http://forum.lowyat.net/index.php?showtopi...post&p=13500697QUOTE(farique @ Oct 3 2007, 10:39 PM)
For those who are having the same problem with me, you can just download this KillFlash.10.exe and run it. It works well.
Kudos, to the programmer for this program. 
QUOTE
Attached File KillFlash1.0.zip ( 304.67k ) Number of downloads: 586
Kudos to the 587 who unwittingly deleted legit system files & registry entries.
Who would have thought that common sense would fail to prevail.
QUOTE
Comments -Still in beta.Please send any comment or suggestion to freaz89@yahoo.com
FileDescription
Software to remove flash.10 virus from you PC.
FileVersion - 1.0.0.0
LegalCopyright - This is a free software and can be freely distributed.
Made by - freaz@JAD
» Click to show Spoiler - click again to hide... «
File System Modifications
The following file was created in the system:
# Filename(s) File Size File MD5
1 [file and pathname of the sample #1] 329,805 bytes 0x05796FB43A83AC87D4E4AF10A8394244
The following file was deleted:
%System%\regedt32.exe
Note:
%System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
Memory Modifications
There was a new process created in the system:
Process Name Process Filename Main Module Size
[filename of the sample #1] [file and pathname of the sample #1] 815,104 bytes
Registry Modifications
The following Registry Keys were created:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explore
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows
HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\System
The following Registry Key was deleted:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run
The newly created Registry Values are:
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
NoControlPanel = 0x00000000
NoFolderOptions = 0x00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
DisableCAD = 0x00000000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer]
NoFolderOptions = 0x00000000
NotoolBarsOnTaskBar = 0x00000000
NoShellSearchButto = 0x00000000 <..... not a valid registry value
NoRun = 0x00000000
NoFind = 0x00000000
NoTrayItemsDisplay = 0x00000000
NoControlPanel = 0x00000000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explore]
NoFileMenu = 0x00000000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
DisableRegistryTools = 0x00000000
DisableTaskMgr = 0x00000000
[HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\System]
DisableCMD = 0x00000000
The following Registry Values were deleted:
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
MSMSGS = ""C:\Program Files\Messenger\msmsgs.exe" /background"
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
load = ""
The following Registry Value was modified:
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
Shell = "explorer.exe"
This post has been edited by sUBs: Jan 2 2008, 12:29 AM