WinIFixer

WinIFixer carries the slogan “Viruses and Spyware Remover.” Nevertheless, the truth is, WinIFixer is a misleading security application that may get inside your computer without an intervention. Using a Trojan, this will sneak into the system unexpectedly when visiting malicious web sites or following links sent though instant messaging applications.

The primary objective of WinIFixer is to entice computer users that this application is legitimate and essential in getting rid of spyware and viruses. This potentially unwanted application aims to convince user that computer is infected with a variety of threats and insinuate that removal can be performed only when WinIFixer is upgraded to a full version.

Screen Shot Image:

Technical Details and Additional Information:

Damage Level: Medium

Systems Affected: Windows 9x, 2000, XP, Vista

Characteristics (Analysis)
While WinIFixer is running on victim’s computer, it repeatedly exhibits a number of identified threats. These fake security findings are part of its unfair marketing strategy to persuade victims on purchasing the registered version of WinIFixer.

Moreover, the rogue program alters Internet Explorer settings and redirects the default home page to WinIFixer web site.

Added Registry Entries:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinIFixer
HKEY_LOCAL_MACHINE\SOFTWARE\WinIFixer.com
Associated Files and Folders:
%ProgramFiles%\WinIFixer\WinIFixer.exe
C:\Windows\xpupdate.exe
C:\WINDOWS\system32\printer.exe 

How to Remove WinIFixer

Automatic Removal of WinIFixer using Malwarebytes' Anti-Malware

In order to completely remove the threat, it is best to download and run Malwarebytes Anti-Malware. Sometimes, Trojans will block the downloading and installation of MBAM. If this happens, download it from a clean computer and rename the executable file before executing on the infected machine.