Apr 28

PCAntiMalware Description:

PCAntiMalware (also known as PC AntiMalware) is a rogue anti-spyware utility that claims to detect computer infections but only misinforms PC users in fact. Similarly to other rogue anti-spywares of its species ( Cleaner2009, AntiMalwareSuite ), PCAntiMalware is advertised through Zlob or Vundo Trojans which challenge the computer security and get inside using backdoor techniques, i.e. without you knowledge and any authorization. These Trojan trespassers issue exaggerated popup alerts or system tray notifications that aim to alarm you about malware resident on your computer. If you click on such popup warnings (even to close them), you will automatically trigger the procedure of PCAntiMalware freeware installation. This trial version of PCAntiMalware will then flood your system with its fake scanners and more of those bogus popup alerts that report multiple infections on your machine. Then, as a tool for exterminating the detected threats, PCAntiMalware will offer its services, but before that you will have to purchase its license for about $50. It’s strongly recommended to refrain from buying PCAntiMalware, otherwise your computer problems will keep aggravating and may end up with complete system collapse. It’s advised to remove PCAntiMalware ASAP if detected on your computer.

Find out if your PC is infected with PCAntiMalware:

PCAntiMalware screenshot:

PCAntiMalware

How to remove PCAntiMalware manually:

To perform manual removal of PCAntiMalware, you should do the following:

Delete PCAntiMalware corrupt files:

  • %Documents and Settings%\All Users\Application Data\PCAntiMalware
  • %Documents and Settings%\All Users\Application Data\PCAntiMalware\Data
  • %Documents and Settings%\All Users\Application Data\PCAntiMalware\Data\Abbr
  • %Documents and Settings%\All Users\Application Data\PCAntiMalware\Data\ProductCode
  • %Documents and Settings%\All Users\Start Menu\Programs\PCAntiMalware
  • %Documents and Settings%\All Users\Start Menu\Programs\PCAntiMalware\Contact customer support.url
  • %Documents and Settings%\All Users\Start Menu\Programs\PCAntiMalware\PCAntiMalware on the Web.url
  • %Documents and Settings%\All Users\Start Menu\Programs\PCAntiMalware\PCAntiMalware.lnk
  • %Documents and Settings%\All Users\Start Menu\Programs\PCAntiMalware\Uninstall PCAntiMalware.lnk
  • %UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\PCAntiMalware.lnk
  • %UserProfile%\Desktop\PCAntiMalware.lnk
  • %Program Files%\PCAntiMalware
  • %Program Files%\PCAntiMalware\Activate.dat
  • %Program Files%\PCAntiMalware\appupdate.dat
  • %Program Files%\PCAntiMalware\AsAgents.dll
  • %Program Files%\PCAntiMalware\AsAgents.xml
  • %Program Files%\PCAntiMalware\atl71.dll
  • %Program Files%\PCAntiMalware\AutoProcess.dat
  • %Program Files%\PCAntiMalware\dbupdate.dat
  • %Program Files%\PCAntiMalware\InstUp.exe
  • %Program Files%\PCAntiMalware\lapv.dat
  • %Program Files%\PCAntiMalware\license.rtf
  • %Program Files%\PCAntiMalware\mfc71.dll
  • %Program Files%\PCAntiMalware\msvcp71.dll
  • %Program Files%\PCAntiMalware\msvcr71.dll
  • %Program Files%\PCAntiMalware\PCAM.exe
  • %Program Files%\PCAntiMalware\PCAM.xml
  • %Program Files%\PCAntiMalware\PP.exe
  • %Program Files%\PCAntiMalware\pv.dat
  • %Program Files%\PCAntiMalware\readme.rtf
  • %Program Files%\PCAntiMalware\scanlog.xml
  • %Program Files%\PCAntiMalware\settings.ini
  • %Program Files%\PCAntiMalware\shellext.dll
  • %Program Files%\PCAntiMalware\shellext.xml
  • %Program Files%\PCAntiMalware\Summary.dat
  • %Program Files%\PCAntiMalware\tasks.dat
  • %Program Files%\PCAntiMalware\threatnet.dat
  • %Program Files%\PCAntiMalware\threatnet.ini
  • %Program Files%\PCAntiMalware\unins000.dat
  • %Program Files%\PCAntiMalware\unins000.exe
  • %Program Files%\PCAntiMalware\uninstall.ico
  • %Program Files%\PCAntiMalware\UserAgent.dll
  • %Program Files%\PCAntiMalware\database
  • %Program Files%\PCAntiMalware\database\knownfiles.dat
  • %Program Files%\PCAntiMalware\database\MalwareDB.dat
  • %Program Files%\PCAntiMalware\database\TEBase.dat
  • %Program Files%\PCAntiMalware\database\vbpv.dat
  • %Program Files%\PCAntiMalware\quaratine.dat
  • %Program Files%\PCAntiMalware\quaratine.dat\#post_quarantine
  • %Program Files%\PCAntiMalware\RTMonitor.dat
  • %WINDOWS%\System32\bootrem.exe

Remove PCAntiMalware associated registry entries:

  • HKEY_CURRENT_USER\Software\PCAntiMalware
  • HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\ExplorerWAS
  • HKEY_CLASSES_ROOT\amshellext.ShellHook
  • HKEY_CLASSES_ROOT\amshellext.ShellHook.1
  • HKEY_CLASSES_ROOT\CLSID\{_CLSID_WAShellExecuteCheck}
  • HKEY_CLASSES_ROOT\CLSID\{4567AB12-EDED-4675-AF10-BA15EDDB4D7A}
  • HKEY_CLASSES_ROOT\CLSID\{4ADD95DA-B25D-4d21-9C5C-05FC6DE05860}
  • HKEY_CLASSES_ROOT\Directory\shellex\ContextMenuHandlers\ExplorerWAS
  • HKEY_CLASSES_ROOT\Drive\shellex\ContextMenuHandlers\ExplorerWAS
  • HKEY_CLASSES_ROOT\Interface\{4567AB12-A884-4CA6-B739-CEDB12FEF096}
  • HKEY_CLASSES_ROOT\TypeLib\{4567AB12-7DFC-4C46-BD8F-41259D169A0D}
  • HKEY_CLASSES_ROOT\TypeLib\{4567AB12-AE24-4FD6-B479-E2B464F32DA6}
  • HKEY_CLASSES_ROOT\washellext.WASContextMenu
  • HKEY_CLASSES_ROOT\washellext.WASContextMenu.1
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PSAMAP_is1
  • HKEY_LOCAL_MACHINE\SOFTWARE\PCAntiMalware
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks “{4ADD95DA-B25D-4D21-9C5C-05FC6DE05860}”
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform “UPSAMAP 4.1.228.0″
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run “PCAntiMalware”

Please, note that manual removal of PCAntiMalware is a procedure of high complexity and should be performed with extreme caution. Lack of the required skills and even the slightest deviation from the instructions may lead to irreparable system damage. To ensure trouble-free deletion, it is recommended to use the automatic PCAntiMalware removal tool below:

Download PCAntiMalware Removal Tool

Leave a Reply