Tuesday, July 27, 2010

The Da Vinci Code Digital Edition! Save Confidential file into PictureThe Da Vinci Code Digital Edition! Save Confidential file into Picture

After taking a closer look to an ordinary image files, I found out that the size of the file is so large, 10MB! The resolution of the image is 1024x768 and 24bit colors, taking about 500kb the most. Why the image so big? Let me open the Da Vinci Code now. In fact, there is a hidden file in the image itself.The creator compresses the file into zip or rar format and then save the compressed file into the image file through some special ways. The image file are viewed as a normal image file through most of the image viewing software. Moreover, digital camera nowadays can produce image files with very high resolution and the size of the image file is big too. This will make the hidden file in the image file hardly to be identified by others.

There is a small tool called Jpg+FileBinder 1.0 which can help us to save any file into a jpeg image file.

With this small tool, we can bind or merge any compressed files(WinRar, WinZip, 7Zip,etc) with an ordinary JPEG image file, making it look like any other JPEG image file but in actual fact contains all our secret files.

Other people will only see it as an ordinary JPEG image but when we open it with a compression tool like WInRar, WInZIp, 7Zip, etc; you'll see the secret files. Hide any file, be it a secret note, a secret picture, a secret song, or anything else you can think of. Sneaky!


IMPORTANT: Please take note that this tool will not encrypt or secure your files and other users can also access the files like you if they are aware of the method. It is advisable that you encrypt the compressed file before binding for enhanced security.

How to selectively disable specific Autorun featuresHow to selectively disable specific Autorun features

How to selectively disable specific Autorun features
To selectively disable specific Autorun features, you can either use Autorun Settings or you must change the NoDriveTypeAutoRun entry in one of the following registry key subkeys:

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\policies\Explorer\

The following values shows the settings for the NoDriveTypeAutoRun registry entry.

ValueMeaning
0x1 or 0x80Disables AutoRun on drives of unknown type
0x4Disables AutoRun on removable drives
0x8Disables AutoRun on fixed drives
0x10Disables AutoRun on network drives
0x20Disables AutoRun on CD-ROM drives
0x40Disables AutoRun on RAM disks
0xFFDisables AutoRun on all kinds of drives


The value of the NoDriveTypeAutoRun registry entry determines which drive or drives the Autorun functionality will be disabled for. For example, if you want to disable Autorun for network drives only, you must set the value of NoDriveTypeAutoRun registry entry to 0x10.

If you want to disable Autorun for multiple drives, you must add the corresponding hexadecimal values to the 0x10 value. For example, if you want to disable Autorun for removable drives and for network drives, you must add 0x4 and 0x10, which is the mathematical addition of 2 hexadecimal values, to determine the value to use. 0x4 + 0x10 = 0x14. Therefore, in this example, you would set the value of the NoDriveTypeAutoRun entry to 0x14.

The default value for the NoDriveTypeAutoRun registry entry varies for different Windows-based operating systems:

Operating systemDefault value
Windows Server 2008 and Windows Vista0x91
Windows Server 20030x95
Windows XP0x91
Windows 20000x95
Saturday, July 24, 2010

Antivirus 2010 Security Center Removal GuideAntivirus 2010 Security Center Removal Guide

Antivirus 2010 Security Center Removal Guide
Antivirus 2010 Security Center is a fake antivirus program created to urge the user to buy the full version of Antivirus 2010 Security Center in order to earn some profit. Don't ever buy it as it is a cheat! Antivirus 2010 Security Center install itself into the computer without confirmation of the users and it start automatically when the windows boot. Antivirus 2010 Security Center produce fake virus warning alert consistently to force the user to purchase the full version so that to remove the malwares.

Antivirus 2010 Security Center states that "PC is threatened! [Trial license, You need check your PC!] Please click to scan your computer". It claims that it protect your computer against malicious program and unauthorized access and provides security access to the network. It is a lie. Don't believe it.

Antivirus 2010 Security Center should be removed immediately!

