Рет қаралды 53,659
Boyu.com.tr, Ssj4.io, ProSearch and Ook.gg virus is a browser hijacker and a variant of Superstar3.io, and Searchmenow.gg virus. Once infected, Boyu.com.tr, Ssj4.io and Bangsearch.pro take control of your browser's search settings, disable Windows security, silently install malicious extensions, and drop malware applications onto your PC.
Attempts to remove Boyu.com.tr, Ssj4.io, Ook.gg and Bangsearch.pro are often futile as they reappear after a certain period. If automated removal is unsuccessful, consider attempting our manual removal process. We have developed a step-by-step tutorial to help you eliminate the Bangsearch and ss4j virus. Please watch and provide your feedback.
1) *ChromeTool.bat code*: If any error then run in Normal Mode
myprocessinfo....
2) *EdgeFix.reg code*: If any error then run in Normal Mode
myprocessinfo....
3) *Activate Defender.reg code*: If any error then run in Normal Mode
myprocessinfo....
4) For unwanted extensions that cannot be removed
Please watch the tutorial: • How to Remove Malware ...
5) * if this malware installs Chromstera virus*
Please watch this tutorial: • How to Get Rid Of Chro...
For UCPD velocity / UCPDMgr.exe file
It is not necessary to have UCPDMgr.exe file every time on every infected PC. Therefore, if this file is not found, it indicates that your computer is not infected with this particular file.
Latest updation for Malware Files/Folder/Location
===========================================================================
These are additional files; the *REST OF THE MALWARE FILES ARE THE SAME AS SHOWN IN THE VIDEO*.
===========================================================================
A) Latest Task Entries
UCPDMgr.exe is not active now. (*Old*)
No New Entry Found (06/11/23)
B) Malware Files & Folders
New Update 24/09/2024
New files are added/changed by the virus creator
New Virus Domain Added*: Boyu.com.tr virus ( *Latest 08/07/24)
New Virus Domain Added*: Ssj4.io virus ( *Old/Active 04/02/24)
New Virus Domain Added*: ook.gg virus ( *Old/Active 15/10/23)
New Virus Domain Added*: Searches-world.com virus ( *Old/Active 18/10/23)
MUST CHECK / AERAS OF YOUR COMPUTER ( Latest 24/09/24)
C:\Program Files (x86)\
C:\Users\{Your User Name}\AppData\Roaming\
C:\Users\{Your User Name}\AppData\Local\
C:\Program Files (x86)\Chromstera\ChromsteraUpdater.exe (if found, delete it / *Old/To Be Check*)
C:\Users\{Your User Name}\AppData\Local\apps.crx (if found, delete it / *Old/To Be Check*)
================= old entries =================
( Why old, coz malware creator change their modus operandi )
C:\Program Files (x86)\Kavaca\ = Delete Kavaca Folder ( OLD 07/02/24)
C:\Users\{Your User Name}\AppData\Roaming\GlobalCo ( OLD 07/02/24)
C:\Users\{Your User Name}\AppData\Roaming\EdgWebOpt2 ( OLD 07/02/24)
C:\Users\{Your User Name}\AppData\Roaming\EdgWebOpt ( OLD 07/02/24)
C:\Windows\system32\op.config.xml (*Old*)
C:\WINDOWS\system32\ServiceUI.exe (if found, delete it / *Old/Not Active 06/11/23)
C:\WINDOWS\system32\UITheme.exe (if found, delete it / *Old/Not Active 06/11/23)
C:\WINDOWS\system32\serviceui.json (if found, delete it / *Old/Not Active 31/10/23)
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\*Sordum* (if found, delete it / Old/To Be Check 20/11/23)
C:\Users\[your user name]\AppData\Local\*Sordum* (if found, delete it / Old/To Be Check 20/11/23)
🙏🙏*Please like my tutorial and subscribe to my channel*🙏🙏