Wednesday, August 15, 2012

Windows Safety Series virus. Delete it with us.

Windows Safety Series is one of the latest viruses that were detected by us in the web. The virus is not of a new kind of viruses, in fact it is old but it has new name and new look. When the rogue penetrates inside your system it automatically begins to scan it and tries to convince you that it is the program you need for the elimination of such-called trojans it supposedly finds in your machine. Do not let the virus fool you in such way.



The only virus inside your system is Windows Safety Series. The rest (all) information you receive from Windows Safety Series is totally fake. We suggest you to try our anti-malware program Loaris Trojan Remover for the successful deletion of the virus. You can download it here below. Be safe and careful in the web!

Windows Safety Series malware remover:

Windows Safety Series automatic remover:


Windows Safety Series automatic remover


Windows Safety Series manual removal guide:

Delete Windows Safety Series files:

Protector-[rnd].exe in %AppData% folder

Delete Windows Safety Series registry files:

HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Run\\Inspector %AppData%\\Protector-[rnd].exe
HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings\\WarnOnHTTPSToHTTPRedirect 0
HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Settings\\ID 4
HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Settings\\UID [rnd]
HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Settings\\net [date of installation]
HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\system\\ConsentPromptBehaviorAdmin 0
HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\system\\ConsentPromptBehaviorUser 0
HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\system\\EnableLUA 0
HKLM\\SOFTWARE\\Microsoft\\Windows NT\\CurrentVersion\\Image File Execution Options\\AAWTray.exe\Debugger svchost.exe
HKLM\\SOFTWARE\\Microsoft\\Windows NT\\CurrentVersion\\Image File Execution Options\\AVCare.exe
HKLM\\SOFTWARE\\Microsoft\\Windows NT\\CurrentVersion\\Image File Execution Options\\AVCare.exe\\Debugger svchost.exe
HKLM\\SOFTWARE\\Microsoft\\Windows NT\\CurrentVersion\\Image File Execution Options\\AVENGINE.EXE
HKLM\\SOFTWARE\\Microsoft\\Windows NT\\CurrentVersion\\Image File Execution Options\\AVENGINE.EXE\\Debugger svchost.exe

No comments:

Post a Comment