Help - Search - Members - Calendar
Full Version: Readme.eml ?
HulChul.NET > HulChul IT Corner > Software & Hardware
Bore Na Kar
Can anybody here tell me about this virus !!!!
readme.eml

and what is its solution if it comes in ur computer.
IrrAtionaL MethanE
Kaspersky AntiVirus
Deewani Murshad Dee
u can also use macafee 8.0i enterprise
Bore Na Kar
Ab to computer infected ho chuka hy, kya phir b ye iss virus ka safaya ho jaye ga? readme.eml ki sub files delete kerta hon to jab computer restart hota hai to dobara se wo files bun jati hyn :(
Windows install kiye do teen din hi huay thay iss liye abhi antivirus install nahi keya tha :p

Kaspersky ya mcafee ka registered version agar aap mein se koi share kar sakay to new post mein kar de, balkeh ek post aisi banayi jaaye jis mein tamaam mashoor antivirus k registered versions k download links diye gaye hon to it will b v v useful for a long time smile.gif
IrrAtionaL MethanE
files dobara create ho jati hai is k 2 reasons hain
1: is virus nay aap k startup mai entries kr di hai (wo startup nahi jo folder hota hai .. system/registry startup)
2: is folder nay registry mai entry ki hai .. (HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\RUN) shayed yaha aap ko is ki entry mil jaye.

you can search across the forum to find the kaspersky post. Though it has not been updated but it contains latest version with EXPIRED KEYS.

There can be one option. you can email me your mail id for kaspersky antivirus. and i'll reply you (recomended GMAIL)

aik chez aur .. do mention k aap ko KIS (Kaspersky Internet Security) chahiye ya KAV (Kaspersky Antivirus).

KIS mai AV b hota hai + extra functionalities if you are addicted to internet/lan.
KAV mai AV k features hotay ahin .. recomended for slow PC's
Gn0m3r.X
Its W32/Nimda.eml - Malware and can be removed by using any decent antivirus.
sarfaraz khan
QUOTE(Loner Tech @ Oct 22 2007, 05:13 PM) [snapback]2539446[/snapback]
Its W32/Nimda.eml - Malware and can be removed by using any decent antivirus.

Its nothing bt W32/Nimda@mm malware jo ki rontokbro@mm ke tarah mass mailing malware hai jise app jitna delete karoge wah utna hi multiply hote rahega
ise nikalne ka best option hai pc ko safe mode me dos scan kar le
yaha se
http://www.mcafee.com/apps/downloads/secur...ment=enterprise
superdats per click kar ke waha se sdat5151.exe file download kar ke ek naye folder me save kar le (yah file daily update hote hai to is wajah se iska Number hamesha change hote rahta hai ,or is file ko desktop per na save karke d:drive me save kare to behtar hai )
file save karne ke baad pc restart karle or F8 press kare waha
boot menu se savemode with command prompt select karke enter mar de
jab app ka boot ho jaye to jis folder me app ne use file ko save kiya hai us folder me jaye
or waha yah command de <filename> /e (fr eg:- d:\scan>sdat5151 /e)
iske baad us folder me kuch 19 ya 21 file extarct hojayegi

file extract hone ke baad commande de scan /adl/clean/all/del (fr eg:- d:\scan>scan /adl/clean/all/del)
adl=all local drive
clean=clean all foundvirus
all=scan all file including system & hidden file
del =delete all the file found to be infected
fir 1-2 ghante app kahi ja kar ghum gham ker ajaye cheerleader.gif
yah virus nikalne ka best tariqa hai kyu ki agar ap normal mode me scan karte ho use waqt app ke saare system file or driver file chalu rahte hai us waqt sayad yah virus pure tarah delete na ho bt jab app safe mode with command promt me scan kartee hai us waqt app ke jyadatar system file or driver band rahte hai jis wajah se virus pure tarah se clean hojaata hai

ek baar scan hojane ke baad use ek dubaar ek baar scan kar le apne tasali ke liye ki virus pure tarah clean hua hai ya nahi

haan or ek baat virus scan karke delete karte waqt yah app ko .exe file delte karte hue dikhayega isme darne ki koi bat nahi kyu ki yah app ke koi bhi system file nahi delete karega
sarfaraz khan
QUOTE(Loner Tech @ Oct 22 2007, 05:13 PM) [snapback]2539446[/snapback]
Its W32/Nimda.eml - Malware and can be removed by using any decent antivirus.

Its nothing bt W32/Nimda@mm malware jo ki rontokbro@mm ke tarah mass mailing malware hai jise app jitna delete karoge wah utna hi multiply hote rahega
ise nikalne ka best option hai pc ko safe mode me dos scan kar le
yaha se
http://www.mcafee.com/apps/downloads/secur...ment=enterprise
superdats per click kar ke waha se sdat5151.exe file download kar ke ek naye folder me save kar le (yah file daily update hote hai to is wajah se iska Number hamesha change hote rahta hai ,or is file ko desktop per na save karke d:drive me save kare to behtar hai )
file save karne ke baad pc restart karle or F8 press kare waha
boot menu se savemode with command prompt select karke enter mar de
jab app ka boot ho jaye to jis folder me app ne use file ko save kiya hai us folder me jaye
or waha yah command de <filename> /e (fr eg:- d:\scan>sdat5151 /e)
iske baad us folder me kuch 19 ya 21 file extarct hojayegi

file extract hone ke baad commande de scan /adl/clean/all/del (fr eg:- d:\scan>scan /adl/clean/all/del)
adl=all local drive
clean=clean all foundvirus
all=scan all file including system & hidden file
del =delete all the file found to be infected
fir 1-2 ghante app kahi ja kar ghum gham ker ajaye cheerleader.gif
yah virus nikalne ka best tariqa hai kyu ki agar ap normal mode me scan karte ho use waqt app ke saare system file or driver file chalu rahte hai us waqt sayad yah virus pure tarah delete na ho bt jab app safe mode with command promt me scan kartee hai us waqt app ke jyadatar system file or driver band rahte hai jis wajah se virus pure tarah se clean hojaata hai

ek baar scan hojane ke baad use ek dubaar ek baar scan kar le apne tasali ke liye ki virus pure tarah clean hua hai ya nahi

haan or ek baat virus scan karke delete karte waqt yah app ko .exe file delte karte hue dikhayega isme darne ki koi bat nahi kyu ki yah app ke koi bhi system file nahi delete karega
Bore Na Kar
bouhat bouhat thanx, main kar k batata hon smile.gif
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2008 Invision Power Services, Inc.