Home Malware Cleaner

What is Home Malware Cleaner?

If there are a lot of security alert messages popping up in your screen and they are all from Home Malware Cleaner, then rest assured – they are not real. Home Malware Cleaner is a fake antivirus program else known as rogue antispyware and it will do everything in its might to make you believe that you are infected with Trojans and other types of viruses and you can only get rid of them if you pay for the activation of the Home Malware Cleaner.

Home Malware Cleaner comes from a big family of rogues and it definitely knows how to cause panic. Naturally, when you get lots of messages most of the time, your computer slows down, and you cannot open certain program, it might definitely seem that you’ve got to follow what Home Malware Cleaner says, and you need to upgrade the program in order for your computer to go back to normal. But wait there just one minute and consider this: all of these symptoms are cause by none the other but Home Malware Cleaner itself.

It is the rogue that slows down your system, it is Home Malware Cleaner that blocks you from opening certain programs, and it only wants your financial information so that its creators could illegally access your bank account, extorting all of your hard-earned money. Don’t be the next victim in line – remove Home Malware Cleaner immediately and make sure that your system is protected against other possible infections.

UPDATE

Since it has been established that Home Malware Cleaner is from a big family of rogues, it is of no surprise that other versions of this computer threat include Strong Malware Defender, Malware Protection Center, Smart Anti-Malware Protection and other similar malicious programs.

Upon the installation Home Malware Cleaner is known to create a number of harmless files that will be used later on. The rogue will tell you that such files as fix.drv, grid.exe or CLSV.exe are to blame for the erratic computer behavior. Needless to say, that is not true. You are also to ignore the fake security notifications sent by Home Malware Cleaner including:

Warning! Access conflict detected!
An unidentified program is trying to access system process address space.
Process Name: AllowedForm
Location: C:\Windows\...\taskmgr.exe

Warning! Identity theft attempt detected

Warning! Virus detected
Threat Detected: Trojan-PSW.VBS.Half
Description: This is a VBScript-virus. It steals user's passwords.

System Alert
malicious applications, which may contain Trojans, were found on your computer and are able to be removed immediately. Click here to remove these potentially harmful items using Home Malware Cleaner.

When Home Malware Cleaner prompts you to remove the viruses it has "detected", you should simply close the program and get yourself a trustworthy computer safeguard tool that will terminate Home Malware Cleaner for you automatically. The longer Home Malware Cleaner stays in your system, the more damage it can cause, so it is your responsibility to take care of this infection as soon as possible.

100% FREE spyware scan and
tested removal of Home Malware Cleaner*

Stop these Home Malware Cleaner Processes:

%UserProfile%\Recent\PE.exe
%CommonAppData%\79b35\HMa76.exe
%CommonAppData%\[random]\[random].exe
%UserProfile%\Recent\CLSV.exe
%UserProfile%\Recent\grid.exe
%AppData%\Home Malware Cleaner\ScanDisk_.exe

Remove these Home Malware Cleaner Files:

%CommonAppData%\79b35\HMC.ico
%UserProfile%\Recent\fix.drv
%CommonAppData%\[random]\[random].exe
%UserProfile%\Recent\energy.tmp
%CommonAppData%\79b35\
%CommonAppData%\79b35\sqlite3.dll
%AppData%\Home Malware Cleaner\Instructions.ini
%UserProfile%\Recent\tempdoc.drv
%UserProfile%\Recent\PE.drv
%UserProfile%\Recent\tempdoc.sys
%CommonAppData%\79b35\BackUp\
%AppData%\Microsoft\Internet Explorer\Quick Launch\Home Malware Cleaner.lnk
%UserProfile%\Recent\SICKBOY.tmp
%StartMenu%\Home Malware Cleaner.lnk
%CommonAppData%\[random]\ASE.ico
%UserProfile%\Desktop\Home Malware Cleaner.lnk
%UserProfile%\Recent\PE.exe
%CommonAppData%\79b35\6543.mof
%AppData%\Home Malware Cleaner\cookies.sqlite
%StartMenu%\Programs\Home Malware Cleaner.lnk
%UserProfile%\Recent\ANTIGEN.drv
%UserProfile%\Recent\DBOLE.tmp
%CommonAppData%\79b35\HMCSys\
%UserProfile%\Recent\exec.drv
%AppData%\Home Malware Cleaner\ScanDisk_.exe
%CommonAppData%\79b35\HMa76.exe
%CommonAppData%\79b35\mozcrt19.dll
%Desktop%\Home Malware Cleaner.lnk
%AppData%\Home Malware Cleaner\
%UserProfile%\Recent\grid.exe
%CommonAppData%\[random]\[random].cfg
%UserProfile%\Recent\CLSV.exe
%CommonAppData%\79b35\Quarantine Items\
%UserProfile%\Recent\eb.tmp
%Programs%\Home Malware Cleaner.lnk
%UserProfile%\Recent\PE.tmp
%UserProfile%\Recent\tjd.drv

Remove these Home Malware Cleaner Registry Entries:

HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "8" = "avgui.exe"
HKEY_CLASSES_ROOT\dumped_patched.DocHostUIHandler
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "11" = "avgcfgex.exe"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "13" = "avgchsvx.exe"
HKEY_CURRENT_USER\Software\3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\pgmonitr.exe
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer "IIL" = 0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform "runtime 13.08010"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "10" = "avgscanx.exe"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\signcheck.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\zatutor.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "14" = "avgcmgr.exe"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "1" = "MSASCui.exe"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\_avp32.exe
HKEY_CURRENT_USER\Software\Classes\Software\Microsoft\Internet Explorer\SearchScopes "URL" = "http://findgala.com/?&uid=8010&q={searchTerms}"
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download "CheckExeSignatures" = "no"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "6" = "avscan.exe"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VisthLic.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "0" = "msseces.exe"
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer "ltHI" = 0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "9" = "avgtray.exe"
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer "PRS" = "http://127.0.0.1:27777/?inj=%ORIGINAL%"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ndd32.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "15" = "avgwdsvc.exe"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ldpromenu.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run “Home Malware Cleaner” “%CommonAppData%\[random]\[random].exe” /s /d
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "Home Malware Cleaner"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\fnrb32.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "3" = "egui.exe"
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download "RunInvalidSignatures" = 1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "UID" = 8010
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "5" = "avcenter.exe"
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer "ltTST"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "4" = "avgnt.exe"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer "DisallowRun" = 1
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "12" = "avgemc.exe"
HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes "URL" = "http://findgala.com/?&uid=8010&q={searchTerms}"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "2" = "ekrn.exe"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun "7" = "avgfrw.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ashCnsnt.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cfd.exe
Disclaimer
Disclaimer

Leave a Comment

Enter the numbers in the box to the right *