How to Remove W32.Scrapkut

W32.Scrapkut is a computer spread through the Orkut social network. Systems are infected when a user clicks on a comment in the user's scrapbook. The user will be prompted to download a fake plug-in. The download is actually the worm. Once a system is infected, the W32.Scrapkut worm will attempt to stop anti-virus programs and leave comments in the scrapbooks of the user's contact list.


    Restore and Backup Registry in Windows XP

  1. Step 1

    Right-click "My Computer" and choose "Properties."

  2. Step 2

    Click the "System Restore" tab.

  3. Step 3

    Check the "Turn Off System Restore" option.

  4. Step 4

    Press "Apply" and then "Yes" to the "This Deletes All Existing Restore Points" prompt.

  5. Step 5

    Choose "OK" to finish disabling System Restore.

  6. Step 6

    Click "Start," "Run" and type regedit to open the registry window and backup your registry.

  7. Step 7

    Select "File" and choose "Export."

  8. Step 8

    Name the file and choose a save location.

  9. Step 9

    Mark "All" in the "Export Range" menu and click "Save" to save your backup.

  10. Restore and Backup Registry in Windows Vista

  11. Step 1

    Click the "Windows" button, right-click "Computer" and choose "Properties."

  12. Step 2

    Select "System Protection" in the "Tasks" menu.

  13. Step 3

    Uncheck "Local Disk," choose "Turn System Restore Off" and click "OK" in the "System Protection" window.

  14. Step 4

    Click the "Windows" button, type regedit in the search box and press "Enter" to open the registry window and backup your registry.

  15. Step 5

    Select "System Protection" in the "Tasks" menu.

  16. Step 6

    Select "File" and choose "Export."

  17. Step 7

    Name the file and choose a save location.

  18. Remove W32.Scrapkut on XP and Vista

  19. Step 1

    Open and update your anti-virus software.

  20. Step 2

    Restart your computer and press the "F8" key before the Windows logo appears. If you hit the key after the logo appears, your computer will start as normal and you'll have to restart again.

  21. Step 3

    Use the keyboard's arrow keys to navigate to "Safe Mode" and press "Enter."

  22. Step 4

    Open your anti-virus software, perform a full system scan and delete any infections.

  23. Step 5

    Run the registry editor.

  24. Step 6

    Click "HKEY_LOCAL_MACHINE" and choose "SYSTEM," "CurrentControlSet," "Services," and "Partizan" in the left window pane.

  25. Step 7

    Locate "Group" in the right window pane. Next to "Group" will read "Boot But Extender" in the "Data" column.

  26. Step 8

    Right-click "Group," select "Delete" and click "Yes" in the "Confirm Value Delete" window.

  27. Step 9

    Close the registry editor and restart the computer as normal.

  28. Step 10

    Open your anti-virus software and perform a full system scan. Delete any remaining infected files.

  29. Step 11

    Turn System Restore on.

0 comments:

Copyright © 2009 - TECHNOBOTS - is proudly powered by Blogger
Smashing Magazine - Design Disease - Blog and Web - Blogger Theme distributed by FREE Templates 4U