Wednesday, August 17, 2011

PC Trick On How To Prevent From Virus Attack If It Infected Your PC (New Yahoo! Messenger Virus Attack)

This Yahoo messenger virus attack is one of the most
 powerful Trojan/virus attack on your PC. If your computer is infected with this virus, it will sends the nsl-school.org url to all of your friend list in yahoo messenger using your ID. So with in few hours many of your friends will get infected with it.


 Now I am going to gives you a PC Trick with the help of which you can recover your infected PC with in 5 minutes. For this PC Tricks you do not need to download any software.

Before performing this PC Trick lets understand what happened when the virus attack on your PC .

What are those links ?:
Nsl-school.org or other (Do not open this url in your browser).

They are basically IPB Images.

If you are infected with it what is going to happen ?

1:
It sets your default IE page to nsl-school.org, you can't even change it back to other page. If you open IE from your computer some malicious code will automatically executed into your computer.


2:
 It will disable the Task manager / reg edit of your computer. So you can not kill the Trojan process anymore.

3:
Files that are gonaa installed by this virus are svhost.exe , svhost32.exe , internat.exe.
You can find these files in windows/ & temp/ directories.


4: It will sends the secured & protected information to attacker.So its batter to remove this virus by this pc trick as soon as possible.


Now the pc trick on  how to remove this virus from your  pc. Do the following steps of this pc trick  manually from your computer .If you have any problem with any step of this computer trick go to screen shot for more clear information.

1: The first step of this PC Trick is close the IE browser. Log out messenger / Remove Internet Cable.

2: To enable Regedit
Click Start, Run and type this command exactly as given below: (better - Copy and paste)

Code: REG add HKCUSoftwareMic*ftWindowsCurrentVersionPoliciesSystem /v DisableRegistryTools /t REG_DWORD /d 0 /f

3: To enable task manager : (To kill the process we need to enable task manager)
After this your task manager gets enables and you are able to kill the process. But the virus remains in your PC. For removing the virus permanently follow the next steps of this computer trick.

4: Now we need to change the default page of IE though regedit.

From the below locations in Regedit chage your default home page to newpctrick.blogspot.com or other


Go to Start>Run>Regedit

A).Double click on HKEY_CURRENT_USER then choose SOFTWARE option and double click on it. Take a look on screen shot for understanding this pc trick.

 
B).After that you have to choose MICROSOFT option then INTERNET EXPLORER.


 
c).And at last double click on MAIN. As Shown in screen shot of this pc trick below.Just replace the attacker site with newpctrick.blogspot.com or set it to blank page. 

 

5).Now we need to kill the process from back end. For this, Press "Ctrl + Alt + Del".Kill the process svhost32.exe . ( may be more than one process is running.. check properly)

6).Delete svhost32.exe , svhost.exe files from Windows/ & temp/ directories. Or just search for svhost in your comp. delete those files.


7). Restart the computer. That's it about this pc trick now your system is virus free. Gives your comment about this pc tricks.

3 comments:

Thanks man ...finally i removed this virus from my PC...owesome post with screen shot...

Nice tricks collection..I have bookmark your site because you update your site with new tricks... nice work...i love your facebook and ethical hacking tricks collection...

Now finally i save my PC from virus...Thanks for the post..

Post a Comment