Since its appearance in December 2008, the infamous Antivirus 360 is still messing up our computers. New variants are coming out everyday.
Antivirus 360, Antivirus360, AV360 or A360, are all the same fake anti-spyware program that only has one purpose: convincing you to buy it with a credit card, and then using your credit card information for more fraud.
All over the help forums, you can read Antivirus 360 victims saying: “Out of nowhere it appeared on my screen and is claiming that I have about 38 threats.”
What these people don’t know is that their computers most likely got infected with the Vundo Trojan when they were visiting a suspicious website or downloading an infected file from a file-sharing network.
Then they will be invaded with pop-ups stating that their computer has a virus and Antivirus 360 must be downloaded to save their systems from harm. And once they open one of these popups, Antivirus 360 is installed.
Antivirus 360 will automatically start up and scan your system and will list quite a few infections that will stay on your computer unless you purchase the software. These infections are no more than your necessary Windows files that your system will not work without. Also, when Antivirus 360 is running, fake security alerts will constantly popup stating that your computer is vulnerable and needs an antivirus such as Antivirus 360.
The aim of Antivirus 360 with all these bogus infections listing and all these fake security alerts is to scare you into thinking that your computer is dangerously infected while Antivirus 360 is the actual infection.
So, just ignore all these false security alerts and pop-us, and follow these manual removal instructions to get rid of Antivirus 360.
Very important: Don’t forget to make a system and registry backup before this operations. Please read this article on How to back up and restore the registry in Windows.
Step 1
Kill all Antivirus 360 Processes.
1. Open your task manager by pressing “Ctrl + Alt + Del”.
2. Go to the “Processes” tab.
3. Highlight Antivirus 360 Process (in most of cases it’s av360.exe or a360.exe)
4. Click on “End Process”
Now antivirus 360 will not bother you until the next reboot.
Step 2
Find and Remove all Antivirus 360 related files and folders.
1. Press the “Start” button and then click “Search”.
2. Then in the “What do you want to search for?” section, click on “All files and folders”
3. On the Search box, type Antivirus 360 related names (Antivirus 360, Antivirus360, AV360, A360… etc)
4. Click on “Search”.
5. In the results area, delete all the files that you are sure are related to Antivirus 360.
Step 3
Find and Delete all Antivirus 360 related registry entries.
1. Press the “Start” button and then click “Run”.
2. Type in “regedit” into the “Open:” field. Then click on the OK button.
3. Now it opens the Registry Editor.
4. Navigate through the subkeys and edit the Antivirus 360 registry entries. Or, you can press “Ctrl + F” to locate the subkey that contains the antivirus 360 value (F3 to Find Next).
Step 4
Antivirus 360 related registry entries are:
-
Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\A360
-
Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Antivirus 360
-
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “13376694984709702142491016734454
-
HKEY_CURRENT_USER\Software\13376694984709702142491016734454
-
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d263fa6d-84cc-48a8-9af6-c664362b7a5b}
-
HKEY_CLASSES_ROOT\CLSID\{d263fa6d-84cc-48a8-9af6-c664362b7a5b}
-
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\2e97f8dfd4426572882394323b23c449
Step 5
Close the registry editor and reboot your computer. If something appears wrong after you change the registry, you can restore the registry from the backup you’ve created.
For detailed instructions check out this Antivirus 360 removal video.
Guest Writer: This is a guest post by Sarah M. of Spyware-Removal-Guide.net – a good resource for malware and spyware manual removal. Pay a visit to Antivirus 360 Manual Removal for more details about this rogue anti-spyware.
The content of this article is copyright 2009 © by Spyware-Removal-Guide.net – All rights reserved.
McAfee Inc
Glarysoft