Hackosis is an Open Blog. You Can Participate.

  • 21
  • Dec

I worked on a friend’s PC last night. It had a nasty virus that wouldn’t delete, no matter what happened —

Drop.Agent.clu

Usually, deleting these nasty trojans with tools such as GiPo@MoveOnBoot or KillBox is a cinch.

ComboFix
original image by d70focus

Nothing worked, except for ComboFix. A description from the bleepingcomputer.com forums:

Combofix is a general tool that helps the helper cleaning up a Hijackthis log. It is able to remove some common infections and helps a user detect files that general scanners cannot find. It also lists registry keys such as the key keys, the desktop keys, and other areas where malware hide. The tool has some rootkit detectors too, allowing a helper to see if a rootkit is present on the PC.

When ComboFix runs, it shuts down explorer.exe, so don’t freak out when your desktop disappears and just let it do it’s thing.

ComboFix Download

via majorgeeks.com’s forums

Be sure to add ComboFix to your jump drive toolkit and use it next time you run into an undeletable virus. Let us know how it works out and if you know of any other useful tools like ComboFix, leave the tips in the comments.

[Slashdot] [Digg] [Reddit] [del.icio.us] [Facebook] [Technorati] [Google] [StumbleUpon]

Related Posts


Tags: , , ,

Like this post? Subscibe to the RSS feed.


4 Comments

  1. dhiraj Says:

    i want to remove the window script host

  2. SpideRaY Says:

    Dont download this version of combofix, Norton sees this as a virus download the version that is 1.94MB this is a fixed version

    http://download.bleepingcomputer.com/sUBs/ComboFix.exe

  3. SpideRaY Says:

    Also available here at Geekstogo

    http://subs.geekstogo.com/ComboFix.exe

  4. Shane Says:

    Strange that would have showed up as a virus SpideRaY. Also, at the time I posted this I didn’t know that it expires after some time and you have to download a new executable (for security reasons). Thanks for the heads up. I have edited and fixed the post.

Leave a Comment