7/05/2012

Windows Virus Hunter malware removal tricks

Windows Virus Hunter is a bogus security program that does its best to deceive unwary computer users. The worst thing this badware can do is to add to the list of the other more severe rogue anti-spyware programs. The main aim of Windows Virus Hunter is to push computer users into believing their computers have been corrupted by several different malware threats and convince them to buy its ‘full version’ for removal of these PC threats.

Windows Virus Hunter spreads via Trojans and enters the targeted computer without the PC owner’s consent. The fraudware won’t offer you real computer protection services. Windows Virus Hunter is able to bypass your genuine anti-virus software and, thus, can evade detection and removal. When installed on the infected computer, the parasite will execute continuous system scans and generate faux malware threats in order to make you believe you have serious issues with your computer. The hoax will also illustrate fake pop-up warning messages in an attempt to frighten you into thinking that your computer is infected with some malicious software and other PC infections. Windows Virus Hunter is able to infect system files and change computer settings. The malware usually redirects the hijacked web browser to malicious websites and blocks web users from accessing legitimate websites. To be short and precise it is a scam, which was created by criminals to steal your money and damage your PC. Therefore, do not believe Windows Virus Hunter and spend money on this useless program. Security analysts recommend you to get rid of this tool as quickly as possible after its detection on your computer by using a decent anti-malware application.

Windows Virus Hunter virus remover:

malware removal tool

Delete files:
%AppData%\NPSWF32.dll
%AppData%\Protector-[rnd].exe
%AppData%\result.db
Remove Windows Virus Hunter registry entries:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Inspector %AppData%\Protector-[rnd].exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnHTTPSToHTTPRedirect 0
HKCU\Software\Microsoft\Windows\CurrentVersion\Settings\ID 4
HKCU\Software\Microsoft\Windows\CurrentVersion\Settings\UID [rnd]
HKCU\Software\Microsoft\Windows\CurrentVersion\Settings\net [date of installation]
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ConsentPromptBehaviorAdmin 0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ConsentPromptBehaviorUser 0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\EnableLUA 0
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AAWTray.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AAWTray.exe\Debugger svchost.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVCare.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVCare.exe\Debugger svchost.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVENGINE.EXE
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVENGINE.EXE\Debugger svchost.exe

No comments:

Post a Comment