Antiviral Factory 2013

Threat Scorecard

Ranking: 5,315
Threat Level: 20 % (Normal)
Infected Computers: 4,237
First Seen: August 14, 2013
Last Seen: September 20, 2023
OS(es) Affected: Windows

Antiviral Factory 2013 Image

Antiviral Factory 2013 is a rogue security application. Antiviral Factory 2013 is from the WinWeb Security family and is used to carry out a well known scam. Antiviral Factory 2013 is a clone of Live Security Platinum, a fake security program released last summer. Antiviral Factory 2013 is installed on the targeted computer without the computer user's permission. When Antiviral Factory 2013 is installed, Antiviral Factory 2013 carries out a series of tasks designed to trick inexperienced computer users into believing that their computer is infected with malware. This is done to convince inexperienced computer users that they need to pay for an expensive 'full version' of Antiviral Factory 2013.

Antiviral Factory 2013 – A Factory of Lies

Antiviral Factory 2013 makes harmful changes to the infected computer's settings that ensure that Antiviral Factory 2013 runs automatically each time the infected computer starts up. Upon start-up, Antiviral Factory 2013 runs a fake scan of the victim's computer, claiming that Antiviral Factory 2013 has found numerous infections. In fact, this is a lie; regardless of the state of your computer, Antiviral Factory 2013 will report having found a large number of infections in order to try to scam you. Antiviral Factory 2013's report is entirely fake, meant to scare inexperienced computer users into believing that they need to purchase a 'full version' of Antiviral Factory 2013. Apart from its fake malware scan, Antiviral Factory 2013 will display numerous bogus error messages and cause redirects on the affected computer's Web browser. One of the most irritating symptoms of an Antiviral Factory 2013 infection is that this fake anti-virus program will block executable files from running, preventing the computer user from launching applications. When the computer user tries to run a program, Antiviral Factory 2013 will display a fake error message claiming that the program was blocked because it is 'infected' with malware.

Annihilating the Troubles Caused by Antiviral Factory 2013

If Antiviral Factory 2013 is installed on your computer, it is essential to ignore its fake error messages and system scans. Rather than following its instructions, computer users should remove Antiviral Factory 2013 immediately with the help of a real anti-virus program. ESG malware analysts advise starting up the infected computer using Safe Mode before removal due to the fact that Antiviral Factory 2013 can block access to legitimate security software in your computer.

Among the numerous clones of Antiviral Factory 2013 are System Security, Antivirus Security, Total Security 2009, Security Tool, Trojan.RogueAV.a.gen, System Adware Scanner 2010, FakeAlert-KW.e, Advanced Security Tool 2010, System Tool 2011, Security Shield, MS Removal Tool, Total Security, System Security 2011, Essential Cleaner, Security Shield Pro 2011, Personal Shield Pro, Security Shield 2011, Security Sphere 2012, Advanced PC Shield 2012, Futurro Antivirus.
ScreenshotScreenshotScreenshotScreenshotScreenshotScreenshot

File System Details

Antiviral Factory 2013 may create the following file(s):
# File Name Detections
1. %CommonAppData%\[RANDOM NUMBERS AND CHARACTERS]\[RANDOM NUMBERS AND CHARACTERS].exe
2. %Programs%\Antiviral Factory 2013
3. %Programs%\Antiviral Factory 2013\Antiviral Factory 2013 Support Site.lnk
4. %CommonAppData%\[RANDOM NUMBERS AND CHARACTERS]\[RANDOM NUMBERS AND CHARACTERS].ico
5. %Programs%\Antiviral Factory 2013\Antiviral Factory 2013.lnk
6. %CommonAppData%\[RANDOM NUMBERS AND CHARACTERS]\[RANDOM NUMBERS AND CHARACTERS]
7. %Programs%\Antiviral Factory 2013\Uninstall.lnk
8. %Desktopdir%\Antiviral Factory 2013.lnk

Registry Details

Antiviral Factory 2013 may create the following registry entry or registry entries:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\Antiviral Factory 2013
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\Antiviral Factory 2013\UninstallString "%AppData%\[RANDOM NUMBERS AND CHARACTERS]\[RANDOM NUMBERS AND CHARACTERS].exe" -u
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce\[RANDOM NUMBERS AND CHARACTERS] %AppData%\[RANDOM NUMBERS AND CHARACTERS]\[RANDOM NUMBERS AND CHARACTERS].exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\Antiviral Factory 2013\DisplayIcon %AppData%\[RANDOM NUMBERS AND CHARACTERS]\[RANDOM NUMBERS AND CHARACTERS].exe,0
HKEY_CURRENT_USER\software\Microsoft\Windows\CurrentVersion\Run [RANDOM NUMBERS AND CHARACTERS].exe = %commonappdata%\[RANDOM NUMBERS AND CHARACTERS].exe\[RANDOM NUMBERS AND CHARACTERS].exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce\[RANDOM NUMBERS AND CHARACTERS]
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\Antiviral Factory 2013\DisplayName Antiviral Factory 2013
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\Antiviral Factory 2013\ShortcutPath "%AppData%\[RANDOM NUMBERS AND CHARACTERS]\[RANDOM NUMBERS AND CHARACTERS].exe" -u

URLs

Antiviral Factory 2013 may call the following URLs:

funlife.info

Messages

The following messages associated with Antiviral Factory 2013 were found:

Antiviral Factory 2013 Warning
Intercepting programs that may compromise your privacy and harm your system have been detected on your PC.
Click here to remove them immediately with Antiviral Factory 2013.
Antiviral Factory 2013 Warning
Your PC is still infected with dangerous viruses. Activate antivirus protection to prevent data loss and avoid the theft of your credit card details.Click here to activate protection.
Security Monitor: WARNING!
Attention! System detected a potential hazard (TrojanSPM/LX) on your computer that may infect executable files. Your private information and PC safety is at risk.
To get rid of unwanted spyware and keep your computer safe your need to update your current security software.
Click Yes to download official intrusion detection system (IDS software).
WARNING!
Application cannot be executed. The file procexp.exe is infected.
Please activate your antivirus software.
Warning: Your computer is infected
Detected spyware infection!
Click this message to install the last update of security software

Trending

Most Viewed

Loading...