Page 1 of 2 12 LastLast
Results 1 to 10 of 12
  1. #1

    Default Help no Properties!!!


    Guys ngano kaha ni?
    Akong OS kay Windows Vista Ultimate.....

    • ang problema kay kung mo right click ko then click properties mo kuan "windows explorer has stopped working...."


    ngano kaha ni? Unsaon pag au?


    • Nga unsaon pag remove ani na file "pooh.vbs" feel nako virus ni siya

  2. #2

    Default Re: Help no Properties!!!

    try scanning ur computer with an effective anti virus!

  3. #3

    Default Re: Help no Properties!!!

    Like what man? Also remember na offline ni akong usa ka PC, la na connect sa internet.... So unsa na virus scanner ang free ug updated na daan para ni?

  4. #4

    Default Re: Help no Properties!!!

    nod32!

  5. #5

    Default Re: Help no Properties!!!

    found an article from kaspersky regarding that pooh.vbs thing you have in ur computer..
    if u can check this, it might help...
    http://forum.kaspersky.com/lofiversi...hp/t47622.html

  6. #6

    Default Re: Help no Properties!!!

    aikelyu.html

  7. #7

  8. #8

    Default Re: Help no Properties!!!

    Quote Originally Posted by rexdudev75
    Guys ngano kaha ni?
    Akong OS kay Windows Vista Ultimate.....

    • ang problema kay kung mo right click ko then click properties mo kuan "windows explorer has stopped working...."


    ngano kaha ni? Unsaon pag au?


    • Nga unsaon pag remove ani na file "pooh.vbs" feel nako virus ni siya
    check this out bro. ---> http://computertipsandeverything.blo...g-poohvbs.html

    mao na akoang gi buhat ana nga problema. Hope maka help na nimo.... :mrgreen: Good luck ni pooh.vbs....

  9. #9

    Default Re: Help no Properties!!!

    How to Remove Pooh.vbs and Nhatquanglan Worms


    I had recently encountered this on my PC at work so I decided that I will share to you the steps on how to eliminate this worm on your PC, especially to those who are using USB Flash Drives and Floppy Diskettes.

    The Nhatquanglan worm (usually together with the Pooh.vbs worm), slows down your PC and disables Windows Task Manager, Folder Options, Registry, Group Policy Editor, and the like. If you have this symptoms, there is a possibility that you are also infected by the Pooh.vbs worm.

    Symptoms taht you're PC is infected by the Nhatquanglan worm:

    1. This worm spreads by USB drives though it is possible that other portable media may be involved too.

    2. Inability to use Windows Task Manager, the Folder Options, Registry, etc.

    3. There is a crappy looking folder icon that is seen (with same name as the original folder), the file size of which is 282 kb.

    4. It makes the computer slow down, and no anti-virus as of now seems to catch hold of it.

    5. Inability to stop the USB drive from remove hardware safely option.

    7. Inability to format the USB drive.

    8. The worm is an autorun .exe file and executes and infects every time a USB drive is plugged in.


    Steps on how to remove the Nhatquanglan worm:

    1. Download HijackThis (free), and the Task Manager fix of the Interra Group (also free), and a program called Spybot Killer.

    2. Run the Hijack this (rename it first or it wont start), and fix all files with scvhost.exe (not svchost.exe), run spybot, and then task manager fix. This should cure it. As u learn more about viruses, hijack this is probably the most useful program to have.

    3. Reboot, and should run ok.


    Pooh.vbs or the W32/DKR worm, is a VisualBasic script that can be detected by some AntiVirus like Norton and McAfee. Pooh.vbs comes with an HTML file (the aikelyu.html) that opens on WIndows Log-on. It exploits the autorun feature in memorycards and copies itself to computers and connected memory cards thereafter. Because it does not spread itself to the internet, it hasn't gained enough notoreity to be included in virus defenses of various programs. Also clean your infected memory cards.

    The aikelyu.html file:



    Symptoms that you're PC is infected with Pooh.vbs
    1. You cannot open your Local Disk (C by clicking it your My Computer and there is a message alert box. If you also try to right-click it, you will notice that the first right-click option is Autoplay.

