Remove Security Essentials 2010 (Fake Antivirus)

Microsoft Security Essentials is a very good antivirus that was released by Microsoft a few months back. Nowadays rogue and fake applications are using the names or legitimate softwares to trick users into believing that it is the right product.
Make sure that you have downloaded Microsoft Security Essentials from a trusted site. We have given direct links to Microsoft download site for the most trusted downloads . The real Microsoft Security Essentials can be downloaded from here :
[download id=”186″]

While Security Essentials 2010 is a fake and rogue antivirus that is actually not an antivirus but a scam application which will be installed by trojans and will always start at Windows startup. It will show like it is scanning your computer and then at the end it will show that you have many viruses in your computer. And then it will force you to purchase the application to remove those threats. The first thing is that the original Security Essentials from Microsoft is FREE. So you should never go for the purchase option. Instead, you should remove this fake antivirus.
security essentials 2010

How to remove Security Essentials 2010?

Remove With MalwareBytes

MalwareBytes is a very powerful anti-malware which can remove almost all the rogue or fake security products including Security Essentials 2010. Download MalwareBytes from the following location and scan your computer for malwares.
[download id=”259″]

Remove Manually

The following entries should be removed from the hijackthis log if present:
F2 – REG:system.ini: UserInit=C:\WINDOWS\system32\winlogon32.exe
O4 – HKLM\..\Run: [smss32.exe] C:\WINDOWS\system32\smss32.exe
O4 – HKCU\..\Run: [smss32.exe] C:\WINDOWS\system32\smss32.exe
O4 – HKCU\..\Run: [Security essentials 2010] C:\Program Files\Securityessentials2010\SE2010.exe
O4 – HKCU\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil10c.exe
O10 – Unknown file in Winsock LSP: c:\windows\system32\helpers32.dll
O10 – Unknown file in Winsock LSP: c:\windows\system32\helpers32.dll
O15 – Trusted Zone: http://*.buy-security-essentials.com
O15 – Trusted Zone: http://*.download-soft-package.com
O15 – Trusted Zone: http://*.download-software-package.com
O15 – Trusted Zone: http://*.get-key-se10.com
O15 – Trusted Zone: http://*.is-software-download.com
O15 – Trusted Zone: http://*.buy-security-essentials.com (HKLM)
O15 – Trusted Zone: http://*.get-key-se10.com (HKLM)
The following files need to be deleted:
c:\s
c:\Program Files\Securityessentials2010\
c:\Program Files\Securityessentials2010\SE2010.exe
%UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\Security essentials 2010.lnk
%UserProfile%\Desktop\Security essentials 2010.lnk
%UserProfile%\Start Menu\Security essentials 2010.lnk
c:\WINDOWS\system32\41.exe
c:\WINDOWS\system32\helpers32.dll
c:\WINDOWS\system32\smss32.exe
c:\WINDOWS\system32\warnings.html
c:\WINDOWS\system32\winlogon32.exe
The following registry entries need to be removed:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\buy-security-essentials.com
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-soft-package.com
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\download-software-package.com
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\get-key-se10.com
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\is-software-download.com
HKEY_CURRENT_USER\Software\SE2010
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\buy-security-essentials.com
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\get-key-se10.com
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop “NoChangingWallpaper” = “1”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer “NoActiveDesktopChanges” = “1”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer “NoSetActiveDesktop” = “1”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System “DisableTaskMgr” = “1”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “Security essentials 2010”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “smss32.exe”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ActiveDesktop “NoChangingWallpaper” = “1”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer “NoActiveDesktopChanges” = “1”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer “NoSetActiveDesktop” = “1”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run “smss32.exe”


Posted

in

by