Monday, June 25, 2012

Windows Pro Defence - fake anti-virus to remove

Be attentive of Windows Pro Defencecomputer virus that is very persistant. This parasite, fabricated to push innocent Internet users into buying internet viruses. This is the reason why this app should be treated as dangerous program that is not able to render any security services for your system. Instead of making your PC free from viruses, this badware seriously infects your computer and it inevitably leads to the distortion of PC function. This entry will help you to enlighten on the main information about this unwanted software. Go on reading.

Windows Pro Defence uses secret pathes to enter the targeted PC. The process of infiltration is invisible. Sometimes the available anti-viruses cannot protect you against threats, and in some cases users prefer not to have any anti-viruses at all. Nevertheless,Windows Secure Web Patch attempts to mimic the features of some powerful antivirus. It runs many fake scanners and tells that your system is seriously infected. Showing tons of pop-ups and falsified scanning results it step by step brings you to the point where you will be asked by the virus to buy its fake licensed version (so-called ultimate protection). Please be advised enough not to jump at the bait of the cyber crooks and not make such a serious mistake. Remove this parasite as described in the removal guide stipulated below.


malware removal tool

Delete Windows Pro Defence files:
%AppData%\NPSWF32.dll
%AppData%\Protector-[rnd].exe
%AppData%\result.db
Delete Windows Pro Defence registry entries:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Inspector %AppData%\Protector-[rnd].exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnHTTPSToHTTPRedirect 0
HKCU\Software\Microsoft\Windows\CurrentVersion\Settings\ID 4
HKCU\Software\Microsoft\Windows\CurrentVersion\Settings\UID [rnd]
HKCU\Software\Microsoft\Windows\CurrentVersion\Settings\net [date of installation]
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ConsentPromptBehaviorAdmin 0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ConsentPromptBehaviorUser 0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\EnableLUA 0
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AAWTray.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AAWTray.exe\Debugger svchost.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVCare.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVCare.exe\Debugger svchost.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVENGINE.EXE
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVENGINE.EXE\Debugger svchost.exe

No comments:

Post a Comment