By通过 Kristopher克里斯托

How to Remove Volcano Security Suite如何删除火山安全套件

Updated Nov 6, 2009已更新2009年11月6日

火山安全套件截图 Volcano Security Suite is an updated version of the older malware programs 火山安全套件是一个较旧的恶意软件程序的更新版本 Windows Enterprise Defender Windows企业后卫 and Virus Melt病毒熔体 . It looks almost exactly the same, and its tactics are nothing new, so no surprises here.它看起来几乎完全一样,其策略是什么新东西,所以没有感到惊奇。 You'd think with that name, there'd at least be explosive lava flows or something, but no.你要知道这个名字,有好多至少是爆炸性的熔岩流什么的,但没有。 Just the same old stuff.一样的旧东西。

It enters through ill-advised downloads and takes your computer hostage with Volcano Security Suite pop-ups, fake security scans, and scare tactics designed to mislead you into paying for a full version.通过它进入不明智下载并注意到你的火山电脑安全套件人质弹出窗口,假安全扫描,目的是误导的完整版本给你危言耸听。 It'll distribute a bunch of little files throughout your computer, but they don't do anything, and they're easy to remove.它会在你的计算机上没有一批文件,但他们没有做任何事,它们很容易消除。

Ready to plug up this program's puny eruptions?准备堵塞这一计划的弱小爆发? I'll show you how to remove Volcano Security Suite, for free.我会告诉你如何删除免费火山安全套件。

Do You Have Volcano Security Suite?你有火山安全套件?

When you're infected with badware — whether it's Volcano Security Suite, spyware, adware, a Trojan, or a virus — there are a few key symptoms.当你感染了恶意软件-无论是火山安全套件,间谍软件,广告软件,木马,或病毒-有几个关键的症状。 Have you noticed…你注意到...

  • Slow computer performance : It just takes one parasite like Volcano Security Suite to slow your computer dramatically. 慢速计算机性能 :它只是需要一个像火山安全套件寄生虫您的计算机显着放缓。 If your PC takes longer than usual to reboot, or if your Internet connection is unusually slow, you may be infected with Volcano Security Suite.如果您的电脑需要比通常要重新启动,或者如果您的Internet连接异常缓慢长,你可能感染了火山的安全套件。
  • New desktop shortcuts or switched homepage : Badware like Volcano Security Suite may change your Internet settings to redirect your homepage to another site. 新的桌面快捷方式或交换网页 :像火山安全套件恶意软件可能会改变您的互联网设置您的网页重定向到另一个站点。 Badware can even add desktop shortcuts to your PC.恶意软件甚至可以添加桌面快捷方式到您的PC。
  • Annoying popups : Badware can bombard your computer with popup ads, even when you're not online.恼人的弹出式窗口 ,恶意软件可以轰炸您的计算机上弹出的广告,即使你不在线。 Through these popups, you may be tricked into downloading more spyware.通过这些弹出式窗口,您可能会欺骗用户下载更多的间谍软件。

How to Remove Volcano Security Suite Manually如何删除手动火山安全套件

火山安全套件警告 Before we get started, you should backup your system and your registry, so it'll be easy to restore your computer if anything goes wrong.在我们开始之前,您应该备份您的系统注册表,因此它很容易恢复,如果您的电脑出了岔子。

To remove Volcano Security Suite manually, you need to delete Volcano Security Suite files.要删除火山安全套件手动,您需要删除火山安全套件的文件。 Not sure不能确定 how to delete Volcano Security Suite files如何删除文件火山安全套件 ? Click here点击这里 , and I'll show you. ,我会告诉您。 Otherwise, go ahead and…否则,请继续...

