Hi there,
I have a big problem and I need help. Yesterday as I sat on my pc a strange program called Win 7 Antivirus Plus 2013 appeared. It says it's an antivirus and shows up the following message:
"System hijack! System security threat was detected. Viruses and/or spyware may be damaging your system now. Prevent infection and data loss or stealing by running a free security scan."
I have not installed it and it shows up for a first time, so I don't know what to do. It looks suspicious for it's 2014 now and the program is out of date. Can it be a virus and how can I remove it?
Thanks in advance.

Dani AI

Generated

Short expert summary: Win 7 Antivirus Plus 2013 is a classic “rogue” or scareware fake‑AV that displays alarming popups and fake scan results to pressure payment. The behavior described by (system‑hijack alerts, blocked programs) matches documented FakeRean/rogue‑AV variants. See a detailed removal description at BleepingComputer. (bleepingcomputer.com)

Suggested removal workflow (practical, ordered):

  1. Boot Windows into Safe Mode with Networking so legitimate tools can run. (pcworld.com)
  2. Terminate the rogue’s active processes with a process‑killer utility (RKill or equivalent) so scanners aren’t blocked, then run reputable on‑demand scanners (HitmanPro/AdwCleaner or similar) to remove files and registry entries. Do not reboot between process termination and the full scans; many guides use this sequence. (malwaretips.com)

Cleanup and follow‑up:
Run an autorun/startup checker (Autoruns from Microsoft Sysinternals) to disable or delete leftover auto‑start entries, reset or repair browser shortcuts/settings if the infection hijacked the browser, and remove any malicious Scheduled Tasks. After removal, delete old restore points and create a fresh one; update Windows and installed security software. For autoruns and how to inspect startup locations see the Microsoft Sysinternals documentation. (learn.microsoft.com)

If payment occurred or personal data was given, the usual consumer steps apply: contact the card issuer to dispute charges, change passwords for affected accounts, and report the incident (the FTC has handled scareware cases and provides guidance and redress paths). Purchasing the fake product should not be relied on to solve the infection. (ftc.gov)

Notes on earlier replies: ’s recommendation of running anti‑malware scans is sound; those scans are best run from Safe Mode using the sequence above. ’s idea to uninstall via Control Panel can work only if the rogue hasn’t disabled uninstallers — if the uninstaller is blocked, follow the safe‑mode/process‑kill/scan method instead. If removal attempts fail or the machine is critical, consider professional removal or an offline rescue disk.

Recommended Answers

All 5 Replies

Thank you so much for your help. I was searching in google for some removal guides and I found this article There are some step by step instructions that I followed.
They recommend installing an Anti-Malware program and I'll try out the one you suggested. Hope it helps.
Is the first link free?
Thanks!

Yes, the online scanner is free to use. If you have any problems or questions, don't hesitate to post. :)
edit:
Don't install the program recommended in the link you posted. The instructions given at that site won't help for your infection.

OK. I'll try it. Thanks for your help :)

Hi.no need to be worry you can go to control panel and uninstall it. Download and install Optimo AV antivirus. which will protect your system and make it secure. Thanks

Be a part of the DaniWeb community

We're a friendly, industry-focused community of developers, IT pros, digital marketers, and technology enthusiasts meeting, networking, learning, and sharing knowledge.