
| Aliases | [Kaspersky] Hoax.Win32.BadJoke.PcLock.a | ||
|---|---|---|---|
| Typical Symptoms | ETC,Intercept Install/Operation | ||
| Discovered | [korea] 2010-01-20 [Foreign] 0000-00-00 |
||
| Type | Adware | ActiveField | |
| Damage/Distribution | ![]() ![]() |
||
| Origin | others | Encryption | NO |
| Target of infection | Execution | ||
| Scan engine needed |
2010-01-20 [Able to detect & repair]
|
||
[Symptom of Infection] [Hoax.PcLock.32768] changes desktop feature to black and white mode, and icon executing on desktop by mouse is not available.
However, it can be normalized by using windows key like [PIC 3] or key composition like [Ctrl+Shift+Esc] or [Ctrl+Shift+Delete]. [PIC 1] Disabled Feature [PIC 2] Using Windows Key [PIC 3] Windows Key Feature
<File> [Hoax.PcLock.32768] creates files like below. (Temp Folder)\(Random Name).tmpz
<Notation> "(Temp Folder)" could be different by OS and generally this is "C:\Documents and Settings\(User Account)\Local Settings\Temp". |
[How to repair]
1. If you are WinXP/ME users, please be inactivate System Recovery Function.
|