Threat Database Rogue Anti-Spyware Program Windows Vista Home System Repair

Windows Vista Home System Repair

By Domesticus in Rogue Anti-Spyware Program

Windows Vista Home System Repair is a fake computer security program. Malware infections like Windows Vista Home System Repair are known as rogue security programs. Rogue security programs are designed to mimic legitimate security tools as part of a scam. The Windows Vista Home System Repair scam consists of trying to charge a computer user for what is essentially a useless and harmful infection disguised as a security program. Because of this, if Windows Vista Home System Repair is installed on your computer, it is very important that you remove Windows Vista Home System Repair immediately.
 

Windows Vista Home System Repair Clones and Alternate Versions

One of the characteristics unique to Windows Vista Home System Repair is Windows Vista Home System Repair's ability to change according to the operating system it is invading. Windows Vista Home System Repair is the version of this rogue that appears on computer with the Windows Vista operating system. When installed on a computer running Windows XP, it can just as easily be called XP Home System Repair; in the case of a computer running Windows 7, it may be called Win 7 Home System Repair. This rogue has a very large number of clones, including Windows Vista Total Security, Windows XP Total Security, Win 7 Total Security, XP System Repair, Windows Vista System Repair, and Win 7 System Repair. To change Windows Vista Home System Repair's disguise, this rogue security program downloads a different skin and name depending on the operating system Windows Vista Home System Repair is infecting. At Windows Vista Home System Repair's root, all of these clones are linked to the same executable file: Ppn.exe (in some cases, it also appears as Kdn.exe).
 

Windows Vista Home System Repair’s Relationship with Trojans

The most common cause of a Windows Vista Home System Repair invasion is through a Trojan infection. Trojans are malicious software that exploit vulnerabilities in a computer's security. Trojans can be used to deliver harmful programs like Windows Vista Home System Repair or to manipulate and attack the computer system that is being invaded. Windows Vista Home System Repair does both:

  1. Windows Vista Home System Repair is typically installed by a Trojan, typically acquired from visiting high-risk websites like file sharing networks and adult video sites.
  2. Windows Vista Home System Repair also uses different Trojans to alter the computer's Registry and cause harmful effects like constant fake security alerts and blocked access to the Internet and executable files.

Removing Windows Vista Home System Repair

Manual removal of Windows Vista Home System Repair is possible, but usually not recommended; it is better to remove this harmful rogue automatically by using a properly updated anti-malware program. Often, Windows Vista Home System Repair will block access to the Internet and to legitimate security programs. In these cases, it usually helps to start up Windows in Safe Mode (by pressing F8 during start-up).

File System Details

Windows Vista Home System Repair may create the following file(s):
# File Name Detections
1. %AllUsersProfile%\Application Data\[RANDOM CHARACTERS].exe
2. %AllUsersProfile%\Application Data\[RANDOM CHARACTERS].dll
3. %UserProfile%\Desktop\Windows Vista Home System Repair.lnk
4. %UserProfile%\Start Menu\Programs\Windows Vista Home System Repair

Registry Details

Windows Vista Home System Repair may create the following registry entry or registry entries:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop "NoChangingWallPaper" = '1'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "WarnonBadCertRecving" = '0'
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main "Use FormSuggest" = 'yes'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Associations "LowRiskFileTypes" = '/{hq:/s's:/ogn:/uyu:/dyd:/c'u:/bnl:/ble:/sdf:/lrh:/iul:/iulm:/fhg:/clq:/kqf:/'wh:/lqf:/lqdf:/lnw:/lq2:/l2t:/v'w:/rbs:'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "[RANDOM CHARACTERS].exe"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "CertificateRevocation" = '0'
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download "CheckExeSignatures" = 'no'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System "DisableTaskMgr" = '1'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "[RANDOM CHARACTERS]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system "DisableTaskMgr" = '1'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced "Hidden" = '0'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Attachments "SaveZoneInformation" = '1'

Messages

The following messages associated with Windows Vista Home System Repair were found:

32% of HDD space is unreadable
Critical Error
A critical error has occurred while indexing data stored on hard drive. System restart required.
Critical Error
Hard Drive not found. Missing hard drive.
Critical Error
RAM memory usage is critically high. RAM memory failure.
Critical Error
Windows can't find hard disk space. Hard drive error.
Critical Error!
Damaged hard drive clusters detected. Private data is at risk.
Critical Error!
Windows was unable to save all the data for the file \System32\496A8300. The data has been lost. This error may be caused by a failure of your computer hardware.
Data Safety Problem. System integrity is at risk.
Hard drive doesn't respond to system commands.
Low Disk Space
You are running very low disk space on Local Disk (C:).
System Restore
The system has been restored after a critical error. Data integrity and hard drive integrity verification required.
Windows - No Disk
Exception Processing Message 0x0000013

Trending

Most Viewed

Loading...