If you're already infected, try to do the following:
1)delete from C:\Windows\system32:
- winlog.exe
- boot.exe
2)delete from registry the following keys:
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
- HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run \Font
More informations can be found here: http://devirusare.com/2010/01/03/hi5update-exe-devirusare/ (for Romanian users, others can use Google Translate).
No comments:
Post a Comment