Vista Antivirus 2012

Vista Antivirus 2012 Description



ScreenshotVista Antivirus 2012 is a rogue antivirus program that attacks your web browser and other applications, while also pretending to have anti-virus functions. All alerts, warnings and system scan results from Vista Antivirus 2012 are faked, to give a false impression of numerous infections. Avoid purchasing Vista Antivirus 2012 or even visiting the Vista Antivirus 2012 website, since this website may make other attacks on your computer. Quality anti-virus programs should have little difficulty in removing Vista Antivirus 2012, if Vista Antivirus 2012 isn’t active during the system scan.

Vista Antivirus 2012: Out a Year Early to Threaten Your Computer


Vista Antivirus 2012 uses similar attacks to other typical fake security programs, and even uses code similar to that of threats like XP Home Security 2012, XP Antivirus 2012, Win 7 Anti-Spyware 2012 and Win 7 Total Security 2012. Rogue security programs like Vista Antivirus 2012 and its relatives are typically aided in opening infection by Trojans; the presence of Vista Antivirus 2012 usually indicates that a Trojan is also on the computer and is secretly responsible for installing Vista Antivirus 2012.

Like most other rogue security programs, Vista Antivirus 2012 can’t find or delete viruses and other threats from your PC. Despite this, Vista Antivirus 2012 will still pretend to find infections on your computer in simulated system scans, and may also create fake warning messages.
Download SpyHunter Spyware Scanner
You should never take any advice or suggestions that Vista Antivirus 2012 offers with regards to fixing these problems, since the infections that Vista Antivirus 2012 detects aren’t real, and are targeting unharmed applications and files.

Vista Antivirus 2012 errors may also appear when Vista Antivirus 2012 blocks a program from running. Although the pop-up alert that Vista Antivirus 2012 uses will tell you that the program is infected, the real reason that Vista Antivirus 2012 is blocking it is to prevent you from accessing anti-malware and system diagnostic features.

How to Get Vista Antivirus 2012 Off Your Computer and Out of Your Browser


Besides all the other problems Vista Antivirus 2012 creates, Vista Antivirus 2012 may also hijack your web browser. Browser hijacks are difficult to stop without removing Vista Antivirus 2012 or any other PC threat that might be causing them. Hijacks are known for:
  • Redirecting your browser to malicious websites.
  • Changing your search results.
  • Altering your homepage settings.
  • Creating pop-ups and advertisements.
  • Using fake ‘dangerous website’ error screens.
  • Redirecting you away from safe websites that could help you delete Vista Antivirus 2012 and other threats to your PC.

Despite the wide range of problems a browser hijack can cause, getting rid of these attacks is fairly simple. Safe Mode or a CD-based system boot will stop Vista Antivirus 2012 from launching in the first place, and prevent any hijacks from occurring. You can follow this up by removing Vista Antivirus 2012 entirely with the help of the right security scanner.

Vista Antivirus 2012 Automatic Detection Tool (Recommended)


Is your PC infected with Vista Antivirus 2012? To safely & quickly detect Vista Antivirus 2012, we highly recommend you run the malware scanner listed below.



Technical Details

Visual & GUI Characteristics


Vista Antivirus 2012 Screenshot 2Vista Antivirus 2012 Screenshot 3Vista Antivirus 2012 Screenshot 4Vista Antivirus 2012 Screenshot 5Vista Antivirus 2012 Screenshot 6Vista Antivirus 2012 Screenshot 7Vista Antivirus 2012 Screenshot 8

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.
  • The following files were created in the system:
    # File Name
    1 %AllUsersProfile%\9olpq2xnc6yhnjeuwnjIUks1k
    2 %AppData%\9olpq2xnc6yhnjeuwnjIUks1k
    3 %AppData%\Local\9olpq2xnc6yhnjeuwnjIUks1k
    4 %AppData%\Roaming\Microsoft\Windows\Templates\9olpq2xnc6yhnjeuwnjIUks1k
    5 %Temp%\9olpq2xnc6yhnjeuwnjIUks1k
    6 %UserProfile%\Templates\9olpq2xnc6yhnjeuwnjIUks1k

Registry Modifications

Tutorial: To edit and delete registry entries manually, read the tutorial on how to remove malicious registry entries.

