Search Support

Avoid support scams. We will never ask you to call or text a phone number or share personal information. Please report suspicious activity using the “Report Abuse” option.

Learn More

Has anyone seen the new 'killing hazard' redirect virus/trojan?

  • 2 cavab
  • 286 have this problem
  • 5 views
  • Last reply by aolaru71

more options

I have been getting since 9/26 a new redirect-style virus/trojan. It masquerades as a "popup" antivirus. Any attempt to kill the popup (click on the right-corner exit, etc) starts the virus-scanning operation of the fake anti-virus. I have flagfox, which says that the page is chinese. I must kill Firefox to eliminate the page. I have run malwarebytes with a completely updated database, with no malware detected.

Full text for the popup window

Warning! On your computer detected the malicious code. Should immediately make sure that your system is safe! Killing Hazard (R) for Microsoft Windows XP immediately started to work

I have been getting since 9/26 a new redirect-style virus/trojan. It masquerades as a "popup" antivirus. Any attempt to kill the popup (click on the right-corner exit, etc) starts the virus-scanning operation of the fake anti-virus. I have flagfox, which says that the page is chinese. I must kill Firefox to eliminate the page. I have run malwarebytes with a completely updated database, with no malware detected. Full text for the popup window Warning! On your computer detected the malicious code. Should immediately make sure that your system is safe! Killing Hazard (R) for Microsoft Windows XP immediately started to work

All Replies (2)

more options

Try running several malware scanners. It is best to run several as each will pick up things that the others miss. Some other scanners you can try are:

If the above malware scanners do not find any malware or can not clear it, you should consider posting in one of these forums for specialized malware removal help:

more options

I had the same problem and found out that the virus changed my router's settings: instead of the correct setting DNS Address "Get Automatically from ISP", the virus changed it to a specific DNS server: 213.109.69.44 I realized that something must be wrong with my router when all my devices (including my iPhone) were being redirected to the fake anti-virus web page when connecting to the internet through that router.