System Security 4.52System Security 4.52 has been discovered to be the exact replica of one of the most popular rogue anti-spyware families, which include the likes of Winweb Security, and WinwebSecurity. The best thing to do if you have detected System Security 4.52 is to simply delete the application as soon as possible. It is important to note that once embedded within a computer system, System Security 4.52 will kill all .exe processes, leaving the system without fully operational and functional processes; therefore before attempting to delete this PC parasite from a system, you must make sure you have backed up all your data. The next step would be to download a reputable, trustworthy anti-spyware application. Once you have downloaded this up-to-date security tool, make sure you boot your Operating System up in SAFE MODE – this way, the chances of your system and all its .exe processes being affected is greatly minimized. Safe Mode is basically the best option when attempting to troubleshoot a computer system, whether it be a driver problem or a spyware infection one needs to fix, safe mode is the way to go. When in Safe Mode, the computer system loads the least amount of drivers and components, thus allowing you to perform the many tasks needed to restore the system to its fully functional state. One can boot in safe mode with networking, and without networking. · Safe Mode without Networking: To enable safe mode, simply press F8 (just before the Operating System’s loading screen appears) after the BIOS screen has disappeared. You will then be taken to an ‘Advanced Boot Options Menu’. You will then need to choose the safe mode you desire, by utilizing the arrow keys, once you are happy with your safe mode option, press enter. · Safe Mode with Networking: One should only use this mode if this functionality is required. To enable safe mode with networking, you follow the same steps as safe mode without networking, the only difference is you will need internet access. A symptom one should watch out for, to alert one to the fact System Security 4.52 is embedded in a system, is the fake message alert as a wallpaper, which is issued by the rogue program, which reads as follows: "WARNING YOUR'RE IN DANGER! YOUR COMPUTER IS INFECTED WITH SPYWARE! ALL YOU DO WITH COMPUTER IS STORED FOREVER IN YOUR HARD DISK. WHEN YOU VISIT SITES, SEND E-MAILS... ALL YOUR ACTIONS ARE LOGGED. AND IT IS IMPOSSIBLE TO REMOVE THEM WITH STANDART TOOLS. YOUR DATA IS STILL AVAILABLE FOR FORENSICS. AND IN SOME CASES FOR YOUR BOSS, YOUR FRIENDS, YOUR WIFE, YOUR CHILDREN. Every site you or somebody or even something, like spyware, opened in your browsers, with all images, and all downloaded and maybe later removed movies or mp3 songs - ARE STILL THERE and could break your life! SECURE YOURSELF RIGHT NOW! REMOVE ALL SPYWARE FROM YOUR PC!" The desktop background message above shows text which warns You (the user) about Your infected computer. You will see the screen shot in the right side of our website, if your system is indeed infected. System Security 4.52 usually appears on a user‘s computer once a fake video codec has been installed onto the user’s computer system. System Security 4.52 will continue with the generation of phony scan reports and fake system pop-up error messages to coerce the user (YOU) into purchasing the “Full” version of the System Security 4.52 program. Unless one makes a plan to get rid of System Security 4.52 promptly, the user will continue to receive annoying pop-up messages and fake system scans, accompanied by the synchronized depletion of overall system performance. In short, SystemSecurity is simply a form of fake software with the intent to steal your money. Do NOT fall prey to its tactics of manipulation! |
Danger level:
10
10
Type: Rogue Anti-Spyware
Common infection symptoms:
Other mutations known as:
- Connects to the internet without permision
- Shows commercial adverts
- Slow internet connection
- System crashes
- Slow Computer
How to manually remove System Security 4.52
Files associated with System Security 4.52 infection:
SystemSecurity.exe
936453029.exe
549344438.exe
788573529.exe
1714292029.exe
1003720520.exe
adobe_flash[1].exe
AdobeFlash[1].exe
TubePlayer.ver.6.exe
cogad.exe
torbjne.exe
mupd1_2_1165664.exe
winscenter.exe
iemodule.dll
ldycgadzmr.dll
iehelpers[1].exe
iehelper.exe
19329203.exe
ayscjcts.exe
install[1].exe
281681216.exe
setupapi.dll
~tmpa.exe
bnmio.exe
bd3q0qix.exe
vamsoft.exe
iii[1].exe
load[1].exe
winafoe.exe
ParisHilton[1].exe
winkfmc.exe
TckBX673.exe
card[1].exe
ert51791.exe
AdwarePro.exe
AdwarePro_Setup[1].exe
SSEngine.dll
StartApp.exe
1[1].exe
ntos.exe
usp10.dll
Omahonafazeq.dll
new23[1].exe
gr[2].exe
adv111[1].exe
new26[1].exe
SetupAntivirusXP[1].exe
ieupdates.exe
28823330.exe
Test.exe
loader[1].exe
Hyves_Browser.exe
Hyves_Browser_Instalation.exe
i386si.sys
9179499.exe
1462403437.exe
uxeqipuzimocin.dll
cvucujahoza.dll
oqarib.dll
winlogin.exe
AntivirusXP.exe
vvunbwrhxa.exe
imod3.dll
372561511.exe
svchost.exe
swapdm.dll
1610380076.exe
800990911.exe
431192516.exe
172939276.exe
240844061.exe
931330021.exe
973260134.exe
3DF7076F.exe
432632312.exe
613622941.exe
1591300478.exe
438978017.exe
1986350760.exe
1977868703.exe
2030350728.exe
install[2].exe
564DB681.exe
1431998300.exe
1947101902.exe
1940874419.exe
1767930182.exe
650526885.exe
695276073.exe
1550536869.exe
1327825314.exe
498278020.exe
2029503323.exe
14894324.exe
1743310514.exe
375534146.exe
1573468717.exe
202150970.exe
370382475.exe
2084498445.exe
801085450.exe
25238076.exe
380679599.exe
1354455340.exe
1690486455.exe
1725032906.exe
2113272685.exe
1255330437.exe
1126514300.exe
554845319.exe
01560265.exe
02686578.exe
00607031.exe
500153984.exe
96484328.exe
52796787.exe
13496218.exe
03326093.exe
14610250.exe
06837430.exe
29192498.exe
03380828.exe
90188702.exe
00184705.exe
93069676.exe
13059684.exe
11120624.exe
97246086.exe
17236094.exe
699415262.exe
94875926.exe
14865934.exe
19378284.exe
99388276.exe
16846714.exe
96856706.exe
18563124.exe
18058594.exe
11447194.exe
91457186.exe
99363896.exe
19353904.exe
90649526.exe
10639534.exe
13779354.exe
93789346.exe
19916874.exe
99926866.exe
94157956.exe
14147964.exe
17722954.exe
94955616.exe
14945624.exe
16692344.exe
96733746.exe
16723754.exe
99825926.exe
19815934.exe
90249366.exe
10239374.exe
936453029.exe
549344438.exe
788573529.exe
1714292029.exe
1003720520.exe
adobe_flash[1].exe
AdobeFlash[1].exe
TubePlayer.ver.6.exe
cogad.exe
torbjne.exe
mupd1_2_1165664.exe
winscenter.exe
iemodule.dll
ldycgadzmr.dll
iehelpers[1].exe
iehelper.exe
19329203.exe
ayscjcts.exe
install[1].exe
281681216.exe
setupapi.dll
~tmpa.exe
bnmio.exe
bd3q0qix.exe
vamsoft.exe
iii[1].exe
load[1].exe
winafoe.exe
ParisHilton[1].exe
winkfmc.exe
TckBX673.exe
card[1].exe
ert51791.exe
AdwarePro.exe
AdwarePro_Setup[1].exe
SSEngine.dll
StartApp.exe
1[1].exe
ntos.exe
usp10.dll
Omahonafazeq.dll
new23[1].exe
gr[2].exe
adv111[1].exe
new26[1].exe
SetupAntivirusXP[1].exe
ieupdates.exe
28823330.exe
Test.exe
loader[1].exe
Hyves_Browser.exe
Hyves_Browser_Instalation.exe
i386si.sys
9179499.exe
1462403437.exe
uxeqipuzimocin.dll
cvucujahoza.dll
oqarib.dll
winlogin.exe
AntivirusXP.exe
vvunbwrhxa.exe
imod3.dll
372561511.exe
svchost.exe
swapdm.dll
1610380076.exe
800990911.exe
431192516.exe
172939276.exe
240844061.exe
931330021.exe
973260134.exe
3DF7076F.exe
432632312.exe
613622941.exe
1591300478.exe
438978017.exe
1986350760.exe
1977868703.exe
2030350728.exe
install[2].exe
564DB681.exe
1431998300.exe
1947101902.exe
1940874419.exe
1767930182.exe
650526885.exe
695276073.exe
1550536869.exe
1327825314.exe
498278020.exe
2029503323.exe
14894324.exe
1743310514.exe
375534146.exe
1573468717.exe
202150970.exe
370382475.exe
2084498445.exe
801085450.exe
25238076.exe
380679599.exe
1354455340.exe
1690486455.exe
1725032906.exe
2113272685.exe
1255330437.exe
1126514300.exe
554845319.exe
01560265.exe
02686578.exe
00607031.exe
500153984.exe
96484328.exe
52796787.exe
13496218.exe
03326093.exe
14610250.exe
06837430.exe
29192498.exe
03380828.exe
90188702.exe
00184705.exe
93069676.exe
13059684.exe
11120624.exe
97246086.exe
17236094.exe
699415262.exe
94875926.exe
14865934.exe
19378284.exe
99388276.exe
16846714.exe
96856706.exe
18563124.exe
18058594.exe
11447194.exe
91457186.exe
99363896.exe
19353904.exe
90649526.exe
10639534.exe
13779354.exe
93789346.exe
19916874.exe
99926866.exe
94157956.exe
14147964.exe
17722954.exe
94955616.exe
14945624.exe
16692344.exe
96733746.exe
16723754.exe
99825926.exe
19815934.exe
90249366.exe
10239374.exe
System Security 4.52 DLL's to remove:
iemodule.dll
ldycgadzmr.dll
setupapi.dll
SSEngine.dll
usp10.dll
Omahonafazeq.dll
uxeqipuzimocin.dll
cvucujahoza.dll
oqarib.dll
imod3.dll
swapdm.dll
ldycgadzmr.dll
setupapi.dll
SSEngine.dll
usp10.dll
Omahonafazeq.dll
uxeqipuzimocin.dll
cvucujahoza.dll
oqarib.dll
imod3.dll
swapdm.dll
System Security 4.52 processes to kill:
SystemSecurity.exe
936453029.exe
549344438.exe
788573529.exe
1714292029.exe
1003720520.exe
adobe_flash[1].exe
AdobeFlash[1].exe
TubePlayer.ver.6.exe
cogad.exe
torbjne.exe
mupd1_2_1165664.exe
winscenter.exe
iehelpers[1].exe
iehelper.exe
19329203.exe
ayscjcts.exe
install[1].exe
281681216.exe
~tmpa.exe
bnmio.exe
bd3q0qix.exe
vamsoft.exe
iii[1].exe
load[1].exe
winafoe.exe
ParisHilton[1].exe
winkfmc.exe
TckBX673.exe
card[1].exe
ert51791.exe
AdwarePro.exe
AdwarePro_Setup[1].exe
StartApp.exe
1[1].exe
ntos.exe
new23[1].exe
gr[2].exe
adv111[1].exe
new26[1].exe
SetupAntivirusXP[1].exe
ieupdates.exe
28823330.exe
Test.exe
loader[1].exe
Hyves_Browser.exe
Hyves_Browser_Instalation.exe
9179499.exe
1462403437.exe
winlogin.exe
AntivirusXP.exe
vvunbwrhxa.exe
372561511.exe
svchost.exe
1610380076.exe
800990911.exe
431192516.exe
172939276.exe
240844061.exe
931330021.exe
973260134.exe
3DF7076F.exe
432632312.exe
613622941.exe
1591300478.exe
438978017.exe
1986350760.exe
1977868703.exe
2030350728.exe
install[2].exe
564DB681.exe
1431998300.exe
1947101902.exe
1940874419.exe
1767930182.exe
650526885.exe
695276073.exe
1550536869.exe
1327825314.exe
498278020.exe
2029503323.exe
14894324.exe
1743310514.exe
375534146.exe
1573468717.exe
202150970.exe
370382475.exe
2084498445.exe
801085450.exe
25238076.exe
380679599.exe
1354455340.exe
1690486455.exe
1725032906.exe
2113272685.exe
1255330437.exe
1126514300.exe
554845319.exe
01560265.exe
02686578.exe
00607031.exe
500153984.exe
96484328.exe
52796787.exe
13496218.exe
03326093.exe
14610250.exe
06837430.exe
29192498.exe
03380828.exe
90188702.exe
00184705.exe
93069676.exe
13059684.exe
11120624.exe
97246086.exe
17236094.exe
699415262.exe
94875926.exe
14865934.exe
19378284.exe
99388276.exe
16846714.exe
96856706.exe
18563124.exe
18058594.exe
11447194.exe
91457186.exe
99363896.exe
19353904.exe
90649526.exe
10639534.exe
13779354.exe
93789346.exe
19916874.exe
99926866.exe
94157956.exe
14147964.exe
17722954.exe
94955616.exe
14945624.exe
16692344.exe
96733746.exe
16723754.exe
99825926.exe
19815934.exe
90249366.exe
10239374.exe
936453029.exe
549344438.exe
788573529.exe
1714292029.exe
1003720520.exe
adobe_flash[1].exe
AdobeFlash[1].exe
TubePlayer.ver.6.exe
cogad.exe
torbjne.exe
mupd1_2_1165664.exe
winscenter.exe
iehelpers[1].exe
iehelper.exe
19329203.exe
ayscjcts.exe
install[1].exe
281681216.exe
~tmpa.exe
bnmio.exe
bd3q0qix.exe
vamsoft.exe
iii[1].exe
load[1].exe
winafoe.exe
ParisHilton[1].exe
winkfmc.exe
TckBX673.exe
card[1].exe
ert51791.exe
AdwarePro.exe
AdwarePro_Setup[1].exe
StartApp.exe
1[1].exe
ntos.exe
new23[1].exe
gr[2].exe
adv111[1].exe
new26[1].exe
SetupAntivirusXP[1].exe
ieupdates.exe
28823330.exe
Test.exe
loader[1].exe
Hyves_Browser.exe
Hyves_Browser_Instalation.exe
9179499.exe
1462403437.exe
winlogin.exe
AntivirusXP.exe
vvunbwrhxa.exe
372561511.exe
svchost.exe
1610380076.exe
800990911.exe
431192516.exe
172939276.exe
240844061.exe
931330021.exe
973260134.exe
3DF7076F.exe
432632312.exe
613622941.exe
1591300478.exe
438978017.exe
1986350760.exe
1977868703.exe
2030350728.exe
install[2].exe
564DB681.exe
1431998300.exe
1947101902.exe
1940874419.exe
1767930182.exe
650526885.exe
695276073.exe
1550536869.exe
1327825314.exe
498278020.exe
2029503323.exe
14894324.exe
1743310514.exe
375534146.exe
1573468717.exe
202150970.exe
370382475.exe
2084498445.exe
801085450.exe
25238076.exe
380679599.exe
1354455340.exe
1690486455.exe
1725032906.exe
2113272685.exe
1255330437.exe
1126514300.exe
554845319.exe
01560265.exe
02686578.exe
00607031.exe
500153984.exe
96484328.exe
52796787.exe
13496218.exe
03326093.exe
14610250.exe
06837430.exe
29192498.exe
03380828.exe
90188702.exe
00184705.exe
93069676.exe
13059684.exe
11120624.exe
97246086.exe
17236094.exe
699415262.exe
94875926.exe
14865934.exe
19378284.exe
99388276.exe
16846714.exe
96856706.exe
18563124.exe
18058594.exe
11447194.exe
91457186.exe
99363896.exe
19353904.exe
90649526.exe
10639534.exe
13779354.exe
93789346.exe
19916874.exe
99926866.exe
94157956.exe
14147964.exe
17722954.exe
94955616.exe
14945624.exe
16692344.exe
96733746.exe
16723754.exe
99825926.exe
19815934.exe
90249366.exe
10239374.exe
Remove System Security 4.52 registry entries:
Microsoft\Windows\CurrentVersion\Run\SystemSecurity
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\cogad
Microsoft\Windows\CurrentVersion\Run\281681216
Microsoft\Windows\CurrentVersion\Run\kxva
Microsoft\Windows\CurrentVersion\Uninstall\AdwarePro
Microsoft\Windows\CurrentVersion\Run\AdwareProMFCT
Adware Pro
Microsoft\Windows\CurrentVersion\App Paths\AdwarePro.exe
Microsoft\Windows\CurrentVersion\Run\Mmexofumutokara
AntivirusXP
Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\AntivirusXP
Microsoft\Windows\CurrentVersion\Uninstall\Hyves Browser
MICROSOFT\WINDOWS\CURRENTVERSION\RUN\AntivirusXP.exe
Microsoft\Windows\CurrentVersion\Run\359F5809-00B8-4455-A73A-9EA62A51101B
Microsoft\Windows\CurrentVersion\Run\973260134
Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\System Security
Microsoft\Windows\CurrentVersion\Run\1690486455
Microsoft\Windows\CurrentVersion\Run\370382475
Microsoft\Windows\CurrentVersion\Uninstall\SystemSecurity2009
Microsoft\Windows\CurrentVersion\Run\02215359
Microsoft\Windows\CurrentVersion\Run\00206953
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 93069676
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 13059684
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 11120624
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 97246086
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 17236094
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 699415262
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 94875926
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 14865934
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 19378284
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 99388276
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 16846714
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 96856706
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 18563124
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 18058594
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 11447194
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 91457186
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 99363896
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 19353904
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 90649526
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 10639534
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 13779354
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 93789346
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 19916874
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 99926866
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 14147964
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 94157956
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 17722954
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 14945624
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 94955616
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 16723754
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 96733746
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 16692344
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 19815934
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 99825926
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 10239374
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 90249366
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\cogad
Microsoft\Windows\CurrentVersion\Run\281681216
Microsoft\Windows\CurrentVersion\Run\kxva
Microsoft\Windows\CurrentVersion\Uninstall\AdwarePro
Microsoft\Windows\CurrentVersion\Run\AdwareProMFCT
Adware Pro
Microsoft\Windows\CurrentVersion\App Paths\AdwarePro.exe
Microsoft\Windows\CurrentVersion\Run\Mmexofumutokara
AntivirusXP
Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\AntivirusXP
Microsoft\Windows\CurrentVersion\Uninstall\Hyves Browser
MICROSOFT\WINDOWS\CURRENTVERSION\RUN\AntivirusXP.exe
Microsoft\Windows\CurrentVersion\Run\359F5809-00B8-4455-A73A-9EA62A51101B
Microsoft\Windows\CurrentVersion\Run\973260134
Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\System Security
Microsoft\Windows\CurrentVersion\Run\1690486455
Microsoft\Windows\CurrentVersion\Run\370382475
Microsoft\Windows\CurrentVersion\Uninstall\SystemSecurity2009
Microsoft\Windows\CurrentVersion\Run\02215359
Microsoft\Windows\CurrentVersion\Run\00206953
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 93069676
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 13059684
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 11120624
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 97246086
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 17236094
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 699415262
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 94875926
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 14865934
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 19378284
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 99388276
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 16846714
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 96856706
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 18563124
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 18058594
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 11447194
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 91457186
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 99363896
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 19353904
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 90649526
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 10639534
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 13779354
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 93789346
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 19916874
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 99926866
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 14147964
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 94157956
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 17722954
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 14945624
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 94955616
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 16723754
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 96733746
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 16692344
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 19815934
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 99825926
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 10239374
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 90249366









Comments
Your description as well as your fix of this virus is very elementary and indicates you don't understand it at all. This virus doesn't allow running any anti virus software, it tells me all files are infected. I can get out to my email and to google.com, but that is it. Any downloads stopped, any programs I try to run from a jump drive stopped. It is very serious and your explanations of a fix are not helpful at all.
I hate this program, help me to removing this stupid program
This is clever malware and 'sees' any threats to it such as downloads to kill it and then blocks downloads or infects files needed to kill it.