Ourxin manual removal:
Delete registry values:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mscfs
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cfsbho.BHelper
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\cfsbho.BHelper.1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHelper.MyIEHelper
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHelper.MyIEHelper.1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\cfsbho.DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{B46D3E4A-3F54-497D-AFFD-464AAE8098EF}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16A770A0-0E87-4278-B748-2460D64A8386}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8A4280AD-9B37-4922-A51D-73F3C3A32AF7}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A4BC2506-C00C-4D2E-B47F-0BB4C2C74CCF}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{CE82AFC1-5E4B-4F19-A3E3-4FFF55F3D279}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2511DE40-34A3-4C6A-B1B2-C5C92A2F00BE}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{B46D3E4A-3F54-497D-AFFD-464AAE8098EF}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{16A770A0-0E87-4278-B748-2460D64A8386}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8A4280AD-9B37-4922-A51D-73F3C3A32AF7}
HKEY_USERS\S-1-5-21-1587740722-702901464-1649019846-500\Software\mscfs
Unregister DLLs:cfsbho.dll
Delete files:cfsbho.dll, cfsupd.dll, cfsys.dll, cfs7zd.dll, ibmuuid_.dll, ibmvdr_.dll, linbak.dll, lowlvl.dll, msuuid_.dll, msvendr_.dll
Delete directories:C:\Windows\System\bakcfs
C:\Windows\System32\bakcfs
C:\Winnt\System32\bakcfs
C:\Windows\System\msibm
C:\Windows\System32\msibm
C:\Winnt\System32\msibm
Post Comment: