Im-Infected / Rogue / Privacy Protection

Privacy Protection

This part of web site contains full description and analysis on Privacy Protection as well as removal procedures and necessary tools.

Options : » Discuss » Print » Bookmark

Risk Rating of 2 Is Given For This Threat

Date Posted: November 6th, 2011

Discussion: No Response

[donotprint]

[/donotprint]


Whats is Privacy Protection?

If you notice an existence of Security Protection on the computer, better seek help from trusted technician or yet remove it yourself using the guide we prepared on this article. Rogue applications such as Security Protection needs to eliminate from the system urgently.

Do you have an idea what will happen if this rogue program stays resident for long? The consequences are perilous. At first stage of infection, Security Protection promotes itself as computer protection software. Extremely displaying false but convincing warning and alerts, users may positively accept this pretentious application as lawful. In just a matter of minutes, Security Protection will fetch configuration file from a remote server. Victim may not be aware of other dangers that the fake anti-virus is attempting to implement.

Security Protection supplementary configurations mean to obstruct any .EXE files to be executed. Thus, running any anti-virus program to take out this threat is not possible. Additionally, essential tools to carry out troubleshooting are render inoperative. Security Protection immediately closes task manager, registry editor and control panel when attempted to run.

Having this rogue application on the system complicates the operation, or worst, it is certainly useless. Regaining control over the affected computer involves absolute removal of Security Protection. Im-infected.com’s removal guide on this page is prepared to assist our visitors, especially victims of Security Protection, to clean the system and turn it to virus-free once more.

Type Rogue
Sub-Type FakeAV
Systems Affected Windows

Symptoms

When Privacy Protection is installed, it will provide a virus scan that does not need user’s intervention. The rogue software runs on itself. It will produce several threats identified on the computer and advises immediate removal using the licensed version of Privacy Protection.

Other Detection Name for Privacy Protection

BitDefender Trojan.Generic.KD.392989
Comodo Heur.Suspicious
DrWeb Trojan.MulDrop2.54093
Emsisoft DangerousObject.Multi.AMN!A2
F-Secure Trojan.Generic.KD.392989
Kaspersky Trojan.Win32.Jorik.Fraud.hdm
MalwareBytes Anti-Malware Trojan.FakeAlert
Panda Suspicious file
PCTools RogueAntiSpyware.AVGuard
Sophos Sus/UnkPack-C

System Changes

The malware will load using the process:
gtlcuxxpmy.exe or any random characters

Malicious files created by Privacy Protection are the following:
Windows XP
c:\Documents and Settings\(User Name)\Local Settings\Application Data\gtlcuxxpmy.exe
c:\Documents and Settings\(User Name)\Desktop\Privacy Protection.lnk
c:\Documents and Settings\(User Name)\Local Settings\Temp\1.tmp
c:\documents and settings\(User Name)\Local settings\Temp\2.tmp

Windows Vista/ Windows 7
c:\ProgramData\gtlcuxxpmy.exe
c:\Users\(User Name)\Desktop\Privacy Protection.lnk

Privacy Protection will create the following registry entries:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Privacy Protection

How to Remove Privacy Protection

Instructions

[donotprint]It would be a little comfortable if you will [print_link] as we need to restart the computer during the cleaning process.[/donotprint]

Tools Required To RemovePrivacy Protection
- MalwareBytes Anti-Malware (go to Protection tab to download scanner)

You need to download the tool from specified link. Save the file to a convenient location on your hard drive or USB drive. If Privacy Protection obstruct the download process, you need to obtain the needed files using another computer.

If in case it blocks the execution of the downloaded file, please rename it before running on the affected computer.

Scan with MalwareBytes AntiMalware

1. As long as Privacy Protection is running, it will keep on blocking any programs. So there is no way that we can download or run a virus scan unless we stop the process of this virus. To stop the process, press (Windows Start) + (R) on your keyboard.

2. This command will open a "Run" console. To kill process of Privacy Protection, type the following:
taskkill /f /im privacy.exe

3. After unloading Privacy Protection, we can now download MalwareByte's Anti-Malware. If you already have the program, skip this step. Go to the Protection tab and download the file. Save it to your desktop.

4. Double-click on the file to install Malwarebytes’ Anti-Malware.

5. During the installation process, it will display several prompts. Please install the program in default settings.

6. After installation, leave the following options with check mark.
- Update Malwarebytes’ Anti-Malware
- Launch Malwarebytes’ Anti-Malware

7. You must be connected on the Internet to complete the update. It may take a while.

8. When update is complete, Malwarebytes’ Anti-Malware will start. When it prompts if you want to update the program, please click OK. The program will check your database and instantly closes the prompt if it detects an updated version.

9. On Scanner tab of the main program, select Perform full scan.

MalwareBytes AntiMalware

10. Click on Scan button to begin deep scanning on your computer for Privacy Protection associated components.

11. The scan may take a while. It will look for files and malicious registry objects.

12. When done scanning, message will appear stating that scan has completed successfully. Click on OK.

13. Back at the main window, detected threats are displayed. Please note that the image below is just a representation. It does not display the actual files as detected on your computer.

Scan Privacy Protection with MBAM

14. All items marked with check will be deleted. Click on Remove Selected to begin the process. All malicious files and registry entries will be remove from the system and placed on quarantine.

15. After removing all threats, MBAM will display a scan log in text format. It can be viewed using NotePad application.

16. You may now close MBAM.





Soon…


Download Malwarebytes' Anti-Malware

Malwarebytes' Anti-Malware is considered to be the next step in the detection and removal of malware. Malwarebytes' Anti-Malware is a security product that contains a number of new technologies designed to quickly detect, destroy, and prevent malware including Privacy Protection. Malwarebytes' Anti-Malware can detect and remove malware that even the most well known anti-virus and anti-malware applications fails to detect.

Activating the full version unlocks real-time protection, scheduled scanning, and scheduled updating. For consumers and personal use, it is a one time fee of $24.95.

Developer: MalwareBytes

Version: 1.51.2.1300

Operating System: Windows 2000, XP, Vista, and 7 (32-bit and 64-bit)

mbamaffs

MBAM Scanner only is available here


Privacy Protection Discussions

  1. No comments yet.
  1. No trackbacks yet.