Pro-scanner-online.com screenshot:
Pro-scanner-online.com automatical removal tool:
Spyware News. Spyware removal tips, tools and instructions...
ExtraAntivir automatical remover:
ExtraAntivir manual removal guide: install_511_MHwzNnwxMDAwMDAwMDAwfHx8fHx8fHw_Remove ExtraAntivir registry entries:
Extra Antivir.ini
base.dat
base2.dat
Desc.dat
spline.dat
HKEY_CURRENT_USER\Software\Extra Antivir
asg.exeDelete AntiSpywareGuard registry entries:
asg.ini
BL.dat
PP.exe
WL.dat
AntiSpywareGuard.lnk
Uninstall AntiSpywareGuard.lnk
HKEY_CURRENT_USER\Software\AntiSpywareGuard
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AntiSpywareGuard
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform "3P_UASG 1.0.6.0"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "AntiSpywareGuard"
WinWebSecurity (WinWeb Security) pretends to cure your computer, but in fact you need a cure that will remove WinWebSecurity if its trial of full version has found the route to your PC. Stay away from website of WinWebSecurity and, if you have seen alerts calling for making strange security updates, reboot computer immediately and install reliable security tool to get rid of WinWebSecurity or similar fake security tool; it also could be a trojan that generated “security alert” to make you immediately purchase WinWebSecurity or at least install the trialware that would bother you with scans and alerts. What is worse, WinWebSecurity contaminates System Registry to create slow computer problem, early WinWebSecurity removal prevents Registry enlargement and its after-effect so do not hesitate, follow the link below to download Spyware Doctor with antivirus and remove Win Web Security immediately after free scan or just use the tool recommended below to detect threats at your PC and then remove them in manual mode.
WinWebSecurity (WinWeb Security) screenshot:
AvirTr.exeDelete SpywareRemover 2009 registry entries:
AvirTrWarning.dll
uninst.exe
AntivirusTrigger 2.1.lnk
browseu.exe
browseul.dll
hpmom.exe
hpmon.exe
hpmun.dll
hpmun.exe
myd.ico
mym.ico
myp.ico
myv.ico
ot.ico
qttask.exe
qttaskm.exe
qttasku.exe
ts.ico
512686.dll
algg.exe
tiltmeo.dll
Antivirus Scan.url
Online Antispyware Test.url
Antivirus Scan.url
My Documents.url
My Music.url
My Pictures.url
My Video.url
HKEY_CURRENT_USER\Software\AvirTrsoft
HKEY_CURRENT_USER\Software\AvirTrsoft\Update
HKEY_CLASSES_ROOT\AvirTrWarning.WarningBHO
HKEY_CLASSES_ROOT\AvirTrWarning.WarningBHO.1
HKEY_CLASSES_ROOT\CLSID\{22C447D3-73A8-E1C7-C391-21BE4338CEBC}
HKEY_CLASSES_ROOT\CLSID\{3A267370-076E-4af4-B986-77626B8E89DF}
HKEY_CLASSES_ROOT\Interface\{764BC8B4-1159-4736-8AF1-F124A7C8C3A8}
HKEY_CLASSES_ROOT\Interface\{DF3F06C6-D443-48A8-BDF2-4E31F0554EBF}
HKEY_CLASSES_ROOT\TypeLib\{3ED86073-2FA7-4CF4-810B-28B030671678}
HKEY_LOCAL_MACHINE\SOFTWARE\Licenses
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RFC1156Agent
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
App Paths\AvirTrsoft
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion
\Explorer\Browser Helper Objects\{3A267370-076E-4af4-B986-77626B8E89DF}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Uninstall\AvirTrsoft
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\
Run “AvirTr”
HKEY_CLASSES_ROOT\webmedia.chl
HKEY_CLASSES_ROOT\z444.z444mgr
HKEY_CLASSES_ROOT\z444.z444mgr.1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\
Extensions\{3B8FB116-D358-48A3-A5C7-DB84F15CBB04}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Explorer\Browser Helper Objects\{096CBA44-4A4C-49f7-8903-1E75550ABCB7}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Explorer\Browser Helper Objects\{51B15F5A-E98B-4658-B9CB-9307B74773A7}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Explorer\Browser Helper Objects\{64466B8E-20A7-4A4A-AFF4-AAD9CA68B52C}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Uninstall\Browser Toolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Uninstall\IExplorer add-on
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Uninstall\Online Alert Manager
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Uninstall\System Alert Popup
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “wblogon”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
App Paths\VirusTriggerBin “(Default)”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion
\Explorer\SharedTaskScheduler “{e0feeb92-908e-46d2-8a66-88c5295f2629}”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
policies\explorer\run “QuickTime Task”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
policies\explorer\run “VMware hptray”
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\
WebBrowser “ITBar7Layout”
System Alert!The alert is generated by trojan; it is used in both AntivirusTrigger and VirusTrigger propagation. Clicking on this alert redirects browsing to either Antivirus-Trigger.com or Virus-Trigger.com. This alert is, of course, important part of AntivirusTrigger’s trickery, but there are schemes without this alert which work successfully as well.
