Antivirus Plus is really a browser hijack Trojan that installs on your pc, causing a fake scanner to look and warn you that viruses and spyware are infecting your pc. The Trojan urges one to buy the "Antivirus Plus" program to get rid of the fake virus and spyware entries. You are able to by hand delete Antivirus Plus by detatching its corresponding files and registry entries while your pc is in safe mode. This method could be time intensive as you'll need to do a malware scan in your system.
Boot your pc in to safe mode by rapidly pressing "F8" as the computer is starting. Select "Safe mode with Networking" utilizing the arrow keys, and press "Enter". Contain the "Windows" key in your keyboard and press "e". This opens Windows Explorer. See a following files utilizing the "+" and "-" signs in the left pane. Right-click each file as you discover it, and choose "Delete". C: \Documents and Settings\All Users\Start Menu\Programs\AntiVirus PlusC: \Documents and Settings\All Users\Start Menu\Programs\AntiVirus Plus\AntiVirus Plus. lnkc: \Documents and Settings\All Users\Start Menu\Programs\AntiVirus Plus\EULA. urlc: \Documents and Settings\All Users\Start Menu\Programs\Startup\AntiVirus Plus. lnkC: \Users\Application Data\avp. icoC: \Users\Application Data\AntiVirus PlusC: \Users\Application Data\AntiVirus Plus\AntiVirus Plus. 70155. dllC: \Users\Application Data\Microsoft\Internet Explorer\Quick Launch\AntiVirus Plus. lnkC: \Users\Desktop\AntiVirus Plus. lnkC: \Users\Start Menu\Programs\AntiVirus PlusC: \Users\Start Menu\Programs\AntiVirus Plus\AntiVirus Plus. lnkC: \Users\Start Menu\Programs\AntiVirus Plus\EULA. urlC: \Users\Start Menu\Programs\Startup\AntiVirus Plus. lnk Click "Start" and type "regedit" (without quotes) in the search box. Press "Enter". The registry editor can look. Navigate through the registry by double-clicking the values in the left pane or clicking the white arrow left of the worthiness. Locate the next registry keys. Right-click each one of the registry keys in the best pane and choose "Delete". HKEY_CLASSES_ROOT\CLSID\C2B5AAB8-2183-4be7-81A6-F11493C45872 HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "AntiVirus Plus" Down load and use a malware removal tool and execute a full scan on your pc. This might take a moment; don't interrupt the scan. Delete or quarantine any malware entries found. Restart the computer in to safe mode and repeat the scan if the scanner finds any malware. Restart your pc and let it boot in to normal mode. Change your homepage right back, if Antivirus Plus hijacked it.
没有评论:
发表评论