Softpedia
 

WINDOWS CATEGORIES:



GLOBAL PAGES >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
WEEK'S BEST
  • Sticky Password FR...
  • Parallels Workstat...
  • ESET NOD32 Antivir...
  • BitDefender Total ...
  • WinPatrol 24.6.201...
  • PerfectDisk Free D...
  • Adobe Photoshop CS...
  • PerfectDisk Profes...
  • Windows 8 Consumer...
  • Atlantis Word Proc...
  • Home > Windows > Antivirus > Removal Tools
     Report malware

    Resolve for Enfal 1.07

    download button

    Downloads: 1,215  Tell us about an update
    User Rating:
    Rated by:
    Good (3.1/5)
    18 user(s)
    Developer:

    License / Price:

    Size / OS:

    Last Updated:

    Category:

    Freeware / $0
    78 KB / Windows All

    C: \ Antivirus \ Removal Tools

     Read user reviews (0)  Send to friend   Follow (0 users)

    Resolve for Enfal description

    A tool that removes Enfal trojan

    Resolve is the name for a set of small, downloadable Sophos utilities designed to remove and undo the changes made by certain viruses, Trojans and worms. They terminate any virus processes and reset any registry keys that the virus changed. Existing infections can be cleaned up quickly and easily, both on individual workstations and over networks with large numbers of computers.

    Troj/Enfal-A is a Trojan for the Windows platform.

    Troj/Enfal-A includes functionality to:
    - inject multiple threads into the process EXPLORER.EXE
    - download code from the internet

    When run Troj/Enfal-A copies itself to dismgnt.exe and winkrnl.exe.

    Troj/Enfal-A modifies the following registry entry to run itself on Windows Logon:

    HKLMSOFTWAREMicrosoftWindows NTCurrentVersionWinlogon
    Userinit
    userinit.exe,DisMgnt.exe

    Troj/Enfal-B is a backdoor Trojan for the Windows platform.

    Troj/Enfal-B includes functionality to access the internet and communicate with a remote server via HTTP.

    When Troj/Enfal-B is installed the following files are created:
    DisMgnt.exe
    NtApi.exe
    Winkrnl.exe
    acetempkb791024.l0g

    where NtApi.exe is an archiver application.

    Troj/Enfal-B injects multiple threads into the process EXPLORER.EXE.

    The files DisMgnt.exe and Winkrnl.exe are detected as Troj/Enfal-A.

    Registry entries are set as follows:

    HKCUSoftwareMicrosoftWindowsCurrentVersionExplorerAdvanced
    ShowSuperHidden
    0

    HKLMSOFTWAREMicrosoftWindows NTCurrentVersionWinlogon
    Shell
    Explorer.exe,

    Windows disinfector
    BDLAAGUI is a disinfector for standalone Windows computers. To use it you have to do the following:
    · Open BDLAAGUI.com file from your desktop after downloading it.
    · Click on the Start Scan Button.
    · Wait for the process to complete.

    Command line disinfector
    ENFALSFX.EXE is a self-extracting archive containing ENFALCLI, a Resolve command line disinfector for use by system administrators on Windows networks.

     Softpedia guarantees that Resolve for Enfal 1.07 is 100% CLEAN, which means it does not contain any form of malware, including spyware, viruses, trojans and backdoors. [read more >]


    TAGS:

    virus protection | trojan remover | trojan protection | Enfal-A | Enfal-B | trojan



    HTML code for linking to this page:


    Go to top

    WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

    SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM