Description of Smart Protection 2012 virus and consequences of its residing on your PC’s

Smart Protection 2012 is a fusion of  two core programs powered by single executable. One of the  programs is in charge of  displaying alerts and  scan window  in line with instructions attached by hackers while another  interferes with legitimate applications,   modifies   computer settings etc. Remove Smart Protection 2012 as a fake antispyware  consisting of  advertising and destructive components acting as one single power. Click here  for free scan and smooth trouble and effort free deletion of the tricky malware.

Technical Details and screenshots:

  • Full name: Smart Protection 2012, SmartProtection 2012, Smart-Protection 2012
  • Type: Rogue Security Software, Trojan Horse
  • Origin: Russian Federation

Signs of being infected with Smart Protection 2012

The tricky software product sneaks into computer system as a load dropped by special trojan, downloaded by means of exploiting Autorun or Autoplay unprotected mode vulnerability, as well as other drive-by downloads are widely applied to distribute the tricky software among computer systems all over the world.
Where there is an inside mediator performing the program download and installation you can have the introduction prevented of by timely detecting and extermination of the dropper. The dropper performing the malware installation can wait for a long time for a favorable opportunity to present itself. It can fail to complete the adware download and installation during single session so that you may see only part of the popups the rogue can produce.
Basically, there has not been a single complaint received that user could not recognize the program once it is installed completely.

Smart Protection 2012 automatical removal:

A good deal of trojans and viruses have too many chances for oppressing your PC along with the fake antispyware to ignore the opportunity of detecting them.

Smart Protection 2012 Removal Tool

Manual Removal of Smart Protection 2012:

There are no restrictions for the fake antispyware droppers to introduce other threats together with the counterfeit or after its installation is complete. It is up to you to judge whether you are going to get rid of Smart Protection 2012 only or subscribe to the total cleanup of your PC.

Remove Smart Protection 2012 files and dll’s:


Unregister Smart Protection 2012 registry values:

HKEY_CURRENT_USER\Software\Classes\.exe “(Default)” = ‘exefile’
HKEY_CURRENT_USER\Software\Classes\.exe “Content Type” = ‘application/x-msdownload’
HKEY_CURRENT_USER\Software\Classes\.exe\DefaultIcon “(Default)” = ‘%1? = ‘”%UserProfile%\Local Settings\Application Data\[random].exe” /START “%1? %*’
HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command “IsolatedCommand” = ‘”%1? %*’
HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command “(Default)” = ‘”%1? %*’
HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command “IsolatedCommand” = ‘”%1? %*’
HKEY_CURRENT_USER\Software\Classes\exefile “(Default)” = ‘Application’
HKEY_CURRENT_USER\Software\Classes\exefile “Content Type” = ‘application/x-msdownload’
HKEY_CURRENT_USER\Software\Classes\exefile\DefaultIcon “(Default)” = ‘%1?
HKEY_CURRENT_USER\Software\Classes\exefile\shell\open\command “(Default)” = ‘”%UserProfile%\Local Settings\Application Data\[random].exe” /START “%1? %*’
HKEY_CURRENT_USER\Software\Classes\exefile\shell\open\command “IsolatedCommand” = ‘”%1? %*’
HKEY_CURRENT_USER\Software\Classes\exefile\shell\runas\command “(Default)” = ‘”%1? %*’
HKEY_CURRENT_USER\Software\Classes\exefile\shell\runas\command “IsolatedCommand” – ‘”%1? %*’
HKEY_CLASSES_ROOT\.exe\shell\open\command “(Default)” = ‘”%UserProfile%\Local Settings\Application Data\[random].exe” /START “%1? %*’
HKEY_CLASSES_ROOT\exefile\shell\open\command “(Default)” = ‘”%UserProfile%\Local Settings\Application Data\[random].exe” /START “%1? %*’
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command “(Default)” = ‘”%UserProfile%\Local Settings\Application Data\[random].exe” /START “%Program Files%\Mozilla Firefox\firefox.exe”‘
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command “(Default)” = ‘”%UserProfile%\Local Settings\Application Data\[random].exe” /START “%Program Files%\Mozilla Firefox\firefox.exe” -safe-mode’
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command “(Default)” = ‘”%UserProfile%\Local Settings\Application Data\[random].exe” /START “%Program Files%\Internet Explorer\iexplore.exe”

