Remove Green AV (Removal Instructions)

Green AV Descriptions:

Green AV is a fake security application that was created to mislead computer users to the point that they purchase a full version of the Green AV program. Green AV is not much different from other rogue anti-spyware programs in that it is able to display annoying popup messages and conduct system scans that aid in confusing computer users. Green AV, in full version and the free edition, is not able to detect or remove any type of computer parasite or threat despite what it may claim to do.

Green AV is not a appropriate application for fixing any security related issues on your system. Installing Green AV will only populate your hard drive with other unwanted and potentially dangerous files. If you have identified Green AV being on your system then it is best that you take action now to remove it.

GreenAV

In case your computer is infected by Green AV, follow the steps and remove this malicious application.

Manual Green AV Removal Instructions:

Stop Green AV Processes:
(Learn how to do this)
Install[1].exe
greenav2009.exe
mgrdll.exe
gav.exe

Find and Delete These Green AV Files:
(Learn how to do this)
c:\Documents and Settings\All Users\Application Data\gwr\
c:\Documents and Settings\All Users\Application Data\gwr\mwrdll.exe
c:\Documents and Settings\All Users\Application Data\gwr\rwg.exe
c:\Documents and Settings\All Users\Application Data\gwr\Viruses.dat
c:\Documents and Settings\All Users\Application Data\gwr\wsav.exe
c:\Documents and Settings\All Users\Application Data\gwr\WStech.dll
c:\Documents and Settings\All Users\Application Data\gwr\wtds05.exe
c:\Documents and Settings\All Users\Desktop\ Green AV .lnk
c:\Documents and Settings\All Users\Start Menu\Programs\Green AV
c:\Documents and Settings\All Users\Start Menu\Programs\Green AV\ Green AV .lnk

Remove These Green AV Registry Values:
(Learn how to do this)
HKEY_CURRENT_USER\Software\GAV
HKEY_CLASSES_ROOT\AppID\{29256442-2C14-48CA-B756-3EE0F8BDC774}
HKEY_CLASSES_ROOT\AppID\WStech.DLL
HKEY_CLASSES_ROOT\CLSID\{A5DBD8CB-DF8A-4992-A655-B155216F6AFB}
HKEY_CLASSES_ROOT\Interface\{051C9A06-FB08-486F-B09B-8B33B261637D}
HKEY_CLASSES_ROOT\TypeLib\{512E801E-2F02-4ADE-ACAA-58F08A22B2F8}
HKEY_CLASSES_ROOT\WStech.WStechB
HKEY_CLASSES_ROOT\WStech.WStechB.1
HKEY_LOCAL_MACHINE\SOFTWARE\GAV
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5DBD8CB-DF8A-4992-A655-B155216F6AFB}
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\LanmanServer\Shares\0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5DBD8CB-DF8A-4992-A655-B155216F6AFB} “NoExplorer”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run “03874569874596″
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run “37465982736455″

asm Download SpyHunter* Spyware Detection Utility.

bookmark bookmark bookmark bookmark bookmark bookmark bookmark bookmark bookmark bookmark bookmark bookmark bookmark bookmark bookmark

No related posts.

Speak Your Mind

*