System Fix wants you to grow concerned of performance and equipment related problems. The program is neither designed to refer to virus names, nor to imitate any kind of prosecution of intentionally harmful files. Its main business is to make an impression that system performance is not OK, and physical parts of your computer do not operate duly.
  • Full name: System Fix, SystemFix, System-Fix
  • Type: Rogue Security Software, Trojan Horse
  • Origin: Russian Federation
  • Serial code: 120397862 801248970829 0478989147

The trickery has absorbed rich experience accumulated by several hundreds of predecessors. That is, being a true member of fake system defragmenters strain, the adware generates familiar to malware watchers popups referring to RAM memory overheating, percentage of HDD unreadable etc, as well as captures Start button so that when you click it the fake window of scan of computer system for errors or the badware menu pops up.
Besides, there are several popups that have not been observed in counterfeits of the same kind released earlier. For instance, Windows – Delayed Write Failed is a message that one can observe only in the counterfeit in question.
To get rid of System Fix, you may need to deal with real errors, which are not those scary words the adware uses to cheat people. That is, it is sometimes necessary to reboot in Safe Mode or else the rogue would interfere with its extermination steps listed below.

%AppData%\Microsoft\Internet Explorer\Quick Launch\System Fix.lnk
%Desktop%\System Fix.lnk
%StartMenu%\Programs\System Fix\
%StartMenu%\Programs\System Fix\System Fix.lnk
%StartMenu%\Programs\System Fix\Uninstall System Fix.lnk

HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main “Use FormSuggest” = ‘Yes’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “CertificateRevocation” = ‘0’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “WarnonBadCertRecving” = ‘0’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop “NoChangingWallPaper” = ‘1’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Associations “LowRiskFileTypes” = ‘.zip;.rar;.nfo;.txt;.exe;.bat;.com;.cmd;.reg;.msi;.htm;.html;.gif;.bmp;.jpg;.avi;.mpg;.mpeg;.mov;.mp3;.m3u;.wav;.scr;’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Attachments “SaveZoneInformation” = ‘1’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer “NoDesktop” = ‘1’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System “DisableTaskMgr” = ‘1’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “<random>.exe”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “<random>”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system “DisableTaskMgr” = ‘1’
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download “CheckExeSignatures” = ‘no’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced “Hidden” = ‘0’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced “ShowSuperHidden” = ‘0’

