Tuesday, May 26, 2009

How to remove personal antivirus.

Personal Antivirus

Personal Antivirus is a rogue anti-spyware created by company named innovagest 2000 and is a clone of general antivirus and Internet antivirus program. Personal antivirus is installed by Trojan which attempts to trick you into buy the alleged rogue anti-spyware program. This program is advertised through the use of trojans that display fake security alerts on your computer. These alerts will contain messages starting that your computer is under attack or that malware has been detected ruuning on your computer.

Personal Antivirus is a fake Antivirus program, it is just a spyware program. When you click personal Antivirus alerts, will be installed automatically on your computer. When running, it will scan your computer and display a variety of infections that cannot be removed unless you first purchase the program. In reality, these infections are all fake and are only be shown to scare you into purchasing the personal antivirus program.

Personal Antivirus symptoms :-

Personal Antivirus generate fake pop ups like-
1. Your computer is infected by viruses attacks. Scan your computer with Personal antivirus program.
2. Your computer is infected.
3. Activate Personal Antivirus for more security.
4. Critical system error and show many types of pop ups.

You can remove personal Antivirus software from your computer by delteing these files and registry entires from your computer, by following these steps.

%Documents and Settings%\All Users\Desktop\Personal Antivirus.lnk
%Documents and Settings%\All Users\Start Menu\Programs\Personal Antivirus
%Documents and Settings%\All Users\Start Menu\Programs\Personal Antivirus\Personal Antivirus Home Page.lnk
%Documents and Settings%\All Users\Start Menu\Programs\Personal Antivirus\Personal Antivirus.lnk
%Documents and Settings%\All Users\Start Menu\Programs\Personal Antivirus\Purchase License.lnk
%UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\Personal Antivirus.lnk
%UserProfile%\Application Data\Personal Antivirus
%UserProfile%\Application Data\Personal Antivirus\settings.ini
%UserProfile%\Application Data\Personal Antivirus\uill.ini
%UserProfile%\Application Data\Personal Antivirus\unins000.exe
%UserProfile%\Application Data\Personal Antivirus\Uninstall Personal Antivirus.lnk
%UserProfile%\Application Data\Personal Antivirus\db
%UserProfile%\Application Data\Personal Antivirus\db\config.cfg
%UserProfile%\Application Data\Personal Antivirus\db\Timeout.inf
%UserProfile%\Application Data\Personal Antivirus\db\Urls.inf
%UserProfile%\Local Settings\Application Data\Microsoft\Windows\log.txt
%UserProfile%\Local Settings\Application Data\Microsoft\Windows\pguard.ini
%UserProfile%\Local Settings\Application Data\Microsoft\Windows\services.exe
%Program Files%\Personal Antivirus
%Program Files%\Personal Antivirus\activate.ico
%Program Files%\Personal Antivirus\Explorer.ico
%Program Files%\Personal Antivirus\PerAvir.exe
%Program Files%\Personal Antivirus\unins000.dat
%Program Files%\Personal Antivirus\uninstall.ico
%Program Files%\Personal Antivirus\working.log
%Program Files%\Personal Antivirus\db
%Program Files%\Personal Antivirus\db\DBInfo.ver
%Program Files%\Personal Antivirus\db\ia080614.db
%Program Files%\Personal Antivirus\db\ia080618x.db
%Program Files%\Personal Antivirus\Languages
%Program Files%\Personal Antivirus\Languages\IAEs.lng
%Program Files%\Personal Antivirus\Languages\IAFr.lng
%Program Files%\Personal Antivirus\Languages\IAGer.lng
%Program Files%\Personal Antivirus\Languages\IAIt.lng
%WINDOWS%\system32\log.txt
%UserProfile%\Application Data\Microsoft\Windows\winlogon.exe
%UserProfile%\Local Settings\Application Data\Microsoft\Internet Explorer\iGSh.png
%UserProfile%\Local Settings\Application Data\Microsoft\Internet Explorer\iMSh.png
%UserProfile%\Local Settings\Application Data\Microsoft\Internet Explorer\iPSh.png
%UserProfile%\Local Settings\Application Data\Microsoft\Internet Explorer\iv.exe
%UserProfile%\Local Settings\Application Data\Microsoft\Windows\log.txt
%UserProfile%\Local Settings\Application Data\Microsoft\Windows\pguard.ini
%UserProfile%\Local Settings\Application Data\Microsoft\Windows\services.exe


The registry entries that need to be removed are as follows:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Personal Antivirus_is1
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ITGRDENGINE
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ITGrdEngine
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer “PrS”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “Personal Antivirus”

No comments:

Post a Comment