Rogue software details: Advanced Defender

Advanced Defender is a rogue security application. In order to remove it, find out what files and registry entries to look for below.

Known system changes:

Files
c:\Desktop\Advanced Defender.lnk
c:\Windir\secureit.com
c:\Windir\microsoftdefend.dll
c:\Windir\certofsystem.exe
c:\Windir\explorers.exe
c:\Windir\regp.exe
c:\Windir\spoos.exe
c:\Program Files\Advanced Defender\advanceddefender.exe

Folders
c:\ProgramFiles\Advanced Defender
c:\StartMenu\Programs\Advanced Defender

Registry entries
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Advanced Defender
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\
CurrentVersion\Uninstall\Advanced Defender
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\
CurrentVersion\Run
Value: advanceddefender
Data: C:\Program Files\Advanced Defender\advanceddefender.exe

Source: Lavasoft Malware Lab’s Rogue Gallery.

Don't miss