Tip & Warning: Editing and removing the wrong registry keys can severely damage your PC, so remember to backup your Windows Registry! To optimize your Windows Registry and speed up your PC, download RegHunter's registry cleaner.
  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Classes\.exe "(Default)" = 'exefile'HKEY_CURRENT_USER\Software\Classes\.exe "Content Type" = 'application/x-msdownload'HKEY_CURRENT_USER\Software\Classes\.exe\DefaultIcon "(Default)" = '%1" = '"%UserProfile%\Local Settings\Application Data\(random 3 letters).exe" /START "%1" %*'HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command "IsolatedCommand" = '"%1" %*'HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command "(Default)" = '"%1" %*'HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command "IsolatedCommand" = '"%1" %*'HKEY_CURRENT_USER\Software\Classes\exefile "(Default)" = 'Application'HKEY_CURRENT_USER\Software\Classes\exefile "Content Type" = 'application/x-msdownload'HKEY_CURRENT_USER\Software\Classes\exefile\DefaultIcon "(Default)" = '%1'HKEY_CURRENT_USER\Software\Classes\exefile\shell\open\command "(Default)" = '"%UserProfile%\Local Settings\Application Data\(random 3 letters).exe" /START "%1" %*'HKEY_CURRENT_USER\Software\Classes\exefile\shell\open\command "IsolatedCommand" = '"%1" %*'HKEY_CURRENT_USER\Software\Classes\exefile\shell\runas\command "(Default)" = '"%1" %*'HKEY_CURRENT_USER\Software\Classes\exefile\shell\runas\command "IsolatedCommand" – '"%1" %*'HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command "(Default)" = '"%UserProfile%\Local Settings\Application Data\(random 3 letters).exe" /START "C:\Program Files\Mozilla Firefox\firefox.exe"'HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command "(Default)" = '"%UserProfile%\Local Settings\Application Data\(random 3 letters).exe" /START "C:\Program Files\Mozilla Firefox\firefox.exe" -safe-mode'HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command "(Default)" = '"%UserProfile%\Local Settings\Application Data\(random 3 letters).exe" /START "C:\Program Files\Internet Explorer\iexplore.exe"HKEY..\..\..\..{RegistryKeys}HKEY_CLASSES_ROOT\.exe\DefaultIcon "(Default)" = '%1'HKEY_CLASSES_ROOT\.exe\shell\open\command "(Default)" = '"%UserProfile%\Local Settings\Application Data\(random 3 letters).exe" /START "%1" %*'HKEY_CLASSES_ROOT\.exe\shell\open\command "IsolatedCommand" = '"%1" %*'HKEY_CLASSES_ROOT\.exe\shell\runas\command "(Default)" = '"%1" %*'HKEY_CLASSES_ROOT\.exe\shell\runas\command "IsolatedCommand" = '"%1" %*'HKEY_CLASSES_ROOT\exefile "Content Type" = 'application/x-msdownload'HKEY_CLASSES_ROOT\exefile\shell\open\command "(Default)" = '"%UserProfile%\Local Settings\Application Data\(random 3 letters).exe" /START "%1" %*'HKEY_CLASSES_ROOT\exefile\shell\open\command "IsolatedCommand" = '"%1" %*'HKEY_CLASSES_ROOT\exefile\shell\runas\command "IsolatedCommand" = '"%1" %*'

Additional Information

  • The following messages's were detected:
    # Message
    1Attention: DANGER!
    ALERT! System scan for spyware, adware, trojans and viruses is complete.
    Vista Antivirus 2012 detected 26 critical system objects.
    2Computer security is at risk!
    Your PC is still under malware attack. Dangerous programs were found to be running in the background. System crash and identify theft are likely.
    3Privacy threat!
    Spyware intrusion detected. Your system is infected.
    System integrity is at risk. Private data can be stolen by third parties including credit card details and passwords.
    Click here to perform a security repair.
    4System danger!
    Your system is in danger. Privacy threats detected.
    Spyware, keyloggers or Trojans may be working in the
    5Vista Antivirus 2012 Firewall Alert
    Vista Antivirus 2012 has blocked a program from accessing the internet
    Firefox is infected with Trojan-BNK.Win32.Keylogger.gen
Posted: June 7, 2011 | By
Share:
Follow Me on Pinterest More More
Threat Level: 10/10
1 Star2 Stars3 Stars4 Stars5 Stars (7 votes, average: 3.86 out of 5)
Loading ... Loading ...
Rate this article:
Detection Count: 145

10 Comments

  • Elistariel says:

    I’d love to try Alfred’s method, but the right click on my laptop is busted.

  • Sarah says:

    Wait so how do you remove it without downloading any other antivirus thing

  • Alfred says:

    Go to your antivirus program in your program files folder and right click on the .exe. Run the program as an administrator. Update your program and then scan. Vista virus should be killed after the scan. Download exehelper.exe and run it. You need to run this tiny utility to restore your old settings. Vista virus will alter your computer settings. Even if the virus is gone, the settings it imposed will still be there. This is why exehelper is very important.

  • huseyin karakus says:

    vista antivirus 2012 gratuit

  • Rich says:

    I had luck opening files as as administrator. Right click, choose run as administrator. It seems the fake antivirus wasn\’t able to stop that.

  • Anisha says:

    Pin my tail and call me a doenky, that really helped.

  • tay says:

    I have this awful thing.

    Only problem is, it’s already way ahead of these remedies, IE: task manager has been disabled. And worse, when I try to fix the registry (with FixNCR) via USB drive, it simply powers down my computer.

    Any suggestions on a work-around?

  • druann says:

    sow do i get rrid of vista spywear it is running the comp

  • druann says:

    how do i remove vista spywear 2012

  • matt says:

    Thanks so much for this guide.

Leave a Reply

What is 6 + 8 ?
Please leave these two fields as-is:
IMPORTANT! To be able to proceed, you need to solve the following simple math (so we know that you are a human) :-)