The security warning from my antivirus program shows that my computer has been infected JS:Decode-BTB [Trj] virus. It seems that this Trojan virus lurks in disk C. I have tried to open the specified folder where this JS:Decode-BTB [Trj] virus may exist in, but I can’t find out its related files. Who can help me remove it safely without damaging my system files?
Details of JS:Decode-BTB [Trj] Virus:
JS:Decode-BTB [Trj] Virus is regarded as a destructive Trojan virus which does great harm to your affected computer and poses a threat to the security of your conditional data. This horrible Trojan virus can spread via hacked websites, spam email attachments, and peer-to-peer file sharing and other unsafe online sources. After this JS:Decode-BTB [Trj] virus makes its way to your computer, this Trojan threat will make changes to the registry entries so as to activate itself each time the system boots. Similar to Trojan.Inject.ED Virus and Trojan:Win32/Sefnit.AU Virus, this JS:Decode-BTB [Trj] virus is capable to turn off the firewall and make your antivirus software unworkable. In this way, your infected machine will be more easier to get attacked by other dangerous viruses and malicious programs. Besides, this JS:Decode-BTB [Trj] virus will disrupt your online session by display numerous pop-ups. In addition, your infected computer will run extremely slower than normal and even experience blue screen of death. Worst of all, this JS:Decode-BTB [Trj] virus has the ability to open a backdoor on your compromised computer for cyber crooks to remotely break into your Windows PC and take over it to engage in illegal activities. In order to protect your privacy data from hackers and avoid further damage, you should take immediate action to remove this JS:Decode-BTB [Trj] virus as early as possible.
Malicious Activities of JS:Decode-BTB [Trj]
Virus:
2) JS:Decode-BTB [Trj] Virus changes the registry entry to get itself launched at system startup.
3) JS:Decode-BTB [Trj] Virus reduces your system speed gravely and even causes blue screen of death.
4) JS:Decode-BTB [Trj] Virus downloads harmful viruses and malicious programs into your system.
5) JS:Decode-BTB [Trj] Virus messes up your computer and results in unexpected system failures.
6) JS:Decode-BTB [Trj] Virus makes the firewall unworkable and blocks access to your antivirus.
7) JS:Decode-BTB [Trj] Virus puts your sensitive information at high risk of being leaked to hackers.
As JS:Decode-BTB [Trj] virus is stubborn and dangerous, it is strongly recommended that
you remove it as soon as possible. The following post provides detailed manual
removal guide to help you completely delete related components of JS:Decode-BTB [Trj] virus and fix the problem.
Step 1: Restart
the system in Safe Mode with Networking. Keep press F8 when the machine starts
to boot up.
Step 2: Delete
startup items of JS:Decode-BTB [Trj] virus. Press Win+ R, type “msconfig”
and click OK.
Step 3: Remove
registry entries of JS:Decode-BTB [Trj] virus. Press Win+R to open Run,
type “regedit” and hit OK.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run\random
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System “DisableRegedit” = 0
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Winlogon
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System “DisableRegedit” = 0
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Winlogon
Step 4: Show hidden files and delete related files of JS:Decode-BTB [Trj] virus. Click Start Menu, select Control Panel, and search Folder Option.
C:\windows\system32\drivers\mrxsmb.sys(random)
%AllUsersProfile%\Application Data\.dll
%AllUsersProfile%\Application Data\.exe
%AllUsersProfile%\Application Data\.dll
%AllUsersProfile%\Application Data\.exe
No comments:
Post a Comment