Description of BDS/Rabasheeta.A
BDS/Rabasheeta.A is considered as most dangerous Trojan that could infect Windows system running with Windows 2000, 2003, XP, Vista, 7, Server 2008. This Trojan was discovered recently on October 13, 2012 and also known by common aliases as BackDoor-FIT (Mcafee), Backdoor.MSIL.Agent.gza (Kaspersky), BackDoor.Agent.ASDF (AVG), Trojan.Agent.AXAG (Bitdefender) and other. It exploit system vulnerabilities to allow hackers easily access your computer and steal personal and confidential information via backdoor. Not only this, it will make your system slow and sluggish, display numerous exaggerated security alerts and redirect browser to suspicious websites. It is very important to delete BDS/Rabasheeta.A immediately before it manage to compromise your system security and privacy.How to Get Rid of BDS/Rabasheeta.A Manually
Step 1: Restart your computer in Safe Mode with Networking. Restart your computer. During the start-up process, keep pressing the F8 key constantly. When the Windows menu appears on the screen, please use the up and down arrow keys to move the highlight to “Safe Mode with Networking” and press Enter. Step 2: Terminate BDS/Rabasheeta.A related processes in the Windows Task Manager. Press the keys CTRL+ALT+DEL together and then click on the Windows Task Manager option. Click on “Processes” and start to find out the processes related to the Trojan. End all of them by right clicking on them and selecting the “End Process” option. Step 3: Delete the files infected or downloaded by the malicious Trojan. Open your Local Disk C, navigate to the location of all files below and delete all of them. %Temp% %AllUsersProfile% %AllUsersProfile%\Applicatio Data\.exe %AllUsersProfile%\Applicatio Data\.dll Step 4: Remove the registry entries related to the Trojan. Click on the Start menu and go to Run. Type “regedit” in the command box and press Enter. The Registry Editor will open. Find out and remove all malicious registry entries listed below. HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “ ” HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ Attachments “SaveZoneInformation” = ‘1’ HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “CertificateRevocation” = ‘0’Attention
If you are a regular user, please think twice before modify the system registry by yourself. Incorrect deletion of registry entries will lead to serious consequences. You are suggested to use a BDS/Rabasheeta.A removal tool to clean the infection safely and quickly.
No comments:
Post a Comment