|
How to remove AntiMalware Go in 5mn, manually or with a removal tool for AntiMalware Go
|
|
Written by Administrator |
Saturday, 26 February 2011 06:49
|
|
AntiMalware Go is a rogue Antispyware, it's a malware that pretends to be an Antivirus. AntiMalware Go a wolf in sheep's clothing. It conducts a fake scan of your system; you are warned by a fake alarm telling that there are some malwares on your system. It’s true indeed, there is really a malware in your system but I think the only malware on your system is this AntiMalware Go. AntiMalware Go invites you to purchase a license for this bogus program to remove malware, do not, it's a scam, you need a license for a malware? This so-called Antivirus tries to scam you. Uninstall AntiMalware Go as soon as possible from your system with this removal tool for AntiMalware Go.

To remove AntiMalware Go (Uninstall AntiMalware Go)
- Restart your computer and as soon as your computer turns on hit the F8 key (repeatedly) until a screen comes up
- Choose Start computer in SAFE MODE with network support
- Open Internet Explorer
- Go to Tools => Internet Options => Connections Tab => LAN Settings
- Uncheck "Use a proxy server"
- Recheck "Automatically detect settings"
- Download this free removal tool for AntiMalware Go
- Extract it
- Launch
- Click on the delete button
AntiMalware Go will be removed from your system in 10s. Restart your computer when it’s finished.

Processes :
Files :
- %Temp%\[random]
- %Temp%\[random]\[random].exe
- %AppData%\[Random]\[Random].exe
Registry
- HKCU\Software\[Random]
- HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings
- ProxyEnable = 1
- ProxyServer = http=127.0.0.1:[Random]
- HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings
- HKCU\Software\Microsoft\Internet Explorer\PhishingFilter
- HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AntiMalware Go
- HKLM\Software\Microsoft\Windows\CurrentVersion\Run
- [Random] = %Temp%\[random]\[random].exe
- [Random] = %AppData%\[Random]\[Random].exe

Remove AntiMalware Go manually :
- Restart your computer in safe mode :
- Restart your computer and as soon as your computer turns on hit the F8 key (repeatedly) until a screen comes up
- Choose Start computer in SAFE MODE
- Open the infected account
- Open explorer, paste into the address bar %Temp% then press enter, it will open C:\Documents and Settings\Christian\Local Settings\Temp on my computer
- Remove all .exe files and all random folders under this path
- Open explorer, paste into the address bar %AppData% then press enter, it will open C:\Documents and Settings\Christian\Local Settings\Application Data on my computer
- Remove all .exe files and all random folders under this path
- Click on the start menu button then click on run
- Type msconfig and press enter
- Go to the Startup tab
- Uncheck all keys that point to an .exe files under the %Temp% or %AppData% folder and click on OK
- Restart your computer in normal mode
This will solve the problem but you can run the removal tool to remove the other registry keys and values.
|
Comments
However, the removal tool works.
RSS feed for comments to this post.