Uploaded December 2014 | Updated September 2026, 1 week ago
Original Video: youtube.com/watch?v=rYHFPXxdVqA
Back again with Braviax. This is a direct copy of Sirius/Zorton except with a name change. Removal instructions are still the same:
1. Boot into Safe Mode with Networking (computerhope.com/issues/chsafe.htm)
2. Download MBAM Free (malwarebytes.org/mwb-download/)
3. Install MBAM
4. Run a Threat Scan
5. Apply Actions
6. Reboot
Possible names include:
AVbytes XP Antivirus 2015
AVbytes Vista Antivirus 2015
AVbytes Win 7 Antivirus 2015
AVbytes Win 8 Antivirus 2015
AVbytes XP Protection 2015
AVbytes Vista Protection 2015
AVbytes Win 7 Protection 2015
AVbytes Win 8 Protection 2015
Original Video: youtube.com/watch?v=rYHFPXxdVqA
Back again with Braviax. This is a direct copy of Sirius/Zorton except with a name change. Removal instructions are still the same:
1. Boot into Safe Mode with Networking (computerhope.com/issues/chsafe.htm)
2. Download MBAM Free (malwarebytes.org/mwb-download/)
3. Install MBAM
4. Run a Threat Scan
5. Apply Actions
6. Reboot
Possible names include:
AVbytes XP Antivirus 2015
AVbytes Vista Antivirus 2015
AVbytes Win 7 Antivirus 2015
AVbytes Win 8 Antivirus 2015
AVbytes XP Protection 2015
AVbytes Vista Protection 2015
AVbytes Win 7 Protection 2015
AVbytes Win 8 Protection 2015


![ThinkPoint / Fake MSE Alternate Removal Guide + Manual Removal Instructions
Since this rogue has infected so many computers, I figure Id make another removal video, this time with alternate instructions.
1. Reboot your computer
2. After your manufacturers logo, tap the F8 key
3. Select Safe Mode with Networking
4. Select your operating system
5. Log in as the account named Administrator
6. Run Task Manager
7. Kill hotfix.exe
8. Run explorer.exe
9. Download and install Malwarebytes Anti-Malware from http://download.bleepingcomputer.com/malwarebytes/mbam-setup.exe and run a Quick Scan.
IF THIS DOES NOT WORK FOR YOU
10. Download Combofix from http://www.bleepingcomputer.com/download/anti-virus/combofix
11. Click Yes on the disclaimer
12. Click No on the Windows Recovery Console option
13. After the scan, dismiss the log and reboot your machine
MANUAL REMOVAL INSTRUCTIONS
Delete the following files:
%UserProfile%Application Datahotfix.exe (in Windows XP)
%UserProfile%AppDataroaminghotfix.exe (in Windows Vista/7)
(Hint: Type %userprofile% into the path field of an Explorer window to find where it is)
Navagate to the following registry key:
[HKEY_CURRENT_USER/SOFTWARE/MICROSOFT/WINDOWS NT/CURRENT_VERSION/Winlogon]
Edit the key
Shell
so that the data becomes
C:Windowsexplorer.exe
Note: For manual removal, you may need to log on to all accounts on the machine to fix the registry key
http://malwareup.org/donate
http://malwareup.org
http://malwareup.org/chat ThinkPoint / Fake MSE Alternate Removal Guide + Manual Removal Instructions](https://i.ytimg.com/vi/EdaaG96GsU4/mqdefault.jpg)







