i'm sharing this experience of mine in how I dealt with this dipshit virus,
and maybe to whoever encountered the same problem would have simple grasp and a starting point of what's going on.
I was infected with this virus by accidentally clicking on a pop up
while engrossing on my fresh takeaway kebab from Winthrop.
Anyways long story short, you can find this particular virus as 2946468.exe
on Window Task Manager and upon googling it,
found this really helpful link & properties of the virus itself.
To add it works together with 149890.exe in which will disable your background and turn it all block causing the illusion that your pc is in a big problem.
And here's a few print shot of how it looks like and where it manifest your comp,
It'll shows up in your temp folder and installs itself as a "scanner" there.
You can't delete it all.
the next thing you know it, it reboots itself. Whereby installing itself.
Upon loading of your OS(mine was window xp2), it shows up exactly like the pic above similarly as a window defragment and claims that you need to run degragmentation.
The "scanning" that shows up are completely fake.
To add on your taskbar:
it'll be continually showing a popup stating "critical error:RAM memory usage is critically high. RAM memory failure" which is total bullshit, as the icon is a total giveaway for it's scam (Sry I couldn't print screen for this one as it blocks up several software such as paint).
I didnt run it as i immediately recognize something was a mist.
To add it keeps asking you to Buy it's "full version" or "Help support".
Avoid clicking "supporting" it or "buying" it.
That's probably where the scam part comes in.
------------------------------------------------------------------------------
Removing it,
First off I've tried removing it from Windows Task Manager by blocking and "End Task"
of 2946468.exe or 149890.exe. It didn't work out for me at all. As it'll just keep reappearing in different forms of numbers .exe
I followed the instruction on removing it from
http://vil.nai.com/vil/content/v_331877.htm(didnt work out for me)
Next I tried from
For the part that worked on my pc, was:
Going to run> type in msconfig> go to "startup" between "services" and "tools".
You should be able to find and un-tick the following 294648 and 149890.
To be continued... I still haven successfully removed the virus yet...