How To Remove VirusHeat rogue antispyware
Monday, February 25th, 2008WHAT IS THIS
VirusHeat is a rogue antispyware, that uses deceptive means for installation and purpose, may display fake scan results. This program usually installed itself onto your PC without your permission, through Zlob Trojan, Virus, fake audio/video codecs.
YOU SHOULD HAVE FOR FIX
Avenger
CCleaner
SmitfraudFix (by S!Ri)
UNINSTALL PROGRAMS
VirusHeat 3.9
VirusHeat 4.3
REGISTRY ITEMS
[-HKEY_CLASSES_ROOT\clsid\{e94eb13e-d78f-0857-7734-5e67a49ffff1}]
[- HKEY_CLASSES_ROOT\interface\{0979850f-6c3e-4294-b225-b3d3c4a6f2a1}]
[- HKEY_CLASSES_ROOT\interface\{1bb2da5f-b78f-44ea-bda1-771cbe1dec68}]
[- HKEY_CLASSES_ROOT\interface\{2a4e73c5-ba3c-4391-b7e5-ffe8d3bd6245}]
[- HKEY_CLASSES_ROOT\interface\{44a923ca-f430-4f85-9f84-5153ecdb882e}]
[- HKEY_CLASSES_ROOT\interface\{4e6e21ec-9d72-4164-8a53-74786a467872}]
[- HKEY_CLASSES_ROOT\interface\{631e9e48-b066-43da-92ac-6dadf61b173b}]
[- HKEY_CLASSES_ROOT\interface\{65c1361c-e696-4af0-9e21-81910193f352}]
[- HKEY_CLASSES_ROOT\interface\{77dce805-c8ce-48aa-a47f-bfa6cc7704b3}]
[- HKEY_CLASSES_ROOT\interface\{8d42769f-07d8-494d-aab4-aa1652c541fa}]
[- HKEY_CLASSES_ROOT\interface\{a1922071-390c-418d-916d-91209e95d286}]
[- HKEY_CLASSES_ROOT\interface\{a1f8cd95-cfb3-43d1-a956-63441cc058c1}]
[- HKEY_CLASSES_ROOT\interface\{a63b46ad-96a7-4a2c-bd8f-8cd097e1593a}]
[- HKEY_CLASSES_ROOT\interface\{a65f98dd-2360-468c-b76e-b1b84c0d547c}]
[- HKEY_CLASSES_ROOT\interface\{ae2aeed0-be1b-4ba2-826e-20d1991081b8}]
[- HKEY_CLASSES_ROOT\interface\{d7f73787-6206-4bba-bdc0-7cfa9940dbcb}]
[- HKEY_CLASSES_ROOT\interface\{e770f739-2968-4ed9-a63c-dc1938dc82a2}]
[- HKEY_CLASSES_ROOT\typelib\{cfafa83c-855b-4e3d-92b9-a587995b675a}]
[- HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\app paths\virusheat 3.9.exe 3.9]
[- HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\virusheat 3.9]
[- HKEY_LOCAL_MACHINE\software\virusheat 3.9]
REMOVE FILES
%program_files%\virusheat 3.9\msvcp71.dll
%profile%\application data\microsoft\internet explorer\quick launch\virusheat 3.9.lnk
%profile%\desktop\virusheat 3.9.lnk
%profile%\start menu\programs\virusheat 3.9\uninstall virusheat 3.9.lnk
%profile%\start menu\programs\virusheat 3.9\virusheat 3.9 website.lnk
%profile%\start menu\programs\virusheat 3.9\virusheat 3.9.lnk
%profile%\start menu\virusheat 3.9.lnk
%program_files%\virusheat 3.9\blacklist.txt
%program_files%\virusheat 3.9\lang\english.ini
%program_files%\virusheat 3.9\virusheat 3.9.exe
%program_files%\virusheat 3.9\virusheat 3.9.url
%program_files%\virusheat 3.9\msvcr71.dll
%program_files%\virusheat 3.9\uninst.exe
%program_files%\virusheat 3.9\vht.dat
%program_files%\virusheat 3.9\msvcp71.dll
%program_files%\virusheat 3.9\msvcr71.dll
%program_files%\virusheat 3.9\virusheat 3.9.exe
%program_files%\virusheat 3.9\uninst.exe
REMOVE FOLDERS
%profile%\start menu\programs\virusheat 3.9
%program_files%\virusheat 3.9
%program_files%\virusheat 3.9\lang
%program_files%\virusheat 3.9\logs
%program_files%\virusheat 3.9\quarantine
RUN SMITFRAUDFIX