Using the ZeroAccess/Max++ rootkit remover to remove ZeroAccess (Sirefef/MAX++) rootkit.
1. Download the ZeroAccess/Max++ rootkit remover: http://anywhere.webrootcloudav.com/antizeroaccess.exe
2. Double-click on antizeroaccess icon to run it. It will ask you to verify that you want to perform a System scan. Type Y and press Enter.

Once finished, press Enter or any key to continue.
3. If your computer is infected with Zero Access rootkit, you'll see the following warning: Your system is infected!!

Infected file: mrxsmb.sys. In your case it might be different. Type Y and press Enter to perform system cleanup.
You should know see the notification that ZeroAccess rootkit has been successfully removed from the system. Press any key to exit the utility and restart your computer.

4. Run ZeroAccess/Max++ rootkit remover once again to confirm that ZeroAccess/Sirefef/MAX++ rootkit was successfully removed from your computer.

5. Finally, download recommended anti-malware software (direct download) and run a full system scan to remove the remnants of this rootkit from your computer.
It's possible that an infection is blocking anti-malware software from properly installing. Before saving the selected program onto your computer, you may have to rename the installer to iexplore.exe or winlogon.exe. Don't forget to update the installed program before scanning.
Share this information with your friends:
No comments:
Post a Comment