26-09-2010, 08:42 | #1 |
Deep Throat
Join Date: Jul 2006
Posts: 6,512
|
Trojan Horse issue
Hey Guys and Girls
Not been on here in ages (only time I seem to go on internet is to load of spotify/brief check of Bookface! Am mega busy otherwise! Hoping you're all well I do check in every so often ) Having a problem with poota at the moment. SOmehow I've managed to acquire a trojan I think... it's put some "security" program "Security Tool" (unless this is a genuine program - not convinced it keeps asking for my card details - LIKELY!!!) on my computer which won't let me run any programs (avg included)/download anything and I can't get rid of it. Not quite sure what to do :/ Any ideas... I'm clueless when it comes to things like this. Was wondering if there was an online scanner/trojan remover I could run? Thank you BD peoples appreciative of any help! |
26-09-2010, 08:43 | #2 |
Deep Throat
Join Date: Jul 2006
Posts: 6,512
|
Just looked up security tool and it is a pooped program. BUM!
|
26-09-2010, 09:19 | #3 |
ex SAS
Join Date: Jun 2006
Location: JO01ou
Posts: 10,062
|
You need to run malwarebytes, it's not an online scanner but something you download. It's pretty much the best tool for removing dodgy stuff. When you download it there's a chance that the scamware you've accidentally installed will stop it from running so you cheat by renaming the file you downloaded to explorer.exe
__________________
|
26-09-2010, 09:41 | #4 | |
Stan, Stan the FLASHER MAN!
Join Date: Jul 2006
Location: In bed with your sister
Posts: 5,483
|
Quote:
__________________
Just because I have a short attention span doesn't mean I... |
|
26-09-2010, 09:50 | #5 |
ex SAS
Join Date: Jun 2006
Location: JO01ou
Posts: 10,062
|
Yes, forgot that. Disable the system restore doofer first then reboot into safe mode.
__________________
|
26-09-2010, 10:15 | #6 |
Deep Throat
Join Date: Jul 2006
Posts: 6,512
|
Ooh la la!
I've managed to run soem software to get rid of I think the main part of the virus although when I restart in normal mode I cannot see my desktop and all. Looking under windows task manager I can access odds but hmmm. Any ideas why I cannot see anything? Thank you for your help |
26-09-2010, 11:42 | #7 |
Deep Throat
Join Date: Jul 2006
Posts: 6,512
|
hmmm. still hasnt got rid of security tool. Have run malwarebytes in safe mode and it says its got rid of all infections. when start back up normally security tool is still popping up.
Rubbish. Does anyone know of a specific program that will wipe secuirty tool? |
26-09-2010, 12:02 | #8 |
Screaming Orgasm
Join Date: Jul 2006
Location: Newbury
Posts: 15,194
|
Security Tool is a bit of a **** to remove. I've had the misfortune to come across it before (though never remove it).
Here's the instructions I found last time (using Malwarebytes): http://www.bleepingcomputer.com/viru...rus-vista-2010 |
26-09-2010, 12:08 | #9 |
ex SAS
Join Date: Jun 2006
Location: JO01ou
Posts: 10,062
|
I can't remember the name of the utility but there's one which you need to run before malwarebytes which kills any active incidents of the scamware. If you don't do that then the rogues processes will respawn while you're running malwarebytes.
Malwarebytes will do it, it's the best tool out there.
__________________
|
26-09-2010, 13:07 | #10 |
Bananaman
Join Date: Jul 2006
Location: Liverpool/Edinburgh
Posts: 4,817
|
http://www.bleepingcomputer.com/comb...o-use-combofix
ComboFix is the sledgehammer to crack them all usually. Read the tutorial on how to use it though first. It's not just your run once ignore program. Teamed with help from belepingcomputer your in good hands removing almost anything |