Tuesday, May 27, 2008

Deleting toon super love virus ( bad1.exe, bad2.exe, bad3.exe msmsgs.exe )

Probably u r suffering from viruses in ur computer.. toonsuper love virus has following effects :
1. You can't see folder option in folder's tool menu.
2. You can't find search item in start button.
3. System.exe and task manager ( ctrl+alt+del) doesn't run in your computer.

Now how to remove it !!!! Here's the solution...

how to observe this virus (if has any choice u r infect)
1. click tools at the top of mycomputer but it not has "Folder Option"
2. press ctrl+alt+del it show "Task Manager has been disabled by your administrator"
3. can't use Find Tools (ctrl+F)
4. Start>Run> type regedit it show "Registry editing has been disible by your administrator"

how to solve it
1. download this file
http://www.geocities.com/toonsuperlove/xp_taskmgrenab.zip
http://www.geocities.com/toonsuperlove/folderopts.zip
http://www.geocities.com/toonsuperlove/regtools.zip
http://www.geocities.com/toonsuperlove/find.zip

2.save all of this text to your desktop (in txt or doc or handwrite is up to u because we will restart computer)

3.restart computer (before restart read buttom first)

*when restart type "f8" button and choose safe mode
(it will show to choose safe mode before windows xp screen ,, if it go to windows xp screen before restart again)
(if it show at the buttom of screen "Press esc to cancle blablabla~" ,, press ESC )
(when come in safe mode choose yes)

4.ok if u come to this step that mean u come in safe mode!

5.extract of file that u download

6.open xp_taskmgrenab.exe
- check in the enable box
- then apply
- now u can test ctrl+alt+del

7.double click find.vbs , folderopt.vbs and regtool.vbs one time (it will show enable if it show disable click it again)

8. Double Click at "My computer" at "Desktop" choose Tools > FolderOptions
- in "FolderOptions" choose tab "View"
- choose "Show hidden files and folders"- remove mark from "Hide extention…" and "Hide protected operating system file- choose OK

9. go to "C:\windows\" find
"autorun.inf" ,, delete it

10. go to "C:\windows\system32" find
"bad1.exe"
"bad2.exe"
"bad3.exe"
"system.exe"
"msmsgs.exe (this icon is a fade folder)" ,, delete it

11. Start>Run> type "regedit" and enter
- go to HKEY_LOCAL_MACHINE>SOFTWARE>MICROSOFT>WINDOWS>CURRENTVERSION>RUN
- delete bad1.exe bad2.exe bad3.exe system.exe and msmsgs.exe (virus "msmsgs" it will load from c:/windows/system32 not program file >,<)
- close

12. finsih!! now virus has been remove ^^ u can restart it again and use normally

** if u has any flash drive check it before use it maybe this virus infect **

how to check
please read slowly if it false u maybe do it again at the first step

1. put flash drive in to computer (don't open anything)

2. "right click not left" at F:(suppose this name is your flashdrive)

3. if it has a bold text "Autorun" that mean it has a virus

4. choose "open"

5. delete autorun.inf bad1.exe bad2.exe bad3.exe msmsgs.exe system.exe

6. finish (and do all of your flash drive)

now make folder option back

1. Double Click at "My computer" at "Desktop" choose Tools > FolderOptions

2. in "FolderOptions" choose tab "View"
1)choose "Do not show hidden files and folders" 2)choose mark from "Hide extention…" and "Hide protected operating system file 3)OK

3. Congratulation! if u come to this step so that mean u has finish and clean all of virus!

Now you are safe and done.. Hope it will help you.

Tuesday, May 6, 2008

Hii..

Certainly where randomly searching n clicking here n there.. I got this site.. wow.. I like it.. as it is alwyz my hobby to write something whenever i am free this obviously will support me.. besides that It will help me to be in touch with my frens.. wherever they are..

This is the new beginning of blog in another site than that blogger which i still use.. let's keep on blogging n share watever we cud..

All da best.. Chao..