TDL4 Rootkit Removal

TDL4 is a rootkit virus resides in the HDD MBR, which redirect google search results to find-quick-results.com or similar sites randomly instead of getting the right site. I have found a quick and easy way on how to remove TDL4 rootkit infection by using the steps I described below.
TDL4 Rootkit Removal

TDL4 Removal

Using MBM, combofix and OTL are common way to remove this, but TDSSKiller.exe which is intended to remove the TDL4@MBR couldn’t load, possibly blocked by the virus itself.

Fortunately, Avast quickly responded with this virus by providing an easy TDL4 removal by using their aswMBR.exe. Here are the steps on how to do TDL4 rootkit removal:

  1. Download aswMBR.exe ( 561KB ) to your desktop.
  2. Double click the aswMBR.exe to run it
  3. Click the [Scan] button to start scan
    TDL4 Rootkit Removal
  4. Click the [Fix] for TDL4 (MBRoot) or [FixMBR] when it finds the virus
    TDL4 Rootkit Removal

You might want to disable the CD emulation in order to fix the MBR properly. Download defrogger here. Here’s how to use defrogger:

  1. Double-click about the DeFogger icon to begin the tool.
  2. Click on the Disable button to disable your CD Emulation drivers
  3. When it prompts you whether you need to continue, please click the Yes button to continue
  4. When this program has completed you will notice a Finished! message. Click the OK button to exit this program.
  5. If CD Emulation programs are present and have been enabled, DeFogger will ask you to reboot the equipment. Please allow it to do so by clicking on the OK button.

Posts Related to TDL4 Rootkit Removal: