Showing posts with label Removal. Show all posts
Showing posts with label Removal. Show all posts

Sunday, December 13, 2009

1

AnyBizSoft PDF Password Remover

  • Sunday, December 13, 2009
  • Runtrailblog
  • PDF Password Remover is designed to remove the password and restrictions  of PDF files,which have "owner" password set, preventing the file from editing/changing/ printing/ selecting text and graphics (and copying them into the Clipboard), or adding/changing annotations and form fields.

     12-13-2009 10-45-35

     

    Right-click the PDF file, select Decrypt with AnyBizSoft PDF Password Remover from the shortcut menu, the restrictions will be removed in seconds. It is easy for you to copy,  edit or print the PDF files after decryption.

     

    12-13-2009 10-31-49

     

     

    As a part of Christmas offer, AnyBizSoft  offers this tool as free  till Feb 24, 2010.Visit here to  get your  free Serial .

     

    dl2  PDF Password Remover |SysReq:OS: Windows XP/Vista/7 32bit

    Read more...

    Monday, November 23, 2009

    0

    RootRepeal - Rootkit Detector

  • Monday, November 23, 2009
  • Runtrailblog
  • RootRepeal is a small, portable and freeware tool to uncover rootkits.Generally this  tool is useful  for advanced users  those who know what the normal Windows drivers, processes and services are.

     

    Features

    1. Easy to use - a user with little to no computer experience should be able to use it.
    2. Powerful - it should be able to detect all publicly available rootkits.
    3. Stable - it should work on as many different system configurations as possible, and, in the event of an incompatibility, not crash the host computer.
    4. Safe - it will not use any rootkit-like techniques (hooking, etc.) to protect itself.
    5. RootRepeal has the ability to scan and display all currently loaded drivers and tell you whether they are hidden and whether the drivers file is visible on disk.
    6. Scans for hidden, locked or fraudulent files on the system
    7. Scans and displays the currently running processes ( shows if the process is hidden or locked).
    8. Scans the SSDT (system service descriptor table) to see if any services are hooked.
    9. Scans for Stealth objects which looks for rootkit symptoms in general.
    10. Scans for Hidden services and displays them.

    11-23-2009 05-11-43

     

    It is better to disable your antivirus, antispyware, and firewalls before continuing or they may block RootRepeal from running properly.If you have  found something malicious, right click on the driver/file/service and either copy, wipe or force delete it.You can  save the scan  report , which you can attach to  various forums for analysis if needed.

     

    11-23-2009 05-35-53

     

    dl2  RootRepeal |454KB

    Read more...

    Monday, September 7, 2009

    0

    How to Delete NTFS Partition Quickly&Safely?

  • Monday, September 7, 2009
  • Runtrailblog
  • It is going to happen sooner or later;your old computer will be scraped.Obviously you want to make the data on the old hard disk unreadable before letting it into someone else’s hands.To be entirely safe, you should always wipe its hard drive clean before disposing of an old hard disk.

    What many of us don’t know is that deleting or formatting a partition alone is not really sufficient  to delete the data on a hard disk entirely. Play it safe with the   free KillDisk program from Active@ . With this  tool you can create a  Boot Floppy.You can also  download  ISO image as an alternative ,with which you can create Boot CD.

     

    9-7-2009 5-58-50 AM 

    Boot the computer with Boot Floppy/Boot CD ,when the DOS prompt appears ,type killdisk and press enter.After the DOS program starts ,by using the arrow keys,select the hard disk as well as the partition in it, which has to be  deleted permanently . The {F10} key opens a dialog for selecting the deletion method.Start destroying all data with “Confirm and Wipe” and by confirming the security query.

     

    9-7-2009 5-59-35 AM

     

    dl2 KillDisk Suite.5.1  (10.7 MB) Or ISO Image of Active@ KillDisk (4.24MB)

    Read more...

    Saturday, September 5, 2009

    0

    Avira AntiVir Rescue System:FREE Recovery Rescue CD

  • Saturday, September 5, 2009
  • Runtrailblog
  • RescueCd is a Linux system rescue disk available as a handy  bootable CD-ROM  for administrating or repairing your system and data after a crash due to a virus attack.It is very useful in case the computer gets infected.

     

    Avira AntiVir Rescue System is another useful utlity that allows accessing computers that cannot be booted anymore. Thus it is possible to:

    • repair a damaged system
    • rescue data
    • scan the system for virus infections

    9-5-2009 8-24-04 AM

    Just double-click on the rescue system package to burn it to a CD/DVD. You can then use this CD/DVD to boot your computer.It gives the user three options on how to handle the situation. You  can try to repair a damaged system, rescue data and scan the system for virus infections.

     

    9-5-2009 8-29-35 AM

     

    downloadfile  Link 1 Or Link2 Or Link3

    Read more...

    Sunday, April 12, 2009

    0

    VundoFix - Freeware Removal Tool for Trojan.Vundo

  • Sunday, April 12, 2009
  • Runtrailblog
  • If you are experiencing problems with pop-ups, ad software, spyware, or malware (or if your computer is acting strangely), you should scan it with VundoFix.

     

    VundoFix 7.0.6 - A useful application that will clean Virtumonde viruses from your computer. VundoFix.exe is a removal tool developed to remove Virtumonde infections. If you are infected, you will be bombarded with popups for WinFixer, Amaena, WinAntiVirus, ErrorSafe, SystemDoctor and DriveCleaner. Downloading and running these Fraudware applications will result in a fake scan telling you that you are infected with malware then telling you that you need to buy their program to remove the malware that it found.They are scams and will not remove anything but could possibly make your infection worse.

     

    4-12-2009 1-24-29 PM

     

    How to use VundoFix:

     

  • Double-click VundoFix.exe to run it.
  • When VundoFix opens, click the Scan for Vundo button.
  • Once it's done scanning, click the Remove Vundo button.
  • You will receive a prompt asking if you want to remove the files, click YES
  • Once you click yes, your desktop will go blank as it starts removing Vundo.
  • When completed, it will prompt that it will reboot your computer, click OK
  • 4-12-2009 1-15-39 PM

     

     

    4-12-2009 1-16-32 PM VundoFix |Freeware|117KB|Home page HomePage|OS :Win9x/Me/NT/2000/XP/2003

    Read more...

    Tuesday, April 7, 2009

    0

    GMER - Rootkit Detector and Remover

  • Tuesday, April 7, 2009
  • Runtrailblog
  • Are  you worried about rootkits? GMER is a scanner that can find many of the most stubborn rootkits

     

    4-7-2009 10-31-52 AM

     

     

    It scans for:

    • hidden processes
    • hidden threads
    • hidden modules
    • hidden services
    • hidden files
    • hidden Alternate Data Streams
    • hidden registry keys
    • drivers hooking SSDT
    • drivers hooking IDT
    • drivers hooking IRP calls
    • inline hooks

     

    GMER also allows to monitor the following system functions:

    • processes creating
    • drivers loading
    • libraries loading
    • file functions
    • registry entries
    • TCP/IP connections
    • GMER runs on Windows NT/W2K

    105 GMER | Freeware | 384KB | Home page  http://www.gmer.net/index.php

     

    Also Read:Rootkit & Removers

    Read more...

    Friday, February 20, 2009

    0

    TrojanDropper Removal Instructions

  • Friday, February 20, 2009
  • Runtrailblog
  • A Trojan dropper is usually a standalone program that drops different type of standalone malware (trojans, worms, backdoors) to a system .It  opens up a large security hole on your computer and is a very dangerous threat to the security of your personal and financial data.It may download large amounts of spyware and adware that automatically install themselves onto your system.Trojan.Dropper/AdobeFake is generally downloaded from the Internet and installed via, spam email, adult websites or file sharing programs without users knowledge.

     

    Sparks006

     

    Symptoms

     

  • Unwanted frustrating porn and casino mass pop ups popping up even with blocker tool
  • Abnormal Trojan.Dropper/AdobeFake processes running in Windows task list, can't stop weird bleeping noise
  • Trojan.Dropper/AdobeFake re-installs itself after been removed manually, particularly complicated to eliminate
  • Hijacked desktop toolbar, wallpaper, tray icons and windows shortcuts
  • Sluggish Internet, decreased bandwidth, slow surfing and familiar browser crashes
  • Corrupt dlls, registry keys and Windows files causing "Blue Screen Of Death"
  • Browser home page, error page and search page replaced with strange website
  •  

    Manual Removal Instructions

    Step 1 : Use Windows File Search Tool
    1. Start > Search > All Files or Folders.
    2. In the "All or part of the the file name" section, type in "TrojanDropper" file name(s).
    3. To get better results, select "Look in: Local Hard Drives" or "Look in: My Computer" and then click "Search" button.
    4. When Windows finishes your search, hover over the "In Folder" of "TrojanDropper", highlight the file and copy/paste the path into the address bar. Save the file's path on your clipboard because you'll need the file path to delete TrojanDropper in the following manual removal steps.

