Description: Fake BitDefender 2011 is a fake antivirus program meant to trick users into thinking it is the real bitdefender 2011 program. I need to stress here that the real BitDefender company is as much a victom in this as those infected with the fake version.
The same crooks have made fake copies of programs like AVG and even E-Set.
We can confirm the NOD32 Antivirus 4 and Panda currently pick this fake client up and can fully remove this virus threat. With in the next few days from the date of this post most other security clients should be able to pick this threat up as well.
How did I get in Infected with Fake BitDefender 2011?
Fake BitDefender 2011 is typically installed as a drive-by download and from tricking users into installing the program through a false program like a software update or video codec.
What is Fake BitDefender 2011 doing to My Computer Right Now?
Once installed on a user's computer Fake BitDefender 2011 will normally block many antivirus clients as will constantly show false scan results to trick the user into making a purchase.
AGAIN THIS IS NOT THE REAL BITDEFENDER 2011 ANTIVIRUS CLIENT
Fake BitDefender 2011
» Download FAKE BitDefender 2011 Removal Software
As soon as you find yourself infected with Fake BitDefender 2011 you need to take immediate action to remove it. Fake BitDefender 2011 removal can be very challenging for non savvy computer users.
Remove Fake BitDefender 2011 Automatically
How to Remove Fake BitDefender 2011 Manually
You will have to kill the following process first as the initial step to remove Fake BitDefender 2011:
- [RANDOM].exe
The main executable of this threat is random. This makes removing such threats that much harder. The threat is normally found in %AppData%\Local\[RANDOM].exe and %UserProfile%\Local Settings\Application Data\[RANDOM].exe
The following files and folders will also need to be deleted:
- c:\Program Files\BitDefender 2011 c:\Program Files\BitDefender 2011\bitdefender.exe c:\Documents and Settings\All Users\Start Menu\BitDefender 2011\
- c:\Documents and Settings\All Users\Start Menu\BitDefender 2011\BitDefender 2011.lnk
- %AllUsersProfile%\Start Menu\BitDefender 2011\Uninstall.lnk
- %UserProfile%\Desktop\BitDefender 2011.lnk
- %Temp%\srvED4.ini
- %Temp%\srvED4.tmp
Remove Fake BitDefender 2011: Cleaning the Registry
Once you are done with deleting the files listed above, don't forget to clean your registry. You will have to get rid of the following registry keys:
- HKEY_CURRENT_USER\Software\MonEC2
- HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings “ProxyEnable” = ‘0′
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “BitDefender 2011″ = ‘C:\Program Files\BitDefender 2011\bitdefender.exe’
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\chrome.exe “Debugger” = ‘msiexecs.exe -sb’
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe “Debugger” = ‘msiexecs.exe -sb’
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iexplore.exe “Debugger” = ‘msiexecs.exe -sb’
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\opera.exe “Debugger” = ‘msiexecs.exe -sb’
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\safari.exe “Debugger” = ‘msiexecs.exe -sb’
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform “WinNT-EVI 21.04.2011″
It is recommended that you run a full virus scan of your machine to make sure that it is completely free of all sort of threats including Fake BitDefender 2011. For the scan, we suggest using Spyware Doctor with Antivirus.
Conclusion
Removal of XP Anti-Virus may be a bit complicated, but is by no means an impossible feat. Once you have followed he manual removal instructions, your computer should no longer be infected with this threat. However you do need to run a full virus scan to ensure you are no longer infected. We Recommend you run a scan with Spyware Doctor with Antivirus. If you need advanced help and can not remove this threat yourself you may ask your questions below or head over to www.pcninja.com to have an expert remote in and remove this virus for you.
Related Article Keywords: Fake BitDefender 2011, Remove Fake BitDefender 2011, Fake BitDefender 2011 Removal, How to Remove Fake BitDefender 2011
Speak Your Mind