Tuesday, March 25, 2008

Virus... virus.. At last I lost..

This time I'm beaten by Virus... W32.Sohanad.AR

I was helping my brother in law, try to clean the virus from his notebook. But after 3 hour of effort (install Avast Antivirus, update, and try to clean). I gave Up. The day after, I re-format the notebook and install windows and setup. Everything is fine. Until my brother in law ask me to clean the USB-Flashdisk that was also infected by virus.

I'm very confident to put the USB Flashdisk in my notebook and open it. My antivirus have warned that there's virus in the drive. And with very confident, I told my brother in law that, this is the virus... "Just don't click it, just delete it, it'll be fine"

But when I said those words, my hand just can't help to click it... :( The virus detected by antivirus, but it managed to copied to my notebook's harddisk. I managed to clean the USB-Flashdisk, and save the files in it. But I found out that my notebook is infected by the virus.

I tried to clean my notebook from the virus. I downloaded few software, "Spyware Doctor", Avast virus cleaner, and Hijakit. Also I read and follow forums that give solution for this matter. But... still cannot, because every time the virus deleted, it keep restoring to it's previous state. Even I used the save mode. It still managed to restore itself.

I learned that there's services.exe that virus created in C:\windows\ and C:\windows\system32\10312A\ But I cannot delete it because it's being used by system. I think I can delete it with command mode (dos mode). But I cannot enter that mode, it keep enter to the windows save mode (even I selected the command prompt only save mode).

Then I use the windows installation disc, and I entered the command prompt (ask me how if you're interested). I can delete services.exe in those 2 folders. But stupidly I also erase the c:\windows\system32\services.exe that is not virus but it's the windows thing (haha very stupid hah). Then, the windows just cannot boot again.

Again I can just copy the services.exe file from the installation disc, but I do a wrong thing again. I try to reinstall the windows. And ended with windows cannot load anymore.

And I end up with re-installing my notebook.... After 4 hours, my notebook back to normal... hahaha.. now my notebook works faster than before.. thanks to the virus... :)) that force me to format and reinstall my notebook..

Virus can sometimes helpful, can make you think, and analyze the problems and system. But virus also make you angry and lost control... While I fight the computer virus, I also fight with the real virus... it's the flu virus that make me do stupid things..

No comments: