VirusRescue Removal: Remove VirusRescue Forever

Let our support team solve your problem with VirusRescue and repair VirusRescue right now!

Leave the detailed description of your VirusRescue problem in the form below. Our support team will contact you in several minutes and give a step-by-step instruction on how to fix VirusRescue problem. Please be specific. Do your best describing the problem. This will help us recommend right and complete VirusRescue problem removal solution.

Describe your problem here and we'll contact you in several minutes:

We'll reply you in 10 minutes or less
* Name:
* E-mail:
* Problem summary:
* Detailed problem
description:

We'll contact you in 10 minutes or less after you click on this button! Individual solution guaranteed!

Warning:

1) We hate spam as much as you do. We will not share your email with any third party or publish it anywhere. Your email is used only to contact you and give you VirusRescue removal solution.
2) All fields of this form are obligatory.

Guaranteed Problem Solution
Software Industry Professionals Member
Threat's description and solution are developed by Security Stronghold security team. Let professionals make your problems solved now!
Download solution for VirusRescue and updater.plb now!

What is VirusRescue? Technical details of VirusRescue problem and VirusRescue removal tool

Methods for manual VirusRescue removal

Free download of a program that will solve your problem automatically

Free instant professional support in solving VirusRescue error from our Security Support Team

Threat's profile

Threat indicator: MEDIUM
Name of the threat: VirusRescue
Command or file name: updater.plb
Threat type: Badware
Affected OS: Win32 (Windows 9x, Windows XP, Windows Vista)

VirusRescue intrusion method

VirusRescue copies its file(s) to your hard disk. Its typical file name is updater.plb. Then it creates new startup key with name VirusRescue and value updater.plb. You can also find it in your processes list with name updater.plb or VirusRescue.

If you have further questions about VirusRescue, please fill in the form above and we'll contact you shortly.

» Download program to remove VirusRescue (VirusRescue Removal Tool)

Recommended Solution

If you are not sure what to delete, use our award winning program - VirusRescue Removal Tool.

VirusRescue Removal Tool will find and fully remove VirusRescue and all problems associated with VirusRescue virus.

Fast, easy, and handy, VirusRescue Removal Tool protects your computer against VirusRescue that does harm to your computer and breaks your privacy. VirusRescue Removal Tool scans your hard disks and registry and destroys any manifestation of VirusRescue. Standard anti-virus software can do nothing against malicious programs like VirusRescue. Remove VirusRescue straight away!

» Download VirusRescue Removal Tool now for free

How to fix VirusRescue

This problem can be solved manually by deleting all registry keys and files connected with VirusRescue, removing it from starup list and unregistering all corresponding DLLs. Additionally missing DLL's should be restored from distribution in case they are corrupted by VirusRescue.

To get rid of VirusRescue, you should:

1. Kill the following processes and delete the appropriate files:

• virusrescue v3.0.3 un-installer.lnk
• virusrescue v3.0.3 website.lnk
• virusrescue v3.0.3.lnk

Warning: you should delete only those files which checksums are listed as malicious. There may be valid files with the same names in your system. We recommend you to use VirusRescue Removal Tool for safe problem solution.

2. Delete the following malicious folders:

no information

3. Delete the following malicious registry entries and\or values:

• Key: SOFTWARE\Classes\CLSID\{CF79DAB6-0AFE-4678-856D-44574D91915C}
  Value: AppID

• Key: SOFTWARE\Classes\CLSID\{CF79DAB6-0AFE-4678-856D-44574D91915C}\AppID

• Key: SOFTWARE\Classes\CLSID\{CF79DAB6-0AFE-4678-856D-44574D91915C}\LocalServer32

• Key: SOFTWARE\Classes\CLSID\{CF79DAB6-0AFE-4678-856D-44574D91915C}\TypeLib

• Key: SOFTWARE\Classes\AppID\{CF79DAB6-0AFE-4678-856D-44574D91915C}

• Key: SOFTWARE\Classes\AppID\{CF79DAB6-0AFE-4678-856D-44574D91915C}\AppID

• Key: SOFTWARE\Classes\TypeLib\{C7DF0578-D732-4BFB-A65B-89C1CCEA01CC}\1.0

• Key: SOFTWARE\Classes\TypeLib\{C7DF0578-D732-4BFB-A65B-89C1CCEA01CC}\1.0\0\win32

• Key: SOFTWARE\Classes\TypeLib\{C7DF0578-D732-4BFB-A65B-89C1CCEA01CC}\1.0\FLAGS

• Key: SOFTWARE\Classes\TypeLib\{C7DF0578-D732-4BFB-A65B-89C1CCEA01CC}\1.0\HELPDIR

• Key: SOFTWARE\Classes\AppID\{53A8703F-53BF-4C44-8DAF-FA254A1E1B8C}

• Key: SOFTWARE\Classes\AppID\VRExt.DLL
  Value: AppID

• Key: SOFTWARE\Classes\VRExt.VRShlExt.1

• Key: SOFTWARE\Classes\VRExt.VRShlExt.1\CLSID

• Key: SOFTWARE\Classes\VRExt.VRShlExt

• Key: SOFTWARE\Classes\VRExt.VRShlExt\CLSID

• Key: SOFTWARE\Classes\VRExt.VRShlExt\CurVer

• Key: SOFTWARE\Classes\CLSID\{753D7DED-2454-44A3-959D-DC3700FC6B6E}
  Value: AppID

• Key: SOFTWARE\Classes\CLSID\{753D7DED-2454-44A3-959D-DC3700FC6B6E}\ProgID

• Key: SOFTWARE\Classes\CLSID\{753D7DED-2454-44A3-959D-DC3700FC6B6E}\VersionIndependentProgID

• Key: SOFTWARE\Classes\CLSID\{753D7DED-2454-44A3-959D-DC3700FC6B6E}\Programmable

• Key: SOFTWARE\Classes\CLSID\{753D7DED-2454-44A3-959D-DC3700FC6B6E}\InprocServer32
  Value: ThreadingModel

• Key: SOFTWARE\Classes\CLSID\{753D7DED-2454-44A3-959D-DC3700FC6B6E}\TypeLib

• Key: SOFTWARE\Classes\*\shellex\ContextMenuHandlers\VRShlExt

• Key: SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\VRShlExt

• Key: SOFTWARE\Classes\TypeLib\{2E88F662-2027-421D-9874-F3DBC2207BAB}

• Key: SOFTWARE\Classes\TypeLib\{2E88F662-2027-421D-9874-F3DBC2207BAB}\1.0

• Key: SOFTWARE\Classes\TypeLib\{2E88F662-2027-421D-9874-F3DBC2207BAB}\1.0\FLAGS

• Key: SOFTWARE\Classes\TypeLib\{2E88F662-2027-421D-9874-F3DBC2207BAB}\1.0\0

• Key: SOFTWARE\Classes\TypeLib\{2E88F662-2027-421D-9874-F3DBC2207BAB}\1.0\0\win32

• Key: SOFTWARE\Classes\TypeLib\{2E88F662-2027-421D-9874-F3DBC2207BAB}\1.0\HELPDIR

• Key: SOFTWARE\Classes\Interface\{598CA4D5-6870-47F0-B513-E3EFBA809B22}

• Key: SOFTWARE\Classes\Interface\{598CA4D5-6870-47F0-B513-E3EFBA809B22}\ProxyStubClsid

• Key: SOFTWARE\Classes\Interface\{598CA4D5-6870-47F0-B513-E3EFBA809B22}\ProxyStubClsid32

• Key: SOFTWARE\Classes\Interface\{598CA4D5-6870-47F0-B513-E3EFBA809B22}\TypeLib
  Value: Version

• Key: SOFTWARE\Classes\Interface\{598CA4D5-6870-47F0-B513-E3EFBA809B22}\NumMethods

• Key: SOFTWARE\Classes\CLSID\{598CA4D5-6870-47F0-B513-E3EFBA809B22}\InProcServer32
  Value: ThreadingModel

• Key: SOFTWARE\Classes\CLSID\{598CA4D5-6870-47F0-B513-E3EFBA809B22}

• Key: SYSTEM\ControlSet001\Enum\Root\LEGACY_VRSVC\0000\Control
  Value: ActiveService

• Key: Software\VirusRescue
  Value: aid

• Key: Software\VirusRescue
  Value: Path

• Key: Software\VirusRescue
  Value: dir

• Key: System\CurrentControlSet\Services\vrsvc
  Value: Type

• Key: System\CurrentControlSet\Services\vrsvc
  Value: Start

• Key: System\CurrentControlSet\Services\vrsvc
  Value: ErrorControl

• Key: System\CurrentControlSet\Services\vrsvc
  Value: ImagePath

• Key: System\CurrentControlSet\Services\vrsvc
  Value: DisplayName

• Key: System\CurrentControlSet\Services\vrsvc
  Value: ObjectName

• Key: SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_VRSVC\0000\Control
  Value: *NewlyCreated*

• Key: SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_VRSVC\0000
  Value: Service

• Key: SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_VRSVC\0000
  Value: Legacy

• Key: SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_VRSVC\0000
  Value: ConfigFlags

• Key: SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_VRSVC\0000
  Value: Class

• Key: SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_VRSVC\0000
  Value: ClassGUID

• Key: SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_VRSVC\0000
  Value: DeviceDesc

• Key: SYSTEM\CURRENTCONTROLSET\SERVICES\vrsvc\Enum

• Key: SYSTEM\CURRENTCONTROLSET\SERVICES\vrsvc\Enum
  Value: Count

• Key: SYSTEM\CURRENTCONTROLSET\SERVICES\vrsvc\Enum
  Value: NextInstance

• Key: System\CurrentControlSet\Enum\Root\LEGACY_VRSVC\0000\Control
  Value: ActiveService

• Key: Software\Microsoft\Windows\CurrentVersion\Uninstall\VirusRescue
  Value: UninstallString

• Key: Software\Microsoft\Windows\CurrentVersion\Uninstall\VirusRescue
  Value: DisplayIcon

• Key: Software\Microsoft\Windows\CurrentVersion\Uninstall\VirusRescue
  Value: NSIS:StartMenuDir

• Key: Software\Microsoft\Windows\CurrentVersion\Uninstall\VirusRescue
  Value: URLInfoAbout

• Key: Software\Microsoft\Windows\CurrentVersion\Uninstall\VirusRescue
  Value: Publisher

• Key: Software\VirusRescue
  Value: Language

• Key: Software\VirusRescue
  Value: installid

• Key: Software\Microsoft\Windows\CurrentVersion\Uninstall\VirusRescue
  Value: DisplayName

• Key: Software\Microsoft\Windows\CurrentVersion\Uninstall\VirusRescue
  Value: DisplayVersion

• Key: SOFTWARE\VirusRescue
  Value: aid

• Key: SOFTWARE\VirusRescue
  Value: installid

Warning: If value is listed for some registry entries, you should only clear these values and leave keys with such values untouched. We recommend you to use VirusRescue Removal Tool for safe problem solution.

Next threat: Visage PC Surveillance »

Learn more about VirusRescue and updater.plb »

« Back to catalog

Solution: 3403
Home | Partners | Shop | Support | Contact Us | Privacy Policy | Sitemap

Copyright © 2003-2009 Security Stronghold. All Rights Reserved.