Home Malware Programs Rogue Anti-Virus Programs Win 8 Security System

Win 8 Security System

Posted: August 30, 2012

Threat Metric

Threat Level: 10/10
Infected PCs: 768
First Seen: August 30, 2012
Last Seen: May 8, 2023
OS(es) Affected: Windows

Win 8 Security System Screenshot 1Win 8 Security System is a member of the FakeRean-Braviax family of rogue anti-malware scanners, a collection of scamware-based Trojans that display fraudulent alerts and scans before requesting money to 'fix' your PC. Like all members of its family, Win 8 Security System can't actually protect your PC from real Trojans or other forms of harmful software, and SpywareRemove.com malware researchers suggest deleting Win 8 Security System with a legitimate alternative in anti-malware software. Because Win 8 Security System often is installed by associated Trojans and rootkits, you should consider scanning your entire PC while recovering from a Win 8 Security System infection – particularly since related Trojan downloaders have been known to disrupt security software that's necessary for your computer's protection.

Win 8 Security System: the Software Security That Makes No Bones About Busting Your System

Win 8 Security System may keep up an appearance of providing 'proactive protection,' multiple kinds of security features and even an included firewall utility, but these tools merely are hollow shells that Win 8 Security System uses to display fake system information. Like other types of scamware throughout the globe, Win 8 Security System deliberately displays inaccurate security intel as a self-promotional effort, hoping that you'll panic, spend money on Win 8 Security System's registration key and trust Win 8 Security System to remove all of these fictitious PC threats.

Win 8 Security System and related PC threats also have histories of blocking legitimate programs, including security software that could help protect your PC from Win 8 Security System or assistance with removing Win 8 Security System. However, the majority of these issues should be resolved by closing Win 8 Security System via Safe Mode, after which you can delete Win 8 Security System easily through anti-malware scans. Other changes, such as Registry-based attacks against Internet Explorer's security features, may require additional steps to solve.

Tightening Your PC Against the Faux Security of Win 8 Security System

Similar tactics to the above can be found in other families of fake anti-malware programs, although SpywareRemove.com malware researchers especially note the strong resemblance between Win 8 Security System and other FakeRean-based fake anti-malware scanners like Antivirus 2008 Pro, Antivirus XP 2008, Windows Antivirus 2008, Vista Antivirus 2008, PC Clean Pro, Antivirus Pro 2009, Rogue.Vista Antivirus 2008, AntiSpy Safeguard, ThinkPoint, Spyware Protection 2010, Internet Antivirus 2011, Palladium Pro, XP Anti-Virus 2011, CleanThis, XP Security 2012, XP Home Security 2012 and AntiVirus PRO 2015. The serial key '8F42D6E3-FD18' may allow you to disable Win 8 Security System before its removal, with the latter strongly encouraged for the sake of your PC's safety.

Win 8 Security System usually is installed by Trojan downloaders that display fake Windows update or security alert messages. These pop-ups make Win 8 Security System appear to be a Windows security update to resolve a supposedly ongoing infection, although Win 8 Security System's identical appearance to related scamware should make it easy enough to identify as a fake. Trojans that install Win 8 Security System and other members of the FakeRean family may be identified by aliases such as Trojan:Win32/Tibs.gen!H, Adware.UltimateDefend.E, Troj/Spywad-AZ, Troj/Dorf-BB, Trojan.Packed.13, Trojan.Virantix.C or Troj/Agent-HFD.

Win 8 Security System Screenshot 2Win 8 Security System Screenshot 3Win 8 Security System Screenshot 4Win 8 Security System Screenshot 5Win 8 Security System Screenshot 6Win 8 Security System Screenshot 7Win 8 Security System Screenshot 8

Technical Details

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%LocalAppData%\[RANDOM CHARACTERS].exe

Additional Information

The following directories were created:
%UserProfile%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Win 8 Security System
Loading...