May 5, 2011

Defragmenter.



Defragmenter is a fake computer optimization and analysis program that displays false information so that it can scare you into thinking that there is something wrong with your computer.
Defragmenter is installed via Trojans that display fake error messages on the infected computer. These messages will state that there is something wrong with your computer's hard drive in order to scare you into purchasing the program.
Once installed, Defragmenter will be configured to start automatically when you login to Windows. Once started, it will display numerous error messages when you attempt to launch programs or delete files. It will then prompt you to scan your computer with the program, which will state that there are a variety of errors that it cannot fix until you purchase the program. If you attempt to use the so-called defragment tool it will state that it needs to run in Safe Mode and will then show a fake Safe Mode background. As this program is a scam do not be scared into purchasing the program when you see its alerts.


To further make it seem like your computer is not operating correctly, Defragmenter will also make it so that certain folders on your computer display no contents. When opening these folders, such as C:\Windows\System32\, instead of seeing the normal list of files it will instead display a different folder's contents or make it appear as if the folder is empty. They do this to make it seem like there is further corruption on your hard drive.
Defragmenter also attempts to make it so you cannot run any programs on your computer. If you attempt to launch a program it will terminate it and state that the program or hard drive is corrupted. It does this to protect itself from anti-virus programs you may attempt to run and to make your computer unusable so that you will be further tempted to purchase the rogue.
Removal:
Kill malicious Processes from Task Manager:
  • [random].exe
Location of the infection:
  1. %UserProfile%\Application Data\[random]\[random].exe
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce "[random]" 
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msseces.exe "Debugger" = 'svchost.exe'
Although it is possible to manually remove Defragmenter, such activity can permanently damage your system if any mistakes are made in the process, as advanced spyware parasites are able to automatically repair themselves if not completely removed. Thus, manual spyware removal is recommended for experienced users only, such as IT specialists or highly qualified system administrators. For other users, we recommend  malware and spyware removal applications.

After removing all these files, restart your computer and the issue will be fixed. And don’t forget to do update your Security Software, check the Firewall Settings and the Operating System and finally do a full system scan with the Security Software.

0 comments:

Post a Comment

Related Posts Plugin for WordPress, Blogger...

Search This Blog

Followers

Categories

Twitter Delicious Facebook Digg Stumbleupon Favorites More