Antivirus IS rogue. How to uninstall fake Antivirus IS

1 Star2 Stars3 Stars4 Stars5 Stars (89 votes, average: 5.00 out of 5)
loadingLoading...

Antivirus IS (also being distributed under the name of AntivirusIS) is a certain malicious fake antivirus tool that is planted into system in various ways, trying to convince you that your computer has been compromised. One of its most common entries to PC is via the backdoor. It also spreads via trojan horses. Trojan comes to the system through its vulnerabilities and makes a perfect background for the virus to penetrate into the system. Once installed to your system, AntivirusIS is used to run according to particular schedule. By the way, Antivirus IS is a copy of a Security Suite rogue application which is from the same rogue family as well.

Antivirus IS
Antivirus IS

Typical description of its activities is as follows: once installed malware will initiate a quick system scan and report thousands of fake system infections on your PC. It also may display fabricated security alerts. You need to know that this application is nothing but a scam and none of information it displays should be seriously treated. Even though it claims to be a legitimate computer protection application, in reality it is nothing but a malware that is not able to protect your computer in any serious manner. It was simply developed to steal funds from many unwary users. AntivirusIS may redirect your browser to deceptive websites providing lots of information about supposedly legal version of this program.

To sum up the above-mentioned, this is a fraud application that should be completely ignored. Therefore, as soon as you notice this tool on your PC you need to run some reputable anti-spyware and remove AntivirusIS immediately. Make sure to completely remove it, as well as all its affiliated components.

We therefore seriously urge you not to purchase Antivirus IS and not to believe in its faulty promises. Even though Antivirus IS would declare that it is the only solution to remove all the scams and viruses detected, in reality it is nothing but a rogue, simply aiming to steal hard earned money from you. The best solution to perform would be to permanently and completely delete Antivirus IS as soon as it has been detected on a computer system. It is of utmost importance to use a trustworthy anti-spyware to protect your PC from this and the other rogues. So why don’t you use Gridinsoft Trojan Killer to permanently get rid of it?

As you see, Antivirus IS is not a lonely walker in the empty space. Similar to other trojans and rogue software, it has multiple links to other rogues. That’s why complex malware removal is the best way to get rid of rogue Antivirus IS. In addition, if you remove Antivirus IS automatically by using Gridinsoft Trojan Killer you get life-time protection from malware aggression.

Please be advised that GridinSoft LLC and www.trojan-Killer.com IS NOT associated, affiliated, consorted, or connected with the publishers or creators of Antivirus IS. In the same manner this article should not be wrongly treated or understood in being associated in any way with the promotion or endorsement of malware. Our only intention is to provide information that would give instructions to PC users on how to detect and completely remove malware from their computers with the help of Gridinsoft Trojan Killer and/or manual removal instructions stipulated below. Thus, this article should be used for educational and informational purposes only.


Antivirus IS automatic remover:

    No doubt, Antivirus IS was initially designed to scare users and convince them to purchase it by making it seem as if your PC is indeed infected. Needless to mention, you should not purchase this program, and if you have already done so, you should immediately take the measures to remove it from your PC to prevent from further spreading of its hazardous activity. To remove this infection and any other similar malware, please be so kind to attentively read and follow the advises stipulated below.

    1. Download the latest version of GridinSoft Trojan Killer to clear (not infected) computer and install it.

    2. Update the virus database.
    3. Copy the entire folder “GridinSoft Trojan Killer” to your jump drive (memory stick). Normally it is located at the following path: (C:\Program Files\GridinSoft Trojan Killer). “C” stands for the system disk of your computer. The name of the system disk, however, can be marked with another letter.
    4. Open your jump drive (memory stick). Find the folder “GridinSoft Trojan Killer” there. Open it , find the file under the name “trojankiller.exe” and rename it to “iexplore.exe”.
    5. Move memory stick to infected PC, open “GridinSoft Trojan Killer” folder and run iexplore.exe. Optional: copy the folder “GridinSoft Trojan Killer” from your jump drive to some other folder created on your PC and run “iexplore.exe”.


Instructions on how to restore your Internet connection:

1. Start Internet Explorer and click on the Tools menu and then select Internet Options as shown in the image below:

IE cannot display the Web page
IE cannot display the Web page

2. Select Connections tab and now click on the Lan Settings button as shown in the image below:
Internet Options
Internet Options

3. Under the Proxy Server section uncheck the checkbox “Use a proxy server for your LAN” and press the OK button to close this screen:
LAN settings
LAN settings

Antivirus IS manual removal guide:

Delete Antivirus IS files:

%Documents and Settings%\All Users\Start Menu\Programs\Antivirus Action
%Documents and Settings%\All Users\Desktop\Antivirus Action.lnk
%Documents and Settings%\All Users\Application Data\Antivirus Action

Delete AntivirusIS registry entries:

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “[random]”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run “[random]”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings: “ProxyEnable” = 1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings: “ProxyServer” = http=127.0.0.1:27811
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters: NameServer = 93.188.163.182,93.188.166.182

However, please be aware that manual removal of Antivirus IS is a time-consuming undertaking. Moreover, it does not always ensure full deletion of the rogue due to the fact that certain files might be hidden or even may be restored automatically afterwards. In addition, such a manual interference might damage the PC. That’s why we strongly recommend automatic removal of Antivirus IS. By choosing GridinSoft Trojan Killer for this purpose you will be able to save your time and get the required result.

Related posts:

4 thoughts on “Antivirus IS rogue. How to uninstall fake Antivirus IS

  1. I tried Malwarebytes, SpywareBlaster, Spybot, and Spyware Doctor on a Vista machine with no results. GridinSoft Trojan Killer did the job! Thanks!!!

Leave a Comment

*