Tuesday, June 30, 2009

samok.vbs virus reviews and removal tool

“Madforelmo!”, you can view this at windows taskbar when you are infected with samok.vbs malware. This is a variant of sowar.vbs where your task manager and folder options where disabled plus no more run command and registry editing isdisabled.

http://i714.photobucket.com/albums/ww143/rhodjun098/b-b2g.jpg?t=1246355684

You will be annoyed when this malware changed your “Open” command in the right click menu to “b-b2g” and “Explore” command to “Owned” when you right click a drive or folder.

Registry Entries:

  • The newly created Registry Values are:
  • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shell\explore]
    • (Default) = “Owned!”
  • [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shell\open]
    • (Default) = “b-b2g”
  • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    • autoMe = “wscript.exe “%Windir%\samok.vbs”"
The best way in deleting this virus is through manual way. Just download "Regseeker" software. This software can open registry in a different way. It does searches on your registry, making you to locate those files created by the virus. If you found ( Madforelmo, samok.vbs, b-b2g, Owned ) just delete this to your registry and you're done!

Here's a link from a site, download Regseeker
here : download samok.vbs remover

8 comments:

  1. i have developed a virus removal tool for samok.vbs trojan
    this virus removal tool removes all the side effects of the virus(samok.vbs)
    use following link to download the removal tool

    http://it.web44.net/VirusDetails/Crypt.Trojan.VBS.Agent.SamOK.php

    ReplyDelete
  2. thanks ronel for sharing your samok.vbs removal it really works...

    ReplyDelete
  3. thnks kanishka, but, where is the code of your program?

    ReplyDelete
  4. Gosh you really helped me God bless you and thanx :)

    ReplyDelete
  5. thanks...its work thanks bro....

    ReplyDelete
  6. Good work! Thanks for sharing that handy tool. That samok.vbs is a nasty little virus. It jumps onto USB sticks too so make sure you scan and clean any pen drives etc used when trying to fix your computers.
    Cheers, Lon

    ReplyDelete
  7. Nice tool. I have added a complete guide to remove samok.vbs and b-b2g here:
    http://bennixcomputertips.blogspot.com/2010/10/how-to-remove-samokvbs-and-b-b2g-virus.html

    ReplyDelete