Home > Threats > AntiKeep

AntiKeep - Not Virus, But Leads to Privacy Problems

Posted on 4 December 2009 under Rogue Programs

1. What is AntiKeep?

AntiKeep - not a virus, but there are cases it is considered that way. A more accurate description would be - misleading application (rogue program), intended to deceive user in order to gain financial benefits.

AntiKeep program uses a number of methods that have been proved as an effective way toward user deception. The whole point is to convince victim that the computer system is unstable, containing viruses. This is achieved by displaying fake Virus Warnings stating that "the computer is infected".

The next stage - AntiKeep advertising and persuading that it is capable to remove alleged problems on the computer. Advertising is implemented through fake Windows Security Center or promotional messages generated by the program itself.

At the time of AntiKeep installation, a large number of files are dropped into system directory with random names, which will be detected and treated as viruses by program scanner, although these files are unable to do any damage to a computer.

2. AntiKeep screen shot:


3. How to remove AntiKeep:

  1. Internet connection might be disabled or Internet browser might be blocked by AntiKeep, so it won't be possible to download any files to infected computer. In this case please download all files required for AntiKeep removal to another computer and then transfer them on the infected one using CD/DVD or USB flash drive.
  2. To remove AntiKeep download Spyware Doctor and install the program (for the installation guide click here). Before installation, make sure all other programs and windows are closed.
  3. After the installation, computer scan should be started automatically. If so, please move to the next step. If not, click "Status" on the left side menu and press "Scan Now" button to run computer scanner as shown in the picture below:

  4. After the scan has been completed and scan results have been generated, press "Fix Checked" button to remove AntiKeep.

  5. Restart the computer to complete AntiKeep removal procedure.

4. AntiKeep files:

AntiKeep.exe, setup.exe (setup file)

5. Hijackthis entries:

O4 - HKCU\..\Run: [AntiKeep.exe] C:\Program Files\AntiKeep Software\AntiKeep\AntiKeep.exe