Your best source of information and news about hardware , hardware and xp on the internet 你最好的信息來源和新聞硬件,硬件和 XP在互聯網上

Vista ARTICLES Vista的文章 TOP 50排名前50位 Spyware Virus間諜軟件病毒 Vista SOFT Vista的軟 Vista HELP Vista幫助

Remove Antivirus 2008 Pro Fake Antivirus 2008年刪除防毒殺毒親假


Antivirus2008Pro is another fake antivirus scam that wants your $50. Antivirus2008Pro是另一個假防病毒騙局想你50元。 It displays fake virus reports, hogs ups system memory and makes you frustrated.它會顯示偽造的病毒報告,養豬企業的系統內存,並讓你感到沮喪。 Though it is categorised as dangerous by many websites, it is quite simple to remove.雖然這是列為危險的許多網站,這是很簡單刪除。 You just need to follow the following to simple steps to remove it.你只需要遵循以下簡單的步驟,以將其刪除。

REMOVAL STEPS 去除步驟

1. 1 。 Open task manager(Ctrl+Alt+Del).打開任務管理器(按Ctrl + Alt + Del鍵) 。 Locate and kill the process Antivirus2008PRO.exe using right click.找到並殺死進程Antivirus2008PRO.exe使用權按一下。

2. 2 。 Now go to C:\program files(Assuming that your windows are installed in C drive).現在到C : \程序文件(假設你的Windows安裝在C驅動器) 。
Locate and delete the folder Antivirus 2008 PRO找到並刪除該文件夾防病毒2008年專業

3. 3 。 Now delete the shortcuts made by it on desktop and in start menu.現在,刪除快捷方式作出的關於桌面和開始菜單。

4. 4 。 Empty recycle bin清空回收站

Now we need to do some registry editing. 現在我們需要做一些註冊表編輯。 This need to be done carefully, otherwise it can lead to system in stability 這需要進行認真,否則可能導致系統穩定

5. 5 。 Open registry editing.打開註冊表編輯。 Start Menu->Run-> Type regedit and press enter開始菜單> “運行, ”鍵入regedit ,然後按ENTER

6. 6 。 Navigate to轉到
HKEY_CURRENT_USER\Software\Antivirus 2008 PRO HKEY_CURRENT_USER \軟件\殺毒軟件2008年專業
and delete the key Antivirus 2008 PRO並刪除反病毒的關鍵2008年專業

7. 7 。 Now Navigate to現在轉到
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run HKEY_CURRENT_USER \軟件\微軟\的Windows \ CurrentVersion \運行
Locate string antivirus-2008pro.exe on right side and delete it using the right click.找到字符串防毒2008pro.exe右側並刪除它使用右鍵。
DONOT DELETE THE RUN KEY DONOT刪除運行的關鍵
8. 8 。 Now Navigate to現在轉到
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Antivirus 2008 PRO HKEY_CURRENT_USER \軟件\微軟\的Windows \ CurrentVersion \ Explorer中\ MenuOrder \啟動Menu2 \程序\ 2008年專業防病毒
and delete the key Antivirus 2008 PRO並刪除反病毒的關鍵2008年專業


9 Now if your themes, appearance and settings are missing you can download small tool from第9天,如果您的主題,外觀和設置丟失,您也可以下載小工具 here 在這裡

Now your system is free from this virus現在您的系統不受此病毒

Please post your comments in the comments section or click the CONTACT ME BUTTON Popularity: 3%請您的意見後評論中部分或按一下按鈕與我聯繫人氣: 3 %


Written by magakos. 撰稿magakos 。 Read more great feeds at is source 閱讀更多的是供稿源 WEBSITE 網站
10 comments 10評論 .
Read more articles on 閱讀更多文章 otherSoftware otherSoftware .

