Democratic Underground Latest Greatest Lobby Journals Search Options Help Login
Google

Everybody watch out for the Security Tools virus, it hit the computers at work.

Printer-friendly format Printer-friendly format
Printer-friendly format Email this thread to a friend
Printer-friendly format Bookmark this thread
This topic is archived.
Home » Discuss » The DU Lounge Donate to DU
 
texanwitch Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Apr-17-10 06:08 AM
Original message
Everybody watch out for the Security Tools virus, it hit the computers at work.
I have better virus protection for my laptops at home.

It took the computer guy to clean out the computers.

Make sure your anti-virus programs are up to date.

This is a really bad computer virus.

This virus takes over your computer, hell to clean out.

I know several people whose computers got hit.

It comes out of nowhere.

Watch what you download.

Printer Friendly | Permalink |  | Top
Withywindle Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Apr-17-10 03:49 PM
Response to Original message
1. Does it come with an endless stream of porn pop-ups?
If so, it sounds like the one we had at work. We teased our boss about looking at so much porn that the computer got an STD.
Printer Friendly | Permalink |  | Top
 
texanwitch Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Apr-17-10 04:03 PM
Response to Reply #1
2. No, but sounds interesting.
What happens is it takes over your computer with fake anti-virus software.

It just pops up out of nowhere and tells you that your computer is full of bad stuff.

Run away from it fast.

It is fake, do not send them money.

When you turn on your computer this virus just takes over, and starts to run a scan.

It is hell to get it out of your computer, the computer guy was not happy.

You can get rid of it but it isn't fun.

You have to start your computer in safe mode.

I helped a friend clean his computer, it was an adventure.

There is plenty of information on the net to help.


Printer Friendly | Permalink |  | Top
 
texanwitch Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Apr-17-10 04:12 PM
Response to Original message
3. Here is some information.
Printer Friendly | Permalink |  | Top
 
NJmaverick Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Apr-17-10 05:42 PM
Response to Original message
4. I caught it along with TDS rootkit varient c or d
damn near impossible to remove. Worse spyware infection I had to clean out in nearly 7 years. Took me 6 days and drastic clean up steps.
Printer Friendly | Permalink |  | Top
 
texanwitch Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Apr-17-10 10:52 PM
Response to Reply #4
10. There is lots of info on youtube about it.
It is hell to get rid of.

Printer Friendly | Permalink |  | Top
 
NJmaverick Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Apr-18-10 07:19 AM
Response to Reply #10
14. There is a website called bleepingcomputers.com that had tons of info
in the end I took an educated guess on how to remove it.
Printer Friendly | Permalink |  | Top
 
Catshrink Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Apr-17-10 05:44 PM
Response to Original message
5. My sister fell for it and had a heck of a time getting rid of it
She had to take it to a repair shop. I hate it when it pops up because it won't freaking go away: Are you sure? You're doomed if you don't click here right freaking now! Click here I tell you or your computer will melt!
Printer Friendly | Permalink |  | Top
 
texanwitch Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Apr-17-10 10:49 PM
Response to Reply #5
9. This virus is very scary.
It does seem to come from everywhere.
Printer Friendly | Permalink |  | Top
 
azmouse Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Apr-17-10 05:57 PM
Response to Original message
6. That virus just hit my laptop on Thursday.
Nasty.

I have no idea where it came from. I have anti-virus protection on my laptop and it still got passed it somehow.
Printer Friendly | Permalink |  | Top
 
texanwitch Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Apr-17-10 10:30 PM
Response to Reply #6
7. I have many anti-virus programs just to be safe.
Edited on Sat Apr-17-10 10:55 PM by texanwitch
It did try to get in but Malwarebytes stopped it.

My friend and I did manage to get the virus cleaned up from his computer but it took all day.

We did safe mood and then I think the task manager to stop the virus from running.

Then the computer running Vista, repaired itself.

Everything is running OK so far.

Check on the internet, lots of info and how to get rid of it.
Printer Friendly | Permalink |  | Top
 
Capn Sunshine Donating Member (1000+ posts) Send PM | Profile | Ignore Sat Apr-17-10 10:35 PM
Response to Original message
8. IF you get it- don't delay fixing
the longer it sits in your computer, the stronger it becomes. And it's freking everywhere, not just pron sites. Ours came from a Tuscan website about bread.

