Scanner.just-protect-pc.info

ZulaZuza By ZulaZuza in Browser Hijackers | 0 views
Rate it:
1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...

Scanner.just-protect-pc.info Description

Scanner.just-protect-pc.info is a harmful domain that runs fake system scans in order to trick users into thinking that their systems are infected. Scanner.just-protect-pc.info is inserted into victims’ Hosts files by Trojans that are designed to surreptitiously enter computer systems. Once visited, Scanner.just-protect-pc.info will launch a fake online system scan that automatically reports that the user’s system is infested with dangerous malware. The fake system security reports, alerts and notifications are displayed in order to scare victims into purchasing the “full” version of Antivirus – a fake security program. Should you encounter Scanner.just-protect-pc.info it is advisable to use a legitimate malware removal tool to exterminate this browser hijacker from your system.

Type: Browser Hijackers

How Can You Detect Scanner.just-protect-pc.info?

 
 

Download SpyHunter’s Detection Scanner
to Detect Scanner.just-protect-pc.info.

 
 

Scanner.just-protect-pc.info has typically the following processes in memory:

  • %Program Files%\Antivirus\AvBho.dll
  • %Program Files%\Antivirus\Antivirus.exe
  • %Program Files%\Antivirus\wscsvc32.exe
  • %Temp%\winupd64x.exe
  • %Program Files%\Antivirus\Uninstall.exe

Scanner.just-protect-pc.info creates the following registry entries:

  • HKEY_CLASSES_ROOT\CLSID\{9d541c6a-573b-4888-b35e-6816e68c3620}
  • HKEY_CLASSES_ROOT\TypeLib\{65DA0CE6-30D1-4144-A0B6-59BD01372E26}
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Antivirus
  • HKEY_CLASSES_ROOT\AvBho.AvBhoApp.1
  • HKEY_CLASSES_ROOT\Interface\{9692BE2F-EB8F-49D9-A11C-C24C1EF734D5}
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9d541c6a-573b-4888-b35e-6816e68c3620}
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “wscsvc32.exe”
  • HKEY_CLASSES_ROOT\AvBho.AvBhoApp
  • HKEY_CLASSES_ROOT\Interface\{967A494A-6AEC-4555-9CAF-FA6EB00ACF91}
  • HKEY_LOCAL_MACHINE\SOFTWARE\Antivirus
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “Antivirus.exe”

Important Article Disclaimer

ESG Support Center

Share and Enjoy: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Furl
  • StumbleUpon
  • Technorati
  • YahooMyWeb
This entry was posted on 02/9/10 and is filed under Browser Hijackers. You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

Leave a Comment

Note: Abusive comments are not allowed. Please do not post comments regarding technical support issues. ESG customers that have issues with SpyHunter should open a customer support ticket.

*
To prove you're a person (not a spam script), type the security word shown in the picture. Click on the picture to hear an audio file of the word.
Click to hear an audio file of the anti-spam word

Poll

How much money have you spent trying to rid your PC of spyware?
View Results
Follow Us on Twitter

Archives

Home Sitemap RSS Feed Privacy Policy End User License Agreement Copyright 2003-2010. Enigma Software Group USA, LLC. All Rights Reserved.