Threat Search: 

ThreatExpert's Statistics for RogueAntiSpyware.WindowsSecuritySuite [PC Tools]:

RogueAntiSpyware.WindowsSecuritySuite [PC Tools] is also known as:
Threat AliasNumber of Incidents
FakeAlert-EA [McAfee]2
Mal/FakeAV-AX, Mal/Basine-C [Sophos]2
Packed.Generic.264 [Symantec]2
Trojan.FakeAV!gen [Symantec]2
Trojan-Downloader.Win32.FraudLoad.wvhy [Kaspersky Lab]2
FakeAlert-WPS.gen.b [McAfee]1
HeurEngine.MaliciousPacker [PC Tools]1
Mal/Basine-C [Sophos]1
Mal/EncPk-LH, Mal/Basine-C [Sophos]1
Mal/WaledPak-D, Mal/Basine-C [Sophos]1
SpywareGuard2008 [Symantec]1
Trojan.Crypt [Ikarus]1
Trojan.Win32.FakeVimes [Ikarus]1
Trojan:Win32/FakeVimes [Microsoft]1
Trojan-Downloader.Win32.FraudLoad [Ikarus]1
Trojan-Downloader.Win32.FraudLoad.wtbb [Kaspersky Lab]1
Win-Trojan/Fakealer.2260992 [AhnLab]1
Win-Trojan/Fraudload.1897472 [AhnLab]1
Win-Trojan/Fraudload.2185728 [AhnLab]1

RogueAntiSpyware.WindowsSecuritySuite [PC Tools] has the following possible countries of origin:
OriginNumber of Incidents
Russian Federation1
United Kingdom1

RogueAntiSpyware.WindowsSecuritySuite [PC Tools] is known to be created as:
%CommonAppData%\2deb8\wp064.exe
%CommonAppData%\wes\we.exe
%Temp%\we0f24.exe
Notes:
  • %CommonAppData% is a variable that refers to the file system directory containing application data for all users. A typical path is C:\Documents and Settings\All Users\Application Data.
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).