FrEn

Envoyer Imprimer

Free malware removal tool to remove Vista Guardian 2010

Écrit par Administrator  |  Lundi, 01 Février 2010 18:48
AddThis Social Bookmark Button
There are no translations available.

Vista Guardian 2010 is a rogue antispyware that may reprensent security risk for your system, it's a malware that pretends to be an Antivirus. It is a wolf in sheep's clothing. It conducts a fake scan of your system; you are warned by a fake alarm that there are more malwares on your system. It’s true indeed, there is really a malware in your system but I think the only malware on your system is Vista Guardian 2010. It invites you to purchase a license to remove malware, do not, it's a scam, you need a license for a malware? This so-called Antivirus tries to scam you. Uninstall Vista Guardian 2010 immediately from your system.

Vista Guardian 2010

To remove Vista Guardian 2010 (Uninstall Vista Guardian 2010)

  • Download this free removal tool for Vista Guardian 2010
  • Extract it
  • Launch
  • Click on the delete button

Vista Guardian 2010 will be removed from your system in 10s. Restart your computer when it’s finished.

This removal tool for Vista Guardian 2010 works also for

  • Antivirus XP 2010
  • Antivirus Vista 2010
  • Antivirus Win 7 2010
  • XP Antivirus Pro
  • XP AntiSpyware 2010
  • XP Internet Security
  • XP Internet Security 2010
  • XP Guardian
  • Vista Antispyware 2010
  • Vista Guardian
  • Vista Antivirus Pro
  • Vista Internet Security
  • Vista Internet Security 2010
  • Win 7 Antivirus Pro
  • Win 7 Antispyware 2010
  • Win 7 Internet Security
  • Win 7 Internet Security 2010
  • Win 7 Guardian

Processes :

  • av.exe

Files :

  • %AppData%\av.exe
  • %AppData%\[random]
  • %Temp%\[random].dll

Registry

Registry keys created

  • HKEY_CURRENT_USER\Software\Classes\.exe
  • HKEY_CURRENT_USER\Software\Classes\.exe\DefaultIcon
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\open
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\start
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\start\command
  • HKEY_CURRENT_USER\Software\Classes\secfile
  • HKEY_CURRENT_USER\Software\Classes\secfile\DefaultIcon
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell\open
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell\open\command
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell\runas
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell\runas\command
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell\start
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell\start\command

Registry values created

  • HKEY_CURRENT_USER\Software\Microsoft\Windows
    • Identity = 0x5B2C8CF8
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command
    • (Default) = ""%AppData%\av.exe" /START "%1" %*"
    • IsolatedCommand = ""%1" %*"
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command
    • (Default) = ""%1" %*"
    • IsolatedCommand = ""%1" %*"
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\start\command
    • (Default) = ""%1" %*"
    • IsolatedCommand = ""%1" %*"
  • HKEY_CURRENT_USER\Software\Classes\.exe\DefaultIcon
    • (Default) = "%1"
  • HKEY_CURRENT_USER\Software\Classes\.exe
    • (Default) = "secfile"
    • Content Type = "application/x-msdownload"
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell\open\command
    • (Default) = ""%AppData%\av.exe" /START "%1" %*"
    • IsolatedCommand = ""%1" %*"
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell\runas\command
    • (Default) = ""%1" %*"
    • IsolatedCommand = ""%1" %*"
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell\start\command
    • (Default) = ""%1" %*"
    • IsolatedCommand = ""%1" %*"
  • HKEY_CURRENT_USER\Software\Classes\secfile\DefaultIcon
    • (Default) = "%1"
  • HKEY_CURRENT_USER\Software\Classes\secfile
    • (Default) = "Application"
    • Content Type = "application/x-msdownload"

Registry values changed

  • HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
    • (Default) =
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center
    • AntiVirusOverride =
    • FirewallOverride =

Download

 

 

Commentaires  

 
0 #4 07-03-2010 14:26
Merci, une très bonne aide
Citer
 
 
0 #3 15-02-2010 09:03
nao sei nao
Citer
 
 
0 #2 12-02-2010 03:14
This Tool worked perfectly. Thank you so much for it!!!
Citer
 
 
+1 #1 04-02-2010 12:52
Log really useful, the malware is now in hell Thanks :)
Citer
 

Articles connexes
Derniers articles

No data

.
Information | Contact

© All Rights Reserved. net-studio.org 2009