Saturday, June 14, 2008

How to get rid of this Foolish Orkut Virus?

Orkut is banned you fool, The administrators didnt write this program guess who did?? MUHAHAHA!!

My computer was also once affected by this virus.Without knowing this solution,I have reinstalled my system a lot of times and got frustrated.I came to know about this solution only a couple of months ago.

Description about the Virus :

The name of the Virus is W32/AHKHeap.It spreads rapidly through use of USB pen drives.This virus creates a folder named HEAP in C drive of your system.This virus will even make a entry into your registry so that it can every time the system is started.The worm spreads via. removable drives.Infection starts either with manual execution of the binary or by navigating to folders containing infected files whereby the autorun.inf files can cause auto execution.

Instructions for removing the Virus :

  • Go to your task manager by pressing ctrl + alt + del and navigate to the process tab.
  • Now look for svchost.exe
  • You might find more than one of them.In order to recognize the real culprit,look for those who have username as your login name of the computer.
  • Select and choose end process option.
  • This will temporarily disable the virus.
Permanent Solution for the Virus :

  • Go to start and choose the run command.
  • Type C:\heap41a and enter.
  • It is a hidden folder,and is not visible by default.Delete all files in this folder(ctrl + a) and then(shift + del).
  • Now go to start and choose the Run command again.

  • Type regedit and hit enter.This will open the registry editor.
  • Press ctrl+f to open the search box and find "heap41a".
  • You will get something like - "[winlogon] C:\heap41a\svchost.exe" and "C:\heap(some number)\std.txt".
  • Select both of these results and delete.
  • Close the Registry editor.This will remove the virus completely.
Tips to avoid this virus :

You must scan the your pen drives regularly if you use them frequently on multiple computer systems.I would personally recommand to use Bitdefender (No.1 Antivirus of the year 2008).

No comments: