Description: Advanced Security Tool 2010, which is related to the older malware application Security Central, is a rogue anti-spyware program. Like its relative, Advanced Security Tool 2010 tries to trick users into purchasing a license to the so called ‘full’ version of the software by scaring them using fake malware warnings. Advanced Security Tool 2010 reaches the user’s system via Trojan viruses that get downloaded along with fake video codec packs and from websites advertising fake malware scanners. Once installed, Advanced Security Tool 2010 modifies the registry and creates a number of files on the computer. It then loads at startup and starts performing fake system scans, returning results that show the previously created harmless files as dangerous malware programs. Advanced Security Tool 2010 also displays fake security warning pop-ups from the Windows taskbar. During all this activity, Advanced Security Tool 2010 repeatedly requests the user to purchase a license to the ‘full’ version of the software, claiming that the currently installed ‘trial’ version is incapable of cleaning out the detected ‘threats’. However, as Advanced Security Tool 2010 is a fake program, none of its versions are capable of scanning or cleaning any system.
Advanced Security Tool 2010
» Download Advanced Security Tool 2010 Removal Software
As soon as you find a copy of this dangerous malware installed on your computer, you should immediately take steps to initiate Advanced Security Tool 2010 removal. In order to delete Advanced Security Tool 2010, you need to stop its processes, remove files and folders and delete registry entries.
Remove Proxy Setting so You Can Connect to the Internet Again.
Advanced Security Tool 2010 Manual Removal Procedures
The first step you need to take in order to remove Advanced Security Tool 2010 is to stop the following processes which are related to the running of the malware application:
- %UserProfile%\Application Data\asectool.exe
- %UserProfile%\rundll32.exe
- C:\WINDOWS\system32\ntload.exe
Delete Advanced Security Tool 2010 Files
Next, it is necessary to delete the following files and folders to ensure Advanced Security Tool 2010 removal:
- %UserProfile%\asr.dat
- %UserProfile%\Application Data\1tmp.bat
- %UserProfile%\Application Data\asectool.exe
- %UserProfile%\Application Data\scan.dll
- %UserProfile%\Application Data\secmof.tmp
- %UserProfile%\Start Menu\Advanced Security Tool 2010.LNK
Now it is safe to say that no files related to Advanced Security Tool 2010 reside on your hard disk any longer. However, in order to make sure that no additional traces of this rogue security product are present in the system it is recommended to conduct a full operating system scan using genuine antivirus products such as Spyware Doctor with Antivirus.
Advanced Security Tool 2010 Registry Removal Procedures
File deletion alone is not enough to complete Advanced Security Tool 2010 removal in a satisfactory manner. The following entries should be deleted from the Windows Registry in order to remove Advanced Security Tool 2010 completely:
- HKEY_CURRENT_USER\Software\Advanced Security
- HKEY_CLASSES_ROOT\BrcWizApp.BrcWiz
- HKEY_CLASSES_ROOT\BrcWizApp.BrcWiz.1
- HKEY_CLASSES_ROOT\CLSID\{80c10400-59cb-4c79-97ce-cc693103afca}
- HKEY_CLASSES_ROOT\Interface\{4B66E1DF-4DE3-4CDA-83B5-11673EADAB0B}
- HKEY_CLASSES_ROOT\Interface\{9692BE2F-EB8F-49D9-A11C-C24C1EF734D5}
- HKEY_CLASSES_ROOT\TypeLib\{58B4E0F5-F122-4C02-B038-C482D998486A}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{80c10400-59cb-4c79-97ce-cc693103afca}
- HKEY_CURRENT_USER\Software\Microsoft "adver_id" = "29"
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Associations "LowRiskFileTypes" = ".exe;"
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "AdvSecTool"
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "rundll32" = ""
- HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Winlogon "Shell" = "%UserProfile%\Application Data\asectool.exe" /sn"
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system "EnableLUA" = "0"
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "rundll32" = ""
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon "Shell" = "explorer.exe C:\WINDOWS\system32\ntload.exe"
After the above step has been completed, your computer is safe from Advanced Security Tool 2010.
Advanced Security Tool 2010 Directories:
- N/A
Outside Resources:
http://www.bleepingcomputer.com/virus-removal/remove-advanced-security-tool-2010
http://deletemalware.blogspot.com/2010/08/remove-advanced-security-tool-2010.html
Speak Your Mind