼາຍ<div>ຂພຈ ມີບັນຫາເລື່ອງໄວຣັດ</div><div>ຊ່ວຍແດ່ ສົງໃສວ່າມຮໄວຣັດແທ້ໆໆໆໆໆ</div><div>ຂໍຂອບໃຈລ່ວງໜ້າ</div>]]></description>
<author>ST&lt;stvision05@nospam.com&gt;</author>
<pubDate>Thu, 07 May 2009 06:18:18 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ສະບາຍດີ ທ່ານ adm.<br />ບໍ່ຮູ້ວ່າເປັນຫຍັງຄອມຂອງຂ້າພະເຂົ້າເວລາເປີດມາຍາມໃດ ແລ້ວມັນຈະຟ້ອງວ່າ SVCHOST.EXE ເອີເລີ ຕະຫຼອດ. ແຕ່ວ່າເວລາໄປເປີດເບິ່ງຢູ່system32ເບິ່ງກະຍັງເຫັນມີເປັນປົກກະຕິໃ ບໍ່ຮູ້ວ່າທ່ານພໍທີ່ຈະສາມາດຊ່ວຍຂ້າພະເຈົ້າເດ່ໄດ້ບໍ່ເນ໋າະ<br /><br />ຂໍຂອບໃຈລ່ວງໜ້າ]]></description>
<author>pickachu&lt;piggy_pick@nospam.com&gt;</author>
<pubDate>Fri, 08 May 2009 10:48:30 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">1. ບັນຫາໄວສ໌ຣັດຄຶວ່າຂ້າພະເຈົ້າໄດ້ເອົາ USB ຂອງຫນູ່ມາຊຽບແລ້ວໄວສ໌ຣັດ ມັນລັນໂອໂຕເລີຍແລ້ວເຄື່ອງມັນ Restart ເມື່ອເປີດມາໃໝ່ແລ້ວມັນ Restart ກັໄປກັບມາ ແລະຂ້າະພເຈົ້າໄດ້ໃຊ້ແຜ່ນບູດສຸກເສີນແລ້ວໄປກວດເບີ່ງຊ່ອງ C ແລ້ວໄປປົດລັອກແລ້ວໂຊ້ໜົດທຸກຟາຍແລ້ວໄດ້ສັງເກດເບີ່ງກະມີຟາຍຄົບຢູ່ຄຄຶໜ່ວຍອຶ່
ນ.       ມີຕອນໜຶ່ງມີຟາຍ NTDETECT.com ຖືກໄວສ໌ຣັດລົບກະມີອາການຄ້າຍຄຶກັນ ແລະ ຂ້າພະເຈົ້າກະກັອບຈາກໜ່ວຍອື່ນມາໃສ່ກະສາມາດໃຊ້ໄດ້ປົກະຕິ.ແຕ່ອາການເທື່ອນິ້ແມ
່ນຂ້າພະເຈົ້າບໍ່ຮູ້ເລີຍວ່າແມ່ນຟາຍໃດເສຍແລ້ວຢາກໃຫ້ທ່ານຊ່ວຍບອກ<br />ໃຫ້ແດ່ວ່າຟາຍໃດເສຍແລ້ວຊີ້ກັອບຈາກໜ່ວຍອຶ່ນມາໃສ່.</span><br /><span style="font-size: small">2. ຄອມຂ້ອຍເມື່ອ View ເບິ່ງເອກະສານ ຫຼຶເບິ່ງຮູບ.ຕົວຢ່າງ: ຂ້າພະເຈົ້າຈະView ເບິ່ງຮູບເມື່ອເວລາປ່ຽນການView ເປັນແບບ Thumbnails ມັນຈະເຫັນແຕ່ຮູບແລ້ວຊື່ຂອງແຕ່ລະຟາຍແມ່ນບໍ່ເຫັນ.ຖ້າປ່ຽນເປັນການ ViewແບບTiles-Detailscແມ່ນເຫັນຢູ່ ຖ້າເປັນຮູບຈະເຫັນແຕ່ລັກສະນະຮູບແລະຈະບໍ່ຮູ້ວ່າແມ່ນຮູບໃດ ບໍ່ວ່າຈະ   Viewເບິ່ງໂຟເດີອຶ່ນໆ ກໍ່ຕາມເປັນຄຶກັນໜົດ ແລະມັນກໍເປັນໜົດຄອມເລີຍ ຊ່ວຍບອກວິທີແກ້ແດ່ທ່ານ.</span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Fri, 22 May 2009 02:33:30 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຄຶວ່າຂ້າເຈົ້່າໄດ້download file update  Lao-AntiVirus<span style="font-size: large"> </span></span><span style="font-size: large">2008<br /><span style="font-size: medium">ເມື່ອອັບເດດແລ້ວບາງເທື່ອກະຂ້າຕາຍ.ສ່ວນຫລາຍຂ້າບໍ່ຍາກຕາຍ ຕາຍ ຊົ່ວຄາວເມື່ອເປີດມາໃຫມ່ກະຍັງເຫັນຄຶເກົ່າ ແລະຢາກໃຫ້ທ່ານສ້າງເຄື່ອງມື<br />ມາຂ້າຄຶຕົວອຶ່ນໆ ທີ່ທ່ານສ້າງມາຫັັ້ນແລະ. ບາງເທື່ອເອົາປະໄວ້ຂ້າໜ່ວຍທີ່ ລົງAnti-Virus ບໍ່ໄດ້<br /><br /></span></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sat, 23 May 2009 15:40:15 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><strong>+File System Modifications</strong></span><br />c<span style="font-size: small">:&#092;AutoRun.inf<br />%ProgramFiles%&#092;Common Files&#092;SafeSys.exe<br />c:&#092;SafeSys.exe<br />%ProgramFiles%&#092;lteks.bak<br />%Windir%&#092;Temp&#092;Temporary Internet Files&#092;Content.IE5&#092;2FGHCJ2R&#092;desktop.ini<br />%Windir%&#092;Temp&#092;Temporary Internet Files&#092;Content.IE5&#092;456VKRGZ&#092;desktop.ini<br />%Windir%&#092;Temp&#092;Temporary Internet Files&#092;Content.IE5&#092;desktop.ini<br />%Windir%&#092;Temp&#092;Temporary Internet Files&#092;Content.IE5&#092;UJQRSHID&#092;desktop.ini<br />%Windir%&#092;Temp&#092;Temporary Internet Files&#092;Content.IE5&#092;W9UDELK9&#092;desktop.ini<br />%Windir%&#092;Temp&#092;Temporary Internet Files&#092;Content.IE5&#092;index.dat </span><br /><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;360hotfix.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;360rpt.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;360Safe.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;360safebox.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;360tray.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;adam.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;AgentSvr.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;AntiArp.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;AppSvc32.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;arvmon.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;AutoGuarder.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;autoruns.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;avgrssvc.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;AvMonitor.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;avp.com</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;avp.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;CCenter.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;ccSvcHst.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;FileDsty.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;findt2005.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;FTCleanerShell.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;HijackThis.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;IceSword.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;iparmo.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Iparmor.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;IsHelp.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;isPwdSvc.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;kabaload.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KaScrScn.SCR</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KASMain.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KASTask.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KAV32.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KAVDX.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KAVPFW.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KAVSetup.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KAVStart.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;killhidepid.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KISLnchr.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KMailMon.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KMFilter.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KPFW32.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KPFW32X.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KPFWSvc.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KRegEx.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KRepair.COM</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KsLoader.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KVCenter.kxp</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KvDetect.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;kvfw.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KvfwMcl.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KVMonXP.kxp</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KVMonXP_1.kxp</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;kvol.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;kvolself.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KvReport.kxp</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KVScan.kxp</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KVSrvXP.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KVStub.kxp</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;kvupload.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;kvwsc.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KvXP.kxp</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KvXP_1.kxp</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KWatch.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KWatch9x.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KWatchX.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;loaddll.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;MagicSet.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;mcconsol.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;mmqczj.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;mmsk.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;NAVSetup.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;nod32krn.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;nod32kui.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;PFW.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;PFWLiveUpdate.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;QHSET.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Ras.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Rav.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RavCopy.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RavMon.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RavMonD.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RavStore.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RavStub.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;ravt08.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RavTask.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RegClean.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;rfwcfg.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RfwMain.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;rfwolusr.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;rfwProxy.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;rfwsrv.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RsAgent.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Rsaupd.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RsMain.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;rsnetsvr.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RSTray.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;runiep.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;safebank.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;safeboxTray.exe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;safelive.exe</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">SafeSys = "%ProgramFiles%&#092;Common Files&#092;SafeSys.exe"</span></li></ul><span style="font-size: small"><br /><em>so that SafeSys.exe runs every time Windows starts</em><br /></span><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;360hotfix.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;360rpt.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;360Safe.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;360safebox.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;360tray.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;adam.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;AgentSvr.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;AntiArp.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;AppSvc32.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;arvmon.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;AutoGuarder.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;autoruns.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;avgrssvc.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;AvMonitor.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;avp.com]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;avp.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;CCenter.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;ccSvcHst.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;FileDsty.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;findt2005.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;FTCleanerShell.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;HijackThis.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;IceSword.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;iparmo.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Iparmor.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;IsHelp.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;isPwdSvc.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;kabaload.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KaScrScn.SCR]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KASMain.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KASTask.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KAV32.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KAVDX.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KAVPFW.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KAVSetup.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KAVStart.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;killhidepid.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KISLnchr.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KMailMon.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KMFilter.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KPFW32.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KPFW32X.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KPFWSvc.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KRegEx.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KRepair.COM]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KsLoader.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KVCenter.kxp]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KvDetect.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;kvfw.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KvfwMcl.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KVMonXP.kxp]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KVMonXP_1.kxp]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;kvol.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;kvolself.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KvReport.kxp]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KVScan.kxp]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KVSrvXP.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KVStub.kxp]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;kvupload.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;kvwsc.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KvXP.kxp]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KvXP_1.kxp]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KWatch.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KWatch9x.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KWatchX.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;loaddll.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;MagicSet.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;mcconsol.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;mmqczj.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;mmsk.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;NAVSetup.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;nod32krn.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;nod32kui.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;PFW.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;PFWLiveUpdate.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;QHSET.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Ras.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Rav.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RavCopy.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RavMon.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RavMonD.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RavStore.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RavStub.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;ravt08.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RavTask.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RegClean.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;rfwcfg.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RfwMain.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;rfwolusr.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;rfwProxy.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;rfwsrv.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RsAgent.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Rsaupd.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RsMain.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;rsnetsvr.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RSTray.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;runiep.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;safebank.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;safeboxTray.exe]</span></li><ul><li><span style="font-size: small">Debugger = "ntsd -d"</span></li></ul></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 12 Jun 2009 09:58:10 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><strong>+File System Modifications</strong></span><br /><span style="font-size: small">-%UserProfile%&#092;%UserName%.exe</span><br /><span style="font-size: small"><strong>+Memory Modifications</strong></span><br /><span style="font-size: small">%UserName%.exe</span><br /><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><ul><li><span style="font-size: small">The newly created Registry Value is:</span></li><ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">%UserName% = "%UserProfile%&#092;%UserName%.exe"</span></li></ul><span style="font-size: small"><br /><em>so that %UserName%.exe runs every time Windows starts<br /><br /></em><br /><br /></span></ul></ul><div align="left"><span style="font-size: small">The following port was open in the system:<br /></span><table class="tbl" cellpadding="5" cellspacing="0"><tbody><tr><td class="cell_1_h"><span style="font-size: small">Port</span></td><td class="cell_1_h"><span style="font-size: small">Protocol</span></td><td class="cell_2_h"><span style="font-size: small"><br /></span></td></tr> <tr><td class="cell_1"><span style="font-size: small">1033</span></td><td class="cell_1"><span style="font-size: small">TCP</span></td></tr></tbody></table><span style="font-size: small">There was registered attempt to establish connection with the remote host. The connection details are:<br /></span><table class="tbl" cellpadding="5" cellspacing="0"><tbody><tr><td class="cell_1_h"><span style="font-size: small">Remote Host</span></td><td class="cell_2_h"><span style="font-size: small">Port Number</span></td></tr> <tr><td class="cell_1"><span style="font-size: small">n</span></td><td class="cell_2"><span style="font-size: small">8000</span></td></tr></tbody></table><span style="font-size: small"><br /></span></div>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Tue, 23 Jun 2009 06:46:42 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><strong>+ເມື່ອຕິດຄອມແລ້ວມັນສ້າງໄຟລດັ່ງນີ້</strong></span><br /><span style="font-size: small">%System%&#092;iconhandle.dll<br />%System%&#092;web.dat<br />%System%&#092;winweb.exe<br />%System%&#092;webad.dll</span><br /><span style="font-size: small"><strong>+ມີ Process ແລະ Module</strong></span><br /><span style="font-size: small">winweb.exe<br />webad.dll</span><br /><span style="font-size: small"><strong>ໍ+ສ້າງຄ່າໃນ Registry</strong></span><br /><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;AppID&#092;ad.DLL</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;AppID&#092;iconhandle.DLL</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;AppID&#092;{DD0AD1D0-6C36-4894-B38E-
9E5D3392114D}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;AppID&#092;{F6136F5A-4C58-40C7-8DFC-
945F5570CB79}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{73EF2588-E4D1-4623-9B45-
E0BBD6B65E9C}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{73EF2588-E4D1-4623-9B45-
E0BBD6B65E9C}&#092;InprocServer32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{73EF2588-E4D1-4623-9B45-
E0BBD6B65E9C}&#092;ProgID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{73EF2588-E4D1-4623-9B45-
E0BBD6B65E9C}&#092;Programmable</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{73EF2588-E4D1-4623-9B45-
E0BBD6B65E9C}&#092;TypeLib</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{73EF2588-E4D1-4623-9B45-
E0BBD6B65E9C}&#092;VersionIndependentProgID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AEFA7E78-CF7E-4550-829F-
2C786A0070BF}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AEFA7E78-CF7E-4550-829F-
2C786A0070BF}&#092;InprocServer32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AEFA7E78-CF7E-4550-829F-
2C786A0070BF}&#092;ProgID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AEFA7E78-CF7E-4550-829F-
2C786A0070BF}&#092;Programmable</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AEFA7E78-CF7E-4550-829F-
2C786A0070BF}&#092;TypeLib</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AEFA7E78-CF7E-4550-829F-
2C786A0070BF}&#092;VersionIndependentProgID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{72397142-9352-4A45-
99AD-2EF143072AC0}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{72397142-9352-4A45-
99AD-2EF143072AC0}&#092;ProxyStubClsid</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{72397142-9352-4A45-
99AD-2EF143072AC0}&#092;ProxyStubClsid32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{72397142-9352-4A45-
99AD-2EF143072AC0}&#092;TypeLib</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{78D814F1-9774-4F37-
B7F9-CD8F88558B53}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{78D814F1-9774-4F37-
B7F9-CD8F88558B53}&#092;ProxyStubClsid</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{78D814F1-9774-4F37-
B7F9-CD8F88558B53}&#092;ProxyStubClsid32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{78D814F1-9774-4F37-
B7F9-CD8F88558B53}&#092;TypeLib</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;txtfile&#092;shellEx</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;txtfile&#092;shellEx&#092;IconHandler</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{581F1707-4AD0-4B7B-AD6E-
057DB8F686F3}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{581F1707-4AD0-4B7B-AD6E-
057DB8F686F3}&#092;1.0</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{581F1707-4AD0-4B7B-AD6E-
057DB8F686F3}&#092;1.0&#092;0</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{581F1707-4AD0-4B7B-AD6E-
057DB8F686F3}&#092;1.0&#092;0&#092;win32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{581F1707-4AD0-4B7B-AD6E-
057DB8F686F3}&#092;1.0&#092;FLAGS</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{581F1707-4AD0-4B7B-AD6E-
057DB8F686F3}&#092;1.0&#092;HELPDIR</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{5A0063A5-F6E9-4947-9D1C-
9300CE1BB342}</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{5A0063A5-F6E9-4947-9D1C-
9300CE1BB342}&#092;1.0</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{5A0063A5-F6E9-4947-9D1C-
9300CE1BB342}&#092;1.0&#092;0</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{5A0063A5-F6E9-4947-9D1C-
9300CE1BB342}&#092;1.0&#092;0&#092;win32</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{5A0063A5-F6E9-4947-9D1C-
9300CE1BB342}&#092;1.0&#092;FLAGS</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{5A0063A5-F6E9-4947-9D1C-
9300CE1BB342}&#092;1.0&#092;HELPDIR</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ad.h</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ad.h&#092;CLSID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ad.h&#092;CurVer</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ad.h.1</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ad.h.1&#092;CLSID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;iconhandle.seticon</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;iconhandle.seticon&#092;CLSID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;iconhandle.seticon&#092;CurVer</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;iconhandle.seticon.1</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;iconhandle.seticon.1&#092;CLSID</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Browser Helper Objects</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Browser Helper Objects&#092;{73EF2588-E4D1-4623-9B45-E0BBD6B65E9C}</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;AppID&#092;ad.DLL]</span></li><ul><li><span style="font-size: small">AppID = "{F6136F5A-4C58-40C7-8DFC-945F5570CB79}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;AppID&#092;iconhandle.DLL]</span></li><ul><li><span style="font-size: small">AppID = "{DD0AD1D0-6C36-4894-B38E-9E5D3392114D}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;AppID&#092;{DD0AD1D0-6C36-4894-B38E-
9E5D3392114D}]</span></li><ul><li><span style="font-size: small">(Default) = "iconhandle"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;AppID&#092;{F6136F5A-4C58-40C7-8DFC-
945F5570CB79}]</span></li><ul><li><span style="font-size: small">(Default) = "ad"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{73EF2588-E4D1-4623-9B45-
E0BBD6B65E9C}&#092;VersionIndependentProgID]</span></li><ul><li><span style="font-size: small">(Default) = "ad.h"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{73EF2588-E4D1-4623-9B45-
E0BBD6B65E9C}&#092;TypeLib]</span></li><ul><li><span style="font-size: small">(Default) = "{5A0063A5-F6E9-4947-9D1C-9300CE1BB342}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{73EF2588-E4D1-4623-9B45-
E0BBD6B65E9C}&#092;ProgID]</span></li><ul><li><span style="font-size: small">(Default) = "ad.h.1"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{73EF2588-E4D1-4623-9B45-
E0BBD6B65E9C}&#092;InprocServer32]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;webad.dll"</span></li><li><span style="font-size: small">ThreadingModel = "Apartment"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{73EF2588-E4D1-4623-9B45-
E0BBD6B65E9C}]</span></li><ul><li><span style="font-size: small">(Default) = "h Class"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AEFA7E78-CF7E-4550-829F-
2C786A0070BF}&#092;VersionIndependentProgID]</span></li><ul><li><span style="font-size: small">(Default) = "iconhandle.seticon"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AEFA7E78-CF7E-4550-829F-
2C786A0070BF}&#092;TypeLib]</span></li><ul><li><span style="font-size: small">(Default) = "{581F1707-4AD0-4B7B-AD6E-057DB8F686F3}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AEFA7E78-CF7E-4550-829F-
2C786A0070BF}&#092;ProgID]</span></li><ul><li><span style="font-size: small">(Default) = "iconhandle.seticon.1"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AEFA7E78-CF7E-4550-829F-
2C786A0070BF}&#092;InprocServer32]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;iconhandle.dll"</span></li><li><span style="font-size: small">ThreadingModel = "Apartment"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{AEFA7E78-CF7E-4550-829F-
2C786A0070BF}]</span></li><ul><li><span style="font-size: small">(Default) = "seticon Class"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{72397142-9352-4A45-
99AD-2EF143072AC0}&#092;TypeLib]</span></li><ul><li><span style="font-size: small">(Default) = "{581F1707-4AD0-4B7B-AD6E-057DB8F686F3}"</span></li><li><span style="font-size: small">Version = "1.0"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{72397142-9352-4A45-
99AD-2EF143072AC0}&#092;ProxyStubClsid32]</span></li><ul><li><span style="font-size: small">(Default) = "{00020424-0000-0000-C000-000000000046}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{72397142-9352-4A45-
99AD-2EF143072AC0}&#092;ProxyStubClsid]</span></li><ul><li><span style="font-size: small">(Default) = "{00020424-0000-0000-C000-000000000046}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{72397142-9352-4A45-
99AD-2EF143072AC0}]</span></li><ul><li><span style="font-size: small">(Default) = "Iseticon"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{78D814F1-9774-4F37-
B7F9-CD8F88558B53}&#092;TypeLib]</span></li><ul><li><span style="font-size: small">(Default) = "{5A0063A5-F6E9-4947-9D1C-9300CE1BB342}"</span></li><li><span style="font-size: small">Version = "1.0"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{78D814F1-9774-4F37-
B7F9-CD8F88558B53}&#092;ProxyStubClsid32]</span></li><ul><li><span style="font-size: small">(Default) = "{00020424-0000-0000-C000-000000000046}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{78D814F1-9774-4F37-
B7F9-CD8F88558B53}&#092;ProxyStubClsid]</span></li><ul><li><span style="font-size: small">(Default) = "{00020424-0000-0000-C000-000000000046}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{78D814F1-9774-4F37-
B7F9-CD8F88558B53}]</span></li><ul><li><span style="font-size: small">(Default) = "Ih"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;txtfile&#092;shellEx&#092;IconHandler]</span></li><ul><li><span style="font-size: small">(Default) = "{AEFA7E78-CF7E-4550-829F-2C786A0070BF}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{581F1707-4AD0-4B7B-AD6E-
057DB8F686F3}&#092;1.0&#092;0&#092;win32]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;iconhandle.dll"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{581F1707-4AD0-4B7B-AD6E-
057DB8F686F3}&#092;1.0&#092;HELPDIR]</span></li><ul><li><span style="font-size: small">(Default) = "%Windir%&#092;system32"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{581F1707-4AD0-4B7B-AD6E-
057DB8F686F3}&#092;1.0&#092;FLAGS]</span></li><ul><li><span style="font-size: small">(Default) = "0"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{581F1707-4AD0-4B7B-AD6E-
057DB8F686F3}&#092;1.0]</span></li><ul><li><span style="font-size: small">(Default) = "iconhandle 1.0 ï¿½ï¿½ï¿½Í¿ï¿½"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{5A0063A5-F6E9-4947-9D1C-
9300CE1BB342}&#092;1.0&#092;0&#092;win32]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;webad.dll"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{5A0063A5-F6E9-4947-9D1C-
9300CE1BB342}&#092;1.0&#092;HELPDIR]</span></li><ul><li><span style="font-size: small">(Default) = "%Windir%&#092;system32"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{5A0063A5-F6E9-4947-9D1C-
9300CE1BB342}&#092;1.0&#092;FLAGS]</span></li><ul><li><span style="font-size: small">(Default) = "0"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;TypeLib&#092;{5A0063A5-F6E9-4947-9D1C-
9300CE1BB342}&#092;1.0]</span></li><ul><li><span style="font-size: small">(Default) = "ad 1.0 ï¿½ï¿½ï¿½Í¿ï¿½"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ad.h&#092;CurVer]</span></li><ul><li><span style="font-size: small">(Default) = "ad.h.1"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ad.h&#092;CLSID]</span></li><ul><li><span style="font-size: small">(Default) = "{73EF2588-E4D1-4623-9B45-E0BBD6B65E9C}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ad.h]</span></li><ul><li><span style="font-size: small">(Default) = "h Class"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ad.h.1&#092;CLSID]</span></li><ul><li><span style="font-size: small">(Default) = "{73EF2588-E4D1-4623-9B45-E0BBD6B65E9C}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;ad.h.1]</span></li><ul><li><span style="font-size: small">(Default) = "h Class"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;iconhandle.seticon&#092;CurVer]</span></li><ul><li><span style="font-size: small">(Default) = "iconhandle.seticon.1"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;iconhandle.seticon&#092;CLSID]</span></li><ul><li><span style="font-size: small">(Default) = "{AEFA7E78-CF7E-4550-829F-2C786A0070BF}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;iconhandle.seticon]</span></li><ul><li><span style="font-size: small">(Default) = "seticon Class"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;iconhandle.seticon.1&#092;CLSID]</span></li><ul><li><span style="font-size: small">(Default) = "{AEFA7E78-CF7E-4550-829F-2C786A0070BF}"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;iconhandle.seticon.1]</span></li><ul><li><span style="font-size: small">(Default) = "seticon Class"</span></li></ul></ul></ul><span style="font-size: small">ແລ້ວມັນຍັງ copy ຕົວເອງໃສ່ USB Drive ແລະໃສ່ຊື່ດຽວກັບ Folder ແຕ່ແມ່ນ .EXE ແລ້ວກໍ່ Hidden folder ເຮົາໄວ້</span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Sun, 28 Jun 2009 06:46:35 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[Virus ''Thyet Myo Hacking Day" how to kill it?]]></description>
<author>vannasak777&lt;jesus0174@nospam.com&gt;</author>
<pubDate>Wed, 01 Jul 2009 11:44:06 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div style="text-align: center"><img src="http://img.laoupload.com/images/m26m11oe9vv9y4duxu81.jpg" style="border: 0px solid black" /></div><br /><span style="font-size: small"><strong>>File System Modifications</strong></span><br /><span style="font-size: small">-c:&#092;explorer.exe<br />-%ProgramFiles%&#092;explorer.exe<br />-%ProgramFiles%&#092;{17350501621331}.exe<br />-c:&#092;RECYCLER&#092;explorer.exe<br />-%Windir%&#092;BackUp&#092;explorer.exe<br />-%Windir%&#092;BackUp&#092;autorun.inf</span><br /><strong><span style="font-size: small">>Registry Modifications</span></strong> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">explorer = "%Windir%&#092;BackUp&#092;explorer.exe"</span></li></ul><span style="font-size: small"><br /><em>so that explorer.exe runs every time Windows starts</em><br /></span><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion]</span></li><ul><li><span style="font-size: small">{17350501621331} = "C:&#092;explorer.exe"</span></li></ul></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Thu, 02 Jul 2009 15:29:33 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີທ່ານ</span><br /><span style="font-size: small">ຊ່ວຍແດ່ ບໍ່ຮູ້ເປັນຫຍັງ ເວລາໃຊ້ຄອມໄດ້ປະມານ 20 ກວ່ານາທີ ມັນຈະມີຄຳເຕືອນຂື້ນມາວ່າ<br />Explorer.exe-application Error<br />The instruction at"0x191c0000"referenced memory at"0x000000", The memory could not be"written"<br />Click on OK to terminate the grogram<br />Click on CANCEL to debug the rogram<br />  ແລະ ເຂົ້າໃຊ້ໂປແກມບາງຢ່າງບໍ່ໄດ້<br />ຊ່ວຍບອກວິທີແກ່ແດ່ເດີທ່ານ<br /><br />ຂໍຂອບໃຈ<br /></span>]]></description>
<author>panh&lt;ipsalady@nospam.com&gt;</author>
<pubDate>Thu, 09 Jul 2009 11:30:52 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: x-small">ສະບາຍດີ<br />ຂ້ອຍມີບັນຫາ virus ມັນເຮັດໃຫ້ຄຳສັງ Show hidden files and folders ບໍ່ເຮັດວຽກ<br />ເວລາເຂົ້າໄປໃນ Tools&#092;folder Options&#092;View ແລ້ວເລືອກເອົາ show hidden files and folders ແລ້ວກົດ OK ມັນກໍ່ຍັງບໍ່ show hidden files.<br />ເຂົ້າໄປເບິ່ງບ່ອນ folder options ມັນຍັງໝາຍຢູ່ບ່ອນ do not show hidden files and folders ຄືເກົ່າ.<br />ບໍ່ຮູ້ວ່າຕິດ virus ຫຍັງ? run virus scan ກໍ່ບໍ່ພົບ<br />ຢາກຮູ້ວ່າຈະຂ້າ virus ຕົວນີ້ໄດ້ແນວໃດ?<br />ຂອບໃຈ<br /></span>]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Fri, 10 Jul 2009 06:47:53 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: x-small">ຂ້ອຍມີ</span> <span style="font-size: x-small">snapshot file ຂອງເຄື່ອງຂ້ອຍໃຫ້ທ່ານເບິງນຳ ຊ່ວຍແກ້ໃຫ້ແດ່<br />ສ່ວນທ່ານວ່າໃຫ້ download Registry repair ຢູ່ web ໃດ?<br />Thanks<br /></span>]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Fri, 10 Jul 2009 07:41:24 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: x-small">ສະບາຍດີ</span><br /><span style="font-size: x-small">ຂ້ອຍມີບັນຫາ<span style="font-size: x-small"> </span></span><span style="font-size: x-small">Lao AV ມາຖາມ</span><br /><span style="font-size: x-small">ຂ້ອຍພະຍາຍາມຕິດຕັ້ງ Lao AV ບໍ່ໄດ້ຈັກເທື່ອ ຫລັງຈາກທີ່ຕິດຕັ້ງແລ້ວມັນກໍ່ຟ້ອງວ່າ Unspecified errorແລະ ລາຍງານຂໍ້ຜິດພາດຂອງໂປແກມຄື ໂປແກມອາດຈະມີຂໍ້ຜິດພາດແລ້ວໃນຖານຂໍ້ມູນຂອງໂປແກມ.<br /><br />ຂ້ອຍໄດ້ attchment error file ໃຫ້ທ່ານເບິ່ງນຳ<br /><br />ຂອບໃຈ</span><br /><!--[if !mso]> <style> v&#092;:* {behavior:url(#default#VML);} o&#092;:* {behavior:url(#default#VML);} w&#092;:* {behavior:url(#default#VML);} .shape {behavior:url(#default#VML);} </style> <![endif]--><!--[if gte mso 9]><xml>  <w:WordDocument>   <w:View>Normal</w:View>   <w:Zoom>0</w:Zoom>   <w:TrackMoves>false</w:TrackMoves>   <w:TrackFormatting/>   <w:PunctuationKerning/>   <w:ValidateAgainstSchemas/>   <w:SaveIfXMLInvalid>false</w:SaveIfXMLInvalid>   <w:IgnoreMixedContent>false</w:IgnoreMixedContent>   <w:AlwaysShowPlaceholderText>false</w:AlwaysShowPlaceholderText>   <w:DoNotPromoteQF/>   <w:LidThemeOther>EN-US</w:LidThemeOther>   <w:LidThemeAsian>ZH-CN</w:LidThemeAsian>   <w:LidThemeComplexScript>TH</w:LidThemeComplexScript>   <w:Compatibility>    <w:BreakWrappedTables/>    <w:SnapToGridInCell/>    <w:ApplyBreakingRules/>    <w:WrapTextWithPunct/>    <w:UseAsianBreakRules/>    <w:DontGrowAutofit/>    <w:SplitPgBreakAndParaMark/>    <w:DontVertAlignCellWithSp/>    <w:DontBreakConstrainedForcedTables/>    <w:DontVertAlignInTxbx/>    <w:Word11KerningPairs/>    <w:CachedColBalance/>    <w:UseFELayout/>   </w:Compatibility>   <w:BrowserLevel>MicrosoftInternetExplorer4</w:BrowserLevel>   <m:mathPr>    <m:mathFont m:val="Cambria Math"/>    <m:brkBin m:val="before"/>    <m:brkBinSub m:val="&#45;-"/>    <m:smallFrac m:val="off"/>    <m:dispDef/>    <m:lMargin m:val="0"/>    <m:rMargin m:val="0"/>    <m:defJc m:val="centerGroup"/>    <m:wrapIndent m:val="1440"/>    <m:intLim m:val="subSup"/>    <m:naryLim m:val="undOvr"/>   </m:mathPr></w:WordDocument> </xml><![endif]--><!--[if gte mso 9]><xml>  <w:LatentStyles DefLockedState="false" DefUnhideWhenUsed="true"   DefSemiHidden="true" DefQFormat="false" DefPriority="99"   LatentStyleCount="267">   <w:LsdException Locked="false" Priority="0" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Normal"/>   <w:LsdException Locked="false" Priority="9" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="heading 1"/>   <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 2"/>   <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 3"/>   <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 4"/>   <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 5"/>   <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 6"/>   <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 7"/>   <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 8"/>   <w:LsdException Locked="false" Priority="9" QFormat="true" Name="heading 9"/>   <w:LsdException Locked="false" Priority="39" Name="toc 1"/>   <w:LsdException Locked="false" Priority="39" Name="toc 2"/>   <w:LsdException Locked="false" Priority="39" Name="toc 3"/>   <w:LsdException Locked="false" Priority="39" Name="toc 4"/>   <w:LsdException Locked="false" Priority="39" Name="toc 5"/>   <w:LsdException Locked="false" Priority="39" Name="toc 6"/>   <w:LsdException Locked="false" Priority="39" Name="toc 7"/>   <w:LsdException Locked="false" Priority="39" Name="toc 8"/>   <w:LsdException Locked="false" Priority="39" Name="toc 9"/>   <w:LsdException Locked="false" Priority="35" QFormat="true" Name="caption"/>   <w:LsdException Locked="false" Priority="10" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Title"/>   <w:LsdException Locked="false" Priority="1" Name="Default Paragraph Font"/>   <w:LsdException Locked="false" Priority="11" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Subtitle"/>   <w:LsdException Locked="false" Priority="22" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Strong"/>   <w:LsdException Locked="false" Priority="20" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Emphasis"/>   <w:LsdException Locked="false" Priority="59" SemiHidden="false"    UnhideWhenUsed="false" Name="Table Grid"/>   <w:LsdException Locked="false" UnhideWhenUsed="false" Name="Placeholder Text"/>   <w:LsdException Locked="false" Priority="1" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="No Spacing"/>   <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading"/>   <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List"/>   <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid"/>   <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1"/>   <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2"/>   <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1"/>   <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2"/>   <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1"/>   <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2"/>   <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3"/>   <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List"/>   <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading"/>   <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List"/>   <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid"/>   <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 1"/>   <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 1"/>   <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 1"/>   <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 1"/>   <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 1"/>   <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 1"/>   <w:LsdException Locked="false" UnhideWhenUsed="false" Name="Revision"/>   <w:LsdException Locked="false" Priority="34" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="List Paragraph"/>   <w:LsdException Locked="false" Priority="29" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Quote"/>   <w:LsdException Locked="false" Priority="30" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Intense Quote"/>   <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 1"/>   <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 1"/>   <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 1"/>   <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 1"/>   <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 1"/>   <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 1"/>   <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 1"/>   <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 1"/>   <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 2"/>   <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 2"/>   <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 2"/>   <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 2"/>   <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 2"/>   <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 2"/>   <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 2"/>   <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 2"/>   <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 2"/>   <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 2"/>   <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 2"/>   <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 2"/>   <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 2"/>   <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 2"/>   <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 3"/>   <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 3"/>   <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 3"/>   <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 3"/>   <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 3"/>   <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 3"/>   <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 3"/>   <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 3"/>   <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 3"/>   <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 3"/>   <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 3"/>   <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 3"/>   <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 3"/>   <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 3"/>   <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 4"/>   <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 4"/>   <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 4"/>   <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 4"/>   <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 4"/>   <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 4"/>   <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 4"/>   <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 4"/>   <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 4"/>   <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 4"/>   <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 4"/>   <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 4"/>   <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 4"/>   <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 4"/>   <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 5"/>   <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 5"/>   <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 5"/>   <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 5"/>   <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 5"/>   <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 5"/>   <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 5"/>   <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 5"/>   <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 5"/>   <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 5"/>   <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 5"/>   <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 5"/>   <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 5"/>   <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 5"/>   <w:LsdException Locked="false" Priority="60" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Shading Accent 6"/>   <w:LsdException Locked="false" Priority="61" SemiHidden="false"    UnhideWhenUsed="false" Name="Light List Accent 6"/>   <w:LsdException Locked="false" Priority="62" SemiHidden="false"    UnhideWhenUsed="false" Name="Light Grid Accent 6"/>   <w:LsdException Locked="false" Priority="63" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 1 Accent 6"/>   <w:LsdException Locked="false" Priority="64" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Shading 2 Accent 6"/>   <w:LsdException Locked="false" Priority="65" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 1 Accent 6"/>   <w:LsdException Locked="false" Priority="66" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium List 2 Accent 6"/>   <w:LsdException Locked="false" Priority="67" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 1 Accent 6"/>   <w:LsdException Locked="false" Priority="68" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 2 Accent 6"/>   <w:LsdException Locked="false" Priority="69" SemiHidden="false"    UnhideWhenUsed="false" Name="Medium Grid 3 Accent 6"/>   <w:LsdException Locked="false" Priority="70" SemiHidden="false"    UnhideWhenUsed="false" Name="Dark List Accent 6"/>   <w:LsdException Locked="false" Priority="71" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Shading Accent 6"/>   <w:LsdException Locked="false" Priority="72" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful List Accent 6"/>   <w:LsdException Locked="false" Priority="73" SemiHidden="false"    UnhideWhenUsed="false" Name="Colorful Grid Accent 6"/>   <w:LsdException Locked="false" Priority="19" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Subtle Emphasis"/>   <w:LsdException Locked="false" Priority="21" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Intense Emphasis"/>   <w:LsdException Locked="false" Priority="31" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Subtle Reference"/>   <w:LsdException Locked="false" Priority="32" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Intense Reference"/>   <w:LsdException Locked="false" Priority="33" SemiHidden="false"    UnhideWhenUsed="false" QFormat="true" Name="Book Title"/>   <w:LsdException Locked="false" Priority="37" Name="Bibliography"/>   <w:LsdException Locked="false" Priority="39" QFormat="true" Name="TOC Heading"/>  </w:LatentStyles> </xml><![endif]--> <!--  /* Font Definitions */  @font-face 	{font-family:SimSun; 	panose-1:2 1 6 0 3 1 1 1 1 1; 	mso-font-alt:宋体; 	mso-font-charset:134; 	mso-generic-font-family:auto; 	mso-font-pitch:variable; 	mso-font-signature:3 680460288 22 0 262145 0;} @font-face 	{font-family:"Cordia New"; 	panose-1:2 11 3 4 2 2 2 2 2 4; 	mso-font-charset:0; 	mso-generic-font-family:swiss; 	mso-font-pitch:variable; 	mso-font-signature:-2130706429 0 0 0 65537 0;} @font-face 	{font-family:"Cambria Math"; 	panose-1:2 4 5 3 5 4 6 3 2 4; 	mso-font-charset:0; 	mso-generic-font-family:roman; 	mso-font-pitch:variable; 	mso-font-signature:-1610611985 1107304683 0 0 159 0;} @font-face 	{font-family:Calibri; 	panose-1:2 15 5 2 2 2 4 3 2 4; 	mso-font-charset:0; 	mso-generic-font-family:swiss; 	mso-font-pitch:variable; 	mso-font-signature:-1610611985 1073750139 0 0 159 0;} @font-face 	{font-family:"&#092;@SimSun"; 	panose-1:2 1 6 0 3 1 1 1 1 1; 	mso-font-charset:134; 	mso-generic-font-family:auto; 	mso-font-pitch:variable; 	mso-font-signature:3 680460288 22 0 262145 0;}  /* Style Definitions */  p.MsoNormal, li.MsoNormal, div.MsoNormal 	{mso-style-unhide:no; 	mso-style-qformat:yes; 	mso-style-parent:""; 	margin-top:0cm; 	margin-right:0cm; 	margin-bottom:10.0pt; 	margin-left:0cm; 	line-height:115%; 	mso-pagination:widow-orphan; 	font-size:11.0pt; 	mso-bidi-font-size:14.0pt; 	font-family:"Calibri","sans-serif"; 	mso-ascii-font-family:Calibri; 	mso-ascii-theme-font:minor-latin; 	mso-fareast-font-family:SimSun; 	mso-fareast-theme-font:minor-fareast; 	mso-hansi-font-family:Calibri; 	mso-hansi-theme-font:minor-latin; 	mso-bidi-font-family:"Cordia New"; 	mso-bidi-theme-font:minor-bidi;} .MsoChpDefault 	{mso-style-type:export-only; 	mso-default-props:yes; 	mso-ascii-font-family:Calibri; 	mso-ascii-theme-font:minor-latin; 	mso-fareast-font-family:SimSun; 	mso-fareast-theme-font:minor-fareast; 	mso-hansi-font-family:Calibri; 	mso-hansi-theme-font:minor-latin; 	mso-bidi-font-family:"Cordia New"; 	mso-bidi-theme-font:minor-bidi;} .MsoPapDefault 	{mso-style-type:export-only; 	margin-bottom:10.0pt; 	line-height:115%;} @page Section1 	{size:612.0pt 792.0pt; 	margin:72.0pt 72.0pt 72.0pt 72.0pt; 	mso-header-margin:36.0pt; 	mso-footer-margin:36.0pt; 	mso-paper-source:0;} div.Section1 	{page:Section1;} --> <!--[if gte mso 10]> <style>  /* Style Definitions */  table.MsoNormalTable 	{mso-style-name:"Table Normal"; 	mso-tstyle-rowband-size:0; 	mso-tstyle-colband-size:0; 	mso-style-noshow:yes; 	mso-style-priority:99; 	mso-style-qformat:yes; 	mso-style-parent:""; 	mso-padding-alt:0cm 5.4pt 0cm 5.4pt; 	mso-para-margin-top:0cm; 	mso-para-margin-right:0cm; 	mso-para-margin-bottom:10.0pt; 	mso-para-margin-left:0cm; 	line-height:115%; 	mso-pagination:widow-orphan; 	font-size:11.0pt; 	mso-bidi-font-size:14.0pt; 	font-family:"Calibri","sans-serif"; 	mso-ascii-font-family:Calibri; 	mso-ascii-theme-font:minor-latin; 	mso-hansi-font-family:Calibri; 	mso-hansi-theme-font:minor-latin;} </style> <![endif]--><!--[if gte mso 9]><xml>  <o:shapedefaults v:ext="edit" spidmax="2050"/> </xml><![endif]--><!--[if gte mso 9]><xml>  <o:shapelayout v:ext="edit">   <o:idmap v:ext="edit" data="1"/>  </o:shapelayout></xml><![endif]--><!--[if gte vml 1]><v:shapetype id="_x0000_t75"  coordsize="21600,21600" o:spt="75" o:preferrelative="t" path="m@4@5l@4@11@9@11@9@5xe"  filled="f" stroked="f">  <v:stroke joinstyle="miter"/>  <v:formulas>   <v:f eqn="if lineDrawn pixelLineWidth 0"/>   <v:f eqn="sum @0 1 0"/>   <v:f eqn="sum 0 0 @1"/>   <v:f eqn="prod @2 1 2"/>   <v:f eqn="prod @3 21600 pixelWidth"/>   <v:f eqn="prod @3 21600 pixelHeight"/>   <v:f eqn="sum @0 0 1"/>   <v:f eqn="prod @6 1 2"/>   <v:f eqn="prod @7 21600 pixelWidth"/>   <v:f eqn="sum @8 21600 0"/>   <v:f eqn="prod @7 21600 pixelHeight"/>   <v:f eqn="sum @10 21600 0"/>  </v:formulas>  <v:path o:extrusionok="f" gradientshapeok="t" o:connecttype="rect"/>  <o:lock v:ext="edit" aspectratio="t"/> </v:shapetype><v:shape id="_x0000_s1026" type="#_x0000_t75" style='position:absolute;  margin-left:181pt;margin-top:68.65pt;width:118.5pt;height:94.5pt;z-index:-1'  wrapcoords="-137 0 -137 21429 21600 21429 21600 0 -137 0">  <v:imagedata src="file:///C:&#092;Users&#092;lin&#092;AppData&#092;Local&#092;Temp&#092;msohtmlclip1&#092;01&#092;clip_image001.png"   o:title=""/>  <w:wrap type="through"/> </v:shape><![endif]--><!--[if !vml]--><!--[endif]-->]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Fri, 10 Jul 2009 10:16:04 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><strong>+File System Modifications</strong></span><br /><span style="font-size: small">c:&#092;autorun.inf<br />c:&#092;vn.cmd<br />%System%&#092;kva8wr.exe<br />%System%&#092;bgotrtu0.dll<br />%System%&#092;uweyiwe0.dll</span><br /><span style="font-size: small"><strong>+Memory Modifications</strong></span><br /><span style="font-size: small">iexplore.exe<br />kva8wr.exe</span><br /><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><ul><li><span style="font-size: small">The newly created Registry Value is:</span></li><ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">kvasoft = "%System%&#092;kva8wr.exe"</span></li></ul><span style="font-size: small"><br /><em>so that kva8wr.exe runs every time Windows starts</em><br /></span></ul></ul> <ul><li><span style="font-size: small">The following Registry Value was modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Hidden&#092;SHOWALL]</span></li><ul><li><span style="font-size: small">CheckedValue = 0x00000000</span></li></ul></ul></ul><span style="font-size: small">Please Download Remove tools for Kill kva8wr.exe in this website<br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 10 Jul 2009 12:49:18 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ໄວລັດໂຕນີ້ໄປບອກ Network ບໍ່ໄຫ້ແຊຂໍ້ມູນໄດ້ແຕ່ເວລາ Ping ຫາເຫັນ ປິດ ໄຟວໍ ແລ້ວ ຕັ້ງກຸບດຽວກັນລະ ວີທີແກ້ເຮັດແນວໃດບອກແດ່ ຫລືມີໂປແກຮມຫຍັງແນະນຳແດ່ ໝາຍເຫດເວລາ Restart ມາໄໝ່ລະເຂ້າໄດ້ແຕ່ປະດົນແລ້ວເຂົ້າບໍ່ໄດ້ຄືເກົ່າ]]></description>
