Tuesday, March 25, 2014

How to Remove TROJAN.P2P.WORM Virus

Malwarebytes did a scan and found the TROJAN.P2P.WORM.  I removed it but am not sure if it's all gone or merely finding out in other locations.  I have noticed that my computer up and freezes at will and is slower than usual.  It just hasn't been acting like its normal self.  So I decided to call in the big guns (you guys) to help rid me of whatever germs have infiltrated my computer. 

TROJAN.P2P.WORM is a nasty Trojan horse which may cause a lot of computer issues once invades into the target PC. Here are the malicious behaviors of TROJAN.P2P.WORM:

1.TROJAN.P2P.WORM will cause the poor running speed by eating a plenty of computer resources in the background.

2. TROJAN.P2P.WORM will automatically download a lot of useless software without users’ permission.

3. TROJAN.P2P.WORM may bring other kinds of computer viruses like Trojan horse, browser hijacker, spyware, etc into the infected PC sneakily by chiseling up backdoor in the background.

4. TROJAN.P2P.WORM may change the browses settings and system settings unauthorized, for instance, TROJAN.P2P.WORM virus may add its components to the startup menu to make it run immediately as soon as the PC is started.

5. As time pass by, TROJAN.P2P.WORM virus will steal the confidential information in the infected PC by keeping track of the browsers history, gathering search terms and recording personal data.

All in all, TROJAN.P2P.WORM is a big threat to your PC, you should remove it as soon as possible before it makes more damage to the operating system. Follow the guide as below to remove this nasty Trojan horse right now.

Method one: Manually remove TROJAN.P2P.WORM infection:


1. Please restart the computer and put it in Safe mode with Networking. 
Here’s the guide: Restart the computer upon the locking screen and start hitting F8 key repeatedly when PC is booting up again; if successfully, Safe mode options will show up on the screen for you to select. Please use arrow keys to highlight Safe mode with Networking option and hit enter key. System will be loading files into this mode afterward.



2. Disable any suspicious startup items that are made by infections.
Here’s the guide: Click Start menu ; click Run; type: msconfig in the Run box; click Ok to open the System Configuration Utility; Disable all possible startup items generated.



3. Stop all the malicious processes
Here is the guide: Open task manager by pressing Alt+Ctrl+Del keys at the same time. Another way is to click on the Start button and choose Run option, then type taskmgr into and press OK.




Terminate all the processes about the virus



4. Show hidden files and folders and delete all the following files.
Here is the Guide: click the Start button and choose Control Panel, clicking Appearance and Themes, to find Folder Options then double-click on it. 




In the pop-up dialog box, click the View tab and uncheck Hide protected operating system files (Recommended).


Delete all the infected files
%AppData%\<random>.exe
%CommonAppData%\<random>.exe
%temp%\<random>.exe
C:\Program Files\<random>
C:\Windows\Temp\<random>.exe

5. Open Registry Editor to delete all the vicious registries
Here is the guide: open Registry Editor by pressing Window+R keys together.(another way is clicking on the Start button and choosing Run option, then typing into Regedit and pressing Enter. )




Delete all the vicious registries as below:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main "Search Page" = http://www.<random>.com/web/?type=ds&ts=<timestamp>&from=tugs&uid=<hard drive id>&q={searchTerms}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main "Start Page" = http://www.<random>.com/?type=hp&ts=<timestamp>&from=tugs&uid=<hard drive id>
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Search "CustomizeSearch" = http://www.<random>.com/web/?type=ds&ts=<timestamp>&from=tugs&uid=<hard drive id>&q={searchTerms}
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TabbedBrowsing "NewTabPageShow" = "1"
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main "Start Page" = HKEY_LOCAL_MACHINE\SOFTWARE\<random>Software
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Wpm

Video on how to get rid of Trojan horse:




Method two: automatically remove TROJAN.P2P.WORM with SpyHunter antivirus. 

SpyHunter is a powerful, real-time anti-spyware application that designed to assist the average computer user in protecting their PC from malicious threats like worms, Trojans, rootkits, rogues, dialers, spyware, etc. It is important to notice that SpyHunter removal tool works well and should run alongside existing security programs without any conflicts.

Step 1. Download SpyHunter by clicking on the icon below.

 

Step 2. Follow the details to complete the installation process. (Double click on the download file and follow the prompts to install the program.) spyhunter runspyhunter setup spyhunter setup

Step 3. After the installation, run SpyHunter and click “Malware Scan” button to have a full or quick scan on your computer.



Step 4. Tick "Select all" and press "Remove" button to get rid of all the detected threats on your computer.




Please be careful that the manual clean requires expert skills to handle. If you’re not that computer savvy, it will be very risky to process the instructions above on your own. To get TROJAN.P2P.WORM resolved safer and quicker, you're advised to download Spyhunter – the famous antivirus software here to save your time and remove all the possible malware infection completely from your system.

>>Scan Your PC and Remove TROJAN.P2P.WORM For Free!
>>Download TROJAN.P2P.WORM Automatic Remover Here!

No comments:

Post a Comment