Friday 25 November 2011

Cloud AV 2012 Virus - Removal Guide

Cloud AV 2012 is a new rogue software from Open Cloud Family. This family is notorious for creating scam products and then forcing consumers to buy those bogus products. All products from this family block legitimate applications on your computer and won't let you do anything. Some products from these family include :

1. Cloud AV 2012
2. Open Cloud Security
3. AV Security 2012
4. Guard Online
5. AV Guard Online

This family is creating a new product in almost two weeks to avoid detection from genuine anti-malware applications. Cloud AV 2012 claims to find many infections in your computer and promises you that If you purchase its full version, It will remove all the infections.

You'll see that Cloud AV 2012 will block all legitimate applications on your computer and launch itself automatically as soon as you start your computer. Keep in mind that these characteristics are not an integral part of a genuine software. Cloud AV 2012 virus will pretend a genuine scan of your computer and show a fixed set of infections to threaten you. This is a shallow gimmick to convince you that your computer is seriously infected and Cloud AV 2012 is your best friend.

This rogue software makes its way silently to your computer from infected sites and pops-ups all of a sudden.  Keep in mind that all the infection reports are forged and all security alerts are generated by Cloud AV 2012. This rogue software also modifies Windows host file and redirects search traffic to shady websites. Here is a screen shot of Cloud AV 2012 virus doing a bogus scan :



How To Remove Cloud AV 2012

It is not easy to remove Cloud AV 2012 as It installs to many malicious things in your computer that you need to remove one by one. We suggest that first you remove the rootkit infection and then scan your computer with the recommended anti-malware application to get rid of all the malicious files and registry entries. There are two methods you can use :

A) Automatic Removal

Automatic removal is fast, easy, secure and guarantees complete removal of the rogue software from your computer. If you follow this method, your computer can be complete free from virus in less than 30 minutes and you can use your computer as before without damaging any files or documents.

Automatic Removal means you need to use a genuine anti-malware application to get rid of rogue software. Such anti-malware applications are equipped to deal with such infections easily. Here is what you need to do :

1. First of all, you need to Boot Up your computer in "Safe Mode with Networking" mode. If you don't know how to do that, reboot your computer and press "F8" key repeatedly. You'll see a menu and you need to select "Safe Mode with Networking" and press Enter.

2. Once your computer is up in "Safe Mode with Networking" mode, Download TDSSKiller and scan your computer with this utility. This free utility is from Kaspersky Lab and will remove the rootkit infection.

3. After removing rootkit infection, download Spyware Doctor and install it in your computer. After installing Spyware Doctor, update its virus database and then conduct a "Full Scan" of your computer. Spyware Doctor will automatically find Cloud AV 2012 and you just need to remove all the infections to get everything
sorted.
Reboot your computer in Normal Mode and everything should be back on track. Automatic removal is a flawless and easiest method to remove cloud av 2012 from your computer once and for all.

B) Manual Removal

Manual Removal method is the secondary to get rid of Cloud AV 2012 and we actually do not recommend this method as it can do more bad than good to your computer.

This removal method is only for highly skilled computer users who know what they are doing. Many people want to remove Cloud AV 2012 without downloading anything to their computers. If you believe you can do manual removal of the rogue software, follow these steps at your own risk :


1. First of all, reboot your computer in "Safe Mode With Networking" mode.  If you don't know how to do that, reboot your computer and press "F8" key repeatedly. You'll see a menu and you need to select "Safe Mode with Networking" and press Enter.

2. Now you need to browse these folders and remove the culprit files :

C:\WINDOWS\system32\Cloud AV 2012v121.exe
%AppData%\dwme.exe
%DesktopDir%\Cloud AV 2012.lnk
%Programs%\Cloud AV 2012\Cloud AV 2012.lnk
%Programs%\Cloud AV 2012

Make sure that you delete the right files and DON'T delete important system files. If you such mistakes, you may face strange problems with your computer. This virus creates random filenames and you need to be very careful while deleting files from your PC.

3. Now you need to remove/correct infected registry entries.  Please look for startup entry of rogue software in this location :

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\

Keep in mind that registry is the heart of your computer and editing it incorrectly can have serious consequences. If you face any problems with manual removal method, you can always try automatic removal method.

No comments:

Post a Comment