Your best source of information and news about microsoft, windows vista and windows on the internet

March 6th, 2009

You are currently browsing the articles from MS Windows Vista Compatible Software written on March 6th, 2009.

Manual Removal of W32/Ilomo.B Trojan

Manual Removal of W32/Ilomo.B Trojan
W32/Ilomo.B is a trojan. The trojan will infect Windows systems.
This trojan first appeared on March 6, 2009.
Other names of W32/Ilomo.B Trojan:
This trojan is also known as TROJ_ILOMO.B

Damage Level : Medium/High
Distribution Level:
Medium
No Removal Tool for W32/Ilomo.B Trojan
W32/Ilomo.B Trojan Manual Removal Instructions
Recommend Removal from Safe Mode:

How to Start in Safe mode:
Restart your Computer, Press F8 Repeatedly, when your Screen turns on, Select Safe mode, press enter.
The Infected Files Can be Seen in these folders and names also Running in Tasks
End the Following Active Process Before Removal
  • [ Kill the Process, Use Killbox if your Access Denied ]
Download W32/Ilomo.B Trojan Known File Removal Tool

[In Windows Vista Run As Administrator, After Execution System Will Restart]

  • %Documents and Settings\Default User\Application Data\dumpreport.exe
  • %Documents and Settings\Default User\Application Data\event.exe
  • %Documents and Settings\Default User\Application Data\helper.exe 
  • %Documents and Settings\Default User\Application Data\iexeca.exe
  • %Documents and Settings\Default User\Application Data\logon.exe
  • %Documents and Settings\Default User\Application Data\lsas.exe
  • %Documents and Settings\Default User\Application Data\rundll.exe
  • %Documents and Settings\Default User\Application Data\service.exe
  • %Documents and Settings\Default User\Application Data\sound.exe
  • %Documents and Settings\Default User\Application Data\svchosts.exe
    If you have any of these files in running process from task manger, end the process before removal.
    Note: if task manager is disabled, Download the following file, Click to Download - Enable Registry.reg [ Right Click - Save Target As/Linked Content As ]
    Open it with Regedit.exe [%system32\regedit.exe], then it Confirms Add to registry Yes or No, Confirm Yes, then click Ok.
W32/Ilomo.B Trojan Entries Manual Removal From Registry
Click Start, Run,Type regedit,Click OK.

Note: If the registry editor fails to open the threat may have modified the registry to prevent access to the registry editor.
  • Download this UnHookExec.inf, [ Right Click - Save Target As/Linked Content As ]
    and then continue with the removal. Save it to your Windows desktop. Do not run it at this time, download it only.
  • After booting into the Safe Mode or VGA Mode
  • Right-click the UnHookExec.inf file and click Install. [This is a small file. It does not display any notice or boxes when you run it.]
The W32/Ilomo.B Trojan modifies registry at the following locations to ensure its automatic execution at every system startup:

Delete The Entries
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Delete file entry from right side
Search Registry For W32/Ilomo.B Trojan File Names listed above to remove completely,
Edit Menu - Find
, enter Keyword and remove all value that find in search.

Exit the Registry Editor,
Restart your Computer.

Recommended Removal Tools:
Kaspersky Antivirus or Internet Security (Shareware)
Spyware Doctor (Shareware)
AVG Antivirus (Freeware)
Killbox (Freeware)
Ultimate Links PC Tips

Written by FireFly on March 6th, 2009 with no comments.
Read more articles on svchosts.exe and W32/Ilomo.B and manual removal and removal of trojan and otherSoftware and Windows XP.

Remove Ultimate Security Suite - Ultimate SecuritySuite Removal Instructions

Ultimate SecuritySuite is a latest and very dangerous rogue antispyware application created to steal money from simple-hearted computer users. Ultimate SecuritySuite in fact is a collection of “useful” rogues such as: Ultimate Cleaner, Ufixer, and System Defender.
Parasite is promoted through the use of Trojan horses that display fake security alerts while visiting certain web sites, and misleading advertisements pretending to be online anti malware scanners. In both cases you will be informed that your computer is infected and your data, privacy are in big danger. And in order to protect yourself you must purchase licensed version of Ultimate SecuritySuite.
Don’t fall in trap, remove Ultimate SecuritySuite as soon as possible manually or using automatical removal tool.

