Comments on: ARP Spoofing: Genius code from China Series 2, Microsoft.vbs Microsoft.bat Microsoft.pif http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/ Online Business, Short Reviews, Computers and Internet, Tips and Trick, Make Money Online. Sat, 25 Jul 2020 23:10:07 +0000 hourly 1 https://wordpress.org/?v=5.4.2 By: Adrianne http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-104022 Thu, 12 Jun 2014 14:34:25 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-104022 Useful information. Fortunate me I discovered your website by accident,
and I am surprised why this accident didn’t came about in advance!

I bookmarked it.

]]>
By: Benjamin http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-100364 Thu, 22 May 2014 16:22:13 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-100364 I was recommended this web site by my cousin. I’m not sure whether this post is written by him as nobody else know such detailed about my problem.
You are amazing! Thanks!

]]>
By: Mujiono http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-2187 Thu, 08 Oct 2009 02:23:06 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-2187 Our computer has been infected by Deathlock, Can I restored infected files back, what files types contain this virus !!!

]]>
By: tuyul http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-1983 Sat, 05 Sep 2009 15:22:45 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-1983 Istanto the inject how?

]]>
By: dani http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-1342 Sat, 21 Feb 2009 12:32:11 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-1342 There are forgotten. the destination site trojan mk.cxaaaa.cn / xx.htm. what is still a sort of Trojan viruses arp spoofing as well? because I was looking for mic.vbs, mic.bat, just not in mic.pif c. but the symptoms seem the same ….

]]>
By: dani http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-1341 Sat, 21 Feb 2009 12:29:40 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-1341 For safety reasons all seem to be formatted partitions. but it seems difficult to apply because in my father’s clients this protest. I was trying to scan and detect pake kaspersky 12 trojans on the drive c. most hide in the same document settings temporary internet files. but unfortunately the same can not didelete kaspersky. after they were scanned in safe mode, system restore dimatiin. scan was 90% skitar road. but suddenly the computer restarts itself. time in normal mode the virus live longer. hahaha …

My next plan service projects and teman2 c drive format + reinstall windows client computer. then update sp3, install anti-virus. I hope this powerful way to get rid of this damn virus

arp-s at the command prompt what the client computer with a static arp client then made that led to the client interface (gateway) is made reply-only proxy server? because I use proxy servers …

fathers guidance

]]>
By: Istanto http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-1339 Fri, 20 Feb 2009 11:11:53 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-1339 if it would secure format all partitions let none of the rest will be back again there’s even a headache hehe .. Until now, I know there are no automated tools antivirus/3rd can clear the virus completely so use manual way and should be checked every hour if conditions there are still signs of life: P I might suggest perhaps sih antivirus norman the best approach

]]>
By: dani http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-1338 Fri, 20 Feb 2009 07:04:31 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-1338 sir, it’s clear the virus must format all partitions on just what the c: course. because I share the internet rt-rw model net. See you in the format all partitions can-can I scold by the client in: D. about anti-virus can detect and clean up any virus? I use Nod can not detect this virus

]]>
By: Istanto http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-1251 Sun, 18 Jan 2009 01:42:20 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-1251 @ luvluv: re-wrote the settings in the setup home or small office network, but the risk of sharing files, although the scope of the intranet.

@ Ridwan: Sorry about ideals, so that this virus is crowned the recalcitrant category! according to my version 😀

]]>
By: Ridwan http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-1248 Sat, 17 Jan 2009 17:12:59 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-1248 Istanto deepfrezee cafe I have all but still taxable, smart virus could exist in another partition d: that was not in the deepfreeze for saving data, not visible, the attrib cmd is not passed there, the scan using the latest update kav also not met, If the proxy directly interface rename disconect, I’ve got a time-out line 2213 from web Winbox mirotik.co.id, I just installed windows xp not condition the program, directly DownLoad win box, when used directly dc all networks, virus Wow creepy yes, until closing Internet cafe for 5 days, it was only 7 pc, what if tens, the ghost only appears again, forced to install manually.

]]>
By: luvluv http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-1045 Thu, 13 Nov 2008 08:20:12 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-1045 when I try,,, apparently after a “disable-default-share.inf and activate it restart-net-service.bat” This makes LAN so illegible so can not share data between the pc … how to enable back?? please help .. thx

]]>
By: Istanto http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-998 Tue, 04 Nov 2008 20:41:36 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-998 he .. he .. he .. active during the backup so the virus is still there he would recover in the network 😀 kk yes shirro same dizzy ARP virus? if my suggestion for internet cafe’s best reinstall all PCs will continue to be protected rather than back and forth can be stressful kk 😛

]]>
By: dd http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-993 Mon, 03 Nov 2008 16:16:59 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-993 Istanto going to ask the cause of the virus is active arp what causes microsoft.bat,. pif and. vbs this?? because I’ve cleaned but still there are active enlightenment yes please thanks before ….

]]>
By: Istanto http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-966 Mon, 27 Oct 2008 09:24:30 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-966 No fine was because he was still there and active in other computers in the network 1 .. well if you do not know where the location of the virus was better just reinstall your condition especially vulnerable cafe network. norman scan should use cleaner mallware first when I save the important files in the format it and then all partitions. remember use protection like deepfreeze if infected again will not stress you can reinstall continue.

]]>
By: oxygen http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-964 Sun, 26 Oct 2008 19:17:24 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-964 must reinstall it seems, because as a Istanto’ve written I have done all this still is not right.
oh yes I have 3 partitions, which takes in all formats whether it or just C: / was it? please help

]]>
By: Istanto http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-963 Sun, 26 Oct 2008 18:46:09 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-963 Ow .. It was very positive taxable ARP virus. Make sure all the processes active virus in the background is dead, if still not able to try the first skip, then if all the new step was finished in benerin hosts files.

Please note that ALL computers on the network at the cafe please pull the LAN cable used for a while, MAKE SURE COMPUTER CLEANING NOT CONNECTED IN ANY CIRCUMSTANCES, NO FILE IN / OUT, NO OTHER VIRUSES (such Alman / SALITY) ARE ACTIVE. If the clean half of this virus is difficult in Exterminate must instead make a headache because he can backup itself from another computer that looks like a non-infected in one network or via internet.

I highly recommend reinstall all PCs in cafes and in the deepfreeze give such protection to this virus does not interfere with your business.

Good luck:)

]]>
By: oxygen http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-962 Sun, 26 Oct 2008 18:28:10 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-962 step using HijackThis can not delete line (s) who after 127.0.0.1. have reappeared in the delete alias can not delete. I have tried manually writing also can not make sure the path or filename are correct and hold the window open even save as … I am confused because cafes were closed today 2 … please enlightenment … thx

]]>
By: Istanto http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-960 Fri, 24 Oct 2008 14:09:34 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-960 DH Ricky, not necessarily caused by a virus that ARP try first observed more closely what it is, to try MAC scanner used after 2-3 hours of active computer .. The easiest way to find out ARP virus infection seen enough in% systemroot% \ WINDOWS \ AppPatch \ is not a file Desktopwin.dll, Jview.dll, Arau ThunderAdvise.dll if any one of the files over the network confirmed the father of ARP virus.

]]>
By: ricky http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-959 Fri, 24 Oct 2008 06:50:09 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-959 My office is often a few days later. When connecting to a common site network timeout or network interupted. even to enter the wireless router just sometimes have to restart the router. I scan using Colasoft MAC Scanner, but there was no sign of duplicate MAC Address. Is this could be caused by a virus arp?

Thanks for the answer (if not via email).

]]>
By: Alex http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif/#comment-677 Fri, 15 Aug 2008 07:09:35 +0000 http://www.istanto.net/arp-spoofing-genius-code-from-china-series-2-microsoftvbs-microsoftbat-microsoftpif.html#comment-677 Your blog is interesting!

Keep up the good work!

]]>