SecureWarrior is another version of a rogue security program that is a variant of SecureVeteran, SecurityFighter and SecurityTool among others. All of these mentioned programs share the same Graphical User Interface (GUI) and aims of deceiving Internet users by means of a fraudulent home page that will prompt visitors of possible virus infections. SecureWarrior will advise users to download and install the program accompanying with a promise of sure computer protection and will provide immediate threat removal.

Once SecureWarrior or for some it was Security Warrior, was installed and run, several pop-up messages will be displayed to intimidate users and this time, it will demand to purchase the licensed version of the program as the only acceptable solution to remove detected threats. SecureWarrior and all of the same rogue program has no proven computer security capability both for trial and registered version. They have no scanning engine that will intensely search computers for known threats and viruses. Purchasing SecureWarrior will not do any good on end users, it is only the author that will benefit from this fraudulent activities.

Alias: Security Warrior

Damage Level: Low

Systems Affected: Windows

Files and Folders Associated with SecureWarrior:
%Program Files%\SecureWarrior Software\SecureWarrior\license.txt
%Program Files%\SecureWarrior Software\SecureWarrior\securewarrior.exe
%Program Files%\SecureWarrior Software\SecureWarrior\uninstall.exe
%Documents and Settings%\All Users\Desktop\SecureWarrior.lnk
%Documents and Settings%\All Users\Start Menu\Programs\SecureWarrior
%Documents and Settings%\All Users\Start Menu\Programs\SecureWarrior\1 SecureWarrior.lnk
%Documents and Settings%\All Users\Start Menu\Programs\SecureWarrior\2 Homepage.lnk
%WINDOWS%\[Random].cpl
%WINDOWS%\[Random].dll

Windows Registry that Belongs to this Rogue:
HKEY_CURRENT_USER\Software\SecureWarrior
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Current Version\Uninstall\SecureWarrior
HKEY_LOCAL_MACHINE\SOFTWARE\SecureWarrior
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root \LEGACY_SECUREWARRIORSVC
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services \SecureWarriorSvc
HKEY_CURRENT_USER\Software\Microsoft\Windows\Current Version\Run “0urw56p0.exe”
HKEY_CURRENT_USER\Software\Microsoft\Windows\Current Version\Run “SecureWarrior”

Screenshot Image:

SecureWarrior image