Remove virus homepage from Chrome, Firefox and Internet Explorer

Use this article to get rid of the ads-inflated website, which constantly pops up in web browsers infected with the respective adware.

Whereas malware researchers and tech experts at security labs are generally accustomed to analyzing adware samples which are affiliated with landing pages in English, the instance is sort of exotic, figuratively speaking. It is a site whose main content is presented in Arabic language, and the malicious software sustaining it in terms of visitor provision should, predictably enough, target machines in countries like Saudi Arabia, UAE or Qatar. An in-depth study, however, reveals a somewhat different state of things. The virus does not appear to be too selective about the geolocation aspect, so computer users all over the globe are subject to this attack.

Essentially, is an aggregate of a variety of popular information segments. At first sight, the page may look non-intuitive, especially considering that the language is unfamiliar to many. It contains an obviously excessive quantity of banners and other types of sponsored data. Those reading this article will probably think “Oh well, took a look at the site, seems a bit messy, better pass by,” but that’s not an option for the users who got attacked by the malicious applet powering this controversial online service.

The crazy amount of information on

The crazy amount of information on

The problem is, one’s web browsing preferences may get forcibly modified to start returning on a recurrent basis. The kernel of this issue is an unwanted program that sneaks past the regular user approval requests, installs an add-on in Firefox, IE and Chrome, and automatically gets the permissions that allow it to establish firm control of how the browsers operate. Consequently, the homepage parameter will be set to, whether or not you want this to happen. The same effect is applied to new tab and default search settings, which will also resolve the wrong site every time the victim attempts to use them. Another marker that indicates the presence of this infection on a computer, in addition to the irritating browser redirects, is that this infection drops two executables, namely RemoveTool.exe and uninstall.exe. It also creates a folder named “arhome” inside the appdata\roaming directory.

This adware is sophisticated enough to prevent removal through the standard means, therefore uninstalling it via Control Panel alone won’t work. A certain sequence of cleaning steps can tame and eliminate the virus, though, so continue reading the post to learn what those are.

Automatic removal of the virus

When it comes to handling infections like this one, using a reputable cleaning tool is the place to start. Sticking to this workflow ensures that every component of the adware gets found and eradicated from the affected computer.

1. Download and install the cleaning tool and click the Start Computer Scan button

Download removal tool

2. The wait is worth it. Once the scan completes, you will see a report listing all malicious or potentially unwanted objects detected on your PC. Go ahead and click the Fix Threats option in order to get automatically uninstalled from your machine. This being done, you should be good to go. Just to make sure everything went smooth, consider going through the steps below real quick.

Uninstall troublesome program through Control Panel

  • From your Windows menu, go to Control Panel. Select Add or Remove Programs (for Windows XP / Windows 8) or Uninstall a program (Windows Vista / Windows 7)Uninstall a program
  • Look carefully through the list and locate unfamiliar programs, especially ones that appeared on the machine recently. Select the likely bugs and click Uninstall/Change for thoseUninstall related software

Remove homepage from web browsers manually

The workflow covered below is intended to undo all changes that this virus made to Chrome, Firefox and Internet Explorer. Be advised there’s some collateral inconvenience you will encounter, namely the loss of all installed add-ons and personalized information (saved passwords, cached data, bookmarks and other content).

Reset Chrome

  • Open Google Chrome. Click the Chrome menu icon as shown on the image and select SettingsReset Chrome 1
  • Click Show advanced settingsReset Chrome 2
  • Hit the Reset browser settings buttonReset Chrome 3
  • On the warning that popped up, read everything you should know about the consequences of the reset. Click Reset if you want to complete the procedureReset Chrome 4
  • Restart Chrome for the changes to take effect

Reset Firefox

  • Open Firefox. Go to Help > Troubleshooting Information or type about:support in the URL fieldReset Firefox 1
  • Click Reset Firefox button to get the job doneReset Firefox 2
  • Restart Firefox for the changes to take effect

Reset Internet Explorer

  • Open IE. Go to Tools > Internet OptionsReset Internet Explorer 1
  • Hit the Advanced tab and click ResetReset Internet Explorer 2
  • Make sure the Delete personal settings option on the Reset Internet Explorer Settings dialog is ticked and click ResetReset Internet Explorer 3
  • Restart Internet Explorer for the changes to take effect

Did the problem go away? Check and see

Computer threats like can be stealthier than you can imagine, skillfully obfuscating their components inside a compromised computer to evade removal. Therefore by running an additional security scan you will dot the i’s and cross the t’s in terms of the cleanup.

Download Alarabeyes scanner and remover

Leave a Reply

Your email address will not be published. Required fields are marked *