<author>chansamone191&lt;MONE_YURI@nospam.com&gt;</author>
<pubDate>Tue, 21 Jul 2009 09:47:59 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີທ່ານ<br />ຂ້າພະເຈົ້າຢາກຖາມວ່າ ໂຟນເດີຊື່ MSOCache ນີ້ມັນແມ່ນຫຍັງ ປະກົດວ່າມັນຈະມາເອງ ຢູ່ຊ່ອງ C,D ກະມີ ແລະ ມັນກໍ່ກີນເນື້ອທີ່ຮາດດິດຫລາຍສົມຄວນ, ເວລາຄິກເຂົ້າໄປມັນຈະເປັນໂຟນເດີທີ່ເປັນຕົວເລກ ແລະ ຟາຍສ່ວນຫລາຍຈະເປັນນາມສະກຸນ .CAB ບໍ່ຮູ້ວ່າມັນສຳຄັນບໍ່. ປະກົດວ່າ Delete ແລ້ວມັນກໍ່ກັບມາຄືນ.<br />ຊ່ວຍບອກແດ່ເດີທ່ານ.<br /><br />ຂໍຂອບໃຈ<br /></span>]]></description>
<author>panh&lt;ipsalady@nospam.com&gt;</author>
<pubDate>Wed, 22 Jul 2009 06:21:44 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: 14pt; font-family: 'Angsana New'">  <span style="font-size: small"><span style="font-family: Tahoma">Malware ທີ່ມີຊື່ວ່າ<span> </span>System Security<span> ເປັນ </span>Malware ຕົວໃໝ່ລ່າສູດທີ່ອອກມາໃນຮູບແບບຂອງໂປຼແກຼມAntivirus<span> ໂດຍຜ່ານການດາວໂຫຼດ ແລະຕິດຕັ້ງຜ່ານInternet ໂດຍພຶດຕິກຳຂອງ </span>Malware ປະເພດນີ້ຄື ຖ້າຫາກວ່າເຍື່ອຫລົງເຂົ້າໄປໃນເວບໄຊທີ່ມີ<span> </span>Malware ພວກນີ້ອາໄສຢູ່ມັນຈະ<span> </span>Popup<span> ໜ້າຕ່າງຂື້ນມາເພື່ອແຈ້ງໃຫ້ເຫຍື່ອປະມານວ່າດຽວນີ້ຄອມຂອງທ່ານຕິດໄວຮັດ<br />ຊະນິດຮ້າຍແຮງຢູ່ມີພຽງແຕ່ໂປຼແກຼມ </span>System Security<span> ເທົ່ານັ້ນທີ່ສາມາດຂ້າໄວຣັດ ແລະປ້ອງກັນທ່ານໃຫ້ປອດໄພຂາກ </span>virus ແລະ spyware ໄດ້ ຫາກເຫຍື່ອຫຼົງເຊື່ອກໍ່ ຈະກົດ OK ເພື່ອດາວໂຫຼດເອົາfile ດັ່ງກ່າວມາຕິດຕັ້ງ ຫຼືຕັວໃຫ້ Scan ຜ່ານ Internet ແລະເມື່ອທຳການດັ່ງກ່າວແລ້ວມັນກໍ່ຈະເຂົ້າມາເປັນກາຝາກ ແລະກວນໃຈທ່ານໂດຍທີ່ທຸກຕັ້ງທີ່ເປີດຄອມມັນຈະScan ຕົນເອງ ແລະກໍ່ກວນຢູ່ຫັນ ແຫລະ ບອກໃຫ້ສັ່ງຊື້ລາຍເຊັນ ບາງຕົນສັ່ງຊື້ລາຍເຊັນລຽບລ້ອຍແລ້ວກໍ່ຖືກພວກ Hacker ສວຍໃຊ້ທາງດັ່ງກ່າວເພື່ອລັກເອົາເງີນ, ບາງຄົນຊື້ໄປຕັ້ງຫຼາຍເທື່ອກໍ່ຍັງຖາມຢູ່<br /></span></span>ພວກເຮົາຈື່ງຂໍຕັ້ງຊື່ວ່າ Malware ຫຼອກລວງເດີພີ່ນ້ອງ<br /><br />ດ້ວຍຄວາມຫວັງດີຈາກ KKCOM gfu</span>]]></description>
<author>kkcom&lt;lyokkcom@nospam.com&gt;</author>
<pubDate>Wed, 22 Jul 2009 12:45:45 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ ສະບາຍດີ ທ່ານ Adam ຂ້າພະເຈົ້າມີແນວມາຂໍຮ້ອງທ່ານອີກແລ້ວ<br />ຄືວ່າຂ້າພະເຈົ້າໃຊ້ວິນໂດວິດຕາ ແລ້ວມັນຕິດໄວຣັດຕອນໃດກະບໍ່ຮູ້ຈັກ<br />ແຕ່ວ່າປະຈຸບັນນີ້ເວລາເປີດຄອມຂື້ມາແລ້ວ ມັນຈະຖາມວ່າຈະລຶບຟອນເດີ້ນີ້ຫຼືບໍ່ ຫຼື ເວລາເປີດຟາຍໃດຂື້ນມາມັນກະຈະຖາມແບບດຽວກັນ<br />ຂ້າພະເຈົ້າຍາກຊິບມັນມາໃຫ້ທ່ານຊ່ວຍສ້າງໂຕລີໂມບໃຫ້ ແຕ່ກໍ່ບໍ່ມີຄວາມສາມາດເນື່ອງຈາກວ່າ ຄອມມັນບໍ່ໃຫ້ຊິບ ແລະ ບໍ່ໃຫ້ເຮັດຫຍັງເລີຍ ມີແຕ່ຖາມວ່າຈະລຶບຫຼືບໍ່<br />ບໍ່ຮູ້ວ່າທ່ານພໍມີປະສົບການກັບໄວຣັດໂຕນີ້ເດ່ບໍ່ເນ໋າະ ວ່າຈະສາມາດແກ້ໄຂໄດ້ແນວໃດ<br /><br />ຂໍຂອບໃຈທ່ານລ່ວງໜ້າ]]></description>
<author>pickachu&lt;piggy_pick@nospam.com&gt;</author>
<pubDate>Tue, 11 Aug 2009 15:59:29 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີທ່ານ<br />ຂໍຖາມແດ່ ຄືວ່າ ຕາມປົກະຕິເຮົາດັບໂບຄີກໃສ່ file ເອກະສານ word ມັນຈະເຫັນໜ້າເອກະສານເລີຍ ແຕ່ໃນທີ່ນີ້ມັນບໍ່ເຫັນ ມັນຈະຂື້ນມາແຕ່ໂປແກມ word ບໍ່ເຫັນໜ້າ window word ເຮົາຕ້ອງໄດ້ໄປເປີດຢູ່ file > open ຈີ່ງເຫັນ ບໍ່ຮູ້ວ່າມັນເປັນນຳຫຍັງ ຊ່ວຍບອກແດ່ເດີທ່ານ.<br /><br />ຂໍຂອບໃຈ<br />ຢາກສົ່ງຮູບໃຫ້ເບີ່ງ ບໍ່ຮູ້ເຮັດ<br /></span>]]></description>
<author>panh&lt;ipsalady@nospam.com&gt;</author>
<pubDate>Wed, 19 Aug 2009 11:53:00 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[How can I delet folder " Recycler and Systemvolume infomation]]></description>
<author>film1&lt;noauthor@nospam.com&gt;</author>
<pubDate>Fri, 21 Aug 2009 05:00:54 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[Dear Sir,<br /><br />I woulk like to use Lao Language for typing e mail or type Lao in website<br />How can I do ? Now I use office 2007 and setup Lao script 7.03 which download from Laoav here, but I don't know how to use Lao language<br />please advise me<br /><br />Thank you very much]]></description>
<author>sook&lt;john3up@nospam.com&gt;</author>
<pubDate>Mon, 24 Aug 2009 11:20:04 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຂໍລົບກວນທ່ານຜູ້ຮູ້ທັງຫຼາຍ ຂ້າພະເຈົ້າມີບັນຫາກ່ຽວກັບDriverສຽງ ບັນຫາກໍ່ມີຢູ່ວ່າ ຂ້າພະເຈົ້າ ໄດ້ຟໍແມັດເຄື່ອງແລ້ວລົງ ວິນໂດໃໝ່(Xp Sp3) ເມື່ອເວລາລົງໄດຣເວີ້ໂຕອື່ນໆແມ່ນສາມາດລົງໄດ້ ໝົດ ຍັງເຫຼືອແຕ່ໄດຣເວີ້ສຽງຢ່າງດຽວທີ່ລົງບໍ່ໄດ້ ມັນເຕືອນວ່າ The Installing Driver is Failure!ທັງໆທີ່ໃຊ້ໄດຣເວີ້ຕົວເກົ່າທີ່ເຄີຍໃຊ້ຜ່ານມາ ມັນເຮັດໃຫ້ຂ້າພະເຈົ້າງົງໆບໍ່ຮູ້ວ່າເປັນຍ້ອນ ຫຍັງ ຈິ່ງມາຂໍຄຳແນະນຳຈາກບັນດາທ່ານທີ່ມີໄອເດຍດີໆ.]]></description>
<author>Tiger_Man&lt;amvilai@nospam.com&gt;</author>
<pubDate>Mon, 24 Aug 2009 18:17:11 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຄອມຂ້າພະເຈົ້າບໍ່ສາມາດກ໋ອບໂຟເດີໄດ້ ມັນບອກວ່າຊື່ຍາວເກິນໄປແຕ່ກ່ອນກະຍັງເຮັດໄດ້ ຜູ້ຮູ້ຊ່ວຍອະທິບາຍວິທີແກ້ໄຂໃຫ້ຂ້າພະເຈົ້າດ້ວຍ<br />ຂອບໃຈລວງໜ້າສຳລັບການຊ່ວຍເຫຼືອ]]></description>
<author>ti007&lt;noauthor@nospam.com&gt;</author>
<pubDate>Fri, 04 Sep 2009 04:40:34 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<strong><span style="font-size: small">+File System Modifications</span></strong><br /><span style="font-size: small">c:&#092;a1agmur.cmd<br />c:&#092;autorun.inf<br />%System%&#092;nmdfgds0.dll<br />%System%&#092;nmdfgds2.dll<br />%System%&#092;olhrwef.exe</span><br /><span style="font-size: small"><strong>+Memory Modifications</strong></span><br /><span style="font-size: small">olhrwef.exe<br />iexplore.exe</span><br /><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><ul><li><span style="font-size: small">The newly created Registry Value is:</span></li><ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">cdoosoft = "%System%&#092;olhrwef.exe"</span></li></ul><span style="font-size: small"><br /><em>so that olhrwef.exe runs every time Windows starts</em><br /></span></ul></ul> <ul><li><span style="font-size: small">The following Registry Value was modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer
&#092;Advanced&#092;Folder&#092;Hidden&#092;SHOWALL]</span></li><ul><li><span style="font-size: small">CheckedValue = </span></li></ul></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 07 Sep 2009 11:10:19 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ອາການ:<br />ຈະເຮັດໃຫ້ເຂົ້າ Window ບໍ່ໄດ້ ຫຼື ບໍ່ກໍ່ ເປັນໜ້າຕ່າງ Windows ແລະຖາມຫາ Pass  ແຕ່ເມື່ອ key ໃສ່ແລ້ວກັບເຂົ້າບໍ່ໄດ້ຄືເກົ່າ<br />ສາເຫດ: ເພາະ file ໃນ Windows ເສຍເຊັ່ນ:<br />Userinit.exe,Comres.dll,advapi32.dll,Run32.dll,kernel32.dll,. . . . . file ຈຳພວກດັ່ງກ່າວເມື່ອໄວຣັດເຂົ້າໄປຈະໄປລົບfile ດັ່ງກ່າວຖີ້ມ<br />ເຮັດໃຫ້ເຂົ້າ Windows ບໍ່ໄດຄືດັ່ງກ່າວ<br /><br />ວິທີແກ້ ຄື: ໃຊ້ Hiren boot ຫຼື Super boot ຫຼື Windows PE  ເຂົ້າໄປໃນ C:/windows/System32 ແລ້ວCopy File ທີ່ເສຍດັ່ງກ່າວ ໄປແທນທີ່ ແລ້ວກໍ່ສາມາດ ເປີດເຂົ້າໄປໃນ Windows ໄດ້ແລ້ວ ບໍ່ຈ້ອງໄປລົງ Windows ໃໝ່ໃຫ້ເສຍເວລາ<br /><br />ຫັຼງຂາກເຂົ້າໄປໃນ Windows ໄດ້ແລ້ວຢ່າລືມ Update Laoantivirus (ກໍລະນີ ຄົນທີ່ໄຊ້ Laos Antivirus)</span>]]></description>
<author>kkcom&lt;lyokkcom@nospam.com&gt;</author>
<pubDate>Sun, 13 Sep 2009 09:36:02 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><strong>+File System Modifications</strong></span><br /><table class="tbl" cellpadding="5" cellspacing="0"><tbody><tr><td class="cell_1"> <span style="font-size: small">c:&#092;autorun.inf </span></td></tr></tbody></table><span style="font-size: small">%AppData%&#092;control.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />%AppData%&#092;Microsoft&#092;CD Burning&#092;Mp3.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />c:&#092;Temp.pif<br />%Windir%&#092;Loikaw.exe<br />%System%&#092;extramain.exe<br />%System%&#092;Iexplorer.exe<img src="http://www.threatexpert.com/resources/flag.gif" style="border: medium none " /><br />[file]<br />%Windir%&#092;%UserName%.exe<br />%DesktopDir%&#092;Virus Information.txt<br />%AppData%&#092;Microsoft&#092;CD Burning&#092;autorun.inf </span>  <br /><span style="font-size: small"><strong>+Registry Modifications</strong></span><br /><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;soesoe</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;soesoe&#092;DefaultIcon</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;s
ystem</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{20D04FE0-3AEA-1069-A2D8-
08002B30309D}&#092;DefaultIcon]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;winlogon.exe,0"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;soesoe&#092;DefaultIcon]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;mshearts.exe,0"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">load = "%Windir%&#092;Loikaw.exe"</span></li><li><span style="font-size: small">ï¿½*ï¿½ = "%AppData%&#092;control.exe"</span></li></ul><span style="font-size: small"><br /><em>so that Loikaw.exe runs every time Windows starts</em><br /><em>so that control.exe runs every time Windows starts</em><br /></span><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
Explorer]</span></li><ul><li><span style="font-size: small">NoFind = 0x00000001</span></li><li><span style="font-size: small">NoFolderOptions = 0x00000001</span></li></ul><span style="font-size: small"><br /><em>to remove the Folder Options item from all Windows Explorer menus and from Control Panel</em><br /></span><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
system]</span></li><ul><li><span style="font-size: small">DisableTaskMgr = 0x00000001</span></li><li><span style="font-size: small">DisableRegistryTools = 0x00000001</span></li></ul><span style="font-size: small"><br /><em>to prevent users from starting Task Manager (Taskmgr.exe)</em><br /><em>to disable the Windows registry editors (Regedt32.exe and Regedit.exe)</em><br /></span></ul></ul> <ul><li><span style="font-size: small">The following Registry Value was deleted:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{20D04FE0-3AEA-1069-A2D8-
08002B30309D}&#092;DefaultIcon]</span></li><ul><li><span style="font-size: small">(Default) = "%SystemRoot%&#092;Explorer.exe,0"</span></li></ul></ul></ul> <ul><li><span style="font-size: small">The following Registry Values were modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.bat]</span></li><ul><li><span style="font-size: small">(Default) = </span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.cmd]</span></li><ul><li><span style="font-size: small">(Default) = </span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Winlogon]</span></li><ul><li><span style="font-size: small">Userinit = </span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
Explorer]</span></li><ul><li><span style="font-size: small">NoDriveTypeAutoRun = </span></li></ul></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 25 Sep 2009 10:23:28 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີທ່ານ ຂ້າພະເຈົ້າມີບັນຫາມາລົບກວນທ່ານອີກແລ້ວ ບັນຫາກໍ່ຄືວ່າ folder option ຂອງ My computer ຫາຍໄປ ແລະ ບໍ່ສາມາດເຂົ້າໄປແກ້ໄຂ show ແລະ Do not show ລະບົບຕ່າງໆຂອງວິນໂດໄດ້ ຂໍຂອບໃຈກັບຄຳຕອບຂອງທ່ານຫລາຍໆ ຈາກຂາປະຈຳ forums</span>]]></description>
<author>soukhavath&lt;sayfone.soukhavath@nospam.com&gt;</author>
<pubDate>Thu, 01 Oct 2009 07:26:52 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຢາກຮູ້ວິທີຕັ້ງ php comment script ໃນ 00webhost.com ຕ້ອງເຮັດແນວໃດ ຂອບໃຈ]]></description>
<author>to2009&lt;b.own@nospam.com&gt;</author>
<pubDate>Tue, 06 Oct 2009 12:43:25 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: x-small"><strong>ຂໍລົບກວນທຸກໆທ່ານ ຊ່ວຍບອກແດ່ວ່າ NAO Virus ແມ່ນ Virus ແບບໃດ? ມີໜ້າທີ່ຮັດຫຍັງ?</strong></span>]]></description>
<author>katari&lt;katari_1937@nospam.com&gt;</author>
<pubDate>Wed, 07 Oct 2009 08:11:51 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[Deare lao antivirus team<br />could you recomment the removetool of kllsxz.exe<br /><br />best regard]]></description>
<author>soukhavath&lt;sayfone.soukhavath@nospam.com&gt;</author>
<pubDate>Fri, 30 Oct 2009 07:26:53 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: x-small">ເຖີງທ່ານຜູ້ຮູ້: ຄືວ່າ ຄອມ ຂອງ ຂພຈ ບໍ່ສາມາດອອກສູ່ອີນເຕີເນັດໄດ້ເລີຍ ແບບວ່າ ຖ້າເອົາສາຍແລນມາສຽບໃສ່ຍາມໃດແລ້ວແມ່ນວ່າຄອມທຸກໆໜ່ວຍ (ທີ່ຢູ່ LAN ດຽວກັນ) ຈະບໍ່ສາມາດເຂົ້າ internet ໄດ້ທັງໝົດເລີຍ -ຈາກນັ້ນ router ຈະ hang - ຂພຈ ຖອດສາຍແລນໂຕບັນຫາອອກ ແລ້ວ ລີສະຕາດrouterໃໝ່ ຈື່ງຈະໃຊ້ໄດ້ປົກກະຕິ. ບໍ່ຮູ້ວ່າເປັນນຳຫຍັງ ແລ້ວບັນດາທ່ານເດ ວ່າຈັ່ງໃດ...</span>]]></description>
<author>wysiwyg&lt;bounlerng@nospam.com&gt;</author>
<pubDate>Thu, 19 Nov 2009 12:17:05 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">จะว่าบังเอิญก็น่าจะใช่นะ สำหรับการเข้าในเว็บไซต์ของท่าน<br /><br />พอดีผมมีปัญหาเกี่ยวกับไวรัส ตัวหนึ่ง ปกติแล้วผมก็ใช้โปรแกรม<br /><br />kaspersky anti virus อยู่แล้ว แต่พอติดไวรัสตัวหนึ่งเข้า<br /><br />โปรแกรมก็ไม่สามารถลบได้เลย ไม่รู้เป็นอย่างไร?เหมือนกัน<br /><br />ไวรัสตัวที่ว่า นี้คือ adware not virus win32<br /><br />ก็รู้สึกดีใจ ที่สามารถแก้ไขได้แล้ว...ขอบคุณมากครับ สำหรับความรู้<br /><br />และเครื่องมือกำจัดไวรัส ตลอดถึงตัวแก้ไข ค่า registry ต่างๆ<br /><br />และ ทำให้คอมพิวเตอร์สามารถใช้งานได้ตามปกติ<br /><br />ปล. ขอโทษด้วยนะครับ ที่ไม่สามารถพิมพ์เป็นอักษรของท่านได้<br /> (ภาษาลาว)<br />จะให้เขียนเป็นภาษาอังกฤษผมก็ไม่เก่งอีกล่ะ...<br /></span><br /><span style="font-size: large">ขอบใจหลายๆๆ</span><br /><br />]]></description>
<author>prai24&lt;prai24@nospam.com&gt;</author>
<pubDate>Tue, 24 Nov 2009 13:54:05 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<br /><span style="font-size: small">ຊ່ວຍກວດເບິ່ງຟາຍນີ້ໃຫ້ແດ່ວ່າຊີ້ໃຊ້Tool ໂຕໃດຂ້າ</span><br /><a href="http://laoupload.com/I1OOPORURLVQ/LavSnapShot-NZN-E69ED451E74.txt.html" rel="external"><a href='http://laoupload.com/I1OOPORURLVQ/LavSnapShot-NZN-E69ED451E74.txt.html' rel='external'>http://laoupload.com/I1OOPORURLVQ/LavSnapShot-NZN-
E69ED451E74.txt.html</a></a><br /><span style="font-size: small"><br />ທ່ານ ອາເລັກໄຊຣ ຂ້າພະເຈົ້າຢາກໃຫ້ທ່ານຊ່ວຍສ້າງTool ມາຂ້າໄວສ໌ຣັດປະເພດ (.bat, .cmd) ເພາະມັນເຮັດເສັ້ນຂ້າພະເຈົ້າຕະຫລອດ ແລະຖ້າຕິດໄວສ໌ຣັດພວກ ນີ້ເມື່ອໃຊ້Kaspersky Scan ມັນປ່ຽນຊື່ຟາຍເອງຕະລອດເລີຍ...ຂ້າພະເຈົ້າລອງ ໃຊ້ແຕ່ລະTool ກາຍັງບໍ່ຕາຍ</span><br /><div align="center"><span style="font-size: x-small"><strong><a href='[blink]www.ep-computer.110mb.com[/blink]' rel='external'>[blink]www.ep-computer.110mb.com[/blink]</a></strong></span><br /></div>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sat, 05 Dec 2009 01:49:40 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<table cellpadding="3" cellspacing="0" height="47" width="485"><tbody><tr><td align="center"><u><em><strong><span style="font-size: small"><br /></span></strong></em></u></td><td align="center"><em><strong><span style="font-size: small">ຊີ້ໃຊ້Tool ໂຕໃດລົບ</span></strong></em><u><em><strong><span style="font-size: small"><br /><br /><a href="http://laoupload.com/Y7BBR1J69V73/LavSnapShot-NZN-962C47E1E65-20091212.txt.html" rel="external"></a></span></strong></em></u><table cellpadding="3" cellspacing="0"><tbody><tr><td align="right"><span style="font-size: small"><br /></span></td><td><span style="font-size: small"><a href="http://laoupload.com/543VY1W2148H/LavSnapShot-NZN-962C47E1E65-20091212.7z.html" target="_blank">http://laoupload.com/543VY1W2148H/LavSnapShot-NZN-962C47E1E65-
20091212.7z.html</a></span></td></tr></tbody></table></td></tr></tbody></table>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sat, 12 Dec 2009 07:59:33 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ລະວັງ AntiVirus-AntiSpyware ຂອງປອມລູ່ມນີ້ ຫ້າມ Download ແລະ<br />ຕີດຕັ້ງເດັດຂາດ<br /><strong>1. </strong></span><strong><span style="font-size: small">System Adware Scanner 2010<br /><br /></span></strong> <img class="alignnone size-full wp-image-5089" src="http://www.precisesecurity.com/wp-content/uploads/2009/12/system-adware-scanner.jpg" alt="system-adware-scanner" title="system-adware-scanner" /><br /><br /><strong><span style="font-size: small">2.TheDefend<br /><br /></span></strong><img class="alignnone size-full wp-image-5086" src="http://www.precisesecurity.com/wp-content/uploads/2009/12/thedefend.jpg" alt="TheDefend" title="TheDefend" /><strong><span style="font-size: small"><br /><br />3. SysDefence<br /><br /></span></strong><img class="alignnone size-full wp-image-5082" src="http://www.precisesecurity.com/wp-content/uploads/2009/12/sysdefence.jpg" alt="sysdefence" title="SysDefence" /><span style="font-size: small"><strong><br /><br />4. GuardPcs<br /><br /></strong></span><img class="alignnone size-full wp-image-5077" src="http://www.precisesecurity.com/wp-content/uploads/2009/12/guardpcs.jpg" alt="GuardPcs Image" title="guardpcs" /><span style="font-size: small"><strong><br /><br />5. Internet Security 2010<br /><br /></strong></span><img class="alignnone size-full wp-image-5027" src="http://www.precisesecurity.com/wp-content/uploads/2009/12/internet-security-2010.jpg" alt="Internet Security 2010 Image" title="internet-security-2010" /><br /><br /><strong><span style="font-size: small">6. Personal Guard 2009<br /><br /></span></strong><a href="http://www.precisesecurity.com/wp-content/uploads/2009/09/personal-guard-2009.jpg" rel="external"><img src="http://www.precisesecurity.com/wp-content/uploads/2009/09/personal-guard-2009.jpg" alt="Personal Guard 2009 image" title="personal-guard-2009" /></a><span style="font-size: small"><strong><br /><br />7. Safety Anti-Spyware<br /><br /></strong></span><img class="alignnone size-full wp-image-5005" src="http://www.precisesecurity.com/wp-content/uploads/2009/12/safety-antispyware1.jpg" alt="Safety Anti-Spyware Image" title="safety-antispyware1" /><span style="font-size: small"><strong><br /><br />8. Personal Security<br /><br /></strong></span><img class="alignnone size-full wp-image-4939" src="http://www.precisesecurity.com/wp-content/uploads/2009/12/personal-security.jpg" alt="personal-security" title="personal-security" /><br /><br /><span style="font-size: small"><strong>9. Antivirus Pro<br /><br /></strong></span><img class="alignnone size-full wp-image-4928" src="http://www.precisesecurity.com/wp-content/uploads/2009/11/antivirus-pro.jpg" alt="antivirus-pro" title="antivirus-pro" /><span style="font-size: small"><strong><br /><br />10. Control Center<br /><br /></strong></span><img class="alignnone size-full wp-image-4744" src="http://www.precisesecurity.com/wp-content/uploads/2009/11/control-center-virus.jpg" alt="control-center-virus" title="control-center-virus" /><br /><br /><span style="font-size: small"><strong>11. Eco Antivirus</strong></span><br /><br /><img class="attachment-medium" src="http://www.2-viruses.com/wp-content/uploads/2009/11/ecoantivirus-300x183.jpg" alt="eco antivirus rogue anti-spyware" title="eco antivirus" /><span style="font-size: small"><strong><br /><br />12. Alpha Antivirus<br /><br /></strong></span> <img src="http://www.precisesecurity.com/wp-content/uploads/2009/09/alpha-antivirus.png" alt="Alpha Antivirus Image" title="alpha-antivirus" />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Thu, 24 Dec 2009 04:37:27 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຊ່ວຍບອກໂປແກມຂ້າໄວລັດໂຕນີ້ໃຫ້ແດ່ TR patched. Gen<br /><br />ຂອບໃຈລ່ວງໜ້າ]]></description>
<author>ti007&lt;noauthor@nospam.com&gt;</author>
<pubDate>Tue, 29 Dec 2009 05:21:59 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ວິດໂດວິສະຕ້າ ບໍ່ສາມມາເປີດ ຢູດເຊີເອັດມິນ ໄດ້ ເປັນຍ້ອນຫັຍງ ຂ້ອຍໃຊ້ຄຳສັ່ງ secpol.msc ຢູ່ Run ຊ່ວຍບອກວິທີແກ້ໄຂໃຫ້ແດ່]]></description>
<author>ti007&lt;noauthor@nospam.com&gt;</author>
<pubDate>Tue, 05 Jan 2010 07:13:59 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<strong><span style="font-size: small">+File System Modifications</span></strong><br /><span style="font-size: small">%Temp%&#092;E_N4&#092;cnvpe.fne<br />%System%&#092;13E92A&#092;cnvpe.fne<br />%Temp%&#092;E_N4&#092;dp1.fne<br />%System%&#092;13E92A&#092;dp1.fne<br />%Temp%&#092;E_N4&#092;eAPI.fne<br />%System%&#092;13E92A&#092;eAPI.fne<br />%Temp%&#092;E_N4&#092;HtmlView.fne<br />%System%&#092;13E92A&#092;HtmlView.fne<br />%Temp%&#092;E_N4&#092;internet.fne<br />%System%&#092;13E92A&#092;internet.fne<br />%Temp%&#092;E_N4&#092;krnln.fnr<br />%System%&#092;13E92A&#092;krnln.fnr<br />%Temp%&#092;E_N4&#092;shell.fne<br />%System%&#092;13E92A&#092;shell.fne<br />%Temp%&#092;E_N4&#092;spec.fne<br />%System%&#092;13E92A&#092;spec.fne<br />%Programs%&#092;Startup&#092;AA2E5E.lnk<br />%System%&#092;13E92A&#092;RegEx.fnr<br />%System%&#092;1CB5AD&#092;AA2E5E.EXE<br /></span><ul><li><span style="font-size: small">The following directories were created:</span></li><ul><li><span style="font-size: small">%Temp%&#092;E_N4</span></li><li><span style="font-size: small">%System%&#092;038840</span></li><li><span style="font-size: small">%System%&#092;13E92A</span></li><li><span style="font-size: small">%System%&#092;1CB5AD</span></li><li><span style="font-size: small">%System%&#092;52682A</span></li></ul></ul><span style="font-size: small">Download Remover in this site [Kill Recycle.exe]</span><br /><span style="font-size: small"><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Mon, 18 Jan 2010 06:03:19 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">- ລະບົບທີ່ມີການປ່ຽນແປງ<br />%USERPROFILE%&#092;local settings&#092;temp&#092;3ymh6jjy.exe  </span><br /><div class="profile-content character"><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;system&#092;currentcontrolset&#092;services&#092;tdlserv&#092; </span></li><ul><li><span style="font-size: small">imagepath = &#092;??&#092;c:&#092;windows&#092;temp&#092;16.tmp </span></li><li><span style="font-size: small">type = 1</span></li></ul><span style="font-size: small"><br /></span><div class="profile-content character"><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;system&#092;currentcontrolset&#092;control&#092;session manager&#092; </span></li><ul><li><span style="font-size: small">pendingfilerenameoperations = &#092;??&#092;c:&#092;docume~1&#092;admini~1&#092;locals~1&#092;temp<br />&#092;17.tmp</span></li></ul><br /></div></div><br /><span style="font-size: small"><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 20 Jan 2010 11:36:06 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">-ລະບົບທີ່ມີການປ່ຽນແປງຈາກ Trojan-Downloader.Win32.Geral<br /><br /></span><ul><li><span style="font-size: small">%USERPROFILE%&#092;Local Settings&#092;Temp&#092;mst47.tmp  </span></li><li><span style="font-size: small">%Program Files%&#092;Common Files&#092;PushWare&#092;cpush.dll [detected as AdClicker-BJ]  </span></li><li><span style="font-size: small">%Program Files%&#092;Common Files&#092;PushWare&#092;Uninst.exe  </span></li><li><span style="font-size: small">%Windir%&#092;Fonts&#092;iexplo.exe [detected as Downloader-CCG]  </span></li><li><span style="font-size: small">%Windir%&#092;Fonts&#092;lcn.ini  </span></li><li><span style="font-size: small">%Windir%&#092;system32&#092;drivers&#092;npf.sys  </span></li><li><span style="font-size: small">%Windir%&#092;system32&#092;360traj.exe [detected as Generic Dropper.ex]  </span></li><li><span style="font-size: small">%Windir%&#092;system32&#092;Packet.dll  </span></li><li><span style="font-size: small">%Windir%&#092;system32&#092;WanPacket.dll  </span></li><li><span style="font-size: small">%Windir%&#092;system32&#092;wpcap.dll  </span></li><li><span style="font-size: small">%Windir%&#092;Tasks&#092;pPuSpm4tUTwyj3JpjJV.ico  </span></li><li><span style="font-size: small">%Windir%&#092;Tasks&#092;Wfayv6njQnCsg.inf [detected as PWS-OnlineGames.ek]  </span></li><li><span style="font-size: small">%Windir%&#092;MICROSOFT&#092;winsys.dll  </span></li><li><span style="font-size: small">%USERPROFILE%&#092;Local Settings&#092;Temp&#092;abb3.tmp [detected as potentially unwanted program Adware-Cinmus!j]  </span></li><li><span style="font-size: small"> %USERPROFILE%&#092;Local Settings&#092;Temp&#092;abb9.tmp [detected as AdClicker-BJ]  </span></li><li><span style="font-size: small">%USERPROFILE%&#092;Local Settings&#092;Temp&#092;abbD.tmp [detected as New Malware.aq]  </span></li><li><span style="font-size: small">%USERPROFILE%&#092;Local Settings&#092;Temp&#092;nnn1.tmp [detected as Downloader-CAM]  </span></li><li><span style="font-size: small">%USERPROFILE%&#092;Local Settings&#092;Temporary Internet Files&#092;Content.IE5&#092;8WEL7ODI&#092;3[1].exe  </span></li><li><span style="font-size: small">%USERPROFILE%&#092;Local Settings&#092;Temporary Internet Files&#092;Content.IE5&#092;I65VJICG&#092;ne[1].exe [detected as Downloader-CCG]  </span></li><li><span style="font-size: small">%USERPROFILE%&#092;Local Settings&#092;Temporary Internet Files&#092;Content.IE5&#092;I65VJICG&#092;ry[1].exe [detected as New Malware.aq]  </span></li><li><span style="font-size: small">%USERPROFILE%&#092;Local Settings&#092;Temporary Internet Files&#092;Content.IE5&#092;IHMZKI89&#092;2[1].exe  </span></li><li><span style="font-size: small">%USERPROFILE%&#092;Local Settings&#092;Temporary Internet Files&#092;Content.IE5&#092;JWHQEFD2&#092;cc[1].exe [detected as Generic Dropper.eb]</span></li></ul><span style="font-size: small"><br /></span><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{012AA32F-36E6-405F-9F3F-
588E0AA73FBB}  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{11F09AFD-75AD-4E51-AB43-
E09E9351CE16}  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{296AB1C7-FB22-4D17-8834-
064E2BA0A6F0}  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{34A12A06-48C0-420D-8F11-
73552EE9631A}  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{CDE9EB54-A08E-4570-B748-
13F5DDB5781C}  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;Interface&#092;{0AD3AB16-6D0E-4F04-
8660-FB1F36BC2DC0}  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;NewBopoMediumPop.PopBopo  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;NexoAdPopup.DOLogc  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Browser Helper Objects&#092;{11F09AFD-75AD-4E51-AB43-E09E9351CE16} </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Browser Helper Objects&#092;{296AB1C7-FB22-4D17-8834-064E2BA0A6F0} </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;IDSCNP  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;cpush</span></li></ul><span style="font-size: small"><br /></span><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{012AA32F-36E6-405F-9F3F-
588E0AA73FBB}&#092;InprocServer32&#092;: "C:&#092;WINDOWS&#092;Tasks&#092;Wfayv6njQnCsg.inf" </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{11F09AFD-75AD-4E51-AB43-
E09E9351CE16}&#092;InprocServer32&#092;: "C:&#092;Program Files&#092;Common Files&#092;PushWare&#092;cpush.dll" </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{296AB1C7-FB22-4D17-8834-
064E2BA0A6F0}&#092;InprocServer32&#092;: "C:&#092;WINDOWS&#092;MICROSOFT&#092;winsys.dll" </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{CDE9EB54-A08E-4570-B748-
13F5DDB5781C}&#092;InprocServer32&#092;: "C:&#092;Program Files&#092;Common Files&#092;PushWare&#092;cpush.dll" </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;npf&#092;ImagePath: "&#092;??&#092;C:&#092;WINDOWS&#092;system32&#092;drivers&#092;npf.sys"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;qianm&#092;ImagePath: "&#092;??&#092;C:&#092;WINDOWS&#092;fonts&#092;qianm.sys"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;npf&#092;ImagePath: "&#092;??&#092;C:&#092;WINDOWS&#092;system32&#092;drivers&#092;npf.sys"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;qianm&#092;ImagePath: "&#092;??&#092;C:&#092;WINDOWS&#092;fonts&#092;qianm.sys"</span></li></ul><span style="font-size: small"><br /></span><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;360tray.EXE&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;AutoRun.EXE&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;AutoRunKiller.EXE&#092;debugger: "ntsd -d" </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;AvMonitor.EXE&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Frameworkservice.EXE&#092;debugger: "ntsd -d" </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;GuardField.EXE&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;HijackThis.EXE&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;IceSword.EXE&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Iparmor.EXE&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;KASARP.EXE&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;kav32.EXE&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;LiveUpdate360.EXE&#092;debugger: "ntsd -d" </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;mcshield.EXE&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;nod32krn.EXE&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Nod32kui.EXE&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;PFW.EXE&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RavMon.EXE&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RavMonD.EXE&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Regedit.EXE&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;RsAgent.EXE&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;TrojanDetector.EXE&#092;debugger: "ntsd -d" </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;Trojanwall.EXE&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;TrojDie.KXP&#092;debugger: "ntsd -d"  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows NT&#092;CurrentVersion&#092;Image File Execution Options&#092;VsTskMgr.EXE&#092;debugger: "ntsd -d"</span></li></ul><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Explorer&#092;
Advanced&#092;Folder&#092;Hidden&#092;SHOWALL&#092;CheckedValue:  “0x00000002”<br /><br /></span><ul><li><span style="font-size: small">%Program Files%&#092;Common Files&#092;PushWare  </span></li><li><span style="font-size: small">%Windir%&#092;MICROSOFT  </span></li><li><span style="font-size: small">%SystemDrive%&#092;sa.exe</span></li></ul><span style="font-size: small"><br /><br /></span><span style="font-size: small"><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 20 Jan 2010 11:39:41 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">-ລະບົບມີການປ່ຽນແປງຈາກ </span> <span style="font-size: small">Worm.Win32.Prolaco<br />%WinDir%&#092;system32&#092;wmimngr.exe<br /></span><ul><ul><li><span style="font-size: small">%WinDir%&#092;system32&#092;wpmgr.exe  </span></li><li><span style="font-size: small">%WinDir%&#092;oracle.ocx (Hidden)</span></li></ul></ul><span style="font-size: small"><br /></span><ul><ul><li><span style="font-size: small">HKEY_USERS&#092;S-1-5-21-1454471165-926492609-839522115-
500&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;Explorer&#092;Run  </span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;WAB&#092;Profile5  </span></li><li><span style="font-size: small">HKEY_USERS&#092;S-1-5-21-1454471165-926492609-839522115-
500&#092;Software&#092;Microsoft&#092;WAB  </span></li><li><span style="font-size: small">HKEY_USERS&#092;S-1-5-21-1454471165-926492609-839522115-
500&#092;Software&#092;Microsoft&#092;WAB&#092;Profile5</span></li></ul></ul><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Active Setup&#092;Installed Components&#092;{IY5PT2EV-C68O-F6ER-1U30-C8N4T42W4OAP}&#092;]<br />"StubPath:" = "%WinDir%&#092;system32&#092;wpmgr.exe"<br /><br />[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;SharedAccess&#092;Paramet
ers&#092;FirewallPolicy&#092;StandardProfile&#092;AuthorizedApplications&#092;List&#092;]<br />"%WinDir%&#092;system32&#092;wfmngr.exe:"="%WinDir%&#092;system32&#092;wfmngr.exe:*:
Enabled:Explorer"<br /><br /></span><ul><ul><li><span style="font-size: small">[HKEY_USERS&#092;S-1-5-21-1454471165-926492609-839522115-
500&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run&#092;]<br />"Java micro kernel:" = "%WINDIR%system32&#092;wpmgr.exe"  </span></li><li><span style="font-size: small">[HKEY_USERS&#092;S-1-5-21-1454471165-926492609-839522115-
500&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run&#092;]"Windows Management:" = "C:&#092;WINDOWS&#092;system32&#092;wmimngr.exe" </span></li><li><span style="font-size: small">[HKEY_USERS&#092;S-1-5-21-1454471165-926492609-839522115-
500&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;Explorer&#092;Run&#092;]<br />"Java micro kernel:" = "%WINDIR%&#092;system32&#092;wpmgr.exe"</span></li></ul></ul><span style="font-size: small"><br /></span><ul><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE &#092;SOFTWARE&#092;Microsoft&#092;Security Center]<br />“UACDisableNotify” = “ 0x00000001”  </span></li><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies
&#092;system]<br />"EnableLUA:" = "0x00000000"</span></li></ul></ul><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;WindowsNT&#092;CurrentVersion&#092;System
Restore&#092;] "DisableSR:"="0x00000001"<br /><br /></span><ul><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;ERSvc&#092;]<br />"Start:"= "0x00000004" </span></li><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;wscsvc&#092;]<br />"Start:" = "0x00000004"</span></li></ul></ul><span style="font-size: small"><br /><br /><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 20 Jan 2010 11:42:54 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<u><strong><span style="font-size: small">+ໄຟລຕິດໃນລະບົບ</span></strong></u><br /><br /><span style="font-size: small">%Windir%&#092;567788.bat<br />%Windir%&#092;ld11.exe<br /><br /><strong><u>+ສ້າງຄ່າໃນ Registry</u></strong><br /><br /></span><ul><li><span style="font-size: small">The following Registry Keys were deleted:</span></li><ul><li><span style="font-size: small">HKEY_CURRENT_USER&#092;AppEvents&#092;Schemes&#092;Apps&#092;Explorer&#092;Navigating</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;AppEvents&#092;Schemes&#092;Apps&#092;Explorer&#092;Navigating&#092;.Current</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;AppEvents&#092;Schemes&#092;Apps&#092;Explorer&#092;Navigating&#092;.Default</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Value is:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">sysldtray = "%Windir%&#092;ld11.exe"</span></li></ul><span style="font-size: small"><br /><em>so that ld11.exe runs every time Windows starts</em><br /></span></ul></ul> <ul><li><span style="font-size: small">The following Registry Values were deleted:</span></li><ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;AppEvents&#092;Schemes&#092;Apps&#092;Explorer&#092;Navigating&#092;.Default
]</span></li><ul><li><span style="font-size: small">(Default) = "%SystemRoot%&#092;media&#092;Windows XP Start.wav"</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;AppEvents&#092;Schemes&#092;Apps&#092;Explorer&#092;Navigating&#092;.Current
]</span></li><ul><li><span style="font-size: small">(Default) = "%SystemRoot%&#092;media&#092;Windows XP Start.wav"</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;AppEvents&#092;Schemes&#092;Apps&#092;Explorer&#092;Navigating]</span></li><ul><li><span style="font-size: small">(Default) = ""</span></li></ul></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Tue, 26 Jan 2010 08:50:26 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຖາມ ທ່ານ admin ຈະດາວໂລດwindow live ໄດ້ຢຸ່ໃສ ຫຼືມີຂາຍບໍ<br />window live ສາມມາດເຮັດຫຍັງໃດແດ່ please]]></description>
<author>fueyching&lt;fueyching@nospam.com&gt;</author>
<pubDate>Thu, 26 Feb 2009 10:56:46 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ<br />ຂ້າພະເຈົ້າ ຢາກໄດ້ Access Point ທີ່ສາມາດ ສົ່ງສັນຍານໄດ້ໄກເຖິງ 10 - 15 km ມົນທົນ, ຖ້າທ່ານໃດຮູ້ ຫລື ມີຂາຍກະລຸນາບອກແດ່.<br />ທ່ານສາມາດໂທມາທີ່:0205613849<br />Thanks<br /></span>]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Tue, 03 Mar 2009 06:06:02 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">- ຄອມໜູ່ຂ້າພະເຈົ້າເອົາມາໃຫ້ແປງ ສະເປຮ ມັນແມ່ນ Pentinum III,Ram<br />128 and harddisk 40 GB ແລະເວລາລົງໄປກຳລັງ Copy file ຫຍັງບໍ່<br />ທັນຮອດຂັ້ນຕອນ format ແລ້ວມັນມັກຂຶ້ນຈໍສີຟ້າຕະຫລອດ ແລະຂ້າພະເຈົ້າ<br />ບາງເທື່ອລ້ອງລົງວິນໂດຮ ລຸ້ນເກົ່າໆກະຫຍັງບໍ່ໄດ້.ຂ້ອຍຄິດວ່າຖ້າ Ramມີບັນ<br />ຕ້ອງລົງບໍ່ໄດ້ເລີຍ.<br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Fri, 06 Mar 2009 02:18:28 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">1. ເລື່ອງ Windows PE ເປັນຫຍັງເວລາເຮົາ Boot ເຂົ້າ notebook    ສ່ວນຫລາຍບໍ່ເຫັນ Hard disk ຖ້າເປັນຕອມຕັ້ງໂຕ້ະແມ່ນເຫັນບໍ່ຮູ້ວ່າທ່ານພໍຈະມີ<br />file ໃດມາເສີມບໍມັນຈຶ່ງຈະເຫັນ.<br /> </span><br />]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Wed, 11 Mar 2009 01:33:47 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຄຶວ່າ:ຂ້າພະເຈົ້າໃຊ້ LaoScript v7.03 ແລະຂ້ອຍມີ Crackຢູ່ເທິງຮູບ<br />ມັນມີຂໍ້ຄວາມແບບນິ້: Site Licence #41609<br />                             Registered to:<br />                      Option: 26 (Licence sever)<br />                                uild 7.0.3.2<br />ແລະຂ້າເຈົ້າລອງປ່ຽນຮູບກະຫຍັງຄຶເກົ່າແຕ່ໃຊ້ປົກກະຕິ,ຂ້ອຍຢາກລົບ<br />ຂໍ້ຄວາມອອກ.ບໍ່ຮູບວ່າທ່ານພໍຈະມີວິທີລົບອອກໄດ້ບໍ<br /><br /><br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Thu, 12 Mar 2009 02:02:07 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ເປັນເປັນເຄື່ອງມືຫລືໂປຣແກຣມຊວ່ຍຕ່າງໆທີ່ແກ້ໄຂບັນຫາຄອມທີ່ຕິດໄວຣັສແລ້ວ<br /></span><img src="http://www.laoav.net/images/emotes/default/suprised.png" style="border: 0px none " alt="suprised.png" /><br /><span style="font-size: small"><a href="http://loadlaoav.googlepages.com/12MustHaveToolswhenFixingaComputerIn.zip">ດາວໂລດ</a><br /><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Sat, 14 Mar 2009 04:19:11 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຄຶວ່າ:ມືຖືຂອງຂ້າພະເຈົ້າຕິດໄວຮັດສ໌ເມື່ອເວລາຄົນອືນສົ່ງຂໍ້ຄວາມເຂົ້າມາ ແລະຫຼັງ<br />ນັ້ນມັນຈະສົ່ງອອກ Autoເອງ ຫາໜາຍເລກທີ່ສົ່ງເຂົ້າມາ ແລະບໍ່ຮູ້ວ່າຈະແກ້ແນວ<br />ໃດ.<br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sat, 14 Mar 2009 12:47:17 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຄຶວ່າ:ບັນຫາແມ່ນເມື່ອເຮົາເປີດຂຶ້ນມາແລ້ວມີໄຟແດງຢູ່ສອງປຸ້ມ ແລະຂ້າພະເຈົ້າເຄີຍ<br />ເຄຍPrinter Epson photo R230 ແມ່ນໃຊ້ໂປຮແກຮມ <br />SSC Service Utility v4.30 ແລະກໍສາມາດເຄຍໄດ້ແຕ່ຂ້າພະເຈົ້າມາເລືອກ<br />ລຸ່ນແລະເຄຍພັດບໍ່ໄດ້ມັນຂໍ້ຄວາມນິ້ຂຶ້ນມາ:<br /><strong>This function isn't supported in current printer state.<br />ໍພິນເຕີຂອງຂ້ອຍແມ່ນຕໍ່ ອິນແທງ ແລະມີເທື່ອໜື່ງພິນເຕີຫນູ່ຂອງຂ້ອຍແມ່ນລຸ້ນ<br />Epson Photo R230 ເມື່ອເວລາເຄຍ ມັນກະຟ້ອງຂໍ້ຄວາມແບບຢູ່ຂ້າງເທີງ.<br /></strong></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sun, 15 Mar 2009 09:43:24 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຖາມທ່ານ Admin ວ່າຕັງ window ແນວໃດ ຈ່ີງຈະມີສຽງ  ໃນກໍລະນີ ບໍ່ມີ ແຜນ driver ຂອງ Mainboard ແລະບ່ໍໄດ້ ເຊື່ອມຕໍ່ອີນເຕີເນັດ]]></description>
<author>fueyching&lt;fueyching@nospam.com&gt;</author>
<pubDate>Fri, 20 Mar 2009 05:37:07 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ໂຮງຣຽນຂ້າພະເຈົ້າທຸກບາກຫຼາຍ ມີຄອມ 10ກວ່າໜວ່ຍ ນັກຮຽນ ຫ້ອງໜ່ືງ 50-60 ຄົນມັນບໍ່ພໍໃຊ້ ໄດ້ຍີນຂ່າວວ່າ  ຖ້າມີ ຄອມແລ້ວຊຸດນ໋ືງສາມາດ ຊື້ຈໍ ມາ<br />ເພື້ມອີກໜ່ວຍໜ່ືງແລວ້ສາມາດໃຊ້ໄດ້ ໝາຍຄວາມວ່າ caseໜ່ວຍດຽວສາມາດ ໄຊ້ ໄດ້ສອງເຄືອງ ໂດຍອິດສະຫຼະໃຜມັນ  ຢາກຖາມທ່ານວ່າ ມັນແມ່ນແທ້ບໍ ຢາກປືກສາ<br />ມີແມ່ນແທ້ກະລຸນາ ບອກວີທິແດ່ ແລະມີອຸປະກອນເສີມແນວໃດ   ຂໍໃຈລ່ວງໜ້າ]]></description>
<author>fueyching&lt;fueyching@nospam.com&gt;</author>
<pubDate>Fri, 20 Mar 2009 06:03:56 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">Notebook Toshiba M300 ຂ້າພະເຈົ້າໄດ້ລົງວິນໂດຮ໌ Vista ແລະ<br />mouse ເມື່ອເວລາຄິກໂປຮແກຮມ ຫຼຶຟາຍຕ່າງ.ມັນໄດ້ກົດແຕ່ປຸ້ມກົດ<br />ບ່ອນດຽວ ແລະບ່ອນແປ້ນຂອງ mouse ມີແຕ່ຍ້າຍໄດ້ ພັດຄີກບໍ່ໄດ້<br />ບໍ່ຮູ້ວ່າ:ຈະປົດລັອກຢູ່ໃສ່<br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Tue, 31 Mar 2009 13:34:03 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ເຖິງ ທ່ານ admin.<br />ເປັນຫຍັງຄອມຄືບໍ່ມີLocal users &amp; Groups ( ເວລາເຂົ້າ computer Management)<br />ບໍ່ຮູ້ວ່າທ່ານພໍມີຄຳແນະນຳແນວໃດບໍ່ເນ໋າະທ່ານ, ອັນນີ້ແມ່ນມັນຖືກໄວຣັດເຊື່ອງບໍ່ເນ໋າະ ຫຼື ວ່າເປັນຍ້ອນຄອມ ເພາະຄອມໂຕນີ້ແມ່ນຍີ່ຫຍໍ້ Lenovo ນະທ່ານ.<br /><br />ຂໍຂອບໃຈ]]></description>
<author>pickachu&lt;piggy_pick@nospam.com&gt;</author>
<pubDate>Mon, 06 Apr 2009 13:22:46 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ ຂ້ອຍຢາກໄດ້ໂປຣແກມ Ativirus ມືຖືໃຜມີແດ່ມ ລຸ້ນ Nokia N95...</span>]]></description>
<author>phak&lt;phuk_22@nospam.com&gt;</author>
<pubDate>Tue, 07 Apr 2009 11:11:49 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: x-small">ສະບາຍດີ<br />ຂ້ອຍມີບັນຫາກ່ຽວກັບ openoffice<br />ຄືວ່າຂ້ອຍຕິດຕັ້ງ openoffice ໃສ່ windowsXP ແລະມັນກໍ່ເຮັດວຽກໄດ້ດີສາທາດ save ໃສ່ local computer ໄດ້ ແຕ່ເມື່ອຂ້ອຍຕ້ອງການຈະ save ໃສ່ windows server2003 ທີ່ເຮັດໜ້າທີ່ເປັນ domain server ແລະ com ຂ້ອຍກໍ່ເປັນ client ຂອງມັນ ແລະ ບໍ່ສາມາດ save ໄດ້ມັນຟ້ອງວ່າ the object cannot be accessed due to insufficient user rights<br />ຖ້າຜູ້ໃດຮູ້ຊ່ວຍບອກແດ່<br />ຂອບໃຈ<br /></span>]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Tue, 07 Apr 2009 11:52:54 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ສະບາຍດີທ່ານ ອາເລັກໄຊ<br />ຂ້າພະເຈົ້າມີເລື້ອງຈະຂໍລົບກວນທ່ານຊ່ວຍສ້າງໂຕ repair savemode ສຳລັບ windows server 2003 ໃຫ້ຂ້າພະເຈົ້າເດ່ໄດ້ບໍ່ເນ໋າະ ແຕ່ວ່າຂ້າພະເຈົ້າບໍ່ແນ່ໃຈວ່າໂຕ repair savemode ທີ່ທ່ານມີໃຫ້ໂລດນັ້ນສາມາດໃຊ້ໄດ້ກັບ windows server 2003 ໄດ້ຫຼືບໍ່ເນ໋າະ (ໄດ້ຫຼືບໍ່ໄດ້ ກະລຸນາທ່ານຊ່ວຍຕອບເດ່ເນ໋າະ) ເພາະຄອມມັນບໍ່ສາມາດເຂົ້າsavemode ໄດ້ ພໍຈະໃຊ້ savemode ເທື່ອໃດ ມັນກໍ່ລີສະຕາດໂລດແລະຈາກນັ້ນກໍບໍ່ສາມາດເຂົ້າໜ້າຕ່າງຂອງ ວິນໂດ ໂດ້ ຈະເຂົ້າໄດ້ກໍ່ຕໍ່ເມື່ອລີແພ້ວິນໂດ ແຕ່ຫຼັງຈາກລີແພ້ໄດ້ແລ້ວ ກະຍັງບໍ່ສາມາດເຂົ້າ savemodeໄດ້ຄືເກົ່າແລະກໍ່ກັບມາເປັນຄືເກົ່າຄືບໍ່ສາມາດເຂົ້າໜ້າຕ່າງວິນໂດໄດ້
. ຖ້າລີແພ້ວະນໂດໄດ້ແລ້ວມື້ຕໍ່ມາກໍກັບມາເປັນຄືເກົ່າແບບວ່າຕ້ອງໄດ້ລີແພ້ທຸກມື້
ເລີຍນະທ່ານ ຮືໆໆໆໆໆ<br />ຂໍຄວາມກະລຸນ່ທ່ານໃຫ້ຊ່ວຍເດ່ເດີ້ທ່ານ<br />ຂໍຂອບໃຈລ່ວງໜ້າ]]></description>
<author>pickachu&lt;piggy_pick@nospam.com&gt;</author>
<pubDate>Sat, 18 Apr 2009 19:47:03 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ເຖິງທ່ານ admin<br />ຂ້າພະເຈົ້າລົບກວນຂໍໂຕ tool ສຳລັບ safemode windows sever 2003 ແດ່ໄດ້ບໍ່ເນ໋າະທ່ານ<br />ຂອບໃຈຫຼາຍໆໆໆໆໆ]]></description>
<author>pickachu&lt;piggy_pick@nospam.com&gt;</author>
<pubDate>Wed, 22 Apr 2009 07:02:06 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີທ່ານ, ຂໍຄວາມຊ່ວຍເຫຼືອແດ່ ເລື່ອງມັນມີຢູ່ວ່າ printer ຂ້າພະເຈົ້າບໍ່ຮູ້ເປັນຫຍັງເວລາ print ເອກະສານທີ່ໃຊ້ font Saysettha lao ລະຕົວອັກສອນມັນອອກມາເປັນລວງນອນໝົດເລີຍ ແຕ່ຖ້່າເປັນ Saysettha OT ຫຼື font ອື່ນໆລະປົກກະຕິດີ<br />ຊ່ວຍແນະນຳແດ່ທ່ານ</span>]]></description>
<author>latthaphone&lt;latthaphone9898527@nospam.com&gt;</author>
<pubDate>Tue, 21 Apr 2009 13:57:58 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-family: 'Saysettha OT'"><span style="font-size: small">ຄອມ​ພິວ​ເຕີ​ຂອງ​ຂ້າພະ​ເຈົ້າຕິດ Virus ​ເມື່ອຂ້າພະ​ເຈົ້າ​ສະ​ແກນ​ໄວ​ລັກ​ແລ້ວ​ໂຟ​ເດີ​ຕ່າ​ງໆ​ກໍ່​ຫາຍ​ໄປ​ໝົດ ​ແລະ ກໍ່​ໄດ້​ໄປຕັ້ງຄ່າ​ຕາມ​ນີ້<br /><img class="bbc_img" src="http://www.bcoms.net/upload/images/bcoms20095419120.jpg" /><br /><br /><img class="bbc_img" src="http://www.bcoms.net/upload/images/bcoms20095419618.jpg" /><br /><img class="bbc_img" src="http://www.bcoms.net/upload/images/bcoms2009541972.jpg" /><br /><br />ແຕ່ມັນບໍ່ອານຸຍາດໃຫ້ເຮົາຕິກທີ່ເຄື່ອງໝາຍຖຶກທີ່ໜ້າ Hidden ອອກ<br />   ຂໍລົບກວນທ່ານໃດເຄີຍພົບບັນຫານີ້ຂໍແນະນຳໃຫ້ແດ<br />ຂອບໃຈລ່ວງໜ້າ</span></span>]]></description>
<author>TouMoua&lt;tou112000@nospam.com&gt;</author>
<pubDate>Mon, 04 May 2009 15:19:35 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ປົກກະຕິ ຍາມເຮົາໃສ່ shared key ຂອງ AP ຢູ່ໃນເຄື່ອງ Mac ມັນສາມາດໂຊເບິ່ງ password ຂອງ AP ໄດ້<br />ເຮັດແນວໃດຢາກບັງ password ຂອງ AP ຢູ່ເຄື່ອງ Mac ເໝືອນກັບ windows?<br />help<br />Thanks<br /></span>]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Mon, 18 May 2009 12:22:12 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ<br />ຢາກຈະຂໍຖາມວ່າ WinXP Home Edition ສາມາດ Joint Domain Server 2003 ໄດ້ບໍ່?<br />ຖ້າໄດ້ແມ່ນເຮັດແນວໃດຊ່ວຍບອກແດ່?<br />ຂອບໃຈ<br /></span>]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Thu, 21 May 2009 06:15:38 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຊ່ວຍແດ່ ເລື່ອງການນຳເອົາ Hiren’s Boot CD v 9.2 ລົງໄປໃນ USB ແລະໃຫ້ສາ<br />ມາດນຳໃຊ້ USB ນັ້ນແທນແຜ່ນ Hiren’s Boot cd ໄດ້]]></description>
<author>phthong&lt;phonethong@nospam.com&gt;</author>
<pubDate>Thu, 28 May 2009 16:21:00 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<a href="http://laoupload.com/W89TVI6ITAI7/Calculator.rar.html">http://laoupload.com/W89TVI6ITAI7/Calculator.rar.html</a>]]></description>
<author>TouMoua&lt;tou112000@nospam.com&gt;</author>
<pubDate>Mon, 15 Jun 2009 13:30:30 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ອາການຂັ້ນທຳເມື່ອFlash ແລ້ວໃຊ້ປະມານ2 ວັນ ແລ້ວມື້ທີ່3 ເລີຍທີບັນຫາເລີຍ ແລະຂ້າພະເຈົ້າລອງລົງWindows ເຮັດຫຍັງບໍ່ໄດ້ເລີຍ<br />ບໍ່ຮູ້ວ່າພໍຈະມີວິທີແກ້ບໍ່?<br /><u><strong>Link Video :</strong></u><br /><a href='http://laoupload.com/XBZA6R5JR18G/000_6402.3gp.html' rel='external'>http://laoupload.com/XBZA6R5JR18G/000_6402.3gp.html</a><br /><br /><a href="http://laoupload.com/XBZA6R5JR18G/000_6402.3gp.html"><br /></a></span><a href="http://laoupload.com/XBZA6R5JR18G/000_6402.3gp.html"> </a>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sat, 04 Jul 2009 09:01:06 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ເພາະວ່າຂ້າພະເຈົ້າໄດ້ສ້າງເວັບແລ້ວຢາກ register ຫຼຶທ່ານບອກວິທີສະໝັກທີ່ ເວັບ <a href='www.co.cc' rel='external'>www.co.cc</a> ໃຫ້ແດ່ເອົາແບບລະອຽດເດີພ້ອມວິທີອັບໂລດເດີ<br />ເອົາແບບຟີຮເດີ.<br /></span><div align="center"><span style="font-size: medium"><u><strong><em>ຂອບໃຈລວງໜ້າ.....</em></strong></u></span><br /></div>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sat, 11 Jul 2009 05:07:35 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">- </span><span style="font-size: small">ຄຶວ່າຂ້າເຈົ້າມີ Notebook Compaq Presario CQ40 ແລະມີບັນເມື່ອເວ ລາລົງວິນໂດຣພໍເມື່ອບູດໄປແລະມີຂໍ້ຄວາມຟ້ອງPress any Key to boot from CD ແລ້ວມັນກໍຄ້າງເລີຍ ແລະຂ້າພະເຈົ້າລອງທຳລົງວິນໂດຣ XP pack 2 ເວີສັນໃຫມ່ໆກໍບໍ່ຜ່ານຈັກເທື່ອເພາະຕອນຊື້ມາທຳອິດເຂົາເຈົ້າລົງXP ມາໃຫ້ ແລະຂ້ອຍໄດ້ລອງລົງVista ແມ່ນໄດ້ບໍ່ຮູ້ວ່າຊີ້ລົງ XP ລຸ້ນໃດຈຶ່ງຈະໄດ້ ຊ່ວຍບອກ ແດ່...<br />- ຢາກຮູ້ວິທີສ້າງຟາຍ Boot Logon Screen ຊ່ວຍບອກແດ່ວ່າເຂົາເຈົ້າໃຊ້ໂປຣແກຣມໃດສ້າງຖ້າມີຊ່ວຍເອົາມາໃຫ້ໂຫຼດແດ່<br /></span><div align="center"><span style="font-size: medium"><u><strong>ຂອບໃຈລ່ວງໜ້າຫລາຍໆເດີທ່ານ</strong></u></span><br /></div>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sun, 09 Aug 2009 05:12:24 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ<br />ຂ້າພະເຈົ້າມີບັນຫາເລື່ອງການພິມພາສາລາວອອກຢູ່ເຄື່ອງພິມ HP Laserjet P1005 and P1006 ມັນບໍ່ສາມາດພິມ font saysettha lao ໄດ້ມັນພິມອອກເປັນຕົວໜັງສືລາວທັບກັນສະຫລຸບແລ້ວແມ່ນອ່ານບໍ່ອອກ.<br />laoscript ທີ່ໃຊ້ກໍ່ເປັນ version 7.03.<br />ຖ້າໃຊ້ version 5.30 ບໍ່ມີບັນຫາ.<br />ໃຜຮູ້ວິທີແກ້ໄຂບັນນີ້ກະລຸນາບອກໃຫ້ຮູ້ແດ່ ຂອບໃຈ<br /></span>]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Thu, 03 Sep 2009 09:57:46 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີທ່ານຜູ້ຮູ້ ຂ້າພະເຈົ້າມີເລື່ອງຢາກຖາມທ່ານແດ່, ຄືວ່າຂ້າພະເຈົ້າຢາກລົງ ວິນໂດວໃຫມ່ແຕ່ບໍ່ມີ CD ROM ຈະຕັ້ງໄດ້ຈາກ USB HANDY DRIVE ຈະໄດ້ບໍ່ ແລະ ເຮັດແນວໃດ ຂໍຂອບໃຈຫຼາຍໆ</span>]]></description>
<author>soukhavath&lt;sayfone.soukhavath@nospam.com&gt;</author>
<pubDate>Fri, 25 Sep 2009 07:45:35 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><span style="color: #ff0000">ສະບາຍດີທ່ານ ຂ້າພະເຈົ້າຢາກຮູ້ວ່າເຮົາສາມາດອັບເກຣດກາດຈໍຂອງແລັບທອ໋ບ ACER ASPIRE 4520 ຈາກ 512 ເປັນ 1gb ໄດ້ບໍ່ ແລະ</span> <span style="color: #ff0000">ຈະໃຊ້ຫລິ້ນເກມໄດ້ດີບໍ່ ເພາະຕອນນີ້ມີ 512 ມັນຊ້າຫຼາຍ ຂອບໃຈ<br /></span></span>]]></description>
<author>soukhavath&lt;sayfone.soukhavath@nospam.com&gt;</author>
<pubDate>Tue, 29 Sep 2009 06:27:03 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ບອກວິທີແກ້ທີ່ regedit ຫຼຶບ່ອນອື່ນໆ ໃຫ້ຄອມ shutdown ໄວໆແດ່ທ່ານ</span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Fri, 02 Oct 2009 02:41:20 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<strong><span style="font-size: small">+Windows Vista Default Boot Screen</span></strong><br /><img src="http://www.johntp.com/wp-content/uploads/vista-default-boot-screen.jpg" style="border: 0px solid black" /><br /><br /><span style="font-size: small"><strong>+Aurora Boot Screen<img src="file:///C:/DOCUME%7E1/alexai/LOCALS%7E1/Temp/moz-screenshot.png" /></strong></span><br /><img src="http://www.johntp.com/wp-content/uploads/vista-aurora-boot-screen.jpg" style="border: 0px solid black" /><br /><span style="font-size: small"><strong>Here is how you can enable the Aurora Boot Screen in Windows Vista:</strong></span> <ol><li><span style="font-size: small">click on the start orb and type in “MSCONFIG” in the searchbox and press <em>Enter</em></span></li><li><span style="font-size: small">once the System Configuration tool loads, click on the Boot tab</span></li><li><span style="font-size: small">under Boot Options check “No GUI boot”</span></li><li><span style="font-size: small">click apply and then OK and restart your computer to see the new boot screen.</span></li></ol>Credit:www.johntp.com<br /><br /><img src="http://www.laoav.net/images/emotes/default/biglaugh.png" style="border: 0px none " alt="biglaugh.png" /><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Fri, 02 Oct 2009 05:50:00 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">- PE Explorer v1.99 R5<br /><br />- Resource Tuner v1.99 R2 Or v.199 R3<br /><br /></span><div align="center"><u><span style="font-size: small"><strong>ຂ້າພະເຈົ້າເໝື່ອຍຊອກລະຈັງໃດກະບໍ່ໄດ້ ຊ່ວຍແດ່....</strong></span><br /></u> </div>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sun, 04 Oct 2009 18:06:22 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ai alex tha file " NTDLR" and "NTDETECT.com"<br />tha mun sia ja kae neo dai doi thi bor tong long windown mai]]></description>
<author>bee&lt;bb_beman_bb@nospam.com&gt;</author>
<pubDate>Thu, 15 Oct 2009 06:55:03 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຢາກພິມຊື່ Folder ເປັນພາສາລາວຕ້ອງເຮັດແນວໃດ?ຊ່ວຍກະລຸນາບອກແດ່?]]></description>
<author>somkith&lt;s.kith@nospam.com&gt;</author>
<pubDate>Fri, 16 Oct 2009 06:47:00 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີທ່ານ ອາເລັກໄຊ ແລະ ທ່ານຜູ້ຮູ້ທັງຫຼາຍ.<br />ຂ້າພະເຈົ້າຂໍຖາມທ່ານ ແດ່ໄດ້ບໍ່ວ່າ: ເວລາຂ້າພະເຈົ້າສັ່ງພີມເອກະສານໃດນື່ງອອກມາແລ້ວປະກົດວ່າໂຕໜັງສືເປັນລະບຽບເຊັ
່ນວ່າ: "ສາທາລະນະລັດ ປະຊາທິປະໄຕ ປະຊາຊົນລາວ" ແຕ່ເວລາພີມພັດເປັນແບບນີ້ "າສາທະລະນດັລ ະປາຊິທະປ”ຕໄ ະປາຊນົນຊວາລ" ມັນບໍ່ເປັນລະບຽບ ອ່ານກະບໍ່ອອກ ຂ້າພະເຈົ້າໄດ້ລຶບ ແລະ ລົງ printer ໃໝ່ແລ້ວແຕ່ກໍ່ຍັງເປັນຄືເກົ່າຢູ່ ຂ້າພະເຈົ້າບໍ່ຮູ້ວ່າຈະແກ້ດ້ວຍວິທີໃດ. ຂໍຄວາມກະລຸນາຈາກທ່ານຊ່ວຍບອກວິທີແກ້ໃຫ້ ຂ້າພະເຈົ້າແດ່. ຂໍຂອບໃຈ.</span>]]></description>
<author>kaiti&lt;noauthor@nospam.com&gt;</author>
<pubDate>Thu, 22 Oct 2009 09:32:58 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ທ່ານ adminຊ່ວຍບອກແດ່ມີໂປຼມແກມຫັວງຫຼຶເທັກນິດແນວໄດ?
ທີບ່ໍໃຫ້ຜູ້ອື່ນລົງໂປແກຼມໃສ່ຄອມເຣົາໄດ້<br />ແລະບ່ໍອະນຸຍາດໃຫ້ເຂົາໃສ່ USb]]></description>
<author>toe&lt;manisaaaa@nospam.com&gt;</author>
<pubDate>Wed, 28 Oct 2009 10:54:23 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຂ້າພະເຈົ້າຢາກ Ghost Windows 7 ຊ່ວຍບອກວິທີແດ່+Restore</span><br /><span style="font-size: medium">ໃຊ້ໂປຣແກຣມໃດ?</span><span style="font-size: small"> <a href='www.ep-computer.110mb.com' rel='external'>www.ep-computer.110mb.com</a></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Tue, 10 Nov 2009 02:02:32 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ດຽວນີ້ຂ້າພະເຈົ້າມີdomain man ທີ່ເປັນ.110mb ແລະຂ້າພະເຈົ້າ ຕ້ອງການໃຫ້ເປັນ.Co.cc ສະແດງວ່າເຂົ້າໂຕ.co.cc ແລ້ວແລ່ນມາໂຕທີ່ .110mbເລີຍຊ່ວຍບອກເອົາວິທີທີ່ລະອຽດເດີທ່ານ...</span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sun, 15 Nov 2009 10:40:16 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຂໍລົບກວນເດ່ທ່ານວ່າ ຄອມຂອງຂ້າພະເຈົ້າໄດ້ອັບເກດຈາກ IE5 ມາເປັນ8 ແລ້ວເວລາເຂົ້າໜ້າຕ່າງທີ່ມີພາສາລາວແລ້ວມັນບໍ່ອອກເປັນພາສາລາວ ມັນເປັນຕາກະໂລ້ໝົດເລີຍ ບໍ່ຮູ້ວ່າຕ້ອງໄດ້ໄປແກ້ຄ່າໃໝ່ແນວໃດເດ່ເນ໋າະ]]></description>
<author>alextingtong&lt;thavisith84@nospam.com&gt;</author>
<pubDate>Wed, 25 Nov 2009 17:30:09 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: large">ສະບາຍດີທ່ານອາເລັກ ຢາກຖາມວ່າ chip ຕົວໃໝ່ຂອງ<br />xero c110b ມີຂາຍບໍໃນບ້ານເຮົາ<br />ລາຄາເທ່ົາໃດ? ຫຼືຕ້ອງການreset ເທົ່າໃດ ກີບ?<br />ເພາະວ່າ ຂ້ອຍຊື້ແພງຫຼາຍ ຕົວໜ່ືງ700ບາດ<br />4ຕົວ 2100ບາດ<br />ຊວຍແນະນຳຮ້ານແດ່.please!<br />thank you beforehand.</span>]]></description>
<author>toe&lt;manisaaaa@nospam.com&gt;</author>
<pubDate>Mon, 30 Nov 2009 14:20:28 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ເວລາເປີດຄອມຂີ້ນມາ ມັນປະກົດ Genmuine Microsoft Software"You may be victim of soft...<br />ຈະແກ້ແນວໄດ<br />ມັນເປັນvirus ບໍ?]]></description>
<author>toe&lt;manisaaaa@nospam.com&gt;</author>
<pubDate>Wed, 16 Dec 2009 04:33:42 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[อยากรู้วิทืกานเรัด link ในเวับไชท่านช่วยบอกแด่<br />และ บอกวิทืเขืยนพาสาลาวในเวับแด่<br />ขอบใจ]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Sat, 19 Dec 2009 10:26:50 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<a href="http://www.monavista.com/webboard/showthread.php?t=23344">http://www.monavista.com/webboard/showthread.php?t=23344</a>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Sat, 26 Dec 2009 12:32:52 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຂ້າພະເຈົ້າຢາກຖາມກ່ຽວກັບ Windows Live Messenger<br />Example der:<br />ສົມໝຸດເມື່ອຂ້າພະເຈົ້າອອນໄລຍ, ມີເພື່ອນອອນໄລຍ ຢູ່5ຄົນ ແລະຂ້າພະເຈົ້າຕ້ອງການຢາກໃຫ້ເຮົາສາມາດ z ບາດດຽວແລ້ວໄປຫາໝົດ ທຸກຄົນເລີຍ ລັກສະນະທີ່ຂ້າພະເຈົ້າເວົ້ານີ້ແມ່ນເປັນແບບ Shoutbox ທີ່ມີຢູ່ຕາມເວັບໄຊສ໌ຕ່າງໆ.ຊ່ວຍບອກວິທີອດ່ທ່ານວ່າຊີ້ເຮັດຈັງໃດ...<br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Tue, 29 Dec 2009 01:46:40 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<br /><br /><div align="center"><a href="http://upload.tarad.com/images2/10/2d/102d0d4b19f031a083a80d3d96339126.jpg"><strong><span style="font-size: large">ເບິ່ງໃບຫຼັກສູດການຮຽນ</span></strong></a><br /><br /><br /><br /><br /><span style="font-size: small">ຂອບໃຈທີ່ເຂົ້າເບິ່ງ </span><br /><a href="http://upload.tarad.com/images2/10/2d/102d0d4b19f031a083a80d3d96339126.jpg"><strong><span style="font-size: large"><br /><br /><br /><br /></span></strong></a></div>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Fri, 08 Jan 2010 12:14:51 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ເຈົ້າສະບາຍດີ<br /><br />ຂ້ອຍເອົາ ຮາດດິດມາເພີ່ມໃສ່ຄອມອີກນຶ່ງໜ່ວຍ ດ້ວຍດານຟໍເມັດໃໝ່ ແຕ່ເວລາເອົາເອກກະສານລົງແລະໃສ່ຊື່ໂຟດເດີ້ ກໍ່ເປັນສີຟ້າທັງໝົດ ຖາມວ່ານີ້ແມ່ນ ໄວຣັດ ຫຼືບໍ່</span>]]></description>
<author>CYBER-G&lt;samsians_12@nospam.com&gt;</author>
<pubDate>Fri, 22 May 2009 06:16:12 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີ ທຸກໆ ທ່ານ<br /><br />ໃຜຮູ້ ຫຼືເຄີຍແກ້ປັນຫານີ້ ລົບກວນທ່ານຊ່ວຍບອກວິທີແກ້ໃຫ້ແດ່ ຂ້ອງໄດ້ລອງແປງ registry ແຕ່ກໍຍັງໃຊ້ບໍ່ໄດ້ ຝາກໃຫ້ທ່ານຜູ້ຮູ້ຊ່ວຍແດ່ເດີ້,,,ຂອບໃຈ</span>]]></description>
<author>CYBER-G&lt;samsians_12@nospam.com&gt;</author>
<pubDate>Mon, 25 May 2009 06:00:26 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<a href='http://laoupload.com/EVC4W0WT5NF4/WinDowsRegdit.rar.html' rel='external'>WinDowsRegdit.rar - 13.9 Kb</a><br /><br /><br /><br /><a href="http://laoupload.com/EVC4W0WT5NF4/WinDowsRegdit.rar.html">http://laoupload.com/EVC4W0WT5NF4/WinDowsRegdit.rar.html</a><br /><br /><span style="font-size: medium">ແຕ່ຍ່າລືມຕີດຕັ້ງ net.framwork 2.0 ກ່ອນນະ</span>]]></description>
<author>TouMoua&lt;tou112000@nospam.com&gt;</author>
<pubDate>Sun, 21 Jun 2009 11:29:53 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຂ້າ virus ແລ້ວ ເປີດຄອມຂື້ີນມາ ເຫັນແຕ່ຮູບ ໃນ desktop icon ບໍ່ໂຊ ແລະ task bar ໂຊ<br />ເຮັດແນວໃດ ທ່ານ Admin ເອີຍ ຂໍລົລກວນແດ່]]></description>
<author>fueyching&lt;fueyching@nospam.com&gt;</author>
<pubDate>Mon, 02 Mar 2009 13:51:09 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: x-small">ສະບາຍດີທ່ານ ອາເລັກໄຊ<br />ຂພຈ ຢາກຖາມທ່ານວ່າ: ຝາຍນີ້ Thumbs.db ແລະ Desktop.ini ແມ່ນຝາຍຫຍັງ? ລືບອອກກໍມາໄຫມ່<br /><br />ຂອບໃຈລ່ວງໜ້າສຳລັບຄຳຄິດເຫັນ ແລະຂໍ້ແນະນຳ ທຸກທ່ານ</span>]]></description>
<author>icesman_007&lt;icesman_007@nospam.com&gt;</author>
<pubDate>Thu, 05 Mar 2009 12:30:59 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຢາກຖາມວ່າຄອມຂ້ອຍມັນຕິດ ໄວລັດຫຍັງ ເວລາ shutdown ເຄື່ອງ restart ໃໝ່ຕະຫລອດ. ມອດບໍ່ໄດ້ ກາລຸນາຊ່ສຍຂ້ອຍແດ່ບັນດາ ທ່ານຜູ້ຮູ້ທັງຫລາຍ, ຂໍຂອບໃຈໃນຄວາມຊ່ວຍເຫລືອລ່ວງໜ້າ. ]]></description>
<author>tip&lt;tipnahack@nospam.com&gt;</author>
<pubDate>Tue, 26 May 2009 06:14:57 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີອ້າຍໄດ້ລູກລະ ຈື່ຂ້ອຍບໍ ໂຈໄອທີຄອມ office ເຂົ້າ tool ແລ້ວປິດໂປຮແກຣມເອງໄວຣສໂຕໃດ ແລະ ເຂົ້າ run ບໍໄດ້ມັນຈະປິດເອງ ຂອບໃຈລ່ວງຫນ້າ</span>]]></description>
<author>JBN&lt;jbncomandmobile@nospam.com&gt;</author>
<pubDate>Fri, 29 May 2009 07:14:43 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ນ້ອງຢາກຂໍຖາມກຽ່ວກັບ Driver ສຽງຂອງ Notebook IBM thinkpad t42ທຳອິດແມ່ນ Notebook ຂອງນ້ອງບໍ່ມີ Driver ນ້ອງເລີຍເອົາ windows Dark V.6 ທີວ່າມີ All Driver ມາພ້ອມ, ເວລາທີນ້ອງເປີດເພງເປັນຫຍັງສຽງມັນຈື່ງກະຕຸກ ຄ້າຍຄືກັນກັບແຜ່ນຊີດີເປື້ອນທຳອິດນ້ອງຄິດວ່າເປັນນຳ file ເພງແຕ່ນ້ອງໄດ້ທົດລອງເບິ່ງແລ້ວໂດຍການເອົາໄປເປິດຢູ່ເຄື່ອງອື່ນແຕ່ກະບໍ່ເປັນຫ
ຍັງ? ພໍທີຈະມີວິທີຊ່ວຍນ້ອງໄດ້ບໍ່.</span>]]></description>
<author>thad&lt;thad_cs@nospam.com&gt;</author>
<pubDate>Thu, 25 Jun 2009 12:18:39 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ບັນດາທ່ານທັງຫລາຍ ຄອມພິວເຕີຂ້າພະເຈົ້າ ຕິດໄວຣັດ s.exe ແອນຕີໄວຣັດລາວ ບໍ່ສາມາຂ້າໄດ້ ຊ່ອຍຫາວິທີແກ້ຊ່ອຍແດ່<br /><br />ຂອບໃຈ ລ່ວງໜ້າ]]></description>
<author>Ammala&lt;ammala003@nospam.com&gt;</author>
<pubDate>Thu, 25 Jun 2009 12:24:32 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[Thyet Myo Hacking Day]]></description>
<author>vannasak777&lt;jesus0174@nospam.com&gt;</author>
<pubDate>Wed, 01 Jul 2009 11:42:36 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ ທ່ານ, ຂ້ອຍມີປັນຫາເລື່ອງໄວຣັສ ຕົວໃຫມ່ ຊື່ວ່າ FUvirus, ມີວີທີຂ້າບໍ່ ຊ່ອຍແດ່</span>]]></description>
<author>Phounsavath&lt;kae-tk@nospam.com&gt;</author>
<pubDate>Fri, 17 Jul 2009 11:38:56 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">I have virus problem on my notebook and I used Lao antivirus scan it, then I click delete all, finally my datas was disapear, is there any way to recover the datas back ?<br /><br /><br />Thanks...</span>]]></description>
<author>virus_lo&lt;lpb2d@nospam.com&gt;</author>
<pubDate>Sun, 02 Aug 2009 09:06:11 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີທ່ານ</span><br /><span style="font-size: small">ຂ້າພະເຈົ້າຂໍຖາມແດ່ ລາວແອນຕີ ມັນໝົດອາຍຸ ຕາມປົກະຕິແລ້ວ ຖ້າມັນໝົດອາຍຸການນຳໃຊ້ແລ້ວ ເຮົາລີມູບອອກ ແລ້ວມາຕັ້ງໃຫມ່ມັນກໍ່ໄຊ້ໄດ້ອີກ 60 ວັນ ແຕ່ຕອນນີ້ ລີມູບອອກຫລາຍຄັ້ງ ແລະ ກໍ່ ເປີດຄອມໃຫມ່ ແລ້ວຕັ້ງໂປແກມທີ່ດາວໂດດມາໃຫມ່ໆ ມັນກະຍັງຈຳຄືເກົ່າ</span><span style="font-size: small"> expire date ຂ້າບໍ່ໄດ້<br />ຂໍຄວາມຊ່ວຍເຫືລອແດ່ເດີ ທ່ານ<br /><br />ຊໍຂອບໃຈ<br /><br /></span>]]></description>
<author>panh&lt;ipsalady@nospam.com&gt;</author>
<pubDate>Tue, 04 Aug 2009 13:46:56 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: x-small">ຢາກຮູ້ວ່າ ໂຕ update ຂອງ laoav ທຸກໆ version ທີ່ໃຫ້ download ແລະ ສາມາດ update ໂດຍບໍ່ຕ້ອງ online ນັ້ນຄືບໍ່ມີແລ້ວ?</span>]]></description>
<author>lin&lt;reshocksay@nospam.com&gt;</author>
<pubDate>Fri, 07 Aug 2009 05:36:47 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ສະບາຍດີອ້າຍ, ອ້າຍມີວິທີຂ້າໄວຣັດ system volumໄດ້ບໍ່<br />ແລະໄວຮັດ Recycle.bin ມັນບໍ່ສາມາດລົບໄດ້ ໄຊ້ຫລາຍໂປແກມຢູ່</span>]]></description>
<author>phoothong&lt;saphai2552@nospam.com&gt;</author>
<pubDate>Tue, 08 Sep 2009 16:25:34 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ເອົາອ້າຍ ລົບກວນອີກແນ່ຫນ້ອຍຫນຶ່ງ ອັນໂຕວ່າ RECYCLE.BIN and syste volum information ບໍ່ແມ່ນໄວຮັດເປັນຫຍັງມັນ<br />ຄືລົບບໍ່ໄດ້<br />ມັນມີລັກສະນະເຮັດໃຫ້ເຄື່ອງຊ້າ<br />ວັນກ່ອນນ້ອງໃຊ້ Remove tool ຊ່ວນໃນການກວດແລະຂ້າສາມາດກວດພົບ ແລະກໍ່ຂ້າໄດ້ສຳເລັດ ແຕ່ມາເປິດເຄື່ອງ ຮີສະຕາດໃຫມ່ ກໍ່ບໍ່ເຫັນ ແຕ່ມາກວດໂດຍເປີດ Folder option ແລະhidden hide ກໍ່ຍັງເຫັນຄືເກົ່າ<br /><br />ຖ້າອ້າຍມີວິທີແກ້ບອກນ້ອງແນ່<br /><br />                                      ຈາກພູທອງ<br />                             ດ້ວຍຄວາມນັບຖືຢ່າງສູງ<br />                                      ບ້ານ  ສະຜ່າຍ ເມືອງຊະນະສົມບູນ ແຂວງຈຳປາສັກ ]]></description>
<author>phoothong&lt;saphai2552@nospam.com&gt;</author>
<pubDate>Thu, 10 Sep 2009 16:45:57 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ສະບາຍດີ ທ່ານ, ຂ້າພະເຈົ້າມີແນວຂໍລົບກວນຖາມທ່ານເດ່ວ່າ<br />ວ່າເວລາຂ້າພະເຈົ້າເປີດຄອມມາທຳອິດ ມັນຈະຟ້ອງວ່າ to help protect your computer, windows has closed this program ພໍເວລາກົດອອກແລ້ວມັນກໍ່ຖາມມາອີກອັນໃໝ່ວ່າ Generic host process for win32 services..... ຂ້າພະເຈົ້າຄິດວ່າແມ່ນໄວຣັດ ທ່ານພໍມີໂຕລີໂມບອອກ ຫຼື ວ່າ ມີວິທີແກ້ໄຂແນວໃດທີ່ຈະແນະນຳໃຫ້ຂ້າພະເຈົ້າເດ່ຈະໄດ້ບໍ່ເນ໋າະ ຂໍຂອບໃຈທ່ານຫຼາຍໆໆ<br /><br />ຂ້າພະເຈົ້າattachedຮູບມາໃຫ້ທ່ານເບິ່ງດ້ວຍ]]></description>
<author>pickachu&lt;piggy_pick@nospam.com&gt;</author>
<pubDate>Thu, 10 Sep 2009 20:57:20 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຊ່ວຍແດ່ອ້າຍ, ເມື່ອສຽບ USb ເຂົ້າໄປບໍ່ວ່າຈະລົງໂປແກມໃດກໍ່ແລ້ວແຕ່ໂປຼແກມລາວແອນຕີໄວຣັດຈະກວດສອບການຕັ້ງຄ
່າ Autorun ແຕ່ຫລັງຈາກນັ້ນເມື່ອ restart ຄອມພິວເຕີຄັ້ງທຳອິດ ໂປແກມລາວແອນຕີໄວຣັດຈະແຈ້ງວ່າໂປແກມນັ້ນລະບົບfileຖືກມີການປ່ຽນແປງ ໝາຍເຖິງ Lao antivirus ເສຍຫາຍ ແຕ່ຖ້າ start ເຄື່ອງອີກເທື່ອໜຶ່ງ ຈະບໍ່ສາມາດເປີດເຄື່ອງໄດ້ອີກເລິຍ ເປີດ ແລ້ວກໍ່ດັບຄ້າຍຄືກັນກັບໄຟດັບນີ້ແຫຼະ ຕ້ອງລົງວິນໂດວໃໝ່ຖຶງໄດ້. ນ້ອງບໍ່ຢາກ format usb ນ້ອງເພາະມີຂໍ້ມູນສຳຄັນຢູ່ ສິມີວິທີແກ້ໄຂແນວໃດ. ຊຶ່ງໄວຣັດນີ້ອາໄສ ຢູ່ file ຂອງວິນໂດວ ຊ່ອງ system32 ຊື່ kernel (ບໍ່ແນ່ໃຈ)ທີ່ສັງເກດຈະທຳລາຍສະເພາະ ວິນໂດວ XP ສ່ວນ window vista ບໍ່ເຫັນມີບັນຫາ ຊ່ວຍແດ່ເດີອ້າຍ!<img src="http://www.laoav.net/images/emotes/default/smile.png" style="border: 0px" alt="smile.png" /></span>]]></description>
<author>Lodsada&lt;Meekola2009@nospam.com&gt;</author>
<pubDate>Tue, 15 Sep 2009 05:16:14 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ ຂ້າພະຈົ້າພົບໂປຣແກຣມໜຶ່ງ ຂະນະທີ່ກຳລັງເປີດຊອກຫາ laoscript 7.03 crack ຢູ່ ມັນ popup ຂຶ້ນມາແລ້ວບອກວ່າຄອມທ່ານຕິດໄວຣັສ ແລະ ໃຫ້ດາວໂຫລດມັນເພື່ອປ້ອງກັນ ເມື່ອດາວໂຫລດແລະຕິດຕັ້ງແລ້ວສະແກນພົບ ແຕ່ບໍ່ສາມາດຂ້າໄດ້ ຕ້ອງໄດ້ສັ່ງຊື້ກ່ອນ, ແລະເມື່ອຈະ uninstall ອອກກໍ່ຖາມຫາ key ແລະ ບໍ່ສາມາດເອົາອອກໄດ້. ດັ່ງນັ້ນຂ້າພະເຈົ້າຈຶ່ງເຕືອນມາຍັງທຸກທ່ານ ເພື່ອລະວັງດ້ວຍ</span>]]></description>
<author>soukhavath&lt;sayfone.soukhavath@nospam.com&gt;</author>
<pubDate>Tue, 29 Sep 2009 06:42:09 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: xx-small">ມາແລ້ວພີ່ນ້ອງ ທະວິດສເຕີ້ລາວ twitterlao ລອງຫຼິ້ນນຳກັນເບິງຕາມລິງລຸຸມ່ນີ້<br /></span><a href="http://www.kavao.co.cc/"><span style="font-size: xx-small">www.kavao.co.cc</span></a>]]></description>
<author>to2009&lt;b.own@nospam.com&gt;</author>
<pubDate>Fri, 09 Oct 2009 11:59:29 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="color: #0000ff"><span style="font-size: medium">ເລື່ອງກໍ່ຄືວ່າຂ້າພະເຈົ້າໄດ້ດາວໂຫຼດເອົາໂປຣແກຣມແອນຕີໄວຣັສ<br />2009 ຂອງທ່ານອາເລັກໄຊມາໃຊ້ກໍ່ຫຼາຍວັນຈວນຈະໝົດກຳນົດໃຊ້ແລ້ວ<br />ສະນັ້ນ, ຂໍຮຽນມາຍັງທ່ານອາເລັກໄຊແດ່ວ່າຜູ້ຂ້າຈະລົງທະບຽນໃຊ້ແບບດົນໆນັ້ນ<br />ມັນມີວິທີການ ແລະ ຂັ້ນຕອນຫຍັງແດ່?<br />ຂໍໃຫ້ທ່ານຈົ່ງຊ່ວຍຊີ້ແຈ້ງຖະແຫຼງໄຂແດ້ເດີທ່ານເອີຍ, ຂໍຂອບໃຈ<br /></span></span>]]></description>
<author>Lair&lt;chanhthavong@nospam.com&gt;</author>
<pubDate>Thu, 22 Oct 2009 11:06:49 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ເລື່ອງກໍ່ມີຢູ່ວ່າ: computer ຂອງຂ້າພະເຈົ້າຕິດໄວລັດສ໌ ເວລາເປີດຄອມຂື້ນມາມັນຈະ ແລ່ນເຂົ້າໄປຫາ folder ທີ່ຂ້າພະເຈົ້າສ້າງຂື້ນມາໂລດ ເວລາປິດມັນອອກບາງເທື່ອກະໄດ້ ແລະ ບາງເທື່ອກະປິດບໍ່ໄດ້, folder option, windows Task Manager ແລະ ປຸ່ມ search ກະເຂົ້າບໍ່ໄດ້. ຂ້າພະເຈົ້າວ່າຕ້ອງແມ່ນໄວລັດສ໌ Autorun ແທ້ໆ.ຂໍໃຫ້ທ່ານຊ່ວຍບອກວິທີແກ້ໃຫ້ຂ້າພະເຈົ້າແດ່.<br />ຂໍຂອບໃຈ.</span>]]></description>
<author>kaiti&lt;noauthor@nospam.com&gt;</author>
<pubDate>Fri, 23 Oct 2009 05:05:05 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-family: 'Saysettha OT'"><span style="font-size: small">ບັນຫາ​ເກົ່າ​ຍັງ​ບໍ່​ໝົດ​ມີ​ບັນຫາ​ໃໝ່​ອີກ​ລະ ຄື​ວ່າຄອມ​ຂອງ​ຂ້າພະ​ເຈົ້າ​ບໍ່​ຮູ້​ວ່າ​ເປັນ​ຫຍັງ​ໂຕ​ເລກ​ຢູ່​ທີ່ Local Area Connection Status ​ເພີ່ມ​ຂື້ນ​ເລື້ອຍໆ ຈົນ​ບໍ່​ຢຸດ​ບໍ່​ເຊົາ ​ເວລາ​ບໍ່​ໄດ້​ຫຼີ້ນກະ​ຄື​ກັນ​ຖ້າ​ຫາກ​ວ່າ​ໄດ້​ເຊື່ອມ​ຕໍ່​ກັບອິນ​ເຕີ​ເນັ
ດ​​ແລ້ວ​ມັນ​ກໍ່​ຈະ​ເພີ່ມ​ຂື້ນ​ຕະຫຼອດ ດັ່ງ​ຮູບ​ລຸ່ມນີ້. ​ຂ້າພະ​ເຈົ້າ​ໄດ້​ລອງ​ໃຊ້ program “Net-Worm.Win32.Kido killer” ມາ sacan ​ແລ້ວ​ແຕ່​ກໍ່​ຍັງ​ເປັນ​ຄື​ເກົ່າ ​ແລະ ຂ້າພະ​ເຈົ້າ​ໄດ້ລົງ windows ​ໃໝ່​ກະ​ຍັງ​ເປັນ​ຄື​ເກົ່າ ບໍ່​ຮູ້​ວ່າ​ເປັນ​ອີ່​ຫຍັງ.!</span></span><span style="font-size: small"></span><span style="font-family: 'Saysettha OT'"></span><span><span style="font-size: small; font-family: Times New Roman"> </span></span> <br /><img src="C:&#092;Documents and Settings&#092;kone&#092;My Documents&#092;My Pictures&#092;network1.jpeg" style="width: 400px; height: 400px" alt="jpeg" title="jpeg" />]]></description>
<author>kaiti&lt;noauthor@nospam.com&gt;</author>
<pubDate>Fri, 30 Oct 2009 11:06:23 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: x-small">Sa bay dee Mr Alexai,<br />i have problem with recovery picture my hard disk already formatted one time whether can recover back or not? if can please assist to give the steps or program which program can recover back.<br /><br />Many thanks.....</span>]]></description>
<author>luangsayKP&lt;noauthor@nospam.com&gt;</author>
<pubDate>Tue, 17 Nov 2009 08:40:13 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ ທ່ານ ອາເລັກ ແລະ ທ່ານຜູ້ຮຽນຮູ້ທັງຫຼາຍ<br /><br />ຂ້າພະເຈົ້າຂໍຖາມບັນດາທ່ານແນ່ວ່າ ມີໂປຼແກມໃດບໍ່ທີ່ສາມາດກູ້ folder ໃນ computer ໄດ້ ຂ້າພະເຈົ້າເຄີຍໃຊ້ໂປຼແກມ recovery ຫຼາຍໆ ໂປຼແກມແລ້ວແຕ່ກໍ່ບໍ່ສາມາດທີ່ຈະກູ້ຟາຍທີ່ເປັນ folder ໄດ້.<br /><br />ທ່ານໃດຮູ້ຊ່ວຍບອກຂ້າພະເຈົ້າແນ່<br /><br />ຂໍຂອບໃຈ!</span>]]></description>
<author>kaiti&lt;noauthor@nospam.com&gt;</author>
<pubDate>Thu, 19 Nov 2009 07:08:32 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຄອມພິວເຕີ ບໍ່ສາມາດຫຼີ້ນ Messenger ໄດ້ເປັນຍ້ອນສາເຫດອັນໃດ ກະລຸນາຊ່ວຍບອກຂ້າພະເຈົ້າດ້ວຍ ຂໍຂອບໃຈ.]]></description>
<author>ti007&lt;noauthor@nospam.com&gt;</author>
<pubDate>Mon, 30 Nov 2009 08:35:57 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">Lao-Antivirus ກັບ Kaspersky,Nod32,Avira, Panda...... ຄວາມສາມາດເທົ່າທຽມກັນບໍ??</span> <span style="font-size: small">ຕ້ອງຂໍອະໄພຫຼາຍໆເພາະວ່າຢາກຮູ້ຈີງໆໆໆ<br />ຂໍຂອບໃຈ<br /></span>]]></description>
<author>Love Never End&lt;xarhang@nospam.com&gt;</author>
<pubDate>Sat, 12 Dec 2009 12:33:45 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ໄວຣັດ dj-dn.exe ແລະ dj-apple.exe ລົບກວນຖາມວິທີຈັດການກັບໄວຣັດພວກນີ້ແດ່ ຕອນນີ້ມັນຮັກຂ້າພະເຈົ້າຫຼາຍ<br />ລົບກະບໍ່ໜີໄລ່ໜີກະບໍ່ໜີ ຂອບໃຈທ່ານທີ່ຈະໃຫ້ທິດທອງ</span>]]></description>
<author>2222&lt;zeing@nospam.com&gt;</author>
<pubDate>Thu, 17 Dec 2009 06:14:35 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[อยากรู้ว่า lao av สามาดลงกับ windows vista ได้บ่อ<br />และ อยากรู้วิทีลบ ลูกสอน shortcut อยู่ปุ่มไอคอนเทิงหน้า desktop<br />ช่วยบอกแด่ thank you]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Fri, 18 Dec 2009 14:43:19 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຄອມພິວເຕີ ບໍ່ສາມາດປ່ຽນ workgroup ໄດ້ ແລະ ບໍ່ສາມມາເຂົ້າວົງເນັກເວີກດ່ຽວກັນ ຜູ້ຊ່ວຍບອກທາງແກ້ໄຂ້ໃຫ້ແດ່<br />ຂອບໃຈລ່ວງໜ້າ]]></description>
<author>ti007&lt;noauthor@nospam.com&gt;</author>
<pubDate>Wed, 23 Dec 2009 06:00:43 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຂໍ Lao antivirus version ໃໝ່ແດ່ໂຕທີ່ໃຊ້ກັບ windows vista - windows seven ໄດ້ ຂໍແດ່ທ່ານ</span>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Sat, 09 Jan 2010 09:01:07 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຢາກຮູ້ຈັກ processes ທີ່ໄວຮັດເຮັດວຽກເຮົາຈະສັງເກດແນວໃດ ແລະຈະຮູ້ໃດ້ແນວໃດວ່າໃວລັດຕົວໃດທີ່ກໍາລັງຢູ່ໃນເຄື່ອງຕອນນີ້ ຕົວທີ່ມັນບໍ່ສະແດງອາການຫຼືສະແດງຕົວຕົນ<br />   ແລະມີອີກໜຶ່ງຄໍາຖາມເຮົາເວລາເຮົາກອບປີ file ທີ່ເປັນ.exe<br />ຈະໃປ setup ກັບຄອມບາງໜ່ວຍ ແລ້ວມັນເປັນ file ແບບໄວລັດ ເປັນ exe ຢູ່ແຕ່ເວລາໃປຄິກເພື່ອຈະ setup ແລ້ວມັນຈະບໍ່ run ໃຫ້ ເຮົາຄວນຈະໃປປິດ processes ໂຕໃດ ຂອບໃຈ</span>]]></description>
<author>2222&lt;zeing@nospam.com&gt;</author>
<pubDate>Wed, 20 Jan 2010 08:33:33 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="color: #ffff00"><strong><span style="font-size: small">ທ່ານອາເລັກທີ່ນັບຖື</span></strong><br /></span><span style="color: #ffff00"><strong><span style="font-size: small">ຄອມ</span></strong></span><span style="font-size: small; color: #ffff00">ມັນເຕືອນວ່າມີ worm/confivk.164228 ຂຶ້ນມາ<br />ຕະຫຼອດ, ທ່ານມີວິທີການແກ້ໄຂແນວໃດ, ຊ່ວຍແດ່<br />ຂໍຂອບໃຈ</span><span style="color: #ffff00">, </span><span style="font-size: small; color: #ffff00">ຂ້າພະເຈົາໃຊ້ Avira 9 pro</span><br />]]></description>
<author>Lair&lt;chanhthavong@nospam.com&gt;</author>
<pubDate>Thu, 21 Jan 2010 09:26:08 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">+ມັນກອບປິຕົວເອງ<br /></span> <span style="font-size: small">• <span class="dictionary">%SYSDIR%</span>&#092;drivers&#092;BSmBT.exe<br />   • <em>%drive%</em>&#092;RECYCLER&#092;<em>%CLSID%</em>&#092;BSmBT.exe</span><br /><span style="font-size: small">ແລ້ວສ້າງໄຟລ<br />–  <span class="dictionary">%WINDIR%</span>&#092;logfile32.txt<br />–   <em>%drive%</em>&#092;autorun.inf<br />–   <em>%drive%</em>&#092;RECYCLER&#092;<em>%CLSID%</em>&#092;Desktop.ini </span><!--NO_BR--><!--NO_BR--><!--NO_BR--><br /><span style="font-size: small">+ສ້າງຄ່າໃນ Registry<br />–   [HKLM&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]<br />   •  "Microsoft Driver Setup"="<span class="dictionary">%SYSDIR%</span>&#092;drivers&#092;BSmBT.exe"<br />–  [HKLM&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;policies&#092;Explorer&#092;<br />   Run] <br />   • "Microsoft Driver Setup"="<span class="dictionary">%SYSDIR%</span>&#092;drivers&#092;BSmBT.exe"<br /></span><!--NO_BR--> <!