Stop Volcano Security Suite processes: 停止火山安全套件过程:

asp2009.exe asp2009.exe
VS83b.exe VS83b.exe

Remove Volcano Security Suite registry values: 火山安全套件删除注册表值:

HKEY_CLASSES_ROOT\asp2009.DocHostUIHandler HKEY_CLASSES_ROOT \ asp2009.DocHostUIHandler
HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF} HKEY_CLASSES_ROOT \ CLSID中\(3F2BBC05 - 40DF - 11D2 - 9455 - 00104BC936FF)
HKEY_CURRENT_USER\Software\Classes\Software\Microsoft\Internet Explorer\SearchScopes “URL” = “http://search-gala.com/?&uid=8000&q={searchTerms}” HKEY_CURRENT_USER \软件\班\软件\微软\的Internet Explorer \ SearchScopes“网址”=“http://search-gala.com/?&uid=8000&q =(searchTerms)”
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download “RunInvalidSignatures” = “1″ HKEY_CURRENT_USER \软件\微软\的Internet Explorer \下载“RunInvalidSignatures”=“1”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform “[xSP_2:61a6083b6194a2314e3dd54cf9615e36_8000]” HKEY_CURRENT_USER \软件\微软\窗口\ CurrentVersion \ Internet设置\ 5.0 \用户代理\发布平台“[xSP_2:61a6083b6194a2314e3dd54cf9615e36_8000]”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform “7988094803″ HKEY_CURRENT_USER \软件\微软\窗口\ CurrentVersion \ Internet设置\ 5.0 \用户代理\发布平台“7988094803”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “avgsys” HKEY_CURRENT_USER \软件\微软\窗口\ CurrentVersion \运行“avgsys”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “MSMSGS” HKEY_CURRENT_USER \软件\微软\窗口\ CurrentVersion \运行“MSMSGS”

Remove Volcano Security Suite DLLs: 删除火山安全套件的DLL:

%UserProfile%\Recent\ddv.dll为%USERPROFILE%\近期\ ddv.dll
%UserProfile%\Recent\runddlkey.dll为%USERPROFILE%\近期\ runddlkey.dll
%Temp%\asp2009.exe的%Temp%\ asp2009.exe
%Temp%\mozcrt19.dll的%Temp%\ mozcrt19.dll
%Temp%\sqlite3.dll的%Temp%\ sqlite3.dll

Delete Volcano Security Suite files: 删除火山安全套件文件:

c:\Documents and Settings\All Users\Application Data\61a60\VS83b.exe ç:\ Documents和设置\所有用户\应用数据\ 61a60 \ VS83b.exe
c:\Documents and Settings\All Users\Application Data\VSSSys\vss.cfg ç:\ Documents和设置\所有用户\应用数据\ VSSSys \ vss.cfg
c:\Program Files\Mozilla Firefox\searchplugins\search.xml ç:\ Program Files文件\ Mozilla Firefox浏览器\ searchplugins \ search.xml
%UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\Volcano Security Suite.lnk为%USERPROFILE%\应用数据\微软\的Internet Explorer \快速启动\火山安全Suite.lnk
%UserProfile%\Application Data\Volcano Security Suite\cookies.sqlite为%USERPROFILE%\应用数据\火山安全套件\ cookies.sqlite
%UserProfile%\Desktop\Volcano Security Suite.lnk为%USERPROFILE%\桌面\火山安全Suite.lnk
%UserProfile%\Recent\ANTIGEN.sys为%USERPROFILE%\近期\ ANTIGEN.sys
%UserProfile%\Recent\cb.dll为%USERPROFILE%\近期\ cb.dll
%UserProfile%\Recent\cb.tmp为%USERPROFILE%\近期\ cb.tmp
%UserProfile%\Recent\CLSV.tmp为%USERPROFILE%\近期\ CLSV.tmp
%UserProfile%\Recent\DBOLE.sys为%USERPROFILE%\近期\ DBOLE.sys
%UserProfile%\Recent\eb.tmp为%USERPROFILE%\近期\ eb.tmp
%UserProfile%\Recent\fan.drv为%USERPROFILE%\近期\ fan.drv
%UserProfile%\Recent\FS.drv为%USERPROFILE%\近期\ FS.drv
%UserProfile%\Recent\kernel32.drv为%USERPROFILE%\近期\ kernel32.drv
%UserProfile%\Recent\PE.drv为%USERPROFILE%\近期\ PE.drv
%UserProfile%\Recent\ppal.sys为%USERPROFILE%\近期\ ppal.sys
%UserProfile%\Recent\runddlkey.drv为%USERPROFILE%\近期\ runddlkey.drv
%UserProfile%\Recent\tempdoc.sys为%USERPROFILE%\近期\ tempdoc.sys
%UserProfile%\Start Menu\Volcano Security Suite.lnk为%USERPROFILE%\开始菜单\火山安全Suite.lnk
%UserProfile%\Start Menu\Programs\Volcano Security Suite.lnk为%USERPROFILE%\开始菜单\程序\火山安全Suite.lnk
%Temp%\24.mof的%Temp%\ 24.mof
%Temp%\asp2009.exe的%Temp%\ asp2009.exe
%Temp%\VSSSys的%Temp%\ VSSSys
%Temp%\VSS.ico的%Temp%\ VSS.ico
%Temp%\VSSSys\vd952342.bd的%Temp%\ VSSSys \ vd952342.bd