Type: Rogue Optimization Software
Malware Author: Unknown
Threat Level: Critical
Screenshot:
Ultimate Security Suite Automatical Removal Tool

How to remove Ultimate Security Suite manually:
It's possible to remove Ultimate Security Suite manually, but you have to be very experienced in dealing with registry entries, program files and .dll files.

The files to be deleted:

* %PROGRAM_FILES%\ asvrzxsl\ pfpfevtf.exe
* %PROGRAM_FILES%\ eliteprotector\ eliteprotector.exe
* %PROGRAM_FILES%\ iSecurity\ SystemDefender\ install.exe
* %PROGRAM_FILES%\ nctirqhe\ dctgzizy.dll
* %PROGRAM_FILES%\ s3f.exe
* %PROGRAM_FILES%\ seccenter\ scprot4.exe
* %PROGRAM_FILES%\ syscleaner\ com\ scsdelete.dll
* %PROGRAM_FILES%\ syscleaner\ syscleaner.exe
* %PROGRAM_FILES%\ systemdefender\ systemdefender.exe
* %PROGRAM_FILES%\ tmp11957265.exe
* %program_files%\ Ultimate Cleaner\ app.exe
* %program_files%\ Ultimate Cleaner\ com\ ucsecuredelete.dll
* %program_files%\ Ultimate Cleaner\ IeSafe.exe
* %program_files%\ Ultimate Cleaner\ UltimateCleaner.exe
* %program_files%\ Ultimate Fixer\ UltimateFixer.exe
* %PROGRAM_FILES%\ usoft\ usoft32.exe



Remove registry entries:

* HKEY_CURRENT_USER\Software\Ultimate SecuritySuite
* HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “Ultimate SecuritySuite”
* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Ultimate SecuritySuite


Please be careful because manual removal of Ultimate Security Suite may seriously damage operational system and sensitive data. Also there is a big possibility of incomplete removal, because some files could be hidden and program could re-install itself after you delete files and registry entries. So we strongly recommend you to use automatical removal tool.

Written by admin on March 6th, 2009 with no comments.
Read more articles on fake warnings and rogue antispyware and removal tool and cleaner and keylogger and AntiSpyware and spyware and antivirus and malware and otherSoftware and Adware and Privacy.

Introducing Sports Channel for Windows Media Center

Yesterday we announced a brand new offering for Windows Media Center users: Sports Channel. Sports Channel will be offered to Windows Vista Home Premium and Windows Vista Ultimate users as a new tile under “Sports” in Windows Media Center.

Sports Channel offers a variety of sports content from great sources CBSSports.com, Fox Sports, MSNBC.com and more. Content flowing through Sports Channel ranges from breaking sports news to interviews of your favorite players to the ability to track your fantasy sports teams.

Sports Channel is a great example of our continued investment in providing new and easier ways for people to find and access compelling content through Windows Media Center.

Instead of going through my own experience with Sports Channel, I’d like to call out Ian Dixon’s overview of Sports Channel here and Stuart’s screenshots of the Sports Channel experience here from The Digital Lifestyle.com (one of the best Windows Media Center sites on the web today).

For the best experience with Sports Channel in Windows Media Center, a broadband connection is highly recommended. Today, Sports Channel is currently available in the U.S. only.

I also recommend checking out MSNBC News in Windows Media Center (which I blogged about last October) – which is no longer in beta.

Digg This

Written by Brandon LeBlanc on March 6th, 2009 with no comments.
Read more articles on MSNBC News and Sports Channel and otherSoftware and Community and Announcement and Windows Media Center and Windows Vista.