Antivirus 2010 Security Center Removal Guide
Delete Registry
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Antivirus 2010 Security Centre
HKEY_CURRENT_USER\Software\Antivirus 2010 Security Centre
HKEY_CLASSES_ROOT\Interface\{35c95ec8-f789-9a3a-375c-bdb89a3684fd}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{9CB00F85-D96F-1C82-F5A4-A31D57D6528D}
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\userinit

Remove Folders and Files
%Documents and Settings%\All Users\Application Data\Antivirus 2010 Security Centre
%Documents and Settings%\All Users\Desktop\Antivirus 2010 Security Centre.lnk
%Documents and Settings%\All Users\Start Menu\Programs\Antivirus 2010 Security Centre
%Documents and Settings%\All Users\Application Data\.wtav
%WINDOWS%\system32\mswmqnei.dll
%WINDOWS%\system32\us?rinit.exe
Sunday, July 18, 2010

Antivir Solution Pro Removal GuideAntivir Solution Pro Removal Guide

Antivir Solution Pro Removal Guide
Antivir Solution Pro is fake antivirus program which is mainly created to cheat the user of infected computer to buy the full license of Antivir Solution Pro so that to earn some profit from the user. Antivir Solution Pro is not a antivirus, it is a fake antivirus. Antivir Solution Pro infected the computer through trojan without any confirmation of the user. Once Antivir Solution Pro is installed in the computer, it will start automatically when the windows boot. Antivir Solution Pro will scan the computer shows false alert regularly to force the user buy the full version of Antivir Solution Pro.

Antivir Solution Pro provide fake feature like "Perform Scan" and "Adjust Setting". Antivir Solution Pro claims that it is an innovative protection for your PC. Antivir Solution Pro show that the files in the computer are infected by malwares such as Sality.AN, Azero.B etc. Don't be cheated by the fake results. It is a lie!

Antivir Solution Pro should be removeld immediately.

Antivir Solution Pro Removal Guide
Kill Process
(How to kill a process effectively?)
AntivirSolution.exe
%UserProfile%\Local Settings\Application Data\[random]\[random].exe

Delete Registry
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies \System\DisableTaskMgr
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies \System\DisableTaskMgr
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AntivirSolution
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "Antivir Solution Pro"
HKEY_CURRENT_USER\Software\Antivir Solution Pro
HKEY_CURRENT_USER\Software\AVSolution
HKEY_CURRENT_USER\Software\AVSuitE
HKEY_LOCAL_MACHINE\SOFTWARE\AVSolution
HKEY_LOCAL_MACHINE\SOFTWARE\AVSuitE
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\PhishingFilter "Enabled" = "0"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "ProxyOverride" = "[local]"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "ProxyServer" = "http=127.0.0.1:5643"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "ProxyEnable" = "1"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "[random]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "[random]"

Remove Folders and Files
%UserProfile%\Local Settings\Application Data\
%UserProfile%\Desktop\Antivir Solution Pro.lnk
%Program Files%\Antivir Solution Pro
Tuesday, July 13, 2010

Earth Antivirus Removal GuideEarth Antivirus Removal Guide

Earth Antivirus Removal Guide
Earth Antivirus (EarthAntivirus) is a fake antivirus program which try to make money from the users of infected computers. Earth Antivirus display fake warnings and scans the computers that return false results only to urge the users to buy the full version of Earth Antivirus. Earth Antivirus come from the same fake antivirus like Eco Antivirus and Green AV. Earth Antivirus claims that it can remove computer viruses, spyware or other types of malware if the users buy the full version of Earth Antivirus. Don't be cheated byu what it has claimed as all of them is a lie!

Earth Antivirus offer fake features like Advanced Protection, Blocks phishing Websites, Help secure and monitor your home network ... and many more! Don't believe all of them. It may show the user that "Your computer has slowed down, speed has decreased, popus and annoying ads? Get now."

Earth Antivirus should be removed immediately!

Earth Antivirus Removal Guide
Read How to remove virus effectively before following the guide below.

Delete Registry
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Earth AV
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run "Earth AV"
HKEY_CURRENT_USER\Software\Earth AV

Remove Folders and Files
%Documents and Settings%\All Users\Application Data\Earth AV
%Documents and Settings%\All Users\Desktop\Earth AV.lnk
%Documents and Settings%\All Users\Start Menu\Programs\Earth AV
Sunday, July 11, 2010

MyClean Removal GuideMyClean Removal Guide

MyClean Removal Guide
MyClean (or My Clean) is a fake antivirus program created to scare you into purchasing the full version of the program by displaying false error messages once your computer is infected. MyClean is downloaded and installed onto your computer by using a Trojan. My Clean may also slow down your computer.


