Tuesday 24 June 2008

Finally i win the war ( Human vs Virus/Trojan)

I think i should blog this post, i had tried to search a lots of solution to remove the trojan at website, but not many people are really contribute to give the solution, they just recommend you to download this software and that software. The more i try, the worst i face.

So how i solve the problem?
Actually the virus i hit is call

1. "Trojan-PSW.Win32.OnLineGames.asbw", in front all consist the word

Usually OnlineGames trojans are spammed in e-mails with "juicy" subjects and attachment names. However, such trojans can also be downloaded by other malicious programs, for example by worms, backdoors, and trojan downloaders.

After the trojan's file is started by a user, it installs itself to the system by copying its file to Windows folder. It also creates a startup key value in the Registry for the copied file. This is done to make sure that the trojan's file is started every time Windows boots. The startup key value is created under the following Registry key:"

More Information

2.Trojan-Downloader.Win32.Agent.rjq'.

3.Backdoor.Win32.Bifrose.kt
"Trojan.PSW.Delf.KT tries to steal usernames and passwords stored on the infected system and send them to an attacker."

4.Backdoor.Win32.Hupigon.aftd

The program copies itself to the system directory as winreg.exe and notepod.exe.
It then registers this file in the system directory, ensure that the file will be executed each time Windows is rebooted on the victim machine.
It also changes launch parameters for executable and text files so that the Trojan file will automatically be launched at the same time:


How i remove the virus?
1. Install kaspersky.
2.Scan in window. Scan everything, criticl area, start up object, My computer.
3.Install CCleaner. Clean all the rubbish, registry key and run cleaner.
4.Reboot your machine in safe mood, and rescan again
5. In you found some file that you cannot delete, use unlocker to delete the file :D

After i done all the step, i think i got some side effect.

I accident delete my explorer.exe because it affected by virus, So if this happen, after success load into desktop, you only will see the wallpaper, all the desktop icon is gone, and ur System idle process ( alt+ctrl+del) will keep show 99%

so you go to other pc and copy and paste back to c:windows , then you will able see back your desktop. haha

Other magic .....The "open" option is gone !!!!!!!!!!!!!!!
It happen to every folder !!... i totally "bo lat" and "sad like dog". Whole night no mood, and dont know to fix this, lucky i post this topic to lowyat forum, and a kindful guy really do help me with his way

1. Download Flash Disinfector

Please download Flash_Disinfector.exe by sUBs and save it to your desktop:
Note: Please delete any existing copy of Flash Disinfector(if any) on your pc and download this one.
  • Double-click Flash_Disinfector.exe to run it.
  • Follow any prompts that may appear.
  • Your desktop will vanish for a while, and then reappear. This is normal.
  • Wait until the program has finished scanning, then please exit the program.
  • Restart your computer and see if problem still persists.

2. run this

Start Menu > Run
type regsvr32 /i shell32.dll
Now my computer back to normal again...... just an experience sharing.
My advice enable your real time protection and install a zonalarm firewall, then i think everything should be ok :D

No comments: