How to Remove Nortel Antivirus

Thursday, September 3, 2009

Beware of this new rogue software “Nortel Antivirus” from “Scientists”.Much of the success of this rogue software comes from the fact that it got an interface similar to the genuine Norton software. The name and manufacturer also sounds similar. Remove the rogue software before it creates more damage to your computer security.

Beware of this new rogue software “Nortel Antivirus” from “Scientists”. The name resembles Norton Antivirus from Symantec. Much of the success of this rogue software comes from the fact that it got an interface similar to the genuine Norton software. The name and manufacturer also sounds similar. In case if somebody google for the name “Nortel”, they will come with information that it is a leading multinational telecommunications equipment manufacturer. It is natural for some to believe that this is a new software provided by Nortel.

Nortel Antivirus is promoted by either Trojans or some fake websites which allows to download and install the software. Once installed, it will configure itself to run when windows start. Then onwards every time when windows starts, it comes up with a message that the computer is infected and needs to run a scan which is fake. After the scan, it will list some security issues and threats which is also fake. It then asks you to pay for the software to get rid of the infections and threats. Don’t purchase it. You might end up losing money from your Bank account. Remove the rogue software.


Notice the name and manufacturer inside the Red circle.

Hope your security software will release an update to get rid of the issue. In case if your security software cannot remove it, follow these instructions to manually remove it.

  • Kill if any of the services is listed in task manager
wox.exe
mrgdll.exe
wtds5.exe
(Press Ctrl+Alt+Del, Open task manager, Click Processes, Right click the Process, Click End Process Tree)

  • Remove the infected files from Directory.
In Vista, go to
C:\program data\nol and remove all the files inside.
In XP, go to the following location and remove all the files inside.
C:\Documents and Settings\All Users\Application Data\nol
C:\Program Files\nol

  • Remove from Registry
Open registry editor (Start  Run  regedit)
Click Edit  Find
Search for wox.exe, mrgdll.exe, wtds5.exe and remove all the entries containing these file names.

  • Restart the computer and you should be doing fine.

In case if you are going for a Virus Removal Service, read the following article before doing it
http://computersight.com/communication-networks/security/virus-removal-services-is-it-worth-it

AddThis Social Bookmark Button