    Step 2 : Use Windows Task Manager

    1. Press  CTRL+ALT+DEL
    2. Remove the "TrojanDropper" processes files:
  • search[2].exe
  • sysrtmvs.exe
  • senh.exe
  • wd7gi8nnew.exe
  • visfx500new.exe
  • OEM.exe
  • numbsoftnew.exe
  • Mendoza1.exe
  • Mendoza.exe
  • Step 3 : Remove TrojanDropper Registry Values

    1. Start > Run > type regedit and then press the "OK" button.
    2. Locate and delete the entry or entries whose data value (in the rightmost column) is the spyware file(s) detected earlier.
    3. To delete "TrojanDropper" value, right-click on it and select the "Delete" option.
    4. Locate and delete "TrojanDropper" registry entries

    HKEY_LOCAL_MACHINESoftware\Microsoft\Windows\CurrentVersion\Emitt

     

    Useful Softwares for TrojanDropper Removal

    1. Download SpyHunter's Malware Scanner
    2. Download Threat Fire
    3. Download XoftSpy SE
    4. Download SpywareDoctor  

    Precautions & Preventions

    • Download & update  your  Windows Security up-to-date
    • Always install a  good  anti-spyware software & its  definitions should be  up-to-date
    • Install and keep your firewall turned on.
    Read more...

    Tuesday, February 10, 2009

    0

    How to clean Brontok Virus

  • Tuesday, February 10, 2009
  • Runtrailblog
  • The Brontok  is a worm that affects Windows based computers and  spreads by sending itself to email addresses harvested from the affected computer.  It  creates a registry entry in the HKLM\Software\Microsoft\Windows\CurrentVersion\Run registry key.

     

    292l6b9

     

    Symptoms

    It disables the Windows Registry Editor and modifies Windows Explorer settings.In the Tools menu, "Folder Options" will be disabled , so that the hidden files are not easily accessible to the user. It also turns off Windows firewall.The system also restarts when executing certain EXE files and when trying to start registry editor.

    • Downloading shareware/freeware software or visiting questionable websites might lead to a Worm.Brontok infection.
    • It can tracks which websites you visited or what terms you’ve typed. Spyware uses your information to deliver targeted ads to you. Also, data of your surfing activities may be sold to third parties.
    • Worm.Brontok may display annoying popups while you surf the Web. You might have Worm.Brontok or other types of parasites on your computer if you see pop-up advertising, even when you are not on the Web or when your computer has been idle for many minutes.
    • When your Web browser’s home page unexpectedly changes without your consent or your Web browser suddenly closes or stops responding, you might be infected with Worm.Brontok.
    • If you see your computer is slowing down dramatically or crashing a lot, you may be infected with an unwanted software.

     

    Variants of the Brontok worm include:

    W32/Lebreat-E
    W32/Lebreat-E
    W32/Brontok-E
    W32/Brontok-D
    W32/Brontok-E
    W32.Rontokbro.K@mm
    W32/Brontok-D
    W32/Brontok-G
    W32/Brontok-G
    W32/Brontok-J
    W32/Brontok-L
    W32/Brontok-L
    W32/Rontokbro.gen@MM
    W32/Brontok-G
    W32/Brontok-G

     

    By using Task Manager to Remove Worm.Brontok Processes

    1. To open the Windows Task Manager, use the combination of CTRL+ALT+DEL or CTRL+SHIFT+ESC.
    2. Click on the "Image Name" button to search for "Worm.Brontok" process by name.
    3. Select the "Worm.Brontok" process and click on the "End Process" button to kill it.
    4. Remove the "Worm.Brontok" processes files:

      EKSPLORASI.EXE
      BRONSTAB.EXE

    By Registry Editor to Remove Worm.Brontok Registry Values
    1. To open the Registry Editor, go to Start > Run > type regedit and then press the "OK" button.
    2. Locate and delete the entry or entries whose data value (in the rightmost column) is the spyware file(s) detected earlier.
    3. To delete "Worm.Brontok" value, right-click on it and select the "Delete" option.
    4. Locate and delete "Worm.Brontok" registry entries:

    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\Tok-cirrhatus

    Detect and Delete Other Worm.Brontok Files
    1. To open the Windows Command Prompt, go to Start > Run > type cmd and then press the "OK" button.
    2. Type in "dir /A name_of_the_folder" (for example, C:\Spyware-folder), which will display the folder's content even the hidden files.
    3. To change directory, type in "cd name_of_the_folder".
    4. Once you have the file you're looking for type in "del name_of_the_file".
    5. To delete a file in folder, type in "del name_of_the_file".
    6. To delete the entire folder, type in "rmdir /S name_of_the_folder".
    7. Select the "Worm.Brontok" process and click on the "End Process" button to kill it.
    8. Remove the "Worm.Brontok" processes files