Your system might be infected with malicious software that may impact the performance of your computer. Click the icon for a free scan to detect any active spyware applications.
AvirTr.exeDelete AntivirusTrigger registry entries:
AvirTrWarning.dll
uninst.exe
AntivirusTrigger 2.1.lnk
browseu.exe
browseul.dll
hpmom.exe
hpmon.exe
hpmun.dll
hpmun.exe
myd.ico
mym.ico
myp.ico
myv.ico
ot.ico
qttask.exe
qttaskm.exe
qttasku.exe
ts.ico
512686.dll
algg.exe
tiltmeo.dll
Antivirus Scan.url
Online Antispyware Test.url
Antivirus Scan.url
My Documents.url
My Music.url
My Pictures.url
My Video.url
HKEY_CURRENT_USER\Software\AvirTrsoft
HKEY_CURRENT_USER\Software\AvirTrsoft\Update
HKEY_CLASSES_ROOT\AvirTrWarning.WarningBHO
HKEY_CLASSES_ROOT\AvirTrWarning.WarningBHO.1
HKEY_CLASSES_ROOT\CLSID\{22C447D3-73A8-E1C7-C391-21BE4338CEBC}
HKEY_CLASSES_ROOT\CLSID\{3A267370-076E-4af4-B986-77626B8E89DF}
HKEY_CLASSES_ROOT\Interface\{764BC8B4-1159-4736-8AF1-F124A7C8C3A8}
HKEY_CLASSES_ROOT\Interface\{DF3F06C6-D443-48A8-BDF2-4E31F0554EBF}
HKEY_CLASSES_ROOT\TypeLib\{3ED86073-2FA7-4CF4-810B-28B030671678}
HKEY_LOCAL_MACHINE\SOFTWARE\Licenses
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RFC1156Agent
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\AvirTrsoft
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Explorer\Browser Helper Objects\{3A267370-076E-4af4-B986-77626B8E89DF}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Uninstall\AvirTrsoft
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\
Run “AvirTr”
HKEY_CLASSES_ROOT\webmedia.chl
HKEY_CLASSES_ROOT\z444.z444mgr
HKEY_CLASSES_ROOT\z444.z444mgr.1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{3B8FB116-D358-48A3-A5C7-DB84F15CBB04}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Explorer\Browser Helper Objects\{096CBA44-4A4C-49f7-8903-1E75550ABCB7}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Explorer\Browser Helper Objects\{51B15F5A-E98B-4658-B9CB-9307B74773A7}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Explorer\Browser Helper Objects\{64466B8E-20A7-4A4A-AFF4-AAD9CA68B52C}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Uninstall\Browser Toolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Uninstall\IExplorer add-on
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Uninstall\Online Alert Manager
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Uninstall\System Alert Popup
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “wblogon”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\VirusTriggerBin “(Default)”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Explorer\SharedTaskScheduler “{e0feeb92-908e-46d2-8a66-88c5295f2629}”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
policies\explorer\run “QuickTime Task”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
policies\explorer\run “VMware hptray”
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\
WebBrowser “ITBar7Layout”
Privacy Alert! Your system was found to be infected with intercepting programs. These can log your activity and damage your privacy. Click here for XP Protection Center spyware removal.Your computer is seriously infected with trojan horse that is trying too sell rogue anti-spyware programs like XP Protection Center. We recommend to remove this annoying popup and XP Protection Center malware using SpywareDoctor with antivirus - trusted malware removal tool with free scan.
XPProtectionCenter.exeDelete XP Protection Center registry entries:
XPProtectionCenter.lnk
Uninstall XPProtectionCenter.lnk
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\
run XP Protection Center

av2009.exeDelete Protectionlive-scan.com registry entries:
Antivirus2009.exe
shlwapi.dll
wininet.dll
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\
“Antivirus” = “%ProgramFiles%\Antivirus 2009\Antvrs.exe”
HKEY_CURRENT_USER\Software\Antivirus
HKEY_LOCAL_MACHINE\SOFTWARE\Antivirus
gtawclv.dllDelete Renamehomepage.com registry keys:
vjxwnn.dll
khtbpdl.dll
cfqbw.dll
fdpzgi.dll
vmlwp.dll
veptlh.dll
isamini.exe
isamonitor.exe
pmmon.exe
pmsngr.exe
iesplugin.dll
iesuninst.exe
isaddon.dll
Online Security Guide.url
Security Troubleshooting.url
Online Security Guide.url
Security Troubleshooting.url
pmmon.exe
pmsngr.exe
pmuninst.exe
gtawclv.dll
vjxwnn.dll
khtbpdl.dll
cfqbw.dll
fdpzgi.dll
vmlwp.dll
veptlh.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\
{70d17a5f-ef27-4295-90f5-20ad6f24834f}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\
{80ced3d6-ece9-48ba-8df8-2503d8d87c2b}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Uninstall\Messenger Service
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\
{D61D7E1A-6613-49CA-B6F9-51DB248E209D}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Explorer\Browser Helper objects\{D61D7E1A-6613-49CA-B6F9-51DB248E209D}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Uninstall\IExplorer Security Plug-in