MyClean should be removed from your system immediately.
MyClean Removal Guide
Kill Process
(How to kill a process effectively?)
%Program Files\MyClean\myclean.exe

Unregister DLL files

Delete Registry
HKEY_LOCAL_MACHINE\SOFTWARE\MyClean
HKEY_CURRENT_USER\Software\MyClean
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "myclean"

Remove Folders and Files
%Program Files\MyClean
%Program Files\MyClean\myclean.exe

Anticare Removal GuideAnticare Removal Guide

Anticare Removal Guide
Anticare (or Anti-Care) is a fake antivirus program designed to cheat the user's money. Anticare uses false alert to urge the users that the computer is infected with plenty of malwares. The computer will then show a lot of warnings, trying to persuade the users to purchase the full version of Anti-Care. Do not become another hapless victim of cybercrime and have Anticare removed using a reliable antispyware program.

Anticare should be removed immediately!

Anticare Removal Guide
Kill Process
(How to kill a process effectively?)
%Documents and Settings%\[USER]\Desktop\anticare^2010.exe
%Program Files%\Anticare\etc\avsrvc.exe
%Program Files%\Anticare\etc\ACreport.exe
%Program Files%\Anticare\ACAutoUpdate.exe
%Program Files%\Anticare\etc\avSubEngine.exe
%Program Files%\Anticare\etc\avsrv.exe
%Program Files%\Anticare\etc\acReg.exe
%Program Files%\Anticare\etc\acMon.exe
%Program Files%\Anticare\Uninstall.exe
%Program Files%\Anticare\AntiCare.exe

Unregister DLL files
C:\Program Files\Anticare\etc\ACmonRemote.dll
C:\Program Files\Anticare\db\filter.dll
C:\Documents and Settings\[USER]\Local Settings\Temp\nsk4.tmp\stack.dll
C:\Program Files\Anticare\db\inter.dll
C:\Program Files\Anticare\ACEngine.dll

Delete Registry
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AntiCareMain] = "Anticare"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] = ""%ProgramFiles%\Anticare\AntiCare.exe" /Scan"

Remove Folders and Files
%Documents and Settings%\[USER]\Start Menu\Anticare.lnk
%Documents and Settings%\[USER]\Desktop\Anticare.lnk
%Documents and Settings%\[USER]\Desktop\anticare^2010.exe
%Documents and Settings%\[USER]\Application Data\Microsoft\Internet Explorer\Quick Launch\Anticare.lnk
%Program Files%\Anticare
%Documents and Settings%\[USER]\Start Menu\Programs\Anticare
%Documents and Settings%\[USER]\Local Settings\Temp\nsk4.tmp\stack.dll

VDoctor Removal GuideVDoctor Removal Guide

VDoctor Removal Guide
VDoctor is a fake antivirus program which provide antivirus feature such as detecting malwares. The user click the wrong links or images in the fake online security websites. VDoctor is installed on computers without the confirmation of the user. It will secretly modify the system settings and registry entries so that it will run automatically when windows boot. VDoctor will constantly show security alert so that to urge the user to buy full version of VDoctor. VDoctor is not an antivirus but it is a parasite!

VDoctor should be removed from the computer immediately!

VDoctor Removal Guide
Kill Process
(How to kill a process effectively?)
%Documents and Settings%\All Users\Application Data3245\VDoced06.exe
%Documents and Settings%\All Users\Application Data\3245\VDoctor.exe
%Documents and Settings%\All Users\Application Data\3245\unins000.exe

Delete Registry
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Virus Doctor
HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Virus Doctor_is1

Remove Folders and Files
%Documents and Settings\All Users\Application Data\System Data Configuration
%Documents and Settings\user\Application Data\Microsoft\Internet Explorer\Quick Launch\Virus Doctor.lnk
%Documents and Settings\user\Start Menu\Programs\Virus Doctor.lnk
%Documents and Settings\user\Start Menu\Virus Doctor.lnk
%Documents and Settings\user\Desktop\Virus Doctor.lnk
%Documents and Settings\user\Application Data\Virus Doctor
%Documents and Settings\All Users\Application Data\System Data Configuration
%Documents and Settings\All Users\Application Data\3245
Monday, July 5, 2010

Antivirus GT Removal GuideAntivirus GT Removal Guide

Antivirus GT Removal Guide
Antivirus GT is a fake antivirus program which intends to make some profit from the user of the infected computer. Antivirus GT is installed to the computer when the user accidentally used a fake online scanner which will produce fake result. This result will state that the computer is infected and urge you to download and install Antivirus GT. Once installed, it will run automatically when windows boot. However, Antivirus GT does not do what it claims to be. After scanning the computer, it still states that the computer is infected with malwares. Antivirus GT change the desktop settings to issue fake warning messages; hijack the web browser and redirect the users to unwanted websites.