Updated Compatible with Windows 7 Logo Program Documentation

Just saw this on Softpedia which discusses changes introduced in the Windows 7 Logo documentation. Specifically focusing on improving the compatibility of devices and applications for future versions of Windows.

Compatible with 7 logo 

“The Windows logo program for software products has advanced to the next level as Microsoft is cooking Windows 7. In order to help software developers tailor their software to the next version of Windows, Microsoft has published the Windows 7 Client Software Logo Program Documentation, which is available for download. The resources are designed to illustrate the technical requirements for Windows 7 Client Software Logo Program, but at the same time, in the documentation, Microsoft looks beyond Windows Vista's successor to Windows 8.”

A particularly important part of the documentation discusses hard code checks which is probably a downfall for numerous applications that were designed to run on Windows XP but failed when installation was attempted on Windows Vista:

Do not block installation or application launch based on OS version check

It is important that customers are not artificially blocked from installing or running their applications when there are no technical limitations. In general, if applications were written for Windows Vista or later releases, they should have no reason to check the OS version

Applications must not perform version checks for equality (== 5.1). If you need a specific feature, check whether the feature itself is available. If you need Windows XP, check for Windows XP or later (>= 5.1), This way, your detection code will continue to work on future versions of Windows. Driver installers and uninstall modules should never check the OS version.

Waivers will be considered for applications meeting the criteria below:

  • Applications that are delivered as one package that runs on Windows XP, Windows Vista, and Windows 7, and need to check the OS version to determine which components to install on a given operating system
  • Applications that check only the minimum version of the OS (during install only, not at runtime) by using only the approved API calls, and that properly list the minimum version requirement in the application manifest
  • Security applications (antivirus, firewall, etc.), system utilities (for example, defrag, backups, and diagnostics tools) that check.

Download here

Technorati tags: , , , , ,

Written by Teching It Easy: Windows Vista, Live & 7 on March 6th, 2009 with no comments.
Read more articles on otherSoftware and windows 7.

Manual Removal of W32/Popwin.CJM Trojan

Manual Removal of W32/Popwin.CJM Trojan
W32/Popwin.CJM is a trojan. The trojan will infect Windows systems.
This trojan first appeared on March 5, 2009.
Other names of W32/Popwin.CJM Trojan:
This trojan is also known as TROJ_ILOMO.B

Damage Level : Medium/High
Distribution Level:
Medium
No Removal Tool for W32/Popwin.CJM Trojan
W32/Popwin.CJM Trojan Manual Removal Instructions
Recommend Removal from Safe Mode:

How to Start in Safe mode:
Restart your Computer, Press F8 Repeatedly, when your Screen turns on, Select Safe mode, press enter.
The Infected Files Can be Seen in these folders and names also Running in Tasks
End the Following Active Process Before Removal
  • [ Kill the Process, Use Killbox if your Access Denied ]
Download W32/Popwin.CJM Trojan Known File Removal Tool

[In Windows Vista Run As Administrator, After Execution System Will Restart]

  • %Windows\System\6022.exe
  • %Windows\System\kbd101c.dll
  • %Windows\System\kbd103.dll
  • %Windows\System\kbd106.dll 
  • %Windows\System\kbdjpn.dll
  • %Windows\System\kbdkor.dll
  • %Windows\System\CB68.exe
  • %Windows\System\kbd101b.dll
  • %Windows\System\ppo.exe
  • %Windows\System\0010D.exe
  • %Documents and Settings\Default User\Local Settings\Temporary Internet Files\sh11enji[1].exe
    If you have any of these files in running process from task manger, end the process before removal.
    Note: if task manager is disabled, Download the following file, Click to Download - Enable Registry.reg [ Right Click - Save Target As/Linked Content As ]
    Open it with Regedit.exe [%system32\regedit.exe], then it Confirms Add to registry Yes or No, Confirm Yes, then click Ok.
W32/Popwin.CJM Trojan Entries Manual Removal From Registry
Click Start, Run,Type regedit,Click OK.

