TR/Winad A - fiese Virenmöpp |
|
wenn man/frau ihn hat, ist Arbeit angesagt:
here's the manual removal:
disable your system restore, get the latest defs for your anti-virus, adaware and spybot.
reboot into safe mode.
scan your computer with all of these and delete all files they come up with.
next:
do a control alt delete to open up box showing your process list and do this
Kill these processes if they exist:
winad.exe
WNAD.EXE
next go into your registry and delete these registry values:
HKEY_CLASSES_ROOT\clsid\{53d3c442-8fee-4784-9a21-6297d39613f0}
HKEY_LOCAL_MACHINE\software\classes\clsid\{53d3c442-8fee-4784-9a21-6297d39613f0}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\brows
er helper objects\{53d3c442-8fee-4784-9a21-6297d39613f0}
next do a search for this dll and delete it.
winad2.dll
next delete these files if found in your windows and or windows system32 directory:
winad.exe,
winad2.dll
wnad.exe,
wnad.dat,
wnad-update.exe
also delete the entry WNAD found in this registry key:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\WNAD
reboot into normal mode and re enable your system restore.
Quelle: Computing.net
__________________
Bigbrother? - never heard of
|