Nov 25

AntiVirus Trigger is new clone of VirusTrigger which is an extremely dangerous program that will try to get you to purchase it in order to continue to infect your PC. This program is advertised through misleading and deceptive web sites that pretend to be malware scanners that find infections on your computer.

Risk Level : High ( Dangerous )

Note :- To safely & quickly detect AntiVirusTrigger, We highly recommend you to use the Removal Tool for AntiVirus Trigger.

Download – Removal Tool for AntiVirusTrigger

Screenshots:

AntiVirus Trigger

AntiVirus Trigger Screenshot

Symptoms of AntiVirus Trigger

Pop up balloon warning messages claiming that your PC is infected.

  • "Critical System Error",
  • "Your computer is infected",
  • Hijacked homepage to AntiVirusTrigger.com webpage.
  • Flashing icons appear on your system tray (Near of your system clock).

Manual Removal Process: ( How to get rid of AntiVirus Trigger )

Search and kill the following processes (Learn Here)

AvirTr.exe, browseu.exe, hpmom.exe, hpmon.exe, hpmun.exe, qttask.exe, qttaskm.exe, qttasku.exe

Remove VirusTrigger .exe & dlls files (Learn Here)

C:\Program Files\AvirTrsoftware
C:\Program Files\AvirTrsoftware\AvirTr.exe
C:\Program Files\AvirTrsoftware\AvirTrWarning.dll
C:\Program Files\AvirTrsoftware\uninst.exe
%UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\AntivirusTrigger 2.1.lnk
%UserProfile%\Desktop\AntivirusTrigger 2.1.lnk
%UserProfile%\Start Menu\AntivirusTrigger 2.1.lnk
%UserProfile%\Start Menu\Programs\AntivirusTrigger 2.1
%UserProfile%\Start Menu\Programs\AntivirusTrigger 2.1\AntivirusTrigger 2.1.lnk
C:\Program Files\WebMediaViewer
C:\Program Files\WebMediaViewer\browseu.exe
C:\Program Files\WebMediaViewer\browseul.dll
C:\Program Files\WebMediaViewer\hpmom.exe
C:\Program Files\WebMediaViewer\hpmon.exe
C:\Program Files\WebMediaViewer\hpmun.dll
C:\Program Files\WebMediaViewer\hpmun.exe
C:\Program Files\WebMediaViewer\myd.ico
C:\Program Files\WebMediaViewer\mym.ico
C:\Program Files\WebMediaViewer\myp.ico
C:\Program Files\WebMediaViewer\myv.ico
C:\Program Files\WebMediaViewer\ot.ico
C:\Program Files\WebMediaViewer\qttask.exe
C:\Program Files\WebMediaViewer\qttaskm.exe
C:\Program Files\WebMediaViewer\qttasku.exe
C:\Program Files\WebMediaViewer\ts.ico
C:\WINDOWS\system32\512686
C:\WINDOWS\system32\512686\512686.dll
C:\WINDOWS\system32\algg.exe
C:\WINDOWS\system32\tiltmeo.dll
C:\Documents and Settings\All Users\Desktop\Antivirus Scan.url
C:\Documents and Settings\All Users\Desktop\Online Antispyware Test.url
C:\Documents and Settings\All Users\Start Menu\Antivirus Scan.url
C:\Documents and Settings\All Users\Start Menu\Online Antispyware Test.url
%UserProfile%\Favorites\Antivirus Scan.url
%UserProfile%\My Documents\My Documents.url
%UserProfile%\My Documents\My Music\My Music.url
%UserProfile%\My Documents\My Pictures\My Pictures.url
%UserProfile%\My Documents\My Videos
%UserProfile%\My Documents\My Videos\My Video.url

Remove/Modify corrupt Registry Values (Learn Here)

HKEY_CURRENT_USER\Software\AvirTrsoft
HKEY_CURRENT_USER\Software\AvirTrsoft\Update
HKEY_CLASSES_ROOT\AvirTrWarning.WarningBHO
HKEY_CLASSES_ROOT\AvirTrWarning.WarningBHO.1
HKEY_CLASSES_ROOT\CLSID\{22C447D3-73A8-E1C7-C391-21BE4338CEBC}
HKEY_CLASSES_ROOT\CLSID\{3A267370-076E-4af4-B986-77626B8E89DF}
HKEY_CLASSES_ROOT\Interface\{764BC8B4-1159-4736-8AF1-F124A7C8C3A8}
HKEY_CLASSES_ROOT\Interface\{DF3F06C6-D443-48A8-BDF2-4E31F0554EBF}
HKEY_CLASSES_ROOT\TypeLib\{3ED86073-2FA7-4CF4-810B-28B030671678}
HKEY_LOCAL_MACHINE\SOFTWARE\Licenses
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RFC1156Agent
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\AvirTrsoft
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A267370-076E-4af4-B986-77626B8E89DF}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AvirTrsoft
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “AvirTr”
HKEY_CLASSES_ROOT\webmedia.chl
HKEY_CLASSES_ROOT\z444.z444mgr
HKEY_CLASSES_ROOT\z444.z444mgr.1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{3B8FB116-D358-48A3-A5C7-DB84F15CBB04}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{096CBA44-4A4C-49f7-8903-1E75550ABCB7}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51B15F5A-E98B-4658-B9CB-9307B74773A7}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64466B8E-20A7-4A4A-AFF4-AAD9CA68B52C}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Browser Toolbar
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IExplorer add-on
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Online Alert Manager
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\System Alert Popup
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “wblogon”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\VirusTriggerBin “(Default)”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler “{e0feeb92-908e-46d2-8a66-88c5295f2629}”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run “QuickTime Task”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run “VMware hptray”
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser “ITBar7Layout”


Download – Removal Tool for AntiVirus Trigger

6 Responses to “Remove AntiVirus Trigger – AntiVirusTrigger Removal Instructions”

  1. Donna Says:

    It is really a best technology which helped me to remove this harmful adware in my pc in just a few minutes which I had been trying for 2 days using other antispyware. thanks so much !!! :)

  2. Hugh Says:

    The Manual Removal process was well written and thorough. Great job and thank you for publishing this!

  3. van Says:

    This is the best, most detailed instructions I could find on AV trigger removal. Thank you for posting! I deleted the files and registry keys I could find (some were not there) in Safe mode, however the problem still persists after rebooting in a Normal mode. Before the removal, I saw a few of the harmful processes in the Task manager (hpmom.exe hpmon.exe qttask.exe and etc.) Now they’re gone, but a balloon still pops up in the tray a few seconds after restart and freezes my laptop control. How do I fix this? I tried Smitfraud as some sites suggested it didn’t help.

  4. Larry Says:

    I manually removed AV trigger using these instructions. It took a while but it is gone. I looked at other websites and most of the Registry items were not listed there. This took care of the last little annoying pop up from the task bar as well. I highly recommend these instructions.

  5. Me Says:

    I Love This Website… It’s so simple and helps with everything, I’m only 14 years old and I understood it so well… Other websites should be like this too, not only adults are going to get viruses… I didn’t understand anything about registry keys etc But I knew how to take them out! F*** AntiVirus Trigger :@
    But This Is The Best Website Ever!

  6. Ty Says:

    I hope this works!

Leave a Reply

*
To prove you're a person (not a spam script), type the security word shown in the picture. Click on the picture to hear an audio file of the word.
Click to hear an audio file of the anti-spam word