What is VirusProtectPro?
- Type: Spyware
- Category: Rogue Programs
- Discovered: 5 July 2007
- Removal tools: Malwarebytes' Anti-Malware, Spyware Doctor
1. Introduction
VirusProtectPro is classified as Fake Antispyware Application.
Trojan under dll file extension causes VirusProtectPro infection. Suspicious icon in the tasbar area is displaying security alerts saying that your computer is infected. After downloading VirusProtectPro a scan will be performed. Then the user is persuaded to buy licensed program version to clean the computer from malware.
VirusProtectPro can also be named as: Virus Protect Pro, VirusProtect Pro, VirusProtectPro 3.3, VirusProtectPro 3.4, VirusProtectPro 3.5, VirusProtectPro 3.6, VirusProtectPro 3.7.
Trojan under dll file extension causes VirusProtectPro infection. Suspicious icon in the tasbar area is displaying security alerts saying that your computer is infected. After downloading VirusProtectPro a scan will be performed. Then the user is persuaded to buy licensed program version to clean the computer from malware.
VirusProtectPro can also be named as: Virus Protect Pro, VirusProtect Pro, VirusProtectPro 3.3, VirusProtectPro 3.4, VirusProtectPro 3.5, VirusProtectPro 3.6, VirusProtectPro 3.7.
2. VirusProtectPro removal tools:
- Malwarebytes' Anti-Malware (for the installation guide click here)
- Spyware Doctor (for the installation guide click here)
3. Screenshot:

4. VirusProtectPro files:
afzdbl.dll, ayjhc.dll, bgwttyl.dll, ccyszwl.dll, cefrjsh.dll, cfqbw.dll, cqsfk.dll, ddomv.dll, dyrwls.dll, eigbbb.dll, fdpzgi.dll, fqdqs.dll, fshqaln.dll, fwjgtk.dll, fwrkqfl.dll, fyhwfc.dll, gkymhk.dll, gusur.dll, guxmhcd.dll, igzxwrl.dll, iklqcx.dll, khtbpdl.dll, ktrxe.dll, kvfvw.dll, kzpkwj.dll, lapmvzf.dll, lrnjnzf.dll, mivmv.dll, muvdjo.dll, myqlejy.dll, nexpegp.dll, nuqjici.dll, onljweo.dll, osdjhjc.dll, psndz.dll, ryxrho.dll, surzzh.dll, tiqmcx.dll, tkrsw.dll, tmxxxh.dll, tqcwm.dll, ugofuq.dll, vgibz.dll, vjxwnn.dll, vophqmn.dll, vvihh.dll, wfcof.dll, vpccw.dll, wpchz.dll, wzhtjqo.dll, xnvaogd.dll, xtsyynm.dll, yhjbbzf.dll, zdwii.dll, zkpssqa.dll, zpeolvh.dll, zpuwriz.dllVirusProtectPro 3.3.exe, VirusProtectPro 3.4.exe, VirusProtectPro 3.5.exe, VirusProtectPro 3.6.exe, VirusProtectPro 3.7.exe
5. Hijackthis entries:
O4 Entries
O4 - HKLM\..\Run: [VirusProtectPro 3.3] "C:\Program Files\VirusProtectPro 3.3\VirusProtectPro 3.3.exe" /h
O4 - HKLM\..\Run: [VirusProtectPro 3.4] "C:\Program Files\VirusProtectPro 3.4\VirusProtectPro 3.4.exe" /h
O4 - HKLM\..\Run: [VirusProtectPro 3.5] "C:\Program Files\VirusProtectPro 3.5\VirusProtectPro 3.5.exe" /h
O4 - HKLM\..\Run: [VirusProtectPro 3.6] "C:\Program Files\VirusProtectPro 3.6\VirusProtectPro 3.6.exe" /h
O4 - HKLM\..\Run: [VirusProtectPro 3.7] "C:\Program Files\VirusProtectPro 3.7\VirusProtectPro 3.7.exe" /h
O22 Entries
O22 - SharedTaskScheduler: acanthology - {cfda6372-043c-48d2-ba3c-7bfe1cf71854} - C:\WINDOWS\system32\bgwttyl.dll
O22 - SharedTaskScheduler: adirondack - {547aaa89-7e6b-42b4-b112-a64955f86a2a} - C:\Windows\system32\zpuwriz.dll
O22 - SharedTaskScheduler: aguilarite - {1c6fd4e6-49ce-4178-875b-df70eac260c5} - C:\WINDOWS\System32\fdpzgi.dll
O22 - SharedTaskScheduler: amateurishly - {1152a0e8-5be5-41cc-8312-556581690a61} - C:\WINDOWS\SYSTEM\cfqbw.dll
O22 - SharedTaskScheduler: amberoids - {4688f900-0d0c-4788-b297-59cc10e70ccc} - C:\WINDOWS\system32\zpeolvh.dll
O22 - SharedTaskScheduler: araca - {8068bf35-3711-4dce-a2f3-f008cecfe894} - C:\WINDOWS\system32\afzdbl.dll
O22 - SharedTaskScheduler: biocomputing - {98ca7898-6029-41ab-8f67-ea4f5e1afc22} - C:\WINDOWS\system32\myqlejy.dll
O22 - SharedTaskScheduler: clamourers - {b8b3850e-a22e-43ab-a15e-63f6e47db7e6} - C:\WINDOWS\system32\tkrsw.dll
O22 - SharedTaskScheduler: convalescently - {cea2e5cd-e849-427b-80f0-59298caef1c4} - C:\WINDOWS\system32\cqsfk.dll
O22 - SharedTaskScheduler: coronally - {1b17f1db-790e-4d42-8e0c-d4d19123ee5b} - C:\WINDOWS\system32\xnvaogd.dll
O22 - SharedTaskScheduler: criticalness - {bd2948f8-c949-464f-824a-6272608c739e} - C:\Windows\system32\vjxwnn.dll
O22 - SharedTaskScheduler: cyk - {49f29a27-2451-4314-a480-8d2481ce6c81} - C:\WINDOWS\system32\yhjbbzf.dll
O22 - SharedTaskScheduler: discommodiousness - {33b8d257-07f6-4c06-8605-94bc21728635} - C:\WINDOWS\system32\onljweo.dll
O22 - SharedTaskScheduler: dustuck - {4a9e875b-d032-45e4-8294-789fe3be5b19} - C:\WINDOWS\system32\vgibz.dll
O22 - SharedTaskScheduler: enlodgement - {aa6d4f53-4c8d-4549-84d2-02d584acc4e9} - C:\WINDOWS\system32\wzhtjqo.dll
O22 - SharedTaskScheduler: eperdument - {c704547b-26c0-4222-a034-81653c07b494} - C:\WINDOWS\system32\ugofuq.dll
O22 - SharedTaskScheduler: exultet - {4f5f16ef-af9d-4fe6-8410-f0670b58979d} - C:\WINDOWS\system32\gusur.dll
O22 - SharedTaskScheduler: fagging - {94524218-9af3-4643-9687-cbc2880e54da} - C:\WINDOWS\system32\nuqjici.dll
O22 - SharedTaskScheduler: firstlings - {9af8f31b-b778-4413-b8ed-ae63a62e1f7d} - C:\WINDOWS\system32\wfcof.dll
O22 - SharedTaskScheduler: formicivora - {a1c16871-b797-4ec7-bbee-83852379c390} - C:\WINDOWS\system32\cefrjsh.dll
O22 - SharedTaskScheduler: grazable - {fa55d551-9698-48ac-b639-9b00cf1a6ea0} - C:\WINDOWS\system32\psndz.dll
O22 - SharedTaskScheduler: helicoid - {e71aba09-d81a-4876-baa3-df133c1dfc48} - C:\WINDOWS\System32\vophqmn.dll
O22 - SharedTaskScheduler: hieroglyphist - {fde1bd72-ca80-443f-9526-595337b73878} - C:\WINDOWS\system32\lapmvzf.dll
O22 - SharedTaskScheduler: hutlet - {c82e1789-207a-4b8a-806f-76b62dfac2a2} - C:\WINDOWS\system32\khtbpdl.dll
O22 - SharedTaskScheduler: hyams - {e4c46558-da01-4637-a85e-f1ccb1c7436a} - C:\Windows\system32\lrnjnzf.dll
O22 - SharedTaskScheduler: hydronephrosises - {5889f7b0-3277-4266-b4bd-1bf2d394aee6} - C:\WINDOWS\system32\wpchz.dll
O22 - SharedTaskScheduler: idealise - {eb86b46a-d6db-4478-8f5f-06cb2ebc1b35} - C:\WINDOWS\system32\dyrwls.dll
O22 - SharedTaskScheduler: inscenation - {cfda6372-043c-48d2-ba3c-7bfe1cf71854} - C:\WINDOWS\system32\surzzh.dll
O22 - SharedTaskScheduler: atrichia - {4a9e875b-d032-45e4-8294-789fe3be5b19} - C:\WINDOWS\system32\fshqaln.dll
O22 - SharedTaskScheduler: hemprich - {af8bca8b-a9f1-471d-bdcd-caa14be2bdd9} - C:\WINDOWS\system32\ktrxe.dll
O22 - SharedTaskScheduler: arouse - {c4da240e-7525-404a-b366-f50a422376d8} - C:\WINDOWS\system32\eigbbb.dll
O22 - SharedTaskScheduler: electroosmoses - {eb86b46a-d6db-4478-8f5f-06cb2ebc1b35} - C:\WINDOWS\system32\nexpegp.dll
O22 - SharedTaskScheduler: clinker - {a4029063-4fe3-422c-ac72-12905c09642a} - C:\WINDOWS\system32\xtsyynm.dll
O22 - SharedTaskScheduler: heterostyly - {cd0e4a1a-dbc2-48f7-9a6a-a41cac20bddc} - C:\WINDOWS\system32\fqdqs.dll
O22 - SharedTaskScheduler: counterclaim - {e758745e-b8aa-47ac-a652-6307ff5f3ebf} - C:\WINDOWS\system32\vpccw.dll
O22 - SharedTaskScheduler: archiblast - {bd1299cd-b98a-4ee1-9ae3-d3cb3da41d0d} - C:\WINDOWS\system32\ryxrho.dll
O22 - SharedTaskScheduler: bosken - {d1e5ca97-235e-4ff0-9b92-7543c9d61ff4} - C:\WINDOWS\system32\zkpssqa.dll
O22 - SharedTaskScheduler: dizening - {70d17a5f-ef27-4295-90f5-20ad6f24834f} - C:\WINDOWS\system32\tmxxxh.dll
O22 - SharedTaskScheduler: arachnodacty - {80ced3d6-ece9-48ba-8df8-2503d8d87c2b} - C:\WINDOWS\system32\ccyszwl.dll
O22 - SharedTaskScheduler: dataria - {18a8f76b-804b-4981-b87c-460699971a4b} - C:\WINDOWS\system32\igzxwrl.dll
O22 - SharedTaskScheduler: cakewalks - {6747456b-cea8-463d-ad2a-50d67ae73d30} - C:\WINDOWS\system32\fwjgtk.dll
O22 - SharedTaskScheduler: athermancies - {ced7d5f3-74cc-4c2f-8d60-62ebcdda0a22} - C:\WINDOWS\system32\tiqmcx.dll
O22 - SharedTaskScheduler: anhydrase - {6625fc6c-731c-443a-b3f0-2c8c520a1766} - C:\WINDOWS\system32\mivmv.dll
O22 - SharedTaskScheduler: amaretti - {2fdde73c-273e-4e55-84dc-455de06e4866} - C:\WINDOWS\system32\zdwii.dll
O22 - SharedTaskScheduler: falsism - {6e886df7-914d-48f0-86b3-a5cf24385361} - C:\WINDOWS\system32\fwrkqfl.dll
O22 - SharedTaskScheduler: glauke - {cc824bb2-d4b3-41f1-bba0-f8240e4cc495} - C:\WINDOWS\system32\kvfvw.dll
O22 - SharedTaskScheduler: astronomically - {fedff4ae-1302-4b8a-bda9-43b9f67b9749} - C:\WINDOWS\System32\guxmhcd.dll
O22 - SharedTaskScheduler: biltongs - {fc7cbb1b-2da6-4e7d-a1ea-bf6705dd0f8c} - C:\WINDOWS\system32\fyhwfc.dll
O22 - SharedTaskScheduler: aht - {46f5a8b0-0b73-48c5-9e40-3c443a43c161} - C:\WINDOWS\system32\muvdjo.dll
O22 - SharedTaskScheduler: fraternalism - {2bb2b2d6-8b86-412e-acca-d656a8979b3e} - C:\Windows\system32\tqcwm.dll
O22 - SharedTaskScheduler: apdu - {903902a8-0691-460e-8351-24df3d425e9c} - C:\WINDOWS\system32\gkymhk.dll
O22 - SharedTaskScheduler: hyracina - {b36d60c8-e1ce-464e-b74c-8128a627ef56} - C:\WINDOWS\system32\vvihh.dll
O22 - SharedTaskScheduler: cordiformis - {95a4b6d8-dcd9-453a-aedf-f5d10af2519a} - C:\WINDOWS\system32\ayjhc.dll
O22 - SharedTaskScheduler: disenfranchising - {e2b8cea1-c8a7-48e2-b2fd-89ae5c608fb8} - C:\WINDOWS\system32\osdjhjc.dll
O22 - SharedTaskScheduler: anthracosaurus - {9f5cb985-d4a4-49af-9185-133f956b5756} - C:\WINDOWS\system32\ddomv.dll
O22 - SharedTaskScheduler: biisk - {f39d0dee-b2f0-4591-9187-1cc39c1df98a} - C:\WINDOWS\system32\kzpkwj.dll
O22 - SharedTaskScheduler: heterotroph - {de5ede53-9db0-422d-b32d-5c41c96d6f52} - C:\Windows\system32\iklqcx.dll
O4 - HKLM\..\Run: [VirusProtectPro 3.3] "C:\Program Files\VirusProtectPro 3.3\VirusProtectPro 3.3.exe" /h
O4 - HKLM\..\Run: [VirusProtectPro 3.4] "C:\Program Files\VirusProtectPro 3.4\VirusProtectPro 3.4.exe" /h
O4 - HKLM\..\Run: [VirusProtectPro 3.5] "C:\Program Files\VirusProtectPro 3.5\VirusProtectPro 3.5.exe" /h
O4 - HKLM\..\Run: [VirusProtectPro 3.6] "C:\Program Files\VirusProtectPro 3.6\VirusProtectPro 3.6.exe" /h
O4 - HKLM\..\Run: [VirusProtectPro 3.7] "C:\Program Files\VirusProtectPro 3.7\VirusProtectPro 3.7.exe" /h
O22 Entries
O22 - SharedTaskScheduler: acanthology - {cfda6372-043c-48d2-ba3c-7bfe1cf71854} - C:\WINDOWS\system32\bgwttyl.dll
O22 - SharedTaskScheduler: adirondack - {547aaa89-7e6b-42b4-b112-a64955f86a2a} - C:\Windows\system32\zpuwriz.dll
O22 - SharedTaskScheduler: aguilarite - {1c6fd4e6-49ce-4178-875b-df70eac260c5} - C:\WINDOWS\System32\fdpzgi.dll
O22 - SharedTaskScheduler: amateurishly - {1152a0e8-5be5-41cc-8312-556581690a61} - C:\WINDOWS\SYSTEM\cfqbw.dll
O22 - SharedTaskScheduler: amberoids - {4688f900-0d0c-4788-b297-59cc10e70ccc} - C:\WINDOWS\system32\zpeolvh.dll
O22 - SharedTaskScheduler: araca - {8068bf35-3711-4dce-a2f3-f008cecfe894} - C:\WINDOWS\system32\afzdbl.dll
O22 - SharedTaskScheduler: biocomputing - {98ca7898-6029-41ab-8f67-ea4f5e1afc22} - C:\WINDOWS\system32\myqlejy.dll
O22 - SharedTaskScheduler: clamourers - {b8b3850e-a22e-43ab-a15e-63f6e47db7e6} - C:\WINDOWS\system32\tkrsw.dll
O22 - SharedTaskScheduler: convalescently - {cea2e5cd-e849-427b-80f0-59298caef1c4} - C:\WINDOWS\system32\cqsfk.dll
