Severity scale  
  (80/100)

Windows Attacks Preventor. How to Remove? (Uninstall Guide)

removal by - -   Also known as WindowsAttacksPreventor | Type: Rogue Antispyware
12

Windows Attacks Preventor is a rogue antispyware program that claims that your computer is infected and displays bogus security threats to make you think you have some serious PC issues. The rogue program then asks you to purchase a full version of the fake malware removal tool to remove supposedly found system security threats. Do not purchase this program and uninstall Windows Attacks Preventor from your computer as soon as possible because it's a scam, not a real antivirus solution.

Usually, Windows Attacks Preventor is promoted through the use of Trojans, fake online anti-malware scanners and browser hijackers. It can come bundled with other malware as well. Trojans display fake security alerts from Windows Security Center or Task bar and suggest you to install Windows Attacks Preventor to remove non-existent viruses from your computer. Ignore such fake security alerts no matter what they tell you. Otherwise, you may infect your machine even more.

Once installed, Windows Attacks Preventor will start a fake system scan and report a variety of infections or security threats that can't be removed unless you purchase the rogue progra, Remember, scan results are false, you may easily ignore them. The only thing you should worry about is Windows Attacks Preventor itself. Furthermore, this parasite will constantly display fake security alerts stating that your computer is under attack. You will see fake security alerts with the following text:

Error
Keylogger activity detected. System information security is at risk.
It is recommended to activate protection and run a full system scan.

Error
Software without a digital signature detected.
Your system files are at risk. We strongly advise you to activate your protection.

However, that's not all. Windows Attacks Preventor will also hijack your web browser and dramatically slow down your computer. It may block some Microsoft Windows tools and programs to protect itself from being deleted.

As you can see, Windows Attacks Preventor is a scam. If you have purchased this rogue program, please contact your credit card company immediately. Then use the removal guide below to remove this infection from the system. You should also scan your PC with reliable anti-spyware application to make sure that there are no other malware installed on your computer.

The latest parasite names used by FakeVimes:
Windows Internet Guard, Windows Web Watchdog, Windows AntiBreach Patrol, Windows Antivirus Patrol, Windows Pro Defence Kit

It might be that we are affiliated with any of our recommended products. Full disclosure can be found in our Agreement of Use. By downloading any of provided Anti-spyware software you agree with our Privacy Policy and Agreement of Use.
Do it now!
Download
Reimage - remover Happiness
Guarantee
Compatible with Microsoft Windows
What to do if failed?
If you failed to remove infection using Reimage Reimage, submit a question to our support team and provide as much details as possible.
Reimage is recommended to uninstall Windows Attacks Preventor. Free scanner allows you to check whether your PC is infected or not. If you need to remove malware, you have to purchase the licensed version of Reimage malware removal tool.

More information about this program can be found in Reimage review.
Reimage is recommended to uninstall Windows Attacks Preventor. Free scanner allows you to check whether your PC is infected or not. If you need to remove malware, you have to purchase the licensed version of Reimage malware removal tool.

More information about this program can be found in Reimage review.
Not using OS X? Download a remover for Windows.
Press Mentions on Reimage
Alternate Software
Alternate Software
Plumbytes
We are testing Plumbytes's efficiency (2012-03-02 03:37)
Malwarebytes Anti Malware
We are testing Malwarebytes Anti Malware's efficiency (2012-03-02 03:37)
Hitman Pro
Webroot SecureAnywhere AntiVirus
Windows Attacks Preventor screenshot
Windows Attacks Preventor snapshot

Windows Attacks Preventor manual removal

Kill processes:
Inspector-[rnd].exe
Delete registry values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ERROR_PAGE_BYPASS_ZONE_CHECK_FOR_HTTPS_KB954312
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "WarnOnHTTPSToHTTPRedirect" = 0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System "DisableRegedit" = 0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System "DisableRegistryTools" = 0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System "DisableTaskMgr" = 0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "Inspector"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Settings "ID" = 0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Settings "net" = "2012-2-17_2"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Settings "UID" = "rudbxijemb"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\_avp32.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\_avpcc.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ashDisp.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\divx.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mostat.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\platin.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tapinstall.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\zapsetup3001.exe
Unregister DLLs:
npswf32.dll

Delete files:
%appdata%\npswf32.dll
%appdata%\Inspector-[3 random characters].exe
%desktopdir%\Windows Attacks Preventor.lnk
%appdata%\result.db
%StartMenu%\Programs\Windows Attacks Preventor.lnk

Information updated:

Comments on Windows Attacks Preventor

Post a comment

Attention: Use this form only if you have additional information about a parasite, its removal instructions, additional resources or behavior. By clicking "post comment" button you agree not to post any copyrighted, unlawful, harmful, threatening, abusive, harassing, defamatory, vulgar, obscene, profane, hateful, racially, ethnically or otherwise objectionable material of any kind.

Home page Name



«

(All fields are required)