Sunday, 14 July 2013

What is MyPC Backup.exe and how to remove it?

MyPC Backup.exe - Cloud backup software by MyPCBackup LTD.


What is MyPC Backup.exe?


MyPC Backup.exe is the main executable file of a small Desktop application called MyPC Backup. This application is created by MyPCBackup LTD and digitally signed by JDI BACKUP LIMITED. It allows you to backup all of your computer files to the cloud. So, it's basically, just another cloud storage service. MyPC Backup.exe isn't malicious but since it comes bundled with adware and PUPs, most users think it's malware. Besides, it displays rather annoying pop up notifications every few hours in the right hand lower corner reminding you that your files are not backed up (see the image below). "Reminder: Your computer is not backed up, Backup Your Files Online Today". MyPC Backup.exe runs automatically each time Windows starts. Needless to say, it's not essential for Windows and may cause problems. Besides, if you are getting MyPCBackup.exe notifications then there's a good chance that your computer is infected with adware and potentially unwanted software. Especially, if you didn't install MyPCBackup yourself. It probably came bundled with adware. I recommend you to remove MyPC Backup.exe and from your computer and run a full system scan with recommend anti-malware software.







File name: MyPC Backup.exe
Publisher: MyPCBackup LTD
File Location Windows XP: C:\Program Files\mypc backup\mypc backup.exe
File Location Windows 7: C:\Program Files\mypc backup\mypc backup.exe
Startup file: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run 'MyPC Backup'

lnksr.com Removal Guide

In this article we’re going to take a look at lnksr.com, what impact it can have on you and your computer, how it gets on to your computer, how you can protect yourself against it and finally, how to remove it.

'lnksr.com' pop up usually comes bundled with adware and potentially unwanted web browser add-ons. As you may know, adware is short for advertising supported software and it is the name given to software programs that have been designed to display advertisements on your computer. Sounds pretty harmless doesn’t it, after all we are surrounded by advertising in every shape and form almost every waking minute of our lives but there is a little more to adware than simply trying to get you to buy stuff: it can monopolize your PC, it can seriously affect the time you spend on the internet – oh and it spies on you too! Some people say lnksr is a redirect malware, while others say it's a virus. Neither of these is correct. If those annoying pop ups come up all the time then your computer is infected with adware. By the way, the website itself isn't malicious. It's a simple site that redirects users to certain advertising networks. However, as you probably already noticed, those pop up ads are kind misleading, so after all they may pose security risks.

And as for the spying, well adware is extremely busy once it’s been installed on your computer and it wastes no time collecting data about you – this is mainly the types of websites that you visit – so that marketing companies who use adware can send you customized adverts that are tailored to your interests. And you won’t just see the odd one or two adverts for the latest DVD releases if you happen to be browsing your favorite movie review website, oh no – adware will literally bombard you with so many pop-up windows and banners that you’ll be tearing your hair out. And despite the customized advertising, you’ll also be getting adverts for weight loss drugs, dubious diets, gambling websites, oh yes, and our old friends, the X rated adult websites too. Annoying and potentially quite embarrassing, depending on your circumstances. So, I guess it would be a good idea to get rid of lnksr.com po pups because you never know when you get another one, potentially embarrassing.

What is more, behind the scenes adware that displays lnksr.com pop ups is collecting personal information about you. And it is due to this that you will probably find that your computer is running way slower than it normally does. This is because the adware is beavering away and constantly ‘calling home’ to relay its findings about you.

It doesn’t usually let you know that it’s installed on your computer – there will be no notifications, signs of the program or any indication that it is on your machine.

Where did it come from? Very often, lnksr.com comes packaged with a freeware or shareware program – music or an online game for example - as this is seen as a way of generating advertising income that will help pay for subsequent development and distribution of the freeware or shareware. However, even if you have the misfortune of visiting an infected website by accident, you can end up with adware installed on your PC.

In the majority of cases lnksr.com is tricky to uninstall – naturally the creators like to make it as hard as possible for you to get rid of their software! Even though it is not classed as a virus, the technology that is used during its programming and coding isn’t that different to the way viruses are created and just like a virus, adware too can infiltrate your computer and run surreptitiously.

The best thing you can do to protect against falling prey to lnksr redirect is to install anti-malware and anti-virus software on to your computer. It is always a good idea to have more than one security software program active on your machine as different software can detect different strains of malware so the more you have installed, the more bases you have covered. I mean not two antivirus products, but a combination of anti-virus and anti-malware.

If you have been infected with adware that displays lnksr.com pop ups , run recommended anti-malware software, it should be able to pick up and delete lnksr right away. If you have any questions, please leave a comment below. Good luck and be safe online!


Written by Michael Kaur, http://deletemalware.blogspot.com


lnksr.com removal instructions:

1. First of all, download recommended anti-malware software and run a full system scan. It will detect and remove this adware infection from your computer. You may then follow the manual removal instructions below to remove the leftover traces of this adware. Hopefully you won't have to do that that.





2. Remove lnksr.com related programs from your computer using the Add/Remove Programs control panel (Windows XP) or Uninstall a program control panel (Windows 7 and Windows 8).

Go to the Start Menu. Select Control PanelAdd/Remove Programs.
If you are using Windows Vista or Windows 7, select Control PanelUninstall a Program.



If you are using Windows 8, simply drag your mouse pointer to the right edge of the screen, select Search from the list and search for "control panel".



Or you can right-click on a bottom left hot corner (formerly known as the Start button) and select Control panel from there.



3. When the Add/Remove Programs or the Uninstall a Program screen is displayed, scroll through the list of currently installed programs and remove the following:
  • SeeSimilar
  • SuperLyrics
  • LyricsContainer
  • Wajam
  • Webcake
  • HD-Video
  • Coupon Server
  • and any other recently installed application


Simply select each application and click Remove. If you are using Windows Vista, Windows 7 or Windows 8, click Uninstall up near the top of that window. When you're done, please close the Control Panel screen.


Remove lnksr.com pop-ups from Google Chrome:

1. Click on Chrome menu button. Go to ToolsExtensions.



2. Click on the trashcan icon to remove the following extensions: (Click to enlarge image)




Remove lnksr.com pop-ups from Mozilla Firefox:

1. Open Mozilla Firefox. Go to ToolsAdd-ons.



2. Select Extensions. Click Remove button to the following extensions. If you can't find the Remove button, then simply click on the Disable button.




Remove lnksr.com pop-ups from Internet Explorer:

1. Open Internet Explorer. Go to ToolsManage Add-ons. If you have the latest version, simply click on the Settings button.



2. Select Toolbars and Extensions. Click Remove/Disable button to remove the browser add-ons listed above.

Saturday, 13 July 2013

What is BrowserDefender.exe and how to remove it?

BrowserDefender.exe - Application Manager by PerformerSoft LLC


What is BrowserDefender.exe?


BrowserDefender.exe is an application manager created by PerformerSoft LLC. It is typically bundled with adware and potentially unwanted software. As the name suggests, this application is designed to keep your web browser safe from default search engine and home page hijacking. It may also block any attempts to install additional extensions, even though all the preferences can be changed at any time. Some people may think it's a useful utility but it's not. While it blocks third party browser hijackers, this application manager also blocks Google or Bing search providers. In other words, you may not be able to change your default search engine or home page. As a matter of fact, most users who installed BrowserDefender.exe on their computer though it was an actual virus. What is more, multiple anti-virus scanners have detected possible malware in this application. Besides, most PerformerSoft LLC products have some sort of spyware modules that may track your browsing habits. Needless to say, it's not essential for Windows and may cause problems. I recommend you to remove BrowserDefender.exe from your computer.







