Windows Security System 2010

By ZulaZuza in Rogue Anti-Spyware Program | 71 views
Rate it:
1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
Translate To:     Español  |   Português
More... More

Windows Security System 2010 Description

Windows Security System 2010 is a rogue anti-spyware application that propagates with the help of Trojans. Once the trial version of Windows Security System 2010 is inside your system it will generate fake pop-up alerts and run scanners that will detect non-existent malware on the compromised PC. Do not believe the security notifications displayed by Windows Security System 2010; they are just part of a scam to scare users into paying for its “full” version which will purportedly remove all the “detected” malware. Windows Security System 2010 is a useless program that should be removed immediately after detection.

Type: Rogue AntiSpyware Programs

How Can You Detect Windows Security System 2010?

Windows Security System 2010 Removal Details

Windows Security System 2010 has typically the following processes in memory:

  • %AppData%\ave.exe

Windows Security System 2010 creates the following registry entries:

  • HKEY_CURRENT_USER\Software\Classes\.exe\shell
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\start\command
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell\runas
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell\start\command
  • HKEY_CURRENT_USER\Software\Classes\.exe | @ = “secfile”
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell\open\command | IsolatedCommand = “%1″ %*
  • HKEY_CURRENT_USER\Software\Classes\.exe\DefaultIcon
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\start
  • HKEY_CURRENT_USER\Software\Classes\secfile\DefaultIcon
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell\open\command
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell\start
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command | IsolatedCommand = “%1″ %*
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell\open\command | @ = “%AppData%\ave.exe” /START “%1″ %*
  • HKEY_CURRENT_USER\Software\Classes\.exe
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\open
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command
  • HKEY_CURRENT_USER\Software\Classes\secfile
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell\open
  • HKEY_CURRENT_USER\Software\Classes\secfile\shell\runas\command
  • HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command | @ = “%AppData%\ave.exe” /START “%1″ %*
  • HKEY_CURRENT_USER\Software\Classes\.exe | Content Type = “application/x-msdownload”

Important Article Disclaimer

ESG Support Center

This entry was last updated on 04/21/10 and posted on 04/21/10. You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

Leave a Comment

Note: Abusive comments are not allowed. Please do not post comments regarding technical support issues. ESG customers that have issues with SpyHunter should open a customer support ticket.

*
To prove you're a person (not a spam script), type the security word shown in the picture. Click on the picture to hear an audio file of the word.
Click to hear an audio file of the anti-spam word

Home | SpyHunter Risk Assessment Model | Privacy Policy | End User License Agreement | Additional Terms and Conditions
Copyright 2003-2012. Enigma Software Group USA, LLC. All Rights Reserved.