i dnt hate mozilla! orkut is banned!!

India
April 20, 2008 5:52am CST
1. Press CTRL+ALT+DEL and go to the processes tab 2. Look for svchost.exe under the image name.There will be many but look for the ones which have your username under the username 3. Press DEL to kill these files.It will give you a warning, Press Yes 4. Repeat for more svchost.exe files with your username and repeat. Do not kill svchost.exe with system , local service or network service! 5. Now open My Computer 6. In the address bar, type C:\heap41a and press enter. It is a hidden folder, and is not visible by default. 7. Delete all the files here. 8. Now go to Start -- Run and type Regedit. 9. Go to the menu Edit -- Find 10. Type "heap41a" here and press enter You will get something like this "[winlogon] C:\heap41a\svchost.exe C:\heap(some number)\std.txt". 11. Select that and Press DEL.It will ask "Are you sure you wanna delete this value", click Yes 12. Now close the registry editor.
2 responses
@siriya (200)
• India
20 Apr 08
Lol you have told about it nicely, but you have not told how to see that hidden folder as trojan would have modified the registry and you cannot change in folder option. Someone has commented in one of my discussion on how to restore that modified registry
• India
20 Apr 08
i think i have told how to delete the entry made in the registry..didn't I... please correct me of m wrong..and please feel free to ask any problem you are facing in your computer...
@siriya (200)
• India
21 Apr 08
Ya you have told it in 5th step. But even after doing all these things you can not view any hidden folder even if you select show hidden in folder option. For that registry modification is required.
• India
21 Apr 08
oh k..but what i wanted to say is just delete the contents from that folder..and then delete the registry entries created by the virus in there..
@Esoteric1 (863)
• Canada
20 Apr 08
Why do we need to kill these processes? I seen them before but what are they? why do I need to remove them, are they harmful? Thanks for the info tho I'm not sure in what context it applies to.
@siriya (200)
• India
20 Apr 08
He is taking about the trojan which has a process name svchost.exe. There are about 4 ve 5 running which are all windows processes. Do not stop those your system will become unstable and will reboot.