Bienvenido! - Willkommen! - Welcome!

Bitácora Técnica de Tux&Cía., Santa Cruz de la Sierra, BO
Bitácora Central: Tux&Cía.
Bitácora de Información Avanzada: Tux&Cía.-Información
May the source be with you!

Friday, October 10, 2008

How to remove Andromeda AntiVirus

Source
Screen shot of Andromeda AntiVirus

Andromeda AntiVirus is a new rogue anti-spyware program that displays false and exaggerated results that cannot be removed unless you first purchase the software. When installed, Andromeda AV will create 8 harmless files on your computer with the filenames:

c:\WINDOWS\system32\bprint.exe
c:\WINDOWS\system32\hinetres.dll
c:\WINDOWS\system32\rpthreadVC.dll
c:\WINDOWS\system32\settings
c:\WINDOWS\system32\thunk.dll
c:\WINDOWS\system32\vclipsrv.exe
c:\WINDOWS\system32\dllcache\cpifmgr.dll
c:\WINDOWS\system32\dllcache\tmswdat10.dll


Symptoms that may be in a HijackThis Log:
O23 - Service: Andromeda AV (AndromedaAVService) - Unknown owner - C:\WINDOWS\system32\AndromedaAv.exe

Tools Needed for this fix:

No comments: