<?xml version="1.0" encoding="UTF-8"?><rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
> <channel><title>Comments on: W32.Mabezat.B</title> <atom:link href="http://www.precisesecurity.com/threats/worms/w32mabezatb/feed" rel="self" type="application/rss+xml" /><link>http://www.precisesecurity.com/worms/w32mabezatb</link> <description></description> <lastBuildDate>Thu, 09 Feb 2012 05:23:27 +0000</lastBuildDate> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.2.1</generator> <xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" /> <item><title>By: hassan</title><link>http://www.precisesecurity.com/worms/w32mabezatb#comment-16579</link> <dc:creator>hassan</dc:creator> <pubDate>Thu, 10 Nov 2011 22:33:24 +0000</pubDate> <guid
isPermaLink="false">http://www.precisesecurity.com/threats/w32mabezatb/#comment-16579</guid> <description>thank you</description> <content:encoded><![CDATA[<p>thank you</p> ]]></content:encoded> </item> <item><title>By: Netra Tamang</title><link>http://www.precisesecurity.com/worms/w32mabezatb#comment-16193</link> <dc:creator>Netra Tamang</dc:creator> <pubDate>Sun, 30 Oct 2011 14:24:54 +0000</pubDate> <guid
isPermaLink="false">http://www.precisesecurity.com/threats/w32mabezatb/#comment-16193</guid> <description>Woh!!! My pc is infected with worm.win32.mabezat.b it could not be disinfected/neutralised through Kaspersky antivirus any body would help me. Is there any solution for removal ?Thanks</description> <content:encoded><![CDATA[<p>Woh!!! My pc is infected with worm.win32.mabezat.b it could not be disinfected/neutralised through Kaspersky antivirus any body would help me. Is there any solution for removal ?Thanks</p> ]]></content:encoded> </item> <item><title>By: starf1sh</title><link>http://www.precisesecurity.com/worms/w32mabezatb#comment-13499</link> <dc:creator>starf1sh</dc:creator> <pubDate>Tue, 23 Aug 2011 23:19:54 +0000</pubDate> <guid
isPermaLink="false">http://www.precisesecurity.com/threats/w32mabezatb/#comment-13499</guid> <description>tried this one, also used the norton power eraser, not all of the mabezat virus was removed. my pc is still infected and mabezat is still spreading.</description> <content:encoded><![CDATA[<p>tried this one, also used the norton power eraser, not all of the mabezat virus was removed. my pc is still infected and mabezat is still spreading.</p> ]]></content:encoded> </item> <item><title>By: lina shadin</title><link>http://www.precisesecurity.com/worms/w32mabezatb#comment-11748</link> <dc:creator>lina shadin</dc:creator> <pubDate>Thu, 05 May 2011 22:55:50 +0000</pubDate> <guid
isPermaLink="false">http://www.precisesecurity.com/threats/w32mabezatb/#comment-11748</guid> <description>hi, my pc (windows 7) is infected  with mabezat.a virus that my eset antivirus couldnt delete so i followed some of the instructions here i temporarly Disabled the System Restore and i started deleting all the values added to the registry as u instructed above but suddently my pc shut down and now it is unable to start up ... i dont know whats wrong .. plz let me know what to do. thanks</description> <content:encoded><![CDATA[<p>hi, my pc (windows 7) is infected  with mabezat.a virus that my eset antivirus couldnt delete so i followed some of the instructions here i temporarly Disabled the System Restore and i started deleting all the values added to the registry as u instructed above but suddently my pc shut down and now it is unable to start up &#8230; i dont know whats wrong .. plz let me know what to do. thanks</p> ]]></content:encoded> </item> <item><title>By: JOSEPH EL-NAHAS</title><link>http://www.precisesecurity.com/worms/w32mabezatb#comment-11077</link> <dc:creator>JOSEPH EL-NAHAS</dc:creator> <pubDate>Tue, 05 Apr 2011 10:44:36 +0000</pubDate> <guid
isPermaLink="false">http://www.precisesecurity.com/threats/w32mabezatb/#comment-11077</guid> <description>HI NCAN YOU HELP ME TO REMOVE WIN32.MABEZAT WORM VIRUS. THANK YOU</description> <content:encoded><![CDATA[<p>HI NCAN YOU HELP ME TO REMOVE WIN32.MABEZAT WORM VIRUS. THANK YOU</p> ]]></content:encoded> </item> <item><title>By: Abraxas357</title><link>http://www.precisesecurity.com/worms/w32mabezatb#comment-8202</link> <dc:creator>Abraxas357</dc:creator> <pubDate>Mon, 08 Nov 2010 10:43:12 +0000</pubDate> <guid
isPermaLink="false">http://www.precisesecurity.com/threats/w32mabezatb/#comment-8202</guid> <description>Thanks really useful stuff. Mazebat/a/b all seem to react differently and require different approaches, stopping all autorun and blocking shares contained it well enough to allow for the great clensing thx.</description> <content:encoded><![CDATA[<p>Thanks really useful stuff. Mazebat/a/b all seem to react differently and require different approaches, stopping all autorun and blocking shares contained it well enough to allow for the great clensing thx.</p> ]]></content:encoded> </item> <item><title>By: Joy Madalane</title><link>http://www.precisesecurity.com/worms/w32mabezatb#comment-7722</link> <dc:creator>Joy Madalane</dc:creator> <pubDate>Sun, 17 Oct 2010 08:03:12 +0000</pubDate> <guid
isPermaLink="false">http://www.precisesecurity.com/threats/w32mabezatb/#comment-7722</guid> <description>HelloI have the Mezabet virus on my system I think...It creates duplicate folders of almost every folder eg. &quot;My Music&quot; when I open it there&#039;s another &quot;My Music&quot; contained and other files are created all overThis is only in my slave drive, which I use to store music and pictures!How can I remove it</description> <content:encoded><![CDATA[<p>Hello</p><p>I have the Mezabet virus on my system I think&#8230;</p><p>It creates duplicate folders of almost every folder eg. &#8220;My Music&#8221; when I open it there&#8217;s another &#8220;My Music&#8221; contained and other files are created all over</p><p>This is only in my slave drive, which I use to store music and pictures!</p><p>How can I remove it</p> ]]></content:encoded> </item> <item><title>By: senthil nathan</title><link>http://www.precisesecurity.com/worms/w32mabezatb#comment-7246</link> <dc:creator>senthil nathan</dc:creator> <pubDate>Mon, 06 Sep 2010 09:48:34 +0000</pubDate> <guid
isPermaLink="false">http://www.precisesecurity.com/threats/w32mabezatb/#comment-7246</guid> <description>my system has a lot of virus problem</description> <content:encoded><![CDATA[<p>my system has a lot of virus problem</p> ]]></content:encoded> </item> <item><title>By: BilalRj</title><link>http://www.precisesecurity.com/worms/w32mabezatb#comment-6820</link> <dc:creator>BilalRj</dc:creator> <pubDate>Sun, 25 Jul 2010 16:28:55 +0000</pubDate> <guid
isPermaLink="false">http://www.precisesecurity.com/threats/w32mabezatb/#comment-6820</guid> <description>Really thanks ,, It helped :)
Tip: Use Avast it&#039;s the best !!</description> <content:encoded><![CDATA[<p>Really thanks ,, It helped :)<br
/> Tip: Use Avast it&#8217;s the best !!</p> ]]></content:encoded> </item> <item><title>By: Salman</title><link>http://www.precisesecurity.com/worms/w32mabezatb#comment-6361</link> <dc:creator>Salman</dc:creator> <pubDate>Sat, 05 Jun 2010 14:13:57 +0000</pubDate> <guid
isPermaLink="false">http://www.precisesecurity.com/threats/w32mabezatb/#comment-6361</guid> <description>When the virus Win32/Mabezat executed, this worm drops the following files:* C:\Documents and Settings\ tazebama.dl_
* C:\Documents and Settings\ hook.dl_
* C:\Start MenuProgramsStartup \zPharoh.exe
* C:\Documents and Settings[User Name]ApplicationData \tazebama zPharaoh.dat
* C:\Documents and Settings My Documents\ readme.doc .exe
* [Drive Letter c:]: zPharaoh.exe
* [Drive Letter  d:  ]: zPharaoh.infMethod of InfectionThis worm spreads by copying itself to network shares and to removable devices, along with an “Autorun.inf”.Infection starts eithere with manual execution of the infected file or by simply navigating to the folders containing the infected files, whereby the “Autorun.inf” file could cause automatic execution of the worm.* Presence of the files and registry entries mentioned earlier
* Presence of the following autorun.inf file on the root of removable, fixed and network drives:Check your auto run file[ AutoRun]
shell Execute=zPharaoh.exe
shell\open\command=zPharaoh.exe
shell\open\command=zPharaoh.exe
open=zPharaoh.exeIf u find this in the autorun file dude you are also infected by a deadly virus called Win32/Mabezatyou can check hidden files in your system by clicking this link below and download this software called ProcessSHR.exe4shared.com/account/file/PBc_IeYe/ProcessSHR.htmlRemove and clean infected filesGo to this link below and download a tool called &quot; Rmmabez - virus remover tool for Win32/Mabezat&quot;4shared.com/account/file/-vaLNguL/Rmmabez_virus_remover_tool.htmlor go todownload.avg.com/filedir/util/avg_rem_sup.dir/rmmabez/rmmabez.exeFor any help you guys can contact me on my mail id....</description> <content:encoded><![CDATA[<p>When the virus Win32/Mabezat executed, this worm drops the following files:</p><p> * C:\Documents and Settings\ tazebama.dl_<br
/> * C:\Documents and Settings\ hook.dl_<br
/> * C:\Start MenuProgramsStartup \zPharoh.exe<br
/> * C:\Documents and Settings[User Name]ApplicationData \tazebama zPharaoh.dat<br
/> * C:\Documents and Settings My Documents\ readme.doc .exe<br
/> * [Drive Letter c:]: zPharaoh.exe<br
/> * [Drive Letter  d:  ]: zPharaoh.inf</p><p>Method of Infection</p><p>This worm spreads by copying itself to network shares and to removable devices, along with an “Autorun.inf”.</p><p>Infection starts eithere with manual execution of the infected file or by simply navigating to the folders containing the infected files, whereby the “Autorun.inf” file could cause automatic execution of the worm.</p><p> * Presence of the files and registry entries mentioned earlier<br
/> * Presence of the following autorun.inf file on the root of removable, fixed and network drives:</p><p>Check your auto run file</p><p>[ AutoRun]<br
/> shell Execute=zPharaoh.exe<br
/> shell\open\command=zPharaoh.exe<br
/> shell\open\command=zPharaoh.exe<br
/> open=zPharaoh.exe</p><p>If u find this in the autorun file dude you are also infected by a deadly virus called Win32/Mabezat</p><p>you can check hidden files in your system by clicking this link below and download this software called ProcessSHR.exe</p><p>4shared.com/account/file/PBc_IeYe/ProcessSHR.html</p><p>Remove and clean infected files</p><p>Go to this link below and download a tool called &#8221; Rmmabez &#8211; virus remover tool for Win32/Mabezat&#8221;</p><p>4shared.com/account/file/-vaLNguL/Rmmabez_virus_remover_tool.html</p><p> or go to</p><p>download.avg.com/filedir/util/avg_rem_sup.dir/rmmabez/rmmabez.exe</p><p>For any help you guys can contact me on my mail id&#8230;.</p> ]]></content:encoded> </item> </channel> </rss>
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk: basic
Page Caching using disk: enhanced
Database Caching 5/5 queries in 0.002 seconds using disk: basic
Object Caching 417/417 objects using disk: basic

Served from: www.precisesecurity.com @ 2012-02-12 08:08:34 -->