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Uninstall\Internet Explorer Secure Bar
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\
{aa6d4f53-4c8d-4549-84d2-02d584acc4e9}
ska.exeDelete Avmyscan.com registry entries:
IAPro.exe
HKCU\..\Run: [Internet Antivirus] “c:\program files\Internet Antivirus\IAvir.exe” /s
HKCU\..\RunOnce: [3P_UDEC_IA] “%UserProfile%\
Desktop\IAInstall.exe” 0;C;user_id=165639&uid=0
HKCU\..\Policies\Explorer\Run: [iv] “%UserProfile%\Local Settings\
Application Data\Microsoft\Internet Explorer\iv.exe”
av2009.exe
Antivirus2009.exe
shlwapi.dll
wininet.dll
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\
“Antivirus” = “%ProgramFiles%\Antivirus 2009\Antvrs.exe”
HKEY_CURRENT_USER\Software\Antivirus
HKEY_LOCAL_MACHINE\SOFTWARE\Antivirus
gtawclv.dllDelete Syshomepage.com/security/xp registry entries:
vjxwnn.dll
khtbpdl.dll
cfqbw.dll
fdpzgi.dll
vmlwp.dll
veptlh.dll
isamini.exe
isamonitor.exe
pmmon.exe
pmsngr.exe
iesplugin.dll
iesuninst.exe
isaddon.dll
Online Security Guide.url
Security Troubleshooting.url
Online Security Guide.url
Security Troubleshooting.url
pmmon.exe
pmsngr.exe
pmuninst.exe
gtawclv.dll
vjxwnn.dll
khtbpdl.dll
cfqbw.dll
fdpzgi.dll
vmlwp.dll
veptlh.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{70d17a5f-ef27-4295-90f5-20ad6f24834f}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{80ced3d6-ece9-48ba-8df8-2503d8d87c2b}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Messenger Service
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D61D7E1A-6613-49CA-B6F9-51DB248E209D}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper objects\
{D61D7E1A-6613-49CA-B6F9-51DB248E209D}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IExplorer Security Plug-in
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Explorer Secure Bar
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{aa6d4f53-4c8d-4549-84d2-02d584acc4e9}

Windows Firewall has detected unauthorised activity , but unfortunately it cannot help you remove viruses, keyloggers and spyware threats that steal your personal information from you computer. Click here to pick recommended software.Trojan-Spy.Win32.Banker.aiw screenshots:
“Warning! Potential Spyware Operation. Your computer is making unauthorized copies of your system and Internet files. Run full scan now to pervent any unathorised access to your files! Click YES to download spyware remover …”and
"Warning! Potential Spyware Operation. Your computer is making unauthorized copies of your system and Internet files. run full scan now to prevent any unauthorised access to your files. Click here to download spyware remover”,as well as that you stop system destruction.
system.exeDelete Trojan FakeAValert registry entries:
autorun.exe
printer.exe
WinAvXX.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Run\”WinAVX” = “%System%\WinAvXX.exe”
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\
Run\”WinAVX” = “%System%\WinAvXX.exe”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\”Shell” = “Explorer.exe”
AVP2009.exeDelete AntivirusPro 2009 registry entries:
AntivirusPro2009.exe
AntivirusPro2009.lnk
UninstallAntivirusPro2009.lnk
avp2009.cpl
avp2009.dat
AVP20091.dat
HKEY_CURRENT_USER\Software\AntiVirus
HKEY_CURRENT_USER\Software\AVP2009
HKEY_CLASSES_ROOT\.key
HKEY_CURRENT_USER\Software\Microsoft\Windows\
CurrentVersion\Run “Antivirus”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\
CurrentVersion\Run “Antivirus”
ultraantivirus2009.exeDelete Ultra Antivirus 2009 registry values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Uninstall\Ultra Antivirus 2009
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Run “Ultra Antivirus 2009″
Total Secure 2009.lnkDelete TotalSecure 2009 registry entries:
scan.exe
totalsecure.s1
totalsecure.s2
totalsecure.s3
totalsecure.s4
totalsecure.s5
totalsecure.s6
HKEY_USERS\S-1-5-21-1172441840-534431857-1906119351-500\Software\
Microsoft\Windows\CurrentVersion\Run\”TotalSecure2009? = “C:\Program Files\TotalSecure2009\scan.exe”
HKEY_CURRENT_USER\Software\TotalSecure2009
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Uninstall\Total Secure 2009
XP Antivirus 2009 automatical remover:AV2009Install.exeDelete XP Antivirus 2009 registry entries:
av2009[1].exe
XPAntivirus2009.exe
av2009.exe
HKEY_CURRENT_USER\software\microsoft\windows\
currentversion\run ieupdate
dbbase.divDelete Trojan-keylogger.WIN32.Fung registry entries:
pdefendr.exe
sccmsk.dll
ikbmqvex.exe
Personal Defender 2009.lnk
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “asus32″
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PDefender
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run “Personal Defender 2009″