Home » News » Rogue Antispyware » Remove XP Antispyware 2010, XP Antispyware 2010 Removal Help

Remove XP Antispyware 2010, XP Antispyware 2010 Removal Help

By Luciana on February 4, 2010 | Rogue Antispyware, Antivirus Live, AntivirusLive, Anti virus Live, Remove Antivirus Live, XP Antispyware 2010, XPAntispyware2010, XPAntispyware 2010, XP Antispyware2010, Remove XP Antispyware 2010 Remove XP Antispyware 2010, XP Antispyware 2010 Removal Help

XP Antispyware 2010 is actually a rogue anti-spyware application not meant to protect your system from malware, adware, spyware or any other kind of unwanted software. The thing with XP Antispyware 2010 is that it is a malicious application itself. The goal of this program is to make the user purchase the license for using it. In order to do so XP Antispyware 2010 pretends to be a legitimate security tool and urges you to pay for it. The parasite performs fake system scans and displays pop-up messages warning about some security issues which do not exist.

XP Antispyware 2010 is distributed online. A number of websites are made to look like online security scanners which promote XP Antispyware 2010 or suggest downloading video codecs which actually appear to be XP Antispyware 2010. The application may be downloaded and installed secretly as well. The parasite should be avoided if possible – don't download, install or purchase XP Antispyware 2010 as it might cost you money and be the source of many security problems. XP Antispyware 2010 should be removed instantly upon detection.

New processes created

av.exe Learn how to remove malicious processes

New XP Antispyware 2010 registry entries created

HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command "(Default)" = "av.exe" /START "%1? %*"
HKEY_CURRENT_USER\Software\Classes\secfile\shell\open\command "(Default)" = "av.exe" /START "%1? %*"
HKEY_CLASSES_ROOT\.exe\shell\open\command "(Default)" = "av.exe" /START "%1? %*"
HKEY_CLASSES_ROOT\secfile\shell\open\command "(Default)" = "av.exe" /START "%1? %*"
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command "(Default)" = "av.exe" /START "firefox.exe"
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command "(Default)" = "av.exe" /START "firefox.exe" -safe-mode
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command "(Default)" = "av.exe" /START "iexplore.exe"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "AntiVirusOverride" = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "FirewallOverride" = "1"
Download RegistryBooster 2010 to scan your registry errors
Learn how to remove malicious registry entries

New files and directories created

%Documents and Settings%\[UserName]\Application Data\av.exe
%Documents and Settings%\[UserName]\Application Data\WRblt8464P
Learn how to unregister malicious DLL files

How to remove XP Antispyware 2010

To remove XP Antispyware 2010 manually you must block rogue XP Antispyware 2010 related websites, remove malicious processes and registry entries, unregister dlls and delete all malicious XP Antispyware 2010 files from your computer.
Please note: cleaning your computer is a difficult and dangerous task, manually editing registry entries and removing processes and files may cause serious damage to your system. We strongly recommend scanning your computer with one of the legitimate antispyware scanners.

Scan your computer

More Rogue Antispyware news

Remove Win7 AV, Win7 AV removal

Remove Win7 AV, Win7 AV removal

Win7 AV is the latest rogue application promoted on win7av.com website. It should be avoided because the program is malicious and fraudulent as brower hijacker. Malware spreads via trojan which comes to the system through its flaws. The parasite downloads and installs itself automatically without user’s knowledge and consent. Once active it starts to scan your computer and displays fabricated security alerts. Read more.


News categories

Latest news

Related news