Monday, February 27, 2012

Remove Smart Fortress 2012 Fake Antivirus

Smart Fortress 2012 is a variant of Windows targeting fake. The variant is downloaded under the premise of being a security update.
The workflow of the scam implies introduction of the same trojan into any computer system. Smart Fortress 2012 is even more annoying as it tends to start its processes when user is requesting another program to run. That is, the requested program may be contained by the aggressive infection, and its processes are launched instead.
Another peculiarity of the program is its attempts to show fake firewall alert whenever user is trying to open web-browser or in the middle of web-surfing.
All those tricks are meant to persuade user into purchasing the self-announced automatic update, which is, in the actuality, a piece of adware that sets up a number of annoying restrictions.
To remove Smart Fortress 2012 adware for free, apply manual instructions that cover the parasite entirely so that both restrictions and popups are eliminated or download free automated removal tool.


Smart Fortress 2012 screenshot:




Smart Fortress 2012 manual removal guide:
Delete infected files:
%CommonAppData%\
%CommonAppData%\\
%CommonAppData%\\.exe
Delete infected registry entries:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce ""
HKEY_CURRENT_USER\Software\Classes\
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\{a2a9545d-a0c2-42b4-9708-a0b2badd77c8}
HKEY_CLASSES_ROOT\
HKEY_USERS\S-1-5-21-861567501-152049171-1708537768-1003_Classes\%s "(Default)" = ""
HKEY_USERS\S-1-5-21-861567501-152049171-1708537768-1003_Classes\\shell\open\command "(Default)" = "%CommonAppData%\\.exe" -s "%1" %*
HKEY_CURRENT_USER\Software\Classes\.exe "(Default)" = ""
HKEY_CURRENT_USER\Software\Classes\\shell\open\command "(Default)" = "%CommonAppData%\\.exe" -s "%1" %*

No comments: