Red Cross Antivirus description
Red Cross Antivirus is a misleading program which imitates computer scans once active. As common for malware, Red Cross Antivirus spreads via trojan which enters the system through its flaws and makes a perfect background for the parasite to sneak. The main goal of the rogue is to pilfer money from unwary users, that’s why information it shows shouldn’t be trusted.
Malware tries to trick user into thinking their PC is severely compromised and must be healed with its supposedly legitimate registered version. This is a scam. Do not purchase or buy anything this scam offers. Your money will be stolen. Red Cross Antivirus may hijack your browser to deceptive web pages that markets the program but information is malicious and fraudulent. On the websites there is nothing you can count on. Ignore all notifications and offers this scam makes but use decent anti-spyware program to terminate Red Cross Antivirus for good.
Manual Red Cross Antivirus Removal
Red Cross Antivirus processes:
defender.exe
antispy.exe
tmp.exe
Help: A Guideline of Killing Malicious Processes
Red Cross Antivirus registry values:
HKEY_CURRENT_USER\Software\PAV
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “WarnonBadCertRecving” = “0″
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “WarnOnPostRedirect” = “0″
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “tmp”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce “SelfdelNT”
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Winlogon “Shell” = “%UserProfile%\Application Data\antispy.exe”
Help: How to edit windows registry entries
Other malicious Red Cross Antivirus files:
%UserProfile%\Application Data\PAV\
%UserProfile%\Application Data\antispy.exe
%UserProfile%\Application Data\defender.exe
%UserProfile%\Application Data\tmp.exe
%UserProfile%\Local Settings\Temp\kjkkklklj.bat

Trackbacks /
Pingbacks