Home Malware Programs Rogue Anti-Virus Programs SecurityApps

SecurityApps

Posted: August 25, 2015

Threat Metric

Threat Level: 10/10
Infected PCs: 560
First Seen: August 25, 2015
Last Seen: February 13, 2023
OS(es) Affected: Windows


Computer users that are presented with a security warning by the SecurityApps application and do not remember installing it are infected with a rogue security program. Security authorities reveal that the SecurityApps application may not be a trusted cyber shield and may be deployed by PC Fix Labs LLC with freeware packages. PC Fix Labs LLC are a company that claims to work with brands like Apple, Asus, Lenovo, Dell and Acer but are not recognized as legitimate partners. Moreover, the 866-439-4500 technical support line hosted by PC Fix Labs LLC may be associated with browser hijacking applications. You should not believe the security alerts by SecurityApps that may be presented to you as notifications in the tray area, pop-up windows and dialog boxes. The SecurityApps rogue security tool is programmed to use native windows dialog boxes to convince users that they are infected with a severe cyber threat. Computer users that are infected with the SecurityApps rogueware might be directed to call 866-439-4500 and be asked to allow remote connection to their PCs. Needless to say, you should not provide remote access to your PC to any employees of PC Fix Labs LLC because they may crash your system on purpose. The technicians working for PC Fix Labs LLC may attempt to connect to your copy of the SecurityApps rogueware remotely and modify your Windows installation. It is imperative to block incoming automatic and deny Internet access to the SecurityApps rogue program. The SecurityApps rogueware may edit the entries in your Windows Registry and Windows Task Manager to prevent you from killing and deleting its main executable. You may not find the SecurityApps application listed on the 'Programs and Features' panel because the SecurityApps rogueware is designed to run as a portable app. Additionally, the SecurityApps application may make a modification to your default Internet client, and you may be redirected to online locations like Adultx.top that are blacklisted by Google Safe Browsing. You can address problems with the SecurityApps rogueware by investing into a renowned anti-malware solution that can remove threats like SecurityApps and delete their traces.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES(x86)%\Securid\Securid\Wiindows.exe File name: Wiindows.exe
Size: 1.12 MB (1122304 bytes)
MD5: b8bda988a8fbc39ea473aefc7bfe8014
Detection count: 159
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Securid\Securid
Group: Malware file
Last Updated: October 15, 2021
%PROGRAMFILES(x86)%\PC FIX LABS LLC\Smart Security Suite\SmartSecuritySuite.exe File name: SmartSecuritySuite.exe
Size: 2.18 MB (2188528 bytes)
MD5: 6dd22354ef2742268c9e6bd558ba8170
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\PC FIX LABS LLC\Smart Security Suite
Group: Malware file
Last Updated: June 14, 2016
%PROGRAMFILES(x86)%\PC Optimizer\PC Optimizer\Wiindows.exe File name: Wiindows.exe
Size: 1.12 MB (1121792 bytes)
MD5: 7f5798292be15f8a4d47793dbf67aea0
Detection count: 1
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\PC Optimizer\PC Optimizer
Group: Malware file
Last Updated: May 6, 2016

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%WINDIR%\System32\Tasks\SecurityApps2HKEY..\..\..\..{RegistryKeys}SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SecurityApps2SOFTWARE\Wow6432Node\Caphyon\Advanced Installer\LZMA\{D2CB3C4E-701F-4277-B7B1-1708AE9364BF}SOFTWARE\Wow6432Node\PC Optimizer\PC OptimizerSOFTWARE\Wow6432Node\Securid\SecuridHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}{D2CB3C4E-701F-4277-B7B1-1708AE9364BF}

Additional Information

The following directories were created:
%LOCALAPPDATA%\SecurityApps%PROGRAMFILES%\PC Optimizer\PC Optimizer%PROGRAMFILES(x86)%\PC Optimizer\PC Optimizer%PROGRAMFILES(x86)%\Securid%PROGRAMFILES(x86)%\SecurityApps2
Loading...