How to Clean and Remove Trojan.Win32.Obfuscated.gx, Trojan.Win32.agent.akk, Trojan.Zlob and Etc.如何清潔和移除trojan.win32.obfuscated.gx , trojan.win32.agent.akk , trojan.zlob等。
The system constantly prompts a “Critical System Error!” pop up message saying “Your browser was infected by Trojan.Win32.Obfuscated.gx.該系統不斷提示“的關鍵系統錯誤” !彈出的訊息,他說: “您的瀏覽器是感染trojan.win32.obfuscated.gx 。 You need to clean your system immediately, in other case it can be crashed soon!您需要清潔您的系統,立即在其他情況下可以不久墜毀,機上! Click OK to download the high-tech antispyware protection software!單擊確定以下載的高科技反間諜軟件保護的軟件! (Recommended).” The pop up appears randomly, such as when opening a URL using IE, clicking on a link on web page or clicking on a file item in Windows Explorer. (推薦) 。 “彈出隨機出現的,例如,當用戶打開一個網址使用IE ,點擊一個鏈接的網頁或點擊一些文件把項目在Windows檔案總管。
If users ‘infected’ click on OK button to download the high-tech antispyware remover, an executable with file name as defender-install.exe will be offered.如果用戶感染'後點擊OK按鈕,下載高科技的反間諜器,一個可執行文件名稱作為後衛- install.exe將提供。 Beside, the Google, Yahoo!旁邊, Google ,雅虎! and Windows Live search results may also be hijacked where clicking on links in search results will direct users to incorrect and misleading websites rather than intended sites.和Windows Live搜索結果也可能是被劫持的地方點擊鏈接,在搜索結果將直接用戶不正確及具誤導性的網站,而非意圖的網站。 Worse of all, the infection warning message may appear in the search results page too.更糟的是,感染的警告訊息,可能會出現在搜索結果頁。
Trojan.Win32.Obfuscated.gx (can also be known as Trojan.Win32, Trojan.Win32.agent.akk, Trojan.Zlob, Trojan.Zlob-Xa, Trojan.Win32.LinkReplacer, Trojan.Win32.StarField, Trojan.Win32.Startpage.fq, Trojan.Agent, Trojan.Win32.Gorshok.a, Worm.Win32.Sober, Trojan.Vundo, Trojan.KillAV, Trojan.Win32.Patched, Trojan.Win32.CP4000, Trojan Win32/Qoologic, Trojan Win32.Murlo and other unknown trojan) is in essence not a virus by itself, instead is a malicious trick by new rogue anti-spyware program such as IE Defender or Files Secure to con users by displaying one of the Trojan listed above as their scan results in fake system security alerts, to mislead and trick users into downloading and subsequently paying to buy the rogue antispyware program just to simply remove the Trojan that they planted on users’ computer themselves. trojan.win32.obfuscated.gx (也可以被稱為trojan.win32 , trojan.win32.agent.akk , trojan.zlob , trojan.zlob - XA事務, trojan.win32.linkreplacer , trojan.win32.starfield , trojan.win32 。 startpage.fq , trojan.agent , trojan.win32.gorshok.a , worm.win32.sober , trojan.vundo , trojan.killav , trojan.win32.patched , trojan.win32.cp4000 , win32/qoologic特洛伊木馬病毒,特洛伊木馬病毒的Win32 。 murlo和其他未知的木馬)是在本質上不是病毒本身,而非是惡意的伎倆新的無賴反間諜軟體程式,如即Defender或檔案的安全情況向用戶展示一個木馬上面列出的,因為他們的掃描結果在假警報系統的安全性,誤導和誘騙用戶下載並隨後支付購買無賴反間諜程序只是簡單地移除特洛伊木馬病毒,它們種植在用戶的電腦本身。
The Trojan.Win32.Obfuscated.gx Trojan or the malware can infect a computer through installing a fake video codec which is asked to install when playing video, usually adult contents and sexually explicit videos downloaded from P2P sharing sites or torrents, such as the infamous Edison Chen sex photos scandal.該trojan.win32.obfuscated.gx木馬或惡意軟件能感染的計算機,通過安裝一個假視頻編解碼器是問安裝時,播放視頻,通常是成人的內容和露骨的色情影片下載的P2P分享網站或急流,如臭名昭著的陳冠希性別照片醜聞。
