Monday, November 26, 2007

Yahoo Messenger 9




Yahoo Messenger 9 from Yahoo.com


Yahoo Messenger 9 full from rapidshare.com




Saturday, November 24, 2007

Test your web design in different browsers

Test your web design in different browsers


http://browsershots.org/

Linux








Windows









Mac OS





Wednesday, November 21, 2007

Yahoo Messenger 9 Ad Remover

Note : Use it at your own risk and scan the file with your anti-virus
download yahoo messenger 9 AdRemover


VIRUS SCAN RESULT OF yahoo messenger 9 AdRemover
---------------------------------------------------------
AntiVirus Version LastUpdate Result

AhnLab-V32007.11.21.12007.11.21Win-Trojan/Xema.variant
AntiVir7.6.0.342007.11.21-
Authentium4.93.82007.11.21-
Avast4.7.1074.02007.11.20Win32:Patched-T
AVG7.5.0.5032007.11.21-
BitDefender7.22007.11.21-
CAT-QuickHeal9.002007.11.20-
ClamAV0.91.22007.11.21-
DrWeb4.44.0.091702007.11.21-
eSafe7.0.15.02007.11.14-
eTrust-Vet31.3.53132007.11.21-
Ewido4.02007.11.20-
FileAdvisor12007.11.21-
Fortinet3.14.0.02007.11.21-
F-Prot4.4.2.542007.11.21-
F-Secure6.70.13030.02007.11.21-
IkarusT3.1.1.122007.11.21Trojan.HackTool.Patch.A
Kaspersky7.0.0.1252007.11.21-
McAfee51672007.11.20-
Microsoft1.30072007.11.21HackTool:Win32/Patch.A
NOD32v226742007.11.21-
Norman5.80.022007.11.20-
Panda9.0.0.42007.11.21-
Prevx1V22007.11.21-
Rising20.19.20.002007.11.21-
Sophos4.23.02007.11.21Troj/Patch-F
Sunbelt2.2.907.02007.11.21-
Symantec102007.11.21-
TheHacker6.2.9.1352007.11.20-
VBA323.12.2.52007.11.20-
VirusBuster4.3.26:92007.11.21-
Webwasher-Gateway6.0.12007.11.21-

Firefox bug

A common firefox bug

save page, save picture functions are not working or download window is not working.

it because of corrupted file downloads.rdf, usually this problem is raise when in proper shutdown is occurs.

I had this problem for almost one week now. I have tried almost anything that I can think of: clean install, messing around settings in Options, removing themes and extensions. None of which have worked

The solution is simple erase the corrupted file “ downloads.rdf ”, the file path

C:\Documents and Settings\”YourUserName”\Application Data\Mozilla\Firefox\Profiles\”xxxx”\

Monday, November 19, 2007

Virus W32/RJump.worm - Ravmon.exe

Device Virus, Ravmon.exe
i created this article bcoz of my friends computer infected by this virus

W32/Rjump.worm is a worm written using the Python scripting language and was converted into a windows portable executable file using the Py2Exe tool. It attempts to spread by coping itself to mapped and removable storage drives and also opens a backdoor on an infected system.

this virus block some administrative windows functions like

block taskmanager
block regedit.exe
disable folder option
disable command prompt
disable run, etc
if you found these problems in your pc , it because of ravmon.exe - Virus W32/RJump.worm

this is not a dangers virus, but it also crate a log file that contains the port number on which its backdoor component listens.

Characteristics of W32/RJump.worm - Ravmon.exe
---------------------------------------------------

it creates a copy of itself into the windows system directory
%Windir%\RAVMON.EXE
RavMonLog ( log file)

Create a registry update on
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
"RavAV" = "%Windir%\RAVMON.EXE"

create a copy of files in all drives
autorun.inf --used to autorun the worm when the drive is accessed
msvcr71.dll -- Clean Microsoft Visual Studio dll file
ravmon.exe -- copy of the worm

The contents of the autorun.inf are as follows:
[AutoRun]
open=RavMonE.exe e
shellexecute=RavMonE.exe e
shell\Auto\command=RavMonE.exe e
shell=Auto

Reseting to default setting by these Registry values

to enable task manager
Hive: HKEY_CURRENT_USER
Key:
Software\Microsoft\Windows\CurrentVersion\Policies\System
Name:
DisableTaskMgr
Type:
REG_DWORD
Value:
1=Enable

to enable regedit.exe
Start -> Run -> gpedit.msc -> User Configuration -> Administrative Templates -> System -> Prevent access to registry editing tools -> Right Click Properties -> Disabled

to enable Folder Otion
User Key: [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\
Explorer]

System Key:

Explorer]
Value Name:
NoFolderOptions
Data Type:
REG_DWORD (DWORD Value)
Value Data:
(0 = show options, 1 = hide options) [

to enable run
Registry Key: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ Policies\Explorer
Create a DWORD value for each Run function that will be disabled.

Modify/Create the Value Name [DisableLocalMachineRun] according to the Value Data listed below.
Data Type: REG_DWORD [Dword Value] // Value Name: DisableLocalMachineRun
Data Type: REG_DWORD [Dword Value] // Value Name: DisableLocalMachineRunOnce
Data Type: REG_DWORD [Dword Value] // Value Name: DisableCurrentUserRun
Data Type: REG_DWORD [Dword Value] // Value Name: DisableCurrentUserRunOnce

Setting for Value Data: [0 = Disabled / 1 = Enabled]

Stop the virus
---------------------
* stop the service having the path %path% ravmon.exe
* stop the ravmon.exe from task manger
* delete ravmon.exe from the pc
* remove the startup registry value from HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run, (don't delete the path only * * delete the ravmon.exe regisry value)
* delete files autorun.inf and ravmon.exe from all drive