Monday, June 20, 2011

How To: Remove Windows 7 Repair Virus / Malware ( Removal Guide )

Windows 7 Repair is a malware that acts as a computer analysis and optimization program. Windows 7 Repair malware usually gets installed via a Trojan that once it infects your computer it will start displaying fake messages suggesting that your computer is at risk and, in order to get rid of these threats, you need to download and install Windows 7 Repair.

Clicking OK on these messages will automatically start the download / install process for the Windows 7 Repair. Once installed on your computer, Windows 7 Repair will start a fake scan and it will display numerous threats and infections on your computer. However, these threats are a forgery in order for Windows 7 Repair to scare you into buying the full version of the program. Do NOT give away your personal information as the so called full version of the program is nothing more than another fake tool.

How To: Remove Windows 7 Repair Virus / Malware ( Removal Guide )

How To: Remove Windows 7 Repair Virus / Malware ( Removal Guide )

The way Windows 7 Repair behaves in order to give you the impression that your system is compromised, is preventing you to run most of the programs whilst displaying fake error messages, not allowing you to access the internet and making some of your files hidden. Follow this guide and you will be able to get rid of these problems.

First of all, you will need to download RKill.exe, Malwarebytes’ Anti-Malware (MBAM) and Unhide.exe. In case Windows 7 Repair will prevent you from accessing the internet then you will need to download these programs on another computer and transfer them on the infected machine via any portable means. Now, let’s get on with the disinfection.

  • You will need to kill all the Windows 7 Repair related applications and processes. In order to do so you will need to run RKill. After doing so, let RKill fully scan your system and ignore any warning messages from Windows 7 Repair. After the scanning is complete do NOT reboot your computer.

*Note that if Windows 7 Repair will prevent you from successfully running RKill then you will need to download and run another renamed version of RKill from the same download link above.

  • Now, let’s solve that internet access problem. You will need internet access during the disinfection process due to the fact that you will need to update MBAM once it comes to that. Windows 7 Repair might prevent you from accessing the internet due to the fact that it has the TDSS rootkit infection attached to itself as well. In order to get rid of TDSS follow this guide. In case you will still be unable to update MBAM then follow this other guide.
  • Run MBAM and start the installation process. While you are at it, make sure to check the buttons labeled Update Malwarebytes’ Anti-Malware and Launch Malwarebytes’ Anti-Malware. Once the installation process is complete, click the Finish button and reboot your computer if MBAM will ask you to do so.
  • MBAM should now automatically start after the system reboot, thus presenting you with a message box and the mail window. Press OK on the message box and then on the main window, navigate to the tab labeled Scanner and then select Perform Full Scan below. Last step, press the Scan button.
  • It might take some time for MBAM to finish scanning your computer so please be patient. After the scan will be complete you will be presented with the full list of threats found on your machine. Check all of them and then press the Remove Selected button. Reboot your computer once MBAM prompts you to do so.
  • Now, your system should be free of Windows 7 Repair but you will still need to be able to see the hidden files that borrowed the hidden attribute from Windows 7 Repair. In order to be able to see your files again either follow this guide or run Unhide.exe.
  • Your computer should now be clean but there’s another thing to consider as a security measure. As Windows 7 Repair and other of these malware infections make their way on your system via vulnerable programs that are already on your system, you should read this Secunia PSI guide in order to get rid of any vulnerability in the future.
Source : http://www.gforgames.com/how-tos/virus-and-malware-removal-guides/remove-windows-7-repair-virus-malware-removal-guide-11434/

No comments:

Post a Comment