CYbER bULLS

We are a bunch of friends ready to do anything.

So we decided why don't we give a try at blogging so here we are at the finest place for blogs.

Here you will find bULLS namely Suraj, Peter, Manu,Visal, Vishnu, Arunvishnu, Krishna Das, Aswin, Peter, Hari, Parthiv and Mahesh.
You will also find cOWS namely Reshma, Rameeza, Indu and Aswathy.

Monday, December 15, 2008

Win32 Sality Worm : Download Junkies Be Ware

Name:Worm.Sality
Threat Level:High
Description:Worm.Sality is a dangerous infection that infects executables and replicates itself over the network via known Windows vulnerabilities.
Type:TT_Worm
Removal:This infection can be removed using Spyware Doctor.

The effects of the virus is,
1.) Disables Task Manager
2.) Disables Registry Editor
3.) In folder options even if we do "Show hidden files" it automatically changes it into "Do not show hidden files"

The virus is better known as a Partition Virus i.e. it spreads across all the partitions of ur Hard disk...

No matter hw many time u format ur C drive the problem will reoccur.....

3 comments:

PARTHIV NARAYAN said...

Hey makku I think i have had this virus attack some months before... but i managed to escape... I don clearly remember wot i did...

I got some registry location where the prob is.. but the registry was blocked by virus... I formatted the windows drive... as soon as the comp loaded i switched it off... on reboot i loaded in safemode... installed the Zone alarm.. then i restarted the comp... just after a few minutes past the loading of windows, zone alarm gave a pop up requesting to edit registry.. it woz this virus.. I denied it.. I entered the regisry and did the patch.... Later in the registry I enabled the show super hidden... in the my computer i din't open drives by double clicking... doing so may call the autorun.. instead i choose explore from the right click... i saw a super hidden autorun exe file.. deleted all those..
Now ma comp is okay...
And hey, doing virus scan will never give a solution..

mahesmohan said...

@Paaru
u r lucky dude. If it stayed infected for some more days your PC might've got f*ked.

Currently there is no antivrus that can remove the threat.

the only soln after a major infection is repartiotioning ur system.

mahesmohan said...

btw wer is manu ???