File name: BrowserDefender.exe
Publisher: PerformerSoft LLC
File Location Windows XP: C:\Documents and Settings\All Users\Application Data\BrowserDefender\2.6.1339.144\[custom]\BrowserDefender.exe
File Location Windows 7: C:\ProgramData\BrowserDefender\2.6.1339.144\[custom]\BrowserDefender.exe
Startup file: HKLM\System\CurrentControlSet\Services\BrowserDefendert

Remove "Antivirus System" malware, removal instructions

In this article we’re going to take a look at a new rogue security program called "Antivirus System" and what effect it can have on your computer. If your computer is infected with this malware, please follow the removal instructions below.

Antivirus System is a form of malicious software and is a type of internet fraud that manipulates you into paying money to have your computer scanned for viruses which it will then claim to delete. The thing with this rogue security software is that not only is it not checking your computer for viruses or dangerous malware – it is actually installing them on your computer instead! There was a rogue antivirus program with the same name two years ago. It was called Antivirus System 2011 and it belonged to completely different malware family than then current one - Antivirus System 2013.


For the main part Antivirus System malware relies on social engineering and it will find its way on to your computer by finding a loop hole in your PC’s security system. One way of doing this is by telling you via a pop-up message that your computer has been infected with a virus, or is running extremely slowly and it will attempt to convince you to buy and install its ‘anti-virus software’ – which of course is fake. This is also known as scareware – a name which is pretty self-explanatory!

The majority of these scareware have a Trojan horse component. Other ways the Trojan horse may sneak its way onto your computer is via software that has been shared on a peer-to-peer file sharing website or through an online malicious software scanning service.

There are others rogue security software programs that are ‘drive-by downloads’ which means that they have installed themselves on your computer by way of a web browser, PDF viewer or through an email client. Again, the malware finds and exploits holes in their security.

The distributors of malicious software jumped on the SEO bandwagon by using illegitimate methods to ensure that their malicious links appear at the top of the page when someone searches for a certain topic. These URLs will be infected and the unlucky user who clicks on them will be directed to a website and then told that their computer is infected. It is then that the "Antivirus System" makers will push a trial of their product and try and get you to click on it and thus install their malware.

When you’ve installed the malware the ever-so-helpful rogue security software will normally then try and tempt you into purchasing the ‘full’ version of their program or other software that you ‘need’. They will usually do this by telling you your computer is seriously infected with malware (the irony!) or that you have illegal adult content stored on your PC. They might also show you an animated screen which simulates your system crashing. What is more, it will block pretty much everything on your computer, including web browsers and anti-malware software of course. It stays active in Safe Mode too.

Antivirus System Firewall Alert
chrome.exe is infected with Trojan-Clicker.JS.Agent.op


Another fake security alert claiming that your computer is infected with Trojan.JS.Fraud.ba.


Antivirus System purchase page. I have to admit that this time cyber crooks made a really good looking payment page. They even added CNET, AV-Test logos and mentioned that Softpedia, Chip.de and commentcamarche.net rated "Antivirus System" as a full 5-start "Excellent" software download.


So how can you prevent Antivirus System malware from infecting your computer and conning you out of your hard earned cash? Number one; install a reputable genuine anti-malware software program on your PC and ensure it runs regularly. This is the best defense you can have against all types of malware.

It is also wise to be as vigilant as possible when using your computer so familiarize yourself with your anti-virus software provider’s name, logo and the look of their pop-ups so that in the event you do get a pop up box you’ll know whether it’s from your genuine provider or from an imposter.

To remove Antivirus System from your computer, please follow the removal instructions below. After successful removal you will probably have to fix certain system files because this malware usually messes with Windows files pretty badly. But don't worry everything can be fix rather easily using the right tool. If you have any questions, please leave a comment below. Good luck and be safe online!

Written by Michael Kaur, http://deletemalware.blogspot.com


Method 1: Antivirus System removal instructions in Safe Mode with Networking:

1. Please reboot your computer is "Safe Mode with Networking". As the computer is booting tap the "F8 key" continuously which should bring up the "Windows Advanced Options Menu" as shown below. Use your arrow keys to move to "Safe Mode with Networking" and press Enter key.


NOTE: Login as the same user you were previously logged in with in the normal Windows mode.

2. Then download recommended anti-malware software (direct download) and run a full system scan to remove the rogue program from your computer.


Method 2: Manual Antivirus System malware removal instructions:

Make sure that you can see hidden and operating system protected files in Windows. For more in formation, please read Show Hidden Files and Folders in Windows.

Under the Hidden files and folders section, click Show hidden files and folders, and remove the checkmarks from the checkboxes labeled:
  • Hide extensions for know file types
  • Hide protected operating system files
Click OK to save the changes.


1. Right click on the "Antivirus System" icon, click Properties in the drop-down menu, then click the Shortcut tab.



In the Target box there is a path to the malicious file. You can simply click the Target button to open the target folder.



In my case the malicious file was located in: C:\Documents and Settings\All Users\Application Data\pavsdata folder.

2. The malicious file was called 21.4.exe, but I'm sure that the file name will be different in your case.



Rename 21.4.exe to virus.exe and click Yes to confirm file rename. Restart your computer!



3. After a restart, copy all the text in bold below and paste to Notepad.

Windows Registry Editor Version 5.00

[HKEY_CLASSES_ROOT\.exe]
@="exefile"
"Content Type"="application/x-msdownload"

4. Save file as fix.reg to your Desktop. NOTE: (Save as type: All files)


5. Double-click on fix.reg file to run it. Click "Yes" for Registry Editor prompt window. Then click OK.

6. Open your web browser. Download FixExec utility an run it.

7. Download recommended anti-malware software (direct download) and run a full system scan to fully remove this malware from your computer.

Tuesday, 9 July 2013

Remove secure.trusted-serving.com, removal instructions

Secure.trusted-serving.com is not technically speaking a computer virus although it does have slightly more up its sleeve than just showing you adverts. Taken by themselves, the adverts alone are an incredible nuisance – you will literally be bombarded with them and will seemingly spend 90% of your time online clicking the little ‘x’ box in the corner of pop-up windows to close them. Not only that but some people may find the advert content offensive: the majority of ads will be for gambling, dubious weight loss pills, potions and ‘miracle’ diets and even for Asian dating sites; some of which contain extremely graphic material.

But it’s not just adverts that you have to worry about as having adware installed on your computer can also slow your internet connection down considerably and in addition to that make your PC run much slower than normal – another real pain in the behind. This is because the secure.trusted-serving.com has been programmed to constantly ‘dial home’ so that it can send back reports about your browsing habits and which websites you visit. Yes, that’s right – those pesky little pop-up adverts are not just annoying – they’re spying on you too! They monitor your computer usage and then send the data back to ad servers via your own internet connection. This is so that the marketing companies who use adware can then tailor subsequent adverts to your apparent tastes and habits in order to make you click through to their site. This continuous to-ing and fro-ing of data is exactly why your PC will be performing its regular tasks at a fraction of the speed that it normally does.


Furthermore, once infected with this adware, you may notice that back/forward buttons are not working properly. When ever you will click back it will flash and say "http://secure.trusted-serving.com/serve" two or more times. It may even froze your web browser window.

Now let’s take a look at how secure.trusted-serving.com infiltrated your PC in the first place. It is normally bundled with popular freeware applications – this is how the authors of these applications get paid for their work. A marketing company will pay the author of the software to include the adware on these applications so they can target users more specifically.

Put simply, if you download programs or software from the internet you are at risk of also, unwittingly, downloading adware and installing it on your machine. Adware that displays secure.trusted-serving.com/serve pop-ups may be hidden in a music file sharing program, those free games that you see on certain websites or you may have just been misfortunate enough to have visited a website that triggers adware without you knowing it.

It stands to reason that you want to avoid the scourge of adware but how can you protect both your sanity and your PC from it? Firstly you should get into the habit of scanning your computer on a regular basis for threats that are not counted as viruses: such as adware and any of the other types of malware that are lurking out there - spyware for example or Trojan horses.

Secondly, don’t download free shareware unless you’re absolutely sure that you want it – and that you know that you may have to be prepared to then go to the trouble of removing secure.trusted-serving.com from your PC. To remove adware and PUPs that are causing these annoying redirects, please follow the removal instructions below.

Written by Michael Kaur, http://deletemalware.blogspot.com


secure.trusted-serving.com removal instructions:

1. First of all, download recommended anti-malware software and run a full system scan. It will detect and remove this adware infection from your computer. You may then follow the manual removal instructions below to remove the leftover traces of this adware. Hopefully you won't have to do that.





2. Remove secure.trusted-serving.com related programs from your computer using the Add/Remove Programs control panel (Windows XP) or Uninstall a program control panel (Windows 7 and Windows 8).

Go to the Start Menu. Select Control PanelAdd/Remove Programs.
If you are using Windows Vista or Windows 7, select Control PanelUninstall a Program.



If you are using Windows 8, simply drag your mouse pointer to the right edge of the screen, select Search from the list and search for "control panel".



Or you can right-click on a bottom left hot corner (formerly known as the Start button) and select Control panel from there.



3. When the Add/Remove Programs or the Uninstall a Program screen is displayed, scroll through the list of currently installed programs and remove the following:
  • SingAlong
  • FindLyrics
  • LessTabs
  • DefaultTab
  • Webcake
  • and any other recently installed application


Simply select each application and click Remove. If you are using Windows Vista, Windows 7 or Windows 8, click Uninstall up near the top of that window. When you're done, please close the Control Panel screen.


Remove secure.trusted-serving.com pop-ups from Google Chrome:

1. Click on Chrome menu button. Go to ToolsExtensions.



2. Click on the trashcan icon to remove the following extensions:





Remove secure.trusted-serving.com pop-ups from Mozilla Firefox:

1. Open Mozilla Firefox. Go to ToolsAdd-ons.



2. Select Extensions. Click Remove button to the following extensions. If you can't find the Remove button, then simply click on the Disable button.




Remove secure.trusted-serving.com pop-ups from Internet Explorer:

1. Open Internet Explorer. Go to ToolsManage Add-ons. If you have the latest version, simply click on the Settings button.



2. Select Toolbars and Extensions. Click Remove/Disable button to remove the browser add-ons listed above.

Remove buildathome.info, removal instructions

There are many forms of malicious software but no two malwares are alike and the number of threats to our computers is wide and varied. Even within the same type of malware there can be many different strains – and some of them are worse than others. One of the most annoying problems in recent times is the increasing amount of adware that unscrupulous third parties are installing on your PC – often without your permission and usually without your knowledge. And if you're having problems with buildathome.info pop-ups and embarrassing ads, then your computer is almost certainly infected with adware or PUP (potentially unwanted program.

So what is buildathome.info and why can it cause your computer to embark upon a go-slow? Let’s take a look at the basics. It serves advertisements, that's all. The web page itself isn't malicious but it may redirect you to misleading or malicious website if you click on infected ads. What is more, some ads can be truly embarrassing, for example "Like Asian Women?" dating ads. So, even though the web page isn't malicious it may cause serious problems both malware and social. Besides, it's a clear sign that your computer is infected; otherwise you won't see embarrassing ads. Adware that causes those pop ups, for example "Coupon Companion", will either be running in the background on your computer or working as a plug-in on your web browser. What is more, this adware monitors your computer usage; what websites you visit and so forth, and then uses this knowledge to compile a personal profile on you. Sounds a little scary doesn’t it, but what adware is doing is collecting information about you so that the company behind it can tailor make their advertising especially for you. How thoughtful of them!


But how does this tie in with your computer running like it was manufactured in 1984? Well programs like Coupon Companion can use up a lot of your computer system’s resources which in turn makes your machine super slow as it struggles to handle all the added extras it’s suddenly had installed on it. Adware can also be responsible for inexplicable errors such as your browser or programs crashing all the time.

Buildathome.info is not a virus as such but it can be incredibly annoying and even, in the worst case scenarios, just as dangerous. The problem is that not an awful lot of PC users know much about adware, what it is, what it does and why their computer has suddenly become a real pain to use. It is even more problematic if you use a dial-up modem as adware will keep your modem so preoccupied downloading adverts that it won’t have time to even think about you and the websites you might want to visit!

So why should you care about having adware installed on your computer? Well apart from being a nightmare to use, wasting your time with its excruciatingly slow operating speed and constant crashes, as mentioned, adware’s purpose in life, or rather the people behind the adware, is to target you with so-called ‘relevant’ adverts. These take the form of pop-up windows which in themselves are annoying but it is the consistency with which you are bombarded with them that can cause the real frustration. A lot of the time the ‘targeting’ goes out the window too and as well as seeing adverts that may be loosely related to a website you visit on a frequent basis, say gardening products, you’ll also be inundated with ads of a more unsavory nature such as for gambling websites, dodgy weight loss methods and yes, even adult content websites – some of them containing highly suspicious material.

So how does buildathome.info find its way onto your computer? Well, parents listen up because if you have children you may well find that they are the (unwitting) culprits. A lot of adware comes packaged with those innocent looking freebie games that you download or play on the internet. This isn’t the only way it can be installed though; downloading peer to peer files, clicking on links in spam email and even downloading reputable software can all leave you with adware installed on your machine.

What if you’re not sure if you have it installed on your computer? It is actually quite easy to tell if you have unknowingly downloaded something containing buildathome.info and if you experience any of the following then you may well have a problem:
  • Lots of annoying pop-up adverts (especially ones of a dubious nature)
  • Your browser redirects you to a website of its own choosing and not the one you tried to visit
  • Your browser keeps changing your starting home page or search engine to one you’ve never seen or used before
  • Your computer is running much more slowly than before, keeps crashing or freezing or experiences other ‘weird’ issues
Unfortunately removing buildathome.info from your computer is easier said than done, after all the creators of malware have a reason for wanting you to keep it installed on your PC for as long as possible, and with this in mind they have also made it as difficult as possible to remove them by manually deleting them. In order to get rid of this nuisance, please follow the removal guide below. If you have any questions, please leave a comment below. Good luck and be safe online!

Written by Michael Kaur, http://deletemalware.blogspot.com


buildathome.info removal instructions:

1. First of all, download recommended anti-malware software and run a full system scan. It will detect and remove this adware infection from your computer. You may then follow the manual removal instructions below to remove the leftover traces of this adware. Hopefully you won't have to do that.





2. Remove buildathome.info related programs from your computer using the Add/Remove Programs control panel (Windows XP) or Uninstall a program control panel (Windows 7 and Windows 8).

Go to the Start Menu. Select Control PanelAdd/Remove Programs.
If you are using Windows Vista or Windows 7, select Control PanelUninstall a Program.



If you are using Windows 8, simply drag your mouse pointer to the right edge of the screen, select Search from the list and search for "control panel".



Or you can right-click on a bottom left hot corner (formerly known as the Start button) and select Control panel from there.



3. When the Add/Remove Programs or the Uninstall a Program screen is displayed, scroll through the list of currently installed programs and remove the following:
  • Coupon Companion
  • FindLyrics
  • Sweetpacks
  • DefaultTab
  • Webcake
  • and any other recently installed application


Simply select each application and click Remove. If you are using Windows Vista, Windows 7 or Windows 8, click Uninstall up near the top of that window. When you're done, please close the Control Panel screen.


Remove buildathome.info pop-ups from Google Chrome:

1. Click on Chrome menu button. Go to ToolsExtensions.



2. Click on the trashcan icon to remove the following extensions:





Remove buildathome.info pop-ups from Mozilla Firefox:

1. Open Mozilla Firefox. Go to ToolsAdd-ons.



2. Select Extensions. Click Remove button to the following extensions. If you can't find the Remove button, then simply click on the Disable button.




Remove buildathome.info pop-ups from Internet Explorer:

1. Open Internet Explorer. Go to ToolsManage Add-ons. If you have the latest version, simply click on the Settings button.



2. Select Toolbars and Extensions. Click Remove/Disable button to remove the browser add-ons listed above.