Antivirus GT claims that it can provide protection against malicious software. It come with trial version which provide Anti-virus (trial mode), Anti-spyware(trial mode) and Resident Shield features. The user should buy the full version in order to get full time protection. In fact, all of its claims are not true.

Antivirus GT should be removed immediately.

Antivirus GT Removal Guide
Kill Process
(How to kill a process effectively?)
antivirusGT.exe

Unregister DLL files
%WINDOWS%\system32\UpdateCheck.dll

Delete Registry
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "AntivirusGT"
HKEY_CURRENT_USER\Software\EVA246
HKEY_CURRENT_USER\Software\WinFD
HKEY_CLASSES_ROOT\CLSID\{3304F17F-732C-4AC6-BF67-DBDC8B88C11F}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3304F17F-732C-4AC6-BF67-DBDC8B88C11F}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "AVGT"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform "WinNT-EVI 05.07.2010"

Remove Folders and Files
%Documents and Settings%\{UserName}\Desktop\AntivirusGT.lnk
%Documents and Settings%\All Users\Start Menu\AVGT
%Program Files%\Common Files\Uninstall\AVGT
%Program Files%\AVGT
%WINDOWS%\system32\UpdateCheck.dll
Saturday, July 3, 2010

ZoneAlarm®  Extreme Security 2010ZoneAlarm® Extreme Security 2010

ZoneAlarm®  Extreme Security 2010
ZoneAlarm® Extreme Security 2010 is the most comprehensive suite on market which can protect your PC, your browser and your data effectively.

ZoneAlarm® Extreme Security 2010 provides Advanced Download Protection which can analyzes browser downloads in three unique ways before they can infect your PC and warns if they are malicious.

ZoneAlarm® Extreme Security 2010 provides many features like OSFirewall which monitors changes within your computer to spot and stop new attacks that bypass traditional anti-virus protection; Free Credit Bureau Monitoring which can protects your identity with daily credit report monitoring and provides victim recovery services, Virtual Browsing which allows users to surf with full protection against malicious software like drive-by downloads and browser exploits.

Besides, ZoneAlarm® Extreme Security 2010 provides other features like Anti-phishing and Site Status which can blocks fraudulent websites including "phishing" sites that trick you into entering personal data; Keylogger / Screengrabber Jamming which can protects your passwords and other key strokes from being stolen by identity thieves; Two-way Firewall which can keeps hackers out by making your PC invisible online and blocking intrusions; Anti-Spam which can filters out annoying and potentially dangerous email; Antivirus/Spyware Scan Engine which is a unified engine makes detection and removal of viruses, spyware, Trojan horses, worms, bots, and other malicious software faster and easier; Private Browsing which erases your surfing tracks and allows you to surf the Internet in complete privacy; Secure Online Backup which can backs up files and restores your data in the event of hardware malfunction; PC Tune-up which cleans, organizes and streamlines your computer for improved performance; Parental Controls which filters and blocks inappropriate websites.

Download.

Extreme Security 2010 Removal GuideExtreme Security 2010 Removal Guide

Extreme Security 2010 Removal Guide
Extreme Security 2010 is a fake antivirus program which is created to "cheat money" from the users. Extreme Security 2010 is not "ZoneAlarm Extreme Security 2010" which is a legitimate security program which really protect our computers from attack of viruses. Extreme Security 2010 infected the computers when the users accidentally or are cheated to click the links or images on misleading websites, web pop-ups and fake online scanners. Extreme Security 2010 install into PC without permission of users unless the user set the UAC level to the highest level.

Extreme Security 2010 run automatically when windows boot. It always cheat the user state that the computer is under attack from a remote computer! Extreme Security 2010 shows that there are many spyware, Trojans and other viruses on the computer! Besides, it also display many fake security alerts and pop-ups on the computer screen to urge the user to buy the full version of Extreme Security 2010 or the malwares will not be removed! In fact, Extreme Security 2010 is the real malware that should be removed.

If the user have already purchased the full version of Extreme Security 2010, then the user should contact the credit card company and dispute the charges.

Extreme Security 2010 should be removed immediately!.

Extreme Security 2010 Removal Guide
Delete Registry
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "Extreme Security 2010"