Live Security Suite Virus Removal

Live Security Suite is a rogue security application related to Live Enterprise Suite which attempts to trick users into paying for a license to the software. This rogue application gets downloaded by Trojans which enter the computer under the pretext of online advertisements. Once installed, the virus disables the Windows Firewall and security updates. Then it proceeds to perform endless security scans on the system, reporting false results which state that the computer is heavily infected with malicious software. Fake security warning pop-ups are also generated from the Windows taskbar. The aim of all this activity is to try and get the user to pay for the license to the ‘full’ version of Live Security Suite by claiming that the currently installed ‘trial’ version is incapable of removing the detected ‘threats’. However, this is a fake software program, so it has no ability to clean the viruses which do not exist anyway.

Like most malware, this virus can be hard to remove. We do list the step by step instructions to help you out and we have followed them ourselves to ensure they work.

Ho did I get infected?

There are a number of ways to get infected with malware. The main item with in the users control is what antivirus program they have installled on their computer. Often times free clients do not provide the needed up front protection you need. While we all love free, you get what you pay for. If you where using a free based antivirus client and liked it, you should consider upgrading to the paid version of the antivirus software. The paid versions are kept up to date and offer live up front protection.

Live Security Suite

Live Security Suite

» Download Live Security Suite Removal Software

Once you detect the malicious activity described above, it suggests an infection of this virus. You should take immediate measures to remove this rogue program.

Live Security Suite Manual Removal Procedures

The first step that you must take in order to remove Live Security Suite is to stop the following processes:

  • LiveSS.exe
  • services.exe

The next step in Live Security Suite removal is the deletion of the following files and folders:

Windows XP:

  • c:\Documents and Settings\All Users\Desktop\Live Security Suite.lnk
  • c:\Documents and Settings\All Users\Start Menu\Programs\Live Security Suite
  • c:\Program Files\Live Security Suite
  • %UserProfile%\Application Data\Live Security Suite
  • %UserProfile%\Desktop\Live Security Suite.lnk
  • %UserProfile%\Desktop\LiveSS.exe.txt
  • %UserProfile%\Local Settings\Application Data\Microsoft\Internet Explorer\iGSh.png
  • %UserProfile%\Local Settings\Application Data\Microsoft\Internet Explorer\iMSh.png
  • %UserProfile%\Local Settings\Application Data\Microsoft\Internet Explorer\iPSh.png
  • %UserProfile%\Local Settings\Application Data\Microsoft\Windows\pguard.ini
  • %UserProfile%\Local Settings\Application Data\Microsoft\Windows\services.exe

Windows Vista/7:

  • c:\%USER%\My Documents\Desktop\Live Security Suite.lnk
  • c:\%USER%\Start Menu\Programs\Live Security Suite
  • c:\%USER%\Start Menu\Programs\Live Security Suite\Live Security Suite Home Page.lnk
  • c:\Program Files\Live Security Suite
  • %UserProfile%\Application Data\Live Security Suite
  • %UserProfile%\Desktop\Live Security Suite.lnk
  • %UserProfile%\Desktop\LiveSS.exe.txt
  • %UserProfile%\Local Settings\AppData\Microsoft\Internet Explorer\iGSh.png
  • %UserProfile%\Local Settings\AppData\Microsoft\Internet Explorer\iMSh.png
  • %UserProfile%\Local Settings\AppData\Microsoft\Internet Explorer\iPSh.png
  • %UserProfile%\Local Settings\AppData\Microsoft\Windows\pguard.ini
  • %UserProfile%\Local Settings\AppData\Microsoft\Windows\services.exe

Live Security Suite Registry Removal Procedures

The following registry keys and settings should also be deleted for complete removal:

  • HKEY_CURRENT_USER\Software\Live Security Suite
  • HKEY_LOCAL_MACHINE\SOFTWARE\Live Security Suite
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "AVPath" = "\\.\root\SecurityCenter:AntiVirusProduct.instanceGuid="{653E64F8-62B6-4F96-B22D-4FFC6E44130E}""
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent "URLSS[2.0.3.0]"
  • CHANGE THESE KEYS TO 1:
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "FirewallDisableNotify" = "0"
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "FirstRunDisabled" = "0"

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "UpdatesDisableNotify" = "0"

Live Security Suite Directories:

  • c:\Documents and Settings\All Users\Application Data\AV1\
  • Vista/Win7 c:\ Users\%USER%\AppData \AV1\

Outside Resources:

http://www.bleepingcomputer.com/virus-removal/remove-live-security-suite

http://www.im-infected.com/rogue/remove-live-security-suite.html

Speak Your Mind

*

RemoveVirus.org cannot be held liable for any damages that may occur from using our community virus removal guides. Viruses cause damage and unless you know what you are doing you may loose your data. We strongly suggest you backup your data before you attempt to remove any virus. Each product or service is a trademark of their respective company. We do make a commission off of each product we recommend. This is how removevirus.org is able to keep writing our virus removal guides. All Free based antivirus scanners recommended on this site are limited. This means they may not be fully functional and limited in use. A free trial scan allows you to see if that security client can pick up the virus you are infected with.