    \Documents and Settings\{UserName}\Local Settings\Application Data\winlogon.exe.
    \Documents and Settings\{UserName}\Local Settings\Application Data\smss.exe,
    \Documents and Settings\{UserName}\Local Settings\Application Data\services.exe,
    \Documents and Settings\{UserName}\Local Settings\Application Data\lsass.exe,
    \Documents and Settings\{UserName}\Local Settings\Application Data\inetinfo.exe,
    \Documents and Settings\{UserName}\Local Settings\Application Data\csrss.exe,
    \Documents and Settings\{User Name}\Templates\WowTumpeh.com f�jl,
    \Documents and Settings\{User Name}\Start Menu\Programs\Startup\EMPTY.PIF,
    EKSPLORASI.EXE
    BRONSTAB.EXE
    Tok-Cirrhatus
    Tok-Cirrhatus-1761
    Tok-Cirrhatus-1860

    How do you remove brontok virus manually?  From Wiki Answers , Check here

     

    Found a lot of free removal tools  in net ,you can use to easily remove Brontok virus.
    1. CompactbyteAV

    2. GData Anti…Worm

    3. Sophos BRONTGUI

    4. Kaspersky Brontok Removal Tool

    5. BitDefender Brontok Removal Tool

    6. Download SpyHunter's Malware Scanner

    7. OgAV

    8. AntiBrontok

    9. BRONTSFX.EXE

    Read more...

    Saturday, January 24, 2009

    0

    How To Remove Any Malware Infection

  • Saturday, January 24, 2009
  • Runtrailblog
  • How To Remove Any Malware Infection. A Step-By-Step How To. Part 1

     

     

    How To Remove Any Malware Infection. A Step-By-Step How To. Part 2

     

     

    How To Remove Any Malware Infection. A Step-By-Step How To. Part 3

     

     

    How To Remove Any Malware Infection. A Step-By-Step How To. Part 4

     

     

    How To Remove Any Malware Infection. A Step-By-Step How To. Part 5

     

    Read more...

    Wednesday, January 14, 2009

    0

    How to Remove Antivirus 2009

  • Wednesday, January 14, 2009
  • Runtrailblog
  • Antivirus  2009 is a rogue anti-spyware application.It is is an updated version of Antivirus 2008. Antivirus 2009 is usually promoted via a ZLOB/MediaAccess Codec installer found on adult websites.It floods the user with popups and fake system notifications.The user might click on one of the popups or notifications, all of which claim they will take him to a legitimate security tool, but try to make him purchase Antivirus2009's "licensed version" instead. It    redirect web browser to antivirus-premium-scan.com, antivirus-best.com webscannertools.com, livesecurityinfo.com,antivirusonlivescan.com,bestantivirusscan.com

    secureclick1.com   or  premiumlivescan.com and websites that sell the malware.

     

    antivirus2009

     

     

    Symptoms

     

  • "Critical System Error",
  • "Your computer is infected",
  • Hijacked homepage to obscure webpage.
  • Flashing icons appear on your system tray (Near of your system clock).

     

    Manual Removal

     

    Search the following files and delete

    Antivirus2009.exe
    av2009.exe
    av2009[1].exe
    AV2009Install.exe
    Antivirus 2009.lnk
    Uninstall Antivirus.lnk

    1. Go to Start > Search > All Files or Folders.
    2. In the "All or part of the the file name" section, type in "Antivirus 2009" file name(s).
    3. For better results, select "Look in: Local Hard Drives" or "Look in: My Computer" and then click "Search" button

     

    Stop  Antivirus 2009 Processes

     

  • Click the Start menu, select Run.
  • Type taskmgr.exe into the the Run command box, and click “OK.” You can also launch the Task Manager by pressing keys ALT + CTRL + DELETE or CTRL + Shift + ESC.
  • Click Processes tab, and find Express Antivirus 2009 processes.
  • Once you’ve found the Express Antivirus 2009 processes, right-click them and select “End Process” to kill Express Antivirus 2009.

     

    Unregister and delete .dll files


    shlwapi.dll
    wininet.dll

     

  • Start” and then click on “Run
  • Now in the Run command box, type “cmd“, and then click on “OK
  • Type “regsvr32 /u filename.dll” where “filename” is the name of the file that you like to Unregister

    1-14-2009 6-22-53 AM

     

    Delete registry values:

    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\ CurrentVersion\Run\15358943642955870504508370025739
    HKEY_LOCAL_MACHINE\SOFTWARE\Antivirus
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\”Antivirus” = “%ProgramFiles%\Antivirus 2009\Antvrs.exe”
    HKEY_CURRENT_USER\Software\Antivirus

                                                                                                                                         Other programs to remove Antivirus 2009:

     

    Prevention

    • Keep your Windows Security up-to-date
    • Download and install a reliable anti-spyware software

    Related Posts

  • Read more...

    Your Links

    .

    Subscribe