This Yahoo messenger virus attack is one of
the most
Now I am going to gives you a PC Trick with the help of which you can recover your infected PC with in 5 minutes. For this PC Tricks you do not need to download any software.
powerful Trojan/virus attack on your PC. If your computer is infected with this virus, it will sends the nsl-school.org url to all of your friend list in yahoo messenger using your ID.
So with in few hours many of your friends will get infected with it.
Now I am going to gives you a PC Trick with the help of which you can recover your infected PC with in 5 minutes. For this PC Tricks you do not need to download any software.
Before performing this PC Trick lets understand what happened when the virus attack on
your PC .
What are those links ?:
Nsl-school.org or other (Do not open this
url in your browser).
They are basically IPB Images.
If you are infected with it what is going
to happen ?
1:
It sets your default IE page to
nsl-school.org, you can't even change it back to other page. If you open IE
from your computer some malicious
code will automatically executed into your computer.
2:
It
will disable the Task manager / reg edit of your computer. So you can not kill the Trojan process anymore.
3:
Files that are gonaa installed by this
virus are svhost.exe , svhost32.exe , internat.exe.
You can find these files in windows/ &
temp/ directories.
4: It will sends the secured & protected
information to attacker.So its batter to remove this virus by this pc trick as
soon as possible.
Now the pc trick on how to remove this
virus from your pc. Do the following steps of this pc trick manually from your computer .If you have any problem with
any step of this computer trick go
to screen shot for more clear information.
1: The first step of this PC Trick is close
the IE browser. Log out messenger / Remove Internet Cable.
2: To enable Regedit
Click Start, Run and type this command
exactly as given below: (better - Copy and paste)
Code: REG add
HKCUSoftwareMic*ftWindowsCurrentVersionPoliciesSystem /v DisableRegistryTools
/t REG_DWORD /d 0 /f
3: To enable task manager : (To kill the
process we need to enable task manager)
After this your task manager gets enables
and you are able to kill the process. But the virus remains in your PC. For
removing the virus permanently follow the next steps of this computer trick.
4: Now we need to change the default page
of IE though regedit.
From the below locations in Regedit chage
your default home page to newpctrick.blogspot.com or other
Go to Start>Run>Regedit
A).Double click on HKEY_CURRENT_USER then choose SOFTWARE
option and double click on it. Take a look on screen shot for understanding
this pc trick.
B).After that you have to choose MICROSOFT option then INTERNET EXPLORER.
c).And at last double click on MAIN. As Shown in screen shot of this pc trick below.Just replace the attacker site with
newpctrick.blogspot.com or set it to blank page.
5).Now we need to kill the process from back
end. For this, Press "Ctrl + Alt + Del ".Kill the process svhost32.exe . ( may be
more than one process is running.. check properly)
6).Delete svhost32.exe , svhost.exe files from
Windows/ & temp/ directories. Or just search for svhost in your comp.
delete those files.
7). Restart the computer. That's it about
this pc trick now your system is
virus free. Gives your comment about this pc tricks.
3 comments:
Thanks man ...finally i removed this virus from my PC...owesome post with screen shot...
Nice tricks collection..I have bookmark your site because you update your site with new tricks... nice work...i love your facebook and ethical hacking tricks collection...
Now finally i save my PC from virus...Thanks for the post..
Post a Comment