Description of Vista Anti-Spyware and consequences of its residing on your PC

Vista Anti-Spyware itself constitutes a problem bigger than those it points out. Being a misleading  security solution, it groundlessly refers to imaginary issues, but about a half  of infections mentioned in its popups are real names – it is only that they are utilized to misleading and scaring purposes by indecent program. But even if all of the infections mentioned by the adware were in   your computer memory, they would unlikely oppress computer system as badly as the adware does.
Vista Anti-Spyware Technical Details:

  • Full name: Vista Anti-Spyware, VistaAnti-Spyware, Vista Anti-Spyware
  • Version: 2011
  • Type: Rogue anti-spyware
  • Origin: Russian Federation

Signs of being infected with Vista Anti-Spyware

The program severity assessment is critical. However, it knows that haste makes waste so iy is not common for Vista Anti-Spyware to rush into flooding users with popups from the very beginning. However, if you find it quite annoying already now, take into account that the feature will make of it absolutely unbearable advertising monster.
Signs of the adware are available in profusion immediately upon its introduction. The malware tends to reserve first place among programs authorized to launch themselves autonomously so that its alerts will notify users of invented threats immediately on system startup.
Vista Anti-Spyware automatical removal:

Manual Removal of Vista Anti-Spyware:

There is a risk of the adware response on its entries deletion. Pease do not linger while removing Vista Anti-Spyware manually and perform the removal steps in Safe Mode with Command Prompt to prevent possible intentional unwanted interference of the adware, as well as accidental interference with other processes.

Remove Vista Anti-Spyware files and dll’s:

%UserProfile%\Local Settings\Application Data\opRSK

%UserProfile%\Local Settings\Application Data\pw.exe

%UserProfile%\Local Settings\Application Data\MSASCui.exe




Unregister Vista Anti-Spyware registry values:



HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command “(Default)” = “%UserProfile%\Local Settings\Application Data\pw.exe” /START “%1” %*

HKEY_CURRENT_USER\Software\Classes\pezfile\shell\open\command “(Default)” = “%UserProfile%\Local Settings\Application Data\pw.exe” /START “%1” %*

HKEY_CLASSES_ROOT\.exe\shell\open\command “(Default)” = “%UserProfile%\Local Settings\Application Data\pw.exe” /START “%1” %*

HKEY_CLASSES_ROOT\pezfile\shell\open\command “(Default)” = “%UserProfile%\Local Settings\Application Data\pw.exe” /START “%1” %*

HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command “(Default)” = “%UserProfile%\Local Settings\Application Data\pw.exe” /START “C:\Program Files\Mozilla Firefox\firefox.exe”

HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command “(Default)” = “%UserProfile%\Local Settings\Application Data\pw.exe” /START “C:\Program Files\Mozilla Firefox\firefox.exe” -safe-mode

HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command “(Default)” = “%UserProfile%\Local Settings\Application Data\pw.exe” /START “C:\Program Files\Internet Explorer\iexplore.exe”

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center “AntiVirusOverride” = “1”

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center “FirewallOverride” = “1”

