System Care Antivirus fake antispyware (rogue) gets permanently updated and modified by its authors. These are certain cyber frauds who are hungry for money, and they don’t care with what methods they get it. They want more and more, and it seems like their appetites can’t ever be satisfied. As a result, System Care Antivirus malware gets spread all over the world, with various amendments of this virus. Recently the scam has been updated to the version known as System Care Antivirus 3.8.3. If you actually move the mouse pointer to its tray icon you will see this particular release of the rogue. In this guide we’ll explain how to deal with this infection in order to remove it effectively and completely.
Basically, System Care Antivirus with version 3.8.3. doesn’t differ much from its other versions (previous ones). The peculiarity of its new release is that it reports all legitimate executables as the ones infected with svchost.stealth.keyloger. For example:
As you see, the rogue reports GridinSoft Trojan Killer as malicious. This is because the rogue doesn’t want users to remove it until the fraudulent goal of System Care Antivirus is accomplished. Watch the spelling of the word “keyloger“. It is amazing that the authors of this rogue don’t bother in investing funds into proper English when developing their fake antivirus. Moreover, such svchost.stealth.keylogger infection is only reported by such rogues like System Care Antivirus, AVASoft Professional Antivirus, etc. It is more like an invented threat which is used to scare users. In fact, we’ve already released a particular article about this fake threat reported by this rogue today.
The key to successful removal of System Care Antivirus is the challenge of terminating its process. This is a random process, by the way. In order to assist you in removal of this hoax we have developed a free utility that till help you stop any rogue process by the window title. This work well to kill the random process of System Care Antivirus. What you need to do first is to download this free tool. It is named “explorer.exe” (or simply “explorer” after you download it). The download link for “explorer.exe” is http://gridinsoft.com/downloads/explorer.exe. What you need to do is to run this tool and then indicate the name of the malware – “System Care Antivirus” (without quotation marks). Click “Scan“. The tool will detect the running process of malware and will then suggest to you to kill its process. This is what you should do. Remember that even after you kill its process successfully the rogue isn’t yet deleted. It will reappear after you reboot your PC. To get rid of this scam completely you need to scan your PC with GridinSoft Trojan Killer to remove this rogue completely. Scan your system with Trojan Killer immediately after you stop System Care Antivirus scam with “explorer.exe”. If this is far too complicated please carefully follow the removal process explained below.
System Care Antivirus removal instructions:
Step # 1. Terminating the rogue process with explorer.exe free tool.
- Open “My Computer” or use “Win + E” hotkey command.
- In the open field type the download link for explorer.exe tool: http://gridinsoft.com/downloads/explorer.exe. Then press “Enter“.
- Click “Save” to save “explorer.exe“.
- Specify “Desktop” to save “explorer.exe”.
- Run “explorer.exe” from desktop.
- Now, in the empty space of this free tool specify the windows title of the rogue process you would like to kill. In this particular case, type “System Care Antivirus” (with beginning capital letters and relevant spaces). Then click “Scan“.
- Now give your permission to kill the process of System Care Antivirus rogue (click “Yes“):
- The process of System Care Antivirus has been successfully terminated. As a proof of this you will see the window of System Care Antivirus rogue disappear.
. Click “Save“.
Important! Remember that successful termination of this rogue process doesn’t mean it has been removed. It will reappear during the next system reboot. Make sure you complete step #2 to completely get rid of this scam.
Step # 2. Final and utter removal of System Care Antivirus with GridinSoft Trojan Killer.
System Care Antivirus manual removal information:
System Care Antivirus files to be removed:
%Desktopdir%\System Care Antivirus.lnk
%Programs%\System Care Antivirus\System Care Antivirus.lnk
System Care Antivirus virus registry entries to be removed:
HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\System Care Antivirus
HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\System Care Antivirus\DisplayIcon %AppData%\[random]\[random].exe,0
HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\System Care Antivirus\DisplayName System Care Antivirus
HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\System Care Antivirus\ShortcutPath “%AppData%\[random]\[random].exe” -u
HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\System Care Antivirus\UninstallString “%AppData%\[random]\[random].exe” -u