WARNING!! PAV.EXE Personal Antivirus


  1. Posts : 6,305
    Windows 7 Ultimate x64
       #1

    WARNING!! PAV.EXE Personal Antivirus


       Note
    I've not seen this for some time but it seems to be doing the rounds again so I thought i'd give everyone a heads up.


    WARNING!! PAV.EXE Personal Antivirus-personalantivirus_img1.png

    Personal Antivirus, or PersonalAntivirus, is a rogue anti-spyware program to come out from the company called Innovagest 2000.

    Personal Antivirus is installed by a trojan called Zlob, which attempts to trick you into buying the alleged rogue anti-spyware program. Once you're infected with Zlob, a fake security message similar to a Windows notification pops up saying your PC is infected with malware. This Personal Antivirus message is used to lure you into purchasing, downloading and installing their program to remove the imaginary spyware.

    Personal Antivirus may also automatically launch at your computer's startup and scan your computer. Personal Antivirus may be difficult to remove manually, and will continue to try to recreate itself. Personal Antivirus is a clone of Internet Antivirus Pro and General Antivirus, which are other corrupt distributed programs. Personal Antivirus should not be trusted and is recommended to be removed.
    I have come across 4 machines over the last week that have been infected by this rediculously annoying 'antivirus' software.

    Step by step removal:
    I have found that advanced removal is the best method for this app.

    1, You will need to end the PAV.EXE process in taskmanager. Right-click the taskbar and click 'Task Manager' then the 'Processes' tab. Next, find and right-click the PAV.EXE entry and select 'End Process Tree'. This will kill the process.


    2, Delete the following folders from your computer
    • c:\program files\PersonalAV
    • c:\program files\Common Files\Uninstall\PersonalAV
    • c:\windows\tasks\PersonalAV
    3, Run 'regedit' from the start menu and do a search for 'PersonalAV' and delete every entry found.
       Tip
    It's best to run a second full search once the first has finished


    Once all trace of the app has been removed you should re-boot your machine and you will find that the annoying tray notification applet has gone & all processes for PAV.EXE have been eliminated.
      My Computer


  2. Posts : 1,663
    Windows 10 Tech Preview 9926 x64
       #2

    Thanks for the heads up Orbital. If it's making it's way around again, that means I have to warn all of my volunteers/customers...again. lol
      My Computer


  3. Posts : 3,639
    Windows 7 Ultimate, OS X 10.7, Ubuntu 11.04
       #3

    Good job orbital, made it easy to follow and I have seen that on a few of my friends PC's I'll pass this page along to them. :)
      My Computer


  4. Posts : 8,398
    ultimate 64 sp1
       #4

    thanks sharky for the heads up.

    not seen this one for a while...

    *waits for phone to start ringing*
      My Computer


  5. Posts : 6,879
    Win 7 Ultimate x64
       #5

    Looks like a new variant of this,

    How to remove Personal Antivirus (Removal Guide)
      My Computer


  6. Posts : 6,305
    Windows 7 Ultimate x64
    Thread Starter
       #6

    stormy13 said:
    Looks like a new variant of this,

    How to remove Personal Antivirus (Removal Guide)
    Doesn't supprise me mate, thankfully I have 100% success without needing to install other software
      My Computer


  7. Posts : 8,608
    Windows 7 Ultimate 32bit SP1
       #7

    One thing about ZLob and *fake* Anti-virus or Anti-spyware pop-ups... once you see the alerts, it's already installed on the computer.

    Most of the latest ZLob infections include a Rootkit (**Backdoor TDSS and more ...
    A remote administration utility which bypasses normal security mechanisms to secretly control a program, computer or network).

    These are often hard to get rid of, you can clean up a Rootkit (kind of)... but I am one who prefers not to. It's better to wipe and do a clean install your Windows OS. You cannot be sure that your OS is totally stable again without doing this.

    ** Virus Description: Backdoor:W32/TDSS
      My Computer


  8. Posts : 913
    Windows 7 x64 Professional
       #8

    Good tip... thanx.
      My Computer


  9. Posts : 1,027
    Windows 7 Ultimate x64/ Windows Vista Ultimate x64
       #9

    Thanks OS. I'll keep this in mind.
      My Computer


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 03:25.
Find Us