Related articles相關文章

10 comments 10評論

Read the comments left by other users below, or:讀的評論留下的其他用戶以下,或:

獲取您自己的gravatar訪問gravatar.com Alex 亞歷克斯
#1 # 1 . July 19th, 2008, at 1:03 PM. 。 2008年七月19日,在下午1點03 。

Thank you so much for these step by step instructions!非常感謝你對這些一步一步的指示! Avast antivirus did not catch this before it infected my computer, and I had been working on the whole antivirus thing all morning before I found this page. Avast防毒沒有趕上這之前我的電腦感染,我一直在努力對整個防病毒所有的事情之前,我早上發現此網頁。 Now the whole virus is gone and (hopefully) the porn popups and crap have stopped.現在,整個病毒是過去了, (希望)色情彈出式廣告和垃圾已經停止。 One thing, though, is that the program that infected my computer was not under the name mentioned in the instructions, but under VAV.exe.有一件事,不過是,受感染的程式,我的電腦沒有根據的名稱中所提到的指示,但根據VAV.exe 。
I found it funny that I had “Vista Antivirus 2008″ when I don’t even use Vista.我覺得好笑,我已“ Vista的殺毒軟件2008 ”時,我什至不使用Vista 。 :] : ]

An interesting thing I just found as I was typing the majority of this comment- some letters and spaces seem to have been deleted.一個有趣的發現我只是因為我打字的大多數此評論的一些字母和空間似乎已被刪除。 Could this be part of the virus?這會是一部分的病毒? Maybe the problem is the keyboard or my typing… but it seems interesting that I’m having problems now when I was not having any before the “attack” this morning.這個問題也許是我的鍵盤或輸入...但似乎有趣,我現在遇到問題時,我是沒有任何前的“攻擊”今天上午。 So, if there happen to be any errors that I have not caught, I am sorry.因此,如果發生任何錯誤,我沒有抓住,我很抱歉。
Question… could this virus possibly affect the keyboard?問題...可能這種病毒有可能影響到鍵盤? I had turned off the insert function, but as I was just typing this, it turned itself back on!我不得不關閉了插入功能,但我只是打字這一點,把自己重新!
Oh boy.噢男孩。

獲取您自己的gravatar訪問gravatar.com Luis 路易斯
#2 # 2 . July 30th, 2008, at 5:54 PM. 。 08年7月30號,在下午5點54 。

Gracias格拉西亞斯
… por su ayuda… buena suerte en todo..房秀... ...布埃納幫助suerte恩的TODO ..

獲取您自己的gravatar訪問gravatar.com Dieliz Dieliz
#3 # 3 . August 1st, 2008, at 5:18 PM. 。 08年8月1日,在下午五點18分。

Juste dire merci Juste可怕merci
pcq ca faisait 2 semaine que ce WAV 2008 m embetait mais grace vos conseils je l ai eliminer juste en allant sur l icone dans la bar de tache en cliquant ctrl+alt+delete et je n arrivais pas a le voir mais je me suis concentree et je fini par decouvrir que c etait ecris WAV lol pcq鈣faisait第2週你策音頻二○○八米embetait更多的寬限期沃斯conseils濟升愛eliminer juste恩allant河畔升icone中的拉欄的環節恩cliquant按Ctrl + Alt +刪除等仁濟ñ arrivais考績案中案一報仁濟我看豬concentree菲尼等仁濟桿decouvrir你ç閠ecris格式上海
bonne chance a tous博訥機率是人人

獲取您自己的gravatar訪問gravatar.com Dave Felt 戴夫費爾特
#4 # 4 . August 10th, 2008, at 12:15 AM. 。 08年8月十日,在上午12點15分。

These all helped, but did not get rid of the fake AntiVirus warning on the desktop.所有這些幫助,但並沒有擺脫假防病毒預警在桌面上。 I found that in System32/phc970j0eef3.bmp and in the registry:我發現,在System32/phc970j0eef3.bmp和註冊表中的:

And also have several variations in the registry under ??phc970j0eef3.xxx (various extensions like .scr, .bmp and so on.)也有幾個不同的註冊表下? ? phc970j0eef3.xxx (各種擴展等。可控矽, 。 bmp格式,等等。 )

I also hijacked the logon screen, and currently the default user logs on automatically, even though there are several users defined on the system and all have passwords.我也被劫持的登錄屏幕,目前默認的用戶自動登錄,即使有一些用戶定義的系統和所有的密碼。 Still working on that.不過這方面努力。

Thanks!!謝謝!

獲取您自己的gravatar訪問gravatar.com Smith 史密斯
#5 # 5 . August 16th, 2008, at 2:35 PM. 。 2008年8月16號,在下午2點35分。

I found the spyware in the processes and directory, not under the name noted, but under “rhcgw3j)ej28″.我發現間諜軟件的進程和目錄,而不是名義指出,但根據“ rhcgw3j ) ej28 ” 。 I also downloaded Malware and it found it also.我還下載了惡意軟件,它發現它也。 I now have to complete the rest of your steps.我現在必須完成其餘的步驟。 Thanks.謝謝。

獲取您自己的gravatar訪問gravatar.com Smith 史密斯
#6 # 6 . August 16th, 2008, at 2:35 PM. 。 2008年8月16號,在下午2點35分。

Sorry that file was “rhcgw3j0ej28?對不起,文件是“ rhcgw3j0ej28 ?

獲取您自己的gravatar訪問gravatar.com Kevin 凱文
#7 # 7 . August 19th, 2008, at 1:30 AM. 。 2008年八月19號,在上午01時30分。

well i found it and deleted the files.以及我發現它和刪除的文件。 but on the reged… i couldn’t find them afterwards…..但reged ...我無法找到他們後... .. and then i tried looking for them but no sign… but when i do msconfig….然後我試圖尋找他們,但沒有跡象...但是當我這樣做msconfig ... 。 i can still see it on my start up… the files of lphcaenj0e1fn and rhceenj031fn are still there…… im not sure if they are doing anything… but i rather rid of them from the start up part of my msconfig.我仍然可以看到它在我的開始...檔案lphcaenj0e1fn和rhceenj031fn仍然存在... ...免疫不知道他們在做什麼...但我而放棄他們從開始的一部分,我的msconfig 。 but i just can’t find any trace of them… so why would they still be there?但我無法找到任何踪跡...他們為什麼,他們會仍然是那裡? =X = X

plz help me =[ plz幫助我= [

獲取您自己的gravatar訪問gravatar.com Beny Beny
#8 # 8 . August 24th, 2008, at 1:53 PM. 。 2008年八月二十四日,在下午1點53分。

10x a lot…it helped me:D:D 10倍了很多...它幫助我: D :搭扣

獲取您自己的gravatar訪問gravatar.com MrMmills MrMmills
#9 # 9 . August 30th, 2008, at 2:30 PM. 。二○○八年8月30日,在下午2時30分。

For those who know how a “hosts” file works (c:\WINDOWS\system32\drivers\etc\hosts), you may want to put in the following entry to try to avoid being infected again.對於那些誰知道一個“主機”檔案工程(三: \軟件\的System32 \ Drivers \等\東道主) ,您可能想要在以下條目盡量避免再次受到感染。
“127.0.0.1 updatesantivirus.com” “ 127.0.0.1 updatesantivirus.com ”

The install on my machine created the following path in the registery:[HKEY_CURRENT_USER\Software\31193903159077776455629754546541\Options] (the # may be auto generated so the # on your pc may be different.安裝在我的機器創建以下路徑在registery : [ HKEY_CURRENT_USER \軟件\ 31193903159077776455629754546541 \選項] (在#可自動生成所以#您的PC上可能有所不同。

The registry entry above had the following references:該註冊表項以上有下列參考:
[HKEY_CURRENT_USER\Software\31193903159077776455629754546541\Options] [ HKEY_CURRENT_USER \軟件\ 31193903159077776455629754546541 \選項]
“Aff”=”880582″ “ Aff ” = “ 880582 ”
“AdvancedScanType”=”1″ “ AdvancedScanType ” = “ 1 ”
“FirstRunUrl”=”http://updatesantivirus.com/firstrun.php?product=%product%&aff=%aff%&update=%update%” “ FirstRunUrl ” = “ http://updatesantivirus.com/firstrun.php?product = %產品% & aff = % aff %和更新= %更新% ”
“AfterRegisterUrl”=”http://updatesantivirus.com/confirm.php?product=%product%&aff=%aff%&email=%email%&update=%update%&cookie_type=%cookie_type%&cookie=%cookie%” “ AfterRegisterUrl ” = “ http://updatesantivirus.com/confirm.php?product = %產品% & aff = % aff %和電子郵件= %電子郵件%和更新= % %和更新cookie_type = % cookie_type %和餅乾= %的cookie % ”
“LabelUrl”=”" “ LabelUrl ” = “ ”
“TermsUrl”=”http://updatesantivirus.com/terms.php” “ TermsUrl ” = “ http://updatesantivirus.com/terms.php ”
“HelpURL”=”http://updatesantivirus.com/help.php” “ HelpURL ” = “ http://updatesantivirus.com/help.php ”
“BillingURL”=”http://updatesantivirus.com/license.php?Email=%email%&AffiliateID=%aff%” “ BillingURL ” = “ http://updatesantivirus.com/license.php?Email = %電子郵件% & AffiliateID = % aff % ”
“BillingUrlApproved”=”" “ BillingUrlApproved ” = “ ”
“TransactionKey”=”XsHrUGEutblgVFNM” “ TransactionKey ” = “ XsHrUGEutblgVFNM ”
“BillingRegURL”=”http://updatesantivirus.com/order_xp.php?ver=%aff%” “ BillingRegURL ” = “ http://updatesantivirus.com/order_xp.php?ver = % aff % ”
“BillingURL2″=”" “ BillingURL2 ” = “ ”
“BillingUrlApproved2″=”" “ BillingUrlApproved2 ” = “ ”
“LastRun”=”8/30/2008″ “ LastRun ” = “ 08年8月30日”
“InstallDate”=”8/30/2008″ “ InstallDate ” = “ 2008年8月三十○號”
“pPath”=”C:\\Program Files\\XP Antivirus\\xpa_2008.exe” “ pPath ” =的“ C : \ \ Program Files文件\ \ XP的防毒\ \ xpa_2008.exe ”
“pName”=”XP Antivirus 2008″ “ pName ” = “ XP的防病毒2008 ”
“SecurityVector”=”222222222222222222222222222222222222222222″ “ SecurityVector ” = “ 222222222222222222222222222222222222222222 ”
“Scans”=”1″ “掃描” = “ 1 ”
“LastScan”=”30.08.2008 12:45:09″ “ LastScan ” = “ 08年8月三十〇號十二時四十五分09秒”

I deleted the entire parent key and all subkeys (but as standard practice calls, I made a backup of the key first!)我刪除了整個母公司的關鍵和所有子項(但要求的標準做法,我犯了一個備份的關鍵第一! )

[HKEY_CURRENT_USER\Software\31193903159077776455629754546541\Options] [ HKEY_CURRENT_USER \軟件\ 31193903159077776455629754546541 \選項]

獲取您自己的gravatar訪問gravatar.com Anthony 安東尼
#10 # 10 . August 30th, 2008, at 4:41 PM. 。 08年8月三十日,在下午4時41分。

I’ve been infected with antivirusxp etc. and I can’t download any of the removal programs.我已經感染了antivirusxp等,我不能下載任何清除程序。 I’ve managed to download AVG but antivirusxp is still there.我已經設法下載的AVG ,但antivirusxp依然存在。 I even removed a couple of the files recommended but the internet doesn’t work properly; manyk pages won’t open.我什至刪除了幾個文件的建議,但互聯網不能正常工作; manyk網頁將無法打開。 I will keep trying.我會繼續努力。 If anyone can suggest anything?如果任何人都可以表明什麼?

Leave your comment...離開您的評論...

If you want to leave your comment on this article, simply fill out the next form:如果你想離開您的評論文章,只需填寫下一形式:




You can use these XHTML tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <code> <em> <i> <strike> <strong> .您可以使用這些的XHTML標記: href="" title="">的<a <abbr title=""> <acronym title="">的<b> <blockquote cite="">的<code>的<em> “字母i “ <strike>的<strong> 。