Friday, March 11, 2011

How To Setup Blogspot Custom Domain

I believe most of us want to use custom domain on blogspot. Not like normal hosting, blogspot require you to edit your cname. Normal hosting would only require you to pointing their name server to your domain.

SETTING DNS (DOMAIN NAME SERVER)
This is the first step to set your domain. Usually, there some additional fees to buy “DNS Managed”. But you can still get it freely. follow the instruction below :

1. Register on Dnspark.net for free. Then, login if you done.
2. Choose DNS Hosting menu, then Add domains.
3. Check in DNS Hosting-Free box, enter your domain name (without www)
4. Click Add Now
5. Your domain name will appear in Domain List. Click your domain for the next step.
6. Choose CNAME on Type dropdown menu.
7. Fill “www” in Alias Name colum.
8. Fill ghs.google.com in destination.
9. Finished, click Update all.


SETTING NS (NAME SERVER)
Then go to your domain registrar like name.com / Godaddy
If you use Namecheap as your domain account, you must do this :

1. Login to your Namecheap account. Click Manage Domain.
2. On the menu, click your domain name, then click domain Name server Setup on the left side menu. Fill the columns like this pics below :

ns1.dnspark.net
ns2.dnspark.net
ns3.dnspark.net
ns4.dnspark.net
ns5.dnspark.net

Friday, March 4, 2011

Prevent Virus with Write-Protect USB

A friend of mine ask if usb can be write protected so no virus would be able to copy themselves into our usb drive. I can show you a step by step on how to do it manually or just simply one click. I will show you both ways. I hope this simple tutorial will help you guys.

This can be done by adding a small entry to the Windows registry which acts as a switch that can be enabled to make use of the write protection or disabled to allow write access.


Just follow these steps:



1. Open the Registry Editor (Open the “Run” dialog box, type regedit and hit “Enter”).



2. Navigate to the following Registry key:

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\




Click to Enlarge


3. Create a New Key named as StorageDevicePolicies. To do this right-click on Control, and click on New>Key and name it as StorageDevicePolicies.





4. Now right-click on  StorageDevicePolicies and create a New->DWORD (32-bit) Value and name it as WriteProtect.



5. Double-click on WriteProtect and set the Value data to 1.




Click to Enlarge

Now the right-protection for USB drives is enabled on your computer (no restart required) and thus it would not be possible for anyone or any program to add/delete the contents from your USB flash drive. Any attempt to copy or download the files onto the USB drive will result in the following error message being displayed.




To revert and remove the write-protection, all you need to do is just change the Value data for WriteProtect (Step-5) from 1 back to 0. Now write access to all the USB devices is re-enabled.


--------------------------------------------------------------------
Or You can simply use the Bat file below to write protect you usb drive


Write Protect Instructions


Download writeprotect.bat in a zip package from here and extract the files on pen drive and double click writeprotect.bat to make your drive write protected. You will need to eject your pen drive once after launching the batch file to make your drive write protected on the computer.

Disable Write Protect Instructions


Download disablewriteprotect.bat in a zip package from here (this package is same as bove, download any of these two) and extract the files on the pen drive and double click disablewriteprotect.bat to disable write protection on your pen drive. You will need to eject your pen drive once after launching the batch file to disable write protection.



Write Protect Bat File:   DOWNLOAD

Reference: TroubleFixers

Thursday, February 24, 2011

Remove System Tool Virus with Malwarebytes

What is System Tool?

The Malwarebytes research team has determined that System Tool is a fake anti-malware application. These so-called "rogues" use intentional false positives to convince users that their systems have been compromised. Then they try to sell you their software, claiming it will remove these threats. In extreme cases the false threats are actually the very trojans that advertise or even directly install the rogue. You are strongly advised to follow our removal instructions below.

How do I know if I am infected with System Tool?

This is how the main screen of the rogue application looks:

Posted Image

You will find these icons on your desktop and in your taskbar:

Posted Image

and your desktop may look like this:

Posted Image

And see these warnings:

Posted Image

Posted Image

How did System Tool get on my computer?

Rogue programs use different methods for spreading themselves. This particular one was installed by a trojan.

How do I remove System Tool?

Our program Malwarebytes' Anti-Malware can detect and remove this rogue application.

  • Please download Malwarebytes' Anti-Malware from here
    If you are unable to do this from the infected computer directly, transfer the file from another computer.
  • Download the mbam-setup.exe to your desktop.
  • Now make sure extensions are shown. To do this, please look here
  • Then rename the mbam-setup.exe: Posted Image to explorer.exe: Posted Image
  • Then launch explorer.exe in order to install Malwarebytes' Anti-malware
  • Once Malwarebytes' Anti-Malware is installed, navigate to your Program Files\Malwarebytes' Anti-Malware folder and locate the mbam.exe in there:

    Posted Image

    rename it to iexplore.exe:

    Posted Image

  • Now doubleclick iexplore.exe to launch Malwarebytes' Anti-malware.
  • Click the "Update" tab and click the "Check For updates" button.
  • Once the program has loaded and updates were downloaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart, so please allow MBAM to restart.
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.


Is there anything else I need to do to get rid of System Tool?

  • The shortcut called System Tool 2011 on the desktop can be deleted if it belonged to the rogue.
Original post: Malwarebyte Forum

Sunday, February 20, 2011

How to remove System Tool Virus Alert

System Tool is a rogue security program that deliberately reports false system security threats on the computer. System Tool 2011 just pretends to scan your computer for malicious software. It claims that your PC infected with Trojans, computer worms, dialers and other malware. System Tool was created to make you think that your computer is infected with all sorts of malware. It is nothing more than a scam. The victim is then prompted to pay for a full version of the program to remove the threats or infections. So, obviously you shouldn't buy this bogus software. And, of course, you should remove System Tool from your computer as soon as possible. We've got the removal instructions to help you to remove System Tool from your computer for free using legitimate anti-malware software. Please follow the removal instructions below.


A screen shot of System Tool malware

Usually, this fake program has to be manually installed. But it can be also installed through the use of Trojans without your knowledge and permission. That's why you should keep your anti-virus software up to date and make sure that Windows OS, web browsers, flash player, Java and other software is updated.
System Tool is from the same family as Security Tool scareware. This rogue uses aggressive tactics to trick victims into purchasing the full version of the program. First of all, it displays false system security threats. Furthermore, System Tool blocks any executables that you attempt to run and claims that they are infected. It displays the following error message when you attempt to run any program:

Warning!
Application cannot be executed. The file notepad.exe is infected.
Please activate your antivirus software.




System Tool displays fake security warnings and notifications as well. It will even change your the background of your Windows desktop. Here's how it reads:
Warning!
Your're in Danger!
Your Computer is infected with Spyware!

All you do with your computer is stored forever in your hard disk. When you visit sites, send emails... All your actions are logged. And it is impossible to remove them with standard tools. Your data is still available for forensics, and in some cases

For your boss, your friends, your wife, your children. Every site you or somebody or even something, like spyware, opened in your browsers, with all the images, and all the downloaded and maybe later removed movies or mp3 songs - ARE STILL THERE and could break your life!

Secure yourself right now!
Removal all spyware from your PC!


The rogue program will also claim your private information and PC safety is at risk or that Windows has detected spyware infection. The warning message that you will see is:
Warning: Your computer is infected
Windows has detected spyware infection!
Click this message to install the last update of Windows security software...
Security Monitor: WARNING!
Attention: System detected a potential hazard (TrojanSPM/LX) on your computer that may infect executable files. Your private information and PC safety is at risk. To get rid of unwanted spyware and keep your computer safe you need to update your current security software.
CLick Yes to download official intrusion detection system (IDS software).
The biggest problem is that System Tool terminates all the programs on your computer. You will have to restart your computer in Safe Mode with Networking and scan the system using anti-malware software listed below. Please follow the removal instructions below. It goes without saying that System Tool is nothing more but a scam. If you have already purchased it, the please contact your credit card company and dispute the charges. If you have any questions or additional information about this virus please leave a comment. Good luck and be safe online!

The Easiest way to remove system tools removal

You can use Malwarebytes Anti-Malware to remove it. Steps on how to remove using Malwarebytes at this link. Remove System Tools


System Tool removal instructions (in Safe Mode with Networking):

1. Reboot your computer is "Safe Mode with Networking". As the computer is booting tap the "F8 key" continuously which should bring up the "Windows Advanced Options Menu" as shown below. Use your arrow keys to move to "Safe Mode with Networking" and press Enter key.


NOTE: Login as the same user you were previously logged in with in the normal Windows mode.





Alternate System Tool removal instructions using HijackThis or Process Explorer (in Normal mode):

1. Download HijackThis tool from TrendMicro and rename it to iexplore.exe
Launch the iexplore.exe and click "Do a system scan only" button.


2. Search for such entry in the scan results:
O4 - HKCU\..\RunOnce: [dfbLa00902] C:\Documents and Settings\All Users\Application Data\lGAlF00902\lGAlF00902.exe

The process name will be different in your case [SET OF RANDOM CHARACTERS].exe, located in:
C:\Documents and Settings\All Users\Application Data\ in Windows XP
Select all similar entries and click once on the "Fix checked" button. Close HijackThis tool.

OR you may download Process Explorer and end System Tool process:
  • [SET OF RANDOM CHARACTERS].exe, i.e. lGAlF00902.exe




System Tool associated files and registry values:

Files:
  • C:\Documents and Settings\All Users\Application Data\[SET OF RANDOM CHARACTERS]
  • C:\Documents and Settings\All Users\Application Data\[SET OF RANDOM CHARACTERS]\[SET OF RANDOM CHARACTERS].exe
Registry values:
  • KEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce "[SET OF RANDOM CHARACTERS]"
Credits to: