Smart Engine virus invading its malicious niche
Smart Engine is definitely not the security application you might want to have at your disposal. Despite the fact that Smart Engine calls itself an antivirus solution, it does not perform a single genuine defense function. If you have this rogue antispyware on your computer, it must have installed itself without your permission, right? We bet it did. You see, Smart Engine finds sophisticated yet stealthy options to get promoted onto new machines, being almost always undetected on the intrusion phase. This rogue AV usually displays many fabricated alerts that state you have loads of security issues to be taken care of. For instance, it triggers the “System alerts” that pop up from the system tray and inform you of malicious applications such as trojans that were allegedly found on your computer. Another example of Smart Engine’s mischievous activity is the ad telling you that Lsas.Trojan-Spy.DOS.Keycopy virus is suspected to have infected your PC. Please keep in mind that all these so-called warnings are a fake and should be ignored. Oh, we almost forgot to mention the nasty bogus scanners Smart Engine runs when on your machine. All of these symptoms will not leave you alone until Smart Engine gets eliminated from your system.
How to detect and remove Smart Engine rogue antispyware
To ensure Smart Engine accurate detection and efficient removal, we strongly recommend using the trusted remover with free scanner.
Download free Smart Engine virus scanner
Save the installer to your hard drive and launch now.
If you intend to perform Smart Engine manual removal, you need to possess some computer troubleshooting skills. This will require stopping the malignant processes, deleting malware files and registry keys.
Terminate Smart Engine processes:
CLSV.exe
Energy.exe
Exec.exe
Delete Smart Engine files and folders:
%Documents and Settings%\All Users\Application Data\ae01cc\SMESys
%Documents and Settings%\All Users\Application Data\SMIFGKMPDQE
%Documents and Settings%\All Users\Application Data\ae01cc\61.mof
%Documents and Settings%\All Users\Application Data\ae01cc\ae01cc42668ec8a22e4d0493aabb97d8.ocx
%Documents and Settings%\All Users\Application Data\ae01cc\mozcrt19.dll
%Documents and Settings%\All Users\Application Data\ae01cc\SMae0_2129.exe
%Documents and Settings%\All Users\Application Data\ae01cc\SME.ico
%Documents and Settings%\All Users\Application Data\ae01cc\sqlite3.dll
%Documents and Settings%\All Users\Application Data\ae01cc\Quarantine Items\
%Documents and Settings%\All Users\Application Data\SMIFGKMPDQE\
%Documents and Settings%\All Users\Application Data\SMIFGKMPDQE\SMTKWKE.cfg
%UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\Smart Engine.lnk
%UserProfile%\Application Data\Smart Engine
%UserProfile%\Application Data\Smart Engine\cookies.sqlite
%UserProfile%\Desktop\Smart Engine.lnk
%UserProfile%\Recent\ANTIGEN.dll
%UserProfile%\Recent\ANTIGEN.drv
%UserProfile%\Recent\cid.tmp
%UserProfile%\Recent\CLSV.exe
%UserProfile%\Recent\CLSV.sys
%UserProfile%\Recent\DBOLE.drv
%UserProfile%\Recent\delfile.sys
%UserProfile%\Recent\eb.sys
%UserProfile%\Recent\energy.exe
%UserProfile%\Recent\exec.exe
%UserProfile%\Recent\fan.drv
%UserProfile%\Recent\kernel32.dll
%UserProfile%\Recent\pal.exe
%UserProfile%\Recent\PE.dll
%UserProfile%\Recent\ppal.drv
%UserProfile%\Recent\tempdoc.tmp
%UserProfile%\Start Menu\Smart Engine.lnk
%UserProfile%\Start Menu\Programs\Smart Engine.lnk
Remove Smart Engine registry keys:
HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF}
HKEY_CLASSES_ROOT\SMae0_2129.DocHostUIHandler
HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes “URL” = “http://findgala.com/?&uid=2129&q={searchTerms}”
HKEY_CURRENT_USER\Software\Classes\Software\Microsoft\Internet Explorer\SearchScopes “URL” = “http://findgala.com/?&uid=2129&q={searchTerms}”
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer “PRS” = “http://127.0.0.1:27777/?inj=%ORIGINAL%”
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download “RunInvalidSignatures = “1″
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “ProxyServer” = “http=127.0.0.1:25437″
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform “Version/10.02129″
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer “DisallowRun” = “1″
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “Smart Engine”
HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchScopes “URL” = “http://findgala.com/?&uid=2129&q={searchTerms}”
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download “CheckExeSignatures” = “no”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “ProxyEnable” = “1″
In order to avoid system damage, we advise using the automatic tool which will do the removal job for you.
Download Smart Engine Removal Tool
Important Notice
This site is by no means related to Smart Engine, nor is it affiliated with or owned by Smart Engine creators. Any information available on antivirustech.com is not to be in any way associated with distribution of this infection.
Our primary and sole mission is to instruct our visitors in the issues of Smart Engine detection and manual/automated removal methods.
Please bear in mind that manual removal of this malware is not ultimately effective because the corrupted file names can get repeatedly modified or be hidden. Therefore it’s recommended to use the automatic solution to ensure Smart Engine removal and eliminate possible risks that may arise due to improper registry and file system manipulations.
The free virus scanner provided on our website is meant for detection only. If you choose to use the tool for malware removal, you will need to buy its full version.
Computer acting up?


