There is a brand new hijacker that spreads through the web at present time. www.eventforyours[dot]com is not a simple site as you may think. It has a Facebook login interface and it asks you to input your ID and password to proceed the entering your account. But, it only wants you to believe that you are entering your Facebook account. This hijacker begins to do its work with Facebook. You can receive some message from your friend that says something like that: “I can’t believe what u did in this video, it’s so stupid, it’s all over Facebook! Go here remove thee spaces –> www.eventforyours[dot]com”. And a lot of users can go to this link to watch what is the video about. That is the biggest mistake of yours if you do that!
But do remember, that Facebook has nothing to do with that. Someone who craves for money uses Facebook to distribute this hijacker. This hijacker wants you to enter this link. If you do that you ill be redirected to YouTube but there you will not find any video. That’s right, you have been fooled by this rogue. By entering that link you can let some unknown scams and ransomwares to come to your pc. Of course, all of this is made to take money from you and to infect more and more computers all over the world.
So, if you see such kind of messages in your account, be very careful. You need to eliminate this threat from your system. And do not think that it can be removed by only changing your Facebook account or your password. www.eventforyours[dot]com will not go away until it is deleted completely. It can be deleted only manually!
What should you do if you have this hijacker inside your system?
1. Press CTRL+ALT+DEL or CTRL+SHIFT+ESC. Open the Windows Task Manager.
If this way did not work there is another one: Press the Start button and click on the Run option.
You need to type there “taskmgr” and press OK. This should start the Windows Task Manager.
2. Windows Task Manager –> Processes tab. Find [process by name. random.exe Then scroll the list to find required process. Select it with your mouse or keyboard and click on the End Process button. This should kill the process.
3. You need to delete malicious registry entries related to www.eventforyours[dot]com browser hijacker virus:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\random.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\“UninstallString” = “‘%AppData%\[RANDOM]\[random].exe” -u
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\“ShortcutPath” = “‘C:\Documents and Settings\All Users\Application Data\[random]’”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce “[random]” = “‘C:\Documents and Settings\All Users\Application Data\[random]’
4. Delete malicious files of www.eventforyours[dot]com virus:
We recommend you to scan your system with GridinSoft Trojan Killer from time to time to be sure that it is clean of viruses and ransomwares.