VirusBursters manual removal:
Kill processes:
virusbursters.exe
Delete registry values:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\VirusBursters
HKEY_CLASSES_ROOT\TypeLib\{ACF3DAB0-D308-4B7A-BFE3-E6C0FAFEB1E7}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{ACF3DAB0-D308-4B7A-BFE3-E6C0FAFEB1E7}
HKEY_LOCAL_MACHINE\SOFTWARE\VirusBursters
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VirusBursters
Unregister DLLs:cfltygd.dll, dcvwaah.dll, fmrmhc.dll, impgsje.dll, jbtazy.dll, okkmtv.dll, rrtcany.dll, sacskza.dll, veklo.dll
Delete files:virusbursters.exe, cfltygd.dll, dcvwaah.dll, fmrmhc.dll, impgsje.dll, jbtazy.dll, okkmtv.dll, rrtcany.dll, sacskza.dll, veklo.dll, virusburster.ini
Delete directories:C:\Program Files\VirusBursters
Misc:Exact file location:
virusbursters.exe, virusbursters.ini - C:\Program Files\VirusBursters
cfltygd.dll, dcvwaah.dll, fmrmhc.dll, impgsje.dll, jbtazy.dll, okkmtv.dll, rrtcany.dll, sacskza.dll, veklo.dll - C:\WINDOWS\System, C:\WINDOWS\System32 or C:\WINNT\System32
Domain Name: VIRUSBURST.COM (195.225.177.121)
Registrant:
Burst Technology GesmbH
Judi Stewart (judi.stewart@gmail.com)
Davidgasse 87
Vienna
null,A-1100,
AT
Tel. +431.3365073
AVOID THIS DOMAIN AND THIS IP! Better block them in your Hosts file.
Post Comment: