|
Free malware removal tool to remove Vista Guardian 2010
|
|
Écrit par Administrator |
Lundi, 01 Février 2010 18:48
|
|
There are no translations available. Vista Guardian 2010 is a rogue antispyware that may reprensent security risk for your system, it's a malware that pretends to be an Antivirus. It is a wolf in sheep's clothing. It conducts a fake scan of your system; you are warned by a fake alarm that there are more malwares on your system. It’s true indeed, there is really a malware in your system but I think the only malware on your system is Vista Guardian 2010. It invites you to purchase a license to remove malware, do not, it's a scam, you need a license for a malware? This so-called Antivirus tries to scam you. Uninstall Vista Guardian 2010 immediately from your system.

To remove Vista Guardian 2010 (Uninstall Vista Guardian 2010)
- Download this free removal tool for Vista Guardian 2010
- Extract it
- Launch
- Click on the delete button
Vista Guardian 2010 will be removed from your system in 10s. Restart your computer when it’s finished.
This removal tool for Vista Guardian 2010 works also for
- Antivirus XP 2010
- Antivirus Vista 2010
- Antivirus Win 7 2010
- XP Antivirus Pro
- XP AntiSpyware 2010
- XP Internet Security
- XP Internet Security 2010
- XP Guardian
- Vista Antispyware 2010
- Vista Guardian
- Vista Antivirus Pro
- Vista Internet Security
- Vista Internet Security 2010
- Win 7 Antivirus Pro
- Win 7 Antispyware 2010
- Win 7 Internet Security
- Win 7 Internet Security 2010
- Win 7 Guardian

Processes :
Files :
- %AppData%\av.exe
- %AppData%\[random]
- %Temp%\[random].dll
Registry
Registry keys created
- HKEY_CURRENT_USER\Software\Classes\.exe
- HKEY_CURRENT_USER\Software\Classes\.exe\DefaultIcon
- HKEY_CURRENT_USER\Software\Classes\.exe\shell
- HKEY_CURRENT_USER\Software\Classes\.exe\shell\open
- HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command
- HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas
- HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command
- HKEY_CURRENT_USER\Software\Classes\.exe\shell\start
- HKEY_CURRENT_USER\Software\Classes\.exe\shell\start\command
- HKEY_CURRENT_USER\Software\Classes\secfile
- HKEY_CURRENT_USER\Software\Classes\secfile\DefaultIcon
- HKEY_CURRENT_USER\Software\Classes\secfile\shell
- HKEY_CURRENT_USER\Software\Classes\secfile\shell\open
- HKEY_CURRENT_USER\Software\Classes\secfile\shell\open\command
- HKEY_CURRENT_USER\Software\Classes\secfile\shell\runas
- HKEY_CURRENT_USER\Software\Classes\secfile\shell\runas\command
- HKEY_CURRENT_USER\Software\Classes\secfile\shell\start
- HKEY_CURRENT_USER\Software\Classes\secfile\shell\start\command
Registry values created
- HKEY_CURRENT_USER\Software\Microsoft\Windows
- HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command
- (Default) = ""%AppData%\av.exe" /START "%1" %*"
- IsolatedCommand = ""%1" %*"
- HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command
- (Default) = ""%1" %*"
- IsolatedCommand = ""%1" %*"
- HKEY_CURRENT_USER\Software\Classes\.exe\shell\start\command
- (Default) = ""%1" %*"
- IsolatedCommand = ""%1" %*"
- HKEY_CURRENT_USER\Software\Classes\.exe\DefaultIcon
- HKEY_CURRENT_USER\Software\Classes\.exe
- (Default) = "secfile"
- Content Type = "application/x-msdownload"
- HKEY_CURRENT_USER\Software\Classes\secfile\shell\open\command
- (Default) = ""%AppData%\av.exe" /START "%1" %*"
- IsolatedCommand = ""%1" %*"
- HKEY_CURRENT_USER\Software\Classes\secfile\shell\runas\command
- (Default) = ""%1" %*"
- IsolatedCommand = ""%1" %*"
- HKEY_CURRENT_USER\Software\Classes\secfile\shell\start\command
- (Default) = ""%1" %*"
- IsolatedCommand = ""%1" %*"
- HKEY_CURRENT_USER\Software\Classes\secfile\DefaultIcon
- HKEY_CURRENT_USER\Software\Classes\secfile
- (Default) = "Application"
- Content Type = "application/x-msdownload"
Registry values changed
- HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center
- AntiVirusOverride =
- FirewallOverride =

|
Commentaires
S’abonner au flux RSS pour les commentaires de cet article.