Jun 6, 2012

Remove HEUR:Backdoor.Win64.Generic Completely (Step-By-Step Guide)

Kaspersky keeps reporting HEUR:Backdoor.Win64.Generic again and again every time you reboot the computer? Does your computer turn to be unstable and strikingly slow down? Be caution now since your computer is at high risk. Read the following post carefully, it will help you delete this stubborn without any risk.

What is HEUR:Backdoor.Win64.Generic?

HEUR:Backdoor.Win64.Generic is a stubborn Backdoor infection detected by Kaspersky and it sneaks into the target computers without any consent. It always spreads through unknown software and security vulnerabilities. Once it is downloaded,  it prevents any utilities which can lead to removal from running. This type of virus is able to drop harmful files and make several changes on computer settings so that it is not surprised that your PC is running out of order. The first symptom you may find is that the performance of your computer may decrease gradually. Besides, you will see constant pop-up of advertisements or error messages when your computer is online. Like other Backdoors detected by Kaspersky such as Backdoor.win32.zaccess.oun, it aims to gathering essential data like computer name, operating system version, network setup, and hardware/software details from the infected PC and sending to a remote hacker secretly. Undoubtedly, this malware compromises your privacy and security. What’s worse, it is possible to force you to visit websites and advertisements which are not trusted and may lead you to pay money wrongly for worthless products. Thus, to better protect your PC and make sure it can run in a safe network environment, you’d better remove this virus immediately once upon detection.

Trojan infected symptoms:

It can bypass the legit security tools and destroy your computer secretly.

It prevents you from opening some application because the files are corrupted.

It can make your browser redirected to all kinds of malicious websites.

It is able to allow remote hacker access the compromised system for illicit purpose.

Cause:

HEUR:Backdoor.Win64.Generic can infect via many ways:

From malicious drive-by-download scripts from corrupted porn and shareware / freeware websites.

Through spam email attachments, media downloads and social networks.

When clicking suspicious popups or malicious links.

Open unknown email or download media files that contain the activation code of the virus.

Note: No matter how does the virus access your PC, users should know that there are no tools can remove HEUR:Backdoor.Win64.Generic automatically at this moment, it is suggested users not spend much time in downloading or paying any security software which claims can delete this stubborn virus. It is totally useless. To completely get rid of this pest, professional manual guide is needed.

Manual Removal Guides:

1. Reboot your computer to safe mode with networking. As your computer restarts but before Windows launches, tap “F8” key constantly.

2. Show hidden files and folders.

Open Folder Options by clicking the Start button, clicking Control Panel, clicking Appearance and Personalization, and then clicking Folder Options.

Click the View tab.

Under Advanced settings, click Show hidden files and folders, uncheck Hide protected operating system files (Recommended) and then click OK.

3. Open Registry entries. Find out the malicious files and entries and then delete all.

Attention: Always be sure to back up your PC before making any changes.

a. Press the “Start” button and then choose the option “Run”. In the “Open” field, type “regedit” and click the “OK” button.

b. All malicious files and registry entries that should be deleted:

%AllUsersProfile%\Application Data\
%AllUsersProfile%\Application Data\.exe
HKEY_CURRENT_USER\Software\[APPLICATION NAME]\Plugins\[RANDOM NUMBERS]\”JavaScript” = “[JAVASCRIPT]”
HKEY_CURRENT_USER\Software\[APPLICATION NAME]\Plugins\[RANDOM NUMBERS]\”Name” = “FacebookFFIE”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\[APPLICATION NAME]\”Publisher” = “[RANDOM CHARACTERS]

Video Shows You How to Safely Modify Windows Registry Editor:

Manual removal of HEUR:Backdoor.Win64.Generic requires Expertise, Please take caution before performing the steps. If you failed to remove this Malware, you are welcome to contact PC expert to fix the problem.

Published by & last updated on August 18, 2012 4:19 am

Leave a Reply

Problems with your PC, Mac or mobile device?

Live Chat Now

Thanks for using YooCare Services!

Here're some of the support team members who are passionate about their works and support our customers 24/7.

As Seen On