Computer Problems, Troubleshooting, Advanced Level, Eljun Blog, Towncenter Online, Jagna Blog, Blogging World

Wednesday, January 7, 2009

Getting Rid of Annoying Malwares!!!

Symptoms of Computer being infected with Malware:

- Computer Hangs up

- Annoying screen alert and pop-ups.

- Background turn to RED, Black and Etc.

- Slow down your start process.

- Closing some Applications and etc.

Additional info's can be found here


Ok lets straight to the point, one of my favorite tools in removing Malwares & Computer Bacterias!!!.


1. ComboFix


Introduction

ComboFix is a program, created by sUBs, that scans your computer for known malware, and when found, attempts to clean these infections automatically. In addition to being able to remove a large amount of the most common and current malware, ComboFix also displays a log when it is finished that contains a great deal of information that an experienced helper can use to diagnose, retrieve samples of, and remove infections that are not automatically removed.

Due to the power of this tool it is strongly advised that you do not attempt to act upon any of the information displayed by ComboFix without supervision from someone who has been properly trained. If you do so, it may lead to problems with the normal functionality of your computer.

More info in setup installation you can go here

To download the program you can select this link below.

Labels: ,

Saturday, October 25, 2008

Removing Virus from USB or MASS Storage

Nowadays USB Drives is very popular in Cyber World because of its handy look and design to be more flexible and accurate comparing to those old Floppy drives we used before. Many people used it for transferring their files wherever they go. But do you know that USB drive is also one of the Carrier of Computer viruses and Worms?

According to some statement:

"It all boils down to a simple text file called: autorun.inf with a simple script like “[autorun] open=virus.exe icon=virus.ico”. “Open” is the command to execute the file upon having the drive detected by Windows while “icon” is optional and is merely to give an “icon” to the drive letter the USB drive resides on. It is quite easy for virus to infect an executable file especially the viruses which reside in the flash drives while being executed.

The situation is even worse when sometimes you are attacked by a new worm that can take advantage of this security flaw and copies itself to the root directory of the USB flash drive, thence automatically creates an autorun.inf file to further spread itself. Of course this threat does not only affect the USB flash drive but also other devices with a flash storage and a USB cable, e.g. mobile phone, PDA, etc."

Deleting virus from the USB drive is quit easy, however because of the different types of virus that resides on it, it will be hard to modify. You can simply follow some important tips on deleting the virus inside your USB.


Ok this procedures will guide you removing any Auto run virus on your computer:

Step 1:

Click on "MY COMPUTER" icon / Click on the Address BAR / Locate your USB assigned Drive e.g. D: / E: / F: & Etc.

NOTE: Don't click or double click the USB Drive because it will trigger the virus.

You will see different folders but you can't see the virus because it is "HIDDEN". In order to reveal it, you need to click on "TOOLS / FOLDER OPTION/ VIEW & Checked the SHOW HIDDEN FILES" click APPLY hidden files should be visible now.

Step 2:

Delete some files that ends with ".EXE" & ".BAT" & ".INF" file extension

ex: FunnyUST Scandal.exe, SilentSoftTech.exe, Command.Exe. Test.bat and so much more.

NOTE: If you can't delete the above files it means that its currently running on your system to end its process you need to hit CTRL+ALT+DELETE it should bring up the TASK MANAGER locate the file and click the END PROCESS.

NOTE2: Some virus & worms usually disable this options if its already scattered throughout your computer disabling the ff:

msconfig, taskmanager, regedit, and also cmd.exe

So you will need a secondary tools that usually works desame as above.

The software we called "Process Explorer" is the best bet to this kind of problem, you can download it from here or mirror1. Start the program and End the virus process.


Step 3:



Clearing the virus from running on startup, why?

Autorun virus will also start the process when your computer is ON, lets assumed it, ok clearing the virus from running on startup comes two different ways.

a. Click START/RUN/ type MSCONFIG hit enter & select STARTUP.
You can unchecked everything, if you are familiar with the running application during
startup just leave it check. NOTE: Removing some items will also boast your computer on
startup.

b. Click START/RUN/type REGEDIT ==== WARNING this is much complitaced part make
sure you don't changed anything except from the file that I'm going to mentioned.

