What is Live PC Care?
Live PC Care is a rogue
anti-spyware software application that is known to be part of the
same family of misleading security tools as Additional Guard, System
Defender and Enterprise Suite. Live PC Care is promoted with the use
of Trojans, fake browser based security scanners and exploits that
facilitate the unsolicited install of this application.
What Does Live PC Care do?
Once installed, Live PC
Care will create several custom files on the PC, files that will
later be detected and reported by the same program that has created
them as malicious.
For this reason, Live PC
Care reports exaggerated and false security problems as well as
requests that the end-user should purchase the paid license of the
software. However, it is not recommended to pay for Live PC Care due
to the fact that the application is a scam. On the contrary, when the
rogue product is detected it is recommended to delete Live PC Care
immediately as well as all related files and registry keys.
How did I get infected with Live PC Care ?
Infection normally occurs in one of two ways. The first is
from the
user downloading a fake video codec. This is a very common way of
tricking users into installing the fake security client. Another way if
for the hackers to build or hack into a website. Once there they setup
what is known as a drive by download. When a user visits the site it
will then attempt to push software onto the visitors computer. If
proper security is not in place or a new exploit just came out then the
users computer can become infected. If you find yourself infected with
this then you will need to run a full and in-depth scan to ensure you
have no other viruses installed on your computer. This will help to
ensure you do not get infected again with Live PC Care. We do
recommend Spyware
doctor with Antivirus. You can »
download the free trial here.
How to Remove Live PC Care ?
Here are the steps we used to remove Live PC Care
from a test
computer. Please note that traces will change and mutate. Most of the
time it will be similar in nature so the average computer user should
be able to figure out what changed. If you are in doubt then just run a
full scan with Spyware
Doctor with Antivirus to see the latest traces of this.
Kill Live PC Care processes
We do recommend you run a full scan using Spyware Doctor with Antivirus » download. Even if you do not
intend on purchasing the product it will help to stop the virus from
re-installing and re-activating while you manually remove the rest of
the traces. Also it will inform you of any new changes to the file
names. You may need this if it mutates. Not all the above process may
be running.
Delete Live PC Care registry values:
- HKEY_CURRENT_USER\Software\3
- HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF}
HKEY_CLASSES_ROOT\xp_5ea56.DocHostUIHandler
- HKEY_CURRENT_USER\Software\Classes\Software\Microsoft\Internet
Explorer\SearchScopes "URL" =
"http://search-gala.com/?&uid=7&q={searchTerms}"
- HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download "RunInvalidSignatures" = "1"
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet
Settings\5.0\User Agent\Post Platform
"[xSP_2:117fc3395e69e29f71abba93a68c4181_7]"
- HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchScopes
"URL" = "http://search-gala.com/?&uid=7&q={searchTerms}"
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "Live PC Care"
- HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download "CheckExeSignatures" = "no"
Delete Live PC Care files: ( Hint )
Most of
these files will be in the %UserProfile%\Application Data\Live PC Care \
directory. Not all will be there
and some may not be present in your virus version
- LP339.exe
- LPCG.ico
- 8233.mof
- mozcrt19.dll
- sqlite3.dll
- vd952342.bd
- lpcg.cfg
- cookies.sqlite
- Live PC Care.lnk
- cb.drv
- CLSV.sys
- DBOLE.exe
- DBOLE.sys
- exec.dll
- fan.exe
- FW.dll
- hymt.drv
- kernel32.drv
- PE.tmp
- ppal.dll
- ppal.sys
- runddl.dll
- SM.dll
- search.xml
Delete Live PC Care directories: (
Please
note that in most cases everything in this folder can be deleted. Just
be sure it’s the correct folder )
- C:\Documents and Settings\All Users\Application Data\117fc
- c:\Documents and Settings\All Users\Application Data\LPCGSys
- %UserProfile%\Application Data\Live PC Care
Due to the fact that in
many cases Live PC Care is delivered on already infected PCs it is
recommended to use either genuine antivirus software such as Spyware
Doctor with Antivirus or professional technical assistance by
submitting the form located on the homepage of the website
www.onlinecomputerrepair.org.
Even if manual removal is possible, the chances that additional
malicious components may still resident on the computer are quite
high.
Tags:
Delete Live PC Care | Live PC Care Removal | How to Delete Live PC Care | Remove Live PC Care | Live PC Care
|