Showing posts with label manual. Show all posts
Showing posts with label manual. Show all posts

Wednesday, October 8, 2008

Antivirus 2010 manual removal guide [updated]

Yesterday we wrote about Antivirus 2010 (Antivirus2010) rogue antispyware. Now you can provide manual removal process using our instructions. Also you can remove Antivirus 2010 using Spyware Doctor with antivirus (free scan).

Antivirus 2010 manual removal guide:
Delete Antivirus 2010 files:
AV2010.exe
svchost.exe
IEDefender.dll
wingamma.exe
AV2010.lnk
AV2010.lnk
Uninstall.lnk
Delete Antivirus 2010 registry entries:
HKEY_CURRENT_USER\Software\AV2010
HKEY_CLASSES_ROOT\AppID\
{3C40236D-990B-443C-90E8-B1C07BCD4A68}
HKEY_CLASSES_ROOT\AppID\IEDefender.DLL
HKEY_CLASSES_ROOT\CLSID\
{FC8A493F-D236-4653-9A03-2BF4FD94F643}
HKEY_CLASSES_ROOT\IEDefender.IEDefenderBHO
HKEY_CLASSES_ROOT\IEDefender.IEDefenderBHO.1
HKEY_CLASSES_ROOT\Interface\
{7BC7565C-5062-43CE-8797-DC2C271140A9}
HKEY_CLASSES_ROOT\TypeLib\
{705FD64B-2B7B-4856-9337-44CA1DA86849}
HKEY_LOCAL_MACHINE\SOFTWARE\
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FC8A493F-D236-4653-9A03-2BF4FD94F643}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\
Control\Class\{4D36E972-E325-11CE-BFC1-08002bE10318}\0012
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\
Control\Class\{4D36E972-E325-11CE-BFC1-08002bE10318}\0013
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\
Control\Class\{4D36E972-E325-11CE-BFC1-08002bE10318}\0014
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\
CurrentVersion\Run “Windows Gamma Display”

Monday, October 6, 2008

Get rid of eKerbros to suspend slow destruction of your machine

eKerbros, malicious application with a bit strange denomination as for malware, is a product released by notorious malware developing group with head-quarter in Ukraine and affiliates around the globe. Some experts forewarn against its purchase not only because this is useless money spending and feeding of rascals’ business, but first of all because they are not sure in reliability of billing service used by eKerbros. By the other words, once you have purchased eKerbros, your credit card details may become a hackers’ prey and safety of your financial accounts can not be ensured any more until you invalidate your credit card.
Do you still need proofs that eKerbros can enter your computer without invitation and all its scans are false?
At the same time, detection of this rogue is relatively hard, especially at the background of hardly annoying malware. It is good to remove eKerbros before its installation (right after its download). Use the best scanner free of charge (Spyware Doctor) by clicking here. The same reference is applicable for eKerbros removal.

eKerbros screenshot:



eKerbros automatical remover:

eKerbros manual removal instructions:
Delete eKerbros files:

uninstall.exe
ekerberos.exe
skinactive.xml
hook.dll
eKerberos.exe
eKerberosInstaller[1].exe
Start eKerberos.lnk
Register eKerberos.lnk
eKerberos.lnk
Delete eKerbros registry entries:
eKerberos
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\
uninstall\ekerberos displayname
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\
uninstall\ekerberos uninstallstring
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\
uninstall\ekerberos
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\
run ekerberos
HKEY_LOCAL_MACHINE\software\ekerberos versioninfo
HKEY_LOCAL_MACHINE\software\ekerberos regshortcut
HKEY_LOCAL_MACHINE\software\ekerberos programdirectory
HKEY_LOCAL_MACHINE\software\ekerberos isstartatstartup
HKEY_LOCAL_MACHINE\software\ekerberos registrationurl
HKEY_LOCAL_MACHINE\software\ekerberos isproblem6
HKEY_LOCAL_MACHINE\software\ekerberos isproblem5
HKEY_LOCAL_MACHINE\software\ekerberos isproblem4
HKEY_LOCAL_MACHINE\software\ekerberos isproblem3
HKEY_LOCAL_MACHINE\software\ekerberos isproblem2
HKEY_LOCAL_MACHINE\software\ekerberos isproblem1
HKEY_LOCAL_MACHINE\software\ekerberos

Monday, April 14, 2008

Sgoblxtm Toolbar review, manual removal instructions and automatical remover

Sgoblxtm Toolbar is the latest representative of Zlob.Toolbars for Internet Explorer. It will try to trick users to buy full versions of rogue anti-spyware programs by showng fake security warnings and error reports. Sgoblxtm Toolbar was designed by russian hackers to steal your money, so you must remove this crapware as soon as possible. Sgoblxtm Toolbar may slow your PC and cause system errors and crashes. Use manual removal instructions or automatical removers to get rid of Sgoblxtm Toolbar.


Sgoblxtm Toolbar Remover with free scan

Sgoblxtm Toolbar screenshot:



Sgoblxtm Toolbar manual removal instructions
Remove Sgoblxtm Toolbar files and unregister dll's:

byxww.dll
Sgoblxtm.dll
sprt_ads.dll
browsew.dll
turbosearchsite.dll
toprates.dll
ssqpp.dll
oggview32.dll
ezzhjmt.dll
ddcyvtt.dll

Remove Sgoblxtm Toolbar registry entries:
A74F3FC3-CC9A-4D4C-AFB5-B56F0CAA445D
82C8422E-86A3-41C1-9F2E-094F7BF849E2
4911E55D-9240-49DB-B878-337DE4F53E70
47EFD4AD-CB46-4549-B24B-CEE415394C56
4090F502-6B2D-41B4-8409-B08905A3A0E6
F10587E9-0E47-4CBE-84AE-7DD20B8684BB
14B65C62-1F53-4B15-9476-5D697608536F
BCBC8B3C-397C-4D98-B6BA-FF337B9671E1
80DFDD57-D8B8-4991-82B9-9E9D426668B0
17D2F953-B2D1-4D1B-BCD3-20432E09ECF1
3DAF1739-AB9E-493E-8DD7-F65CDF363BCB
F4D76F09-7896-458a-890F-E1F05C46069F

Monday, March 24, 2008

How to remove Antispyware-reviews.biz hijacker

Antispyware-reviews.biz is a browser hijacker that promotes rogue anti-spyware programs. Antispyware-reviews.biz can be installed using trojan horses or other crapware. It may popup fake spyware detection reports. It is difficult to remove this hijacker manually. We recomend to use automatical removal tools with free scan to kill this nasty malware.

Download Antispyware-reviews.biz remover for Windows Vista and XP

Antispyware-reviews.biz screenshot: