Uninstall Windows Antivirus Suite (removal instructions)

Windows Antivirus Suite is a fake security software. If you would like to know the whole truth about it, then we can say it quite simply – Windows Antivirus Suite is a virus infection. If you’ve seen this malicious program on your PC you definitely need to take time and read the rest of the story that will help you get rid of this virus from your PC.

There are many hacked websites through which Windows Antivirus Suite malware is actively installed. However, to make its installation process seem as a legitimate one, hackers have invented the method of using fake Microsoft Security Essentials Alerts for its implantation into particular computer. Sos, these fake MSE alerts typically indicate that there is some infection supposedly identified on the PC. As a solution to remove it users are told that they need to download some sort of a utility that will be able to remove these threats. Once user clicks the Download button in this fake Microsoft Security Essentials Alert, this is when the rogue program is actually brought into PC.

Windows Antivirus Suite trojan

Download Combo Cleaner

You must not trust any deceptive statements expressed by Windows Antivirus Suite fake antispyware. This program will run the fake system scan of your PC each time you switch it on. Furthermore, it is even capable of blocking the entire Desktop area of your workstation, without actually letting you use the PC in a regular manner.

Windows Antivirus Suite runs the fake scan of your system and then reports the multitude of fake infections. All of them are presented with the only intention – to make you scared about the condition of your PC and to force you to buy its so-called “licensed” version, also known as “ultimate protection”, which in reality is absolutely good for nothing when it comes to rendering real security services and anti-malware protection for your system.

Windows Antivirus Suite will offer you to buy its license, even though it is quite clear that doing so is the total waste of your time and money, which will probably be never refunded by the crooks. The best decision to which you can and should come to is to get rid of this scam, using the reliable security software. There are many powerful anti-malware tools which can be downloaded online. Some of them are free, such as Malwarebytes, Loaris, Hitman Pro (the last two give the full free 15-day trial period for complete malware removal). This guide below explains removal of Windows Antivirus Suite with the licensed version of GridinSoft Trojan Killer.

Windows Antivirus Suite removal milestones:

  • In Windows Antivirus Suite click “?” Menu button and click “Register“:
  • Register Windows Antivirus Suite virus

  • Paste this product key – 0W000-000B0-00T00-E0022 exactly as shown in the image below, then click “Register“:
  • Windows Antivirus Suite product key

    Note! If this product key has been found to be invalid, try one of these keys as well:

    1. 0W000-000B0-00T00-E0001
    2. 0W000-000B0-00T00-E0002
    3. 0W000-000B0-00T00-E0003
    4. 0W000-000B0-00T00-E0021
  • Afer registration download GridinSoft Trojan Killer, install the program, scan your PC with it and remove all infections detected by clicking “Remove selections” button at the end of scan.
  • Download GridinSoft Trojan Killer
  • Restart your computer and repeat scan.

Video that explains how to activate Windows Antivirus Suite virus:

Associated files and registry entries information

Related files:

%AppData%\svc-[rnd].exe
%CommonAppData%\connector.swf
%Programs%\Windows Antivirus Suite.lnk
%Desktop%\Windows Antivirus Suite.lnk

Related registry entries:

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\PrSft %AppData%\svc-[rnd].exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MSASCui.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MSASCui.exe\Debugger svchost.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MpCmdRun.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MpCmdRun.exe\Debugger svchost.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MpUXSrv.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MpUXSrv.exe\Debugger svchost.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\k9filter.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\k9filter.exe\Debugger svchost.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msconfig.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msconfig.exe\Debugger svchost.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msmpeng.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msmpeng.exe\Debugger svchost.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msseces.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msseces.exe\Debugger svchost.exe

Fake security alerts, notifications and warnings of Windows Antivirus Suite scam:

Firewall has blocked a program from accessing the Internet
C:\Program Files\Internet Explorer\iexplore.exe
is suspected to have infected your PC.
This type of virus intercepts entered data and transmits them
to a remote server.

Error
Trojan activity detected. System integrity at risk.
Full system scan is highly recommended.

Error
System data security is at risk!
To prevent potential PC errors, run a full system scan.