Get rid of Volcano Security Suite folders: 摆脱火山Security Suite的文件夹:

c:\Documents and Settings\All Users\Application Data\61a60 ç:\ Documents和设置\所有用户\应用数据\ 61a60
c:\Documents and Settings\All Users\Application Data\VSSSys ç:\ Documents和设置\所有用户\应用数据\ VSSSys
%UserProfile%\Application Data\Volcano Security Suite为%USERPROFILE%\应用数据\火山安全套件

Note: In any Volcano Security Suite files I mention above, “%UserProfile%” is a variable referring to your current user's profile folder. 注:在任何火山安全套件我上面提到的文件,“为%USERPROFILE%”是指一个变量的当前用户的配置文件夹。 If you're using Windows NT/2000/XP, by default this is “C:\Documents and Settings\[CURRENT USER]” (eg, “C:\Documents and Settings\JoeSmith”). 如果您使用默认的Windows NT/2000/XP的,这是“C:\ Documents和Settings \ [当前用户]”(例如类,“C:\ Documents和Settings \ JOESMITH”的)。 If you have any questions about manual Volcano Security Suite removal, go ahead and leave a comment. 如果您对人工火山安全套件清除,请继续发表评论的任何问题。

How Do You Remove Volcano Security Suite Files?你如何删除火山安全套件文件?

Need help figuring out how to delete Volcano Security Suite files?需要帮助解决如何删除火山安全套件文件? While there's some risk involved, and you should only manually remove Volcano Security Suite files if you're comfortable editing your system, you'll find it's fairly easy to delete Volcano Security Suite files in Windows.虽然有一些涉及的危险,你应该只手动删除火山安全套件的文件,如果你舒服编辑您的系统,你会发现它非常容易删除火山安全套件在Windows文件。

How to delete Volcano Security Suite files in Windows XP and Vista: 如何安全删除火山在Windows XP和Vista套房文件:

  1. Click your Windows Start menu, and then click “ Search .”单击您的Windows 开始菜单,然后点击“ 搜索 ”。
  2. A speech bubble will pop up asking you, “ What do you want to search for? ” Click “ All files and folders .”阿讲话泡沫会弹出问你,“ 你要查找 ?”点击“ 所有文件和文件夹 。”
  3. Type a Volcano Security Suite file in the search box, and select “ Local Hard Drives .”键入一个火山安全套件文件在搜索框中,然后选择“ 本地硬盘驱动器 。”
  4. Click “ Search .” Once the file is found, delete it.点击“ 搜索”。一旦找到该文件,删除它。

How to stop Volcano Security Suite processes: 如何阻止火山安全套件过程:

  1. Click the Start menu, select Run .单击开始菜单,选择运行
  2. Type taskmgr.exe into the the Run command box, and click “ OK .” You can also launch the Task Manager by pressing keys CTRL + Shift + ESC . 键入 taskmgr.exe到运行命令框中,然后点击“ 确定 ”。您也可以通过按启动 CTRL任务管理器+ SHIFT键 + ESC键
  3. Click Processes tab, and find Volcano Security Suite processes.单击进程选项卡,找到火山安全套装进程。
  4. Once you've found the Volcano Security Suite processes, right-click them and select “ End Process ” to kill Volcano Security Suite.一旦找到火山的安全套件过程中,右键单击并选择“结束进程 ”杀死火山安全套件。

