2014年12月14日星期日

How to Remove HEUR.Trojan.Win32.Generic – Removal Guide

I use the free version of Kaspersky Anti-Virus for my computer security. This morning I had a scan of the system and it detected a virus called HEUR:Trojan.win32.Generic in C:\windows\dnokua.exe. I tried to get rid of it but Kaspersky failed to move it to quarantine. Does anyone know how to get rid of this virus? I have been struggling removing it for hours but with no luck.

More details of HEUR.Trojan.Win32.Generic
HEUR.Trojan.Win32.Generic is a computer Trojan that usually arrives on the computer in deceptive ways and leads to many problems. It is malicious and may secretly do damage to your computer and steal your private information. Once installed, it will start to perform illicit or malicious actions and cause data loss or information leak. The concealed instructions are contained in the Trojan file by its creator.

During installation, the Trojan creates new files and registry entries and also alters several files and registry values. In this way, it enables to run automatically every time you start the infected machine. It then carries out malicious tasks like modifying/deleting data on your PC, consuming a large amount of system resources and disrupting the Internet connection. As a consequence, you may encounter constant system errors, data lost, slow PC performance and unstable network connection and other problems. What’s worse, it may give the Trojan creator or remote hacker remote access to your infected computer. As the Trojan is created to compromise computers and make money, the attackers will obtain the data like personal financial information and website logins and passwords after they gain unauthorized access to the infected PCs. Since the Trojan may infect files and damage the system, drop other dangerous parasites or steal your sensitive information, you have to get rid of it as soon as possible once you notice its presence.

Note: It is not easy to delete HEUR.Trojan.Win32.Generic manually for those computer newbie. If you are afraid of making mistakes during Trojan removal, please use a professional malware removal tool like SpyHunter mentioned in this post to safely and completely get rid of it.

How does HEUR.Trojan.Win32.Generic spread?

Usually, the Trojan spread in deceptive ways. It can be distributed through an e-mail attachment, or hiding in another executable program like a free game, a screen saver or a video. Running the program installs the Trojan on your computer. Once you run the infected program, it in fact turns out to be a Trojan and the trouble begins. Please note that if your click on a pop-up that is designed to initiate a download, the Trojan can also invade your PC silently.

To protect your PC from such Trojans, you need to pay more attention to the browsing activity:

Don’t download programs from unsecure websites. If you download a pirated program from unknown sources, it is possibly that many unwanted additional programs may be downloaded and installed at the same time.

Be vigilant to those emails from strangers. If you receive an e-mail that from a friend asking you to view this fantastic new program or look at a file, please not open it until you ask your friend to confirm it. Otherwise your may be infected once you open the attachment file.

The messages from instant messaging applications may be also malicious. If a Facebook account of your friend is hacked and has sent out personalized messages telling you to see an exciting new video or so, please not click on it. If you do that, a hidden Trojan horse may attack your computer.

How to get rid of HEUR.Trojan.Win32.Generic from your computer?
In this post, there are two methods for you to clear the Trojan effectively from computer. You can choose to automatically delete the threat by using a third party malware removal tool – SpyHunter or manually erase the components of the Trojan step by step. If you are not sure about the manual removal, please eliminate the malware with an excellent removal tool.

Method1: Remove HEUR.Trojan.Win32.Generic by using SpyHunter
SpyHunter is a security tool which is able to easily detect, remove, and protect your PC from the latest malware attacks. If the regular antivirus programs fail to pick up or delete the latest viruses or Trojans on your computer, please try SpyHunter. Its malware detection and removal definitions are updated daily, which enables you to find out any newly threats and clean up them effectively.

Thus, when your PC is infected, follow the guide below to install the tool and scan your system for threats then remove them rapidly.

Click the icon below to download SpyHunter.

Save the file on your computer.

Run the file and install it according to the instructions.

After installation, click Scan computer now to perform a scan of your system.

When the scanning is finished, select all the threats detected and remove them.

Restart your computer and the system will be clean again.

Method2: Delete HEUR.Trojan.Win32.Generic manually with several steps
In addition to the auto removal guide above, you can also remove the malicious Trojan manually by deleting its files and registry entries from the PC by yourself. But please note that the manual removal method requires you to have enough computer knowledge and skills. Otherwise, you may end up damaging the system seriously if you delete some vital files by mistake.

Step1: Restart your computer in Safe Mode.

For Windows 7, to enter Safe Mode, restart your PC then press F8 key repeatedly before the Windows 7 splash screen appears.

When Advanced Boot Options screen shows up, use the up and down arrow keys to highlight Safe Mode. Press Enter to proceed.

For Windows8, if your computer is still running normally, you can enter Safe Mode by changing System configuration.

Press Win key + R to get the Run dialog. Type “msconfig” (without the quotes) and click OK. Then System Configuration window will open.
In the Boot tab, check Safe boot, followed by the type of Safe Mode that you want to achieve and click Apply.

When you reboot your machine afterwards, it will start up in Safe Mode. If you want to get back to the normal operation after the Trojan is gone, just launch msconfig again, and uncheck the Safe boot option.

Step2. Delete the files created by the HEUR.Trojan.Win32.Generic.

First of all, you may need to change the Folder Options settings to show the hidden and protected files because the Trojan may create its files in hidden folders.

For Windows 7, click Start button, go to Control Panel, go to Appearance and Personalization and click Folder Options.

Click the View tab, under Advanced settings, click Show hidden files, folders, and drives, and then click OK. If necessary, uncheck Hide protected operating system files.

For Windows 8, click the Start menu and enter “folder options” into the Search field. Select Folder Options from the search results.

Click the View tab and click the option for “Show hidden files and folders”. Then click Apply.

Then search for the files of the Trojan and then delete them completely.

Step3. Delete the registry entries created by the Trojan.

For Windows7/8/Vista, to open registry editor, click Start button, type regedit in the search field and press Enter.

Next, click on Yes when you are prompted by the UAC (as showed below)

When the Windows registry editor opens, search for the registry keys or entries generated by the Trojan and delete them.

Step4. Restart your computer in normal mode.

After all the components of the Trojan have been erased, reboot your PC in normal way and the Trojan will be gone.

Summary:
HEUR.Trojan.Win32.Generic is malware that may do harm to your computer system. It may modify your computer settings and steal your confidential information. If the installed antivirus programs cannot remove this Trojan completely, follow the instructions in this post and you can successfully get rid of it. Frankly, it’s not suggested people to remove HEUR.Trojan.Win32.Generic manually because they may delete the wrong files or fail to delete all its hidden files. If you don’t want to take a risk of harming the system, you’d better use an excellent antivirus program like SpyHunter to scan for PC and remove all the malicious files of the Trojan thoroughly.

Attention: Don’t know how to deal with HEUR.Trojan.Win32.Generic or other stubborn malware on your computer? Don’t want to restore your system because of the infection? Here we recommend you to download and install SpyHunter on your computer to perform a scan of the system and then clear all the cyber threats on your PC thoroughly!

没有评论:

发表评论