1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Active Security Tool duped

Discussion in 'Malware and Virus Removal Archive' started by Trisha, 2010/01/12.

  1. 2010/01/12
    Trisha

    Trisha Inactive Thread Starter

    Joined:
    2009/01/29
    Messages:
    85
    Likes Received:
    0
    [Active] Security Tool duped

    Hi, I switched on my laptop 2 days ago and received an alert box message on screen to say my computer had possible harmful viruses I had a mad panic and clicked on the box bestspywaretool.com which came up with the alert message and ran the program! this has produced a scan of my computer showing I have 50 possible infections, malicious programs,virus,spyware,adware.I now have 2 Security Tool icons righthandside and keep getting security tool warnings,alerts advising harmful software detected and giving 2 options 1) Activate Security Tool (subscription $49.95 ) 2) continue unprotected As I already have McAfee security which is showing OK I do not want to take up this but seems I may have been duped at the outset.I have tried to remove program but cannot find it under control panel, I cannot get into Outlook Express, print anything and after 30 mins or so my laptop does a system shut down. I am now getting exasperated and feel very foolish and stupid to have got myself in this situation, I am hoping someone can assist me - I am not very technically aware or compotent! I have emailed via the support section of Security Tool requesting a solution but as I cannot get into my emails, don't know if I have had a reply!
     
  2. 2010/01/12
    PeteC

    PeteC SuperGeek Staff

    Joined:
    2002/05/10
    Messages:
    28,896
    Likes Received:
    389
    Please read this as indicated at the head of the forum and post the logs requested in this thread.

    Save the file(s) to a USB stick and run on the laptop - copy the logs to the USB stick and post here.

    If you cannot run DDS on the laptop please wait for one of our Malware experts to respond.
     

  3. to hide this advert.

  4. 2010/01/12
    Trisha

    Trisha Inactive Thread Starter

    Joined:
    2009/01/29
    Messages:
    85
    Likes Received:
    0
    Thanks Pete, I have problem:- 1) no usb stick 2) have tried to download DDS Mirror 1 but hve a blank blue desktop screen with nothing showing on it! so cannot run DDS on laptop
     
  5. 2010/01/12
    PeteC

    PeteC SuperGeek Staff

    Joined:
    2002/05/10
    Messages:
    28,896
    Likes Received:
    389
    One of our Malware experts will advise.
     
  6. 2010/01/12
    Trisha

    Trisha Inactive Thread Starter

    Joined:
    2009/01/29
    Messages:
    85
    Likes Received:
    0
    Ok thanks will wait for Malware expert
     
  7. 2010/01/12
    Trisha

    Trisha Inactive Thread Starter

    Joined:
    2009/01/29
    Messages:
    85
    Likes Received:
    0
    I have done a shutdown on my laptop and restarted it and have managed to check my emails - nothing from Security Tool needless to say! and DDS has loaded onto desktop but as soon as I click onto it for the scan to commence, within a minute or so the desktop screen disappears and these blasted alerts start up again. I have clicked on the Security Tool icon within All Programs on start menu and found that it says Location: C:|Documents & Settings|All Users|Appication Data|87394132 is this any help?
     
  8. 2010/01/12
    PeteC

    PeteC SuperGeek Staff

    Joined:
    2002/05/10
    Messages:
    28,896
    Likes Received:
    389
    Trisha

    Malware removal is outside my expertise - please wait to be advised by one of our malware experts.
     
  9. 2010/01/12
    Trisha

    Trisha Inactive Thread Starter

    Joined:
    2009/01/29
    Messages:
    85
    Likes Received:
    0
    OK thanks anyway
     
  10. 2010/01/12
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Well, I assume, by now, you know, you should never, ever click on anything, you're not familiar with.

    Please download ComboFix from [color= "Red"]Here[/color] or [color= "#FF0000"]Here[/color] to your Desktop.


    **Note: In the event you already have Combofix, this is a new version that I need you to download. It is important that it is saved directly to your desktop**
    • Please, never rename Combofix unless instructed.
    • Close any open browsers.
    • Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
    • Very Important! Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before performing a scan. They can interfere with ComboFix or remove some of its embedded files which may cause "unpredictable results ".
    • Click on this link to see a list of programs that should be disabled. The list is not all inclusive. If yours is not listed and you don't know how to disable it, please ask.
    NOTE. If Combofix asks you to install Recovery Console, please allow it.

    • Close any open browsers.
    • WARNING: Combofix will disconnect your machine from the Internet as soon as it starts
    • Please do not attempt to re-connect your machine back to the Internet until Combofix has completely finished.
    • If there is no internet connection after running Combofix, then restart your computer to restore back your connection.
    • Double click on combofix.exe & follow the prompts.
    • When finished, it will produce a report for you.
    • Please post the "C:\ComboFix.txt" .
    **Note: Do not mouseclick combofix's window while it's running. That may cause it to stall**

    Make sure, you re-enable your security programs, when you're done with Combofix.

    DO NOT make any other changes to your computer (like installing programs, using other cleaning tools, etc.), until it's officially declared clean!!!
     
  11. 2010/01/12
    Trisha

    Trisha Inactive Thread Starter

    Joined:
    2009/01/29
    Messages:
    85
    Likes Received:
    0
    Thanks Broni for your reply,I will endeavour to carry out the instructions correctly, firstly though how do I disable antivirus/anti malware real time protection before commencing as I cannot get into my McAfee icon as being blocked? also I have had problems with my desktop as it keeps disappearing to a blank blue one with nothing on it! so may have difficulties in running Combofix etc
     
  12. 2010/01/12
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Restart computer in Safe Mode....restart computer and keep tapping F8 key until menu appears. Select "Safe Mode ".
    Run Combofix from there without any extra steps (McAfee shouldn't be running in Safe Mode).
     
  13. 2010/01/12
    Trisha

    Trisha Inactive Thread Starter

    Joined:
    2009/01/29
    Messages:
    85
    Likes Received:
    0
    Have restarted computer in Safe mode but the ComboFix.exe is not showing on the desktop but if I do a shutdown and start up in normal mode Combofix is showing? also when I log on in safe mode I get 2 users: Administrator and my other half Chris I presume I am the adminstrator?
     
  14. 2010/01/12
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Make sure, you move Combofix icon near Start button on desktop area and hopefully you'll see it in Safe Mode.
     
  15. 2010/01/12
    Trisha

    Trisha Inactive Thread Starter

    Joined:
    2009/01/29
    Messages:
    85
    Likes Received:
    0
    Have done what you suggested but still nothing on safe mode - I have googled security tool and can now see that it is a virus etc etc - I have managed to do a system restore which seems to have worked ok no longer have security tool icons etc the only thing is now my computer is very quiet seems to have the bleeps? Many many thanks for all your help guys I have certainly learnt the hard way on this one!
     
  16. 2010/01/12
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    System restore won't kill an infection. It's till hiding somewhere.
    Run Combofix in normal mode, even, if you can't disable McAfee.
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.