How to remove Volcano Security Suite registry keys: 如何删除火山安全套件的注册表项:

火山安全套件警告 Because your registry is such a key piece of your Windows system, you should always backup your registry before you edit it.由于注册表是如此您的Windows系统的关键部分,你应该总是备份注册表,然后再进行编辑。 Editing your registry can be intimidating if you're not a computer expert, and when you change or a delete a critical registry key or value, there's a chance you may need to reinstall your entire system. Make sure your backup your registry before editing it.编辑注册表,可吓人,如果你不是一个电脑专家,当您更改或删除关键注册表项或值,有一个机会,你可能需要重新安装整个系统。 确保您的备份您编辑注册表之前它。

  1. Select your Windows menu “ Start ,” and click “ Run .” An “ Open ” field will appear.选择您的Windows菜单“ 开始 ”,单击“ 运行 ”。“ 开放 ”字段将显示。 Type “ regedit ” and click “ OK ” to open up your Registry Editor.键入“regedit”并单击“ 确定 ”打开注册表编辑器。
  2. Registry Editor will open as a window with two panes. 注册表编辑器将打开一个与两个窗格的窗口。 The left side Registry Editor's window lets you select various registry keys, and the right side displays the registry values of the registry key you select.在注册表编辑器左侧的窗口,您可以选择不同的注册表项,右边显示的注册表项您选择的注册表值。
  3. To find a registry key, such as any Volcano Security Suite registry keys, select “ Edit ,” then select “ Find ,” and in the search bar type any of Volcano Security Suite's registry keys.为了找到一个注册表项,如任何火山安全套件的注册表项,选择“ 编辑 ”,然后选择“ 查找 ”,在搜索栏中键入任何火山安全套装的注册表项。
  4. As soon as Volcano Security Suite registry key appears, you can delete the Volcano Security Suite registry key by right-clicking it and selecting “ Modify ,” then clicking “ Delete .”只要火山安全套件的注册表项时,您可以删除右键单击它并选择“ 修改 ”,然后点击“ 删除火山的安全套件的注册表项。”

How to delete Volcano Security Suite DLL files: 如何删除火山安全套件DLL文件:

  1. First locate Volcano Security Suite DLL files you want to delete.首先找到火山安全套件DLL文件要删除。 Open your Windows Start menu, then click “ Run .” Type “ cmd ” in Run, and click “ OK .”打开你的Windows 开始菜单,然后单击“ 运行 ”。键入“cmd中运行”,然后单击“ 确定 ”。
  2. To change your current directory, type “ cd ” in the command box, press your “ Space ” key, and enter the full directory where the Volcano Security Suite DLL file is located.要更改当前目录,键入“cd在命令框”,按你的“ 空间 ”键,并输入完整的目录火山的安全套件的DLL文件的位置。 If you're not sure if the Volcano Security Suite DLL file is located in a particular directory, enter “ dir ” in the command box to display a directory's contents.如果你不知道火山安全套件DLL文件位于一个特定的目录,输入“ 迪尔在命令中”以显示目录的内容。 To go one directory back, enter “ cd .. ” in the command box and press “ Enter .”去一回的目录,输入“,在命令框,然后按光盘..”“输入 ”。
  3. When you've located the Volcano Security Suite DLL file you want to remove, type “ regsvr32 /u SampleDLLName.dll ” (eg, “regsvr32 /u jl27script.dll”) and press your “ Enter ” key.当你所在的火山安全套件DLL文件要删除,键入“regsvr32 / U系列SampleDLLName.dll”(例如,“键入regsvr32 / ü jl27script.dll”),然后按你的“ 输入 ”键。

That's it.就是这样。 If you want to restore any Volcano Security Suite DLL file you removed, type “regsvr32 DLLJustDeleted.dll” (eg, “regsvr32 jl27script.dll”) into your command box, and press your “Enter” key.如果你想恢复任何火山安全套件您删除DLL文件,键入“regsvr32 DLLJustDeleted.dll”(例如,“Regsvr32的jl27script.dll”)到您的命令框,然后按你的“输入”键。

Did Volcano Security Suite change your homepage? 没有火山安全套件更改您的主页?

