Popular Virus Removal Tool

Wednesday, March 6, 2013

How to Remove Trojan:DOS/Alureon.A Completely and Safely

Devastated Trojan:DOS/Alureon.A



Nowadays many people get infected with Alureon malware that infects the Master Boot Record (MBR), among its variant, Trojan:DOS/Alureon.A has plagued most of PC Users so far. According to some studies, trojan:dos/alureon.a attempts to decrypt and execute the contents of a file named "ldr16". Here’s one report from its victim, let’s see how devastated Trojan:DOS/Alureon.A can be:

‘-  Pc crashed and said it had to restart. after restart would not boot Windows. blank screen. can access boot and setup menu but no OS. scanned as a slave drive. scan reports infected with Trojan:DOS\Alureon.A  location of virus is  \\.\physicaldrive1\(mbr)  scan can't clean and I can find no info on this virus. also can't access location for manual delete. ’

However, Spyhunter has been told with different versions of damage caused by Trojan:DOS/Alureon.A. Here’s another damage report:


‘-  One of my office desktop contracted a number of nasty bugs from a website. Was able to remove MOST of them with TrendMicro scan (HZA and HZR.EXE files everywhere...not sure how they got past Trend in the first place)  but machine was still acting nutty, bogging entire Internet feed for network and no DNS...also it would not update TrendMicro when I tried to get the latest signature file. Malicious Software Tool (MS) detects the Trojan: DOS Alureon.A and will not remove it.’

Why is it so? Let’s keep on reading and find a way out in the end.


Analysis on Trojan:DOS/Alureon.A



  • Severity: HIGH
  • Common company: Win64/Sirefef.A, Rootkit.0Access
  • Infiltration way: 1) download freeware and shareware without vigilance; 2) visit spam sites and pop-up ads; 3) randomly open spam email and its contained attachments.

Trojan:DOS/Alureon.A is categorized as a Trojan which is capable of opening up a backdoor. It is through the backdoor that commands manage to be received. Different command causes different damage. But those damages are all heading to one final activity - infect MBR. Master Boot Record can be considered as a mass storage device, information on how files are distributed can be found there. In other word, trojan:dos/alureon.a is trying to extract your confidential information for excessive income by reselling to spammers. That’s why some of its victims get annoying pop ups and redirect issues at the same time.
Apart from stealing the information by technical way, trojan:dos/alureon.a manages to gather more of your information by simply loading down tracking cookies. Be aware of the risk caused by the backdoor. Win64/Sirefef.A and Rootkit.0Access will be frequent caller should there be any vulnerability exist on a machine, causing computer demise.




2 Amazing Suggestions for Removing Trojan:DOS/Alureon.A



Suggestion A: Remove Trojan:DOS/Alureon.A Manually


1. Reboot your computer and log into Safe Mode with Networking.
Step: Reboot your computer. As the computer is booting but before Windows launches, tap the "F8 key" continuously which should bring up the "Windows Advanced Options Menu" as shown below. Use your arrow keys to highlight "Safe Mode with Networking" option and press Enter key.  


2.  Show hidden files and folders (show files and folders that are hidden by Trojan:DOS/Alureon.A)
step:
a) open Control Panel from Start menu and search for Folder Options; 
b) under View tab to tick Show hidden files and folders and non-tick Hide protected operating system files (Recommended) and then click OK;

   

c)  click on the “Start” menu and then click on the “Search programs and files” box, Search for and delete these files created by Trojan:DOS/Alureon.A:


%AppData%\random
C:\WINDOWS\system32\spoolsv.exe
%SYSTEMDRIVE%\*.*
%systemroot%\System32\config\*.sav
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles


4: Please stop the processes related to Trojan:DOS/Alureon.A
Press CTRL+ALT+DEL key to open Task Manager                    



5. Go to the Registry Editor to delete all related entries listed below
 Hold down the Windows key on your keyboard and press the "R" button. Type in "regedit" and hit "Enter" to gain access to the Registry Editor.

                         

Related registries:

HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - I:\WINDOWS\system32\shdocvw.dll
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = :0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Win32\
HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

Attention: Too busy to follow the manual removal solutions? Would you like Trojan:DOS/Alureon.A to be gone automatically and permanently? Why not just Download and Install Spyhunter to make it come true?


Suggestion B: Remove Trojan:DOS/Alureon.A automatically (with SpyHunter)


Step A. Download removal tool SpyHunter

1) Click here or the icon below to Download and Install Spyhunter to deal with your computer issue.



2) Follow the instructions to install SpyHunter
  spyhunter run

spyhunter setup

spyhunter setup

Step B. Run SpyHunter to block Trojan:DOS/Alureon.A

Run SpyHunter and click "Malware Scan" button to scan your computer, after detect this unwanted program, clean up relevant files and entries completely.

 spyhunter3 scan

Step C. Restart your computer to take effect.

Friendly Reminder:

Spyhunter will always be your first and wise choice to protect your computer. It literally can remove Trojan:DOS/Alureon.A and prevent the future infection.Download and Install Free Spyhunter without any hesitation!

>> Check out your computer with the free antivirus program
>> Scan your computer with the amazing security tool