|
Invadesys.A is a worm that spreads through removable drives. It may also lower security settings on the compromised computer.
Remove the Worm Using Spyware Doctor!

Sponsored Links:
Free Download Now:

Invadesys.A Removal:
To remove Invadesys.A, please follow the instruction:
- Click Start > Run. Type REGEDIT. Then click OK. Navigate to the subkeys and delete the values:
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\txtfile\shell\open\command\"(default)" = "%SystemRoot%\System32\WScript.exe "C:\WINDOWS\[CURRENT USER].vbs" %1 %* "
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\hlpfile\shell\open\command\"(default)" = "%SystemRoot%\System32\WScript.exe "C:\WINDOWS\[CURRENT USER].vbs" %1 %* "
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\regfile\shell\open\command\"(default)" = "%SystemRoot%\System32\WScript.exe "C:\WINDOWS\[CURRENT USER].vbs" %1 %* "
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\chm.file\shell\open\command\"(default)" = "%SystemRoot%\System32\WScript.exe "C:\WINDOWS\[CURRENT USER].vbs" %1 %* "
HKEY_CURRENT USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\"load" = "C:\WINDOWS\system32\[CURRENT USER].vbs"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\"ShowSuperHidden" = "0"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden
\SHOWALL\"CheckedValue" = "0"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer \"NoDriveTypeAutoRun" = "81"
Registry management is too hard? Download Registry Mechanic, and you will find it too easy!
- Remove the files in Explorer if exist:
%DriveLetter%\AutoRun.inf
%DriveLetter%\[CURRENT USER].vbs
%Sysyem%\[CURRENT USER].ini
%System%\[CURRENT USER].vbs
%Windows Dir%\[CURRENT USER].vbs
Spyware Doctor can automatically remove the worm. Even if you remove it manually, we recommend you should use Spyware Doctor to make sure it's completely removed from your system and will not be reinstalled by itself.

More
Removal Instructions for Emerging Adware & Spyware
|