Sunday, November 22, 2009

Eco Antivirus 2010 traps

Eco Antivirus 2010 (EcoAntivirus 2010) is a system of traps guiding PC users to the state of mood when they are ripe for wasting money into Eco Antivirus 2010 scam. There are two main workflows for the Eco Antivirus 2010 trickery:
1. Popup technique implies manual downloading and installation of the rogue by user. A user may see advertisement at third party websites as he is surfing rather suspicious side of Internet. In addition, the user’s browsing may be redirected to Eco Antivirus 2010’s websites by hijacker previously downloaded by the user who fallen victim of fake codec or another trickery. Eco Antivirus 2010 websites provide the link for downloading Eco Antivirus 2010. Refrain from downloading the rogue or remove Eco Antivirus 2010 asap if you have been duped to download and install it;
2. Trojan technique implies backdoor installation of the rogue by a trojan program, which plays a role of the adware carrier. The trojan is downloaded in the same way that the above mentioned hijacker is (fake code request or similar trickery). It also may be transmitted by pendrive and spam.
The ending for both workflows is the same as the adware, once installed, acts according to one and same design and schedule repeating its fake scan and alerts in hope they finally convince the user of the need to pat the activation fee.
To get rid of EcoAntivirus 2010 scam you might need to remove Eco Antivirus 2010 trojan and hijacker, not only the adware. Click here to start free system scan to disclose all related to Eco Antivirus 2010 fake antispyware infections and to perform total Eco Antivirus 2010 removal.

Eco Antivirus 2010 screenshot:


Eco Antivirus 2010 removal tool:

Eco Antivirus 2010 manual removal guide:
Delete Eco Antivirus 2010 files:
Base.dat
msdl.exe
msll.exe
vec.exe
WStech.dll
Eco AntiVirus .lnk
Delete Eco Antivirus 2010 registry entries:
HKEY_CURRENT_USER\Software\ECO
HKEY_CLASSES_ROOT\AppID\{29256442-2C14-48CA-B756-3EE0F8BDC774}
HKEY_CLASSES_ROOT\AppID\WStech.DLL
HKEY_CLASSES_ROOT\CLSID\{A5DBD8CB-DF8A-4992-A655-B155216F6AFB}
HKEY_CLASSES_ROOT\Interface\{051C9A06-FB08-486F-B09B-8B33B261637D}
HKEY_CLASSES_ROOT\TypeLib\{512E801E-2F02-4ADE-ACAA-58F08A22B2F8}
HKEY_CLASSES_ROOT\WStech.WStechB
HKEY_CLASSES_ROOT\WStech.WStechB.1
HKEY_LOCAL_MACHINE\SOFTWARE\Eco
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5DBD8CB-DF8A-4992-A655-B155216F6AFB}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Control\Class\{4D36E96E-E325-11CE-BFC1-08002BE10318}\S
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run “mxcll”

No comments: