เนื่องจาก virus ตัวใหม่ๆ มักเข้าไปลบและแก้ค่า registry ทำให้เข้า Safe mode ไม่ได้
เวลาเข้า Safe mode จะเกิดหน้าจอสีฟ้า หรือ blue screen
มี codeให้เลือก 2 แบบ คือ.bat และ .reg หรือเลือก จาก link ด้านล่างนี้ครับ ซึ่งภายในไฟล์
1.Reg
http://www.mediafire.com/file/m2gkoemxywz/SafeBootWinXP.reg
http://www.mediafire.com/file/dkjyvzyjgyj/SafeBootWin2000.reg
http://www.mediafire.com/file/jz0yayqd22t/SafebootVista.reg
http://www.mediafire.com/file/ojnyxznd0ez/SafeBootWinServer2003.reg
2.Bate file
ให้ Copy code ด้านล่างนี้ ใส่ในโปแกรม Notepad แล้ว save เป็นนามกุล .bat เช่น SafeModeOn.bat
นำไป Run แล้ว Restart เครื่องเพื่อ เข้า safe mode
====================================================================================
@echo offREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\AFD /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\Dhcp /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\vga.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\Tcpip /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\RpcSs /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\RpcSs /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\vga.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\NetBT /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\dmio.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\dmio.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\HelpSvc /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\ipnat.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\tdtcp.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\Ndisuio /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\NetMan /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\PlugPlay /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\ip6fw.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\dmadmin /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\Netlogon /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\HelpSvc /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\CryptSvc /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\Browser /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\WinMgmt /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\PlugPlay /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\rdpdd.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\AppMgmt /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\rdpwd.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\EventLog /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\dmserver /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\NetBIOS /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\tdpipe.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\LmHosts /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\CryptSvc /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\dmload.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\dmadmin /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\WZCSVC /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\NtLmSsp /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\WinMgmt /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\Netlogon /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\AppMgmt /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\dmboot.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\dmserver /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\EventLog /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\SRService /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\rdpcdd.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\dmload.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\dmboot.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\SRService /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\vgasave.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\TDI /v "" /t REG_SZ /d "Driver Group" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\rdsessmgr /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\DnsCache /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\Filter /v "" /t REG_SZ /d "Driver Group" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\vgasave.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\Messenger /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\Base /v "" /t REG_SZ /d "Driver Group" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\sermouse.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\Filter /v "" /t REG_SZ /d "Driver Group" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\termservice /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\NDIS /v "" /t REG_SZ /d "Driver Group" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\Base /v "" /t REG_SZ /d "Driver Group" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\sermouse.sys /v "" /t REG_SZ /d Driver /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\DcomLaunch /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\DcomLaunch /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\LanmanServer /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\SharedAccess /v "" /t REG_SZ /d Service /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\Network /v "" /t REG_SZ /d "Driver Group" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\PNP_TDI /v "" /t REG_SZ /d "Driver Group" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}REG add "HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\PNP Filter" /v "" /t REG_SZ /d "Driver Group" /fREG add "HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\PNP Filter" /v "" /t REG_SZ /d "Driver Group" /fREG add "HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\SCSI Class" /v "" /t REG_SZ /d "Driver Group" /fREG add "HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\File system" /v "" /t REG_SZ /d "Driver Group" /fREG add "HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\SCSI Class" /v "" /t REG_SZ /d "Driver Group" /fREG add "HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\File system" /v "" /t REG_SZ /d "Driver Group" /fREG add "HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\Primary disk" /v "" /t REG_SZ /d "Driver Group" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\LanmanWorkstation /v "" /t REG_SZ /d Service /fREG add "HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\Primary disk" /v "" /t REG_SZ /d "Driver Group" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\NetDDEGroup /v "" /t REG_SZ /d "Driver Group" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\NetBIOSGroup /v "" /t REG_SZ /d "Driver Group" /fREG add "HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\NDIS Wrapper" /v "" /t REG_SZ /d "Driver Group" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\NetworkProvider /v "" /t REG_SZ /d "Driver Group" /fREG add "HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\Boot file system" /v "" /t REG_SZ /d "Driver Group" /fREG add "HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\Boot file system" /v "" /t REG_SZ /d "Driver Group" /fREG add "HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\Streams Drivers" /v "" /t REG_SZ /d "Driver Group" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\sr.sys /v "" /t REG_SZ /d "FSFilter System Recovery" /fREG add "HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\PCI Configuration" /v "" /t REG_SZ /d "Driver Group" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\sr.sys /v "" /t REG_SZ /d "FSFilter System Recovery" /fREG add "HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\PCI Configuration" /v "" /t REG_SZ /d "Driver Group" /fREG add "HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\Boot Bus Extender" /v "" /t REG_SZ /d "Driver Group" /fREG add "HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\Boot Bus Extender" /v "" /t REG_SZ /d "Driver Group" /fREG add "HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\System Bus Extender" /v "" /t REG_SZ /d "Driver Group" /fREG add "HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\System Bus Extender" /v "" /t REG_SZ /d "Driver Group" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\{4D36E972-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d Net /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d Hdc /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\{4D36E96A-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d Hdc /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d Mouse /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\{4D36E96F-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d Mouse /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d System /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F} /v "" /t REG_SZ /d Volume /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\{4D36E97D-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d System /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\{71A27CDD-812A-11D0-BEC7-08002BE2092F} /v "" /t REG_SZ /d Volume /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d DiskDrive /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\{4D36E973-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d NetClient /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\{4D36E975-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d NetTrans /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d Keyboard /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\{4D36E967-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d DiskDrive /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\{4D36E96B-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d Keyboard /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\{4D36E974-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d NetService /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d SCSIAdapter /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\{4D36E97B-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d SCSIAdapter /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d "CD-ROM Drive" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\{4D36E965-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d "CD-ROM Drive" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d "Floppy disk drive" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\{4D36E980-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d "Floppy disk drive" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d "PCMCIA Adapters" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\{4D36E977-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d "PCMCIA Adapters" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA} /v "" /t REG_SZ /d "Human Interface Devices" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA} /v "" /t REG_SZ /d "Human Interface Devices" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d "Standard floppy disk controller" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000} /v "" /t REG_SZ /d "Universal Serial Bus controllers" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\{36FC9E60-C465-11CF-8056-444553540000} /v "" /t REG_SZ /d "Universal Serial Bus controllers" /fREG add HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\{4D36E969-E325-11CE-BFC1-08002BE10318} /v "" /t REG_SZ /d "Standard floppy disk controller" /fshutdown -r -t 0
Information
http://malwarefighting.blogspot.com
แจ้งเตือนภัย ! Crypt0L0cker (Ransomware)
เข้ารหัสข้อมูลใน คอมพิวเตอร์ กำลังระบาดในไทย
และกำลังระบาดหนักในเกาหลี
ThaiCERT , Crytpo Prevention Tool
*ห้ามจ่ายเงินโดยเด็ดขาด เพราะจะเสียทั่้งเงินและกู้ข้อมูลไม่ได้
รบกวนคนที่เข้ามาอ่านช่วยแชร์ด้วยนะครับ
http://hotzone-it.blogspot.com/2015/07/how-to-remove-crypt0l0cker-not.html
==============================================
แจ้งเตือนภัย ! Crypt0L0cker (Ransomware)
เข้ารหัสข้อมูลใน คอมพิวเตอร์ กำลังระบาดในไทย
และกำลังระบาดหนักในเกาหลี
ThaiCERT , Crytpo Prevention Tool
*ห้ามจ่ายเงินโดยเด็ดขาด เพราะจะเสียทั่้งเงินและกู้ข้อมูลไม่ได้
รบกวนคนที่เข้ามาอ่านช่วยแชร์ด้วยนะครับ
http://hotzone-it.blogspot.com/2015/07/how-to-remove-crypt0l0cker-not.html
==============================================
PeeTechFix >> JupiterFix
==============================================
วิธีใช้งาน : JupiterFix-Win32.PSW.OnlineGames
ท่านสามารถตรวจสอบรายชื่อ Virus ที่โปรแกรม สามารถ Clean ได้ ใน VirusList.txt
Safemode Recovery (.reg) แก้ปัญหา Virus ลบ Key Safeboot แล้วเข้า safemode ไม่ได้
-------------------------------------------------------------------------------------
ท่านใดที่ Download PeeTechFix tool ไปใช้แล้วมีปัญหาหรือลบไม่ออก โปรดแจ้งปัญหา ที่ email : MalwareHunter.info@gmail.com ด้วยครับ หรือส่งไฟล์ virus ให้ด้วย จะขอบพระคุณอย่างยิ่ง
ท่านใดที่ Download PeeTechFix tool ไปใช้แล้วมีปัญหาหรือลบไม่ออก โปรดแจ้งปัญหา ที่ email : MalwareHunter.info@gmail.com ด้วยครับ หรือส่งไฟล์ virus ให้ด้วย จะขอบพระคุณอย่างยิ่ง
-------------------------------------------------------------------------------------
|Windows XP | WindowsVista | Windows 2000 |WindowsServer 2003 |SafeBootKeyRepair |PeeTech_SafeModeRecovery (XP)
------------------------------------------------------------------------------------
วิธีแก้ Error message (แก้อาการเปิดไฟล์ .exe ใน USB Drive ไม่ได้)
"Windows cannot open this program because it has been prevented by a software restriction policy. For more information, open Event Viewer or contact your system administrator"
วิธีแก้ ดูที่ link นี้ครับ
-------------------------------------------------------------------------------------
วิธีแก้ MSN /Windows Live Messenger Disconnect (จาก virus OnlineGames)
-------------------------------------------------------------------------------------
How to start Windows in Safe Mode
Friday
Subscribe to:
Post Comments (Atom)
No comments:
Post a Comment