How to remove Virus Melt

Home » Rogue Anti-Spyware » Virus Melt

Virus Melt description

Virus Melt (VirusMelt) is a rogue antispyware software similar to Antivirus 360 and Antivirus 2009. In fact it’s a clone of Virus Doctor. Virus Melt imitates computer scan and loads fake report with imaginary infections. Fake system notifications, security alerts claiming that your computer is infected are scare tactics to push users into purchasing “full” version of fake anti-spyware software.

virus melt

Follow manual removal instructions bellow to remove this threat. If it’s too hard feel free to download automatic spyware scanner and scan your computer against Virus Melt and other spyware threats.

How to get rid of Virus Melt

This infection can be removed using Spyware Doctor.

Download does not start? Try a mirror download here

Spyware Doctor is widely valued as one of the best AntiSpyware programs available to protect you from Virus Melt and the latest internet security threats. If your computer is infected with Virus Melt we strongly recommend automatic spyware scanner.

How to manually remove Virus Melt

To get rid of spyware such as Virus Melt you need to remove processes, search and delete registry keys, DLL and other Virus Melt related files from your computer.

Take Note: The manual process of removing spyware from your computer is difficult and puts you at risk of damaging your computer. We advise using our automatic Virus Melt remover.

  1. Uninstall Virus Melt from Control Panel
    Start > Settings > Control Panel > Add/Remove Programs. Double click to uninstall.
  2. End these Virus Melt processes:
    SM.exe
    VMelt.exe
    sld.exe
    SICKBOY.exe

    To stop processes press Ctrl + Alt + Del or click Start > Run > type "taskmgr". Select malicious process in the list and click "End Process" button.
  3. Unregister Virus Melt DLL files:
    gid.dll
    exec.dll

    To unregister DLL click Start > Run > type "regsvr32 /u PATH_TO_FILE/FILE.dll"
  4. Delete Virus Melt registry entries: HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF}
    HKEY_CLASSES_ROOT\VMelt.DocHostUIHandler
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform “URVMLT[]“
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “Virus Melt”

    To open registry editor click Start > Run > type "regedit".
    Warning! Manual registry entries editing may cause damage to your system.
    Download Uniblue RegistryBooster 2010 to scan for registry errors.
  5. Search and delete these Virus Melt related files:
    %Documents and Settings%\All Users\Application Data\7c69f0c
    %Documents and Settings%\All Users\Application Data\7c69f0c\VMelt.exe
    %Documents and Settings%\All Users\Application Data\7c69f0c\System Data
    %Documents and Settings%\All Users\Application Data\7c69f0c\System Data\vd952342.bd
    %Documents and Settings%\All Users\Application Data\System Data
    %Documents and Settings%\All Users\Application Data\System Data\mscfg.ini
    %WINDOWS%\$NtServicePackUninstall$\SICKBOY.exe
    %WINDOWS%\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\ANTIGEN.sys
    %WINDOWS%\ie7\delfile.sys
    %WINDOWS%\ie7\sld.exe
    %WINDOWS%\inf\sld.sys
    %WINDOWS%\Installer\$PatchCache$\Managed\D6461317C3DC4F04799BDCE9E42626FE\2.0.50727\exec.dll
    %WINDOWS%\Installer\$PatchCache$\Managed\D6461317C3DC4F04799BDCE9E42626FE\2.0.50727\SM.exe
    %WINDOWS%\pchealth\helpctr\System\Remote Assistance\Common\gid.dll
    %WINDOWS%\Prefetch\fix.drv
    %WINDOWS%\system32\mui\0009\snl2w.sys
    %WINDOWS%\system32\mui\0401\fix.drv
    %WINDOWS%\system32\mui\0401\PE.sys
    %UserProfile%\Application Data\Virus Melt
    %UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\Virus Melt.lnk
    %UserProfile%\Application Data\Virus Melt\Instructions.ini
    %UserProfile%\Application Data\Virus Melt\wrkdata.cfg
    %UserProfile%\Desktop\Virus Melt.lnk
    %UserProfile%\Start Menu\Virus Melt.lnk
    %UserProfile%\Start Menu\Programs\Virus Melt.lnk

Tags

, , ,

Similar Threats

Leave a Reply