Windows Pro Solutions is a fake program which pretends to be a legal anti-spyware tool. It spreads through Trojans, spam email attachments and through some of the infected, downloaded files from unreliable web sites. Be careful while downloading anything from the unreliable sources, checking spam emails and make your computer security powerful. Once the rogue enters your system, it finds ways to make it legal by changing the registry key values and changing the settings to restart it automatically. So whenever you start your system, it starts working in the background. It will then show you many security alerts and messages that your system is highly infected and you should buy the full version of the tool to protect your system. In reality, all the alerts are false.So, you can safely remove Windows Pro Solutions, and it should be done as soon as possible.

Remove Windows Pro Solutions processes

  1. Press the keys ALT, CTRL and DEL together to open the windows task manager.
  2. Select the tab ‘processes’.
  3. Find the Windows Pro Solutions processes under the row named ‘image name’.
  4. The Windows Pro Solutions processes are:

Protector-[random 3 chars].exe

Protector-[random 4 chars].exe

  1. Select the processes one by one and then click the on the button End process.

Remove Windows Pro Solutions DLL files

  1. Open Search.
  2. Enter the Windows Pro Solutions DLL file name which is :

%AppData% \ NPSWF32.dll

  1. Right click on the file and then press the option Delete.

Remove Windows Pro Solutions Registry Entries

  1. Open the windows registry editor to remove the Windows Pro Solutions registry keys.
  2. Click on Find after clicking on Edit.
  3. Enter all the Windows Pro Solutions registry key values to delete them.
  4. The registry values that should be removed from your system are:

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Inspector %AppData%\Protector-[rnd].exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnHTTPSToHTTPRedirect 0
HKCU\Software\Microsoft\Windows\CurrentVersion\Settings\ID 4
HKCU\Software\Microsoft\Windows\CurrentVersion\Settings\UID [rnd]
HKCU\Software\Microsoft\Windows\CurrentVersion\Settings\net [date of installation]
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ConsentPromptBehaviorAdmin 0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ConsentPromptBehaviorUser 0
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\EnableLUA 0
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AAWTray.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AAWTray.exe\Debugger svchost.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVCare.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVCare.exe\Debugger svchost.exe
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVENGINE.EXE
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVENGINE.EXE\Debugger svchost.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\

Inspector = %AppData%\Protector-[random].exe

HKEY_LOCAL_MACHINE\software\microsoft\Windows NT\CurrentVersion\Image File Execution Options\a.exe\

Debugger = svchost.exe

HKEY_LOCAL_MACHINE\software\microsoft\Windows NT\CurrentVersion\Image File Execution Options\aAvgApi.exe\

Debugger = svchost.exe

HKEY_LOCAL_MACHINE\software\microsoft\Windows NT\CurrentVersion\Image File Execution Options\AAWTray.exe\

Debugger = svchost.exe

HKEY_LOCAL_MACHINE\software\microsoft\Windows NT\CurrentVersion\Image File Execution Options\About.exe\

Debugger = svchost.exe

HKEY_LOCAL_MACHINE\software\microsoft\Windows NT\CurrentVersion\Image File Execution Options\ackwin32.exe\

Debugger = svchost.exe

HKEY_LOCAL_MACHINE\software\microsoft\Windows NT\CurrentVersion\Image File Execution Options\Ad-Aware.exe\

Debugger = svchost.exe

HKEY_LOCAL_MACHINE\software\microsoft\Windows NT\CurrentVersion\Image File Execution Options\adaware.exe\

Debugger = svchost.exe

HKEY_LOCAL_MACHINE\software\microsoft\Windows NT\CurrentVersion\Image File Execution Options\advxdwin.exe\

Debugger = svchost.exe

HKEY_LOCAL_MACHINE\software\microsoft\Windows NT\CurrentVersion\Image File Execution Options\AdwarePrj.exe\

Debugger = svchost.exe

HKEY_LOCAL_MACHINE\software\microsoft\Windows NT\CurrentVersion\Image File Execution Options\agent.exe\

Debugger = svchost.exe

HKEY_LOCAL_MACHINE\software\microsoft\Windows NT\CurrentVersion\Image File Execution Options\agentsvr.exe\

Debugger = svchost.exe

HKEY_LOCAL_MACHINE\software\microsoft\Windows NT\CurrentVersion\Image File Execution Options\agentw.exe\

Debugger = svchost.exe

HKEY_LOCAL_MACHINE\software\microsoft\Windows NT\CurrentVersion\Image File Execution Options\alertsvc.exe\

Debugger = svchost.exe

HKEY_LOCAL_MACHINE\software\microsoft\Windows NT\CurrentVersion\Image File Execution Options\alevir.exe\

Debugger = svchost.exe

HKEY_LOCAL_MACHINE\software\microsoft\Windows NT\CurrentVersion\Image File Execution Options\alogserv.exe\

Debugger = svchost.exe

HKEY_LOCAL_MACHINE\software\microsoft\Windows NT\CurrentVersion\Image File Execution Options\AlphaAV\

Debugger = svchost.exe

HKEY_LOCAL_MACHINE\software\microsoft\Windows NT\CurrentVersion\Image File Execution Options\AlphaAV.exe\

Debugger = svchost.exe

Remove Windows Pro Solutions files

  1. Open search by using the same steps mentioned above.
  2. Enter all the Windows Pro Solutions file names one by one to find them.
  3. When the files are found right click on them and select the option Delete to remove them.
  4. The Windows Pro Solutions files that must be removed are:

%AppData%\Protector-[random 3 chars].exe

%AppData%\Protector-[random 4 chars].exe

%AppData%\result.db

%UserProfile%\Desktop\Windows Pro Solutions.lnk

%AllUsersProfile%\Start Menu\Programs\Windows Pro Solutions.lnk

 

 

How to remove Windows Pro Solutions?

Leave a Reply

Your email address will not be published. Required fields are marked *

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>