Basically, there are three groups of counterfeits in the family of the adware analyzed in this post according to the type of targeted Windows system: Vista, XP and Win 7. The classification is made by name so that the adware in question represents XP group. However, it can be found at other machines due to internal errors in the installer that needs to identify type of infected machine.
Activities of the program are misleading and destructive. To terminate the trickery and remove XP Antimalware 2011, click here to launch free scan.

XP Antimalware 2011 Technical Details

  • Full name: XP Antimalware 2011, XPAntimalware 2011, XPAntimalware2011
  • Version: 2011
  • Type: Rogue anti-spyware
  • Origin: Russian federation

Signs of being infected with XP Antimalware 2011:

The infection readily reports numerous issues almost immediately upon its installation. Of course, it reports issues much faster than any legit software, for the fake antispyware does no waste time into such useless thing, in the opinion of  hackers spreading the unwanted  system utilities, as search for viruses. The reports are prepared in advance and shared by all family members. That is, any fake Windows Update, for instance, XP Antimalware 2011 and Win 7 Security and Vista Guard would refer to the same imaginary threats, e.g. Trojan-BNK.Win32.Keylogger.gen.
Get rid of XP Antimalware 2011 or any other fake antispyware annoying you with in advance prepared threat reports and restricting system functionality. Click here to upload relevant remedy.

Automatic Removal of XP Antimalware 2011 from your PC:

Do not hesitate using true antispyware to eradicate fake one. The fake one reports fake  detections, but the true one would detect true threats. Their presence is very likely at a computer system infected with XP  Antimalware 2011, for the fact of the adware presence ninths at system vulnerabilities properly exploited by true viruses.

XP Antimalware 2011 Removal Tool

Manual Removal of XP Antimalware 2011:

Manual method to uninstall XP Antimalware 2011 shall cover every entry of the threat. Any residual is unwanted so please clean the infections completely, i.e. avoid omitting any of the recommended deletions.

Remove XP Antimalware 2011 files and dll’s:

%UserProfile%\Local Settings\Application Data\opRSK
%UserProfile%\Local Settings\Application Data\pw.exe
%UserProfile%\Local Settings\Application Data\MSASCui.exe

Unregister XP Antimalware 2011 registry values:

HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command “(Default)” = “%UserProfile%\Local Settings\Application Data\pw.exe” /START “%1″ %*
HKEY_CURRENT_USER\Software\Classes\pezfile\shell\open\command “(Default)” = “%UserProfile%\Local Settings\Application Data\pw.exe” /START “%1″ %*
HKEY_CLASSES_ROOT\.exe\shell\open\command “(Default)” = “%UserProfile%\Local Settings\Application Data\pw.exe” /START “%1″ %*
HKEY_CLASSES_ROOT\pezfile\shell\open\command “(Default)” = “%UserProfile%\Local Settings\Application Data\pw.exe” /START “%1″ %*
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command “(Default)” = “%UserProfile%\Local Settings\Application Data\pw.exe” /START “C:\Program Files\Mozilla Firefox\firefox.exe”
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command “(Default)” = “%UserProfile%\Local Settings\Application Data\pw.exe” /START “C:\Program Files\Mozilla Firefox\firefox.exe” -safe-mode
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command “(Default)” = “%UserProfile%\Local Settings\Application Data\pw.exe” /START “C:\Program Files\Internet Explorer\iexplore.exe”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center “AntiVirusOverride” = “1″
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center “FirewallOverride” = “1″

