We use cookies to ensure that we give you the best experience on our website. By continuing to browse, we are assuming that you have no objection in accepting cookies. You can change your cookie settings at any time.

Close

BullGuard Support

Vi er her for å hjelpe deg døgnet rundt


Send epost til vår support og vi vil komme tilbake til deg innen 24 timer.


How to remove Adware.Renos.B



THREAT NAME

Adware.Renos.B

 

CLEAN INSTRUCTIONS
1. Restart the system in Safe Mode.


2. Open Windows Explorer, go the the Windows folder (C:\Windows), locate and delete the file xpupdate.


3. Go to Start > Run type regedit and press OK.


4. Locate and delete the following registry key:


HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, Windows update loader


5. Restart the system and run a full system scan with BullGuard.



SYMPTOMS


1. A message appear telling you that the computer is infected with spyware.

2. Presence of the xpupdate file in the Windows folder.

 

DESCRIPTION

1. When it is run, it will create a copy if itself in the Windows folder, with the name xpupdate.


2. It will add itself in the registry in order to run at startup. It creates the following key:


HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, Windows update loader


3. A red icon will appear in the task bar and a message will pop up telling you that the computer is infected with spyware.


When you click the icon, it will try to launch the BraveSentry application. BraveSentry is a malicious program that issues

fake warnings in an attempt to trick you into buying it.

Author:
The BullGuard Team

 



00: 00: 00: 00
Days Hours Minutes Seconds
Close