Worn out after spent a lot of time dealing with a virus named Win64/Agent.BA? Is there a much easy way to kick it our from your computer if your anti-virus can’t remove it?

How do i get rid of Win64/Agent.BA?

Win64/Agent.BA is a new Trojan detected by Avast Anti-virus. It is so stubborn that user was unable to clean the infection as you can see. This avast warns for Agent.BA notification pops up roughly every 5 minutes. Once your computer was infected with Win64/Agent.BA virus, then your anti-virus AVAST keeps on popping up stating “Threat detected!”, you cant see any of the entries to remove Trojan dropper but your PC is definitely infected. Yes, it is because the virus mutates every time then when users are trying to remove it only with no luck. All the instructions they see state look in extensions. They do not see anything in extensions. Many of them recently downloaded Torrent or movies and read that may be where they got it from. What is worse, users got the nasty search engine virus except this problem and while they removed it from their homepage, programs, internet options and computer it still shows up when they type an incorrect HTTP address. So they want to know every time i start my computer i get the error message “Win64/Agent.BA was detected”. How can i fix it? Well, since the anti-virus program just pick it up but couldn’t delete it completely, you must find an efficient way to save your computer well. Luckily, you can get rid of Trojan Agent.BA virus from your machine with the tutorial here.

To save your computer, live chat with YooSecurity experts now, or you can follow the manual removal guide below to get your problem fixed. (For advanced computer users)

What the best solution to eliminate Win64/Agent.BA virus if my anti-virus didn’t work?

Having trouble with Win64/Agent.BA virus for it can’t be deleted by the anti-virus program? Once of the victims said:”unfortunately I seem to be the victim of Agent.BA. I’ve tried a number of different anti-virus/malware programs to get rid of this thing, but I can’t seem to get rid of it. I am thinking I need to go in and remove the infection myself, but I’m not exactly what you would call “computer savvy.” Think you can help me with this? If your computer is infected with Win64/Agent.BA. You kept warning not only in normal mode but in safe mode and running windows 7 and have run anti-virus software. It seems Avast quarantined the Trojan but cannot get rid of it . You can not do anything to remove the virus as you were stuck. Many users are so frustrated with this virus. Luckily they can fix the problem with guide here. Manual removal of Agent.BA Virus step by step guide is below.

Best Way to Remove Win64/Agent.BA Trojan Horse Step by Step:

Firstly, please restart your computer and get in safe mode with networking:

Please follow these steps to get rid of Win64/Agent.BA virus manually:
Step 1: Press CTRL+ALT+DEL or CTRL+SHIFT+ESC. Open the Windows Task Manager.
If that didn’t work, try another way. Press the Start button and click on the Run option. This will start the Run tool. Type in task-mgr and press OK. This should start the Windows Task Manager

Step 2: Within the Windows Task Manager click on the Processes tab. Find the process by name. random.exe related to Win64/Agent.BA. Then scroll the list to find required process. Select it with your mouse or keyboard and click on the End Process button. This will kill the process.

Video Show You on How to Modify or Change Windows Registry:

Step3: Remove malicious files of Agent.BA virus

C:\windows\system32\services.exe
C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
C:\Windows\Installer\{bbee3ba2-89af-930c-bb78-1fb4e17db3cc}

Step4: Delete malicious registry entries of Win64/Agent.BA virus.

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\Random.exe
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Random.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer
“EnableShellExecuteHooks”= 1 (0x1)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\run\Random.exe

Note:If you failed to remove this virus with the method above, please consult YooSecurity certified professionals to remove it completely.

Published by Leo R. Oscar & last updated on July 29, 2012 4:33 am

Leave a Reply