Resolve for Surila-E description
A tool that remove Surila-E trojan
Resolve is the name for a set of small, downloadable Sophos utilities designed to remove and undo the changes made by certain viruses, Trojans and worms. They terminate any virus processes and reset any registry keys that the virus changed.
Existing infections can be cleaned up quickly and easily, both on individual workstations and over networks with large numbers of computers.
Troj/Surila-E is a backdoor Trojan which allows a remote intruder to gain access and control over the computer.
Troj/Surila-E includes functionality to access the internet and communicate with a remote server via HTTP.
When first run Troj/Surila-E copies itself to:
and creates a file dodrrr.exe detected as Troj/Surila-D.
Troj/Surila-E modifies the system file sfc_os.dll in an attempt to disable the Windows System File Checker. The Trojan may do this in order to modify further system files.
The following registry entries are created to run msupdate.exe on startup:
Registry entries are set as follows:
Troj/Surila-E can be removed from Windows computers automatically with the following Resolve tools:
SURILGUI is a disinfector for standalone Windows computers. To use it you have to do the following:
· Open SURILGUI.com file from your desktop after downloading it.
· Click on the Start Scan Button.
· Wait for the process to complete.
Command line disinfector
SURILSFX.EXE is a self-extracting archive containing SURILCLI, a Resolve command line disinfector for use by system administrators on Windows networks.
Please comments and give ratings. You may also report of broken or incorrect link using comments box below. Thanks!