Posts Tagged infection

BOUML – Free UML Tool

I usually draw my UML diagrams using Microsoft Visio. But recently I was refered to this free tool, BOUML.

BOUML is a free UML 2 tool box allowing you to specify and generate code in C++JavaIdlPhp and Python.

I downloaded the Windows version, had problems with getting an uncorrupted executable, I had to choose a different mirror site, I chose Japan :P

After the successful installation, my AVG resident shield, detected the below as threats. The site has already warned about such thing if you have (AVG or Ikarus)

If you go to the Resident Shield Manage Exception, you can add that specific file.

I still haven’t used this tool and don’t really know my way around it. But I’m always a fan of free software that promise fast performance and doesn’t require much memory (link). I’m going to whip up some tests to see how well my UML diagrams are transferred to Java classes.

, ,

No Comments

PC Infected: kbppsysguard.exe

My laptop got hit! I was down for most of the day with a trojan that I don’t know how it got installed, I just entered a cooking site, leqafa, and then stuff started popping up!

It disabled my Antivirus and everytime I opened my task manager, it closed it.

I booted in safe mode, F12, and scanned my PC and amazingly, neither AVG nor Ad-aware detected it. I booted back in normal mode and then my anti-spyware detected abnormalities in (…/AppData/Local/…) directory, so I decided to just delete it manually, but couldn’t do that while the malicious software was running, I couldn’t kill the process, thus I was not able to delete the executable.

I booted back to safe mode, it was located under (…/AppData/Local/ywuvh/kbppsysguard.exe) and deleted it, I deleted everything under Temp folder, I then searched my registry for entries (kbppsysguard) and deleted two. I didn’t empty my recycle bin, I’ll tell you why in a minute.

I restarted my PC and customized my scan settings and included the recycle bin and now it detected it! Weird!!

Anyway it took me almost all day to sort this out but thank GOD I managed to remove that silly infection.

I wasn’t able to browse and that seems weird because I successfully authenticated to the university network and got a public IP, but couldn’t browse … think what could be the problem ….

Checked my proxy settings on all of my browsers and it was configured to local host (127.0.0.1)! Removed that and happily browsing :D

5 Comments