Virus description and consequences of its residing on your PC’s

Vista Security Cleaner Pro bears name suggesting it is a security solution focused on protecting particular Windows edition. True, it tends to occur only in relevant version of Windows operating system. What is wrong though is more crucial – it is that the program is a virus, a fake antimalware that behaves much like an aggressive trojan.
In particular, failure to remove Vista Security Cleaner Pro leads to blocking of numerous programs in favor of misleading alerts shown by the parasite. Click here to put an end to the scam using genuine free scanner as a remedy.
Technical Details and screenshots:

  • Full name: Vista Security Cleaner Pro, VistaSecurity Cleaner Pro, Vista Security CleanerPro
  • Type: Rogue Security Software
  • Origin: Russian Federation, Ukraine

Signs of Vista Security Cleaner Pro Infection:

The malware is classified as adware by some experts due to excessive number of popups it shows. They provide great symptom of the program presence. Alas, some users consider those popups as notifications by genuine antivirus.
Apply free scanner to detect the malware by technical signs and get rid of Vista Security Cleaner Pro in the course of cleanup of your computer system to be performed according to the scan results.

Vista Security Cleaner Pro automatical removal:

Please note security solutions could be true and useful, in spite of the fact that there are much more counterfeits than true security tools. In order to remove Vista Security Cleaner Pro as a nice looking counterfeit, use free scan based removal tool below.

Vista Security Cleaner Pro Removal Tool

Manual Removal of Vista Security Cleaner Pro:

The infection is misleading and aggressive. It may interfere as you are trying to get rid of Vista Security Cleaner Pro manually. For example, a common dodge is to keeps its components active so that access to them would be denied. In such a case, you need to resort to task manager and kill relevant processes (they should bear the name of the entries blocked).

Remove Vista Security Cleaner Pro files and dll’s:


Unregister Vista Security Cleaner Pro registry values:

HKEY_CURRENT_USER\Software\Classes\.exe “(Default)” = ‘exefile’
HKEY_CURRENT_USER\Software\Classes\.exe “Content Type” = ‘application/x-msdownload’
HKEY_CURRENT_USER\Software\Classes\.exe\DefaultIcon “(Default)” = ‘%1? = ‘”%UserProfile%\Local Settings\Application Data\[random].exe” /START “%1? %*’
HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command “IsolatedCommand” = ‘”%1? %*’
HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command “(Default)” = ‘”%1? %*’
HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command “IsolatedCommand” = ‘”%1? %*’
HKEY_CURRENT_USER\Software\Classes\exefile “(Default)” = ‘Application’
HKEY_CURRENT_USER\Software\Classes\exefile “Content Type” = ‘application/x-msdownload’
HKEY_CURRENT_USER\Software\Classes\exefile\DefaultIcon “(Default)” = ‘%1?
HKEY_CURRENT_USER\Software\Classes\exefile\shell\open\command “(Default)” = ‘”%UserProfile%\Local Settings\Application Data\[random].exe” /START “%1? %*’
HKEY_CURRENT_USER\Software\Classes\exefile\shell\open\command “IsolatedCommand” = ‘”%1? %*’
HKEY_CURRENT_USER\Software\Classes\exefile\shell\runas\command “(Default)” = ‘”%1? %*’
HKEY_CURRENT_USER\Software\Classes\exefile\shell\runas\command “IsolatedCommand” – ‘”%1? %*’
HKEY_CLASSES_ROOT\.exe\shell\open\command “(Default)” = ‘”%UserProfile%\Local Settings\Application Data\[random].exe” /START “%1? %*’
HKEY_CLASSES_ROOT\exefile\shell\open\command “(Default)” = ‘”%UserProfile%\Local Settings\Application Data\[random].exe” /START “%1? %*’
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command “(Default)” = ‘”%UserProfile%\Local Settings\Application Data\[random].exe” /START “%Program Files%\Mozilla Firefox\firefox.exe”‘
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command “(Default)” = ‘”%UserProfile%\Local Settings\Application Data\[random].exe” /START “%Program Files%\Mozilla Firefox\firefox.exe” -safe-mode’
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command “(Default)” = ‘”%UserProfile%\Local Settings\Application Data\[random].exe” /START “%Program Files%\Internet Explorer\iexplore.exe”‘

