Monday, November 14, 2011

Remove System Fix malicious optimizer, non-viral counterfeit extermination

System Fix (SystemFix) rogueware is one of those utilities that, quite surprisingly, do not run after viruses. Actually, a product defined as rogueware virtually under nor circumstances struggles to detect malicious programs, so that the correct description for this case would run that there is no attempt to fake detecting of viruses, unlike in case of a phony antivirus. Therefore those security so called observers who call the above malware fake antispyware, pretended antivirus and the like obviously get no clue of what they are writing about.
True, removal of System Fix would be strongly recommended whether it were fake antispyware or software pretending to be another kind of PC optimizer.
The case fall within the biggest family of phonies. It may be mentioned under the name of its pioneer members such as WinHDD – WinHDD strain, DiskRepair malware etc.
Get rid of System Fix as yet another fake computer optimizer concocted by notorious band of hackers. Failure to exterminate the parasite enables the adware to load enormous quantities of its popups, as well as oppressing harmless and probably valuable software installed on your PC.
Click here to start downloading free scanner, which will serve your malware detection and deletion needs.

System Fix snapshot:





SystemFix fake errors and popups:
    Critical Error!
    Damaged hard drive clusters detected. Private data is at risk.

    Critical Error
    Hard Drive not found. Missing hard drive.

    Critical Error
    RAM memory usage is critically high. RAM memory failure.

    Critical Error
    Windows can't find hard disk space. Hard drive error

    Critical Error!
    Windows was unable to save all the data for the file \System32\496A8300. The data has been lost. This error may be caused by a failure of your computer hardware.

    Critical Error
    A critical error has occurred while indexing data stored on hard drive. System restart required.

    System Fix
    The system has been restored after a critical error. Data integrity and hard drive integrity verification required.

    Activation Reminder
    System Fix Activation
    Advanced module activation required to fix detected errors and performance issues. Please purchase Advanced Module license to activate this software and enable all features.

    Low Disk Space
    You are running very low disk space on Local Disk (C:).

    Windows - No Disk
    Exception Processing Message 0x0000013

    Critical Error
    Hard drive clusters are partly damaged. Segment load failure.

Manual removal guide:
Delete infected files:
%AllUsersProfile%\~
%AllUsersProfile%\~
%AllUsersProfile%\
%AllUsersProfile%\.exe
%AppData%\Microsoft\Internet Explorer\Quick Launch\System Fix.lnk
%Desktop%\System Fix.lnk
%StartMenu%\Programs\System Fix\
%StartMenu%\Programs\System Fix\System Fix.lnk
%StartMenu%\Programs\System Fix\Uninstall System Fix.lnk
%Temp%\smtmp\
%Temp%\smtmp\1
%Temp%\smtmp\1
%Temp%\smtmp\2
%Temp%\smtmp\3
%Temp%\smtmp\4 
Delete infected registry entries:
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main "Use FormSuggest" = 'Yes'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "CertificateRevocation" = '0'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "WarnonBadCertRecving" = '0'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop "NoChangingWallPaper" = '1'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Associations "LowRiskFileTypes" = '.zip;.rar;.nfo;.txt;.exe;.bat;.com;.cmd;.reg;.msi;.htm;.html;.gif;.bmp;.jpg;.avi;.mpg;.mpeg;.mov;.mp3;.m3u;.wav;.scr;'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Attachments "SaveZoneInformation" = '1'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer "NoDesktop" = '1'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System "DisableTaskMgr" = '1'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run ".exe"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run ""
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system "DisableTaskMgr" = '1'
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download "CheckExeSignatures" = 'no'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced "Hidden" = '0'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced "ShowSuperHidden" = '0'

No comments: