Antivirus Suite description
Antivirus Suite is a fake security program from the same family of rogues as Antivirus Soft. It usually downloaded and installed through the use of trojans. When the trojan is initialized, Antivirus Suite will start its rogue computer scans and will display fraudulent results.
Antivirus Suite reports mass of infections that will not be fixed unless you first purchase it. Doing this is not necessary since the security issues and the scan itself – a fraud. It is only a method to make user lose their vigilance and buy registered version of Antivirus Suite. One of alerts you may be shown reads:
Windows Security alert
Windows reports that computer is infected. Antivirus software
helps to protect your computer against viruses and other
security threats. Click here for the scan your computer. Your
system might be at risk now.
Do not fall for this scam. Malware also can hijack your browser to deceptive website that sell the program. It is not worth spending your money for this malicious program. You just ignore those warnings and terminate the parasite with a reputable anti-spyware tool.
Manual Antivirus Suite Removal
Antivirus Suite processes:
tssd.exe
Help: A Guideline of Killing Malicious Processes
Antivirus Suite registry values:
HKEY_CURRENT_USER\Software\avsuite
HKEY_LOCAL_MACHINE\SOFTWARE\avsuite
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download “RunInvalidSignatures” = “1″
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “ProxyOverride” = ”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “ProxyServer” = “http=127.0.0.1:5555″
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Associations “LowRiskFileTypes” = “.exe”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Attachments “SaveZoneInformation” = “1″
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run “”
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download “CheckExeSignatures” = “no”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “ProxyEnable” = “1″
Help: How to edit windows registry entries
Other malicious Antivirus Suite files:
%UserProfile%\Local Settings\Application Data\\
%UserProfile%\Local Settings\Application Data\\tssd.exe

Trackbacks /
Pingbacks