There are various way to safely remove Trojan.Win32.Obfuscated.gx, Trojan.Win32, Trojan.Win32.agent.akk or Trojan.Zlob.有很多不同的方式安全地移除trojan.win32.obfuscated.gx , trojan.win32 , trojan.win32.agent.akk或trojan.zlob 。 Most new antivirus and anti-spyware programs updated with latest signature should be able to detect and delete and Trojan horse.最新的防病毒和反間諜軟體程式更新最新的病毒碼,應該能夠偵測並刪除和特洛伊木馬。 If your anti-virus program doesn’t do its job properly, here’s the manual removal instruction to clean and remove trace of Trojan.Win32.Obfuscated.gx from your system safely and easily.如果您的防病毒程序,不履行職責,妥善,這裡的手冊搬遷的指示,清理和消除微量trojan.win32.obfuscated.gx從您的系統安全和容易。
- Click on the Start Menu button, then click on the Control Panel option, and then double-click on the Add or Remove Programs icon or Uninstall a program link.單擊在開始菜單上的按鈕,然後點擊控制面板的選項,然後雙擊該添加或刪除程序圖標或卸載程序的鏈接。
- Locate Trojan.Win32.Obfuscated.gx (or its related variant name) and double-click on it to uninstall the Trojan.找到trojan.win32.obfuscated.gx (或其相關的變異名稱) ,並雙擊就它要卸載木馬。 Follow the step-by-step on screen instructions to complete uninstallation of the Trojan.按照分步對螢幕上的指示完成卸載木馬。 If the Trojan.Win32.Obfuscated.gx is not found as one of the uninstallation item, step to step 5.如果trojan.win32.obfuscated.gx是沒有發現之一,卸載項目,一步一步5 。
- Restart the computer when prompted.重新啟動計算機提示時。
- System will continue uninstalling the Trojan.系統將繼續卸載木馬。 When uninstallation completed, exit “Add or Remove Programs” and “Control Panel” or “Programs and Features” folder.當卸載完成後,退出“添加或刪除程序”和“控制面板”或“程序和功能”文件夾中。
- Close all programs, especially Internet Explorer and Windows Explorer.關閉所有程序,尤其是Internet Explorer和Windows資源。
- Run Registry Editor (regedit.exe), and then search and delete all of the following infected entries in registry:運行註冊表編輯器( Regedit.exe ) ,然後搜索並刪除所有的下列感染的參賽作品在註冊表:
7d4b39e4cab018496e2fe9bf9c3234b2
69c9be662f7f284aae171adeb136cb24
1bc5752bd72f44f004d9f061dd7f9e00
bcf3a381bbe26d9c1ec24bac8b18f567
8266c79a434aed795a5f3f7abb0aff0d
696ce23305a35bb118afc42d58845791
2982068d063848ddb0b8029750411a84
fe6e6a62a572e84e9eaee12eb3ee8a2b
1057a2dcd13130963be0a51c41dc4d1c
396955766b2e512bc3545a24bc485dbe
5f9523529ce2cac480acbda2b8bf4e1e
7df5417b22988d88e8080a44392ade95
cbdc7b3033e82c2065a1b48061b2ca01
6d3c4dbecf4aaf1ae826a0a7edde5951
e05997f932f826f0271cf32d00bbd3be
c18c3b4771120703624baaf835feecd8
9ceecf911241c9890541167edf53739f
40613dee6ad5fec910606c25b25262fd
3ba096caa45ab117721e725079cc53a1
bb5be1c92c299a1c6bcfe67655b0a0c7
9a9f57899a28547b04fc2da3700c95cf
7a329404de21925daacbbbee093ff6dc - Open Task Manager (taskmgr.exe) and terminate any Trojan.Win32.Obfuscated.gx (or its variant) process.打開任務管理器( taskmgr.exe )和終止任何trojan.win32.obfuscated.gx (或其變異)的過程。
- Find and locate the path to the following Trojan infected files.尋找和找到的路徑以下特洛伊木馬病毒感染的檔案。 Unregister these DLLs with command below at command prompt, and then rename the infected DLL files as BADFILE1.DLL, BADFILE2.DLL, BADFILE3.DLL and so on:註冊這些DLL與指揮下面在命令提示符下,然後將其重命名被感染的DLL文件作為badfile1.dll , badfile2.dll , badfile3.dll ,所以就:
Command to unregister DLL (Run the command in the folder which contain the DLL by using “cd” to change directory):命令註銷的DLL (運行該命令在該文件夾中含有的DLL文件用“裁談會”改變目錄) :
regsvr32 /u FILENAME.dll (FILENAME is the name of the file that you want to unregister listed below)regsvr32 / u filename.dll(filename是文件的名稱,您要取消下面列出)Trojan infect DLLs:特洛伊木馬病毒感染的DLL :
mlljh.dll
ibpmxtbv.dll
ljjhedc.dll
cabvie.dll
