Windows Defence Counsel. How can it be removed?

Windows Defence Counsel is a new virus that can fool you into the purchasing of its malicious product. Do not believe anything it shows you and provides you with. It will try to convince you that our system is infected with some malwares and for the successful cleaning you should buy its product. That is the catch of Windows Defence Counsel virus. Because if you do the purchase you will get nothing but lost time and money. And the virus will achieve its goal. Just be very careful inside the web. There are a lot of pop-ups and different system messages. Ignore everything. Do not let the virus fool you in such way.

If you think that this is not so dangerous program you are wrong; the virus can’t be good, it can do a lot of bad things to your files and folders. You will not have the possibility to work with your system as earlier until the virus is in it. If you have already caught the virus into your machine we would recommend you to remove the virus with the help of our anti-spyware program GridinSoft Trojan Killer. This is the program you can really count on. Just download the program here below, isntall and run it and the virus will be eliminated in several minutes.

Windows Defence Counsel automatic remover:

Similar video guide at our Youtube channel:

Windows Defence Counsel manual remover:

Delete Windows Defence Counsel files:
%AppData%\NPSWF32.dll
%AppData%\Protector-[rnd].exe
%AppData%\result.db
Delete Windows Defence Counsel registry entries:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Inspector %AppData%\Protector-[rnd].exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnHTTPSToHTTPRedirect 0
HKCU\Software\Microsoft\Windows\CurrentVersion\Settings\ID 4
HKCU\Software\Microsoft\Windows\CurrentVersion\Settings\UID [rnd]
HKCU\Software\Microsoft\Windows\CurrentVersion\Settings\net [date of installation]
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ConsentPromptBehaviorAdmin 0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ConsentPromptBehaviorUser 0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\EnableLUA 0
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AAWTray.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AAWTray.exe\Debugger svchost.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVCare.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVCare.exe\Debugger svchost.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVENGINE.EXE
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVENGINE.EXE\Debugger svchost.exe

Leave a Comment

*