Declare it GLOBAL

Loading...

Search! HigherThanGetche!

Sunday, September 6, 2009

Anti-Virus Do It Yourself: removing BRONTOK

This guide is about removing the BRONTOK - trojan virus. It's quite easy, you just have to focus! This annoying virus, prevents users from accessing RegEdit, and folder options.

1. Restart your computer, and log in to 'safe mode'.
2. Go to command prompt, and type the following commands to ENABLE REGEDIT:
reg delete HKCU\software\microsoft\windows\currentversion\policies\system /v "DisableRegistryTools"

and run HKLM\software\microsoft\windows\currentversion\policies\system /v "DisableRegistryTools"
3. Once you have typed these commands, you will be able to access RegEdit.
4. Still in command prompt, type EXPLORER
5. Press (window) + R or simply go to start, and press RUN and type regedit.
6. Go to this path:
HKLM\Software\Microsoft\Windows\Currentversion\Run

7. On the right side delete the entries which contain 'Brontok' and 'Tok-' words.
8. Then, for you to be able to enable FOLDER OPTIONS, go to this path:

HKCU\Software\Microsoft\Windows\Currentversion\Policies\Explorer\ 'NoFolderOption'

9. Delete this entry and restart your computer.
10. Search all *.exe files in all drives (search in hidden files also), these exe files look like folder icons, but they're not. Be careful, only delete those exe files that pretend to be folder files.

0 comments:

Post a Comment