How To Remove Worm@W32.Resik From Your PC and Flash Drive
My USB Flash drive is infected by Worm@W32.Resik. That’s definitely sure because of these reasons:
- When I checked my USB Flash drive, it already contains a folder named “Recycled” which also contains two hidden files: Voinfo.dll and Driveinfo.exe.
- When I used this drive during my blogging job today, the updated Norton anti-virus warned me that an infected file was found at the Flash drive.
So, how did I know that the said drive is infected by Worm@W32.Resik?
Well, Worm@W32.Resik is the worm that creates the two hidden files: Voinfo.dll and Driveinfo.exe and placed it into the hidden folder it created in flash drive named “Recycled”, including the Driveinfo.sdc. The autorun.inf is also created and placed at the root directory of the flash drive. In the Windows system folder, it also creates inetsrv.exe.
All these files are all found in my PC and flash drive.
I also checked the Windows registry if it was altered by this worm. And I found out that the HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\inetsrv entry was added. This entry makes sure that eveytime the Windows system is rebooted, the inetsrv.exe found in the Windows system will be automatically activated.
How to remove this worm from our PC system?
We have two approaches in removing this worm from our PC system. (1) Using PC Security software like Norton of Symantec, PC Security Shield, or any updated software. (2) Removing Manually.
In manually removing this worm:
- first we need to boot the PC to a safemode of Windows.
- Open the registry (click START, then click RUN, type REGEDIT and click OK.
- On the Registry Editor, look for the entry which contains “inetsrv” (press ctl-f, type inetsrv and clickOK)
- Delete all entries that contains inetsrv.ex.
- Repeat step 3 and 4 until it will prompt you that the files are not found, which means that the entries that contain “inetsrv” are all deleted.
- Change the View option of the Windows explorer to “View All”, for us to view hidden files.
- Search for the files created by this worm as mentioned above and delete them all.
- After these, restart the PC and boot it to normal.
Note: This kind of worm according to the Symantec was discovered last January 2007 and is called by Symantec as W32.Resik.A.
-
Sign up for PayPal and start accepting credit card payments instantly.
As the world's number one online payment service, PayPal is the fastest way to open your doors to over 150 million member accounts worldwide. -
Promote your product to high quality, targeted websites and blogs.
Find effective, influential blogs and highly targeted audiences to advertise.Choose to display your ad across entire blog networks to maximize your exposure to a wide audience.
Related Post
- Pinay Scandal
- How To Delete the Hidden Files of the Resik Worm?
- How to View the Hidden Files of Worm@W32.Resik Worm?
- Beware of Key Logger residing on your Flash Drive
- Naruto Anime Episode 186
- Google Loses From a Studid Game
- Are You an IM User? Beware of An Spyware Spying You!
- How To Remove Spylocked Spyware, A Review
- Hey DAVE! What’s DAVE?
- Blogging Time Management
- Banner Management
- Fujifilm Finepix S9100 9MP Digital Camera
- What Makes iPod Shuffle Unique?
- Sue Google and Earn Extra Dollars
- Google Seems Liable of the $1Billion Lawsuit
- Still Shaking With Nervous
- www.sss.gov.ph static information
- sss gov.ph SSS Online Inquiry
Recently Commented
- Angel Locsin
- October 2009 New Teachers Oath Taking, Other Issues
- SSS Disability Benefits
- SSS Sickness Benefits
- AdMob To Join Google
- How to Avail SSS Maternity Benefits?
- Podcasting: What's this?
- Manny Pacquiao Wins, Washed Out Cotto From His Head
- Link Baiting - Fishing: Newbie SEO Attacks Experts
- How Important is the PageRank?
- Licensure Examination for Teachers (LET - October 2009) Result
- Jollibee Scandal: Spread the Word?
- Naruto Series Blog, Making Live Again
- Google PR, Halloween 2009 Update
- Make Money Online By Surfing Using Viewbar
Comments
5 Responses to “How To Remove Worm@W32.Resik From Your PC and Flash Drive”
Trackbacks/Pingbacks
-
[...] New Era University) asking me how to view the hidden files of the worms. I read your post on how to How To Remove Worm@W32.Resik From Your PC and Flash Drive and I immediately checked my PC’s regedit and I found the inetsrv entry. But when I checked [...]
-
[...] is actually part of my post on how to remove the Worm@W32.Resik worm from your PC or Flash Drive. Our visitor who send us an email yesterday, sent us again an [...]
-
[...] How To Remove Worm@W32.Resik From Your PC and Flash Drive [...]


































i still cannot delete the hidden files in my flash drive but i managed to delete the inetsrv in C:..HELP!
Great article! I’m loving your website.