  1. Click Windows Start menu > Control Panel > Internet Options .单击Windows 开始菜单>“控制面板 ”> Internet选项
  2. Under Home Page , select the General > Use Default .主页选择常规>“使用默认值
  3. Type in the URL you want as your home page (eg, “http://www.homepage.com”).在您的网址为您的主页要类型(例如,“http://www.homepage.com”)。
  4. Select Apply > OK .选择应用“确定
  5. You'll want to open a fresh web page and make sure that your new default home page pops up.您想打开一个新网页,并确保您的新的默认主页弹出。

Volcano Security Suite Removal Tip火山安全套件移除提示

Is your computer acting funny after deleting any Volcano Security Suite files?是您的计算机有异常后,删除任何火山安全套件文件? I recommend using a program like我建议使用一个程序一样 File Recover文件恢复 from PC Tools.从PC工具。 File Recover saves deleted files that otherwise can't be recovered by Windows operating sytem.恢复已删除的文件保存,否则无法由Windows操作系统sytem恢复的文件。

Want to save time finding Volcano Security Suite files?想节省时间找到火山安全套件文件? Download Spyware Doctor下载Spyware Doctor , let it find the Volcano Security Suite files for you, and then manually delete Volcano Security Suite files. ,让它找到火山的安全套件为您的文件,然后手动删除火山安全套件的文件。

How Did You Get Volcano Security Suite?你是怎么火山安全套件?

Wondering how Volcano Security Suite ended up on your PC?想知道如何结束火山安全套件在您的PC呢? If you're infected with Volcano Security Suite or other badware, perhaps you were using…如果你感染了火山安全套件或其他有害软件,也许你正在使用...

  • Freeware or shareware : Did you download and install shareware or freeware? 免费软件或共享软件 :你下载并安装共享软件或免费软件? These low-cost or free software applications may come bundled with spyware, adware, or programs like Volcano Security Suite.这些低成本或免费软件应用程序可能会捆绑了间谍软件,广告,或者像火山安全套件程序。 Sometimes adware is attached to the free software to “pay” developers for the cost of creating the software, and more often spyware is secretly attached to free software to harm your computer and steal your personal and financial information.有时,广告软件连接到免费软件,“支付”为制造商的软件成本,而且往往是秘密间谍软件连接到免费软件,损害您的计算机,窃取你的个人和财务信息。
  • Peer-to-peer software : Do you use a peer-to-peer (P2P) program or other application with a shared network? 对等网络软件 :您使用的是点对点(P2P)的程序或共享的网络与其他应用程序? When you use these applications, you put your system at risk for unknowingly downloading an infected file, including applications like Volcano Security Suite.当您使用这些应用程序,你将在不知不觉下载受感染的文件,包括像火山安全套件应用系统的风险。
  • Questionable websites : Did you visit a website that's of questionable nature?可疑的网站你访问一个网站,有问题的性质的? When you visit malicious sites that are fishy and phishy, badware may be automatically downloaded and installed onto your computer, sometimes including applications like Volcano Security Suite.当您访问是腥味和phishy恶意网站,恶意软件可能会自动下载并安装到您的电脑,有时包括像火山安全套件应用程序。 I recommend you use Firefox web browser, if you don't already.我建议你使用Firefox浏览器,如果你不已经。

Understanding Volcano Security Suite理解火山安全套件

If you're infected with Volcano Security Suite, you should know what you're fighting.如果你与Volcano安全套件感染,你应该知道你在战斗。 I'll explain some definitions related to Volcano Security Suite.我会解释有关火山安全套件的定义。

Volcano Security Suite May Be Rogue Anti-Spyware火山安全套件可能会被流氓反间谍软件

Rogue anti-spyware refers to anti-spyware/antivirus software of questionable value.流氓反间谍软件是指其价值十分可疑anti-spyware/antivirus软件。 Rogue anti-spyware may not be proven to protect your computer from spyware, may popup fake alerts or create many false positives about your PC being infected, or may use scare tactics to try to get you to purchase the application.流氓反间谍软件可能无法证明,以保护您的计算机免受间谍软件,可能会弹出假警报或创建你的个人电脑的误报率受到感染,或者可能使用威吓手段,试图让你购买申请。 Rogue anti-spyware software may be installed by a Trojan, come bundled with other software, or install itself through web browser security holes.流氓反间谍软件可能会安装一个特洛伊木马,来与其他软件,或安装通过Web浏览器的安全漏洞本身捆绑。 While it is fairly rare, some rogue anti-spyware is created and distributed by known spyware or adware companies, and the rogue anti-spyware may install spyware or adware itself.虽然这是相当罕见,一些流氓反间谍软件是创建和已知的间谍软件或广告公司的分布,以及流氓反间谍软件可能会安装间谍软件或广告软件本身。

Often when you're infected with rogue anti-spyware like Volcano Security Suite, you'll see a false popup security alert like this:通常当你感染,像火山流氓反间谍软件的安全套件,您会看到这样的虚假弹出安全警报:

Volcano Security Suite  popup

Rogue Anti-Spyware Tactics 流氓反间谍软件策略

Typically, rogue anti-spyware such as Volcano Security Suite has one or more of the qualities listed below, which is why rogue anti-spyware is considered anti-spyware software of questionable value.通常情况下,流氓反间谍软件,如火山安全套装有一个或下面列出的素质,这就是为什么流氓反间谍软件被认为是反间谍软件的问题更多的价值。

  • False positives/fake alerts : Rogue anti-spyware may produce a large number of false positives or use fake alerts, noting that your computer is infected with spyware parasites or other threats that do not really exist. 假阳性/假警报 :流氓反间谍软件可能产生的误报或使用大量假警报,并指出您的计算机间谍软件或其他威胁寄生虫没有真正存在感染。
  • Copycat looks : Rogue anti-spyware may copy the look and feel of other legitimate or rogue anti-spyware applications. 模仿的样子 :流氓反间谍软件可以复制的外观和感觉其他合法或流氓反间谍软件应用程序。 Often, rogue anti-spyware applications may appear as close clones of other rogue anti-spyware software.通常,流氓反间谍软件应用程序可能会显示为其他流氓反间谍软件与克隆。
  • High pressure marketing : Rogue anti-spyware may use scare tactics or other aggressive advertising and marketing tactics to try to trick you into buying the rogue anti-spyware application. 高压营销 :流氓反间谍软件可能会使用威吓手段或其他攻击性的广告和营销策略,试图引诱购买流氓反间谍软件应用程序。 Often, rogue anti-spyware may produce false positives and fake alerts about your computer being infected.通常,流氓反间谍软件可能会产生假阳性和假警报被感染您的计算机。
  • Poor detection/scan reporting : Rogue anti-spyware may produce poor reports when it scans your PC. 可怜的检测/扫描报告 :流氓反间谍软件时,可能会产生扫描你的电脑穷人的报告。 For example, rogue anti-spyware may say your computer is infected 11 parasites, but not specify which spyware parasites or what type of parasites.例如,流氓反间谍软件可能会说您的计算机感染11寄生虫,但没有说明是什么间谍寄生虫或寄生虫的类型。 Rogue anti-spyware may also report that your PC is infected with SafeAndClean, but not tell you which related files, DLLS, etc. were found on your computer.流氓反间谍软件也可以报告您的电脑与SafeAndClean感染,但不会告诉你的相关文件,DLL的费用等,则您的计算机上找到。
  • Weak scanning/detection : Rogue anti-spyware may not only poorly report on computer infection, but rogue antispyware may also poorly scan your PC. 弱扫描/检测 :流氓反间谍软件不仅可能很差计算机感染报告,但流氓反间谍软件也可能很差扫描你的电脑。 Rogue anti-spyware may skip over important folders and files of your computer that should be scanned to detect spyware.流氓反间谍软件可以跳过重要文件和计算机上的文件应扫描检测间谍软件。

Did Volcano Security Suite use these tactics to trick you into buying Volcano Security Suite?没有火山安全套装使用这些手段,诱骗购买火山安全套件吗?