Remove WinAntiSpyware. Description and removal instructions

 
Title: WinAntiSpyware
Also known as: WinAntiSpyware 2008
Type: Malware
Severity scale:WinAntiSpyware severity is 57  (57 / 100)
 
WinAntiSpyware is a corrupt anti-spyware program that infiltrates computers secretly. It hijacks web browsers home page and redirects users to its website (go.WinAntiSpyware.com).
The main purpose of WinAntiSpyware is to gain purchase. It launches enormous amounts of commercial pop-ups to convince people that they need WinAntiSpyware tool. Do not buy this software. WinAntiSpyware is a malicious product; it may install additional malware programs on the system. Remove it as soon as possible.


Related files: insthelp.exe, insthelp.exe updater.exe stera.exe uwasffnt.exe was6.exe winantispyware2006freesetup.exe wasff, updater.exe, stera.exe, uwasffnt.exe, was6.exe, winantispyware2006freesetup.exe, wasffnt.exe, winantispyware2006setup.exe, was6chk.dll, uwas6chk.dll, shellext.dll, asagents.dll, WinAntispyware2008.exe, winantispyware2008setup.exe, winantispyware2008freesetup.exe

WinAntiSpyware properties:
• Changes browser settings
• Shows commercial adverts
• Connects itself to the internet
• Stays resident in background

Automatic WinAntiSpyware removal:

remover for WinAntiSpyware

WinAntiSpyware manual removal:

Kill processes:
insthelp.exe updater.exe stera.exe uwasffnt.exe was6.exe winantispyware2006freesetup.exe wasffnt.exe winantispyware2006setup.exe WinAntispyware2008.exe winantispyware2008setup.exe winantispyware2008freesetup.exe
Delete registry values:
HKEY_CLASSES_ROOT\*\shellex\contextmenuhandlers\exploreruwas
HKEY_CLASSES_ROOT\clsid\{_clsid_washellexecutecheck}
HKEY_CLASSES_ROOT\clsid\{_clsid_washellexecutecheck} appid
HKEY_CLASSES_ROOT\clsid\{1230649b-b980-44a5-b259-9b09ebea6331}
HKEY_CLASSES_ROOT\clsid\{1236de55-eded-4675-af10-ba15eddb4d7a}
HKEY_CLASSES_ROOT\clsid\{abcd4567-76b5-4bc7-aac5-396d70925b11}
HKEY_CLASSES_ROOT\clsid\{f3ef3329-ccb1-433b-a3ed-6e763665d280}
HKEY_CLASSES_ROOT\directory\shellex\contextmenuhandlers\exploreruwas
HKEY_CLASSES_ROOT\drive\shellex\contextmenuhandlers\exploreruwas
HKEY_CLASSES_ROOT\interface\{4567ab12-a884-4ca6-b739-cedb12fef096}
HKEY_CLASSES_ROOT\interface\{abcd4567-4d73-43e9-85e5-53a2dbd95411}
HKEY_CLASSES_ROOT\interface\{abcd4567-d8e8-4df1-a3ea-d0aa72f42611}
HKEY_CLASSES_ROOT\typelib\{12398a44-7dfc-4c46-bd8f-41259d169a0d}
HKEY_CLASSES_ROOT\typelib\{4567ab12-ae24-4fd6-b479-e2b464f32da6}
HKEY_CLASSES_ROOT\typelib\{abcd4567-7437-43ef-ab74-4ab1d3a37411}
HKEY_CLASSES_ROOT\uwas6.uwas6
HKEY_CLASSES_ROOT\uwasfsd.creationnotifier
HKEY_CLASSES_ROOT\uwashellext.shellhook
HKEY_CLASSES_ROOT\uwashellext.wascontextmenu
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run winantispyware 2006 scanner
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\winantispyware 2006 scanner_is1
HKEY_LOCAL_MACHINE\software\winantispyware 2006 scanner
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\uwasfsd
Unregister DLLs:
was6chk.dll uwas6chk.dll shellext.dll asagents.dll

Delete files:
insthelp.exe updater.exe stera.exe uwasffnt.exe was6.exe winantispyware2006freesetup.exe wasffnt.exe winantispyware2006setup.exe was6chk.dll uwas6chk.dll shellext.dll asagents.dll WinAntispyware2008.exe winantispyware2008setup.exe winantispyware2008freesetup.exe

Other programs to remove WinAntiSpyware:

• SUPERAntiSpyware - Review - Download
• CounterSpy - Review - Download
• Windows Defender - Review - Download

Information added: 17/12/07
Information updated: 30/06/08

Additional resources related to WinAntiSpyware:

Attention: If you know or you have a website or page about WinAntiSpyware removal, feel free to add a link to this list: add url




more resources

Post Comment:

Attention: Use this form only if you have additional information about WinAntiSpyware parasite, its removal instructions, additional resources or behavior. By clicking "post comment" button you agree not to post any copyrighted, unlawful, harmful, threatening, abusive, harassing, defamatory, vulgar, obscene, profane, hateful, racially, ethnically or otherwise objectionable material of any kind.



Enter security code:

Related news:
Similar parasites:
Related articles:
Related discussions: