I-worm/brontok.a Please Help Me Get Rid Of It

A Member? Please Login  
type your username and password to login
Date: July 26, 2008, 08:59 AM
223754 members and 127064 Topics
Latest Member: jeawodeen
Nairaland [Nigerian Forum] Home Help Search Who is currently online? Login Register
Nairaland Forum  |  Technology  |  Computers (Moderator: uspry1)  |  I-worm/brontok.a Please Help Me Get Rid Of It
Pages: (1) (2) Go Down Send this topic Notify of replies
Author Topic: I-worm/brontok.a Please Help Me Get Rid Of It  (Read 13343 views)
geebees
I-worm/brontok.a Please Help Me Get Rid Of It
« on: September 15, 2006, 11:17 AM »

How do i get this worm I-Worm/Brontok.A out of my system. It has refused my windows to come on as it keeps rebooting.

Also is there a way i can l;og into the internet in safe mode.If possible. Setps please.
Chxta (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #1 on: September 15, 2006, 01:10 PM »

Open your registry editor, find the signature (brontok) in your registry, and delete it without backing up. This should be done in safe mode.
Saddam
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #2 on: September 17, 2006, 02:36 AM »

Omo that Brontok.A can only go if u can update your norton antivirus withthe latest virusupdate/defination.


Or else

Wipe your Harddisk and load a fresh OS
thimbook2 (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #3 on: September 25, 2006, 08:59 PM »

get Avira Classic antivirus or better still mcafee 2007. after cleaning up, you'll need to create a new account that u will be using because brontok.A would have damaged your current account so much it won't work fine.
Romulus
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #4 on: October 05, 2006, 01:43 PM »

You're even lucky you got Brontok A and not Brontok C. Get an up-to-date version of A.V.G or AntiVir and in minutes, you'll be smiling back.
Good Luck!!!!!!!!!!!
Cry Cry Cry Cry Cry Cry Cry Cry Cry
Ppenguin
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #5 on: October 08, 2006, 12:35 PM »

I have Brontok.C infection and it is proving stubborn to get rid of. I have latest AVG update. Any suggestions on how to get rid of the virus permanantely. Thanks
Cactus (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #6 on: October 08, 2006, 01:56 PM »

Never ever reformat your computer just because you cannot remove something.  until you have done all the possible options

get avg, virus and spyware do an online update, if the software tells you it has found something do not do anything close the window.

boot into safe mode F8 could be different on some system find out

run avg virus scan and spyware scan. and definitely make sure you do not have any other windows opened.

that should definitely take care of the problems. when scanning is done and u boot into windows and still having problems.

go back into safe mode and go through your registry to manually remove the entries that are causing problems. just be careful not to screw up your system.

that should restore your system definitely.

if that doesnt work well tough luck you can then start thinking about backing up vital info then reformatting LOL.

i have add several backdoor attacks on my systems

i am running, avg virus, avg spyware, norton, zone alarm, blackice

you can get those especially avg virus software and zone alarm, those are real good norton sucks.

but u just have to know how to configure them to work properly else they will be blocking some access to website. good luck

Cactus (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #7 on: October 08, 2006, 01:57 PM »

if you are also using a wireless network just to make your network safer,

turn off ssid broadcast,

change the default ip address of the router

use a 128bit wep key open system not shared access key (with shared access key some can easily get on your network. open system is a little difficult)

disabled autmatic dhcp and only configure for the number of systems u need.
use MAC address filtering

limit the ip addressing range to the number of computers instead of automatic. and on each computer manually configure the ip and gateway addresses not automatic.



if anyone is still paranoid about their computer security spyware virus trojans and still wants windows based applications then the next step will be to switch over to a linux distro and install WINE. Look up info on Linux WINE project that allows you to run windows based application on linux boxes, visual studio microsoft office etc.


those steps are basic for home security setup. though someone can still definitely get onto your network, and possible crack your wep key. it will only take a longer time and they will find it more difficult to do just hope you are not living near someone crazy enough and desperate. if you want to go hardcore, then u will need to setup up a hardware installation of firewalls virus systems and data encryptions crap



good luck
beamz (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #8 on: October 12, 2006, 05:05 PM »

Could somebody help me with AVG 2007, BRONTOK C virus is grilling my system to hell.  HELP please HELP. My e.mail adress is beamz2003@yahoo.com. God bless ya
aeroseeker
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #9 on: October 20, 2006, 12:59 AM »

Quote from: beamz on October 12, 2006, 05:05 PM
Could somebody help me with AVG 2007, BRONTOK C virus is grilling my system to hell. HELP please HELP. My e.mail adress is beamz2003@yahoo.com. God bless ya

Hey beamz, try this virus/worm removal tool. Link. It did help me last time. I think it's capable of removing all brontok variant.

Or if you actually have the sample of an infected file, I suggest you run this tool. Link. This tool is capable to remove all brontok infected files in multiple paths in your system including running system process.

Hope it helps. Smiley
ajiboyet (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #10 on: October 27, 2006, 09:56 PM »

If you understand the brontok worm, you'll understand that you CAN NOT open your registry editor while you have the brontok worm on your system

Brontok automatically reboots when it detects a window whose title contains "Registry" and many other strings. So even if you google "Registry" and it appears as the title of a window, it restarts. To see the full virus effects, go to symantec.com and in the search box just type "Brontok" then when the page loads click on the link that says something ",  Technical, " (I've forgotten it.)

I just cleaned Brontok A from my computer yesterday, and I tell you, God knows how many antivirus programs I tried. It's very stubborn. Go search for NOD32, it'll get you going.

Good luck
13-Year-Old Tayo
Chxta (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #11 on: October 27, 2006, 10:40 PM »

Use Regseeker to edit the registry.
ajiboyet (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #12 on: October 28, 2006, 01:44 PM »

nice one, chxta.
but where is this regseeker?
Jalal (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #13 on: October 28, 2006, 08:39 PM »

Brontok, thats one slimy worm Grin Grin Grin
Anyways i got rid of mine by using Ewido-antispyware, this super software also acts as a Trojan, adware/spyware/malware ass kicker Cool Cool Cool Cool
zPixel (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #14 on: October 31, 2006, 02:05 AM »

Try using bitdefender, its an anti-virus although it consumes memory but it very good. Search google you'll find it.
felidae
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #15 on: November 03, 2006, 08:56 PM »

My Laptop is also infected with Brontok.A

I have tried all the removal tools mentioned in this thread and also several others but I can't get rid fo this worm!

@ajiboyet: How did you succeed with NOD32? I have also downloaded it and it has detected some tracking cookies but that's all.     , Huh

@ Jalal: Also no success with Ewido-antispyware.

@ zPixel: the same with bitdefender,

All that these removal tools manage to do on my computer is to detect some infected files and delete them but the virus keeps coming back, I guess it reboots itself. So as long as not ALL files belonging to brontok.a (especially in the registry, ) are deleted, I think one can never really get rid of the worm. Unfortunately I don't know how to do that. Especially as my Laptop won't allow me to start in safe mode,

Can anyone give me some advice?

thank you
Taysay (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #16 on: November 04, 2006, 11:38 AM »

Yeah good day all,
good ta hia from u all though its quite sad Brontox is trying to kill your joy, though Brontok is very stubborn, it can be taken car eof effectivley by Kaspersky anti virus 6.0. at times it appears it is even multiplying when you are trying to get rid of it but the like I said never mind kaspersky will take kia of it. please please please never never ever  reformat your system b'because of this. if u don't know whia to get this kaspersky please let me know your location, if you are inlagos then i know a firend Mimoh_mo who will be too willing to get u a copy on Cd  u can reach him on 01 8972759  my own nos is 08055088001, 08036533888. thanx so get ready to  laugh last . tak e kia have a good one
ajiboyet (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #17 on: November 04, 2006, 02:33 PM »

I found NOD32 very effective
It added a menu to outlook, and scans all my messages.
Gamine (f)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #18 on: November 06, 2006, 12:07 PM »

           @Ajiboyet
             why the i'm 13 trumpet
             u give me the feelin that you are a
          lonely child who is geeky with no friends
             and you turn to computers for solace.
aeroseeker
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #19 on: November 09, 2006, 04:53 PM »

Try CAV Antivirus is very effective against all brontok variant and many others unpopular viruses/worms. Download here. This software is cool and it's free.
mekoyo (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #20 on: February 11, 2007, 03:59 PM »

Install Avast Anti Virus man.
gidig (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #21 on: February 14, 2007, 07:10 PM »

I have a very terrible experience with that virus but I found avast to be very helpful.I am not too sure the version I had but it replicates folders in My document. Avast will prove to be useful.
sammyjl (f)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #22 on: February 22, 2007, 02:25 PM »

 Shocked I also have that brontok on my laptop. Its a problem.
marhoatumu (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #23 on: February 22, 2007, 03:36 PM »

instead of looking for this antivirus or that antivirus, just get a virus removal tool specifically designed for that virus or worm or whatever. they are not hard to find, just search the usual antivirus websites or use google.  you should come up with one that will totally remove the problem and reverse its effects
anusule (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #24 on: May 17, 2007, 10:54 PM »

try to back-up your pc, format it next, re-install GENUINE XP OR VISTA. simple
terwizzy (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #25 on: June 25, 2007, 02:07 PM »

I have had several brontok attacks but right now i've been able to get rid of it permanently.


Currently I  use Sophos Anti Virus. If you can get hold of it, then u can configure it from the configure menu to automatically delete every instance of brontok on your system. that way you never have brontok. if u still can't lay your hands on sophos AVG also does a good job and u can get a free version off the internet.

Also make sure you are careful with flash drives. they are the chief carriers of the virus
mhysaint15
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #26 on: August 05, 2007, 11:37 AM »

I can't get rid of brontok becaze i can't download anti virus because when ever i do download it reboots my PC what should i do,  is thers anyway to get rid of it without reformating my PC? plz help me
Ralvy (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #27 on: August 05, 2007, 04:04 PM »

Here's a final method tu get rid of that crazy annoying brontok shit*
Wether it is brontok.a, brontok.b, brontok.c, brontok w, m, q, k, - Read and use this method*

We'll start like this; I am sure that registry editing, task manager, group policy is not accessible, and it shows a message that it has been disbale by your administrator.

Instead of  downloading softwares tu restore some things, I have uploaded a simple tool that will restore everything that brontok has disabled, find attached - "nerve.exe"

After you have suceeded in gaining back all administrator previlages, we can tackle the virus*

Lets get Brontok out for good*
Download any brontok cleaner of your choice from the links below;

CompactbyteAV   -                       http://www.compactbyte.com/cav/cav-0.91-package.zip
Gdata anit-worm   -                      http://www.gdata.pl/~szczepionki/eng/download/remover.exe
Sophos BronGUI    -                       http://www.sophos.com/support/cleaners/brontgui.com
Kapersky Brontok Removal tool   -   http://dnl-eu5.kaspersky-labs.com/utils/klwk/klwk.zip
BITdefender Brontok removal tool-  http://download.bitdefender.com/resources/files/Download/en/AntiBrontokA-en.exe
Brontok washer  -                           http://jeruk.padinet.com/~ertanto/software/bw-beta.zip

OGAV  -                                           http://www.ognizer.net/index.php?option=com_remository&Itemid=28&func=download&id=25&chk=8a6c519ae8d28ae9223da8b2c16fc86d

Choose to run either one to clean Brontok virus from your system. If you have the time, you can run all of them but not at the same time. Do it one by one just to be 100% sure that Brontok virus is completely removed.

A virus can make changes to your registry so that it can automatically run when u execute a file.Imagine, the virus will be loaded each time you run an executable (EXE) or a batch (BAT) file. Just last week I was cleaning a computer that was infected by Brontok. After finished scanning, cleaning the virus and restoring the changes made by virus, the Symantec Antivirus Corporate Edition still pops up notification stating that Brontok virus is found and automatically deleted. This happens EVERY TIME I run an executable file.
Thats what we are going tu be stopping here*

This happens when a virus change one or more of the shell\open\command keys. If these keys are changed, the worm or Trojan will run each time that you run certain files. I've done a test by adding Notepad.exe path in \exefile\shell\open\command key. Then I tried running any EXE file, it will launch the EXE file with notepad! For Brontok virus, it loads a backdoor file called "shell.exe". You won't even notice anything abnormal when you run an EXE file.

See Image below*

Thanks to Symantec Security Response for creating a script that is able to easily reset these registry values to their default settings.

The script contains:

[Version]
Signature="$Chicago$"
Provider=Symantec

[DefaultInstall]
AddReg=UnhookRegKey

[UnhookRegKey]
HKLM, Software\CLASSES\batfile\shell\open\command,,,"""%1"" %*"
HKLM, Software\CLASSES\comfile\shell\open\command,,,"""%1"" %*"
HKLM, Software\CLASSES\exefile\shell\open\command,,,"""%1"" %*"
HKLM, Software\CLASSES\piffile\shell\open\command,,,"""%1"" %*"
HKLM, Software\CLASSES\regfile\shell\open\command,,,"regedit.exe ""%1"""
HKLM, Software\CLASSES\scrfile\shell\open\command,,,"""%1"" %*"
HKCU, Software\Microsoft\Windows\CurrentVersion\Policies\System,DisableRegistryTools,0x00000020,0

Of all the shell\open\command keys, the exefile key is being used most frequently. When your computer starts, it loads a lot of EXE files. When you start a program, it also loads EXE file. The rest are seldom used unless you're a power user. To be on the safe side, it's better for Symantec to restore all of the shell\open\keys to default values.

Instructions to install the script:
1. Download the script at the end of this post by right-clicking on the link and save it to your desktop.
2. Right-click on the file and select "install"

You can download the script file from here, the file has an ".inf" extension;
Use this link;

http://securityresponse.symantec.com/avcenter/UnHookExec.inf

A great tool to carry around with me all the time to combat against nasty virus such as Brontok.
See "image 2" below


nerve.exe
* nerve.exe (49.27 KB - downloaded )

* image2.png (1.9 KB, 233x107 )

* registry.png (3.23 KB, 400x240 )
macandpoy
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #28 on: August 13, 2007, 04:32 AM »

is this instruction applicable for windows server 2003? if not, please send me guide to get rid of this brontok virus.
macandpoy
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #29 on: August 13, 2007, 11:31 AM »

please help, mine is windows server 2003, how to get rid of brontok.CI
Ralvy (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #30 on: August 13, 2007, 04:45 PM »

yh! sure its applicable to users runnig Windows Server 2003, just follow the instructions.
Good Luck Cheesy
Johnnoo (m)
Re: I-worm/brontok.a Please Help Me Get Rid Of It
« #31 on: August 13, 2007, 08:18 PM »

use antivir classic edition. the repair your operating system without cancelling your window files.

goodluck
 Best Home Internet Service In Nigeria?  Formatting My Ipod Shuffle (Apple 1Gb Drive)  Linux or Windows Operating System?  Page 2
Pages: (1) (2) Go Up Send Topic to Friend by E-mail Reply 
Google
 
Web www.nairaland.com
Sections: TV/Movies (2) Music/Radio (2) Celebrities Jobs (2) Career Romance Books Politics Sports Fashion Travel
Health Schooling Religion General(2) Business Webmaster Programming Computers Phones Cars & Trucks

Links: Page1 Page2 Page3 Page4 Page5 Page6 Page7 Page8 Page9 Page10

Nairaland is owned by Oluwaseun Osewa
Nairaland Forum | Powered by SMF 1.0.12.
© 2001-2005, Lewis Media. All Rights Reserved.