Feb 23

Threat Description:

There is a big interrogation mark about the practices of Antivirus Live 2010 software. As we were analyzing this program, it became apparent to us that it is a clone of Antivirus Live, a previously known rogue security application that had been causing quite a fuss about its activity the last couple of months. You never spot the moment Antivirus Live 2010 appears on your computer because it needs no authorization of yours to get in. This scam software manages to find and make use of security exploits to intrude so there are weak chances that your AV guard succeeds in intercepting and stopping its malcode on its way. Antivirus Live 2010 does some bad things to System Registry of the injected workstation. It tends to add new keys there and therefore make your OS run some bad executables. Another aspect of Antivirus Live 2010 activity is the creation of new junk files on your system which will be ‘detected’ by this crimeware afterwards as parasites. Now, let’s describe the ‘visible’ part of this program’s activity. It tries to confuse its victims with the help of its scanners and alerts that seem to pop up on top of everything else telling you that you’ve got some serious security issues with your PC that ought to be resolved without delay. The final message Antivirus Live 2010 gives you is the one to purchase its licensed copy and install the full software version. But not only will doing so help you none, it will render your computer vulnerable, slow and eventually useless. Antivirus Live 2010 removal is important so be sure you take the tips below into consideration in case you came across this hazardous software.

Determine if your system is infected with Antivirus Live 2010 and related threats:

Antivirus Live 2010 screenshot:

Antivirus Live 2010

How to remove this threat manually:

Antivirus Live 2010 manual uninstall procedure:

Get rid of the related corrupt files:

  • %UserProfile%\Local Settings\Application Data\[random]\
  • %UserProfile%\Local Settings\Application Data\[random]\[random]sysguard.exe

Delete the associated registry entries:

  • HKEY_CURRENT_USER\Software\AvScan
  • HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download “RunInvalidSignatures” = “1″
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “ProxyOverride” = “”
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “ProxyServer” = “http=127.0.0.1:5555″
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Associations “LowRiskFileTypes” = “.exe”
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Attachments “SaveZoneInformation” = “1″
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “[random]“
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run “[random]“

Please note that Antivirus Live 2010 manual removal is a procedure of high complexity and should be performed with extreme caution. Lack of the required skills and even the slightest deviation from the instructions may cause irreparable system damage. To ensure trouble-free deletion, it is recommended to use the automatic removal tool below:

Download Antivirus Live 2010 Removal Tool

Leave a Reply