W32/Salisa.3720



W32/Salisa.3720 beheavor like W32/Netsky.c@MM I-Worm.NetSky.d Win32/Netsky.D WORM_NETSKY.D ,W32/Salisa.3720 copies itself to the Windows folder as winlogon.exe and creates the following registry entry so that winlogon.exe is run automatically each time the user logs on to the computer:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\ICQ Net
= \winlogon.exe -stealth

Tags:

Need help? Post you problem on Free Malware Remove Help forum


W32/Salisa.3720 Summary

  • Virus Name:W32/Salisa.3720
  • Detected By:F-Prot6 antivirus program
  • Virus W32/Salisa.3720 Detected times:239231times
  • W32/Salisa.3720 Overall Risk:Medium 739232
  • W32/Salisa.3720 file size:3692320 bytes
  • W32/Salisa.3720was first Detected by F-Prot6 on Sunday, May 24th, 2009 , 10:40 am,W32/Salisa.3720 is a new threats of Hacking,Malware,Spam,worm.
  • Remove W32/Salisa.3720 instruction:

  • 1.Temporarily Disable System Restore;2.Reboot computer in SafeMode;3.delte W32/Salisa.3720 virus files and kill W32/Salisa.3720 file task process(if have);4.Delete/Modify any values added to the registry by W32/Salisa.3720 ;5.delete IE temp files,restart the computer and run a whole scan with F-Prot6. W32/Salisa.3720 virus files as following:

    Leave a Reply