I use spysweeper and it zaps it but evertime I restart my computer it keeps coming back.........How can I kiil it for good.........
KMA said:1. Make sure your system shows hidden files and folders
2. Start your computer in safe mode.
3. Start the registry editor. This is done by clicking Start then Run. (The Run dialog will appear.) Type regedit and click OK. (The registry editor will open.)
4. Browse to the key:
'HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Run'
5. In the right pane, look for a 14-character long random looking value, starting with a number. Remeber the file (*) it points to and delete the 14-character value.
6. Exit the registry editor.
7. Start Windows Explorer and delete:
the file (*) mentioned above.
The trojan uses random filenames and registry entries, but it seems to be pseudo random (?). Extremely hard to detect, Bazooka will try, but will most likely fail.
A clear sign of infection is a 14 character long registry value starting with a number, located in:
'HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Run'.
Another indication of infection is random named processes listed in the Task Manager's process list. Another sign of infections is network connections to rads01.quadrogram.com (66.150.207.200).
We use essential cookies to make this site work, and optional cookies to enhance your experience.
