Home Malware Programs Rogue Anti-Spyware Programs Vista Security Tool 2010

Vista Security Tool 2010

Posted: March 17, 2010

Vista Security Tool 2010 is a rogue antispyware program designed to pilfer money from hapless computer users. Vista Security Tool 2010 gets into your computer after malicious Trojans open a backdoor to grant the rogue entry to the compromised system. It may also gain entry via video codecs or corrupt updates downloaded on your PC. Symptoms of a Vista Security Tool 2010 infection include the home page of your PC changing; a system scan running on your machine everytime you boot up Windows. Vista Security Tool 2010 will also urge you to purchase the full version of the rogueware. Do not fall for this blatant scam, instead remove Vista Security Tool 2010 before it causes chaos on your system.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 C:\Documents and Settings\[username]\Local Settings\Application Data\ave.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Vista Security Tool 2010HKEY_LOCAL_MACHINE\SOFTWARE\Vista Security Tool 2010HKEY..\..\..\..{RegistryKeys}HKEY_CLASSES_ROOT.exeshellopencommand "(Default)" = "%UserProfile%Local SettingsApplication Dataav.exe" /START "%1" %*HKEY_CLASSES_ROOTsecfileshellopencommand "(Default)" = "%UserProfile%Local SettingsApplication Dataav.exe" /START "%1" %*HKEY_CURRENT_USERSoftwareClasses.exeshellopencommand "(Default)" = "%UserProfile%Local SettingsApplication Dataav.exe" /START "%1" %*HKEY_CURRENT_USERSoftwareClassessecfileshellopencommand "(Default)" = "%UserProfile%Local SettingsApplication Dataav.exe" /START "%1" %*HKEY_LOCAL_MACHINESOFTWAREClientsStartMenuInternetFIREFOX.EXEshellopencommand "(Default)" = "%UserProfile%Local SettingsApplication Dataav.exe" /START "C:Program FilesMozilla Firefoxfirefox.exe"HKEY_LOCAL_MACHINESOFTWAREClientsStartMenuInternetFIREFOX.EXEshellsafemodecommand "(Default)" = "%UserProfile%Local SettingsApplication Dataav.exe" /START "C:Program FilesMozilla Firefoxfirefox.exe" -safe-modeHKEY_LOCAL_MACHINESOFTWAREClientsStartMenuInternetIEXPLORE.EXEshellopencommand "(Default)" = "%UserProfile%Local SettingsApplication Dataav.exe" /START "C:Program FilesInternet Exploreriexplore.exe"HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity Center "AntiVirusOverride" = "1"HKEY_LOCAL_MACHINESOFTWAREMicrosoftSecurity Center "FirewallOverride" = "1"HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Vista Security Tool 2010

One Comment

Loading...