Antivirus Action claims itself as an Innovative protection for your PC. It has fake basic antivirus feature such as "Performing Scan" and remove malware. It scare the user by showing the files in the computer are infected by malwares such as VMalum AWS, Advanced Stealth Email Protector Redirector 6.2, Ld Pinch V and so on. Do not be trick by it as all of them is a lie.
Antivirus Action should be removed immediately!
Antivirus Action Removal Guide
Kill Process
(How to kill a process effectively?)
[random]agnz.exe
Delete Registry
HKEY_CURRENT_USER\Software\
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\PhishingFilter "Enabled" = "0"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "ProxyOverride" = ""
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "ProxyServer" = "http=127.0.0.1:33921"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "ProxyEnable" = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "[random]agnz.exe"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "[random]agnz.exe"
Remove Folders and Files
%Temp%\[random]
Antivirus Action should be removed immediately!
Antivirus Action Removal Guide
Kill Process
(How to kill a process effectively?)
[random]agnz.exe
Delete Registry
HKEY_CURRENT_USER\Software\
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\PhishingFilter "Enabled" = "0"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "ProxyOverride" = ""
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "ProxyServer" = "http=127.0.0.1:33921"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "ProxyEnable" = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "[random]agnz.exe"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "[random]agnz.exe"
Remove Folders and Files
%Temp%\[random]
No comments:
Post a Comment