Archive for ‘Virus’

October 12, 2010

Desktops and Notebooks Operating System

It’s been quite long period people are tied with windows operating systems in desktops and notebooks. It’s user interface, installation, support of application, integration, drivers, devices, etc. Now the technology changed. People awareness changed requirement and way of access changed. This week I installed Ubuntu 10.10 in my notebook. It’s extremely awesome.

OS appearance changed, using Ubuntu font. E-mail, chat and micro blogging integrated. Installer is simple and faster. The trend shows more organisations and individuals will adapt the new OS.

Tags:
June 21, 2009

MAL_OTORUN Virus

To clean the MAL_OTORUN virus, I tried with couple of Anti Virus, but nothing worked out. Some Antivirus quaratined the virus, but not able to fix the issue. Finaly I used combofix.
 
Please download ComboFix from here.

You must download it to and run it from your Desktop
Now STOP all your monitoring programs (Antivirus/Antispyware, Guards and Shields) as they could easily interfere with ComboFix.
Double click combofix.exe & follow the prompts.
When finished, it will produce a log.
Re-enable all the programs that were disabled during the running of ComboFix..

Note:
Do not mouse-click combofix’s window while it is running. That may cause it to stall.
CF disconnects your machine from the internet. The connection is automatically restored before CF completes its run. If CF runs into difficulty and terminates prematurely, the connection can be manually restored by restarting your machine.

June 21, 2009

WORM SOHANAD

The worm behaves like below:-

  1. Virus removed user folder options
  2. Virus removed task manager option
  3. Virus make used user messenger, communicator, e-mail contacts and send messages to outside
  4. Changed user default Internet explorer home page to – http://h1.ripway.com/poojasharma/index.html
  5. Created xxx.exe folder for each files and folder name

                     i.      Folder Name         – sales, Created folder as sales.exe

                    ii.      File Name              – purchase, created folder as purchase.exe

 

To clean the worm manually use:-

 

1. Kaspersky Virus Removal Tool

2. ComboFix

3. Trend CWSHREDDER

 

It’s been identified by 2007.  

Kaspersky  –           IM-Worm.Win32.Sohanad.gen

Trend         –           WORM_SOHANAD.JJ