Description of Data Recovery and consequences of its residing on your PC’s

Data Recovery optimizes computer system in a view of its own convenience. However, it is its main task to make users consider it a completely opposite staff as the program is yet another product that fakes a multi-purpose system improvement solution.
Some observers tend to reduce the range of services the fake pretends to render to defragmentation of computer memory only. However such practice is reasonable for the purpose of classification when a fake defragmenter is used as generic name, it is no use to hush up other benefits the program’s interface promises user. In particular, the pretended optimizer under review declares the following features:

 RAM memory repair
HDD repair
Junk files cleanup
System registry optimization
Settings management

That is, disc defragmentation is just one of multiple directions for improvement.
Anyway, removal of Data Recovery is worth making as whatever benefits it would claim to provide, at the end you get a headache and PC performance decrease.
Click here to get rid of Data Recovery, as well as other problem and obviously hostile programs as reported by free scanner.

Technical Details and screenshots:

  • Full name: Data Recovery, DataRecovery, Data-Recovery
  • Type: Rogue anti-spyware
  • Origin: Russian Federation, Belarus

Signs of being infected with Data Recovery

Data Recovery may slip into computer system bypassing quite good quality firewall systems. That is, it can bypass the stage of notifying user and obtaining user’s agreement. In such a case, single alerts might be the only signs of the infection available for unaided eye.
Those alerts might be anonymous, i.e. contain no reference to the malware name neither in their header nor in their body.
For instance, one of such alerts may read as follows:

“Critical Error
Hard drive clusters are partly damaged. Segment load failure.”

In spite of being anonymous the alert requires response, or else it locks the desktop and access to other software. The response in most of the instances triggers the adware main menu and purchase page so that eventually one would learn the name of the program anyway.
Click here and remove Data Recovery malicious optimizer in line with free scan results irrespective of the routine applied to introduce the annoying payload virus.

Data Recovery automatical removal:

The initial step towards removal of any infection is its detection. Do not hesitate downloading and installing free scanner below to get rid of Data Recovery and infections of similar types and of any other strains.

Data Recovery Removal Tool

Manual Removal of Data Recovery:

The manual will enable a sufficiently experienced user to remove Data Recovery avoiding its possible counteraction such as disabling Task Manager and sudden system rebooting, if the procedure of extermination is made in Safe Mode with Networking available in the boot menu list. Please pay attention the procedure does not cover any other infections.

Remove Data Recovery files and dll’s:

%LocalAppData%\<random>
%LocalAppData%\<random>.exe
%LocalAppData%\~<random>
%LocalAppData%\~<random>
%StartMenu%\Programs\Data Recovery\
%StartMenu%\Programs\Data Recovery\Data Recovery.lnk
%StartMenu%\Programs\Data Recovery\Uninstall Data Recovery.lnk
%Temp%\smtmp\
%Temp%\smtmp\1
%Temp%\smtmp\1
%Temp%\smtmp\2
%Temp%\smtmp\3
%Temp%\smtmp\4
%UserProfile%\Desktop\Data Recovery.lnk

Unregister Data Recovery registry values:

HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main “Use FormSuggest” = ‘Yes’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “CertificateRevocation” = ‘0’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “WarnonBadCertRecving” = ‘0’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop “NoChangingWallPaper” = ‘1’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Associations “LowRiskFileTypes” = ‘/{hq:/s`s:/ogn:/uyu:/dyd:/c`u:/bnl:/ble:/sdf:/lrh:/iul:/iulm:/fhg:/clq:/kqf:/`wh:/lqf:/lqdf:/lnw:/lq2:/l2t:/v`w:/rbs:’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Attachments “SaveZoneInformation” = ‘1’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer “NoDesktop” = ‘1’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System “DisableTaskMgr” = ‘1’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “<random>.exe”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “<random>”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system “DisableTaskMgr” = ‘1’
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download “CheckExeSignatures” = ‘no’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced “Hidden” = ‘0’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced “ShowSuperHidden” = ‘0’

Data Recovery Remover with free scan