--NO_BR-->  <br /><span style="font-size: small">–  [HKLM&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;SharedAccess&#092;Parameters&#092;<br />   FirewallPolicy&#092;StandardProfile] <br />   New value:<br />   • "EnableFirewall"=dword:0x00000000</span><br /><br /><span style="font-size: small">Worm ຕົວນີ້ຍັງປິດໂປຣແກຣມທີ່ມີຊື່ດັ່ງນີ້<br /></span><div align="left"><span style="font-size: small">VIPRE.EXE; ISSDM_EN_32.EXE; P08PROMO.EXE; K7TS_SETUP.EXE; </span><br /><span style="font-size: small">      AVINSTALL.EXE;  WITSETUP.EXE; TrendMicro_TISPro_16.1_1063_x32.EXE; </span><br /><span style="font-size: small">      VBA32-PERSONAL-LATEST-ENGLISH.EXE;  CCSETUP210.EXE; FSMB32.EXE; </span><br /><span style="font-size: small">      FSGK32.EXE; FSAV95.EXE;  FSAV530WTBYB.EXE; FSAV530STBYB.EXE; </span><br /><span style="font-size: small">      FSAV32.EXE; FSAV.EXE;  FSAA.EXE; FPROT.EXE; FP-WIN.EXE; FNRB32.EXE; </span><br /><span style="font-size: small">      FIH32.EXE;  FCH32.EXE; FAST.EXE; FAMEH32.EXE; F-STOPW.EXE; </span><br /><span style="font-size: small">      F-PROT95.EXE;  F-PROT.EXE; AFMAIN.EXE; SPIDERUI.EXE; SPIDERNT.EXE; </span><br /><span style="font-size: small">      ALERTMAN.EXE;  RAVMOND.EXE; MAKEREPORT.EXE; BOXMOD.EXE; 360SAFE.EXE; </span><br /><span style="font-size: small">      360RPT.EXE;  360HOTFIX.EXE; 360TRAY.EXE; NSVMON.NPC; NSAVSVC.NPC; </span><br /><span style="font-size: small">      NPCGREENAGENT.NPC;  PUSCAN.EXE; AYSERVICENT.AYE; AYAGENT.AYE; </span><br /><span style="font-size: small">      CMDAGENT.EXE;  CPF.EXE; VSMON.EXE; ZLCLIENT.EXE; NSUTILITY.EXE; </span><br /><span style="font-size: small">      NSPUPDT.EXE;  NAVQSCAN.EXE; NSPMAIN.EXE; NSPUPSVC.EXE; NSPSVC.EXE; </span><br /><span style="font-size: small">      MKSADMINCONSOLE.EXE;  MKSUPDATE.EXE; MKSPC.EXE; MKSFWALL.EXE; </span><br /><span style="font-size: small">      MKSVIRMONSVC.EXE;  MKS_SCAN.EXE; MKS_MAIL.EXE; MKSREGMON.EXE; </span><br /><span style="font-size: small">      KAVPFW.EXE;  KASMAIN.EXE; KAV32.EXE; KPFWSVC.EXE; KISSVC.EXE; </span><br /><span style="font-size: small">      KWATCH.EXE;  KPFW32.EXE; KAVSTART.EXE; KVSRVXP.EXE; KVOL.EXE; KVXP.KXP; </span><br /><span style="font-size: small">      KVMONXP.KXP;  CAVASM.EXE; CMAIN.EXE; ARCABIT.CORE.LOGGINGSERVICE.EXE; </span><br /><span style="font-size: small">      ARCABIT.CORE.CONFIGURATOR2.EXE;  TASKSCHEDULER.EXE; UPDATE.EXE; </span><br /><span style="font-size: small">      NETMONSV.EXE; FILEMONSV.EXE;  ABREGMON.EXE.EXE; ARCACHECK.EXE; </span><br /><span style="font-size: small">      ARCAVIR.EXE; AVMENU.EXE;  A2HIJACKFREE.EXE; A2SERVICE.EXE; A2START.EXE; </span><br /><span style="font-size: small">      A2SCAN.EXE;  A2GUARD.EXE; VRFWSVC.EXE; HFACSVC.EXE; VRMONSVC.EXE; </span><br /><span style="font-size: small">      HPCSVC.EXE;  HSVCMOD.EXE; VRMONNT.EXE; MKSTRAY.EXE; VBA32ADS.EXE; </span><br /><span style="font-size: small">      VBA32LDR.EXE;  FILELOCKSETUP.EXE; TSCFCOMMANDER.EXE; TMPROXY.EXE; </span><br /><span style="font-size: small">      TMPFW.EXE;  TMBMSRV.EXE; UFNAVI.EXE; UFSEAGNT.EXE; TISSPWIZ.EXE; </span><br /><span style="font-size: small">      SFCTLCOM.EXE;  TNBUTIL.EXE; DEFWATCH.EXE; RTVSCAN.EXE; SBAMSVC.EXE; </span><br /><span style="font-size: small">      SBAMUI.EXE;  SBAMTRAY.EXE; SAVADMINSERVICE.EXE; SAVSERVICE.EXE; </span><br /><span style="font-size: small">      SCFSERVICE.EXE;  SCFMANAGER.EXE; RAVTASK.EXE; CCENTER.EXE; ULIBCFG.EXE; </span><br /><span style="font-size: small">      RAVLITE.EXE;  PCTAV.EXEPCTAVSVC.EXEPXCONSOLE.EXEPXAGENT.EXERAV.EXE; </span><br /><span style="font-size: small">      PCTSAUXS.EXE;  PCTSTRAY.EXE; PCTSSVC.EXE; PCTSGUI.EXE; AVGAS.EXE; </span><br /><span style="font-size: small">      PAVBCKPT.EXE;  WEBPROXY.EXE; PAVSRV51.EXESRVLOAD.EXE; PSIMSVC.EXE; </span><br /><span style="font-size: small">      PSHOST.EXE;  AVENGINE.EXE; PSKMSSVC.EXE; PAVPRSRV.EXE; PAVFNSVR.EXE; </span><br /><span style="font-size: small">      PSCTRLS.EXE;  TPSRV.EXE; NOD32M2.EXE; NOD32CC.EXE; NOD32.EXE; </span><br /><span style="font-size: small">      NMAIN.EXE;  NOD32KUI.EXE; MSASCUI.EXE; MSMPENG.EXE; MCUPDATE.EXE; </span><br /><span style="font-size: small">      MCSHIELD.EXE;  MCVSSHLD.EXE; MCVSRTE.EXE; MCAGENT.EXE; KAVSVC.EXE; </span><br /><span style="font-size: small">      KAV.EXE;  K7TSMNGR.EXE; K7SPMSRC.EXE; K7RTSCAN.EXE; K7PSSRVC.EXE; </span><br /><span style="font-size: small">      K7FWSRVC.EXE;  K7EMLPXY.EXE; K7TSECURITY.EXE; K7SYSTRY.EXE; </span><br /><span style="font-size: small">      VIRUSUTILITIES.EXE;  GUARDXSERVICE.EXE; GUARDXKICKOFF.EXE; AVKWCTL.EXE; </span><br /><span style="font-size: small">      AVKTUNERSERVICE.EXE;  AVKSERVICE.EXE; GDFWSVC.EXE; AVKPROXY.EXE; </span><br /><span style="font-size: small">      GDFIRE~1.EXE;  AVKTRAY.EXE; GDFIREWALLTRAY.EXE; FSAUA.EXE; </span><br /><span style="font-size: small">      NOD32KRN.EXE;  FSMA32.EXE; FSDFWD.EXE; FSGK32ST.EXE; FSM32.EXE; </span><br /><span style="font-size: small">      FPWIN.EXE;  FPAVSERVER.EXE; FPROTTRAY.EXE; INICIO.EXE; UMXPOL.EXE; </span><br /><span style="font-size: small">      UMXFWHLP.EXE;  UMXAGENT.EXE; UMXCFG.EXE; PPCLTPRIV.EXE; SVCPRS32.EXE; </span><br /><span style="font-size: small">      ITMRTSVC.EXE;  CCPROVSP.EXE; MDMCLS32.EXE; CAGLOBALLIGHT.EXE; </span><br /><span style="font-size: small">      CAPFUPGRADE.EXE;  CAPFASEM.EXE; CAFW.EXE; CFGMNG32.EXE; CCTRAY.EXE; </span><br /><span style="font-size: small">      CLAMTRAY.EXE;  CLAMWIN.EXE; ALSVC.EXE; ALMON.EXE; DRWEBSCD.EXE; </span><br /><span style="font-size: small">      SPIDERML.EXE;  DRWEB32W.EXE; ACS.EXE; STRTSVC.EXE; OP_MON.EXE; </span><br /><span style="font-size: small">      SENSOR.EXE;  QHFW332.EXE; CATEYE.EXE; ONLNSVC.EXE; EMLPROUI.EXE; </span><br /><span style="font-size: small">      UPSCHD.EXE;  SCANMSG.EXE; SCANWSCS.EXE; EMLPROXY.EXE; ONLINENT.EXE; </span><br /><span style="font-size: small">      ASWCLNR.EXE;  BDAGENT.EXE; VSSERV.EXE; LIVESRV.EXE; XCOMMSVR.EXE; </span><br /><span style="font-size: small">      UISCAN.EXE;  BDSS.EXE; AVGUI.EXE; AVGUPD.EXE; AVGSCANX.EXE; AVGEMC.EXE; </span><br /><span style="font-size: small">      AVGUPSVC.EXE;  AVGAMSVR.EXE; AVGWDSVC.EXE; ASHWEBSV.EXE; ASHMAISV.EXE; </span><br /><span style="font-size: small">      ASWUPDSV.EXE;  ASHSERV.EXE; ASHDISP.EXE; AVCENTER.EXE; SCHED.EXE; </span><br /><span style="font-size: small">      AVIRARKD.EXE;  AVGNT.EXE; AVGUARD.EXE; AHNSDSV.EXE; ACAIS.EXE; </span><br /><span style="font-size: small">      ACALS.EXE;  ACAEGMGR.EXE; ACAAS.EXE; QOELOADER.EXE; APVXDWIN.EXE; </span><br /><span style="font-size: small">      QUHLPSVC.EXE;  123.EXE; RAVP.EXEMBAM.EXE123.COM; UNLOCKER1.8.7.EXE; </span><br /><span style="font-size: small">      UNIEXTRACT.EXE;  SYSANALYZER_SETUP.EXE; STARTDRECK.EXE; SPF.EXE; </span><br /><span style="font-size: small">      REGX2.EXE;  REGSHOT.EXE; REGSCANNER.EXE; REGISTRAR_LITE.EXE; </span><br /><span style="font-size: small">      REGCOOL.EXE;  REGALYZ.EXE; PROJECTWHOISINSTALLER.EXE; PROCMON.EXE; </span><br /><span style="font-size: small">      CUREIT.EXE;  FIXBAGLE.EXE; PGSETUP.EXE; OBJMONSETUP.EXE; NETALYZ.EXE; </span><br /><span style="font-size: small">      KILLBOX.EXE;  INSTALLWATCHPRO25.EXE; AVENGER.EXE; IEFIX.EXE; </span><br /><span style="font-size: small">      HOSTSFILEREADER.EXE;  FIXPATH.EXE; FILEFIND.EXE; FILEALYZ.EXE; </span><br /><span style="font-size: small">      EULALYZERSETUP.EXE;  A2HIJACKFREESETUP.EXE; DLLCOMPARE.EXE; </span><br /><span style="font-size: small">      CPROCESS.EXE;  CPORTS.EXE; ASVIEWER.EXE; APT.EXE; APM.EXE; </span><br /><span style="font-size: small">      WIRESHARK.EXE;  SPYBOTSD.EXE; TEATIMER.EXE; SPYBOTSD160.EXE; </span><br /><span style="font-size: small">      PROCESSMONITOR.EXE;  PROCDUMP.EXE; PG2.EXE; LORDPE.EXE; ICESWORD.EXE; </span><br /><span style="font-size: small">      REANIMATOR.EXE;  ROOTKITNO.EXE; RKD.EXE; HACKMON.EXE; UNHACKME.EXE; </span><br /><span style="font-size: small">      ROOTKIT_DETECTIVE.EXE;  AVGARKT.EXE; FSB.EXE; FSBL.EXE; </span><br /><span style="font-size: small">      ROOTKITREVEALER.EXE;  PSKILL.EXE; TASKMON.EXE; TASKLIST.EXE; </span><br /><span style="font-size: small">      TASKMAN.EXE;  PROCEXP.EXE; MSNFIX.EXE; HIJACKTHIS_V2.EXE; </span><br /><span style="font-size: small">      HIJACKTHIS.EXE;  HIJACKTHIS_SFX.EXE; HJTSETUP.EXE; HJTINSTALL.EXE; </span><br /><span style="font-size: small">      OLLYDBG.EXE;  NETSTAT.EXE; PORTMONITOR.EXE; PORTDETECTIVE.EXE; </span><br /><span style="font-size: small">      FPORT.EXE;  APORTS.EXE; PAVARK.EXE; DARKSPY105.EXE; HELIOS.EXE; </span><br /><span style="font-size: small">      ROOTKITBUSTER.EXE;  ROOTALYZER.EXE; BC5CA6A.EXE; SEEM.EXE; </span><br /><span style="font-size: small">      DELAYDELFILE.EXE;  DUBATOOL_AV_KILLER.EXE; SUPERKILLER.EXE; </span><br /><span style="font-size: small">      KAKASETUPV6.EXE;  BUSCAREG.EXE; MSNCLEANER.EXE; SRESTORE.EXE; </span><br /><span style="font-size: small">      BOOTSAFE.EXE;  SUPERANTISPYWARE.EXE; CCLEANER.EXE; </span><br /><span style="font-size: small">      REGUNLOCKER.EXETSNTEVAL.EXEXP_TASKMGRENAB.EXE;  CF9409.EXE; GMER.EXE; </span><br /><span style="font-size: small">      CATCHME.EXE; SDFIX.EXE; COMBOFIX.EXE;  SRENGPS.EXE; AUTORUNS.EXE; </span><br /><span style="font-size: small">      TASKKILL.EXE; REGEDIT.EXE; REG.EXE;  MYPHOTOKILLER.EXE; </span><br /><span style="font-size: small">      KILLAUTOPLUS.EXE; FOLDERCURE.EXE;  REGEDIT.SCR; REGEDIT.COM; MMC.EXE; </span><br /><span style="font-size: small">      TCPVIEW.EXE; LISTO.EXE;  GUARD.EXE; NTVDM.EXE; COMMAND.COM; </span><br /><span style="font-size: small">      COMBOFIX.COM; COMBOFIX.SCR;  COMBOFIX.BAT; REGMON.EXE; </span><br /><span style="font-size: small">      OTMOVEIT.EXEMBAM-SETUP.EXE;  JAJA.EXE; AVZ.EXE; MBAM.EXE; </span><br /><span style="font-size: small">      MBAM-SETUP.EXE; PENCLEAN.EXE;  ELISTA.EXE; HJ.EXE; </span><br /><span style="font-size: small">      WINDOWS-KB890930-V2.2.EXE; MRTSTUB.EXE;  MRT.EXE; HIJACK-THIS.EXE; </span><br /><span style="font-size: small">      VIRUS.EXE;  SAFEBOOTKEYREPAIR.EXEOTMOVEIT3.EXEHOSTSXPERT.EXEDAFT.EXE; </span><br /><span style="font-size: small">      ATF-CLEANER.EXE;  COMPAQ_PROPIETARIO.EXE; egui.exe; ekrn.exe; </span><br /><span style="font-size: small">      SRENGLDR.EXE;  HOOKANLZ.EXE</span><br /></div>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Tue, 09 Feb 2010 05:22:45 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[how to kill autorun on my usb?]]></description>
<author>tnvilay2010&lt;tnvilay2010@nospam.com&gt;</author>
<pubDate>Sat, 27 Feb 2010 05:43:11 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<strong>-</strong><span style="font-size: small"><strong>ເມືອຕິດມັນແລ້ວຈະສ້າງໄຟລ</strong><br />%System%&#092;sysinfo.exe<br /><br />%System%&#092;SYSINFO.BAT<br /><strong>-ສ້າງຄ່າໃນ Registry</strong><br /></span><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;Wnetwiss</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;Wnetwiss&#092;Security</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;Wnetwiss</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;Wnetwiss&#092;Security
</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services]</span></li><ul><li><span style="font-size: small">Start = 0x00000002</span></li><li><span style="font-size: small">Type = 0x00000020</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;Wnetwiss&#092;Security]</span></li><ul><li><span style="font-size: small">Security = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00  00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00  01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00  00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 0</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;ControlSet001&#092;Services&#092;Wnetwiss]</span></li><ul><li><span style="font-size: small">Type = 0x00000110</span></li><li><span style="font-size: small">Start = 0x00000002</span></li><li><span style="font-size: small">ErrorControl = 0x00000001</span></li><li><span style="font-size: small">ImagePath = "%System%&#092;sysinfo.exe"</span></li><li><span style="font-size: small">DisplayName = "Windows netware work information system setup"</span></li><li><span style="font-size: small">ObjectName = "LocalSystem"</span></li><li><span style="font-size: small">Description = "Provide  security by Windows netware work system  information "</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services]</span></li><ul><li><span style="font-size: small">Start = 0x00000002</span></li><li><span style="font-size: small">Type = 0x00000020</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;Wnetwiss&#092;Securit
y]</span></li><ul><li><span style="font-size: small">Security = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00  00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00  01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00  00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 0</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SYSTEM&#092;CurrentControlSet&#092;Services&#092;Wnetwiss]</span></li><ul><li><span style="font-size: small">Type = 0x00000110</span></li><li><span style="font-size: small">Start = 0x00000002</span></li><li><span style="font-size: small">ErrorControl = 0x00000001</span></li><li><span style="font-size: small">ImagePath = "%System%&#092;sysinfo.exe"</span></li><li><span style="font-size: small">DisplayName = "Windows netware work information system setup"</span></li><li><span style="font-size: small">ObjectName = "LocalSystem"</span></li><li><span style="font-size: small">Description = "Provide  security by Windows netware work system  information "</span></li></ul></ul></ul><br />]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Tue, 02 Mar 2010 04:26:20 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[TODAY I HAVE Program for scan your usb. this program is can kill folderEXE ,kill Autorun ..and easy to install..You can download this program in this link: Wait ...<br /><br /><br /><a href="http://www.4shared.com/file/245872838/f3feb574/DLRS_2010.html">http://www.4shared.com/file/245872838/f3feb574/DLRS_2010.html</a><br /><br />or<br /><br /><u><strong>http://rapidshare.com/files/366174273/DLRS_2010.zip.html</strong></u><br /><br /><br />Thank you for read.]]></description>
<author>DreamClown&lt;ak_fofo@nospam.com&gt;</author>
<pubDate>Mon, 15 Mar 2010 13:58:46 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ສະບາຍດີ Admin.<br />ມີເລື່ອງການຂ້າໄວຣັດ ມາຂໍຄວາມຊ່ວຍເຫຼືອນຳທ່ານອີກແລ້ວ<br /><br /><br />ໄວຣັດ Trojan.Win32.VB.ukk ມັນສ້າງ folder.exe ບໍ່ສາມາດຂ້າໄດ້<br /><br />ຂ້າພະເຈົ້າລອງໃຊ້ Zita ແລ້ວແຕ່ບໍ່ໄດ້ຜົນ<br />folder ທຸກອັນທີ່ມັນສ້າງຂື້ນມາຈະມີຂະໜາດ 136 kB ຄືກັນໝົດ<br /><br />ຂໍຄວາມຊ່ວຍເຫຼືອຕື່ມອີກແດ່ ຄວນຈະເຮັດແນວໃດ?]]></description>
<author>Houuu&lt;Studying-eci@nospam.com&gt;</author>
<pubDate>Tue, 16 Mar 2010 09:38:23 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຂ້ອຍລົງ office 2010 Beta ແຕ່ໃຊ້ໄປ 1 ເດືອນມັນຖາມລະຫັດ<br />ບໍ່ຮູ້ລະຫັດໃສ່ ທ່ານທັງຫຼາຍຊ່ວຍບອກແດ່ຖ້າໃຜມີ<br /></span><div align="center"><span style="font-size: large">THANK </span><br /></div>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Sun, 21 Mar 2010 10:16:25 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[I can't write Lao on forums. I buy new USB I save folders and files help! when I open any data I save is Lose all. I play song on my USB is stuck &amp; can't resume but my old USB can play, open files, folder &amp; song that I save I don't Know How to doooooo! help help help.thank you so much der!]]></description>
<author>No Fear&lt;amphay_vone@nospam.com&gt;</author>
<pubDate>Mon, 22 Mar 2010 12:33:44 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ข้าพะเจ้าบ่อหมั้นใจว่าตนเองพบไวรัสปะเพดใดเข้าไปแล้ว</span><span style="font-size: small">เพาะว่าเวลาที่มันติดแล้วพอเราเปีดเคื่องใหม่จะเข้าสู่หน้าจอปกกะติบ่อได้
อีก หมายความว่าบ่อมีไอคัอนหยังหมด แต่ก่อนหน้านั้นมันจะถามหาค้ายกับเวลาที่เราติดไวรัส </span><br /><span style="font-size: small">Flasy คือถามหาละหัดแต่อันนี้บ่อได้ใส่ละหัดหยัง แต่มันแปกอยู่บ่อนว่า พอ ENTER เข้าไปแล้วบ่อเป็นแบบที่เราหวัง มันบ่อมีไอคัอน มันบอกว่า RUNDLL32.DLL as an app และ Explorer บ่อสามาดเข้าเถิงได้ ข้าพะลงวินโดวใหม่ย้อนบ่อรู้หลายคั้งแต่2-3 มื้อหลือบ่อฮอดช้ำก็เป็นอีกแล้ว ใน USB ของข้าพะเจ้า Format หลายเทื่อแต่ก็ยังเห็นอยู่ขะหนาดใช้ WinPE เ้้ข้าไปช่วยแต่บ่อได้ผนมันกับคืนมาให้เห็น และ จำลองฟายชื่อเดียวกันกับที่เราเปีดใช้งานอีกแต่มีนามสะกุนเป็น *.EXE คื สมมุดว่าเวลาเราเปีด ลาวแอนตี้ไวรัสขิ้นมา</span><span style="font-size: small">USBของเราจะมีเอกะสานที่ชื่อ ลาวแอนตี้ไวรัส.EXE </span><span style="font-size: small">เป็นตัวพิมใหย่หมด แล้วตามด้วย ฟาย Autorun.ini จุดพิเสดก็คือมีไอคัอนแบบเดียวกับไอคัอนของ RUNDLL32.DLL ของวินโด ต่างแต่มีสีจางกว่าเท่านั้นเอง<br />ขอความช่วยเหลือจากท่านผู้รู้ กะลุนาหาทางออกช่วยข้าพะเจ้าแด่ท้อนเมื่อยนำมันหลายจนปันยาแท้จนปันยาว่า<br /></span>]]></description>
<author>kanda_cute&lt;kanda_cute@nospam.com&gt;</author>
<pubDate>Thu, 01 Apr 2010 07:41:54 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<strong>ມັນກໍມີຢູ່ວ່າ<br />ເປີດຄອມດີໆ ກະມີ Notepad ຂຶ້ນມາເອງ<br />ເຮົາຄິດຕ້ອງໄວລັດແທ້ໆ<br />ເພາະຕ້ອງເບິ່ງຫນັງມັນກະຄ້າງໆກະຕຸກໄປໆ<br />ຄອມຊ້າໄປອີກ- -<br />admin ພໍມິໃຫ້ຂ້າບໍ່?<br /></strong>]]></description>
<author>xcboy&lt;oudomsavanh@nospam.com&gt;</author>
<pubDate>Thu, 01 Apr 2010 19:01:12 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ ຂ້າພະເຈົ້າເຈິໄວຣັສ FolderData.exe ມັນຈະເຮັດໃຫ້ເຮົາບໍ່ສາມາດ ໂຊ hidden file ໄດ້ ແຕ່ Folder Option ແມ່ນຍັງເຫັນແລະເຂົ້າໄດ້ ແຕ່ພໍເລືອກໃຫ້ໂຊ Hidden folder ແລ້ວ OK ມັນກໍ່ກັບໄປ Don't show hidden file ຄືເກົ່າ ແລະ Antivirus ທີ່ໃຊ້ຢູ່ກໍ່ຖືກປິດໄວ້ບໍ່ສາມາດເຮັດວຽກໄດ້ , ກະລຸນາບອກວິທີ່ຂ້າມັນແດ່ ຂອບໃຈ</span>]]></description>
<author>soukhavath&lt;sayfone.soukhavath@nospam.com&gt;</author>
<pubDate>Fri, 02 Apr 2010 09:21:05 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">Worm ຕົວນີ້ມັນລອກລວງດ້ວຍການໃຊ້ Icon ຂອງຮູບ<br /></span><img src="http://sites.google.com/site/laoavfiles/Home/Fakeimgworm.PNG" style="border: 0px solid black" /><br /><span style="font-size: small">ເພື່ອໃຫ້ເຮົາຫລົ້ງເປິດມັນ<br />+ຄອມທິ່ຕິດມັນສ້າງໄຟແລະ Rigistry ດັ່ງນີ້:<br /><br /></span><ul><li><span style="font-size: small">The following Registry Keys were created:</span></li><ul><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.sm2</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;sm2File</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;sm2File&#092;DefaultIcon</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;sm2File&#092;shell</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;sm2File&#092;shell&#092;open</span></li><li><span style="font-size: small">HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;sm2File&#092;shell&#092;open&#092;command</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;E
xplorer&#092;Run</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;S
ystem</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows Script</span></li><li><span style="font-size: small">HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows Script&#092;Settings</span></li></ul></ul> <ul><li><span style="font-size: small">The newly created Registry Values are:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;jpegfile]</span></li><ul><li><span style="font-size: small">InfoTip = "Size: 7.24 MB"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;.sm2]</span></li><ul><li><span style="font-size: small">(Default) = "sm2File"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;sm2File&#092;shell&#092;open&#092;command]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;drivers&#092;etc&#092;services.exe"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;sm2File&#092;DefaultIcon]</span></li><ul><li><span style="font-size: small">(Default) = "%System%&#092;SHELL32.dll,1"</span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run]</span></li><ul><li><span style="font-size: small">Lao Antivirus = "%Windir%&#092;NOTEPAD.EXE"</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Internet Explorer&#092;Main]</span></li><ul><li><span style="font-size: small">Window Title = 0x00000009</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
Explorer]</span></li><ul><li><span style="font-size: small">NoRun = 0x00000001</span></li><li><span style="font-size: small">NoFolderOptions = 0x00000001</span></li></ul><span style="font-size: small"><br /><em>to remove the Folder Options item from all Windows Explorer menus  and from Control Panel</em><br /></span><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
Explorer&#092;Run]</span></li><ul><li><span style="font-size: small">Explorer = "%System%&#092;Explorer.sm2"</span></li></ul><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Policies&#092;
System]</span></li><ul><li><span style="font-size: small">DisableRegistryTools = 0x00000001</span></li><li><span style="font-size: small">DisableTaskMgr = 0x00000001</span></li></ul><span style="font-size: small"><br /><em>to disable the Windows registry editors (Regedt32.exe and  Regedit.exe)</em><br /><em>to prevent users from starting Task Manager (Taskmgr.exe)</em><br /></span><li><span style="font-size: small">[HKEY_CURRENT_USER&#092;Software&#092;Microsoft&#092;Windows Script&#092;Settings]</span></li><ul><li><span style="font-size: small">JITDebug = 0x00000000</span></li></ul></ul></ul> <ul><li><span style="font-size: small">The following Registry Values were modified:</span></li><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;CLSID&#092;{645FF040-5081-101B-9F08-
00AA002F954E}]</span></li><ul><li><span style="font-size: small">LocalizedString = </span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Classes&#092;exefile]</span></li><ul><li><span style="font-size: small">(Default) = </span></li><li><span style="font-size: small">InfoTip = </span></li></ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows  NT&#092;CurrentVersion&#092;Winlogon]</span></li><ul><li><span style="font-size: small">Shell = </span></li></ul></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 07 Apr 2010 12:03:51 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[หลายท่านคงจะเคียภืกใวลัดโฟเดีเข้าUSBเชี่งก่มีหลายชะนีด.เชี่งข้อยเองก่เ
คียถืกมาหลายแล้วจื่งใด้<br />พัดทะนาโปแกมมาเพื่อกำจัดใวลัดนื้เพื่อให้เข้าโฟเดีใด้โดยปาดชะจากใวลัด แต่ถ้าคอมเจ้าถืกใวลัด<br />เข้ายู่แล้วอาดจะบ่ใด้ผนเพาะถ้าท่านใช้ข้าแล้วมันก่จะCopyตนเองมาใส่อีก สะน้นควนจะป้องกันใวก่อนจื่ง<br />เข้าUSBทุกเทื่อ.และโปแกมนื้ยังสามาดข้าและส้างโฟเดิเพื่อป้องกันใวลัดAut
orunใด้อีก<br />วีทีใช้ก่คืกับโปแกมท่วใป. ดาวโลดใน Link นื้.<br /><a href="http://www.4shared.com/file/IpNS0uhj/Folder_EXE__File_Hidden_Fix.html">http://www.4shared.com/file/IpNS0uhj/Folder_EXE__File_Hidden_Fix.html</a>"<br />หลื<br /><a href="http://rapidshare.com/files/379537973/Folder_EXE___File_Hidden_Fix.rar.html">http://rapidshare.com/files/379537973/
Folder_EXE___File_Hidden_Fix.rar.html</a><br />]]></description>
<author>DreamClown&lt;ak_fofo@nospam.com&gt;</author>
<pubDate>Sat, 24 Apr 2010 12:47:30 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ເປີດ USB Drive ແລ້ວພົບ japan.exe, DotA editor.exe, explorer.exe, MonsterHunter_Freedom_3G_easda_9re292j92.jpg.exe ແກ້ແນວໃດ?]]></description>
<author>BillyKhem&lt;billykhem@nospam.com&gt;</author>
<pubDate>Tue, 27 Apr 2010 11:29:57 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">Lao antivirus 2010 ສາມາດຟື້ນຟູໄຟຮທີ່ຕິດໄວຮັສໄດ້ບໍ່</span>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Fri, 30 Apr 2010 18:12:08 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ເພື່ອນຂອງຂ້າພະເຈົ້າ ໃຊ້ Lao Antivirus ແລະ ໄດ້ລົງທະບຽນຮຽບຮ້ອຍແລ້ວ<br />ແຕ່ເມື່ອນຳມາສະແກນ computer ແລ້ວມັນເຫັນໄວຣັສ໌ ຫລາຍຕົວ ຫລັງຈາກສະແກນ<br />ສຳເລັດແລ້ວ ມັນຖາມວ່າຕ້ອງການລົບບໍ່?<br />ເພື່ອນຂ້າພະເຈົ້າບໍ່ເຂົ້າໃຈເລີຍສັ່ງລົບ ແຕ່ພໍ Start ເຄື່ອງໃໝ່ ເຂົ້າ ວິນໂດ ບໍ່ໄດ້ເລີຍ<br /><br />ຮຽນເຖິງທ່ານ Admin ຊ່ວຍອະທິບາຍວິທີການລົບ ແລະ ສັງເກດ Files ທີ່ Lao Antivirus ສະແກນເຫັນ ແລະ ສາມາດລົບໄດ້ ເພື່ອຄັ້ງໜ້າຈິ່ງຈະບໍ່ໄປລົບ ຈົນບໍ່ສາມາດ<br />ເຂົ້າວິນໂດ ໄດ້<br />ຂອບໃຈ.</span>]]></description>
<author>joykham&lt;joykham_ny@nospam.com&gt;</author>
