<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>spywareremovalguides.com &#187; how to remove Live Enterprise Suite</title>
	<atom:link href="http://spywareremovalguides.com/tag/how-to-remove-live-enterprise-suite/feed" rel="self" type="application/rss+xml" />
	<link>http://spywareremovalguides.com</link>
	<description>Spyware Removal Guides</description>
	<lastBuildDate>Tue, 15 May 2012 18:56:05 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
		<item>
		<title>Delete Live Enterprise Suite</title>
		<link>http://spywareremovalguides.com/delete-live-enterprise-suite.html</link>
		<comments>http://spywareremovalguides.com/delete-live-enterprise-suite.html#comments</comments>
		<pubDate>Sun, 21 Feb 2010 03:36:27 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Removal Instructions List]]></category>
		<category><![CDATA[how to delete Live Enterprise Suite]]></category>
		<category><![CDATA[how to remove Live Enterprise Suite]]></category>
		<category><![CDATA[Live Enterprise Suite]]></category>
		<category><![CDATA[Live Enterprise Suite removal]]></category>
		<category><![CDATA[Live Enterprise Suite virus]]></category>

		<guid isPermaLink="false">http://www.spywareremovalguides.com/?p=76</guid>
		<description><![CDATA[A relative of the well-known rogue anti-spyware programs Ghost Antivirus and Internet Antivirus, Live Enterprise Suite uses similar techniques to aggressively encourage the user to pay for a license to the software. Live Enterprise Suite uses online malware and fake malware scanners to enter the user’s system. Once installed, it immediately proceeds to disable essential [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>A relative of the well-known rogue anti-spyware programs Ghost Antivirus and Internet Antivirus, Live Enterprise Suite uses similar techniques to aggressively encourage the user to pay for a license to the software. Live Enterprise Suite uses online malware and fake malware scanners to enter the user’s system. Once installed, it immediately proceeds to disable essential Windows services such as Task Manager and Registry Editor. This way it ensures that the user cannot take steps to try and remove it. Furthermore, it creates random Windows Explorer paths so that users cannot find their way around the computer’s hard disk to delete Live Enterprise Suite files and folders. All these methods are employed to try and stop the user from deleting Live Enterprise Suite. This rogue software loads at boot time and starts performing fake system scans, flagging legitimate and harmless Windows files as dangerous spyware. It also insists that the currently installed ‘trial’ version of Live Enterprise Suite is insufficient to clean the user’s system, and insists that the user should pay for the ‘full’ version. However as these are false warnings the ‘full’ version could no more clean your computer than the ‘trial’ version could. So it is important not to fall for this trick.</p>
<p style="text-align: center;"><img class="aligncenter" src="http://www.spywareremovalguides.com/images/live-enterprise-suite.jpg" alt="Live Enterprise Suite" width="419" height="309" /></p>
<p>In order to delete Live Enterprise Suite, it is necessary to stop its processes, unregister its DLLs, delete files and folders and remove registry entries.</p>
<p>File Removal Procedures</p>
<p>When taking steps to delete Live Enterprise Suite, the first is to kill the following processes:</p>
<ul>
<li>unins000.exe</li>
<li>winlogon.exe</li>
<li>services.exe</li>
<li>atbyin.exe</li>
<li>[random path]char.exe</li>
<li>IAPro.exe</li>
</ul>
<p>The next step is to unregister the following DLL files:</p>
<ul>
<li>WMILib.dll</li>
<li>[random path].dll</li>
</ul>
<p>The final step in file removal is deleting the files and folders themselves. To complete this step, remove the following files and folders from your computer:</p>
<ul>
<li>%UserProfile%\Application Data\Live Enterprise Suite</li>
<li>%UserProfile%\Application Data\Live Enterprise Suite\settings.ini</li>
<li>%UserProfile%\Application Data\Live Enterprise Suite\uill.ini</li>
<li>%UserProfile%\Application Data\Live Enterprise Suite\unins000.exe</li>
<li>%UserProfile%\Application Data\Live Enterprise Suite\updateloadlist.ini</li>
<li>%UserProfile%\Application Data\Live Enterprise Suite\db</li>
<li>%UserProfile%\Application Data\Live Enterprise Suite\db\config.cfg</li>
<li>%UserProfile%\Application Data\Live Enterprise Suite\db\Timeout.inf</li>
<li>%UserProfile%\Application Data\Live Enterprise Suite\db\Urls.inf</li>
<li>%UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\Internet Antivirus Pro.lnk</li>
<li>%UserProfile%\Application Data\Microsoft\Windows\winlogon.exe</li>
<li>%UserProfile%\Local Settings\Application Data\Microsoft\Windows\log.txt</li>
