Livesecuritysuite.com

Livesecuritysuite.com Description

Livesecuritysuite.com is a deceptive domain that advertises and distributes the fake application called Live Security Suite. When inside a PC, Live Security Suite will display fake security notifications that, if clicked on, will redirect a user to Livesecuritysuite.com where he/she will be prompted to purchase the non-existent "licensed" version of Live Security Suite. Use a reliable malware removal tool to get rid of Live Security Suite and Livesecuritysuite.com.

Technical Information

File System Details

Livesecuritysuite.com creates the following file(s):
# File Name Detection Count
1 %UserProfile%\Application Data\Live Security Suite\unins000.exe N/A
2 %Program Files%\Live Security Suite\db\WMILib.dll N/A
3 %Program Files%\Live Security Suite\LiveSS.exe N/A
4 %UserProfile%\Local Settings\Application Data\Microsoft\Windows\services.exe N/A
5 %Documents and Settings%\All Users\Start Menu\Programs\Live Security Suite\Live Security Suite Home Page.lnk N/A
6 %Documents and Settings%\All Users\Start Menu\Programs\Live Security Suite\Purchase License.lnk N/A
7 %Program Files%\Live Security Suite\Explorer.ico N/A
8 %Program Files%\Live Security Suite\working.log N/A
9 %Program Files%\Live Security Suite\db\ia080614.db N/A
10 %UserProfile%\Application Data\Live Security Suite N/A
11 %UserProfile%\Application Data\Live Security Suite\Uninstall Live Security Suite.lnk N/A
12 %UserProfile%\Application Data\Live Security Suite\db\Timeout.inf N/A
13 %UserProfile%\Desktop\Live Security Suite.lnk N/A
14 %UserProfile%\Local Settings\Application Data\Microsoft\Internet Explorer\iMSh.png N/A
15 %Documents and Settings%\All Users\Start Menu\Programs\Live Security Suite N/A
16 %Documents and Settings%\All Users\Start Menu\Programs\Live Security Suite\Purchase Licence.lnk N/A
17 %Program Files%\Live Security Suite\activate.ico N/A
18 %Program Files%\Live Security Suite\uninstall.ico N/A
19 %Program Files%\Live Security Suite\db\DBInfo.ver N/A
20 %Program Files%\Live Security Suite\Languages N/A
21 %UserProfile%\Application Data\Live Security Suite\uill.ini N/A
22 %UserProfile%\Application Data\Live Security Suite\db\config.cfg N/A
23 %UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\Live Security Suite.lnk N/A
24 %UserProfile%\Local Settings\Application Data\Microsoft\Internet Explorer\iGSh.png N/A
25 %UserProfile%\Local Settings\Application Data\Microsoft\Windows\pguard.ini N/A
26 %Documents and Settings%\All Users\Desktop\Live Security Suite.lnk N/A
27 %Documents and Settings%\All Users\Start Menu\Programs\Live Security Suite\Live Security Suite.lnk N/A
28 %Program Files%\Live Security Suite N/A
29 %Program Files%\Live Security Suite\unins000.dat N/A
30 %Program Files%\Live Security Suite\db N/A
31 %Program Files%\Live Security Suite\db\lists.ini N/A
32 %UserProfile%\Application Data\Live Security Suite\settings.ini N/A
33 %UserProfile%\Application Data\Live Security Suite\db N/A
34 %UserProfile%\Application Data\Live Security Suite\db\Urls.inf N/A
35 %UserProfile%\Desktop\LiveSS.exe.txt N/A
36 %UserProfile%\Local Settings\Application Data\Microsoft\Internet Explorer\iPSh.png N/A

Registry Details

Livesecuritysuite.com creates the following registry entry or registry entries:
RegistryKey
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Live Security Suite_is1
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer "PrS" = "http://gen-avpay.com/choose/?productid=GENAV3&uid=0&machineid=c3f92274b4b15694ae2311bd2316c727"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "AVPath" = "\\.\root\SecurityCenter:AntiVirusProduct.instanceGuid="{653E64F8-62B6-4F96-B22D-4FFC6E44130E}""
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "FirstRunDisabled" = "0"
HKEY_LOCAL_MACHINE\SOFTWARE\Live Security Suite
HKEY_CURRENT_USER\Software\Microsoft\FTP "SearchDir" = "%Program Files%\Live Security Suite\"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "Live Security Suite"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "FirewallDisableNotify" = "0"
HKEY_CURRENT_USER\Software\Live Security Suite
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\taskmgr.exe
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer "uniname" = "Live Security Suite_is1"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent "URLSS[2.0.3.0]"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "UpdatesDisableNotify" = "0"