User Protection is a very terrible and annoying program that refer to loads of rogue antivirus programs. It spreads through hacking into network and via Search Engine Optimization tricks.  This rogue often affects your files and change Windows Registry. User Protection will by all means start popping up in the shape of bogus system tray alerts, fake virus infiltration warnings and counterfeit security scanners.  No doubt its  fake alerts is to encourage you to purchase the commercial version of this software. It will stop your browser to websites that continue selling its license. Moreover, User Protection usually prevents people from running antivirus software and other executables files. You also aren’t able to bring up your Task Manager and do a System Restore.  So you might want to try booting into Safe Mode with Networking through F8 key ( during startup) and follow the instructions as listed below.

This step-by-step guide can help you completely remove User Protection rogue anti-spyware. If you  have any problem during the remove process, please contact Tee Support agent 24/7 online for more detailed  instructions.

User Protection Screenshot:

Remove User Protection Manually Instructions:

The files to be deleted are listed below:

  • %Documents and Settings%\[UserName]\Desktop\User Protection Support.lnk
  • %Documents and Settings%\[UserName]\Desktop\User Protection.lnk
  • %Documents and Settings%\[UserName]\Start Menu\Programs\User Protection
  • %Documents and Settings%\[UserName]\Start Menu\Programs\User Protection\About.lnk
  • %Documents and Settings%\[UserName]\Start Menu\Programs\User Protection\Activate.lnk
  • %Documents and Settings%\[UserName]\Start Menu\Programs\User Protection\Buy.lnk
  • %Documents and Settings%\[UserName]\Start Menu\Programs\User Protection\User Protection Support.lnk
  • %Documents and Settings%\[UserName]\Start Menu\Programs\User Protection\User Protection.lnk
  • %Documents and Settings%\[UserName]\Start Menu\Programs\User Protection\Scan.lnk
  • %Documents and Settings%\[UserName]\Start Menu\Programs\User Protection\Settings.lnk
  • %Documents and Settings%\[UserName]\Start Menu\Programs\User Protection\Update.lnk
  • %Documents and Settings%\[UserName]\Application Data\Microsoft\Internet Explorer\Quick Launch\User Protection.lnk
  • %Program Files%\User Protection
  • %Program Files%\User Protection\about.ico
  • %Program Files%\User Protection\activate.ico
  • %Program Files%\User Protection\buy.ico
  • %Program Files%\User Protection\drg.db
  • %Program Files%\User Protection\drgext.dll
  • %Program Files%\User Protection\drghook.dll
  • %Program Files%\User Protection\help.ico
  • %Program Files%\User Protection\scan.ico
  • %Program Files%\User Protection\settings.ico
  • %Program Files%\User Protection\splash.mp3
  • %Program Files%\User Protection\uninstall.exe
  • %Program Files%\User Protection\update.ico
  • %Program Files%\User Protection\virus.mp3
  • %Temp%\asr64_ldm.exe

The registry entries that need to be removed are as follows:

  • HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\SimpleShlExt
  • HKEY_CLASSES_ROOT\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}
  • HKEY_CLASSES_ROOT\Folder\shellex\ContextMenuHandlers\SimpleShlExt
  • HKEY_LOCAL_MACHINE\SOFTWARE\User Protection
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\User Protection
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System “DisableTaskMgr”
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “User Protection”
  • HKEY_CLASSES_ROOT\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000}
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved “{5E2121EE-0300-11D4-8D3B-444553540000}”
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System “DisableTaskMgr” = “1″

Other programs to remove User Protection rogue anti-spyware:

Malwarebytes’ Anti-Malware,  Spybot and SUPERAntiSpyware

Bookmark and Share