windivx.dll
ddayv.dll
vkcxxfvi.dll
ssqpo.dll
stream32a.dll
vipextqtr.dll
ecxwp.dll
gebca.dll
ddcdedd.dll
advpac.dll
tdlRMS.dll tdlrms.dll
lcxmehhg.dll
hdbxuqje.dll
mljge.dll
ddcbyvt.dll
advrepkon.dll
ddccd.dll
sgqddvym.dll
pofwjina.dll
bkfgnqhm.dll
orkbobob.dll
tuvttrr.dll
cpwvehup.dll
enhtb.dllNote: If you unable to delete or rename the files, try to restart computer in and boot in safe mode to try again.注意:如果您無法刪除或重新命名文件,請嘗試重新啟動計算機在啟動,並在安全模式下,然後再試一次。
- Go to C:\Program Files\ folder and delete the “IE Defender” folder, if found.請移至C : \程序文件\文件夾,並刪除“ ,即衛士”文件夾中,如發現。
Note: If you unable to rename the files, try to restart computer in and boot in safe mode to try again.注意:如果您無法重新命名的文件,請嘗試重新啟動計算機在啟動,並在安全模式下,然後再試一次。
- Restart computer.重新啟動計算機。
- If no problem exists, delete all “BADFILE*.DLL” which renamed from infected DLLs.如果沒有問題的存在,刪除所有“ badfile *.的DLL ”改名為從受感染的DLL 。
- If IE homepage has been changed or hijacked, go to Start -> Control Panel -> Internet Options, click on the General tab, and then click Use Default under Home Page.如果即網頁已變更或劫持,轉到開始-> “控制面板- >” I n ternet選項,點擊一般選項卡,然後單擊使用默認下的首頁。 Type in the new desired default homepage, then click Apply or OK button.類型在新的理想的默認主頁,然後點擊申請或確定按鈕。 Open a new web browser to check that IE displays the desired default homepage.打開一個新的網頁瀏覽器來檢查即顯示所需的默認主頁。
- To remove Trojan.Win32.Obfuscated.gx or its variant icons from the Desktop, simply delete them or drag and drop thems to the Recycle Bin.刪除trojan.win32.obfuscated.gx或其變異的圖標從桌面上,只需刪除它們或拖放thems到回收站。
Trojan.Win32.Obfuscated.gx is now completely removed and cleaned from the system. trojan.win32.obfuscated.gx現在已完全拆除和清理,從系統。 If you prefer a more automated way to delete the virus, use如果您喜歡更加自動化的方法刪除病毒,請使用 SmithfraudFix smithfraudfix or follow guide below to use FixIEDef that specifically removes AntiSpyPro, Files Secure, and IEDefender and thus eliminates the “Fake Alerts” generated by Trojan-Downloader.Win32.Delf.或遵循以下指導使用fixiedef專門刪除antispypro ,檔案的安全,和iedefender ,從而消除了“假警報”所產生的木馬- downloader.win32.delf 。 FixIEDef also removes Trojan-Downloader.Win32.Delf from the system. fixiedef也刪除木馬- downloader.win32.delf從系統。
- Download下載 FixIEDef.exe fixiedef.exe by ShadowPuterDude to the Desktop.由shadowputerdude到桌面上。
Note that FixIEDef.exe must be saved to desktop or it may not work properly.請注意, fixiedef.exe必須保存到桌面或它可能無法正常工作。
- Double-click FixIEDef on desktop.雙擊fixiedef在桌面上。

- Click OK .單擊確定 。
- Click Scan! to start scanning the system for trace of Trojan.Win32.Obfuscated.gx and related Trojans.按一下[ 掃描!開始掃描系統的痕跡trojan.win32.obfuscated.gx和相關的木馬程式。

- Click OK .單擊確定 。

- Wait for the scanning process to finish.等待掃描過程中完成。 Both file system and registry will be scanned.這兩個文件系統和註冊表將掃描。


Note that FixIEDef will kill all copies of Internet Explorer and Explorer that are running, during removal of malicious files.請注意, fixiedef將殺死所有副本中的Internet Explorer和Explorer正在運行的程序,在清除惡意檔案。 The icons and Start Menu on your Desktop will not be visible while FixIEDef is removing malicious files.圖標和開始菜單,在您的桌面將不可見的同時, fixiedef是刪除惡意檔案。 This is necessary to remove parts of the infection that would otherwise not be removed.這是有必要的刪除部分的感染,否則不會被刪除。
- Click Exit once FixIEDef displays the “All Finished” message.單擊退出 ,一旦fixiedef顯示“所有已完成的”訊息。

