Description of Win 7 Security 2012 and consequences of its residing on your Pt’s

Programs of special category smuggles Win 7 Security 2012 onto computer systems passing by the custom’s clearance by user, who is a legitimate system administrator with exclusive right to approve or reject software download and installation.
Needless to say, a program delivered in such a way, though other methods of its distribution are practices, is most likely to be of improper quality. In  this case the assumption is over-proved, for the program pretends to be system security tool, but it corrupts it and exposes to security threats while its user is forced to view deceptive scan show and no less than the show misleading alerts.
Win 7 Security 2012 Technical Details:

  • Full name: Win 7 Security 2012, Windows 7 Security 2012
  • Version: 2012
  • Type: Rogue anti-spyware
  • Origin: Russian Federation, EU

Signs of being infected with Win 7 Security 2012

The program does not try to conceal its identity and presence as it gives user no repose  maintaining and gradually intensifying its popups.   Its popups consist of a set of windows representing user’s interface of Win 7 Security 2012 and notifications specific to certain topic. It keeps reminding you that the copy is unregistered and you are not protected completely.
Win 7 Security 2012 automatical removal:

Viruses develop freely while the fake security tool pretends to oppress them. That is, Win 7 Security 2012 is not just a fake protection or a lack of protection as it, though indirectly, contributes to real viruses invasion.
Win 7 Security 2012 Removal Tool

Manual Removal of Win 7 Security 2012:

It does not matter much whether  you have exterminated the adware or not, if your PC is overcrowded with viruses.
The above section explains benefits of automated removal of the adware, in particular, that it covers other viruses, unlike manual procedure for its disposal.
If you are a Windows users and is going to remove Win 7 Security 2012 manually, please perform the removal in Safe Mode, which you can set in the Advanced Options Boot Menu available upon continuous  pressing F8 before Windows loading.

Remove Win 7 Security 2012 files and dll’s:


Unregister Win 7 Security 2012 registry values:

HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\BrowserEmulation “TLDUpdates” = ‘1’
HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command “(Default)” = ‘”%LocalAppData%\kdn.exe” -a “%1” %*’
HKEY_CURRENT_USER\Software\Classes\exefile\shell\open\command “(Default)” = ‘”%LocalAppData%\kdn.exe” -a “%1” %*’
HKEY_CLASSES_ROOT\.exe\shell\open\command “(Default)” = ‘”%LocalAppData%\kdn.exe” -a “%1” %*’
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command “(Default)” = ‘”%LocalAppData%\kdn.exe” -a “C:\Program Files\Mozilla Firefox\firefox.exe”‘
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command “(Default)” = ‘”%LocalAppData%\kdn.exe” -a “C:\Program Files\Mozilla Firefox\firefox.exe” -safe-mode’
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command “(Default)” = ‘”%LocalAppData%\kdn.exe” -a “C:\Program Files\Internet Explorer\iexplore.exe”‘
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center “AntiVirusOverride” = ‘1’
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center “FirewallOverride” = ‘1’

