CleanThis – scam. How to get rid of CleanThis malware

andy | March 21, 2011

The CleanThis virus is another flavor of widely-distributed malicious tool called Think Point. CleanThis pretends to be as a decent anti-virus program on web sites that were designed indeed for cheating people and distribute this badware among PC users. An associated Trojan also spreads by earlier to infect web sites and make them to automatically run a rogue program on user’s computer.


CleanThis virus

CleanThis virus

This online malicious tool will arrange deceitful scanning and offer users to download and install a commercial version of CleanThis program. It is not easy for users to identify that it is infection because it will mask its real goals and will pretend to look after your system, besides it has rather attractive interface and at first sight it is difficult to say that it is rogue. Most of all it may turn out that it was part of the Windows operating system.

Victims may be bombarded with variety of pop up ads and taskbar warning messages. It will also prevent from function any programs from launching and it is stated that the file is contaminated. We advise to clean the computer from this pest, otherwise a new browser window will open and offer to obtain the registration key of CleanThis by paying with the help of your credit card. Don’t be deceived by this rogue application, if by some reasons it has penetrated to your PC, start scanning of system with the decent security application below. It is able to get rid of any forms of fake software including CleanThis virus.You can get all this done by following the guide supplied below. We offer you a choice between manual and automated computer cleaning. The method you select is up to you.

CleanThis automatic remover:

1. Download the latest version of GridinSoft Trojan Killer to clear (not infected) computer and install it.

2. Update the virus database.
3. Copy the entire folder “GridinSoft Trojan Killer” to your jump drive (memory stick). Normally it is located at the following path: (C:Program FilesGridinSoft Trojan Killer). “C” stands for the system disk of your computer. The name of the system disk, however, can be marked with another letter.
4. Open your jump drive (memory stick). Find the folder “GridinSoft Trojan Killer” there. Open it , find the file under the name “trojankiller.exe” and rename it to “iexplore.exe”.
5. Move memory stick to infected PC, open “GridinSoft Trojan Killer” folder and run iexplore.exe. Optional: copy the folder “GridinSoft Trojan Killer” from your jump drive to some other folder created on your PC and run “iexplore.exe”.

CleanThis manual removal guide:

Delete CleanThis files:
%UserProfile%Application Datacompletescan
%UserProfile%Application Datagog.exe
%UserProfile%Application Datainstall

Delete CleanThis registry entries:

HKCUSoftwareMicrosoftWindows NTCurrentConfigurationWinlogon\Shell = %AppData%gog.exe

8 Comments

  1. jan says:

    håber det her virker

  2. Peter says:

    jeg kan slet ikke starte den inficerede computer den starter op i clean this også i fejlsikkeret nogen der kan hjælpe?

  3. Elton says:

    Trojan Killer You Are The Best

    THank YOu…:):):):::):)::):):):)

  4. wiktor says:

    !peter zgadzam się z tobą ale na drugim konce odinstalowałem.LUBIE :)))))))))))))))

  5. viceboy says:

    A na jaki to podales system? ja mam vista i nie moge tego zrobic. mowi ze nie mam uprawnien do usuniecia. a w edytorze rejestru nie znjaduje.

  6. juan says:

    Ayuda porfa este virus me tiene que lloro estoy de otro pc porq el q tengo infectado no me arranca no me deja acceder al escritorio o a cualkier opcion como para poder eliminarlo intente con f8 restaoprar el sistema pero la mala suerte mia no tiene ningun pounto de restauracion T.T ayuda pliz No se quea aser???

  7. sherwin says:

    you are not just a killer. You are the bomb :) :) :). i even found viruses that i never knew exits. jho. mwaaaaaaaaaaaaaaaaaah

  8. Just Do This says:

    rename username/appdata/romaning/gag.exe. and restart :)

Leave a comment

*