Description of XP Antivirus 2012 and consequences of its residing on your Pt’s
Even on removing almost all files from your PC and leaving only those absolutely critical for system functioning, if you let XP Antivirus 2012 scan it, the number of viruses and descriptions of threats severity provided by the rogue will merely astonish you. That is not to be misunderstood as though there are no threats save the fake security tool in your computer memory. But it is clear as day that this is not a job for the counterfeit to inform you on security threats.
To get trustworthy info on threats you need to fix with follow-up deletion of related viruses, click here in order to initiate free scan.
Technical Details and screenshots:
- Full name: XP Antivirus 2012, Windows XP Antivirus 2012
- Version: 2012
- Type: Rogue anti-spyware
- Origin: Russian Federation, EU
Signs of being infected with XP Antivirus 2012
In order to show users that the threats found by their program are real, the malware authors introduced names of existing viruses into the database of names, which their product retrieves and put into its popups and thus applies for scaring and misleading purposes. Of course, whether one lies about real or invented subjects does not alter the fact that one lies. That is to say that the malware is misleading in spite of referring to real names, for it refers to them misleadingly.
It is a typical situation for the counterfeit to produce a set of alerts dedicated strictly to one and same infection, for instance, trojan dropper of certain modification. The design of hackers masterminding the trick of focusing on one and same problem is very complex. A user is expected to suspect the trickery and to look for the info on threat in the web. The malware is designed to intercept relevant users request and supply fabricated summary of search that consists of pages dedicated to XP Antivirus 2012 viruses.
Further signs of the fake antispyware are nothing special, but they provide exhaustive info on its name and resolves any identity issues.
Click here to remove XP Antivirus 2012 and deal with other security issues of annoying and corrupting types.
XP Antivirus 2012 automatical removal:
The counterfeit refers to real viruses, some of which might chance to be found indeed in true virus search.
Click the link below to start real search campaign in order to detect real viruses and get rid of XP Antivirus 2012 as one of the treats found.
Manual Removal of XP Antivirus 2012:
Partial control over infected PC is a result of illegal dodges the hackers provided for in the bogus security tool. The adware makes use of the situation, in particular, trying to block deletion of its components.
To eliminate the issue, please remove XP Antivirus 2012 in Safe Mode and variations of the mode only, if the system infected is Windows.
Remove XP Antivirus 2012 files and dll’s:
Unregister XP Antivirus 2012 registry values:
HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\BrowserEmulation “TLDUpdates” = ‘1’
HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command “(Default)” = ‘”%LocalAppData%\kdn.exe” -a “%1” %*’
HKEY_CURRENT_USER\Software\Classes\exefile\shell\open\command “(Default)” = ‘”%LocalAppData%\kdn.exe” -a “%1” %*’
HKEY_CLASSES_ROOT\.exe\shell\open\command “(Default)” = ‘”%LocalAppData%\kdn.exe” -a “%1” %*’
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command “(Default)” = ‘”%LocalAppData%\kdn.exe” -a “C:\Program Files\Mozilla Firefox\firefox.exe”‘
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command “(Default)” = ‘”%LocalAppData%\kdn.exe” -a “C:\Program Files\Mozilla Firefox\firefox.exe” -safe-mode’
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command “(Default)” = ‘”%LocalAppData%\kdn.exe” -a “C:\Program Files\Internet Explorer\iexplore.exe”‘
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center “AntiVirusOverride” = ‘1’
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center “FirewallOverride” = ‘1’