Home
Articles
Spyware Research
Support
Scan Now
Purchase
F.A.Q.
Top Infections: About SpywareGlossary Latest Detections Fake Scanner Sites Google Search Redirects Scour.com Shopcompareus.com savecompare.com Couponmountain.com ![]() |
Security Master AVAlias: Security Master AV, Security Master AV Trojan, Security Master AV Fake, Security Master AV Virus, Home Security Essentials
Description: Security Master AV is a fake antivirus product which hijacks your computer and uses scare tactics to get you to purchase the full version. Security Master AV is very good at eluding detection. In order for Security Master AV to stop you from removing it, it disables your existing antivirus and antispyware programs and blocks access to help forums and to major name brand antispyware and antivirus vendor websites. It also disables Task Manager so that you don't shut Security Master AV down manually. Additionally, Security Master AV modifies your 'hosts' file which basically hijacks your Internet connection. This can be used to block access to certain websites, and to re-direct your searches to websites of Security Master AV's choice. Security Master AV adds several hundred entries to your registry under the 'Image File Execution Options' key. These entries are used to block access to several hundred programs. Security Master AV occasionally harasses the user with warnings and messages saying that their computer is infected and is under attack from hackers. In most cases we have seen, Security Master AV was installed by a trojan or mistakenly downloaded from one of many fraudulent Fake Scanner Sites. Security Master AV displays exaggerated fake scan results similar to those shown below: ![]() If you are unable to run programs, this is because Security Master AV has disabled them. Security Master AV Special Removal InstructionsPlease make sure to bookmark this page as you may need to refer back to it to complete the removal steps.Security Master AV may prevent you from running programs and/or limit your Internet Access. Follow the steps below for such cases. Step 1 : Download the following files to the infected computer. If you are unable to, you can download them to a healthy computer then move them to the infected computer using a network connection or a usb flash drive. If you are able to download these files directly onto the infected computer, that's fine, please do so as you will need them to remove Security Master AV. The files are: Step 2 : Now that you have these 2 files on the infected computer, lets proceed to manually kill the running process belonging to Security Master, then launch SpyNoMore to complete the disinfection. To kill the offending process, launch Windows Task Manager by simultaneously hitting the Ctrl+Alt+Del keys on your keyboard. If Windows Task Manager is disabled by Security Master AV, double-click the 'Fix-Registry.reg' to merge it into your registry. A dialog box with the question "Are you sure you want to add / merge the information in Fix-Registry.reg to the registry?" will appear. Answer 'Yes'. Windows Task Manager should be enabled now and you can launch it by simultaneously hitting Ctrl+Alt+Del. In Windows Task Manager, select the Processes tab and terminate any process starting with the 2 capital letters 'SM' followed by 4 or 5 lower case letters and numbers (for example SM6c38.exe or SMe934.exe or SMe9fe.exe). To terminate the process, simply right-click on it and select End Process and confirm process termination. Windows will display the following warning message: "WARNING: Terminating a process can cause undesired results including loss of data and system instability. The process will not be given the chance to save its state or data before it is terminated. Are you sure you want to terminate the process?". You should click Yes button and malicious process will be terminated.
Step 3: Now that you have killed Security Master AV's running process, you can remove any proxy setting it had put in place.
Step 4: You should now be able to run SpyNoMore anti-spyware and remove Security Master AV from your computer. Please note that the free version of SpyNoMore will only show you the detections but will not remove them. In order to remove the infection you need to purchase a 1-year license which costs $29 (or $39 for 3 computers). In all cases, you will be able to see Security Master AV in the free version scan results. Threat type: Hijacker - A Hijacker is a software application that takes control of your browser's settings. Usually it changes your home page and redirects it to some unknown site or modifies your search settings. It prevents you from changing back your browser's settings. An infected browser usually operates much slower. Ransomware - Ransomware is a software application that infects a computer and asks for money to have the infection removed. Trojan - A Trojans or Trojan Horse is any programs that installs itself secretly normally via malware programs, quite often with sinister intent. Once installed, the trojan author (hacker) can gain complete control of the infected PC. Trojans are usually designed to steal sensitive information and/or destroy the system. Trojans can be distributed as unsolicited email attachments, or bundled with freeware and shareware programs. Advice: Remove This is a very high risk threat and should be removed immediately as to prevent harm to your computer and / or to protect your privacy. Detection: SpyNoMore removes Security Master AV: Yes Threat risk: Very High Risk Extremely dangerous malware. Uses stealth installation, randomly named entries and has the capability to self update or resurrect after incomplete removal. Almost impossible to remove manually. Category mostly consists of trojans and spyware. Symptoms: Security Master AV gets installed without your permission. Inability to run programs. You cannot simply uninstall AV Security Suite as it is malware and does not come with an uninstaller. Inability to open Task Manager. Running Process Signatures: N/A File Signatures: N/A Registered Dll (Dynamic Link Library) Signatures: N/A Folder Signatures: N/A Registry Signatures: N/A SpyNoMore Collected Residual File Signatures: N/A
| ||||||||||
|
||||