<li>%UserProfile%\Local Settings\Application Data\Microsoft\Windows\pguard.ini</li>
<li>%UserProfile%\Local Settings\Application Data\Microsoft\Windows\services.exe</li>
<li>%UserProfile%\My Documents\My Pictures\atbyin.exe</li>
<li>c:\Program Files\Common Files\[random path]char.exe</li>
<li>c:\Program Files\Common Files\[random path]calc.exe</li>
<li>c:\Program Files\Internet Antivirus Pro</li>
<li>c:\Program Files\Internet Antivirus Pro\activate.ico</li>
<li>c:\Program Files\Internet Antivirus Pro\Explorer.ico</li>
<li>c:\Program Files\Internet Antivirus Pro\IAPro.exe</li>
<li>c:\Program Files\Internet Antivirus Pro\unins000.dat</li>
<li>c:\Program Files\Internet Antivirus Pro\uninstall.ico</li>
<li>c:\Program Files\Internet Antivirus Pro\working.log</li>
<li>c:\Program Files\Internet Antivirus Pro\db</li>
<li>c:\Program Files\Internet Antivirus Pro\db\DBInfo.ver</li>
<li>c:\Program Files\Internet Antivirus Pro\db\ia080614.db</li>
<li>c:\Program Files\Internet Antivirus Pro\db\lists.ini</li>
<li>c:\Program Files\Internet Antivirus Pro\db\WMILib.dll</li>
<li>c:\Program Files\Internet Antivirus Pro\Languages</li>
<li>c:\Program Files\Internet Antivirus Pro\Languages\IAEs.lng</li>
<li>c:\Program Files\Internet Antivirus Pro\Languages\IAFr.lng</li>
<li>c:\Program Files\Internet Antivirus Pro\Languages\IAGer.lng</li>
<li>c:\Program Files\Internet Antivirus Pro\Languages\IAIt.lng</li>
<li>c:\WINDOWS\system32\[random path].dll</li>
<li>c:\WINDOWS\system32\[random path].dll</li>
<li>c:\Documents and Settings\All Users\Desktop\Internet Antivirus Pro.lnk</li>
<li>c:\Documents and Settings\All Users\Start Menu\Programs\Internet Antivirus Pro</li>
<li>c:\Documents and Settings\All Users\Start Menu\Programs\Internet Antivirus Pro\Internet Antivirus Pro Home Page.lnk</li>
<li>c:\Documents and Settings\All Users\Start Menu\Programs\Internet Antivirus Pro\Internet Antivirus Pro.lnk</li>
<li>c:\Documents and Settings\All Users\Start Menu\Programs\Internet Antivirus Pro\Purchase License.lnk</li>
<li>c:\Documents and Settings\All Users\Start Menu\Programs\Internet Antivirus Pro\Uninstall Internet Antivirus Pro.lnk</li>
</ul>
<p>Once the files have been removed, your file system is safe from Live Enterprise Suite.</p>
<p>Registry Removal Procedures</p>
<p>In order to delete Live Enterprise Suite completely from your system, the following registry keys and settings should also be removed:</p>
<ul>
<li>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\taskmgr.exe &#8220;Debugger&#8221;</li>
<li>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\taskmgr.exe &#8220;RealDebugger&#8221;</li>
<li>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\567 1.4.2.0_is1</li>
<li>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Live Enterprise Suite_is1</li>
<li>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\taskmgr.exe</li>
<li>HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_HTGRDENGINE</li>
<li>HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\HTGrdEngine</li>
<li>HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_HTGRDENGINE</li>
<li>HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\HTGrdEngine</li>
<li>HKEY_CURRENT_USER\Software\Microsoft\FTP &#8220;SearchDir&#8221; = &#8220;c:\program files\Internet Antivirus Pro\&#8221;</li>
<li>HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run &#8220;[random]&#8220;</li>
<li>HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run &#8220;Live Enterprise Suite&#8221;</li>
<li>HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run &#8220;Microsoft Windows logon process&#8221;</li>
<li>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION &#8220;svchost.exe&#8221;</li>
<li>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent &#8220;URIAPRO[]&#8220;</li>
<li>HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent &#8220;URIAPRO[]&#8220;</li>
</ul>
<p>Once these entries have been removed from the Windows Registry, your computer is completely safe from Live Enterprise Suite. In order to make sure that Live Enterprise Suite has been deleted accordingly it is however recommended to scan the entire computer using Spyware Doctor with Antivirus.</p>
<p>Conclusion</p>
<p>Only experienced computer users should attempt to delete Live Enterprise Suite manually, as any wrong move made due to inexperience could cause unwanted damage to your system. The best way for inexperienced users is to use a genuine remote computer repair service such as www.onlinecomputerrepair.org as it can ensure complete repair procedures remotely under a money back guarantee policy.</p>
]]></content:encoded>
			<wfw:commentRss>http://spywareremovalguides.com/delete-live-enterprise-suite.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

