An immediate removal of Total Security is advised before additional harm can be done on the computer because this rogue program is qualified to modify Windows system files and Registry. It was done to run Total Security every time the computer is started. A Trojan identified associated with it called Trojan Downloader is also capable of connecting to another computer to download more malware.
Proceed to "How to Remove Total Security"
Total Security Image
Files and Folders Related to Total Security
c:\Program Files\TSC
c:\Program Files\TSC\tsc.exe
c:\Program Files\TSC\Sc2C21UvvM.exe
c:\WINDOWS\system32\winsource.dll
%UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\TSC.lnk
%UserProfile%\Desktop\TSC.lnk
%UserProfile%\Start Menu\TSC
%UserProfile%\Start Menu\TSC\Help.lnk
%UserProfile%\Start Menu\TSC\Registration.lnk
%UserProfile%\Start Menu\TSC\TSC.lnk
c:\Program Files\Common Files\System\Uninstall
c:\Program Files\Common Files\System\Uninstall\Uninstall TSC.lnk
Windows Registry Entry Associated with Total Security
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\"[RANDOM NUMBER]" = "%UserProfile%\Application Data\[RANDOM NUMBER]\[RANDOM NUMBER].exe"
HKEY_LOCAL_MACHINE\SOFTWARE\[RANDOM NUMBER]\"pc[RANDOM NUMBER]ins" = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\[RANDOM NUMBER]
HKEY_CURRENT_USER\Software\1FD92E3F7C34799BFB075C41DA05D1FE
HKEY_CLASSES_ROOT\CLSID\{D263FA6D-84CC-48A8-9AF6-C664362B7A5B}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D263FA6D-84CC-48A8-9AF6-C664362B7A5B}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "1FD92E3F7C34799BFB075C41DA05D1FE"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "AntiVirusOverride" = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "FirewallOverride" = "1"
How to Remove Total Security
1. It is best to Print this procedure for your reference. We need to close all applications later.
2. Press Ctrl+Alt+Del to End the malware process and running program. Click on the Processes Tab and highlight the associated process, then click End Process
3. Download MalwareBytes' Anti-Malware on your Desktop.
4. Once downloaded, close all programs and double click the downloaded file to begin installation.
5. Proceed with the installation with the default settings.
6. At the end of the installation, please click on Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware.
7. It will prompt to restart computer. Please reboot your computer.
8. Scan your computer with "Perform full scan"
source : http://www.powerclickz.com/computer-virus/how-to-remove-total-security-virus.html
Tidak ada komentar:
Posting Komentar