By ESGI Advisor in Browser Hijackers Image

Please do not visit is just another clone of the countless malicious websites that promote the fake anti-virus software Antivirus Protection. Therefore, supports an Internet-based scam, and you should not believe anything that you read on the site. Most importantly, do not download or pay for the phony software that advertises, because it is malware.

The Hijacker

In addition to being the name of the website, is also the name of the hijacker that causes the web browser on the infected computer to redirect to that site continually. When the hijacker has infected your computer, you will be unable to view any site other than This is extremely common for a website that promotes fake security software, and all of the other clone sites that are identical to have hijackers that behave in the same way. The hijacker for may be present on your PC alone, or it may be part of an infection with the fake security application Antivirus Protection. Either way, if your computer is repeatedly taking you to instead of the websites that you try to visit, then your system is infected with malware.

The Website

Just like its hijacker, the website is nothing new. is a complete, word-for-word copy of every other bogus site that sells Antivirus Protection. Everything about it is the same, from the fake customer testimonials to the phony product description and nonexistent company address. even has an End User License Agreement (EULA) page and an email "customer support" contact form, although these don't really carry any weight, because both the company they refer to and the product they claim to support do not exist. Even the graphics on are identical to those of the other Antivirus Protection sites. Obviously, very little effort was put into the site itself, and the reason for that is that is really only valuable to its creators as a payment page for the Antivirus Protection scam.

Like every other website that promotes a fake security product, the public registration information for is false. On the surface, it looks as though is registered to a company in the United States – although even that doesn't make sense, because the website itself claims to be that of a company located in the United Kingdom. Furthermore, if you take a look at the IP address for, at present, it is That IP address is located in Ukraine! What's worse, that address is the same one used by and, two known malicious websites that serve the Antivirus Protection fraud. Beyond a shadow of a doubt, has absolutely nothing worthwhile to offer, and there is no good reason to trust the site.

File System Details may create the following file(s):
# File Name Detections

Registry Details may create the following registry entry or registry entries:
"Content Type”=”application/x-msdownload"
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\PhishingFilter "Enabled" = '0'
[HKEY_CLASSES_ROOT\.exe] @=”exefile”


Most Viewed