<pubDate>Tue, 04 May 2010 11:46:46 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><br />http://www.seasondl.com/index.php?topic=7125.0</span><br /><br /><span style="font-size: small"><br />                DOWNLOAD ຕາມລິ້ງເທິ່ງນີ້ພ້ອມວິທີ່ໃຊ້ງານ</span>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Wed, 12 May 2010 13:07:40 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຄຶວ່າຈັງຊີ້ທ່ານ ຂ້າພະເຈົ້າກາບໍ່ຮູ້ວ່າອາການທີ່ຈະເວົ້າຕໍ່ໄປນີ້ແມ່ນໄວສຣັດ<br />ໂຕໃດ: ໄວສຮັດໂຕນີ້ສ່ວນແມ່ນມັກພົບດີພໍສົມຄວນ ຖ້າຕິດໄວສຮັດໂຕນີ້<br />ອາການມັນເມື່ອເຮົາ ຄຣິກຂວາ ແລ້ວເລື່ອນເມົາມາຫາບ່ອນ Sent to<br />ຫັນແລ້ວມັນເຮັດໃຫ້ຄອມຄ້າງເລີຍຈົນໄດ້ມອດເປີດໃໝ່...ຊ່ວຍໃຫ້ຄຳແນະ<br />ນຳແດ່ ຄັນດີທີ່ສຸດແມ່ນຢາກໃຫ້ທ່ານສ້າງTool ມາຂ້າໃຫ້ແດ່ເພາະມັນມັກ<br />ພົບຫຼາຍ.....<br /><br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sun, 23 May 2010 04:27:27 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><img src="http://blog.novirusthanks.org/img_articles/cartoline-spam-loader.gif" style="border: 0px solid black" /><br /></span><pre class="text" style="font-family: monospace"><span style="font-size: small"><strong>[+] Running processes</strong><br />C:&#092;windows&#092;wain.exe (2060288 bytes)<br /><br /><strong>[+] Registry startups</strong><br />Value: Win32<br />Data: C:&#092;windows&#092;wain.exe<br />Key: HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows&#092;CurrentVersion&#092;Run<br /><br /><strong>[+] Files created/modified </strong><br />C:&#092;WINDOWS&#092;nvsvs.exe (1033216 bytes)<br />C:&#092;WINDOWS&#092;wain.exe (2060288 bytes)<br />C:&#092;WINDOWS&#092;wilps.exe (806400 bytes)<br /><img src="http://blog.novirusthanks.org/img_articles/cartoline-spam-dropped-files.gif" style="border: 0px solid black" /><br /><br /><br /><br /></span></pre><span style="font-size: small"><br /></span>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 09 Jun 2010 11:27:31 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="color: #ff00ff">What is it  Please tell me</span><br /><br /> D:&#092;I Love You&#092;cstrike.exe,W32/Troj.00433949  (Troj)<br />---------------16/6/2553 16:39:20---------------<br />Found: D:&#092;Grams&#092;Antivirus&#092;avira_premium_security_suite_en.exe,W32/
Troj.82F4CB10  (Troj)<br />---------------16/6/2553 16:39:20---------------<br />Found: D:&#092;Grams&#092;For Internet&#092;dap91.exe,W32/Troj-Toolbar.  (Troj)<br />---------------16/6/2553 16:39:20---------------<br />Found: D:&#092;Grams&#092;For Internet&#092;MSN.exe,W32/Troj.4A6CA7F2  (Troj)<br />---------------16/6/2553 16:39:21---------------<br />Found: D:&#092;Grams&#092;For Internet&#092;Metin2_20080811.exe,W32/Troj.E2059570  (Troj)<br />---------------16/6/2553 16:39:21---------------<br />Found: D:&#092;Grams&#092;For Internet&#092;pal_install_r1261.exe,W32/Troj.45BE563C  (Troj)<br />---------------16/6/2553 16:39:21---------------<br />Found: D:&#092;Grams&#092;For Internet&#092;Paltalk 9.8.exe,W32/Troj.45BE563C  (Troj)<br />---------------16/6/2553 16:39:22---------------<br />Found: D:&#092;Grams&#092;Photo&#092;NoisewareProPlugin4205.exe,W32/Troj.48EFCDCD  (Troj)<br />---------------16/6/2553 16:39:22---------------<br />Found: D:&#092;Grams&#092;General&#092;WinRAR.v.3.7.Beta.7.Corp.exe,W32/Troj.161754  (Troj)<br />---------------16/6/2553 16:39:22---------------<br />Found: D:&#092;Grams&#092;General&#092;smarttranslator.exe,W32/Troj.3CE1015C  (Troj)<br />---------------16/6/2553 16:39:22---------------<br />Found: D:&#092;Grams&#092;General&#092;lswin604.exe,W32/Troj.3A5B1B81  (Troj)<br /><br /><br /><span style="color: #ff00ff">I'm dn't know What is it all In my Drive D LAV Found all Virus ??</span>]]></description>
<author>Love Never End&lt;xarhang@nospam.com&gt;</author>
<pubDate>Wed, 16 Jun 2010 12:54:46 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><strong>+File System Modifications</strong><br />%Temp%&#092;$$c1.tmp<br />%Temp%&#092;$$c1.tmp.bat<br />%ProgramFiles%&#092;Windows Media Player&#092;svchost.exe<br />%System%&#092;PDLL.dll<br /><strong>+Memory Modifications</strong><br />svchost.exe<br />PDLL.dll<br /><strong>+Registry Modifications</strong><br /></span><ul><li><span style="font-size: small">[HKEY_LOCAL_MACHINE&#092;SOFTWARE&#092;Microsoft&#092;Windows  NT&#092;CurrentVersion&#092;Winlogon]</span></li><ul><li><span style="font-size: small">Userinit = </span></li></ul></ul>]]></description>
<author>Admin♥&lt;maillaoav@nospam.com&gt;</author>
<pubDate>Wed, 23 Jun 2010 07:26:44 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຶBigbang.makelove.exe ແມ່ນຫຍັງ ແລ້ວຫາວິທີຂ້າແນວໃດ]]></description>
<author>sithanome&lt;yuki.sith79@nospam.com&gt;</author>
<pubDate>Tue, 03 Aug 2010 05:10:57 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium; color: #ff0000"><span style="color: #008080">ທ່ານ ໃດເຄີຍພົບບັນຫານີ້ </span>( <span>Run ຫາຍ</span>) <span style="color: #008080">ແລະ ມີວິທີ່ແກ້ຊ່ວຍບອກແນ່ຈະເປັນພະຄຸນຢ່າງສູງ<br />ທ່ານໄດ້ມີວິທີດີໆກະລຸນາແນະນຳດ້ວຍ  ຂອບໃຈລວງໜ້າ</span></span>]]></description>
<author>Pao13&lt;slk_pao@nospam.com&gt;</author>
<pubDate>Fri, 20 Aug 2010 07:00:41 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<div class="post"><div align="center"><span style="font-size: 15pt; line-height: 1.3em"><span style="color: teal"><strong>Avast Internet Security 5.0 Valid Licens 2011 | 49.62 MB </strong></span></span><br /><br /><img src="http://www.upthai.net/pictures/d6b8e62c6bccd6f7f2d75c265893a7b1.jpg" /></div><br /><br /><a href="http://www.upload.tc/download/71539/vast-internet-security-5.0-valid-licens-2011.rar.html" rel="external"><img src="http://seasondl.com/download.gif" /></a><br /><br /><br /><br /><div align="center"><img src="http://image.ohozaa.com/i2/sfsam.gif" /></div><br /><br /></div>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Fri, 27 Aug 2010 08:53:52 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຂ້າພະເຈົ້າຍາກຮູ້ວິທີhack password win</span>7<span style="font-size: small">+Vista ເພື່ອວ້ແກ່ໄຂ້ເມື່ອມີບັນຫາ...ຊ່ວຍບອກວິທີແດ່</span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sat, 27 Feb 2010 16:10:51 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><br />ເມື່ອຄອມເຮົາເປີດບໍ່ຂື້ນເຮົາຄວນໃຊ້ໂປຮແກຼມໂຕໃດໃນການ backUp driver<br />ແລະ ຊ່ວຍບອກຂັ້ນຕອນແດ່ ???????<br /><br /></span>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Sun, 28 Feb 2010 14:07:15 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">Beware of imitation Kingston flashdrive, i bougth a Kinston flashdrive 4 GB from a computer shop on 3/3/2010 on event sale on KhamphengMaueng Road, i just save file for two time, it's popup message: The disk cannot be written to because it is write protected." please remove the write protection from the volume G in drive&#092;Device&#092;Harddisk1&#092;DR11." i try many ways to remove write protect, but it's cannot untill i know it's fake Kingston so i don't want any one to be vitim of like me. i have picture to compare between true and fake attach here.<br /> </span>]]></description>
<author>soukhavath&lt;sayfone.soukhavath@nospam.com&gt;</author>
<pubDate>Fri, 12 Mar 2010 11:44:20 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຄຶວ່າ: ມີ USB ອັນໝື່ງຂອງພິ່ນ້ອງທີ່ມີເອກະສານword ແລະເພີ່ນຫລົງລົບຂໍ້ມູນ<br />ໄປໄດ້ປະມານ1ມື້ນີ້ແຫລະ ແລະຂ້າພະເຈົ້າພະຍາຍາມກູ້ດ້ວຍຫລາຍໂປຮແກຮມແລ້ວ<br />ສ່ວນຫຼາຍແມ່ນເຫັນແຕ່ເອກະສານເກົ່າເປັນປີລະ ແລະເອກະສານໂຕໃໝ່ພັດບໍ່ເຫັນ<br />ຂ້າພະເຈົ້າຢາກໃຫ້ທ່ານຊ່ວຍບອກໂປຮແກຮມໃດທີ່ສາມາດກູ້ໄດ້ ແຕ່ສິ່ງທີ່ສຳຄັນ ແມ່ນຢາກກູ້ເອົາແຕ່ຟາຍ Word+Excel ເປັນເອກະສານທີ່ຈຳເປັນທີ່ສຸດ.....<br /><br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Wed, 17 Mar 2010 15:21:16 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຄຶວ່າຂ້າພະເຈົ້າມີຢາກໄດ້ Driver modem For winphone 2000.<br />CDMA2000 1X...<br />ຂອບໃຈລວງໜ້າ....<br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Wed, 24 Mar 2010 07:28:08 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<ul><li>ກ່ອນອື່ນໝົດກໍ່ຂໍສະບານດີບັນດາທີມງານໝົດທຸກຄົນ, ບັນຫາຂອງຄອມພີວເຕີຂອງຂ້າພະເຈົ້າມີດັ່ງນີ້:<br />ຈະເກີດມີການຄ້າງຢູ່ຕະຫລອດເວລາເຊັ້ນວ່າ: ຂັ້ນຕອນການຕິດຕັງos, ຂັນຕອນການຳໃຊ້...ໃນຕອນທຳອິດຂ້າພະເຈົ້າຄິດວ່າ ຮາກດິດ ຕິດແບດເຊັກເຕີ ຂ້າພະເຈົ້າກໍ່ໄດ້ມີການເຄຍໄໝ່ໝົດ ແຕ່ກໍ່ຍັງມີອາການຄືເກົ່າ, ປ່ຽນແລມໃໝ່ກໍ່ຍັງຄືເກົ່າ ໃຫ້ພວກທ່ານຊ່ວຍແກ້ບັນຫານີ້ໃຫ້ແດ່ຂໍຂອບໃຈຫລາຍໆ.<br /></li></ul>]]></description>
<author>chilly&lt;nagavong@nospam.com&gt;</author>
<pubDate>Wed, 24 Mar 2010 10:53:36 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<strong><span style="font-size: small; color: #000000">ເລື່ອງ</span><span style="font-size: small">ມີຢູ່ວ່າ:</span><span style="font-size: small"> ຂ້າພະເຈົ້າໃຊ້ເຄື່ອງພິມ canon LBP5000 ມາກໍ່ດົນສົມຄວນ<br />ແຕ່ພໍປ່ຽນແທ້ງມຶກໃໝ່ກໍ່ມີອາການສີບໍ່ເຂົ້າກັນແບບວ່າ: ເວລາເຮົາປຣິນສີແລ້ວສີດຳກັບສີອື່ນຈະບໍ່ທັບກັນ<br />ມັນເປັນເໝືອນເງົາ, ທ່ານໃດມີວິທີການກໍ່ຂໍຄວາມກະລູນາຊ່ວຍແດ່<br />ຂໍຂອບໃ</span></strong><span style="font-size: small">ຈ</span>]]></description>
<author>Lair&lt;chanhthavong@nospam.com&gt;</author>
<pubDate>Tue, 30 Mar 2010 04:58:59 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">774GJ-X3942-9GTKT-FWYJ9-KM77K<br />GCBKQ-XD3M6-9PX9D-WGFT7-3TRTX<br />MBGPK-BTFT8-XCB4T-X39FG-4CCK6<br />MJVW8-679XG-YKG33-TGHTB- 3CF64<br />YWQBT-2F28H-278XB-9Q6HT-7YGRH</span><br /><br /><span style="font-size: small">ວິທີ່ລົງແມ່ນຕ້ອງລົງ key ທາງອິນເຕີເນັດ ຈຶ່ງຄ່ອຍໄດ້</span><br /><span style="font-size: small">ຖ້າໃຜມີຂໍ້ສົ່ງໄສ ສົ່ງມາຖາມໄດ້ເດີ<br />nook_noy@live.com</span>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Thu, 29 Apr 2010 06:51:53 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຊ່ວຍເເດ່ ຄອມພິມເຕີຂ້ອຍມີ Ram 4GB ບາດເບິ່ງນຳຄອມມີແຕ່ 3GB, ຖ້າໃຊ້ Win Vista ສິເຫັນເປັນ 4 GB, ຖ້າໃຊ້ XP ສິເຫັນແຕ່ 3GB, ລືມບອກຄອມຂ້ອຍແມ່ນ Notebook Dell VosTro 1720]]></description>
<author>aloun_n&lt;aloun_n@nospam.com&gt;</author>
<pubDate>Mon, 05 Apr 2010 07:05:07 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><span style="font-size: small">ຄຶວ່າ: ເວລາເຮົາສັງພິມເອກະສານທຸກຄັ້ງມັນພິມກາຍຕາຫລອດເຊັ່ນ: ສົມມຸດວ່າ<br />ເຮົາສັງພິມແຕ່ໜ້າທີ1 ເມື່ອມັນພິມອອກມາໜ້າທີ1 ແລ້ວລະພັດມີໜ້າທີ2 ອອກ<br />ຕາມມາທັງໆທີ່ບໍ່ໄດ້ສັງ ໜ້າທີ2ນັ້ນຈະເປັນຂໍ້ຄວາມກ່ຽວກັບເອກະສານໂຕນັ້ນໆ<br />ມັນຈະບອກທີ່ຕັ້ງຂອງເອກະສານ-ຂໍ້ມູນລາຍລະອຽດເອກະສານ</span><br /><br /></span><div align="center"><span style="font-size: medium; color: #ffff00"><strong>ຊ່ວຍບອກແດ່ວ່າຊີ້ແກ້ໄຂບັນໄດ້ຈັງໃດເພື່ອບໍ່ຢາກໃຫ້ມັນ<br />ພິມໜ້າທີ່ເຮົາບໍ່ໄດ້ສັງນັ້ນອອກໃຫ້ອອກແຕ່ໜ້າທີ່ສັງນັ້ນ</strong></span><br /></div>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sun, 04 Apr 2010 15:44:39 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ເຊິ່ງມັນຟ້ອງດັງຮູບ<br /></span><span style="font-size: x-small"><a href="http://laoupload.com/ZFDI4YL029XV/Capture.PNG.html" rel="external"><a href='http://img.laoupload.com/images/56173055914579550504.png' rel='external'>http://img.laoupload.com/images/56173055914579550504.png</a></a></span><br /><span style="font-size: medium"><br /></span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sun, 25 Apr 2010 17:34:45 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຂອບໃຈລວງຫນ້າຫລາຍໆໆໆໆໆໆໆໆໆໆໆໆໆໆໆໆໆໆໆໆໆໆໆໆ</span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sun, 25 Apr 2010 17:40:46 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<!--[if gte mso 9]><xml>  <w:WordDocument>   <w:View>Normal</w:View>   <w:Zoom>0</w:Zoom>   <w:PunctuationKerning/>   <w:ValidateAgainstSchemas/>   <w:SaveIfXMLInvalid>false</w:SaveIfXMLInvalid>   <w:IgnoreMixedContent>false</w:IgnoreMixedContent>   <w:AlwaysShowPlaceholderText>false</w:AlwaysShowPlaceholderText>   <w:Compatibility>    <w:BreakWrappedTables/>    <w:SnapToGridInCell/>    <w:ApplyBreakingRules/>    <w:WrapTextWithPunct/>    <w:UseAsianBreakRules/>    <w:DontGrowAutofit/>   </w:Compatibility>   <w:BrowserLevel>MicrosoftInternetExplorer4</w:BrowserLevel>  </w:WordDocument> </xml><![endif]--><!--[if gte mso 9]><xml>  <w:LatentStyles DefLockedState="false" LatentStyleCount="156">  </w:LatentStyles> </xml><![endif]--> <!--  /* Font Definitions */  @font-face 	{font-family:"Angsana New"; 	panose-1:2 2 6 3 5 4 5 2 3 4; 	mso-font-charset:0; 	mso-generic-font-family:roman; 	mso-font-pitch:variable; 	mso-font-signature:16777219 0 0 0 65537 0;} @font-face 	{font-family:"Saysettha Lao"; 	panose-1:2 11 5 4 2 2 7 2 2 4; 	mso-font-charset:0; 	mso-generic-font-family:swiss; 	mso-font-pitch:variable; 	mso-font-signature:3 0 0 0 1 0;}  /* Style Definitions */  p.MsoNormal, li.MsoNormal, div.MsoNormal 	{mso-style-parent:""; 	margin:0cm; 	margin-bottom:.0001pt; 	mso-pagination:widow-orphan; 	font-size:12.0pt; 	mso-bidi-font-size:14.0pt; 	font-family:"Times New Roman"; 	mso-fareast-font-family:"Times New Roman"; 	mso-bidi-font-family:"Angsana New";} @page Section1 	{size:595.3pt 841.9pt; 	margin:72.0pt 90.0pt 72.0pt 90.0pt; 	mso-header-margin:35.4pt; 	mso-footer-margin:35.4pt; 	mso-paper-source:0;} div.Section1 	{page:Section1;} --> <!--[if gte mso 10]> <style>  /* Style Definitions */  table.MsoNormalTable 	{mso-style-name:"Table Normal"; 	mso-tstyle-rowband-size:0; 	mso-tstyle-colband-size:0; 	mso-style-noshow:yes; 	mso-style-parent:""; 	mso-padding-alt:0cm 5.4pt 0cm 5.4pt; 	mso-para-margin:0cm; 	mso-para-margin-bottom:.0001pt; 	mso-pagination:widow-orphan; 	font-size:10.0pt; 	font-family:"Times New Roman"; 	mso-bidi-font-family:"Times New Roman"; 	mso-ansi-language:#0400; 	mso-fareast-language:#0400; 	mso-bidi-language:#0400;} </style> <![endif]--> <span>ຂໍຄວາມຊ່ວຍເຫຼືອແດ່ ຂ້າພະເຈົ້າຢາກຮູ້ວິທີ Downlaod File ທີ່ເປັນ YouTube </span>]]></description>
<author>phthong&lt;phonethong@nospam.com&gt;</author>
<pubDate>Tue, 11 May 2010 07:25:47 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ສະບາຍດີທ່ານ..<br /><br /><br />ບໍ່ຮູ້ຈະໄປຊໍບ່ອນໃດ ກະເລີຍມາທີ່ນີ້, ຄືວ່າຢາກໄດ້ Ebook ວິທີ  back up data. ແບບຕັ້ງໄວ້ back up Auto ເລີຍ<br />ຊ່ວຍບອກແດ່ເດີທ່ານ.<br /><br />ຂໍຂອບໃຈ<br />]]></description>
<author>panh&lt;ipsalady@nospam.com&gt;</author>
<pubDate>Wed, 19 May 2010 13:33:08 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<br /><span style="font-size: small">ຊ່ວຍບອກເວັບໄຊໂຫລດໂປຮແກຼມ Adobe Photoshop cs5 ແດ່</span><br /><br /><span style="font-size: small">ຂອບໃຈ</span>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Fri, 21 May 2010 18:30:05 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small"><br />ຂໍຖາມກ່ຽວກັບ ການຕໍ່ອິນເຕີເນັດ<br />ຂ້ອຍຢາກຕໍ່ອິນເຕີເນັດແບບ ເບີໂທລະສັບຕໍ່ເຂົ້າກັບ USB ໂມເດັມ<br />ແຕ່ບໍ່ຮູ້ກ່ຽວກັບຂໍ້ມູນ<br /><br />ຂ້ອຍໄດ້ຍິນວ່າເບີຂອງໄທຕໍ່ເຂົ້າກັບ USB ໂມເດັມ ສາມາດຕໍ່ອິນເຕີເນັດມາຮອດລາວຫວາ<br />ສັນຍານເນັດ 4M ຂອງໄທຫັນນາ ສັນຍານຮອດແຖວສີໄຄບໍ່ ຍາກຮູ້ ?<br /><br /><br /></span>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Tue, 01 Jun 2010 19:21:33 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຂ້າພະເຈົ້າຢາກຮູ້ກ່ຽວກັບ ການຕິດຕັ້ງ  theme ໃສ່ windows vista<br />ທ່ານຊ່ວຍບອກແດ່<br />ພ້ອມຮູບປະກອບເດີ]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Mon, 14 Jun 2010 06:59:43 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຂໍຖາມແດ່ວ່າ ຄຮີລັດປ່ຽນພາສາອັງກິດ ເປັນ ໄທ ຢູ່ແທບທູນບາ ດ້ານລຸ່ມ ມີຄຮີຫຍັງແດ່ ?</span>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Fri, 02 Jul 2010 05:33:58 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[AVL AND AVL ໃຊ້ຖານຂໍ້ມູນອັນດຽວກັນບໍຶ??]]></description>
<author>Love Never End&lt;xarhang@nospam.com&gt;</author>
<pubDate>Thu, 17 Jun 2010 03:00:11 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ ທຸກໆ ທ່ານ, ມີປັນຫາກ່ຽວກັບການ shutdown Windows Dark ບໍ່ໄດ້, ບໍ່ຮູ້ວ່າເປັນເພາະຫຍັງ ຊ່ວຍຕອບແດ່<br /><br />ຂໍຂອບໃຈ<br /></span>]]></description>
<author>Phounsavath&lt;kae-tk@nospam.com&gt;</author>
<pubDate>Mon, 05 Jul 2010 10:41:14 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<img src="http://www.seasondl.com/Smileys/default/SeasonDL+%20%2825%29.gif" /><span style="font-size: x-small; color: #0000ff"><strong>  </strong></span><span style="font-size: small"><span style="font-size: xx-small">ຫ້າມສຽບ USB ເດີ</span><br />ເນື່ອງຈາກວ່າຄອມພິວເຕີຂອງຂ້ອຍມີຄົນມາສຽບ USB ຫຼາຍ<br />ຂ້ອຍເລີຍຢາກຮູ້ວິທີກັນ ບໍ່ໃຫຄົນເອົາ USB ມາສຽບໃສ່ຄອມ<br />ໂດຍການໃສ່ລະຫັດ<br /></span><table cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td><a href="http://www.infopress.co.th/images/bbs/12507381164a8cbfc45d64c.jpg"><img src="http://t1.gstatic.com/images?q=tbn:scphXdQfNMUxTM:http://www.infopress.co.th/images/bbs/12507381164a8cbfc45d64c.jpg" style="float: left; margin: 10px 10px 0pt; border: 1px solid" alt="ดูภาพขนาดใหญ่" /></a></td><td> </td></tr></tbody></table><br /><div align="center"><img src="http://image.ohozaa.com/i2/sfsam.gif" /></div>	<br /><br /><br /> THANK !!!”!!!<img src="http://www.infopress.co.th/images/smiles/haha.gif" /><br /><span style="font-size: small"><br /></span>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Sun, 01 Aug 2010 07:20:18 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຄືວ່າດາວໂລດ linux i386.iso ມາແລ້ວແຕ່ບໍ່ຮູ້ວິທີລົງ ຮິຮິ]]></description>
<author>Love Never End&lt;xarhang@nospam.com&gt;</author>
<pubDate>Thu, 29 Jul 2010 06:44:04 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ໃນການຊື້ USB ເຮົາຕ້ອງກວດເບິ່ງວ່າເປັນຂອງແທ້ ຫຼື ຂອງປອມ<br />ເພື່ອທີ່ຈະບໍ່ຖືກຫຼອກຈາກຜູ້ຂາຍ </span><img src="http://www.seasondl.com/Smileys/default/SeasonDL+.gif" /><br /><br /><br /><img src="http://www.gooab.net/private_folder/Temp/index.jpg" /><br /><br /><img src="http://bosspremium.tarad.com/shop/b/bosspremium/img-lib/spd_20100216145411_b.jpg" /><br /><br /><img src="http://bosspremium.tarad.com/shop/b/bosspremium/img-lib/spd_20100216145330_b.jpg" /><br /><br /><img src="http://bosspremium.tarad.com/shop/b/bosspremium/img-lib/spd_20100216145141_b.jpg" /><br /><br /><img src="http://bosspremium.tarad.com/shop/b/bosspremium/img-lib/spd_20100216145017_b.jpg" /><br /><br /><br /><br />เว็ปไซค์ : <a href="http://forums.overclockzone.com/" rel="external"><span style="color: #eb00ff">Overclockzone.com </span> </a><br /><div align="center"><img src="http://image.ohozaa.com/i2/sfsam.gif" /></div>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Thu, 29 Jul 2010 13:24:26 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<img src="http://www.upthai.net/pictures/802b001ddf1b44777dbba92854a4106f.jpg" /><br /><br /><span style="color: firebrick">Homepage - </span><a href="http://www.internetdownloadmanager.com/" rel="external">http://www.internetdownloadmanager.com/</a><br /><img src="http://www.seasondl.com/Smileys/default/SeasonDL+%20%2825%29.gif" /><span style="font-size: x-small; color: #0000ff"><strong> ດາວໂຫລດລຸ່ມນີ້ເດີ </strong></span><br /><br /><br /><br /><a href="http://www.upload.tc/download/62935/idmv6.0_auto-in.rar.html" target="_blank"><img src="http://www.seasondl.com/Themes/seasondl/images/download.png" /></a>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Thu, 29 Jul 2010 14:56:46 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ึคิว่าข้าพะเจ้าต้องกานโปรแกรมที่เอาปะไว้ใช้ตั้งเวลา,วันทีเดือนปี, แล้วให้มัน <span style="color: #00ff00">Run</span> ฟายที่เราต้องกานเอง <span style="color: #00ff00">Automatic...</span>หลักๆแม่นให้ <span style="color: #00ff00">Run</span> จำพวกฟายที่มีนามสะกุน <span style="color: #ff0000">.exe, .bat, .com</span><br /><br /></span><div align="center"><span style="font-size: medium; color: #ff00ff">ช่วยแนะนำแด่ว่าใช้โปรแกรมใด------ขอบใจล่วงหน้าเดี้...</span><br /></div>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Mon, 02 Aug 2010 12:04:35 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[How I Can Read Lao Language In Google Chrome ?<br /> I'm Using Laoscrip 6 But Not Work I can Read Only In Firefox And IE But I Need To Read In Chrome<br />  Thank You]]></description>
<author>Love Never End&lt;xarhang@nospam.com&gt;</author>
<pubDate>Sat, 07 Aug 2010 11:17:31 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<img src="http://i46.tinypic.com/2079vsw.jpg" /> <div><strong>Avira Premium Security 9.0.0.415 | 24MB<br /><br /></strong><strong>Requirements:</strong><br />� Computer: Pentium or higher, at least 133 MHz<br />� RAM: 192 MB / 512 MB RAM for Windows Vista<br />� 40 MB free memory on the hard disk (more if quarantine is used)<br />� 100 MB temporary memory on the hard disk<br />� Administrator rights are required for the installation<br /><br />Homepage:<a href="http://www.avira.com/en/products/avira_premium_security_suite.html" title="Linkification: http://www.avira.com/en/products/avira_premium_security_suite.html" class="linkification-ext">http://www.avira.com/en/products/avira_premium_security_suite.html</a><br /><br />Download:<br /><br /><div> <a href="http://hotfile.com/dl/26556316/4af3fbf/AviraPreSec9.0.0.415.rar.html" rel="external">Hotfile</a><br /><br /><a href="http://depositfiles.com/files/d369lua9e" target="_blank">Deposit Files</a></div><br /><strong><br /><br /><br /></strong></div>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Thu, 12 Aug 2010 05:17:43 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[Notebook Compaq Presario A900 ຂອງຂ້າພະເຈົ້າ Driver ສຽງບໍ່ໄດ້<br />ຂ້າພະເຈົ້າເລີຍລົບກວນທ່ານຊອກຫາ Driver sound ໃຫ້ແດ່ ?<br />ຂອບໃຈລ່ວງໜ້າ<br /><br /><span class="webboardBody"><span style="font-size: 36pt"><span style="color: green"> <img src="http://glitter.kapook.com/files/glitter/photo/original/8/11279.gif" /></span></span></span>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Thu, 12 Aug 2010 10:36:15 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<br /><img src="http://www.itday.in.th/wp-content/uploads/2010/06/MS-Office-2010.jpg" alt="http://www.itday.in.th/wp-content/uploads/2010/06/MS-Office-2010.jpg" /><br /><br />------------------Microsoft Office 2010 Keys----------------------------------<br />                **************************<br />Office Professional Plus 2010 Retail Keys<br />^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^<br /><br />2K79J-DVFWG-MJT2Q-BX82R-T9PDV<br /><br />6QFDX-PYH2G-PPYFD-C7RJM-BBKQ8<br /><br />BDD3G-XM7FB-BD2HM-YK63V-VQFDK<br /><br />YHDT7-WPQX9-BCYDM-6VJ9K-KRDMW<br /><br /><br />Office Standard 2010 Retail Keys<br />^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^<br /><br />4DDJ8-DM67D-GJPT2-32H93-9MMWK<br /><br />82DB6-BXG6H-QKBT6-3G42H-PPWM3<br /><br />D34M3-3279D-HHPB3-DQPPQ-JHHFX<br /><br />24PR2-JW928-QPKTK-CPD26-RYV3C<br /><br />4JPCP-DJF9V-WX7PT-B9WX2-R47C6<br /><br />7TF8R-933DG-MCBQR-TXPM7-G4JRM<br /><br />6R7J3-K4CB9-PG7BR-TVDBG-YPGBD<br /><br />HXJQ4-VT6T8-7YPRK-R2HQG-CYPPY<br /><br />4G66W-HC3BK-HP397-XM3QQ-X73DC<br /><br />Q7CR2-2VQMW-QKTMG-B2X22-944HP<br /><br /><br />Office 2010 Volume Keys<br />^^^^^^^^^^^^^^^^^^^^^^^<br /><br />Office Professional Plus 2010       VYBBJ-TRJPB-QFQRF-QFT4D-H3GVB<br /><br />Office Standard 2010                V7QKV-4XVVR-XYV4D-F7DFM-8R6BM<br /><br />Office Home and Business 2010       D6QFG-VBYP2-XQHM7-J97RH-VVRCK<br /><br />Access 2010                         V7Y44-9T38C-R2VJK-666HK-T7DDX<br /><br />Excel 2010                          H62QG-HXVKF-PP4HP-66KMR-CW9BM<br /><br />SharePoint Workspace 2010           QYYW6-QP4CB-MBV6G-HYMCJ-4T3J4<br /><br />InfoPath 2010                       K96W8-67RPQ-62T9Y-J8FQJ-BT37T<br /><br />OneNote 2010                        Q4Y4M-RHWJM-PY37F-MTKWH-D3XHX<br /><br />Outlook 2010                        7YDC2-CWM8M-RRTJC-8MDVC-X3DWQ<br /><br />PowerPoint 2010                     RC8FX-88JRY-3PF7C-X8P67-P4VTT<br /><br />Project Professional 2010           YGX6F-PGV49-PGW3J-9BTGG-VHKC6<br /><br />Project Standard 2010               4HP3K-88W3F-W2K3D-6677X-F9PGB<br /><br />Publisher 2010                      BFK7F-9MYHM-V68C7-DRQ66-83YTP<br /><br />Word 2010                           HVHB3-C6FV7-KQX9W-YQG79-CRY7T<br /><br />Visio Premium 2010                  D9DWC-HPYVV-JGF4P-BTWQB-WX8BJ<br /><br />Visio Professional 2010             7MCW8-VRQVK-G677T-PDJCM-Q8TCP<br /><br />Visio Standard 2010                 767HD-QGMWX-8QTDB-9G3R2-KHFGJ<br /><br /><br /><br />Visio And Project 2010 Keys<br />^^^^^^^^^^^^^^^^^^^^^^^^^^^<br /><br />Project Professional 2010     GB9CQ-38GPG-4QK3K-YYBJT-M9KR7<br /><br />Project Professional 2010       HWXJY-BV6PG-W3HCW-XWHGG-68WY3<br /><br /><br />Visio Professional 2010         7MXWK-Q7W73-8YJW8-7BT67-FDF87<br /><br />Visio Professional 2010         H4F7B-FQVBX-RRWMB-6MFRR-BB2BW<br /><br /><br /><br />Project Standard 2010              7PQJR-RH7PX-QFB2F-QPGW4-Q377V<br /><br /><br />Visio Standard 2010              228H4-T92MF-Q8PQJ-CGWRG-8KW92<br /><br /><br />Visio Premium 2010             C383V-HPHMC-Y6KWM-BDBHM-MK97G<br /><br />Visio Premium 2010              PQCFB-YGXGC-TXB66-DH3VW-GCGYQ<br /><br /><br />Office 2010 Beta &amp; RC Keys<br />^^^^^^^^^^^^^^^^^^^^^^^^^^<br /><br />Office Professional 2010        MWHKH-MJ63P-VV2J2-T33VP-M92RV<br /><br />Office Professional 2010        JY2TW-K7Y6G-F29CM-XQC2F-8P3Q3<br /><br />Office Professional 2010        2PWHY-KT4X6-96PYW-XQR7V-HW2W9<br /><br />Office Professional 2010        RBYC3-69PHF-836PF-XD2FF-9T4G3<br /><br />Office Professional 2010        MJVW8-679XG-YKG33-TGHTB-3CF64<br /><br />Office Professional 2010        3XCBH-MCHTM-X4HY2-VRCYJ-FCMVD<br /><br />Office Professional 2010        6CX3T-KBWRV-GMD2F-8WV2V-4G8BT<br /><br />Office Professional 2010        H3BHV-GKGM9-YFMXH-DGW7Q-YW962<br /><br />Office Professional 2010        MBGPK-BTFT8-XCB4T-X39FG-4CCK6<br /><br />Office Professional 2010        TV9PW-6RP6V-FDVP9-9GC78-Y4B4X<br /><br />Office Professional 2010        7XD2X-JWJ94-BCHBW-W9WXP-J2WPT<br /><br />Office Professional 2010        22HGX-728MX-BBWX9-7BB8X-J96B4<br /><br /><br />                               Other Office Keys<br />                               *****************<br /><br /><br /><br />MICROSOFT OFFICE 2007 PROFESSIONAL PLUS EDITION<br /><br />MTP6Q-D868F-448FG-B6MG7-3DBKT<br />WCRWK-Y637K-4MRCB-2YQXY-4BGWW<br />TT3M8-H3469-V89G6-8FWK7-D3Q9Q<br />VB48G-H6VK9-WJ93D-9R6RM-VP7GT<br />HCFPT-K86VV-DCKH3-87CCR-FM6HW<br />MTP6Q-D868F-448FG-B6MG7-3DBKT<br />WCRWK-Y637K-4MRCB-2YQXY-4BGWW<br />TT3M8-H3469-V89G6-8FWK7-D3Q9Q<br />VB48G-H6VK9-WJ93D-9R6RM-VP7GT<br />HCFPT-K86VV-DCKH3-87CCR-FM6HW<br /><br />Office Ultimate 2007<br /><br />T8RQ2-XTH2T-7CHTM-YGGDJ-RHBMB<br />DX4MW-77FBJ-34V3P-B8R9W-C77YB<br />FP29Y-YDBVF-GB4FV-MW4HX-YFDDY<br />CXMTT-QYBV6-TFT7Q-2MFYP-HF9QY<br />CJ9GX-94YWY-29WTK-86R2F-3DMMB<br />BDVWR-GRM69-T6VP2-3RKT2-QFT3Y<br />H6TTY-M2F23-HGKMB-YGMBM-X947M<br />QV6Q8-4VG9H-VV6WD-PBHCQ-KXT3Y<br />VBGV6-HBQ9Q-4CMMY-VH83T-CDXQY<br />T94DB-CBDHT-92272-FM7FK-VHRBB<br />QJRJK-J2VGB-G7DFK-GHPHX-2YVYB<br /><br />Office Professional 2007<br /><br />TBMFM-QXMQX-G8FVP-BFH9J-X9PHM<br />FHH8R-7WC4H-BH696-VBV6D-VCBMB<br />RHT43-PDJWT-JMKPB-8WTW7-WWG3Y<br />QG7TR-DHG94-W2YKQ-MY6VK-PK9QY<br /><br />MICROSOFT OFFICE 2007 ENTERPRISE<br /><br />JT3M4-C7F3Q-42XRT-PYMP3-D4MYJ<br />XP6X8-4G4HK-H2D3R-CTVW9-QRX38<br />CKX77-9C3TY-YFR68-M8KTB-6MDQ8<br />Q783C-XBHDT-4K3HD-WKF34-M9THW<br />RHF9V-PMVP6-C7TKC-RKKRC-FMVD8<br />VC3TY-M9FCT-YDFT9-XB2GK-PHJ7W<br />CHF3Y-HR8MH-V9M3Y-Y4W9G-7G938<br />MMCGV-RXK9R-2HTCW-FJWTV-DDBYJ<br />CMG9R-7BCPX-6CTXJ-CX8V2-CFHD8<br />KKDQD-YVYXR-G3VD9-F96WM-XKMYJ<br />FRDRK-X7GT8-6PYX8-RFGXF-PRMYJ<br />BBDFT-MXDY9-QFHW4-QRQW8-KDW7W<br />WV4H7-CCKRW-PJRWD-W3V8M-QHFMJ<br />WY6M2-2PYKJ-M3KQC-YB2YM-F8K38<br />GJGGF-HRD8B-72G24-FQM7D-6RTHW<br />DWR2Y-WMQRJ-7V3RK-HH7QD-BRHD8<br />VDCFP-P2V2V-G46YQ-WTCG7-GVWBJ<br />FM43K-688MP-VVYDW-BY38W-CVWBJ<br />XKKHD-HRG4J-K4HTF-X296T-TJW7W<br />G66FV-7DDKB-3DBV9-YXWBG-3TVD8<br />VPPQG-KJQPR-BTMWF-79CH9-H88BJ<br />PCG64-M8CF7-TGCJV-YH6GF-MYPVW<br />C6R6F-HFRYY-9RGH9-K6HBC-8QGHW<br />WJMT4-P3TWY-Q2FDY-648F4-294MJ<br />DY9MH-68PK6-BDTVP-TTFTJ-MXX38<br />V7MF8-7VBPV-FQQ4G-DPRJ2-DCWBJ<br />WKT4B-BPM48-QW7CK-2CQV3-WMDQ8<br />HJ9WD-XTWYM-8J6TF-KGF27-BJGHW<br />MCF4X-HYB49-9G9H7-44P9B-WDRMJ<br />J39WR-PW3TV-66JBF-YQHBV-8VQQ8<br />THFJ8-WP826-FK8PM-PWK9J-XJBYJ<br /><br />MICROSOFT OFFICE 2007 HOME &amp; STUDENT EDITION<br /><br />MHCC4-WV74B-FTWPV-YM9JR-W3VWD<br />HBC66-D6YR7-CRP7H-T8VP4-99PMW<br />QXMDH-CRYFM-QFR87-HB783-T7RFQ<br />P37JV-FYJ32-YHH3T-KX7GX-7BJY3<br />HRMGX-K8WKJ-7FBGW-FTBCY-DWCM3<br />RCFMT-WFT7M-R779R-BJQMB-M2KWD<br />T9HJX-4C3BM-MG2R6-WC933-RCBRT<br />BTT7P-9HBFP-6QHM7-RFHDV-X8XWG<br />HWMMV-7H4DT-J2PJ6-YB8X4-VQCM6<br />JM2QC-KMVTP-VR8GV-HJRKQ-YWXWG<br />BHD34-K6BT7-T6PXP-BXKT4-X3G8D<br />DDH8T-C2JGD-G6MWW-6CYBV-BDTB6<br />B4MKP-KP9YP-7TBQ4-7T4XF-MTGWY<br />HBC66-D6YR7-CRP7H-T8VP4-99PMW<br />JWR9T-HFR92-74RQ7-3FRMB-CY676<br />DDY79-433JV-2RXGX-MQFQP-PFDH8<br />WRGJQ-2J2HB-8XP8D-6J2YK-BMFFD<br />HX2HC-MJM6Q-4487F-23FMP-9VKV8<br />HX2DJ-36TJX-CRVRJ-C72Q8-CJTBQ<br /><br />MICROSOFT OFFICE 2007 STANDARD EDITION<br /><br />CTKXX-M97FT-89PW2-DHKD3-74MYJ<br />KD3RD-TKY7Y-6QDP8-WXKX6-24BF3<br />B7MTR-PBJVD-47GWX-RJXTG-268PJ<br />JY46M-9BV6V-JJ2YH-JM6T8-2TR2D<br />QX8VX-QVF3W-MJ49F-6436K-PJ6WQ<br /><br /><br />Hope you would all enjoy this,i will be releasing more if i get it,Also If anyOne need Office 2010 Professional Plus MAK Key with<br />More than 25000 activations just for 20$<br /><br />contact me: pkajeesh123@gmail.com<br /><br /><br /><br /><br /><br /><br /><br /><br /><br /><br /><br /><br /><br />]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Sat, 14 Aug 2010 06:03:17 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small; color: #ffffff">ສົມມຸດວ່າເຮົາຫລົງລຶບກ່ອງຂີ້ເຫຍື້ອອອກຈາກໜ້າຈໍ<br />ເຮົາຢາກຈະໃຫ້ມັນກັບຄືນມາເຮົາຄວນເຮັດແນວໃດ ???</span><span style="color: #ffffff"><br /></span><span style="font-size: small; color: #ffffff">ທ່ານຊ່ວຍບອກແດ່ </span><span style="color: #ffffff">?? </span><span class="state" style="color: #ffffff"><img class="smilies" src="http://static.mobile9.com/bbcode/smileys/help.gif" /></span>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Sat, 21 Aug 2010 05:59:41 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ใผกะได้ช่วยข้อยแด่ คิว่าลง windows แล้วผิดพาดพัดใปหลงลงใส่ช่อง D แล้วข้อมูนหายหมดเลีย ช่วยบอกโปรแกรมดีๆให้แด่ ที่สามาดกู้ได้หมดทุกรูบแบบฟายเดี หลักๆแม่นฟาย Excel 2007 (.xlsx) เอาโปรแกรมที่สามาดกู้แบบ Format เดี!!!!!! </span>]]></description>
<author>Peun.exelao&lt;Peun_Crack@nospam.com&gt;</author>
<pubDate>Sun, 22 Aug 2010 13:35:47 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[LAOAV 2010 ມີຫຍັງໃໝ່ນະ?]]></description>
<author>Shinnobi&lt;Shinnobi23@nospam.com&gt;</author>
<pubDate>Tue, 26 Jan 2010 14:46:07 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small; font-family: Times New Roman">Lao antivirus ຈະມີຈຳໜ່າຍຢູ່ໃສ ແລະ ລາຄາເທົ່າໃດ<br /><br />ຢາກຮູ້?????</span>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Sat, 30 Jan 2010 09:45:48 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ສະບາຍດີ ອາເລັກ<br /><br />ຊ້າພະເຈ້າມີບັນຫາກັບ ໄວຣັສ ຊື່ວ່າvirus Worm.Win32.Huhk.c<br /><br />ມັນຈະຕິດ File Explorer.exe, setup.exe, office.exe or other.<br /><br />ບໍ່ຮູ້ຈະຂ້າມັນແນວໃດຈີ່ງຈະໝົດ ທ່ານພໍມີວິທີໃດແດ່ທີ່ຈະກຳຈັດມັນໃດ້ ຊ່ວຍແດ່ເດີ<br /><br /><br />ຂໍຂອບໃຈ</span>]]></description>
<author>panh&lt;ipsalady@nospam.com&gt;</author>
<pubDate>Tue, 02 Feb 2010 10:47:22 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຖ້າເຄື່ອງຄອມພິວເຕີລົງ ANTI 2 ໂຕຈະເປັນຫຍັງບໍ່<br /><br />ເຊັ່ນ ລົງ  AVG 9.0 ກັບ Antivirus Lao 2010<br /><br />ຂໍຖາມແດ່ ??????<br /><br /></span>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Sat, 13 Feb 2010 07:49:24 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<br /><span style="font-size: small">ຂໍຖາມແດ່ວ່າ</span><span style="font-size: medium">ມີ AntiVirus ໂຕໃດແດ່ທີ່ອອກມາໃໝ່ໃນປີ 2010</span>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Sat, 13 Feb 2010 07:52:06 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ແມ່ນໄວຮັສຫຼືບໍ? ເພາະວ່າຫາກໍລົງວິນໂດສໄຫ່ມໆມາເປັນຫຍັງພົບໄວຮັສຫຼາຍໂຕແທ້<br />ລາຍລະອຽດມີດັ່ງນີ້ ທ່ານຊ່ວຍກວດເບີ່ງວ່າແມ່ນຫຍັງແທ້<br /><br /><br />Found: C:&#092;Program Files&#092;WinRAR&#092;UnRAR.exe,W32/Troj.204800  (Troj)<br />---------------2/14/2010 11:05:36 AM---------------<br />Found: C:&#092;Program Files&#092;WinRAR&#092;UnRAR.exe,W32/Troj.204800  (Troj)<br />---------------2/14/2010 11:05:39 AM---------------<br />File moved to quarantine: C:&#092;Program Files&#092;WinRAR&#092;UnRAR.exe,W32/Troj.204800  (Troj)<br />---------------2/14/2010 11:05:42 AM---------------<br />Found: C:&#092;System Volume Information&#092;_restore{064D8648-C271-4C21-B76E-2A0586441E3E}
&#092;RP6&#092;A0000716.exe,W32/Troj.204800  (Troj)<br />---------------2/14/2010 11:05:45 AM---------------<br />File moved to quarantine: C:&#092;System Volume Information&#092;_restore{064D8648-C271-4C21-B76E-2A0586441E3E}
&#092;RP6&#092;A0000716.exe,W32/Troj.204800  (Troj)<br />---------------2/14/2010 12:09:08 PM---------------<br />Found: D:&#092;Photoshop8&#092;Crack&#092;kgcsce.exe,W32/Troj.011009141129 (Troj)<br />---------------2/14/2010 12:09:35 PM---------------<br />Found: D:&#092;Grams&#092;Antivirus&#092;avira_premium_security_suite_en.exe,W32/
Troj.82F4CB10  (Troj)<br />---------------2/14/2010 12:09:35 PM---------------<br />Found: D:&#092;Grams&#092;For Internet&#092;dap91.exe,W32/Troj-Toolbar.  (Troj)<br />---------------2/14/2010 12:09:37 PM---------------<br />Found: D:&#092;Grams&#092;For Internet&#092;Metin2_20080811.exe,W32/Troj.E2059570  (Troj)<br />---------------2/14/2010 12:09:39 PM---------------<br />Found: D:&#092;Grams&#092;Photo&#092;Kodak.exe,W32/Troj.328107  (Troj)<br />---------------2/14/2010 12:09:39 PM---------------<br />Found: D:&#092;Grams&#092;Photo&#092;NoisewareProPlugin4205.exe,W32/Troj.48EFCDCD  (Troj)<br />---------------2/14/2010 12:09:40 PM---------------<br />Found: D:&#092;Grams&#092;General&#092;WinRAR.v.3.7.Beta.7.Corp.exe,W32/Troj.161754  (Troj)<br />---------------2/14/2010 12:09:40 PM---------------<br />Found: D:&#092;Grams&#092;General&#092;lswin604.exe,W32/Troj.3A5B1B81  (Troj)<br />---------------2/14/2010 12:09:56 PM---------------<br />Found: D:&#092;System Volume Information&#092;_restore{064D8648-C271-4C21-B76E-2A0586441E3E}
&#092;RP6&#092;change.log,Maybe New Virus File<br />---------------2/14/2010 12:11:07 PM---------------<br />Found: D:&#092;F&#092;New Folder&#092;item&#092;lswin604.exe,W32/Troj.3A5B1B81  (Troj)<br />---------------2/14/2010 12:16:58 PM---------------<br />Total Folder: 3965<br />Total File: 24245<br />Total Time Scanned: 73:21:01 Minutes<br />Total Virus Found: 11<br />---------------2/14/2010 12:45:13 PM---------------<br />File Killed: C:&#092;Documents and Settings&#092;All Users&#092;Application Data&#092;Lao Anti-Virus&#092;Quarantine&#092;A0000716.exe.LBK<br />---------------2/14/2010 12:45:13 PM---------------<br />File Killed: C:&#092;Documents and Settings&#092;All Users&#092;Application Data&#092;Lao Anti-Virus&#092;Quarantine&#092;UnRAR.exe.LBK<br />]]></description>
<author>Love Never End&lt;xarhang@nospam.com&gt;</author>
<pubDate>Sun, 14 Feb 2010 07:53:22 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<br /><span style="font-size: small">ຢາກຮູ້ວິທີລົງ Lao script version 7 ໃນ windows vista ແລະ seven<br />ແດ່ ຂະນ້ອຍລົງແນວໃດກາບໍ່ໄດ້<br /></span>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Sun, 14 Feb 2010 08:55:11 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">how to remove virus ".jpg.exe"<br />help please !<br /><br />thank you,</span>]]></description>
<author>OUDOMPHONE&lt;sompheng@nospam.com&gt;</author>
<pubDate>Wed, 17 Feb 2010 05:32:18 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຄອມຂ້ອຍສົງໃສຕິດໄວຣັສ ເປີດໂປຣແກຣມຫຍັງກະບ່ໄດ້ ເປີດເອັກເຊລກະປິດເອງ ເຂົ້າສະຕາດ ຣັນ ກະບ່ໄດ້ MSN ກະເປີດບ່ຂື້ນ ໃຜຮູ້ວິທີແກ້ຊ່ວຍບອກແດ່<br />ຂອບໃຈ</span>]]></description>
<author>teexzoozx&lt;teexzoozx@nospam.com&gt;</author>
<pubDate>Thu, 11 Mar 2010 07:34:37 -0500</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ເວລາຂ້ອຍສັງປຣີ້ນແລ້ວບໍ່ສາມາດໃຊ້ການໄດ້, ເມື່ອຂ່ອຍaddໃນ Printer &amp; fax ແລ້ວມັນຈະໂຊຂໍ້ຄວາມ ດັ່ງທີ່ຂ້ອຍໂຊໃນນີ້. ຂ້ອຍເຄີຍລົງwindowໃຫມ່ແລ້ວ ກະໃຊ້ໄດ້ຊ່ວງໃດນຶ່ງ ແລ້ວກໍໍໍເກີດບັນຫາເກົ່າຂຶ້ນອີກ, ຕອນນີ້ຂ້ອຍສັ່ງປຣີ້ນບໍໄດ້ເລີຍ, ຂ້ອຍບໍ່ຍາກລົງwindowໃຫມ່ ນະ, ກະລຸນາຫາວິທີ່ແກ້ໄຂ້ຊ່ວຍດວ້ຍ ທ່ານຜູ້ຮູ້ທັງຫລາຍ<br />ຂອບໃຈລວ່ງຫນ້າເດີທຸກທ່ານ...</span>]]></description>
<author>OUDOMPHONE&lt;sompheng@nospam.com&gt;</author>
<pubDate>Tue, 23 Mar 2010 04:45:23 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ແມ່ນໄວລັດບໍ່ ເວລາສຽບ USB, External ແລ້ວບໍ່ຂື້ນເປັນຍ້ອນຫັຍງ ຫຼືໄວລັດ ທ່ານຜູ້ຮູ້ຊ່ວຍບອກວິທີແກ້ໄຂໃຫ້ດ້ວຍ.<br />ຂອບໃຈລວງໜ້າ</span>]]></description>
<author>ti007&lt;noauthor@nospam.com&gt;</author>
<pubDate>Wed, 07 Jul 2010 06:47:14 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ຂ້ອຍຢາກໄດ້ Sever Eset Smart Security 4.2.40.0 ແມ່ນໃຜມີ<br />ຂໍແດ່ ????<br /><br />ຂອບໃຈໄວ້ລ່ວງໜ້າ<br /></span>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Thu, 08 Jul 2010 10:38:10 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<br /><span style="font-size: small">ຂ້ອຍຍາກຮູ້ວ່າ Laptop msi EX460 ຂອງຂ້ອຍລົງ windows 7 ໄດ້ບໍ່ ເພາະວ່າໄດຮ໌ເວີຮອງຮັບແຕ່ windows vista ຢ່າງດຽວ<br />ແລະ ຂ້ອຍເຄີຍເຫັນ Laptop ທີ່ ໄດຮ໌ເວີ ບໍ່ຮອງຮັບ Window 7<br />ແຕ່ເຂົາສາມາດລົງ Windows 7 ໄດ້ ແລະ ໄດຮ໌ເວີກໍ່ຮອງຮັບ<br />ຢາກຮູ້ວ່າເຮັດໄດ້ແນວໃດ ຈຶ່ງລົງ windows 7 ໄດ້ ???<br /> <br /><br /></span>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Thu, 15 Jul 2010 11:26:19 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small; color: #00ccff">ລົງລາວແອນຕີໄວຣັສແລ້ວແຕ່ມັນເປີດບ່ໄດ້ ມັນປິດໂປຣແກຣມເອົາເອງ ມີວິທີໃດແກ້ໄຂໄດ້ແດ່<br />Thank</span>]]></description>
<author>teexzoozx&lt;teexzoozx@nospam.com&gt;</author>
<pubDate>Fri, 23 Jul 2010 10:18:14 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<img src="http://www.laoav.net/images/emotes/default/cry.png" style="border: 0px" alt="cry.png" /><span style="color: #ff0000; font-size: small">ຂອບໃຈ<img src="http://www.laoav.net/images/emotes/default/dead.png" style="border: 0px" alt="dead.png" /></span>]]></description>
<author>teexzoozx&lt;teexzoozx@nospam.com&gt;</author>
<pubDate>Fri, 23 Jul 2010 12:17:55 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[maen phai me activating code sum lup Lao antivirus nae......please send it to 77999229<br />Jark Ty<br />Kopchai lai222222<br />]]></description>
<author>masteraty&lt;atyintokusaunit336@nospam.com&gt;</author>
<pubDate>Fri, 23 Jul 2010 15:39:50 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<table width="100%"><tbody><tr><td valign="middle">&nbsp;</td><td valign="middle">&nbsp;</td><td class="postbuttons" align="right">&nbsp;</td></tr></tbody></table>   <table width="100%"><tbody><tr><td><br /><!--Do not modify this section-->  clixdoo_clientid  = 711; clixdoo_width = 300; clixdoo_height = 25<br /><br /></td></tr></tbody></table>  							<img src="http://www.upthai.net/pictures/c698764c395aefb9d157ce3f5d8f21de.jpg" /><br /><br />NortonTM AntiVirus  2010<br />โปรแกรมพื้นฐานที่คอมพิวเตอร์ทุกเครื่องควรมี –  การปกป้องจากการเข้ารหัสที่เป็นอันตราย<br /><br />ประสิทธิภาพการทำงานของ  Norton AntiVirus 2010<br />• การตรวจจับมัลแวร์ที่มีประสิทธิภาพและแม่นยำ  เหนือกว่าเทคโนโลยีตรวจจับที่อิงจากพฤติกรรมและเอกลักษณ์เฉพาะตัวของแฮ็ก เกอร์ ด้วยรหัสความปลอดภัยรูปแบบใหม่ที่เรียกว่า Quorum<br />•  สกัดกั้นไวรัส, สปายแวร์, บอทซ์ (bots) และอีกมากมาย<br />•  ใช้เทคโนโลยีอัจฉริยะเพื่อการสแกนที่เร็วกว่า, จำนวนน้อยกว่า  และใช้เวลาสั้นกว่า<br /><br /><br />Norton TM Internet Security 2010<br />โปรแกรม ประสิทธิภาพสูงที่เหมาะสำหรับท่องโลกอินเตอร์เน็ต<br />ประสิทธิภาพการทำงาน ของ Norton Internet Security 2010<br />•  การตรวจจับมัลแวร์ที่มีประสิทธิภาพและแม่นยำ  เหนือกว่าเทคโนโลยีตรวจจับที่อิงจากพฤติกรรมและเอกลักษณ์เฉพาะตัวของแฮ็ก เกอร์ ด้วยรหัสความปลอดภัยรูปแบบใหม่ที่เรียกว่า Quorum<br />•  สกัดกั้นการโจรกรรมข้อมูลส่วนบุคคลบนเครือข่าย, ไวรัส, สปายแวร์, บอทซ์  (bots), โทรจัน และ<br />อีกมากมาย<br />• ประสิทธิภาพแอนตี้สแปมระดับมืออาชีพ<br />•  Norton เพิ่มคุณสมบัติ OnlineFamily เพื่อความปลอดภัยของครอบครัวออนไลน์<br />•  Norton Safeweb โปรแกรมที่ช่วยให้คุณท่องเว็บไซต์ได้อย่างปลอดภัยที่สุด  พร้อมทั้งสกัดกั้นเว็บไซต์ปลอมและยืนยันเว็บไซต์ที่เชื่อถือได้<br /><br /><br /><a href="http://www.upload.tc/download/58376/norton-antivirus-setup_wyverorm.rar.html" rel="external">http://www.upload.tc/download/58376/norton-antivirus-setup_wyverorm.rar.html</a>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Sat, 24 Jul 2010 07:34:21 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<br />ຊ່ວຍບອກວິທີແດ່ ???? <img src="http://www.nokiagang.com/forums/images/smilies/yenta4-emoticon-0028.gif" alt="_kamnub" title="kamnub" />  <img src="http://www.nokiagang.com/forums/images/smilies/yenta4-emoticon-0028.gif" alt="_kamnub" title="kamnub" /><br /><br /><dl id="profile115840" class="postprofile"><dt> 				<a href="http://www.nokiagang.com/forums/kry2000-u598.html"><img src="http://www.nokiagang.com/forums/download/file.php?avatar=598_1228988472.gif" alt="User avatar" /></a> 				</dt><dd><span class="corners-top"><span></span></span>  		<div class="postbody"><br /></div></dd><dd> </dd></dl><img src="http://www.nokiagang.com/forums/images/smilies/1.gif" alt=":hahah" title=":hahah" />]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Sun, 25 Jul 2010 09:07:31 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ແບບວ່າ Notebook ຂອງຂ້ອຍຕິດຕັ້ງສັນຍານວາຍເລັດເຂົ້າ<br />ແຕ່ບໍ່ຮູ້ລະຫັດເພາະໃຫ້ຊ່າງຕັ້ງໃຫ້<br />ຂ້ອຍຢາກຮູ້ວ່າເຮົາສາມາດກວດເບິ່ງລະຫັດສັນຍານວາຍເລັດຄືນໄດ້ບໍ່<br />ວ່າມັນມີລະຫັດໃດແດ່ ??<br /><br />ຂອບໃຈລ່ວງໜ້າ<br /><br /></span>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Wed, 28 Jul 2010 15:35:07 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຂອບໃຈລ່ວງໜ້າທີ່ເອົາໃຫ້</span>]]></description>
<author>phouth&lt;pdaravong@nospam.com&gt;</author>
<pubDate>Thu, 05 Aug 2010 04:55:35 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: medium">ຂອບໃຈທີ່ມີເວັບລາວນີ້ເພື່ອຖາມຕອບກັນ</span>]]></description>
<author>phouth&lt;pdaravong@nospam.com&gt;</author>
<pubDate>Wed, 04 Aug 2010 19:55:23 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[ຂໍວິທີຕິດຕັ້ງ D-Link Wireless N 150 Home Router DIR-600 ແດ່ ?<br /><br /><span class="generalMsgText" style="position: absolute; z-index: 100; width: 390px"></span>                                            <!--<div style="height:319px;padding:0 0 0 30px;"><img src="/images/DIR-655_PP.png" width="406" height="319"></div>-->         <div class="mainImageWrapper">             <!--<img alt="DIR-655" height="300" src="/images/DIR-655_PP_medium.jpg" width="382" />-->             <img src="http://images.dlink.com/new/products/DIR-600/DIR-600_package.png" style="border-width: 0px" alt="Package" title="Package" />         </div><span class="generalMsgText" style="position: absolute; z-index: 100; width: 390px"></span> <!--<div style="height:319px;padding:0 0 0 30px;"><img src="/images/DIR-655_PP.png" width="406" height="319"></div>-->         <div class="mainImageWrapper">             <!--<img alt="DIR-655" height="300" src="/images/DIR-655_PP_medium.jpg" width="382" />-->             <img src="http://images.dlink.com/new/products/DIR-600/DIR-600_back.png" style="border-width: 0px" alt="Back" title="Back" />         </div>]]></description>
<author>mook&lt;nook_noy@nospam.com&gt;</author>
<pubDate>Sat, 07 Aug 2010 07:28:20 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
						<item>
						<title>Re:</title>
<link>http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</link>
<description><![CDATA[<span style="font-size: small">ເລື່ອງມີຢູ່ວ່າ : ຄອມພີວເຕີ ຂພຈ ຫລີ້ນອີນເຕີເນັດໄດ້ ແຕ່ ເນັດເວີກບໍ່ເຫັນກັນ ຄິກ view workgroup computer ບໍ່ເຫັນຫຍັງຂື້ນມາ ມິດຈີ່ລີ່ຢູ່ ແຕ່ເຂົ້າ DOS Ping ຫາກັນໄດ້ ເພາະ ຂພຈ ຢາກແຊ່ Printer ນຳກັນ<br /><br />ຂອບໃຈລວງໜ້າ</span>]]></description>
<author>icesman_007&lt;icesman_007@nospam.com&gt;</author>
<pubDate>Fri, 13 Aug 2010 11:29:04 -0400</pubDate>
<guid isPermaLink="true">http://www.laoav.net/plugins/forum/forum_viewtopic.php?*</guid>
</item>
				</channel>
				</rss>