{"id":1214,"date":"2010-12-21T20:26:00","date_gmt":"2010-12-22T01:26:00","guid":{"rendered":"http:\/\/alsplace.info\/virus\/1214\/manually-remove-antivirus-gt\/"},"modified":"2010-12-21T20:26:00","modified_gmt":"2010-12-22T01:26:00","slug":"manually-remove-antivirus-gt","status":"publish","type":"post","link":"http:\/\/alsplace.info\/?p=1214","title":{"rendered":"Manually Remove Antivirus GT"},"content":{"rendered":"\n<!-- ALL ADSENSE ADS DISABLED -->\n<p><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\"><font>Antivirus GT is a rogue antispyware program that is distributed to computers through <em><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\">Win32\/FakeXPA<\/span><\/em> Trojan virus. Once computer is infected, Antivirus GT completely takes over the system. You start receiving tons of fake pop up messages stating about some malicious files detected that may cause security issues to your system.<\/font><\/span><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\"><font>The parasite starts to scan user&rsquo;s PC and displays fictitious scan results. They usually state your system is at high security risk and to prevent more damage you supposedly have to download and purchase its registered version. Do not believe any information it spreads because it is a fraud. malware only gains you to buy illegal program. It is not worth spending your money because it neither has an ability to detect nor remove computer threats therefore it is not being trusted.<\/font><\/span><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\"><a href=\"http:\/\/globalgeeksource.com\/public_html\/wp-content\/uploads\/2010\/09\/ANTIVIRUS-GT.tif\" title=\"ANTIVIRUS GT\"><span style=\"color: blue; text-decoration: none; text-underline: none\"><font><img decoding=\"async\" loading=\"lazy\" class=\"aligncenter size-full wp-image-12178\" src=\"http:\/\/globalgeeksource.com\/public_html\/wp-content\/uploads\/2010\/09\/ANTIVIRUS-GT.tif\" border=\"0\" title=\"ANTIVIRUS GT\" width=\"28\" height=\"30\" \/><\/font><\/span><\/a><br \/> <font><strong><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;; color: red\">Turn off your system restore before you begin this process<\/span><\/strong><\/font><\/span> <\/p>\n<h3 style=\"margin: auto 0in\" align=\"justify\"><span style=\"font-family: &#39;Times&#39;,&#39;serif&#39;\">Manual Antivirus GT removal<\/span><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\"><\/span><\/h3>\n<p> <strong><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\"><font>Stop these Antivirus GT processes:<\/font><\/span><\/strong><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\"><br \/> <font>antivirus GT.exe<br \/> avgt.exe<\/font><\/span><strong><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\"><font>Disable these Antivirus GT DLL files:<\/font><\/span><\/strong><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\"><br \/> <font>MicrosoftExtensions.dll<\/font><\/span><strong><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\"><font>Remove these Antivirus GT Registry Entries:<\/font><\/span><\/strong><strong><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\"><br \/> <\/span><\/strong><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\"><font>HKEY_CURRENT_USER\\Software\\EVA246<br \/> HKEY_CURRENT_USER\\Software\\WinFD<br \/> HKEY_CLASSES_ROOT\\CLSID\\{3304F17F-732C-4AC6-BF67-DBDC8B88C11F}<br \/> HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{3304F17F-732C-4AC6-BF67-DBDC8B88C11F}<br \/> HKEY_CURRENT_USER\\Software\\Microsoft\\Windows\\CurrentVersion\\Run &ldquo;AVGT&rdquo;<br \/> HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Internet Settings\\5.0\\User Agent\\Post Platform &ldquo;WinNT-EVI 05.07.2010&Prime;<\/font><\/span><strong><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\"><font>Remove these Antivirus GT files:<\/font><\/span><\/strong><strong><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\"><br \/> <\/span><\/strong><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\"><font>c:\\Documents and Settings\\All Users\\Start Menu\\AVGT\\<br \/> c:\\Documents and Settings\\All Users\\Start Menu\\AVGT\\AntivirusGT.lnk<br \/> c:\\Documents and Settings\\All Users\\Start Menu\\AVGT\\Uninstall.lnk<br \/> c:\\Program Files\\AVGT\\<br \/> c:\\Program Files\\AVGT\\antivirusGT.exe<br \/> %UserProfile%\\Desktop\\AntivirusGT.lnk<br \/> C:\\Documents and Settings\\[User Name]\\Local Settings\\Temp\\MicrosoftExtensions.dll<\/font><\/span> <\/p>\n<h3 id=\"toc2\" style=\"margin: auto 0in\" align=\"justify\"><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\">Download Antivirus GT Removal Tool 1.0<\/span><\/h3>\n<p> <span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\"><a href=\"http:\/\/www.softpedia.com\/get\/Antivirus\/Removal-Tools\/Antivirus-GT-Removal-Tool.shtml\" target=\"_blank\"><strong><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;; color: black; text-decoration: none; text-underline: none\"><font>Antivirus GT Removal Tool 1.0<\/font><\/span><\/strong><\/a><\/span><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\"><font>Antivirus GT Removal Tool is a small and easy-to-use application designed to delete fake Antivirus GT from your computer. Antivirus GT is a fake antivirus program which intends to make some profit from the user of the infected computer. <a href=\"http:\/\/www.neighborhoodrealtyonline.com\/\">viagra for sale in ireland<\/a>  It is installed to the computer when the user accidentally used a fake online scanner which will produce fake result.<\/font><\/span><span style=\"font-family: &#39;Calibri&#39;,&#39;sans-serif&#39;\"><font>This result will state that the computer is infected and urge you to download and install Antivirus GT. Once installed, it will run automatically when the system boots. However, it does not do what it claims to be. After scanning the computer, it still states that the computer is infected with malware.<\/font><\/span><\/p>\n<!-- Social Bookmarks BEGIN -->\n<div class=\"social_bookmark\">\n<a title=\"Click me to see the sites.\" href=\"#\" onclick=\"$$('div.d1214').each( function(e) { e.visualEffect('slide_down',{duration:2.5}) }); return false;\"><strong><em>Bookmark to:<\/em><\/strong><\/a>\n<br \/>\n<div class=\"d1214\" style=\"overflow:hidden\">\n<br \/>\n<br \/>\n<a style=\"font-size:90%;text-align: right; \" title=\"Click me to hide the sites.\" href=\"#\" onclick=\"$$('div.d1214').each( function(e) { e.visualEffect('slide_up',{duration:0.5}) }); return false;\">Hide Sites<\/a>\n<\/div>\n<\/div>\n<!-- Social Bookmarks END -->\n<script type=\"text\/javascript\">$$('div.d1214').each( function(e) { e.visualEffect('slide_up',{duration:0.5}) }); <\/script>","protected":false},"excerpt":{"rendered":"<p>Antivirus GT is a rogue antispyware program that is distributed to computers through Win32\/FakeXPA Trojan virus. Once computer is infected, Antivirus GT completely takes over the system. You start receiving tons of fake pop up messages stating about some malicious files detected that may cause security issues to your system.The parasite starts to scan user&rsquo;s [&hellip;]<\/p>\n<!-- Social Bookmarks BEGIN -->\n<div class=\"social_bookmark\">\n<a title=\"Click me to see the sites.\" href=\"#\" onclick=\"$$('div.d1214').each( function(e) { e.visualEffect('slide_down',{duration:2.5}) }); return false;\"><strong><em>Bookmark to:<\/em><\/strong><\/a>\n<br \/>\n<div class=\"d1214\" style=\"overflow:hidden\">\n<br \/>\n<br \/>\n<a style=\"font-size:90%;text-align: right; \" title=\"Click me to hide the sites.\" href=\"#\" onclick=\"$$('div.d1214').each( function(e) { e.visualEffect('slide_up',{duration:0.5}) }); return false;\">Hide Sites<\/a>\n<\/div>\n<\/div>\n<!-- Social Bookmarks END -->\n<script type=\"text\/javascript\">$$('div.d1214').each( function(e) { e.visualEffect('slide_up',{duration:0.5}) }); <\/script>","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[16],"tags":[],"_links":{"self":[{"href":"http:\/\/alsplace.info\/index.php?rest_route=\/wp\/v2\/posts\/1214"}],"collection":[{"href":"http:\/\/alsplace.info\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/alsplace.info\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/alsplace.info\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"http:\/\/alsplace.info\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=1214"}],"version-history":[{"count":0,"href":"http:\/\/alsplace.info\/index.php?rest_route=\/wp\/v2\/posts\/1214\/revisions"}],"wp:attachment":[{"href":"http:\/\/alsplace.info\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=1214"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/alsplace.info\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=1214"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/alsplace.info\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=1214"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}