- All FixIEDef log will be posted on the desktop.所有fixiedef日誌將張貼在桌面上。 Review the content of the log if needed.審查的內容,日誌,如果需要。
If you’re using HijackThis, there is also a how-to guide to get rid of “IE Defender” or “Files Secure” with HijackThis at如果您使用HijackThis ,還有一個如何引導,以擺脫“ ,即捍衛者”或“檔案的安全”和HijackThis在 Lavasoft Support forum Lavasoft的支持論壇 . 。
IMPORTANT : This is a machine translated page which is provided "as is" without warranty. 重要說明 :這是一個機器翻譯網頁是“按原樣”提供的擔保。 Machine translation may be difficult to understand.機器翻譯可能很難理解。 Please refer to請參閱 original English article英文原版的文章 whenever possible.只要有可能。
Share and contribute or get technical support and help at分享和貢獻,或取得技術的支持和幫助,在 My Digital Life Forums 我的數字生活論壇 . 。
Related Articles相關文章
- Don’t Get Infected by Trojan.Zlob When Browsing Edison Chen Sex Scandal Photo不要感染trojan.zlob瀏覽時,陳冠希的緋聞照片
- Beware of Spyware While Browsing Edison Chen’s Sex Scandal Photos提防間諜軟件,而瀏覽陳冠希的緋聞照片
- Remove or Hide Windows Live Messenger Tabs刪除或隱藏Windows Live Messenger的標籤
- Recover and Reclaim ‘Lost’ Disk Space After Installing Windows Vista Service Pack 1 (SP1)收回並回收'失去'的磁盤空間後,安裝Windows Vista的Service Pack 1 ( SP1 )的
- How to Recover a Soaked Cell Phone如何恢復濕透手機
- Windows Defender Review by Spyware Confidential Windows Defender的審查機密的間諜軟件
- Download RED (Remove Empty Directories) for Windows PC下載紅(刪除空目錄)的Windows PC
- Remove Ads from Windows Live Messenger with A-Patch and Customize Messenger Options and Visualisation移除廣告從Windows Live Messenger的同一個修補程序和定制的信使選擇和可視化
- Unable to Clean Install Windows Vista with Upgrade Edition Product Key無法清潔安裝Windows Vista與升級版的產品金鑰
- Delete a File Permanently刪除檔案永久




















February 16th, 2008 22:23 2008年2月16日22時23分
[...] you choose to remove this spyware manually, you can refer the removal procedure here. [ … … ]您選擇要刪除此間諜軟件手動,您可以參閱移除程序在這裡。 Get help or contribute tips or tricks at My Digital Life [...]獲得幫助或貢獻的提示或伎倆在我的數字生活[ … … ]
February 23rd, 2008 17:02 2008年2月23日17時02分
[...] there is another virus, Trojan.Zlob, which is actually variant of each other (see Trojan.Zlobremoval and Trojan.Win32.Obfuscated.gx instructions), widely spread over some websites that published these hot pornographic photos. [ … … ]有另一種病毒, trojan.zlob ,這實際上是變對方的(見trojan.zlobremoval和trojan.win32.obfuscated.gx指示) ,廣為傳播,在一些網站上發表的這些熱點的色情照片。 Trojan.Zlob is a [...] trojan.zlob是一個[ … … ]
February 27th, 2008 13:20 2008年2月27日13時20分
Good I like the article very much.Keep up.好,我喜歡的文章非常much.keep 。
I wish I could more about article regarding server hacking & its prevention.我希望能更多地了解文章關於服務器的黑客及預防。
March 10th, 2008 17:01 2008年3月10日17時01分
thank you very much for your wonderful guide to remove the virus非常感謝您為您的精彩指導,以消除病毒
March 22nd, 2008 18:58 2008年3月22日18時58分
thanke soo much man you helped me alottt…keep it up man wee need man like you an less of this people who tries to destroy our life thanke洙很多人你幫我alottt …保持了男子凌晨有需要的男子,喜歡你一少,這人誰試圖破壞我們的生活
August 13th, 2008 10:23 2008年8月13日10時23分
Thanks a million saved my laptop!感謝萬救了我的筆記本電腦! i had a stupid trojan that wouldnt let me even brows the net it would tell me to download some stupid antivirus thing and this saved my life thanks so much for being loyal and not like other people who tell you to download and it makes it even worst.我有一個愚蠢的木馬程式, wouldnt讓我連眉毛淨它會告訴我,如果要下載一些愚蠢的事,防毒,這救了我的生命感謝這麼多忠誠,而不是像其他人誰告訴你下載和它使甚至最嚴重的。 Thanks謝謝