Windows Interactive Security is a virus we are talking about in this post. Pay attention to such programs as Windows Privacy Counsel. It is not an antivirus as it claims to be. It is real virus which wants to steal your moeny. It can fool you into the purchasing of its malicious product by a lot of ways.
When you notice Windows Interactive Security inside your system you should keep in mind that it will do anything to get what it wants. There can be a lot of messages and pop-ups during the virus' running. All you have to do is to eliminate the rogue as soon as possible from your system.
We recommend you to delete the rogue with the help of our anti-spyware program GridinSoft Trojan Killer. Download it here below. The virus will be eliminated in several minutes.
Windows Interactive Security automatic remover:
Upon detection of viruses click Remove Selected. Reboot your computer if prompted.
Windows Interactive Security manual remover:
Delete Windows Interactive Security files:
Protector-[rnd].exe in %AppData% folder
Delete Windows Interactive Security registry entries:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Inspector %AppData%\Protector-[rnd].exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnHTTPSToHTTPRedirect 0
HKCU\Software\Microsoft\Windows\CurrentVersion\Settings\ID 4
HKCU\Software\Microsoft\Windows\CurrentVersion\Settings\UID [rnd]
HKCU\Software\Microsoft\Windows\CurrentVersion\Settings\net [date of installation]
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ConsentPromptBehaviorAdmin 0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ConsentPromptBehaviorUser 0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\EnableLUA 0
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AAWTray.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AAWTray.exe\Debugger svchost.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVCare.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVCare.exe\Debugger svchost.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVENGINE.EXE
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVENGINE.EXE\Debugger svchost.exe
No comments:
Post a Comment