Sunday, November 20, 2011

Remove Computer FIX (ComputerFIX) malicious helper

Computer FIX is going to help boosting up your PC. That is a conclusion one can make from its menu and description by the program vendor, if to consider these as true.
The program pretends to detect critical errors such as low disc space, critically high RAM usage, Registry errors etc. It suggests to resolve the issues it notifies you on, but that requires, according to the malware popups, to activate the program. Activation code would really help, but only in terms of Computer FIX removal.
Beware the program is an insidious counterfeit. It plays on user’s nerves generating dozens of dreadful alerts such as Windows - No Disk, while some of its files are busy disordering computer system.
A registration number for the misleading software is available below as soon as cracked by malware experts. However, you can remove Computer FIX applying advanced protection facility available here (free scan link) whether you have got the registration number or not.

ComputerFIX virus screenshot:




Computer FIX manual removal guide:
Delete infected files:
%AllUsersProfile%\~
%AllUsersProfile%\~
%AllUsersProfile%\
%AllUsersProfile%\.exe
%AppData%\Microsoft\Internet Explorer\Quick Launch\Computer Fix.lnk
%Desktop%\
Computer Fix.lnk
%StartMenu%\Programs\
Computer Fix\
%StartMenu%\Programs\
Computer Fix\System Fix.lnk
%StartMenu%\Programs\
Computer Fix\Uninstall System Fix.lnk
%Temp%\smtmp\
%Temp%\smtmp\1
%Temp%\smtmp\1
%Temp%\smtmp\2
%Temp%\smtmp\3
%Temp%\smtmp\4
Delete ComputerFix registry entries:
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main “Use FormSuggest” = ‘Yes’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “CertificateRevocation” = ‘0′
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “WarnonBadCertRecving” = ‘0′
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop “NoChangingWallPaper” = ‘1′
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Associations “LowRiskFileTypes” = ‘.zip;.rar;.nfo;.txt;.exe;.bat;.com;.cmd;.reg;.msi;.htm;.html;.gif;.bmp;.jpg;.avi;.mpg;.mpeg;.mov;.mp3;.m3u;.wav;.scr;’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Attachments “SaveZoneInformation” = ‘1′
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer “NoDesktop” = ‘1′
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System “DisableTaskMgr” = ‘1′
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “.exe”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system “DisableTaskMgr” = ‘1′
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download “CheckExeSignatures” = ‘no’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced “Hidden” = ‘0′
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced “ShowSuperHidden” = ‘0′

No comments: