Thursday, July 5, 2007

Being Attacked By Malware imsmain.exe

Today, all of the sudden, my AVG Antivirus alert me that I got infected by malware imsmain.exe. I used AVG to quarantine it. It didnt work at all. All I could have said 'Holy shit!. and wondering how did this trojan came into my PC in the first place and now AVG unable to kill it as well. I was like in a panic situation.

I press Ctrl-Alt-Del to activate the Task Manager in Windows and end the process.. You know what? This virus, the moment you end the process, it will re-appear again in task manager. It is a very stubborn virus. I thought this time I really had to "eat banana" already.

After think for hours and search the internet without any clues, I decided to use another method to restore the system. So what I did was:

  1. reboot the system.
  2. press F8 to get the windows prompt and choose safe mode with network. It takes a while before boot into windows XP.
  3. Once you are in safe mode, go to My Computer.
  4. Locate for the directory called "Video ActiveX Access" and delete it. Make sure you clear your recycle bin as well.
  5. Next, click start button and select run. Type in regedit.
  6. Once the regedit is on, press ctrl-F. Key in imsmain.exe and enter. Once found the entries, delete the entries.
  7. Once completed, reboot your computer in normal mode.
  8. Run your antivirus,anti-malware ,anti-spy again to ensure there is no more infections.


No comments: