Trojan horse viruses have obvious features: tiny and covert, tremendous and powerful damage, difficult to clean up, etc. Cyber cribbers resort to extreme measures to programme and improve various Trojan to create more and more invasion to personal computers. TROJ_GEN.R49C7EB is such Trojan which has been spreading widely around the world.

TROJ_GEN.R49C7EB Description

TROJ_GEN.R49C7EB is a crafty trojan horse that detected by Trend Micro Internet Security. It is the same stubborn as Win32/sirefef.eb. As an offensive Trojan, it always tries to grasp any chance to invade the target system. TROJ_GEN.R49C7EB usually has a strong offensive to destroy information and files in a computer, resulting in the abnormal working of the computer, or more seriously, making the system unavailable. As a representative of Trojan, it won’t give up any chance to invade the target system. Before you find its true purposes, the infection has settled down in your computer. Many computer users suffered from this re-occuring “problem solved” pop ups again and again from Trend Micro Titanimum Maximum Security 2012. And ususally the TROJ_GEN.R49C7EB is bundled with TROJ_GEN.RC1CCED occuring in C:\WINDOWS\Installer\{54c3cc2f-4614-91ce-f755-6d829c347a54}\U\[email protected] and C:\WINDOWS\Installer\{54c3cc2f-4614-91ce-f755-6d829c347a54}\U\[email protected] They also have had a number of web threats removed. It says the users have had 300 viruses stopped and 749 web threats removed! Many of them had previously tried the methods posted on some forums in which they got a HiJackThis log and a aswmbr log. And was also told to run combofix which was but it was unable to run, it only got upto the green extracting stage then it suddenly stopped. Lots of users got the trojan horse when they were surfing online for work or other things. They don’t know that when they browse websites the TROJ_GEN.R49C7EB virus can access their PCs silently without their attention. The virus may hide in some unsafe sites that it will create a route to enter into people’s PC. Be careful whenever you surf on the internet and delete TROJ_GEN.R49C7EB immediately once found it.

The right way to deal with TROJ_GEN.R49C7EB

Basic steps to manually remove TROJ_GEN.R49C7EB

Press Ctrl+Alt+Del keys together and stop TROJ_GEN.R49C7EB processes in the Windows Task Manager.

Let’s open the Registry Editor, search and remove registry entries of TROJ_GEN.R49C7EB.

All associated files of TROJ_GEN.R49C7EB should be removed.

Video Tutorial On How to Modify or Change Windows Registry:

Registry Entries That Generated By The TROJ_GEN.R49C7EB Virus

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\random thing

