After the installation of a free program, antivirus program in the computer sends you a warning that your computer is infected by a virus named TrojanDropper:O97M/Poshkod.gen!A? You feel confused because you do not know why it can bypass the intercept of the antivirus program to get in the computer? Where does it come from? How to get rid of it completely
TrojanDropper:O97M/Poshkod.gen!A is a Trojan virus spread in the Internet world by cyber criminals. It has the ability to help cyber criminals monitor the computer user’s online activities in the infected computer. You will get the virus if you download or install some unauthorized free programs, visit hacked websites or accidentally open spam email attachments. It can also take the initiative to attack computers whose security level is relatively low. Please be careful to avoid the malicious online resources on the Internet.
Once TrojanDropper:O97M/Poshkod.gen!A installs in the computer, it is able to change the system files and registry keys to let itself start running immediately when you start your computer. The performance of the infected computer is slow, which will interrupt your work or study in the computer. In addition, the virus can bring in many other dangerous computer virus infections. Therefore, the computer will be vulnerable to long-range attacks. What is worse, its goal is to collect your personal information, including bank account or credit card information and social contact numbers. These collected data are transmitted to the cyber criminals who create the virus. We don’t know where they are hiding and no one can predict how they will use the data. We strongly recommend that you remove it as early as possible before suffering more unnecessary damages and losses. This is a complex computer virus. Although some antivirus programs can quarantine it temporarily, it will pop up again to scare you if it is not removed completely. With its ability to conserve strength and store energy, it roots deep in the computer system and rebirth itself. It can also pretend to be a legal process to avoid most antivirus programs. Therefore, manual removal is the best choice. But if you do not have sufficient professional knowledge, you may cause errors to destroy your system.
1. It has the ability to download additional components and other infections in the target computer in order to fully complete its penetration.
2. It is able to cause system crash and destroy some of your programs in the infected computer.
3. It facilitates the virus makers to intrude your computer remotely without letting you know.
4. It is capable of collecting your browsing history and other private data.
The malicious virus can install itself into the computer system without your consent and awareness. It makes your computer work slowly and implants other nasty infections into the computer. To make things worse, this Trojan is a tool for the cyber criminals to invade the infected computer to steal your information. Through making use of advanced technology, it maintains the ability to combine its components with system files or to generate fake system files, which confuses computer users as well as antivirus programs. They cannot identify it accurately and timely, let alone remove it thoroughly. Therefore, manual removal is the best choice to drive it away from your computer. In this case, you are advised to delete every file generated by it manually so as to spare all later trouble. The manual removal needs to be handled carefully so as to avoid any subsequent damages. Users can follow the manual guide here to have the virus removed instantly.
1. End Relevant Processes
(1). Press Ctrl+Shift+Esc together to pop up Windows Task Manager, click Processes tab
*For Win 8 Users:
Click More details when you see the Task Manager box
And then click Details tab
(2). Find out and end the processes of TrojanDropper:O97M/Poshkod.gen!A
2. Show Hidden Files
(1). Click on Start button and then on Control Panel
(2). Click on Appearance and Personalization
(3). Click on Folder Options
(4). Click on the View tab in the Folder Options window
(5). Choose Show hidden files, folders, and drives under the Hidden files and folders category
(6). Click OK at the bottom of the Folder Options window
*For Win 8 Users:
Press Win+E together to open Computer window, click View and then click Options
Click View tab in the Folder Options window, choose Show hidden files, folders, and drives under the Hidden files and folders category
3. Delete Relevant Registry Entries and Files
(1). Delete the registry entries of TrojanDropper:O97M/Poshkod.gen!A through Registry Editor
Press Win+R to bring up the Run window, type “regedit” and click “OK”
While the Registry Editor is open, search and delete the related registry entries
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\[RANDOM CHARACTERS].exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run ‘Random’
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\run\Random.exe
(2). Find out and remove the associated files
%AllUsersProfile%\random.exe
%AppData%\Roaming\Microsoft\Windows\Templates\random.exe
%AllUsersProfile%\Application Data\~random
%AllUsersProfile%\Application Data\.dll HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Random “.exe”
In short, TrojanDropper:O97M/Poshkod.gen!A is a dangerous virus that can install to the computer without letting you know. It is able to damage your computer system and antivirus software cannot remove it completely. In addition, it makes the infected computer run slowly as a snail and puts other viruses as well as spyware into the computer. If your computer is infected with it, cyber criminals may be able to monitor you secretly. It is a serious threat for your computer and your privacy. You should delete it immediately.
The above manual removal is quite dangerous and complicated, which needs sufficient professional skills. Therefore, only computer users with rich computer knowledge are recommended to implement the process because any errors including deleting important system files and registry entries will crash your computer system. If you have no idea of how to process the manual removal, please contact experts from YooCare Online Tech Support for further assistance.
Published by on May 7, 2014 12:39 pm, last updated on May 7, 2014 12:39 pm
Leave a Reply
You must be logged in to post a comment.