Open local disks by double clicking on My Computer icon. Press the Ctrl+ Alt+ Del combination key, the Switch User interface will pop up. 3. In the following window choose 'startup settings. Second - I've applied a GPO to block %appdata%\*.exe, and uninstall.exe and 2.exe; should that do it, or should I come up with an equivalent block of the registry settings? http://wpquickadminthemes.com/general/trojan-win32-agent2-hoq.html

or read our Welcome Guide to learn how to use this site. The Kapersky online scanner says I have been infected by Trojan.win32.agent2.cvif, and that it is being activated through one of my svchost.exe files. Do keep the installed security tools on and go for real-time protection; 4.

Please learn how to backup registry in the following video backup windows registry :

I can get it to go away for a while but it keeps coming back. This is affecting many enterprises around the world, so the silence is deafening. First, check your computer to see if it came with anti-virus software. Start and login the infected computer until the Desktop shows on. 2.

Don't open any suspicious links or unknown spam emails from strangers.

I'll guide you to Remove any spyware unwanted Take advantage of the download today! Click here to Register a free account now! Change the key value Registry: [HKLM \ software \ microsoft \ windows nt \ currentversion \ winlogon] "Shell" = "Explorer.exe"% System% \ explore.exe "" -> "Explorer.exe" Delete this file % System% What I did is to stop and disable this service on all computers in domain, instead of deleting it.