    2. When you're encoding something, let's say, on Microsoft Excel/Word, you will encounter some sort of URL (http://www.freewebtowns...) in the middle of your work... and it also disables some features on your Microsoft Excel or Word and the like.

    3. When you log - on to Windows, you will see the aikelyu.html file, located on C:\WINDOWS\system32\aikelyu.html.


    If you had created a restore point prior to the detection of your Pooh.vbs, you can have a system restore, and everything will be back to normal.

    Download Nod32 and use it to scan for files.

    So here are the steps that I had done to remove the Pooh.vbs worm:
    1. Reboot your PC and run your PC on SAFE MODE (press F9 during boot-up) and log-in as an Administrator.

    2. Also download StartUp ControlPanel. You will use this later. For more informations regarding StartUp Control Panel, go here

    3. Open Windows Task Manager ([Ctrl] + [Alt] - [Delete] or [Crtl] + [LShift] - [Esc] ) and go to the Processes tab.

    4. Terminate Wscipt.exe and Explorer.exe process.

    5. Open Command Prompt (open Run and type cmd)

    6. On the Command Prompt, type the following:
    del c:\pooh.vbs /f/s/q/a
    del d:\pooh.vbs /f/s/q/a (include your other drives and USB drives that have been infected)

    del c:\autorun.inf
    del d:\autorun.inf (include your other drives and USB drives that have been infected)

    del c:\windows\system32\kernell.dll.vbs

    del c:\aikelyu.html /f/s/q/a

    7. Now use the StartUp Control Panel you had just downloaded earlier to remove the aikelyu.html during Windows startup. Also, to check if that the aikelyu.html file has been deleted, open Microsoft Configuartion (open Run and type msconfig) and select the Startup tab and see if there is still the aikelyu.html with a check on it. If it is still there, uncheck it.

    8. Open the Run Dialog Box again and type regedit.

    9.
    Navigate through: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsNT\Cu rrentVersion\Winlogon on the left pane. After which, on the right pane, check the Shell string has a value of explorer.exe. The corrupted string value has a userinit=userinit.exe combined with explorer.exe, so delete it.

    10. To finally check that you had deleted pooh.vbs from your system, go to Control Panel - Folder Options. On the View tab, choose "Show hidden files", uncheck "Hide protected operating system files (Recommended)" and "Hide extensions for known file types". and press OK.

    11. Open Windows Explorer ( [Windows] - [E] ), and go to C:\ and find if the pooh.vbs file is still there. Go to C:\WINDOWS\system32 and check if the aikelyu.html file and kernell.dll.vbs file is still there. If they are still present, manually delete them and empty your Recycle Bin.

    12. Reboot your PC!

    That's all... Hope you can make it.

  10. #10

    Default Re: Help no Properties!!!

    :mrgreen:

  11.    Advertisement

Page 1 of 2 12 LastLast

Similar Threads

 
  1. Iphone 3G help.... no signal !
    By hdr in forum Gizmos & Gadgets (Old)
    Replies: 8
    Last Post: 09-24-2008, 11:54 AM
  2. HELP No more hope with Family
    By rishee in forum Family Matters
    Replies: 18
    Last Post: 08-20-2008, 11:15 PM
  3. HELP: NO NETWORK SIGNAL (n91 unit)
    By psyche54 in forum Gizmos & Gadgets (Old)
    Replies: 7
    Last Post: 05-17-2008, 07:34 PM
  4. Help!!! No Display on the monitor
    By cmac in forum Computer Hardware
    Replies: 13
    Last Post: 02-02-2008, 11:34 PM
  5. HELP! No Network Support for messages
    By k3nt in forum Gizmos & Gadgets (Old)
    Replies: 5
    Last Post: 07-15-2006, 04:16 PM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
about us
We are the first Cebu Online Media.

iSTORYA.NET is Cebu's Biggest, Southern Philippines' Most Active, and the Philippines' Strongest Online Community!
follow us
#top