30 Mar 2009 | By Kristopher | Posted under Worms | No Comments »

Conficker.c is the latest version of the Conficker worm, which has infected tens of millions of PCs. Conficker.c locks you out of system directories, and blocks your access to security websites (Microsoft.com, Symantec.com, Mcafee.com, etc.) and applications (think Windows Automatic Update Service, Windows Security Center Service, Windows Defender Service (WinDefend), Windows Vista TCP/IP auto-tuning, and [...]

Keep reading »


17 Mar 2009 | By Kristopher | Posted under Worms | 1 Comment »

“U.Z.A. Operating System” Wallpaper screenshot“U.Z.A. Operating System” Wallpaper a symtpom of a worm, U.Z.A. O/S Eliminator. U.Z.A. O/S Eliminator is a worm that uses the autorun feature in windows to replicate itself on different computers via removable drives.

U.Z.A. O/S Eliminator changes your desktop wallpaper to a black graphic with white lettering reading “U.Z.A. Operating System,” and adds an icon next to the clock in the system tray. U.Z.A. O/S Eliminator blocks your access to task manager and adds what looks like a folder labeled My_Personal_Data to the root of your USB/removable drive. This folder is actually an executable file that simply hides behind a folder icon. With the autorun feature activated on your system, U.Z.A. O/S Eliminator then propagates itself into every computer it is attached to. Pretty nasty, huh?

Don’t despair. I’ll show you how to get rid of “U.Z.A. Operating System” Wallpaper for free.

Keep reading »


16 Mar 2009 | By Kristopher | Posted under Worms | Comments Off

U.Z.A. O/S Eliminator screenshotU.Z.A. O/S Eliminator is a worm that uses the autorun feature in windows to replicate itself on different computers via removable drives.

U.Z.A. O/S Eliminator changes your desktop wallpaper to a black graphic with white lettering reading “U.Z.A. Operating System,” and adds an icon next to the clock in the system tray. U.Z.A. O/S Eliminator blocks your access to task manager and adds what looks like a folder labeled My_Personal_Data to the root of your USB/removable drive. This folder is actually an executable file that simply hides behind a folder icon. With the autorun feature activated on your system, then propagates itself into every computer it is attached to. Pretty nasty, huh?

Don’t despair. I’ll show you how to get rid of U.Z.A. O/S Eliminator for free.

Keep reading »


11 Mar 2009 | By Kristopher | Posted under Worms | No Comments »

My_Personal_Data Folder screenshotMy_Personal_Data Folder a symptom of a worm, U.Z.A. O/S Eliminator. U.Z.A. O/S Eliminator is a worm that uses the autorun feature in windows to replicate itself on different computers via removable drives.

U.Z.A. O/S Eliminator changes your desktop wallpaper to a black graphic with white lettering reading “U.Z.A. Operating System,” and adds an icon next to the clock in the system tray. U.Z.A. O/S Eliminator blocks your access to task manager and adds what looks like a folder labeled My_Personal_Data to the root of your USB/removable drive. This folder is actually an executable file that simply hides behind a folder icon. With the autorun feature activated on your system, U.Z.A. O/S Eliminator then propagates itself into every computer it is attached to. Pretty nasty, huh?

Don’t despair. I’ll show you how to get rid of My_Personal_Data Folder for free.

Keep reading »


10 Mar 2009 | By Kristopher | Posted under Worms | No Comments »

LOL_Your_Dad_Smokes_Weed.gif is a Skype worm that spreads via messages from people on your contact list. You’ll get a message from a buddy, asking you if you want to download LOL_Your_Dad_Smokes_Weed.gif.

If you accepted LOL_Your_Dad_Smokes_Weed.gif, don’t open it. If you launch LOL_Your_Dad_Smokes_Weed.gif, you’ll start spreading LOL_Your_Dad_Smokes_Weed.gif to buddies on your contact list.

Don’t worry too much if you already opened LOL_Your_Dad_Smokes_Weed.gif — I’ll show you how to get rid of LOL_Your_Dad_Smokes_Weed.gif for free.

Keep reading »


20 Feb 2009 | By Kristopher | Posted under Worms | 2 Comments »

Conficker B++ is the latest version of the Conficker worm, which has infected tens of millions of PCs. Conficker B++ locks you out of system directories, and blocks your access to security websites and applications (think Windows Automatic Update Service, Windows Security Center Service, Windows Defender Service (WinDefend), Windows Vista TCP/IP auto-tuning, and more). To get creepy cozy in your PC and remain undetected, Conficker B++ deletes any System Restore points you’ve created.

What’s the point?

Conficker B++ wants to remain undetected, as Conficker B++ downloads more malware onto your computer, logs your keystrokes, and contacts ISPs to get directions from a hacker.

Unless your PC becoming part of a hacker’s network sounds like fun, let me show you how to get rid of Conficker B++ for free. But before you do anything else, learn how to prevent the spread of Conficker B++, by disabling Autorun.

Done? Now, try my free Conficker B++ removal instructions.

Keep reading »


16 Feb 2009 | By Kristopher | Posted under Worms | No Comments »

Win32/Taterf.B is a worm designed to steal passwords and usernames for popular online games. Oh, those fun-loving worm creators.

Win32/Taterf.B not only steals your personal information, but Win32/Taterf.B disables your system’s antivirus programs from Kaspersky and Rising.

Win32/Taterf.B has a few monikers, like Trojan.Lineage.Gen!Pac.3, PWS-Gamania.gen.a, and Mal/EncPk-CE.

No matter what Win32/Taterf.B is called, I’ll show you how to remove Win32/Taterf.B in a few easy steps.

Keep reading »


16 Feb 2009 | By Kristopher | Posted under Worms | No Comments »

Iksmas may sound sort of like “Christmas” — but it definitely won’t feel that nice, when you find out that all your friends and family have been infected through you, by the email worm Iksmas.

AKA Worm.iksmas and W32.Waledac, this Iksmas worm will spam itself to all of your contacts, as well as spreading to other computers that are connected to yours. Iksmas creates startup registry entries, produces outbound traffic, and generally makes itself a nuisance, slowing down your computer and internet.

Let me show you how to get rid of Iksmas for free.

Keep reading »


01 Feb 2009 | By Graham | Posted under Worms | 7 Comments »

I’ve just been infected by W32.Downadup.B — AKA Conficker — and have spent all night removing it, so now I’m going to share the quick way to remove W32.Downadup.B.

First, make sure you’re really infected with W32.Downadup.B. The surest sign is to go into My Computer and double-click your hard drive. If you get an error message about “RECYCLER\S,” then you’re infected with W32.Downadup.B.

There are a lot of sites out there showing you how to manually remove W32.Downadup.B/Conficker files. Most of the files listed have the word “[Random]” in them, meaning these W32.Downadup.B files could be named anything. Don’t bother trying to manually remove W32.Downadup.B with those instructions; you can waste a lot of time, and do more harm than good to your system.

To get rid of W32.Downadup.B, you have to use an antivirus/anti-spyware program; I just don’t see any other way around it.

Keep reading »


29 Jan 2009 | By Kristopher | Posted under Worms | 1 Comment »

W32.Downadup.B — AKA Conficker — is a worm that’s infected tens of millions of PCs. W32.Downadup.B locks you out of system directories, and blocks your access to security websites and applications, such as Windows Automatic Update Service, Windows Security Center Service, Windows Defender Service (WinDefend), Windows Vista TCP/IP auto-tuning, and more. To further hide its presence in your computer, W32.Downadup.B deletes any System Restore points you’ve created.

What’s the point?

W32.Downadup.B wants to remain undetected, as W32.Downadup.B downloads more malware onto your computer, contacts ISPs to get directions from a hacker, and places your computer in the W32.Downadup.B botnet.

Unless your PC becoming part of a hacker’s network sounds like fun, let me show you how to get rid of W32.Downadup.B for free. But before you do anything else, learn how to prevent the spread of W32.Downadup.B, by disabling Autorun.

Done? Now, try my free W32.Downadup.B removal instructions.

Keep reading »