Monday, March 17, 2014

How to remove HEUR:Worm.Script.Generic

General introduction about HEUR:Worm.Script.Generic:

HEUR:Worm.Script.Generic is a notorious computer virus Which is capable to infect all versions of Windows operating system including Windows 98/Millennium/NT/2000/ 2003/XP/Vista and Windows 7 and  invades into the target computer through many ways. The visiting of awful web sites, downloading infected application and the running outdated update can offer HEUR:Worm.Script.Generic a chance to infiltrate into your PC.

After getting install into the target PC, HEUR:Worm.Script.Generic  will show its malicious traits. It will drag down the PC performance, automatically download some potential unwanted programs and bring into other kinds of computer viruses by chiseling backdoors in the background.

How annoying HEUR:Worm.Script.Generic is ?

Case one: Hey guys, it's been a while since I've had any issues with my computer here. This message popped up through Kaspersky, virus HEUR:Worm.Script.Generic. Hopefully it can be resolved easily.

Case two: Hi Everyone, Now a day I have facing the Virus of "HEUR:Worm.Script.Generic". This virus create short cuts the original data and hide my original data, Kaspersky Endpoint Security 8, 10 and 10 MR1 did not detect/Delete the virus. I had put this issue on Kaspersky Partner site but there is no reply from Kaspersky. Incident no is INC000002579153. see the attached file which I found on my system.

Case three: I have nasty worm in my system and it is not getting out. I am using kaspersky. It is a updated antivirus and it keeps on giving me HEUR: Worm.Script.Generic virus error. It is detected and not getting out. I had tried various things to fix the issue but still the antivirus keeps on giving me the popup. What should I do to completely remove this virus and protect my system from such threats.


Method one: HEUR:Worm.Script.Generic manual removal guide

Step 1: stop all the malicious processes about HEUR:Worm.Script.Generic
Open task manager by pressing Alt+Ctrl+Del keys at the same time. Or click on the Start button and choose Run option, then type taskmgr into and press OK.



Terminate all the malicious processes of HEUR:Worm.Script.Generic

Step 2: disable any suspicious startup items that are made by HEUR:Worm.Script.Generic.
Click Start menu ; click Run; type: msconfig in the Run box; click Ok to open the System Configuration Utility; Disable all possible startup items generated.


 Step 3: Clean cookies
 Internet Explorer: Tools → Internet Options →the General tab, Delete the Cookies button can be directly seen in IE6, IE7 is to click the Delete Browsing History button then tick Cookies and click Delete.

 Firefox: Tools → Options → Privacy → Remove Individual Cookies → Delete corresponding cookies in the cookies showing box.

Opera: Tools → Preferences → Advanced → Cookies →Delete corresponding cookies in Management Cookies.

Step 4: show hidden files and folders and delete all the following files.
Click the Start button and choose Control Panel, clicking Appearance and Themes, to find Folder Options then double-click on it.


In the pop-up dialog box, click the View tab and uncheck Hide protected operating system files (Recommended).

Delete all the following files belong to HEUR:Worm.Script.Generic
%AppData%\<random>.exe
%CommonAppData%\<random>.exe
C:\Windows\Temp\<random>.exe
%temp%\<random>.exe
C:\Program Files\<random>

Step 5: open Registry Editor to delete all the vicious registries as below
Open Registry Editor by pressing Window+R keys together, then typing into Regedit and pressing Enter.

Delete all the vicious registries as below:

HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\SEAMONKEY.EXE\shell\open\command "(Default)" = "C:\Program Files\SeaMonkey\seamonkey.exe http://www.<random>.com/?type=sc&ts=<timestamp>&from=tugs&uid=<hard drive id>"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main "Default_Page_URL" = "http://www.<random>.com/?type=hp&ts=<timestamp>&from=tugs&uid=<hard drive id>"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main "Default_Search_URL" = "http://www.<random>.com/web/?type=ds&ts=<timestamp>&from=tugs&uid=<hard drive id>&q={searchTerms}"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main "Search Page" = "http://www.<random>.com/web/?type=ds&ts=<timestamp>&from=tugs&uid=<hard drive id>&q={searchTerms}"



Method two: Automatically remove HEUR:Worm.Script.Generic with Spyhunter antivirus software

 

Step 1: click the icon below to download automatic removal tool SpyHunter

 


Step 2: follow the instructions to install SpyHunter



 

Step 3: run SpyHunter to automatically detect and remove HEUR:Worm.Script.Generic .

 


In conlusion:  HEUR:Worm.Script.Generic is a big threat which cannot leave any longer in the system. When you choose the manual removal method to get rid of it, you cannot be too careful to distinguish the harmful files and registries as HEUR:Worm.Script.Generic mutates frequently and uses random tiles to protect itself. If you have spent too much time in manual removing HEUR:Worm.Script.Generic but not make any progress, you can choose automatic method - download and install Spyhunter antivirus software here  to help you remove HEUR:Worm.Script.Generic completely and permanently for you.

>>Download HEUR:Worm.Script.Generic Scanner for Free Here!
>>Download HEUR:Worm.Script.Generic remover Easily Here!

No comments:

Post a Comment