Aug 04

Malware Analysis:

My Security Shield is a near clone of such known rogue anti-malware applications as Security Master AV and My Security Engine. What is more, it has a pretty much identical User Interface and exhibits similar behavioral patterns. It does not present a serious difficulty for My Security Shield to enter your computer. Owing to rather smart use of social engineering and some trojan related techniques, the hackers manage to distribute the corresponding malignant code easily and quickly. The external signs of My Security Shield’s presence on your computer will include: fabricated security scanners, false alerts, browser hijack and overall system performance deterioration. None of these symptoms are pleasant so do not expect to be able to calmly coexist with this nefarious program. My Security Shield will concurrently begin giving you its ‘business’ offer by repeatedly telling you to register your copy of this software which is promised to help you get rid of the infections it has been kind of detecting all the time. So the malware will be gradually expressing its sugarcoated intensions of gaining commercial income from you. But first of all, the parasites supposedly found by My Security Shield are not there – it simply made them all up just to scare you. Secondly, My Security Shield will not help you keep your PC running smooth – it’s obvious, the program is rogue. So you need to urgently do something to uninstall My Security Shield scamware. In order to remove it, please enter Safe Mode (if necessary) and stick to the tips following this description.

Determine if your PC is infected with My Security Shield:

My Security Shield Screenshot:

My Security Shield

How to remove My Security Shield manually:

To perform manual removal of My Security Shield, you should do the following:

Delete My Security Shield corrupt files:

  • %CommonAppData%\8d7ca11\25.mof
  • %CommonAppData%\8d7ca11\MS8d7c_2155.exe
  • %CommonAppData%\8d7ca11\MSS.ico
  • %CommonAppData%\8d7ca11\MSSSys\vd952342.bd
  • %AppData%\Microsoft\Internet Explorer\Quick Launch\My Security Shield.lnk
  • %AppData%\My Security Shield\cookies.sqlite
  • %Desktop%\My Security Shield.lnk
  • %UserProfile%\Recent\ANTIGEN.drv
  • %UserProfile%\Recent\ANTIGEN.exe
  • %UserProfile%\Recent\cid.dll
  • %UserProfile%\Recent\CLSV.drv
  • %UserProfile%\Recent\DBOLE.sys
  • %UserProfile%\Recent\ddv.dll
  • %UserProfile%\Recent\ddv.sys
  • %UserProfile%\Recent\energy.tmp
  • %UserProfile%\Recent\FS.drv
  • %UserProfile%\Recent\gid.drv
  • %UserProfile%\Recent\PE.drv
  • %UserProfile%\Recent\PE.exe
  • %UserProfile%\Recent\PE.sys
  • %UserProfile%\Recent\PE.tmp
  • %UserProfile%\Recent\std.exe
  • %UserProfile%\Recent\tjd.drv
  • %UserProfile%\Recent\tjd.sys
  • %UserProfile%\Recent\runddlkey.dll
  • %StartMenu%\My Security Shield.lnk
  • %StartMenu%\Programs\My Security Shield.lnk

Remove the following associated registry entries:

  • HKEY_CURRENT_USER\Software\3
  • HKEY_CLASSES_ROOT\MSSSys.DocHostUIHandler
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “My Security Shield”

Please note that manual removal of My Security Shield is a procedure of high complexity and should be performed with extreme caution. Lack of the required skills and even the slightest deviation from the instructions may lead to irreparable system damage. To ensure trouble-free deletion, it is recommended to use the automatic removal tool below:

Download My Security Shield Removal Tool

Leave a Reply