Monday, December 17, 2012

Remove Win 7 Home Security Pro 2013Remove Win 7 Home Security Pro 2013

Remove Win 7 Home Security Pro 2013
Win 7 Home Security Pro 2013 is a fake antivirus program that produce fake alert that there are several vulnerabilities are detected in the computer which Win 7 Home Security Pro 2013 is installed. Win 7 Home Security Pro 2013 installs into the computer and will configure itself to start automatically (in registry) when Windows boot. Win 7 Home Security Pro 2013 will scan the computer and WILL SURELY detect many malwares in the computer. In fact, it is just a fake alert. The intention of Win 7 Home Security Pro 2013 is to urge the user to register Win 7 Home Security Pro 2013 by purchasing the full version of Win 7 Home Security Pro 2013 so that to earn some money from the user. Win 7 Home Security Pro 2013 cannot detect and remove any malware / virus / trojan.


Win 7 Home Security Pro 2013 can be removed by stopping the processes and removing the files by using Emsisoft HiJackFree. Then the user should remove the registry entries added or modified by Win 7 Home Security Pro 2013 shown in the removal guide below. All files related to Win 7 Home Security Pro 2013 must be deleted. 

Win 7 Home Security Pro 2013 should be removed immediately!

Win 7 Home Security Pro 2013 Removal Guide
Kill Process
(How to kill a process effectively?)
[random].exe

Delete Registry

HKEY_CURRENT_USER\Software\Classes\.exe
HKEY_CURRENT_USER\Software\Classes\.exe\ [random]
HKEY_CURRENT_USER\Software\Classes\.exe\Content Type application/x-msdownload
HKEY_CURRENT_USER\Software\Classes\.exe\DefaultIcon
HKEY_CURRENT_USER\Software\Classes\.exe\DefaultIcon\ %1
HKEY_CURRENT_USER\Software\Classes\.exe\shell
HKEY_CURRENT_USER\Software\Classes\.exe\shell\open
HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command
HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command\ “[RANDOM CHARACTERS_1].exe” -a “%1" %*
HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command\IsolatedCommand “%1""%*
HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas
HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command
HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command\ “%1" %*
HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command\IsolatedCommand “%1" %*
HKEY_CURRENT_USER\Software\Classes\[random]
HKEY_CURRENT_USER\Software\Classes\[random]\ Application
HKEY_CURRENT_USER\Software\Classes\[random]\Content Type application/x-msdownload
HKEY_CURRENT_USER\Software\Classes\[random]\DefaultIcon
HKEY_CURRENT_USER\Software\Classes\[random]\DefaultIcon\ %1
HKEY_CURRENT_USER\Software\Classes\[random]\shell
HKEY_CURRENT_USER\Software\Classes\[random]\shell\open
HKEY_CURRENT_USER\Software\Classes\[random]\shell\open\command
HKEY_CURRENT_USER\Software\Classes\[random]\shell\open\command\ “[RANDOM CHARACTERS_1].exe” -a “%1" %*
HKEY_CURRENT_USER\Software\Classes\[random]\shell\open\command\IsolatedCommand “%1" %*
HKEY_CURRENT_USER\Software\Classes\[random]\shell\runas
HKEY_CURRENT_USER\Software\Classes\[random]\shell\runas\command
HKEY_CURRENT_USER\Software\Classes\[random]\shell\runas\command\ “%1" %*
HKEY_CURRENT_USER\Software\Classes\[random]\shell\runas\command\IsolatedCommand “%1" %*


Remove Folders and Files
%Temp%\[RANDOM]
%LocalAppData%\[RANDOM]
%CommonApplData%\[RANDOM]
%UserProfile%\Templates\[RANDOM]

No comments:

Post a Comment