Description of XP Home Security 2011 and consequences of its residing on your PC

Hackers attempts to install copies of XP Home Security 2011 into as many machines as possible and use only unfair  distribution methods. In the wild, the program is spread by means of several trojans which target different vulnerabilities of computer system to secretly download and install the program. The fact that the program is also readily available for installation at several websites and that many users infected their computer systems with their own hands does not make the product a bit fairer as  its description is misleading, for its declared features have not been observed in reality.
Instead of satisfying user's PC security needs the adware loads tons of groundless alerts in order to scare users into registering its copy.

XP Home Security 2011 Technical Details:

  • Full name: XP Home Security 2011, XP HomeSecurity 2011, XP Home Security
  • Version: 2011
  • Type: Rogue anti-spyware
  • Origin: Russian federation

Signs of being infected with XP Home Security 2011:

The adware has plenty of popups containing spurious detection and threat prevention alerts to show. Moreover, it displays quite professionally looking scan window with reflection of files and folders allegedly scanned. If you take a more precise look though, you will find out that the folders the adware pretends to scan mismatch with your PC actual folders.  That is an easy way to prove XP Home Security 2011   is a scam.
In the case of any identification issues related to the adware or just to  get rid of XP Home Security 2011 and other (real) infections, click  this free scan link.

XP Home Security 2011 automatical removal:

The rogue is known to be a mutating PC parasite and can be updated after its installation several times. The purpose is to be ahead of adware detection tools. That is why only a timely updated antimalware can guarantee XP Home Security 2011 disposal.  Such security  software is  available below.

Manual Removal of XP Home Security 2011:

Please be aware that removing XP Home Security 2011 manually you assume the risk of possible damage due to your mistyping and omissions, as well as the risk of damage caused by other PC pests, for the manual guide covers the adware in question only.

Remove XP Home Security 2011 files and dll’s:

%Documents and Settings%\[User Name]\Local Settings\Application Data\[random].exe
%Documents and Settings%\[All Users]\[random]
%Documents and Settings%\[All Users]\Application Data\[random]
%Documents and Settings%\[User Name]\Templates\[random]

Unregister XP Home Security 2011 registry values:

HKEY_CURRENT_USER\Software\Classes\.exe “(Default)” = ‘exefile’
HKEY_CURRENT_USER\Software\Classes\.exe “Content Type” = ‘application/x-msdownload’
HKEY_CURRENT_USER\Software\Classes\.exe\DefaultIcon “(Default)” = ‘%1′ = ‘”%Documents and Settings%\[User Name]\Local Settings\Application Data\[random].exe” /START “%1″ %*’
HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command “IsolatedCommand” = ‘”%1″ %*’
HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command “(Default)” = ‘”%1″ %*’
HKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\command “IsolatedCommand” = ‘”%1″ %*’
HKEY_CURRENT_USER\Software\Classes\exefile “(Default)” = ‘Application’
HKEY_CURRENT_USER\Software\Classes\exefile “Content Type” = ‘application/x-msdownload’
HKEY_CURRENT_USER\Software\Classes\exefile\DefaultIcon “(Default)” = ‘%1′
HKEY_CURRENT_USER\Software\Classes\exefile\shell\open\command “(Default)” = ‘”%Documents and Settings%\[User Name]\Local Settings\Application Data\[random].exe” /START “%1″ %*’
HKEY_CURRENT_USER\Software\Classes\exefile\shell\open\command “IsolatedCommand” = ‘”%1″ %*’
HKEY_CURRENT_USER\Software\Classes\exefile\shell\runas\command “(Default)” = ‘”%1″ %*’
HKEY_CURRENT_USER\Software\Classes\exefile\shell\runas\command “IsolatedCommand” – ‘”%1″ %*’
HKEY_CLASSES_ROOT\.exe\DefaultIcon “(Default)” = ‘%1′
HKEY_CLASSES_ROOT\.exe\shell\open\command “(Default)” = ‘”%Documents and Settings%\[User Name]\Local Settings\Application Data\[random].exe” /START “%1″ %*’
HKEY_CLASSES_ROOT\.exe\shell\open\command “IsolatedCommand” = ‘”%1″ %*’
HKEY_CLASSES_ROOT\.exe\shell\runas\command “(Default)” = ‘”%1″ %*’
HKEY_CLASSES_ROOT\.exe\shell\runas\command “IsolatedCommand” = ‘”%1″ %*’
HKEY_CLASSES_ROOT\exefile “Content Type” = ‘application/x-msdownload’
HKEY_CLASSES_ROOT\exefile\shell\open\command “IsolatedCommand” = ‘”%1″ %*’
HKEY_CLASSES_ROOT\exefile\shell\runas\command “IsolatedCommand” = ‘”%1″ %*’
HKEY_CLASSES_ROOT\exefile\shell\open\command “(Default)” = ‘”%Documents and Settings%\[User Name]\Local Settings\Application Data\[random].exe” /START “%1″ %*’
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command “(Default)” = ‘”%Documents and Settings%\[User Name]\Local Settings\Application Data\[random].exe” /START “C:\Program Files\Mozilla Firefox\firefox.exe”‘
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command “(Default)” = ‘”%Documents and Settings%\[User Name]\Local Settings\Application Data\[random].exe” /START “C:\Program Files\Mozilla Firefox\firefox.exe” -safe-mode’
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command “(Default)” = ‘”%Documents and Settings%\[User Name]\Local Settings\Application Data\[random].exe” /START “C:\Program Files\Internet Explorer\iexplore.exe”‘

