Vista Antivirus Plus 2013 virus. How to remove

1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)

How to remove Vista Antivirus Plus 2013 from my computer? This question has been raised today by one of our users and most active blog readers. After analysis of the case we came to the conclusion that Vista Antivirus Plus 2013 is a new malware released by hackers and launched into the cyber world to trick users. This is a fake anti-virus, in fact, despite its name. It belongs to a well-spread malware family that is summarized as Braviax tribe. Some profound malware researchers also categorize this program as a member MultiRogue 2013. Why is it called MultiRogue 2013, by the way? The reason for this is because the same installer may produce various variants of names of really the same virus program, depending on the type of the operating system installed on your machine. Hence, this particular rogue that bears the name of Vista Antivirus Plus 2013 specifically targets machines with Windows Vista installed.

While Vista Antivirus Plus 2013 is running on your machine it arranges many fake scans of your system. This is done in order to imitate the traits of some real antivirus program, but this can’t be told of this scam. All warnings, alerts, notifications and reports of this program are fake. The threats and infections it reports about are all invented. They simply don’t even exist on your machine. However, when there are times of real malware attacks, this program will not be effective to protect you from them. Hence, as you see, this application is a totally useless example of programs that must be completely ignored by you!

So, how do we get rid of Vista Antivirus Plus 2013 malware? There are various solutions, in fact. Some prefer to delete it manually, but this is surely a time-consuming process, and it might not be really effective. The best solution is to uninstall Vista Antivirus Plus 2013 hoax automatically using certain proven and powerful security software. Please find our recommended removal instructions below that show how to do it with the help of GridinSoft Trojan Killer.

Vista Antivirus Plus 2013 similar removal video guide:

Vista Antivirus Plus 2013 step-by-step removal instructions from GridinSoft Trojan Killer anti-virus Lab

Step 1.

Run GridinSoft Trojan Killer. Click Win+R and type the direct link for the program’s downloading.

If it does not work, download GridinSoft Trojan Killer from another uninfected machine and transfer it with the help of a flash drive.

Step 2.

Install GridinSoft Trojan Killer. Right click – Run as administrator.

Run as administrator


Don’t uncheck the Start Trojan Killer checkbox at the end of installation!


Manual removal guide of Vista Antivirus Plus 2013 virus:

Delete Vista Antivirus Plus 2013 files:

  • %LocalAppData%\[rnd_2]
  • %Temp%\[rnd_2]
  • %UserProfile%\Templates\[rnd_2]
  • %CommonApplData%\[rnd_2]

Delete Vista Antivirus Plus 2013 registry entries:

  • HKEY_CURRENT_USER\Software\Classes\.exe
  • HKEY_CURRENT_USER\Software\Classes\.exe\ [rnd_0]
  • HKEY_CURRENT_USER\Software\Classes\.exe\Content Type application/x-msdownload
  • HKEY_CURRENT_USER\Software\Classes\.exe\DefaultIcon
  • HKEY_CURRENT_USER\Software\Classes\.exe\DefaultIcon\ %1
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\open
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command\ “[rnd_1].exe” -a “%1″ %*
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command\IsolatedCommand “%1″ %*
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command\ “%1″ %*
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command\IsolatedCommand “%1″ %*
  • HKEY_CURRENT_USER\Software\Classes\[rnd_0]
  • HKEY_CURRENT_USER\Software\Classes\[rnd_0]\ Application
  • HKEY_CURRENT_USER\Software\Classes\[rnd_0]\Content Type application/x-msdownload
  • HKEY_CURRENT_USER\Software\Classes\[rnd_0]\DefaultIcon
  • HKEY_CURRENT_USER\Software\Classes\[rnd_0]\DefaultIcon\ %1
  • HKEY_CURRENT_USER\Software\Classes\[rnd_0]\shell
  • HKEY_CURRENT_USER\Software\Classes\[rnd_0]\shell\open
  • HKEY_CURRENT_USER\Software\Classes\[rnd_0]\shell\open\command
  • HKEY_CURRENT_USER\Software\Classes\[rnd_0]\shell\open\command\ “[rnd_1].exe” -a “%1″ %*
  • HKEY_CURRENT_USER\Software\Classes\[rnd_0]\shell\open\command\IsolatedCommand “%1″ %*
  • HKEY_CURRENT_USER\Software\Classes\[rnd_0]\shell\runas
  • HKEY_CURRENT_USER\Software\Classes\[rnd_0]\shell\runas\command
  • HKEY_CURRENT_USER\Software\Classes\[rnd_0]\shell\runas\command\ “%1″ %*
  • HKEY_CURRENT_USER\Software\Classes\[rnd_0]\shell\runas\command\IsolatedCommand “%1″ %*
(Visited 221 times, 1 visits today)

Related posts:

Leave a Comment


This site uses Akismet to reduce spam. Learn how your comment data is processed.