SecureKeeper is a rogue antivirus application in the Wini family (with their recent new look user interface.) The Wini family is a very long running line of rogue security applications that have been producing two to three different rogues each week. Of course, the primary changes are the names, but the way of operating is about the same. These will be pushed on users through supposed flash player or video codec downloads. Then will claim that the system is infected with many viruses and that the only thing you need to do to remove the viruses is to purchase their software. Please don’t purchase securekeeper and finance this scam. Read on for how to remove SecureKeeper.
First you may wish to visit the control panel and attempt to uninstall securekeeper via the add/remove programs link in the control panel. Even if this works I still would want to install, update and run a scan with malwarebytes antimalware as well as a trusted antivirus application such as Avira/AVG or another legitimate antivirus application. (Online scans such as trendmicro’s housecall would be all right as well.)
You will likely want to block the following website:
Download and install Malwarebytes antimalware from the virus removal toolkit page. While you are there you may also want to download process explorer as you may need it further in the removal process. Install, update and run a full scan with malwarebytes antimalware. If you are unable to install malwarebytes you may try the following tricks. 1) rename the installer mbam-setup.exe to something else like firefox.exe. Then retry the install, update and scan. 2) reboot into safe mode with networking and retry the installer/update and scan. 3) follow the next step which involves killing off the running processes associated with SecureKeeper and then retry the install of malwarebytes.
The following processes are associated with SecureKeeper and should be killed off using the task manager. If you are unable to launch the task manager you may try the following. 1) copy the program file for task manager (taskmgr.exe) and paste the copy to the desktop. Then rename it to firefox.exe or iexplore.exe and retry launching it. 2) reboot into safe mode and see if the processes are running and if they are try to kill them off. 3) Use process explorer instead of task manager to kill off the following processes:
There may be a randomization component to the naming of the files listed above. For that reason you may not see identical names. Use the patterns you see above and the file locations listed below along with what you see on your system to figure out which processes on your system should be killed off.
The following dll should be found, de-registered and deleted:
Again – there may be some randomization – use the patterns above, the folders below, along with what you find on your system to determine which dll should be de-registered.
The following files and folders are from Secure Keeper and should be deleted for a manual removal of securekeeper.
%docs%All UsersStart MenuProgramsSecureKeeper
%docs%All UsersStart MenuProgramsSecureKeeper1 SecureKeeper.lnk
%docs%All UsersStart MenuProgramsSecureKeeper2 Homepage.lnk
%docs%All UsersStart MenuProgramsSecureKeeper3 Uninstall.lnk
You may notice again that there are file names that appear to be created at random in the list above. Please use the patterns you see above as well as the actual files you see on your system as a guide for what should be deleted. After this you have almost completed your removal of securekeeper. To make sure that things are thoroughly cleaned I would follow up at this point with a full scan with a tool such as malwarebytes antimalware and a virus scan (trendmicros online housecall or AVG/Avira/etc.)
Related PostsRelated Posts
- How to Remove AntiAid | AntiAid Removal Guide AntiAid is a rogue antivirus/security program that is from the Wini family of Rogues. This is a bit of a departure from much of the long recent history of these rogues due to a new user interface. This rogue (and it's family) is usually advertised (pushed would be a better......
- How to Remove SysDefence | Sysdefence Removal Guide Sysdefence is another rogue antivirus application from the wini family. This family of rogues has been quite prolific lately and typically is pushed on computer users through aggressive trojans that will appear on web pages masquerading as an update for flash player or a video codec for a video that......
- How to Remove ProtectPCs | ProtectPCs Removal Guide ProtectPCs is a rogue antivirus application from the Wini family of rogues. It will push itself through claims of it being a video codec update or flash player update. Usually these appear on a site that shows up in the search results for whatever latest greatest sought after video clip......
- Door Installation Instructions for Knocked-Down Pre-Hung Doors Doors are something in our homes that we often take for granted. On the surface they are fairly simple, but as with most things in the home they’re a lot more difficult to deal with when you’re doing it yourself. Below you’ll find some door installation instructions to help you......
- Is Social Security a Ponzi Scheme? (Part 2: An Explanation of Social Security Works) The following is a continuation of the Is Social Security a Ponzi Scheme? (Part 1). That article dealt with the history of Charles Ponzi and the original Ponzi scheme. In this article we'll cover the Social Security system in general. Social Security also works best as a pyramid There is......
- Social Security's Death Clock Ticks Faster this Year [Today's guest post is by Kosmo, a man with more irons in the fire than your local iron incinerator. He recently launched a consulting business (Sparks by Kosmo) and announced plans to publish a book on the lives of sports card collectors. Today, as he pursues a run at the......
- How to Remove AntiTroy | AntiTroy Removal Guide
- How to Remove TrustSoldier | Trust Soldier Removal Guide
- How to Remove KeepCop | Keep Cop Removal Guide
- How to Remove ReAnti | ReAnti Removal Guide
- How to Remove AntiAdd | AntiAdd Removal Guide