Locate this "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon

The Default for "Shell & Userinit" is:

Name Type Data

shell REG_SZ Explorer.exe
userinit REG_SZ C:\WINDOWS\system32\userinit.exe or Userinit.exe


Prob :Explorer.exe, Aikelyu.html

Sol : Remove the Aikelyu.html

Prob : Userinit.exe, Command.bat, FunnyUST Scandal.exe

Sol : Remove the other EXCLUDING the "userinit.exe"


Make sure to change to default function as written above.


If you are still having problem following the procedures written above you post your commends for further explanation.



Labels: , , ,

Thursday, October 23, 2008

Types of Computer Viruses

Network Viruses

Network viruses rapidly spreads through a Local Network Area (LAN), and sometimes throughout the internet. Generally, network viruses multiply through shared resources, i.e., shared drives and folders. When the virus infects a computer, it searches through the network to attack its new potential prey. When the virus finishes infecting that computer, it moves on to the next and the cycle repeats itself. The most dangerous network viruses are Nimda and SQLSlammer.


Logic Bombs

The logic bomb virus is a piece of code that are inputted into a software system. When a certain and specific condition is met, such as clicking on an internet browser or opening a particular file, the logic bomb virus is set off. Many programmers set the malicious virus off during days such as April Fools Day or Friday the 13th. When the virus is activated, then various activities will take place. For example, files are permanently deleted.

Companion Viruses

Companion viruses takes advantage of MS-DOS. This virus creates a new file with typically the .COM extensions, but sometimes the .EXD extension as well. When a user manually types in a program they desire without adding .EXE or any other specific extention, DOS will make the assumption that the user want the file with the extension that comes first in alphabetical order, and thus running the virus. The companion virus is rare among Windows XP computers as this particular operating system does not use the MS-DOS.

Boot Sector Viruses

Boot sector viruses generally hide in the boot sector, either in the bootable disk or the hard drive. Unlike most viruses, this virus does not harm the files in the hard disk, but harm the hard disk itself. Boot sector viruses are uncommon at this day and age because these viruses are spread rapidly by floppy disks and not on CD-ROMs.

Multipartite Viruses

Multipartite viruses are spreaded through infected media and usually hides in the memory. Gradually, the virus moves to the boot sector of the hard drive and infects executable files on the hard drive and later across the computer system.


Labels: , , , ,

AntiVirus Software Review 2008

AntiVirus Software Review
Don’t think your computer is safe…


Today’s computer viruses are more sophisticated and aggressive than ever. Thankfully, with antivirus software, you can confidently keep your data safe and your computer free of infection. If you are aware of your computer being infected with a virus then you must purchase the products that are capable of giving your own security.
Many destructive viruses are come from internet and in any removable disk such as: Flash Drive, Thumb Drive or USB, Memory Cards, Old Floppy, & from other network computer. Your computer may take the risk if you don’t careful.
Top 3 Rank

#1 BitDefender Antivirus
#2 Kaspersky Anti-Virus
#3 ESET Nod32

See all products at: http://anti-virus-software-review.toptenreviews.com/

Labels: ,

Anti-Virus 2008 Reviews

AntiVirus Software Review
Don’t think your computer is safe…


Today’s computer viruses are more sophisticated and aggressive than ever. Thankfully, with antivirus software, you can confidently keep your data safe and your computer free of infection. If you are aware of your computer being infected with a virus then you must purchase the products that are capable of giving your own security.
Many destructive viruses are come from internet and in any removable disk such as: Flash Drive, Thumb Drive or USB, Memory Cards, Old Floppy, & from other network computer. Your computer may take the risk if you don’t careful.
Top 3 Rank

#1 BitDefender Antivirus
#2 Kaspersky Anti-Virus
#3 ESET Nod32

See all products at: http://anti-virus-software-review.toptenreviews.com/

Labels: , ,