<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Emsisoft New Malware Blog &#187; DesktopSecurity2010</title>
	<atom:link href="http://www.anti-malware-blog.com/tag/desktopsecurity2010/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.anti-malware-blog.com</link>
	<description>Just another WordPress weblog</description>
	<lastBuildDate>Wed, 01 Sep 2010 14:39:26 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Desktop Security 2010 Adware Removal Instructions</title>
		<link>http://www.anti-malware-blog.com/2010/02/22/desktop-security-2010-adware-removal-instructions/</link>
		<comments>http://www.anti-malware-blog.com/2010/02/22/desktop-security-2010-adware-removal-instructions/#comments</comments>
		<pubDate>Mon, 22 Feb 2010 20:10:49 +0000</pubDate>
		<dc:creator>emsi</dc:creator>
				<category><![CDATA[Malware Alerts]]></category>
		<category><![CDATA[Removal Help]]></category>
		<category><![CDATA[DesktopSecurity2010]]></category>
		<category><![CDATA[Rogue]]></category>

		<guid isPermaLink="false">http://www.anti-malware-blog.com/?p=712</guid>
		<description><![CDATA[The Emsi Software malware research team has  discoverd a new outbreak           of the Desktop Security 2010 adware. a-squared            Anti-Malware detects this malware as Adware.Win32.DesktopSecurity2010.
Desktop Security 2010 is a rogue security program. This rogue [...]]]></description>
			<content:encoded><![CDATA[<p>The <strong>Emsi Software</strong> malware research team has  discoverd a new outbreak           of the <strong>Desktop Security 2010</strong> adware. <strong><a href="http://www.emsisoft.com/en/software/antimalware/">a-squared            Anti-Malware</a></strong> detects this malware as <strong><a href="http://www.emsisoft.com/en/malware/?Adware.Win32.DesktopSecurity2010" target="_blank">Adware.Win32.DesktopSecurity2010</a></strong>.</p>
<p><strong>Desktop Security 2010</strong> is a rogue security program. This rogue  application      tries to trick you  by displaying  false positive/misleading  scan     results  report, which  says that your  computer is infected with      viruses or  trojan, but you  will not be able  to delete them before you      purchase.</p>
<p><strong>Create new files (some files and registry name are random):</strong></p>
<ul>
<li>%ProgramFiles%\Desktop Security 2010\</li>
<li>%ProgramFiles%\Desktop Security 2010\MFC71ENU.DLL</li>
<li>%ProgramFiles%\Desktop Security 2010\msvcp71.dll</li>
<li>%ProgramFiles%\Desktop Security 2010\msvcr71.dll</li>
<li>%ProgramFiles%\Desktop Security 2010\pthreadVC2.dll</li>
<li>%ProgramFiles%\Desktop Security 2010\securitycenter.exe</li>
<li>%ProgramFiles%\Desktop Security 2010\taskmgr.dll</li>
<li>%ProgramFiles%\Desktop Security 2010\uninstall.exe</li>
<li>%ProgramFiles%\Desktop Security 2010\daily.cvd</li>
<li>%ProgramFiles%\Desktop Security 2010\Desktop Security 2010.exe</li>
<li>%ProgramFiles%\Desktop Security 2010\guide.chm</li>
<li>%ProgramFiles%\Desktop Security 2010\hjengine.dll</li>
<li>%ProgramFiles%\Desktop Security 2010\mfc71.dll</li>
<li>%SystemRoot%\system32\cbrdwlvrumw6.exe</li>
<li>%UserProfile%\Local Settings\Temp\kilslmd.exex</li>
<li>%UserProfile%\Local Settings\Temp\kn.a.exe</li>
<li>%UserProfile%\Local Settings\Temp\gedx_ae09.exe</li>
<li>%UserProfile%\Local Settings\Temp\kgn.exe</li>
</ul>
<p><strong>Create new registry entries:</strong></p>
<ul>
<li>HKEY_LOCAL_MACHINE\software\Desktop Security 2010</li>
<li>HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Uninstall\Desktop Security 2010</li>
<li>HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Run, &#8220;Desktop Security 2010&#8243;</li>
<li>HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Run, &#8220;SecurityCenter&#8221;</li>
<li>HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Run, &#8220;cbrdwlvrumw6&#8243;</li>
</ul>
<p><strong>Screenshots:</strong></p>
<p><a href="http://www.anti-malware-blog.com/wp-content/uploads/2010/02/Adware.Win32.DesktopSecurity2010_1.png"><img class="alignnone size-medium wp-image-713" title="Adware.Win32.DesktopSecurity2010" src="http://www.anti-malware-blog.com/wp-content/uploads/2010/02/Adware.Win32.DesktopSecurity2010_1-400x238.png" alt="" width="400" height="238" /></a></p>
<p><a href="http://www.anti-malware-blog.com/wp-content/uploads/2010/02/Adware.Win32.DesktopSecurity2010_2.png"><img class="alignnone size-medium wp-image-714" title="Adware.Win32.DesktopSecurity2010" src="http://www.anti-malware-blog.com/wp-content/uploads/2010/02/Adware.Win32.DesktopSecurity2010_2-400x238.png" alt="" width="400" height="238" /></a></p>
<p><a href="http://www.anti-malware-blog.com/wp-content/uploads/2010/02/Adware.Win32.DesktopSecurity2010_3.png"><img class="alignnone size-medium wp-image-715" title="Adware.Win32.DesktopSecurity2010" src="http://www.anti-malware-blog.com/wp-content/uploads/2010/02/Adware.Win32.DesktopSecurity2010_3-400x319.png" alt="" width="400" height="319" /></a></p>
<p><a href="http://www.anti-malware-blog.com/wp-content/uploads/2010/02/Adware.Win32.DesktopSecurity2010_4.png"><img class="alignnone size-medium wp-image-716" title="Adware.Win32.DesktopSecurity2010" src="http://www.anti-malware-blog.com/wp-content/uploads/2010/02/Adware.Win32.DesktopSecurity2010_4-400x358.png" alt="" width="400" height="358" /></a></p>
<p><a href="http://www.anti-malware-blog.com/wp-content/uploads/2010/02/Adware.Win32.DesktopSecurity2010_5.png"><img class="alignnone size-full wp-image-717" title="Adware.Win32.DesktopSecurity2010" src="http://www.anti-malware-blog.com/wp-content/uploads/2010/02/Adware.Win32.DesktopSecurity2010_5.png" alt="" width="395" height="133" /></a></p>
<p><strong>How to remove the infection of Desktop Security 2010</strong><strong> </strong><strong>(Adware.Win32.DesktopSecurity2010</strong><strong>)?</strong></p>
<p>To delete this malware infection, please download and install <strong><a href="http://www.emsisoft.com/en/software/antimalware/">a-squared           Anti-Malware</a></strong>. Run a full scan on all drives and move  all detected          items to the quarantine.</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.anti-malware-blog.com/2010/05/11/rts-antivirus-2010-pro-adware-removal-instructions/" rel="bookmark" class="crp_title">RTS Antivirus 2010 Pro Adware Removal Instructions</a></li><li><a href="http://www.anti-malware-blog.com/2010/03/11/smart-security-adware-removal-instructions/" rel="bookmark" class="crp_title">Smart Security Adware Removal Instructions</a></li><li><a href="http://www.anti-malware-blog.com/2010/02/15/security-essentials-2010-adware-removal-instructions/" rel="bookmark" class="crp_title">Security Essentials 2010 Adware Removal Instructions</a></li><li><a href="http://www.anti-malware-blog.com/2010/03/22/user-protection-adware-removal-instructions/" rel="bookmark" class="crp_title">User Protection Adware Removal Instructions</a></li><li><a href="http://www.anti-malware-blog.com/2010/04/06/your-protection-adware-removal-instructions/" rel="bookmark" class="crp_title">Your Protection Adware Removal Instructions</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.anti-malware-blog.com/2010/02/22/desktop-security-2010-adware-removal-instructions/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