O22 - SharedTaskScheduler: coronally - {1b17f1db-790e-4d42-8e0c-d4d19123ee5b} - C:\WINDOWS\system32\xnvaogd.dll
O22 - SharedTaskScheduler: criticalness - {bd2948f8-c949-464f-824a-6272608c739e} - C:\Windows\system32\vjxwnn.dll
O22 - SharedTaskScheduler: cyk - {49f29a27-2451-4314-a480-8d2481ce6c81} - C:\WINDOWS\system32\yhjbbzf.dll
O22 - SharedTaskScheduler: discommodiousness - {33b8d257-07f6-4c06-8605-94bc21728635} - C:\WINDOWS\system32\onljweo.dll
O22 - SharedTaskScheduler: dustuck - {4a9e875b-d032-45e4-8294-789fe3be5b19} - C:\WINDOWS\system32\vgibz.dll
O22 - SharedTaskScheduler: enlodgement - {aa6d4f53-4c8d-4549-84d2-02d584acc4e9} - C:\WINDOWS\system32\wzhtjqo.dll
O22 - SharedTaskScheduler: eperdument - {c704547b-26c0-4222-a034-81653c07b494} - C:\WINDOWS\system32\ugofuq.dll
O22 - SharedTaskScheduler: exultet - {4f5f16ef-af9d-4fe6-8410-f0670b58979d} - C:\WINDOWS\system32\gusur.dll
O22 - SharedTaskScheduler: fagging - {94524218-9af3-4643-9687-cbc2880e54da} - C:\WINDOWS\system32\nuqjici.dll
O22 - SharedTaskScheduler: firstlings - {9af8f31b-b778-4413-b8ed-ae63a62e1f7d} - C:\WINDOWS\system32\wfcof.dll
O22 - SharedTaskScheduler: formicivora - {a1c16871-b797-4ec7-bbee-83852379c390} - C:\WINDOWS\system32\cefrjsh.dll
O22 - SharedTaskScheduler: grazable - {fa55d551-9698-48ac-b639-9b00cf1a6ea0} - C:\WINDOWS\system32\psndz.dll
O22 - SharedTaskScheduler: helicoid - {e71aba09-d81a-4876-baa3-df133c1dfc48} - C:\WINDOWS\System32\vophqmn.dll
O22 - SharedTaskScheduler: hieroglyphist - {fde1bd72-ca80-443f-9526-595337b73878} - C:\WINDOWS\system32\lapmvzf.dll
O22 - SharedTaskScheduler: hutlet - {c82e1789-207a-4b8a-806f-76b62dfac2a2} - C:\WINDOWS\system32\khtbpdl.dll
O22 - SharedTaskScheduler: hyams - {e4c46558-da01-4637-a85e-f1ccb1c7436a} - C:\Windows\system32\lrnjnzf.dll
O22 - SharedTaskScheduler: hydronephrosises - {5889f7b0-3277-4266-b4bd-1bf2d394aee6} - C:\WINDOWS\system32\wpchz.dll
O22 - SharedTaskScheduler: idealise - {eb86b46a-d6db-4478-8f5f-06cb2ebc1b35} - C:\WINDOWS\system32\dyrwls.dll
O22 - SharedTaskScheduler: inscenation - {cfda6372-043c-48d2-ba3c-7bfe1cf71854} - C:\WINDOWS\system32\surzzh.dll
O22 - SharedTaskScheduler: atrichia - {4a9e875b-d032-45e4-8294-789fe3be5b19} - C:\WINDOWS\system32\fshqaln.dll
O22 - SharedTaskScheduler: hemprich - {af8bca8b-a9f1-471d-bdcd-caa14be2bdd9} - C:\WINDOWS\system32\ktrxe.dll
O22 - SharedTaskScheduler: arouse - {c4da240e-7525-404a-b366-f50a422376d8} - C:\WINDOWS\system32\eigbbb.dll
O22 - SharedTaskScheduler: electroosmoses - {eb86b46a-d6db-4478-8f5f-06cb2ebc1b35} - C:\WINDOWS\system32\nexpegp.dll
O22 - SharedTaskScheduler: clinker - {a4029063-4fe3-422c-ac72-12905c09642a} - C:\WINDOWS\system32\xtsyynm.dll
