Jump to content
Sign in to follow this  
FredCooper

AV Security Suite/AV Soft/AV Suite Infection

Recommended Posts

Hello: I lost a day out of my life because of this nonsense. I am using the free version of SAS. I think I finally got all or most of it out. However, in my registry setting for SAS I found the following registry changes. Is this something I should edit out of my registry?

HKEY_LOCAL_MACHINE\SOFTWARE\SUPERAntiSpyware.com\SUPERAntiSpyware\InUseRegistry\RegItem0

(Default) REG_SZ (value not set)

Key REG_SZ HKEY_USERS

SubKey REG_SZ S-1-5-21-3941670402-3910787682-468457335-1000\Software\avsoft

HKEY_LOCAL_MACHINE\SOFTWARE\SUPERAntiSpyware.com\SUPERAntiSpyware\InUseRegistry\RegItem1

(Default) REG_SZ (value not set)

Key REG_SZ HKEY_USERS

SubKey REG_SZ S-1-5-21-3941670402-3910787682-468457335-1000\SOFTWARE\AVSUITE

Thank you for your help.

Share this post


Link to post
Share on other sites

Okay, I ran the portable SAS from my usb drive and rebooted and the registry entries are gone. So, hopefully this is the end of it. I would love to find who is behind this AV software and beat the crap out of them.

Share this post


Link to post
Share on other sites

Hello: I lost a day out of my life because of this nonsense. I am using the free version of SAS. I think I finally got all or most of it out. However, in my registry setting for SAS I found the following registry changes. Is this something I should edit out of my registry?

HKEY_LOCAL_MACHINE\SOFTWARE\SUPERAntiSpyware.com\SUPERAntiSpyware\InUseRegistry\RegItem0

(Default) REG_SZ (value not set)

Key REG_SZ HKEY_USERS

SubKey REG_SZ S-1-5-21-3941670402-3910787682-468457335-1000\Software\avsoft

HKEY_LOCAL_MACHINE\SOFTWARE\SUPERAntiSpyware.com\SUPERAntiSpyware\InUseRegistry\RegItem1

(Default) REG_SZ (value not set)

Key REG_SZ HKEY_USERS

SubKey REG_SZ S-1-5-21-3941670402-3910787682-468457335-1000\SOFTWARE\AVSUITE

Thank you for your help.

That's part of our delete log for our kernel driver, it's gone after you reboot.

Share this post


Link to post
Share on other sites

I would love to find who is behind this AV software and beat the crap out of them.

Agreed.

Analogy of computer infections...

Years ago, the punk just stole your car then ditched it.

Now, he steals the car and holds it for ransom (rogue antimalware products).

Share this post


Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
Sign in to follow this  

×