Remove BestsellerAntivirus. Description and removal instructions

 
Title: BestsellerAntivirus

Type: Malware
Severity scale:BestsellerAntivirus severity is 61  (61 / 100)
 
BestsellerAntivirus is a rogue anti-spyware program released in early 2008. BestsellerAntivirus usually makes its way to your computer via Trojans and browser security holes, but may also be downloaded and installed manually. When active, BestsellerAntivirus uses scare tactics, such as falsified scan reports and system notifications to get users to buy the full version.

BestsellerAntivirus is a scam and should be treated as such: do NOT download or buy it, if you have it - remove it and block SystemDefender's domain using your HOSTS file.


BestsellerAntivirus properties:
• Shows commercial adverts
• Connects itself to the internet
• Stays resident in background

Automatic BestsellerAntivirus removal:

remover for BestsellerAntivirus

BestsellerAntivirus manual removal:

Kill processes:
install_sbd_en.exe, pgs.exe, bm.exe,
Delete registry values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "BestsellerAntivirus"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "bm"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "SBI"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "ugac"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce "overinstall"
HKEY_CURRENT_USER\Software\BestsellerAntivirus
HKEY_CLASSES_ROOT\AppID\{EA7522F6-87CF-411e-8A55-19EE4344B676}
HKEY_CLASSES_ROOT\AppID\pblock.DLL
HKEY_CLASSES_ROOT\CLSID\{079AA557-4A18-424A-8EEE-E39F0A8D41B9}\TypeLib
HKEY_CLASSES_ROOT\CLSID\{3124C396-FB13-4836-A6AD-1317F1713688}\TypeLib
HKEY_CLASSES_ROOT\CLSID\{3D813DFE-6C91-4A4E-8F41-04346A841D9C}\TypeLib
HKEY_CLASSES_ROOT\CLSID\{3E784A01-F3AE-4DC0-9354-9526B9370EBA}\TypeLib
HKEY_CLASSES_ROOT\CLSID\{4DD441AD-526D-4A77-9F1B-9841ED802FB0}\TypeLib
HKEY_CLASSES_ROOT\CLSID\{5C3F6257-3E00-45c2-88D5-CB0F3A17BF0E}
HKEY_CLASSES_ROOT\CLSID\{6F87F145-DC2D-4766-AF03-3A3B96FFAD98}
HKEY_CLASSES_ROOT\CLSID\{FC220AD8-A72A-4EE8-926E-0B7AD152A020}\TypeLib
HKEY_CLASSES_ROOT\Interface\{2933BF96-7B36-11D2-B20E-00C04F983E60}
HKEY_CLASSES_ROOT\Interface\{2B8DE2FE-8D2D-11d1-B2FC-00C04FD915A9}
HKEY_CLASSES_ROOT\Interface\{3EFAA428-272F-11D2-836F-0000F87A7782}
HKEY_CLASSES_ROOT\Interface\{3EFAA429-272F-11D2-836F-0000F87A7782}
HKEY_CLASSES_ROOT\Interface\{C90352F7-643C-4FBC-BB23-E996EB2D51FD}
HKEY_CLASSES_ROOT\PopupBlocker.IEGPB
HKEY_CLASSES_ROOT\SBIEBHO.IEFW
HKEY_CLASSES_ROOT\TypeLib\{D761645B-6B20-4698-AEE8-729981152A82}
HKEY_CLASSES_ROOT\TypeLib\{EA7522F6-87CF-411E-8A55-19EE4344B676}
HKEY_LOCAL_MACHINE\SOFTWARE\BestsellerAntivirus
HKEY_LOCAL_MACHINE\SOFTWARE\BestsellerAntivirusDownloader
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C3F6257-3E00-45C2-88D5-CB0F3A17BF0E}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6F87F145-DC2D-4766-AF03-3A3B96FFAD98}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\UAVUN_is1
HKEY_LOCAL_MACHINE\SOFTWARE\Products
HKEY_LOCAL_MACHINE\SOFTWARE\ugac
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\dhlp
Unregister DLLs:
pblock.dll, install_sbd_en.exe, pgs.exe, bm.exe, gup.exe

Other programs to remove BestsellerAntivirus:

• Malwarebytes Anti Malware - Review - Download
• Malwarebytes Anti Malware - Review - Download
• Windows Defender - Review - Download

Information added: 19/03/08
Information updated: 19/03/08

Additional resources related to BestsellerAntivirus:

Attention: If you know or you have a website or page about BestsellerAntivirus removal, feel free to add a link to this list: add url




more resources

Post Comment:

Attention: Use this form only if you have additional information about BestsellerAntivirus parasite, its removal instructions, additional resources or behavior. By clicking "post comment" button you agree not to post any copyrighted, unlawful, harmful, threatening, abusive, harassing, defamatory, vulgar, obscene, profane, hateful, racially, ethnically or otherwise objectionable material of any kind.



Enter security code:

Latest spyware news:
Similar parasites: