Description of Windows Attention Utility and consequences of its residing on your PC

In many instances the users of computer system infected with the adware do need taking care of certain aspects of their privacy. It is not that the adware is a great privacy threat, neither is it a security guard, but many installations of the adware are made in shadowed mode. That is, there is a gateway also available for other infections, some of which are severe privacy threats. In order to remove Windows Attention Utility and exterminate more or less dangerous and annoying infections, click here and let free scanner perform in-depth inspection of your PC.

Windows Attention Utility Technical Details:

  • Full name: Windows Attention Utility, WindowsAttentionUtility, Windows AttentionUtility
  • Version: 2011
  • Type: Rogue anti-spyware
  • Origin: Russian Federation

Signs of being infected with Windows Attention Utility

Detection signs for Windows Attention Utility and WindowsSupervisionCenter are nearly identical as the programs have been obtained from the same template.
The adware behavior varies subject to the method  applied for its introduction. Everything seems to be quite reasonable as the program does not make haste in disclosing its identity, if dropped by backdoor installer. That makes sense as users are likely to delete Windows Attention Utility otherwise, knowing the name of the program that they do not remember to install.
In any case, once installed, the adware demands from users clicking OK as there is no other button to click in the alert the adware shows upon its installation and then may repeat on the occasion of new Windows session. The alert describes advantages of protected mode in a way that is out of an average user comprehension, for even IT geeks are not sure what the alert really means. Anyway, it is a sure sign of the adware introduction.
If installation is performed by user, the adware, after its strange welcome alert, shows its nag screens and behaves less aggressively showing more popups mentioning its name. Otherwise, it shows more desktop toolbar alerts titled Critical Vulnerability, Attention, Security Alerts, Virus Warnings etc.
To get rid of Windows Attention Utility without further preliminaries, сlick here.

Windows Attention Utility automatical removal:

In most of the cases, the list of infections to be rooted out a PC infected by adware is not limited to the adware only. That is one of the main reasons why comprehensive scan is a prerequisite of complete computer disinfection. The free scan link is below.

Windows Attention Utility Removal Tool

Manual Removal of Windows Attention Utility:

Before you start deleting Windows Attention Utility, it is strongly recommended to kill its process. The most efficient and, in many cases, the only available way is to reboot in Safe Mode. Task Manager might have been used to kill the adware process, but  there are two restrictions: firstly, the adware tries to block Task Manager, secondly, the process name of the adware might be scrambled.

Remove Windows Attention Utility files and dll’s:

%UserProfile%\Application Data\Microsoft\<random>.exe

Unregister Windows Attention Utility registry values:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\afwserv.exe “Debugger” = ‘svchost.exe’
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avastsvc.exe “Debugger” = ‘svchost.exe’
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avastui.exe “Debugger” = ‘svchost.exe’
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\egui.exe “Debugger” = ‘svchost.exe’
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ekrn.exe “Debugger” = ‘svchost.exe’
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msascui.exe “Debugger” = ‘svchost.exe’
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msmpeng.exe “Debugger” = ‘svchost.exe’
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msseces.exe “Debugger” = ‘svchost.exe’
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “WarnOnHTTPSToHTTPRedirect” = ‘0’
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings “WarnOnHTTPSToHTTPRedirect” = ‘0’
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore “DisableSR ” = ‘1’

Windows Attention Utility Remover with free scan