Trojan.Bisrala

Trojan.Bisrala is a computer Trojan that when executed will connect to a remote server to download more threats. Trojan.Bisrala will also delete some legitimate system files and also embed itself to some to make itself run when Windows is started.

Damage Level: Medium

Systems Affected: Windows 9x, 2000, XP, Vista, Windows 7

Manual Removal of Trojan.Bisrala:

1. Temporarily Disable System Restore (Windows Me/XP/Vista/7) . [how to]
2. Update the virus definitions.
3. Restart Windows in SafeMode [how to]
4. Run a full system scan and clean/delete all infected file(s)
5. Delete/Modify any values added to the registry. [how to edit registry]
6. Exit registry editor and restart Windows.

Scan with Norton Power Eraser:
A free removal tool from Norton Antivirus was developed to remove unfamiliar threats without using the traditional AV signatures. Download the tool from this location and start scanning the computer for viruses.

Technical Details and Additional Information:

Other functionalities of this Trojan:
- Download and execute files
- Disable data execution prevention
- Infects system files

Malicious Files Added by Trojan.Bisrala:
%System%\rsvp.dat
%System%\ncpa.dat
%System%\odbccp.dat
%System%\winbja.dat
%System%\ntoskrnl16.exe
%System%\ctfmen.exe
%System%\igpdv16.dll

What to do next...