
Fake Security Center Warning
Just today I ran into a nasty peice of malware called Win32.brontok. It basically does the following:
1. Hijacks your web browswer to a site that says you need to purchase this software to clean your pc
2. Pops up a fake security center warning asking you to enable protection
3. Upon enableing protection it opens you to a web page promoting a fake anti-virus product.
4. Infects memory modules, and dll files (in this case it seemed to be .dll’s in the Google folder)
Some of the side affects of the malware were constant explorer.exe crashes and memory errors for the exporer process. It was really annoying to have exporer crash more than 3 times in a minute, since it made it hard to work in the file system for very long.
How to Remove
To remove win32.brontok, first download Maleware-antibytes from this link:
1. Download Maleware-Antibytes
2. Install Maleware-Antibytes and Run a “Full Scan”
3. Remove all infected objects it finds.
4. Reboot
5. Done!
And thats what removed it for me. If you still are having trouble removing it, you might want to try smitfraudfix to remove browser hijackers. ccleaner would be nice to try out as well, since it does an excellent job cleaning out temporary files and cleaning up the registry.
You can download ccleaner from this link:
http://www.filehippo.com/download_ccleaner/download/79cdedf2243b113d4f269134bfa9a19f/
You can download smitfraudfix from this link:
You can schedule the disk deframenter utility to automatically defragrment your hard drives, by creating a scheduled task.
According to