Showing posts with label Anti. Show all posts
Showing posts with label Anti. Show all posts

Tuesday, December 8, 2009

AntiTroy Removal Information

AntiTroy (Anti Troy) belongs to one of the most widespread rogue antispyware families. However, it is a quite distinct malware and the way to remove AntiTroy is quite different from those suitable for its relatives.
The rogue is distributed with trojans and such way of installation prevails over the downloading and installation by user, according to the experts estimate. The sooner you get rid of AntiTroy, the less are chances for hard damaging your computer system by the malignant program codes of AntiTroy. Please do not pay as the adware prompts you to do the fee for its activation; neither that will put an end to the annoying ads by AntiTroy, nor the adware will become useful in any sense. Moreover, paying the fee is encouragement and supporting of hackers and thus a facilitation of viruses and counterfeits development and propagation. Click here to launch free system scan and perform safe and fast AntiTroy removal.

AntiTroy screenshot:



AntiTroy removal tool:

AntiTroy removal guide:
Delete AntiTroy files:
AntiTroy.lnk
1 AntiTroy.lnk
2 Homepage.lnk
3 Uninstall.lnk
AntiTroy.exe
main_config.xml
uninstall.exe
1009stea525z1.dll
1018zhr5at19497.ocx
101z5hie92236.ocx
1853worz2f19.bin
18f0addwaze5917.ocx
194z45py6b9.ocx
.exe
Delete AntiTroy registry entries:

HKEY_CURRENT_USER\Software\AntiTroy
HKEY_LOCAL_MACHINE\SOFTWARE\AntiTroy
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\
AntiTroy
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "AntiTroy.exe"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ".exe"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "AntiTroy"

Tuesday, April 28, 2009

PCAntiMalware (PC AntiMalware) Removal Instructions

PCAntiMalware (PC AntiMalware) is advertised in two stages if considering its adware. At first, the trojan is installed that shows alerts at the desktop toolbar. These alerts report computer security problem and ask to install PCAntiMalware redirecting users to downloading link of the rogue antispyware trial version or directly to the purchase form that requires user to pay registration free and get full version. Normally, trialware is installed after with trojan from the backdoor. The adware is more complex advertising device that plays fake scan and shows a variety of security alerts. PCAntiMalware belongs to the family of rogue security tools that includes such adware as Cleaner 2009 and AntiMalwareSuite. PCAntiMalware removal in manual mode is rather impracticable. Use reliable professional to get rid of PCAntiMalware. The one that has been tested to show its ability to remove PCAntiMalware is available for download right here. Click here to start free scan and remove PCAntiMalware using Spyware Doctor with antivirus.

PCAntiMalware screenshot:

PCAntiMalware removal tool:


PCAntiMalware manual removal guide:
Delete PCAntiMalware files:
Contact customer support.url
PCAntiMalware on the Web.url
Uninstall PCAntiMalware.lnk
PCAntiMalware
Activate.dat
appupdate.dat
AsAgents.dll
AsAgents.xml
atl71.dll
AutoProcess.dat
dbupdate.dat
InstUp.exe
lapv.dat
license.rtf
mfc71.dll
msvcp71.dll
msvcr71.dll
PCAM.exe
PCAM.xml
PP.exe
pv.dat
readme.rtf
scanlog.xml
settings.ini
shellext.dll
shellext.xml
Summary.dat
tasks.dat
threatnet.dat
threatnet.ini
unins000.dat
unins000.exe
uninstall.ico
UserAgent.dll
database
knownfiles.dat
MalwareDB.dat
TEBase.dat
vbpv.dat
quaratine.dat
RTMonitor.dat
bootrem.exe

Delete PCAntiMalware registry entries:
HKEY_CURRENT_USER\Software\PCAntiMalware
HKEY_CLASSES_ROOT\\shellex\ContextMenuHandlers\ExplorerWAS
HKEY_CLASSES_ROOT\amshellext.ShellHook
HKEY_CLASSES_ROOT\amshellext.ShellHook.1
HKEY_CLASSES_ROOT\CLSID\{_CLSID_WAShellExecuteCheck}
HKEY_CLASSES_ROOT\CLSID\{4567AB12-EDED-4675-AF10-BA15EDDB4D7A}
HKEY_CLASSES_ROOT\CLSID\{4ADD95DA-B25D-4d21-9C5C-05FC6DE05860}
HKEY_CLASSES_ROOT\Directory\shellex\ContextMenuHandlers\ExplorerWAS
HKEY_CLASSES_ROOT\Drive\shellex\ContextMenuHandlers\ExplorerWAS
HKEY_CLASSES_ROOT\Interface\{4567AB12-A884-4CA6-B739-CEDB12FEF096}
HKEY_CLASSES_ROOT\TypeLib\{4567AB12-7DFC-4C46-BD8F-41259D169A0D}
HKEY_CLASSES_ROOT\TypeLib\{4567AB12-AE24-4FD6-B479-E2B464F32DA6}
HKEY_CLASSES_ROOT\washellext.WASContextMenu
HKEY_CLASSES_ROOT\washellext.WASContextMenu.1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Uninstall\PSAMAP_is1
HKEY_LOCAL_MACHINE\SOFTWARE\PCAntiMalware
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Explorer\ShellExecuteHooks “{4ADD95DA-B25D-4D21-9C5C-05FC6DE05860}”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Internet Settings\5.0\User Agent\Post Platform “UPSAMAP 4.1.228.0?
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\
Run “PCAntiMalware”

Thursday, February 5, 2009

AntiSpyware 3000 (AntiSpyware3000) backdoor installation schemes

AntiSpyware 3000 has very beautiful website and promising name. If user is redirected to this website, there are may be popping up alerts. There is also the offer in the green round to try AntiSpyware 3000 free. If you try it, the trialware is installed. You need to act fast after this and remove AntiSpyware 3000 if you are going to save Windows and data stored in your computer. Anti Spyware 3000 may act very promptly in destroying them. On this background, its pop-ups and scans bothering users are not so important. The above described scheme for AntiSpyware 3000 invasion is not the only. It is also possible to catch the trojan infection that may facilitate installation of AntiSpyware 3000. Normally, the trojan of vundo type make your browser start downloading the trialware without seeking user’s approval as legitimate program would do. The Windows is duped as the user grants necessary permission clicking at the misleading alert that is considered by Windows as legitimate. The trick is that it does not matter what button to click, any click is a permit to download malware. Download Spyware Doctor to start free scan and get rid of AntiSpyware 3000, as well as to remove trokjans and viruses, if any.

AntiSpyware 3000 screenshot:


AntiSpyware 3000 automatical remover:

Friday, November 28, 2008

Remove AntiSpywareGuard fake anti-spyware

AntiSpywareGuard wants users to pay more than 50 dollars per copy of its full version. This is the right of this program owners to ask as much as they want, but the way they are asking for this payment deserves to be treated as hacker’s attack. AntiSpywareGuard belongs to the type of malware that harms computer after installing itself (trial version) and is thus a malware of great safety and security risk. Remove AntiSpywareGuard for the harm it makes with trojans it comprises rather than for its high price of registration and inability to detect and remove spyware; AntiSpywareGuard registration and settlement of payment in relevant amount does not stop the trojans, the programs is so stupidly designed that trojans act autonomously and we would take the assumption they have no relation to AntiSpywareGuard unless we have not observed the installation of AntiSpywareGuard package with our own eyes. So get rid of AntiSpywareGuard and its trojans asap to save your system from great disaster. Click the link below to download free scanner which is a part of Spyware Doctor + antivirus and perform AntiSpywareGuard removal, including all supporting rogues.

AntiSpywareGuard screenshots:


AntiSpywareGuard automatical remover:

AntiSpywareGuard manual removal guide:
Delete AntiSpywareGuard files:
asg.exe
asg.ini
BL.dat
PP.exe
WL.dat
AntiSpywareGuard.lnk
Uninstall AntiSpywareGuard.lnk
Delete AntiSpywareGuard registry entries:
HKEY_CURRENT_USER\Software\AntiSpywareGuard
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AntiSpywareGuard
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform "3P_UASG 1.0.6.0"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "AntiSpywareGuard"

Sunday, September 7, 2008

AntiRogue Killer is a rogue! Removal instructions

AntiRogue Killer (AntiRogueKiller) is the latest rogue anti-spyware software that may be installed by trojan horses or through system security holes. AntiRogue Killer displays popups and alert messages of imaginary infections or threats to get you to purchase the full AntiRogue Killer program. AntiRogue Killer may slow your computer and decrease internet connection speed. Download AntiRogue Killer remover (Spyware Doctor + antivirus) to detect and remove AntiRogue Killer malware.

AntiRogue Killer screenshot:

AntiRogue Killer automatical remover:


AntiRogue Killer manual removal instructions:
Delete AntiRogue Killer files:
AntiRogueKiller on the Web.lnk
AntiRogueKiller.lnk
Uninstall AntiRogueKiller lnk
AntiRogueKiller.exe
AntiRogueKiller.url
unins000.dat
unins000.exe
Delete AntiRogue Killer registry entries:
HKEY_LOCAL_MACHINE\Software\AntiRogue Killer
HKEY_CURRENT_USER\Software\AntiRogue Killer

Saturday, August 9, 2008

AntiSpyCheck - remover and manual removal instructions

AntiSpyCheck is a rogue anti-spyware program that infects users computer using trojan horses and system security holes. AntiSpyCheck will display security warnings and spyware detection messages to trick users into buying "full" version of AntiSpyCheck. AntiSpyCheck malware should not be trusted, it may damage your computer and cause critical system errors and Windows crahses. Download AntiSpyCheck remover (Spyware Doctor + antivirus) to get rid of this nasty malware.

AntiSpyCheck screenshot:


AntiSpyCheck automatical remover:


AntiSpyCheck manual removal instructions:
Delete AntiSpyCheck files:

ad-protect.exe,
AntiSpyCheck.exe,
spamdet.dll
Delete AntiSpyCheck registry entires:

HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\ad-protect.EXE
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\spamdet.DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{9DA1990B-9BCA-4c80-AEFB-11A40FA849F9}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{C628512D-A058-4BD4-B47B-B036F45FA02B}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{99A753C6-E429-46BD-989E-DD4A21CD059D}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BBBD3E11-D201-46C9-8471-091D33159287}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2608046-DD09-A225-01BF-70C1EDD8B2E8}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D2C1986A-FBEC-4472-AABF-6D42F08DBC8E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D7ABE914-B8CF-4602-9145-6BDAAEDA21AA}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3210E86-46A8-5973-963F-0EF4CF226A0C}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{214345B8-BB69-498D-A168-29F58F15D806}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{CF231820-9904-4A37-B5B0-C87EF6F6CC82}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D2C1986A-FBEC-4472-AABF-6D42F08DBC8E}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F51BC478-D997-4C56-988D-79D9EEAAD1EC}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{FD4DCB8B-C33A-4E70-A351-6FAB7E1071A4}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{32BD20FD-41FD-47FB-9BC9-28DCBD7D55D7}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5AA883DB-7CFD-4737-B3C3-C671595ECCE5}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Ad-Protect.Addin
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Ad-Protect.Addin.1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Ad-Protect.Server
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Ad-Protect.Server.1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\spamdet.SpamDetector
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\spamdet.SpamDetector.1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\AntiSpyCheck.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AntiSpyCheck
HKEY_LOCAL_MACHINE\SOFTWARE\AntiSpyCheck
HKEY_CURRENT_USER\Software\Microsoft\Office\Outlook\Addins\Ad-Protect.Addin.1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\
Start Menu\Programs\AntiSpyCheck