10
March , 2010
Wednesday

Computer Tips Made Simple! – Thinker

These days a lot of wannabe hackers and crackers are trying their luck with fake ...
Permalink Sturctures in wordpress are very important when it comes to SEO for your blog. ...
This virus called the netsvcs.exe is a process which runs in your computer. You will ...
BlogCamp Kerala is here and how? What a wonderful way to kickstart blogging promo in Kerala. ...
I have been ignoring this blog for sometime mainly cuz whatever I wanted to say ...
Have you ever heard of "Windows Update 0x80072ee2/0x80072efd error code? This is a mistake, very ...
Braviax.exe is a nasty virus that installs on your computer and creates all sorts of ...
In Kerala,  Tourism is a major source of revenue and our Government is taking all ...
With post marriage woes all around us, its ever difficult to make that choice and ...
Sometimes broken softwares, viruses, adwares and spywares sometimes tend to make things worse for you ...

W32 Sohanad Worm – Virus Removal

Posted by Thinker On October - 22 - 2008 1 COMMENT

Sohanad is a worm that spreads by sending links to their contacts as messengers such as Yahoo, AOL and Windows Live Messenger. The changes in Internet Explorer (IE) and the page does not allow the address of the homepage. Also, disable the Registry Editor, Task Manager and select Run from the Start menu. Flaw in Internet Explorer is the origin of these virus attacks. Firefox users are from a growing attack against the virus, so if you want to stay away from such sohanad worm and virus removal prevention and attacks, you have the Firefox browser.

worm brontok

Posted by Thinker On October - 22 - 2008 1 COMMENT
When the infected file with the virus Brontok is launched for the first time, you will see a Windows Explorer window, with a folder named “My Pictures”.

By installing the brontok worm changes the following registry key, the inaccessibility of tools registry, the command line, and viewing of files and folders in Windows Explorer.

Then Brontok copies itself under the following names

%UserProfile%\Local Settings\Application Data\br<random number>on.exe
%UserProfile%\Local Settings\Application Data\csrss.exe
%UserProfile%\Local Settings\Application Data\inetinfo.exe
%UserProfile%\Local Settings\Application Data\lsass.exe
%UserProfile%\Local Settings\Application Data\services.exe
%UserProfile%\Local Settings\Application Data\smss.exe
%UserProfile%\Local Settings\Application Data\svchost.exe
%UserProfile%\Local Settings\Application Data\winlogon.exe

The Emails sent may contain the following attachments with the Brontok Worm:

  • ccapps.exe
  • jangan dibuka.exe
  • kangen.exe
  • my heart.exe
  • myheart.exe
  • syslove.exe
  • untukmu.exe
  • winword.exe

DriveCleaner 2006 Virus Removal

Posted by Thinker On September - 22 - 2008 1 COMMENT

Disguised as a anti-virus, this software calls itself Drive Cleaner 2006 and claims to remove all the viruses in your system. How ironic since this itself is a adware trojan and specifically a virus! Here is how the installation click looks like.

2006 DriveCleaner Virus Removal

If your computer has files like

C:\Program Files\DriveCleaner 2006 Free\UDC2006.exe

C:\Program Files\Common Files\DriveCleaner 2006 Free\udcsdr.exe

C:\Program Files\Common Files\DriveCleaner 2006 Free\udcpas.exe

C:\Program Files\DriveCleaner 2006 Free\UDC6cw.exe

To remove Drive Cleaner 2006, it is fairly simple process and to remove this virus, just uninstall it from the control panel (There will be a entry called DriveCleaner) and use Hijack This and remove the above named entries for DriveCleane. Hopefully you are clean now!!!

Recent Comments

There is something about me..

Recent Comments

10 Tips To Get That Work Done

On Jun-5-2008
Reported by Thinker

ise32.exe Properties Window on Startup Virus Removal

On Sep-18-2008
Reported by Thinker

test post

On Oct-4-2008
Reported by Thinker

Best Permalink Seo Structure Wordpress

On Sep-24-2008
Reported by Thinker

netsvcs.exe Virus Removal

On Nov-14-2008
Reported by Thinker

Recent Posts