Spyware And Virus Threats Removal Instructions

Easily Scan & Find Malware on Hacked Websites for Malicious Script

Recently I written post about How I Recovered My Hacked WordPress Blog. You can check your website also for malware and dangerous script, while surfing I found an very useful website, URLVoid –Online Website Scanner which is beta service offering free scanning of website content for malicious script and malware.

Read more…

Onlinerel Facebook Twitter Myspace Friendfeed Technorati del.icio.us Digg Google Yahoo Buzz StumbleUpon

2 comments - What do you think?  Posted by Chandrashekhar - June 15, 2010 at 1:46 pm

Categories: Spyware And Virus Threats Removal Instructions   Tags: , , , , , , , , ,

Steps to Remove Win32:Rootkit-gen[Rtk] Virus And ur0 Virus


Win32:Rootkit-gen[Rtk] is  harmful Virus, this virus normally slowdowns your system and interferes with system process.
Symptoms of this virus attack:
• Win32:Rootkit-gen[Rtk] virus infection notice by your Antivirus.
• Resides in ur0.com file which happens to be a virus itself.
• Also resides in System Volume Information folder.
• May also prevent double click opening of a drive.

Steps to remove Win32:Rootkit-gen[Rtk] Virus
• The only reason why this virus infects the PC again is that, it has been saved in the System Restore files.
• So turn off the System Restore now (Right click on My Computer-> Properties-> System Restore tab-> click on Turn off System Restore on all drives).
• Reboot the PC to let the restore files to get deleted.
• Now just turn on the system restore.
The virus has been removed!!

Steps to remove ur0.com virus
• Run Task Manager, End the ur0.com process, if any.
• Go to Start click on run type msconfig,click on startup disable unnecessary application along with ur0.com .
• Reboot into safe mode, search the ur0.com file,from windows search tool and remember to include hidden files option as well.
• Permanently delete the files found.

Related :How to Remove regsvr.exe from startup

Onlinerel Facebook Twitter Myspace Friendfeed Technorati del.icio.us Digg Google Yahoo Buzz StumbleUpon

Be the first to comment - What do you think?  Posted by Chandrashekhar - April 5, 2010 at 9:48 am

Categories: Spyware And Virus Threats Removal Instructions   Tags: , , , , ,

Prevent Keylogging With Free DataGuard AntiKeylogger

Dataguard AntiKeylogger is a Freeware and which protect your data against all type of keyloggers.

Dataguard is well known Antikeylogger uses heuristics method to detect and neutralize all types of keylogging activities. Unlike your traditional signature based anti-spyware programs, Dataguard will protect privacy, data and information effectively. This is very clever program, doesn’t need any user intervention, and thus avoids the possibility of factor error. But also provides customization options for advanced users. Generally  Keylogger entrance path is web browsers application loop hole,messaging service loop holes, and direct attack on keyboard driver.

Some Advanced Features of DataGuard Antikeylogger

DataGuard Antikeylogger

· Doesn’t need anti-virus signature database;

· Offers effective Protection against keystroke logging; clipboard capturing, capturing text from opened documents and windows;

· Prevents hidden screen capturing and directrix based keylogging;

· Prevents kernel level keylogging and monitors keyboard filters.

Download DataGuard Antikeylogger

Related: 10 Preventive Measure  to protect against keyloggers

Onlinerel Facebook Twitter Myspace Friendfeed Technorati del.icio.us Digg Google Yahoo Buzz StumbleUpon

Be the first to comment - What do you think?  Posted by Chandrashekhar - April 3, 2010 at 6:37 am

Categories: Spyware And Virus Threats Removal Instructions   Tags: , , ,

Quick Fix To “This operation has been cancelled due to restrictions in effect on this computer” Error

When I am working as a Computer Service Engineer,i faced this problem at customer place in Windows XP Operating System,while opening internet explorer and fixed this problem by recovering corrupted registry.

This error not only arises due to corrupted registry some other causes for this Error

  1. By changing default Web-Browser from Internet explorer to other may cause this problem.
  2. Another possible cause for this error is Group Policy Editor, in some time it restrict execution of  certain application
  3. Another common cause is a corrupt registry key in Internet Explorer. The registry location is HKEY_Local Machine\Software\Classes\htmlfile\shell\open\command
    is either damaged or corrupt.
  4. Older versions of Internet Explorer is also another possible cause for this error

Some Tips to Fix this Error

Error Message

Solution 1:

Go to Control Panel -> Add Remove Programs, click on Set Program Access and Defaults. Then Open up the configuration then change the default web browser to something else.

Change Default Browser

Solution 2:

If you are using old version of Internet Explorer try latest version by upgrading your current browser.

Solution 3:

Open registry editor by typing regedit in Run box of start menu and search (Ctrl + F) for the value nocontrolpanel. Change its value from 1 to 0.

Change Registry Value from 0 to 1

Solution 4:

If problem caused by corrupted registry, just download this file,unzip it and double click to extract the registry.

Let us know these solutions works or not.

Related: How to remove regsvr.exe error from Startup

Onlinerel Facebook Twitter Myspace Friendfeed Technorati del.icio.us Digg Google Yahoo Buzz StumbleUpon

Be the first to comment - What do you think?  Posted by Chandrashekhar - March 17, 2010 at 6:55 pm

Categories: News, Spyware And Virus Threats Removal Instructions   Tags: , , , ,

Prevent Malware Attack With Free QualysGuard Malware Detection Scan

QualysGuard Malware Detection tool allows administrators to perform automatic scans of external-facing Websites. Automated Alerts is executed when Malware is detected and you can configure it so that you can get notification when certain object failed to scan. This online tool uses Behavioral and static analysis methods and it search for following elements of websites.

  • JavaScript with suspicious content
  • Tracking Codes loaded with websites
  • Rogue Windows registry keys
  • Executables files packages along with installation  
  • Monitors Disk activity

The Malware Detection tool is developed by Qualys and launched online for free use. This tool is user friendly, you can simply specify the URL of a website which you want perform scan. There is simple dashboard wizard through which you can initiate web server scan.

According to me this is an excellent free service, which provides automated scan and alert can proactively keep network administrators. Another feature is Web engine-specific scan is performed, so that it offers a good antivirus protection.

QualysGuard Malware Detection Tool

Onlinerel Facebook Twitter Myspace Friendfeed Technorati del.icio.us Digg Google Yahoo Buzz StumbleUpon

Be the first to comment - What do you think?  Posted by Chandrashekhar - March 2, 2010 at 8:16 am

Categories: News, Spyware And Virus Threats Removal Instructions   Tags: , , , , , , ,

How to RemoveC:\A1\V1\try.exe Virus

It is a network-aware worm that  replicate across the existing networks.So it is identified as a malicious trojan horse or bot that may represent security risk for the compromised system and its network

Symptoms of Virus Threat.

Infection1.The following directories were created:
a)c:\A1
b)c:\A1\V1
c)c:\Driver
d)c:\Driver\Files
Infection  2. The following files were created in the system:
a)c:\A1\V1\DesKTop.ini
b)c:\Driver\Files\Desktop.ini 
c)c:\A1\V1\try.exe
d)C:\Documents and Settings\%UserProfile%\update.exe
 Infection 3. Registry Modifications by threat
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{67KLN5J0-4OPM-61WE-AAX2-5657QWE232788}]StubPath = “c:\A1\V1\try.exe”
 so that try.exe runs every time Windows starts along with explorer.exe
Steps to Remove A1\V1\try.exe.
  1. Press Alt+Ctrl+Del —>Go to Process —>end Explorer.exe

  2. Go to Run by Clicking File menu in Task Manager Type CMD in run box

C:\Documents and Settings\user> Type cd\ Press Enter
C:\> Type attrib -h -r -s A1 Press Enter
C:\ A1>Type CD V1Press Enter
C:\A1\V1\> type dir to acess try.exe Directory
C:\A1\V1\> type del try.exe
C:\>Type Del A1(Repeate only this command three times until Virus gone)
Ask for delete Confirmation Press Y 
C:\>Type Del A1
Ask for delete Confirmation Press Y
C:\>Type Del A1.exe
If you got message Could not Find C:\A1 .Operation is Success Virus Should Be Gone! 
Now it is the time for deleting other dangerous created by Virus  
 a)Delete A1 Folder you can observe in C drive.If you able to find msupdate.exe in C drive you can delete that file also.

b)Delete msupdate.exe and update.exe from user C:\Documents and Settings\User

c)Delete Dialup connections Like a-connect,z-connect from Network Connection

d)Then delete the registry created by Virus.If you find difficulty you can use registry cleaners like Glary Utilities, or CCleaners etc.

If you find difficulty leave a comment or contact us.I will deffinately help you to resolve your issue.

Onlinerel Facebook Twitter Myspace Friendfeed Technorati del.icio.us Digg Google Yahoo Buzz StumbleUpon

Be the first to comment - What do you think?  Posted by Chandrashekhar - January 18, 2010 at 9:09 am

Categories: News, Spyware And Virus Threats Removal Instructions   Tags:

Next Page »