Resolution:
Boot the system in SAFE MODE
WITH NETWORKING.
Download HijackThis. Once downloaded, run a scan and "fix" the following items by selecting them and clicking the fix button.
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = c:\secure32.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = c:\secure32.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = c:\secure32.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = c:\secure32.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = c:\secure32.html
Also Delete the file - c:\secure32.html
Run CCleaner
Run Smitrem
Run a scan with Adaware SE. Remove the infections. ( Remember to Update the Definitions ).
Download Registry Crawler. Run a Scan for Adware and delete all the keys. Also delete all unwanted entries from RUN and RUNONCE.
Finally Run a FULL SYSTEM SCAN using EWIDO ANTI - MALWARE to remove the left over infections. ( Remember to Update the Definitions ).
NOTE : Have tried running a scan with Spysweeper, Counterspy, Spybot but AdawareSE ( to a certain extent ) and EWIDO Anti - Malware seems to be the only two to completely remove the infection. Hence the recomendation to Run Both AdawareSE and EWIDO Anti - Malware. See More ( )
CALL US +1-855-517-2433
(TOLL FREE)

No comments:
Post a Comment