MaCatte Antivirus 2009

MaCatte Antivirus 2009 is a rogue antivirus application that should not be trusted. Though it may appear familiar because it imitates McAfee, it is actually nothing more than a scam. It uses Trojan horses to invade computers. It uses fake security alerts and scans results to fool naïve users into paying for a useless product.

If MaCatte Antivirus 2009 has infected your computer, then you may have notice that your computer is working a lot slower. You may have also noticed that your Internet is slower and that your browser gets hijacked. If this rogue has infected your computer then you should remove it as soon as possible. In order to remove it manually, stop the following processes:


Type : Rogue Security Application

Relative file contents :

mac.exe, mcsa.exe, mstdll.exe, msc.exe, mcull.exe, msca.ico, Viruses.dat, msca.ico, Viruses.dat, WPtect.dll, msca.lnk
Delete these registry values:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A73890FC-177F-4198-AE3D-C64F7D9E69D8}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce “msca”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “wsc”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “msc”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnPost “0”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnPostRedirect “0”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnonBadCertRecving “0”

Unregister this DLL:


Delete these files:


Finally, delete these directories:

C:\Program Files\msca\
C:\Users\All Users\Application Data\mcsa
C:\Documents and Settings\All Users\Application Data\msca
C:\Documents and Settings\All Users\Start Menu\Programs\msca
C:\Documents and Settings\%User name%\Local Settings\Temp (delete only mac.exe file in this folder)
C:\Users\%User name%\AppData\Local\Temp\[RANDOM CHARACTERS.tmp]\

MaCatte Antivirus 2009 can be removed by following these directions, but manual removal can be very dangerous. Since this rogue creates files that have the same name as legitimate files, you must be very careful. A single mistake could crash your computer or permanently damage it. It would be much safer, efficient, and faster to use a legitimate antispyware program to do the removing for you.

ZookaWare runs on Windows Vista, 7, 8 and 10.

