Something called “Personal Antivirus” downloaded itself & says it’s a Trojan, what do I do?
Question by k_a_s: Something called “Personal Antivirus” downloaded itself & says it’s a Trojan, what do I do?
All of a sudden, my laptop says that I have something called “Personal Antivirus.” It is telling me that it is a Trojan and every few seconds a small box pops up saying that it can attack our files. I have Norton Antivirus and I was wondering how much of a threat this is and how to take care of it. Will it ruin my computer? Please help.
Best answer:
Answer by Ed G
If Norton won’t remove it is safe mode. Then follow these instructions. But norton should be able to remove it in safe mode.
http://www.myantispyware.com/2009/03/18/how-to-remove-personal-antivirus-uninstall-instructions/
Add your own answer in the comments!
![Recommend [phil67: phil67]](http://s3.amazonaws.com/arkayne-media/img/badge/logo-recommend-badge-medium.png)
Your joking right?No, really….Norton has only a detection reate of around 12%, tht means Norton will ony detect 12% of viruse on your computer, so switch to another anti virus, heres a giant list of them, and they are all free, yes FREE ANTIVIRUS with a HIGER DETECTION RATE THAN NORTON
1) AVG 8 AntiVirus. Easiest interface to use, very fast scanning and doesn’t lag your computer at all. Only has a 76% detection rate, but catches the most harmful of viruses. If you’re a normal home user, you’re not in too much danger of higher level viruses and this is the AV for you:
http://www.free.grisoft.com
2) Avast! 4 AntiVirus. Smaller, sleeker skin, average scanning speed, but reports alot of safe files as viruses, so you might need to watch out for that. 78% detection rate, but alot more complicated than most other free AVs. Use this if you are handy with a computer and you know what needs to be scanned:
http://www.avast.com/eng/avast_4_home.ht...
3) Avira AntiVirus. Simple layout, which even the most basic of users can navigate. Incredibly fast scanning, with a 90% detection rate. Not as easy on the eyes as other AVs, and you need to know what you’re doing to get the more advanced features, but it is definite a candidate:
http://www.free-av.com/en/download/index...
Personally I use AVG, but only because I go for the easier interface. If you are paranoid about viruses then the only real option is Avira. But if you just want normal protection, then any of the three will do it for you.
For any spyware problems, get SpyBot – Search and Destroy:
http://www.safer-networking.org/en/mirro...
And for protecting your computer for malware or tracking cookies, use Ad-Aware 2008 Free Edition:
http://lavasoft.com/products/ad_aware_fr...
And just a foot note, You may want to Scan in safe mode, which you do by pressing f8 while your computer is booting.
Personal Antivirus Manual Removal Steps :–
We need to delete some dll files, processes and registry entries to get rid off Personal Antivirus. These are the following files that associated with Personal Antivirus infection :–
c:Documents and SettingsAll UsersDesktopPersonal Antivirus.lnk
c:Documents and SettingsAll UsersStart MenuProgramsPersonal Antivirus
c:Documents and SettingsAll UsersStart MenuProgramsPersonal AntivirusPersonal Antivirus Home Page.lnk
c:Documents and SettingsAll UsersStart MenuProgramsPersonal AntivirusPersonal Antivirus.lnk
c:Documents and SettingsAll UsersStart MenuProgramsPersonal AntivirusPurchase License.lnk
%UserProfile%Application DataMicrosoftInternet ExplorerQuick LaunchPersonal Antivirus.lnk
%UserProfile%Application DataPersonal Antivirus
%UserProfile%Application DataPersonal Antivirussettings.ini
%UserProfile%Application DataPersonal Antivirusuill.ini
%UserProfile%Application DataPersonal Antivirusunins000.exe
%UserProfile%Application DataPersonal AntivirusUninstall Personal Antivirus.lnk
%UserProfile%Application DataPersonal Antivirusdb
%UserProfile%Application DataPersonal Antivirusdbconfig.cfg
%UserProfile%Application DataPersonal AntivirusdbTimeout.inf
%UserProfile%Application DataPersonal AntivirusdbUrls.inf
%UserProfile%Local SettingsApplication DataMicrosoftWindowslog.txt
%UserProfile%Local SettingsApplication DataMicrosoftWindowspguard.ini
%UserProfile%Local SettingsApplication DataMicrosoftWindowsservices.exe
c:Program FilesPersonal Antivirus
c:Program FilesPersonal Antivirusactivate.ico
c:Program FilesPersonal AntivirusExplorer.ico
c:Program FilesPersonal AntivirusPerAvir.exe
c:Program FilesPersonal Antivirusunins000.dat
c:Program FilesPersonal Antivirusuninstall.ico
c:Program FilesPersonal Antivirusworking.log
c:Program FilesPersonal Antivirusdb
c:Program FilesPersonal AntivirusdbDBInfo.ver
c:Program FilesPersonal Antivirusdbia080614.db
c:Program FilesPersonal Antivirusdbia080618x.db
c:Program FilesPersonal AntivirusLanguages
c:Program FilesPersonal AntivirusLanguagesIAEs.lng
c:Program FilesPersonal AntivirusLanguagesIAFr.lng
c:Program FilesPersonal AntivirusLanguagesIAGer.lng
c:Program FilesPersonal AntivirusLanguagesIAIt.lng
c:WINDOWSsystem32log.txt
%UserProfile%Application DataMicrosoftWindowswinlogon.exe
%UserProfile%Local SettingsApplication DataMicrosoftInternet ExploreriGSh.png
%UserProfile%Local SettingsApplication DataMicrosoftInternet ExploreriMSh.png
%UserProfile%Local SettingsApplication DataMicrosoftInternet ExploreriPSh.png
%UserProfile%Local SettingsApplication DataMicrosoftInternet Exploreriv.exe
%UserProfile%Local SettingsApplication DataMicrosoftWindowslog.txt
%UserProfile%Local SettingsApplication DataMicrosoftWindowspguard.ini
%UserProfile%Local SettingsApplication DataMicrosoftWindowsservices.exe
These are the following registry entries that we have to kill to get rid off Personal Antivirus :–
1. HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionUninstallPersonal Antivirus_is1
2. HKEY_LOCAL_MACHINESYSTEMCurrentControlSetEnumRootLEGACY_ITGRDENGINE
3. HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesITGrdEngine
4. HKEY_CURRENT_USERSoftwareMicrosoftInternet Explorer “PrS”
5. HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun “Personal Antivirus”"
Personal Antivirus Automated Removal Steps :–
We should follow these troubleshooting steps to get rid off Personal Antivirus :–
1. We should delete all the Internet temporary files like temp, %temp% and prefetch files.
2. Scan computer using any updated antivirus program.
3. We should install and download the “Antimalwarebytes” (freely available).
4. We should update “Antimalwarebytes”.
5. Scan computer using the “Antimalwarebytes”.
6. We should follow the same procedure for “Superantispyware” as we have done for “Antimalwarebytes” (Safe Mode).
You can remove personal antivirus software from your computer by delteing these files and registry entires from your computer , by following these steps .
%Documents and Settings%All UsersDesktopPersonal Antivirus.lnk
%Documents and Settings%All UsersStart MenuProgramsPersonal Antivirus
%Documents and Settings%All UsersStart MenuProgramsPersonal AntivirusPersonal Antivirus Home Page.lnk
%Documents and Settings%All UsersStart MenuProgramsPersonal AntivirusPersonal Antivirus.lnk
%Documents and Settings%All UsersStart MenuProgramsPersonal AntivirusPurchase License.lnk
%UserProfile%Application DataMicrosoftInternet ExplorerQuick LaunchPersonal Antivirus.lnk
%UserProfile%Application DataPersonal Antivirus
%UserProfile%Application DataPersonal Antivirussettings.ini
%UserProfile%Application DataPersonal Antivirusuill.ini
%UserProfile%Application DataPersonal Antivirusunins000.exe
%UserProfile%Application DataPersonal AntivirusUninstall Personal Antivirus.lnk
%UserProfile%Application DataPersonal Antivirusdb
%UserProfile%Application DataPersonal Antivirusdbconfig.cfg
%UserProfile%Application DataPersonal AntivirusdbTimeout.inf
%UserProfile%Application DataPersonal AntivirusdbUrls.inf
%UserProfile%Local SettingsApplication DataMicrosoftWindowslog.txt
%UserProfile%Local SettingsApplication DataMicrosoftWindowspguard.ini
%UserProfile%Local SettingsApplication DataMicrosoftWindowsservices.exe
%Program Files%Personal Antivirus
%Program Files%Personal Antivirusactivate.ico
%Program Files%Personal AntivirusExplorer.ico
%Program Files%Personal AntivirusPerAvir.exe
%Program Files%Personal Antivirusunins000.dat
%Program Files%Personal Antivirusuninstall.ico
%Program Files%Personal Antivirusworking.log
%Program Files%Personal Antivirusdb
%Program Files%Personal AntivirusdbDBInfo.ver
%Program Files%Personal Antivirusdbia080614.db
%Program Files%Personal Antivirusdbia080618x.db
%Program Files%Personal AntivirusLanguages
%Program Files%Personal AntivirusLanguagesIAEs.lng
%Program Files%Personal AntivirusLanguagesIAFr.lng
%Program Files%Personal AntivirusLanguagesIAGer.lng
%Program Files%Personal AntivirusLanguagesIAIt.lng
%WINDOWS%system32log.txt
%UserProfile%Application DataMicrosoftWindowswinlogon.exe
%UserProfile%Local SettingsApplication DataMicrosoftInternet ExploreriGSh.png
%UserProfile%Local SettingsApplication DataMicrosoftInternet ExploreriMSh.png
%UserProfile%Local SettingsApplication DataMicrosoftInternet ExploreriPSh.png
%UserProfile%Local SettingsApplication DataMicrosoftInternet Exploreriv.exe
%UserProfile%Local SettingsApplication DataMicrosoftWindowslog.txt
%UserProfile%Local SettingsApplication DataMicrosoftWindowspguard.ini
%UserProfile%Local SettingsApplication DataMicrosoftWindowsservices.exe
The registry entries that need to be removed are as follows:
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionUninstallPersonal Antivirus_is1
HKEY_LOCAL_MACHINESYSTEMCurrentControlSetEnumRootLEGACY_ITGRDENGINE
HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicesITGrdEngine
HKEY_CURRENT_USERSoftwareMicrosoftInternet Explorer “PrS”
HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun “Personal Antivirus”
Yes you have a Rogue antispyware program Personal Antivirus in your system.
To get rid of it:
You need a program called Spyhunter. Download it here: http://www.pcthreat.com/parasitebyid-7813en.html
There are full instructions if you get stuck getting rid of it
Install and run Spyhunter and then your be fine.
Make sure you have an up-to-date antivirus installed, such as AVG Free Edition at:
http://www.download.com/AVG-Anti-Virus-F...