O22 - SharedTaskScheduler: heterostyly - {cd0e4a1a-dbc2-48f7-9a6a-a41cac20bddc} - C:\WINDOWS\system32\fqdqs.dll
O22 - SharedTaskScheduler: counterclaim - {e758745e-b8aa-47ac-a652-6307ff5f3ebf} - C:\WINDOWS\system32\vpccw.dll
O22 - SharedTaskScheduler: archiblast - {bd1299cd-b98a-4ee1-9ae3-d3cb3da41d0d} - C:\WINDOWS\system32\ryxrho.dll
O22 - SharedTaskScheduler: bosken - {d1e5ca97-235e-4ff0-9b92-7543c9d61ff4} - C:\WINDOWS\system32\zkpssqa.dll
O22 - SharedTaskScheduler: dizening - {70d17a5f-ef27-4295-90f5-20ad6f24834f} - C:\WINDOWS\system32\tmxxxh.dll
O22 - SharedTaskScheduler: arachnodacty - {80ced3d6-ece9-48ba-8df8-2503d8d87c2b} - C:\WINDOWS\system32\ccyszwl.dll
O22 - SharedTaskScheduler: dataria - {18a8f76b-804b-4981-b87c-460699971a4b} - C:\WINDOWS\system32\igzxwrl.dll
O22 - SharedTaskScheduler: cakewalks - {6747456b-cea8-463d-ad2a-50d67ae73d30} - C:\WINDOWS\system32\fwjgtk.dll
O22 - SharedTaskScheduler: athermancies - {ced7d5f3-74cc-4c2f-8d60-62ebcdda0a22} - C:\WINDOWS\system32\tiqmcx.dll
O22 - SharedTaskScheduler: anhydrase - {6625fc6c-731c-443a-b3f0-2c8c520a1766} - C:\WINDOWS\system32\mivmv.dll
O22 - SharedTaskScheduler: amaretti - {2fdde73c-273e-4e55-84dc-455de06e4866} - C:\WINDOWS\system32\zdwii.dll
O22 - SharedTaskScheduler: falsism - {6e886df7-914d-48f0-86b3-a5cf24385361} - C:\WINDOWS\system32\fwrkqfl.dll
O22 - SharedTaskScheduler: glauke - {cc824bb2-d4b3-41f1-bba0-f8240e4cc495} - C:\WINDOWS\system32\kvfvw.dll
O22 - SharedTaskScheduler: astronomically - {fedff4ae-1302-4b8a-bda9-43b9f67b9749} - C:\WINDOWS\System32\guxmhcd.dll
O22 - SharedTaskScheduler: biltongs - {fc7cbb1b-2da6-4e7d-a1ea-bf6705dd0f8c} - C:\WINDOWS\system32\fyhwfc.dll
O22 - SharedTaskScheduler: aht - {46f5a8b0-0b73-48c5-9e40-3c443a43c161} - C:\WINDOWS\system32\muvdjo.dll
O22 - SharedTaskScheduler: fraternalism - {2bb2b2d6-8b86-412e-acca-d656a8979b3e} - C:\Windows\system32\tqcwm.dll
O22 - SharedTaskScheduler: apdu - {903902a8-0691-460e-8351-24df3d425e9c} - C:\WINDOWS\system32\gkymhk.dll
O22 - SharedTaskScheduler: hyracina - {b36d60c8-e1ce-464e-b74c-8128a627ef56} - C:\WINDOWS\system32\vvihh.dll
O22 - SharedTaskScheduler: cordiformis - {95a4b6d8-dcd9-453a-aedf-f5d10af2519a} - C:\WINDOWS\system32\ayjhc.dll
O22 - SharedTaskScheduler: disenfranchising - {e2b8cea1-c8a7-48e2-b2fd-89ae5c608fb8} - C:\WINDOWS\system32\osdjhjc.dll
O22 - SharedTaskScheduler: anthracosaurus - {9f5cb985-d4a4-49af-9185-133f956b5756} - C:\WINDOWS\system32\ddomv.dll
O22 - SharedTaskScheduler: biisk - {f39d0dee-b2f0-4591-9187-1cc39c1df98a} - C:\WINDOWS\system32\kzpkwj.dll
O22 - SharedTaskScheduler: heterotroph - {de5ede53-9db0-422d-b32d-5c41c96d6f52} - C:\Windows\system32\iklqcx.dll