Think Point Antivirus is not a legitimate and Real Antispyware Program but itself a spyware, more precisely a new kind of rogue antispyware program from the same family of System Armor. The only difference being the core files are modified a little bit and the name is changed to hide it's detection by legitimate Antivirus programs installed on your PC.
This program is distributed with the help of trojans. When the trojan is started, it will automatically download and install Think Point Antivirus onto your computer without your consent and knowledge and configure it to run when you start Windows.
When Think Point Antivirus is started, it will imitate a system scan and detect a lot of various infections that will not be fixed unless you first purchase the program. Important to know, all of these reported infections are fake and don't actually exist on your computer! So you can safely ignore the scan results.
While Think Point Antivirus is running, it will block the ability to run any programs as a method to scare you into thinking that your computer is infected with malware.
The following warnings will be shown
Your computer is infected with spyware. It could damage your critical files or expose your private data on the Internet. Click here to register your copy of Peak Protection 2010 Antivirus and remove spyware threats from your PC.
Your computer is under a great risk! Malware applications are still running. This will lead to the loss of personal date and system damage.
Do you want to remove the malware and protect your system?
Security Center Alert!
Your computer is being attacked by an Internet Virus. It could be a password- stealing attack, a trojan- dropper or similar.
Message from Webpage Warning! your PC is at risk of virus and malware attack.
Your system requires immediate check!
System security will perform a quick and free scan of your PC for viruses and malicious programs.
To help protect your computer, Windows web security have detected trojans and ready to remove them
You can notice this virus as random file name as random.exe similar to FOE84.exe or vur4.exe on the App data folder.
e.g: "C:\Documents and Settings\All Users\Application Data\random number\random.exe"
Remove the following files and registry entries. If you do not have sufficient expertise in dealing with computer files, folders, processes, DLL files, services & registry entries, please take help from some one who can does this for you.
Other wise Get Reimage key by going to PC Reimage in order to remove Think Point Antivirus.
Impacted Registry Entries, Files and Folders.
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Winlogon "Shell"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "Think Point"
HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Winlogon "Shell" = "%Documents and Settings%\[UserName]\Application Data\hotfix.exe"
Files & Folders
C:\Documents and Settings\User\Application Data\hotfix.exe
%UserProfile%\Application Data\Think Point.exe
As you can see, Think Point Antivirus is a scam that designed with one purpose to trick you into purchasing the so-called full version of the program. Do not fall for these virus creators bait into buying the Rogueware! and if you already have, you should contact your credit card company and dispute the charges.
And now coming back on How to Get Rid of Think Point Antivirus, you need a solid program to fix the damages, the rogue has caused. It alters files, folders,permissions and registry keys completely to revive your PC from malicious trojans that may still reside and make your PC slow and to stop from getting re-infected.
When you try to fix this rogue, by running legitimate antivirus you encounter that app cannot be executed warning, task manager disabled, registry editing disabled etc..
In order to get rid of Think Point Antivirus completely, start your PC in safe mode with networking, If you can`t run the IE, then you should repair the proxy settings of Internet Explorer. Run Internet Explorer, Click Tools -> Internet Options. Select Connections Tab and click to Lan Settings button. Uncheck "Use a proxy server" box. Click OK. Click Apply. Click OK. And go to http://pcreimage.cz.cc/ to run a Scan.
Reimage works by comparing each and every OS system files with the correct files from a web repository of 25 million Windows components. (since Reimage works by comparing with correct file, it can easily find the hiding rootkit, infact this is what a rootkit remover do dumps a list of files from your hard disk drive and compares it with the list from the recovery console in order to find a hiding virus) This is the sole reason you can get a PC as good as new once you run Reimage, all other antivirus and antimalware programs just delete the virus but they don't correct the damage which results in re-infection and slow performing PC.
Reimage first scans your computer thoroughly; all the files, folders, registry keys and values, drivers, softwares, stacks and then either repair or remove those stuffs that should be there. But it's not just that it does. They have an enormous web repository of application, drivers, system objects, etc. from where they compare your PC's files and if corrupted replace it with the healthy ones.