Note: If the registry editor fails to open the threat may have modified the registry to prevent access to the registry editor.
  • Download this UnHookExec.inf, [ Right Click - Save Target As/Linked Content As ]
    and then continue with the removal. Save it to your Windows desktop. Do not run it at this time, download it only.
  • After booting into the Safe Mode or VGA Mode
  • Right-click the UnHookExec.inf file and click Install. [This is a small file. It does not display any notice or boxes when you run it.]
The W32/Popwin.CJM Trojan modifies registry at the following locations to ensure its automatic execution at every system startup:

Delete The Entries
HKEY_USERS\S-1-5-21-XXXXXXXXXX-XXXXXXXXXX-XXXXXXXXX-XXXX\Software\Microsoft\Windows\CurrentVersion\Run
Delete file entry from right side
Search Registry For W32/Popwin.CJM Trojan File Names listed above to remove completely,
Edit Menu - Find
, enter Keyword and remove all value that find in search.

Exit the Registry Editor,
Restart your Computer.

Recommended Removal Tools:
Kaspersky Antivirus or Internet Security (Shareware)
Spyware Doctor (Shareware)
AVG Antivirus (Freeware)
Killbox (Freeware)
Ultimate Links PC Tips

Written by FireFly on March 6th, 2009 with no comments.
Read more articles on W32/Popwin.CJM and manual removal and removal of trojan and otherSoftware and Windows XP.

The Engineering Team makes Windows 7 even more Customizable

The Windows 7 folks discuss the decision to make certain programs and features optional. There has been a lot of talk about the recent discovery about Windows Internet Explorer 8 being an optional component in the leaked build 7048 discovered by Chris Holmes and Bryant of Aeroexperience.

image

Windows Internet Explorer 8, now optional 

In Windows 7 we are expanding the number of features you have control over in this regard, giving customers more control, flexibility and choice in managing the features available in this version of Windows.  In addition to the features that were already available to turn on or off in Windows Vista, we’ve added the following features to the list in Windows 7:

  • Windows Media Player
  • Windows Media Center
  • Windows DVD Maker
  • Internet Explorer 8
  • Windows Search
  • Handwriting Recognition (through the Tablet PC Components option)
  • Windows Gadget Platform
  • Fax and Scan
  • XPS Viewer and Services (including the Virtual Print Driver)

It is worth describing the details of “remove” since this too is a place where there are engineering and customer decisions to be made. We’ve already seen one decision which is to make sure we keep the features staged for future use so that a DVD is not required. A second decision is that we also continue to support the APIs available for features where these APIs are necessary to the functionality of Windows or where there are APIs that are used by developers that can be viewed as independent of the component. As many of you know these are often referred to as “dependencies” and with Windows the dependencies can run both internal to Windows and external for ISVs.

This brings up the question, how will Windows components and services in the past that have depended on IE work, such as Windows Update for instance? I personally don’t know if the OS doesn’t still require such a policy or Internet Explorer 8 in Windows 7 RC is just a hidden feature. What it suggest though is that Windows 7 is a more open platform to competing solutions that have come with the OS for years. Personally, I think its a good decision, in particular for the systems I plan on running Windows 7 on depending on the SKU I purchase. Do I want Windows 7 Professional on all my PC’s, yes, but do I really need all the features on all the PC’s, probably not. So the idea of having the user pick and choose is a great thing. I have Windows 7 Ultimate on a AMD Sempron, 512 MBs of RAM, a very bare bones system, personally, I use it for nothing more than Email, casual Web surfing and Backup, I don’t even have speakers connected to it, so in addition to reducing disk foot print by removing certain features like Media Center, XPS Viewer and Media Player, I can also improve the systems performance even more.

Windows Live Tags: Windows 7 , Turn Windows Features on or Off , Customization , Internet Explorer 8 , RC1 , Release Candidate , Engineering , Jack Mayo , API , Dependencies , Windows Live

Written by Teching It Easy: Windows Vista, Live & 7 on March 6th, 2009 with no comments.
Read more articles on 7 Journal and otherSoftware.

« Older articles

No newer articles