Windows Support System

By Domesticus in Rogue Anti-Spyware Program

Threat Scorecard

Threat Level: 100 % (High)
Infected Computers: 3
First Seen: March 22, 2011
Last Seen: January 8, 2020
OS(es) Affected: Windows

Windows Support System Image

One of the latest releases from the laziest scammers on the Internet is Windows Support System. Not only is Windows Support System not actually a Windows product or a useful tool, but Windows Support System is also a re-named twin of the malware that was issued and re-issued using dozens of different names. At least this means that the symptoms caused by Windows Support System are easy to spot!

How Does Windows Support System Infects PCs?

Because Windows Support System is just a re-release of existing malware, its infection process and symptoms are the same tired, old symptoms caused by countless other fake security applications. It begins with the Trojan that Windows Support System relies upon in order to infiltrate PCs, which is the Fake Microsoft Security Essentials Alert Malware. If you download this Trojan, it will be without knowing it, because it is hidden in some harmless-looking file or web link. Once the Trojan is downloaded, it starts creating these alerts that look as though they are generated by Microsoft Security Essentials.

The alert process is always the same, and it goes like this:

  1. Alert that Windows has found an Unknown Win32/Trojan on your computer.
  2. Alert that said Trojan has been identified as Trojan.Horse.Win32.PAV.64.a.
  3. Recommendation of software download in order to remove Trojan.Horse.Win32.PAV.64.a, where the "software" is Windows Support System (or a related piece of malware).

Once you have the Fake Microsoft Security Essentials Alert Malware present on your computer, it is extremely easy to wind up with Windows Support System infecting your computer, so it is important to proceed with caution. Eventually, once the Trojan has set up Windows Support System and altered the registry, there will be a time when you restart your computer and find that Windows Support System is present and interfering with everything.

Symptoms Caused by Windows Support System Infection

Windows Support System predominantly relies on scare tactics to be able to perpetrate Windows Support System's scam, so Windows Support System does a lot of fake scans of your system and shows a lot of completely phony security alerts. Every time Windows starts, Windows Support System will pretend to do a scan of your computer looking for threats and – surprise, surprise – every time Windows Support System looks (searches), Windows Support System will find a bunch of threats. You will not even be able to start Windows and get to the desktop until the fake scan has finished and the interface has cleared. Of course, once you do get to the desktop, Windows Support System will start generating security alerts that claim that various ordinary programs and services on your computer are actually malicious. Like the scan results, these alerts are absolute bunk, and they exist for one reason: so that Windows Support System can tell you that Windows Support System can't remove the "threats" unless you purchase a license from the Windows Support System website. Yes, you really can enter your credit card information on the site, but that's as far as Windows Support System goes; there is nothing useful or beneficial to be had where Windows Support System is concerned, and there aren't actually any licenses.

In order to prevent you from removing its fake security software before you have been scared into giving your credit card info to crooks, Windows Support System does a few things to assure that Windows Support System will be greatly hard to remove. In the first place, don't assume you will be able to remove Windows Support System through the Control Panel, because Windows Support System has no entry in Add/Remove Programs. Also, any real anti-virus software you have will be useless and inaccessible because Windows Support System will stop all programs that you try to run, claiming that they are malicious. That goes for Task Manager, too, so you can't use it to kill Windows Support System's processes. Finally, Windows Support System even interferes with your ability to go online in order to get help, because when open your Internet browser, the only working program aside from Windows Support System, you will find that the only website you can visit is the one claiming to sell licenses for Windows Support System.

Along with its relatives – or rather, its many clone siblings, including Windows Lowlevel Solution, Windows Emergency System, and Windows Efficiency Magnifier – Windows Support System is part of a large-scale, ongoing Russian Internet scam. This scam has been cranking out a new name for the same old malware, every day, for several months. So although it looks as if this malware family has many members, it actually only has one that has been reproduced over and over with minute differences. The names are generated from lists of plausible-sounding words, although the first word is always "Windows." (Of course, Windows Support System is not a Microsoft product or a pre-installed Windows program, despite Windows Support System uses the Windows logo and name.) Then, there are one or two other words, which are pulled from lists that allow for enough different word combinations to create hundreds of different malware names. Don't let these con-artists fool you with this little renaming trick, because this stuff is malware.ScreenshotScreenshotScreenshotScreenshotScreenshotScreenshotScreenshotScreenshotScreenshotScreenshot

SpyHunter Detects & Remove Windows Support System

File System Details

Windows Support System may create the following file(s):
# File Name MD5 Detections
1. emqyyf.exe 05d638d2e322ee22ce58f7ed980193fd 1

Related Posts

Trending

Most Viewed

Loading...