Windows Antivirus Release is designed by hackers to imitate activities inherent to antivirus. It is a fake security tool, for it only mimics antimalware without targeting a single aspect of computer protection.
Besides, in order to introduce their counterfeit and enable its unimpeded functioning the hackers exploit and develop a range of imperfections in computer systems, which make the affected PC more vulnerable to real viruses.
Removal of Windows Antivirus Release is a prerequisite for actual security tool running. Free scanner made available here will remove Windows Antivirus Release adware and proceed to extermination of actual threats.
Besides, in order to introduce their counterfeit and enable its unimpeded functioning the hackers exploit and develop a range of imperfections in computer systems, which make the affected PC more vulnerable to real viruses.
Removal of Windows Antivirus Release is a prerequisite for actual security tool running. Free scanner made available here will remove Windows Antivirus Release adware and proceed to extermination of actual threats.
Windows Antivirus Release screenshot:
0W000-000B0-00T00-E0020
NOTE: "Activating" Windows Antivirus Release is not enough. You need to remove related trojans \ rootkits using
reliable malware removal solution.
It is important to fix Windows registry after malware removal using safe registry cleaner software.
Delete infected files:
%AppData%\NPSWF32.dll
%AppData%\Protector-[random 3 characters].exe
%AppData%\Protector-[random 4 characters].exe
%AppData%\W34r34mt5h21ef.dat
%AppData%\result.db
%CommonStartMenu%\Programs\Windows Antivirus Release.lnk
%Desktop%\Windows Antivirus Release.lnk
Delete Windows Antivirus Release registry entries:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “WarnOnHTTPSToHTTPRedirect” = 0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System “DisableRegedit” = 0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System “DisableRegistryTools” = 0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System “DisableTaskMgr” = 0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system “ConsentPromptBehaviorAdmin” = 0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system “ConsentPromptBehaviorUser” = 0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system “EnableLUA” = 0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “Inspector”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Settings “net” = “2012-4-27_2″
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Settings “UID” = “tovvhgxtud”
HKEY_CURRENT_USER\Software\ASProtect
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\[random].exe
No comments:
Post a Comment