Monday 13 January 2014

How to Completely Remove Trojan:JS/Febipos.E From Your Computer?

Your computer infected by Trojan:JS/Febipos.E? Don’t know how to get rid of it from your PC? Frankly, if your computer gets infected by this threat, it will be at risk. You should get rid of it as soon as possible before it causes more troubles. Follow the guide below and learn to remove the Trojan completely.
More information about Trojan:JS/Febipos.E:
Trojan:JS/Febipos.E is a newly released destructive Trojan horse which can damage the targeted computers severely. Once it gets into your PC, remote hackers can easily gain access to and control your computer system and steal your sensitive information. One trait of this Trojan is that it can hijack your facebook to like unwanted page or post, post something or comment on some contents without your permission. It can also send messages which contain itself and other malware to your facebook friends. In this way, it can spread more PCs and steal more people’s data. This Trojan may install itself in your system while you are using Internet explorer or chrome to visit any unknown site or download freeware programs from Internet unwarily. It can also spread via spam email attachments or unknown links.
Usually, you won’t realize this Trojan is installed until you do a scan of the computer. If your PC is infected by this Trojan, your browsing activities will be interrupted and the web browser is also hijacked. A lot of unwanted, irrelevant and potentially hostile websites will open automatically when you use the infected web browser. Moreover, it can open a backdoor on your computer so that attackers can access the computer without your knowledge. Your important personal information may be stolen.
Since Trojan:JS/Febipos.E is so dangerous, , for the sake of your security and computer data, you need to get rid of it promptly. If antivirus program on your PC cannot fix the problem, follow the steps below to remove Trojan:JS/Febipos.E completely.
Trojan:JS/Febipos.E removal guide:
Step 1. Boot your computer in Safe Mode.
Start your computer and keep pressing F8 constantly before Windows loads. Choose Safe Mode and then press Enter.

Step 2. Delete the malicious files of the Trojan.
Click Start button, click Folder Options in Control Panel. Under View tab, select Show hidden files and folders and uncheck Hide protected operating system files (Recommended), and then click OK.

Then search for and delete the files below.
%UserProfile%\Application Data\Microsoft\[random].exe
%System Root%\Samples
%User Profile%\Local Settings\Temp
%Documents and Settings%\All Users\Start Menu\Programs\Trojan:JS/Febipos.E
%Documents and Settings%\All Users\Application Data\Trojan:JS/Febipos.E
doguzeri.dll
3948550101.exe
3948550101.cfg
%Program Files%\Trojan:JS/Febipos.E
%Program Files%\Trojan:JS/Febipos.E
C:\ProgramData\[random numbers]\
Step 3. Delete the registry entries created by the Trojan.
 To open Windows Registry Editor, click Start, go to Run, type regedit in the box and click OK.

Search for the following registry entries and delete them.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msmpeng.exe “Debugger” = ‘svchost.exe’
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msseces.exe “Debugger” = ‘svchost.exe’
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Trojan:JS/Febipos.E
HKEY_LOCAL_MACHINE\SOFTWARE\Trojan:JS/Febipos.E
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings WarnOnHTTPSToHTTPRedirect = 0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings WarnOnHTTPSToHTTPRedirect = 0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore DisableSR = 1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ekrn.exe “Debugger” = ‘svchost.exe’
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msascui.exe “Debugger” = ‘svchost.exe’
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run 3948550101
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “xas”
HKEY_CURRENT_USER\Software\Trojan:JS/Febipos.E

Suggestion:
If you are not a computer expert, it is not suggested that you delete Trojan:JS/Febipos.Emanually because the manual steps above require you to have enough computer skills.  You may end up damaging your computer severely of you delete wrong files or registry key which contains information and settings for all the hardware, operating system software etc during the manual removal. To avoid this situation, download and install a professional removal tool like Mighty Uninstaller to delete the files and registry entries of the trojan automatically. After all the leftover files and registry entries of the threat are deleted, you can successfully get rid of the Trojan.

Tuesday 7 January 2014

Learn How to Get Rid of Aartemis.com Redirect Virus Completely?


Always redirected to Aartemis.com each time you start the web browser? Don’t have a clue why your browser behaves weirdly? Take it easy. Read this post and you will know what is wrong with your computer and how to get rid of the browser hijacker completely?
Description of Aartemis.com
Aartemis.com is a website which often hijacks the web browser (such as Internet Explorer, Google chrome, or Firefox) to its domain with the help of other programs on the Internet. The website itself is not a virus. However, it is utilized by third parties to display their ads or sponsored links to boost advertising. Some malware can be also delivered to the target computers through this website. It is like a platform to display various advertisements. Once installed, the browser hijacker changes your homepage and modifies the browser settings without your permission. A tracking cookie, which is designed to keep track of how many times you visit a website and how long you stay, what your IP address is, and other web surfing activities, may be installed to the browser at the same time. Then all the information collected by it could be sent back to the cookie’s host site. It is very dangerous for you to leave the browser hijacker too long on your computer. As soon as you find that threat, please get rid of Aartemis.com as soon as possible.
You may wonder how the Trojan invades your machine. In fact, this infection is distributed through several means. For instance, malicious websites, or legitimate websites that have been compromised, may drop this Trojan your PC when you view such sites. This drive-by-download often happens surreptitiously but you don’t realize anything. Another method used to propagate this Trojan is the spam emails containing infected attachments or links to malicious websites. The threat may also pretend to be a useful piece of software and deceive you into downloading and installing it. The Trojan is also bundled with freeware on the internet.
To protect your PC, please delete it as soon as possible. Follow the solutions in this post to get rid of it.
Solutions to Aartemis.com redirect removal:
Step 1. Remove the program bundled with the adware that causes the pop-ups.
Windows XP: Click Start> Control Panel> Add Remove programs> Select the suspicious program > Click on Remove.

Windows 7: Click Start> Control panel> Uninstall a program/Programs > Programs and Features> Select the related applications> click on Uninstall.

Step 2. Delete the unknown add-ons on the browsers.
Google Chrome
Click on the Customize icon (wrench or 3 bar icon) next to the address bar and navigate to Tools > Extensions. Look for the related extension and remove it by clicking the trashcan icon next to them.
Mozilla Firefox
Type Ctrl + Shift + A to open Add-ons Manager page. Search for the suspicious add-on and remove it.
Internet Explorer
Click Tools and select Manage add-ons. On the Toolbars and Extensions tab, find out the suspicious add-on and remove it if located.
How to delete Aartemis.com redirect virus more quickly and easily?
Do you find it difficult to remove Aartemis.com redirect virus step by step with the instructions above? Do you have trouble deleting some extensions or programs? If so, use a professional removal tool to deal with the browser hijacker. A professional removal tool like Mighty Uninstaller can help you delete the adware or other malware completely and quickly. It is a killer to those stubborn programs and files. When your computer is infected by adware or other malicious programs, you can use this third party utility to clear them.