Had to re-install the OS.
Printer Friendly | Permalink |  | Top
 
FedUpWithIt All Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Apr-18-10 12:01 AM
Response to Original message
11. Using task manager can remove the pop up without allowing the virus to begin the scan.
Edited on Sun Apr-18-10 12:02 AM by FedUpWithIt All
If it is the one i am thinking of it will not let you simply exit out of it or delete the little tab from the browser. End task in task manager effectively removes the pop up.
Printer Friendly | Permalink |  | Top
 
Lasher Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Apr-18-10 01:20 AM
Response to Original message
12. SUPERAntispyware does the best job of detecting this and cleaning it up.
I went through a lot of hand wringing before I finally figured that out.
Printer Friendly | Permalink |  | Top
 
denbot Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Apr-18-10 01:24 AM
Response to Original message
13. I got it about 4 months ago, and had to have a tech remove it. It can be stopped in it's tracks.
If you get a sudden pop up telling you your computer is infected do NOT click anywhere on that pop-up.
Reach over and press the off button for about three seconds and your computer will shut off. Leave the computer off for at least ten seconds to clear temp memory.

Restart it and run a melware and a virus scanner. If it had a chance to download its self a good melware/anti virus program will detect it (The tech installed Malwarebytes and Avira virus scanner). I recognized this monster the second time around and by not clicking on it, I avoided letting the program install its self. On the scans it found two infected files and deleted them.

I don't know if they were the Security Tools Virus but I do know I did not get re-infected by not clicking on the "notice" and by shutting down my computer for over ten seconds which cleared any programs lurking in my temp/ram memory.
Printer Friendly | Permalink |  | Top
 
Lasher Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Apr-18-10 11:10 AM
Response to Reply #13
18. There's an easier way.
Edited on Sun Apr-18-10 11:11 AM by Lasher
Computers don't like it when you power down like you described. As you know, this nasty virus tries to prevent you from getting out of the web page without clicking on 'OK' or something, which triggers the infection.

Instead, turn off your cable modem or unplug the CAT5 or whatever to disable internet access. Then you can back out of the web page with no fear having anything downloaded. After that you can restore internet access. Then run your antivirus programs.

For this particular virus I use SUPERAntiSpyware (but not exclusively), like I said upthread. This particular attack can include multiple virus programs. In one case I defeated, a trojan came in first to compromise security, then other trojans came in behind it. I thought I had it all cleared up but it came back in the next day. I had not detected the first trojan, and it welcomed the others right back in.

Before I went back the next time I did some homework, partly in the PC group here at DU. So on the second trip I loaded & ran SUPERAntiSpyware. It, and no other program I used, was able to detect and defeat the first trojan.

DU Computer Help & Support Group
Printer Friendly | Permalink |  | Top
 
NJmaverick Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Apr-18-10 09:46 AM
Response to Original message
15. I strongly suggest everyone Google and down load TDSKiller.exe
to make sure you didn't get this rootkit virus along with the other infection.
Printer Friendly | Permalink |  | Top
 
Sweet Freedom Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Apr-18-10 11:02 AM
Response to Original message
16. My mom got it last year
and we had to wipe her hard drive to remove it.

I got it about 2 weeks ago and it definitely was a pain to get rid of. I now have Malwarebytes and Superantivirus on my computer and laptop.

I did notice right before the virus struck that my cursor started jumping around when I was composing an e-mail. I was just about to download Malwarebytes when the virus launched. :banghead:
Printer Friendly | Permalink |  | Top
 
alarimer Donating Member (1000+ posts) Send PM | Profile | Ignore Sun Apr-18-10 11:08 AM
Response to Original message
17. I had that problem at work a couple of weeks ago.
I had to call our IT help desk to get rid of it because they do not allow us to have administrative rights on our computers.
Printer Friendly | Permalink |  | Top
 
DU AdBot (1000+ posts) Click to send private message to this author Click to view 
this author's profile Click to add 
this author to your buddy list Click to add 
this author to your Ignore list Wed May 08th 2024, 09:14 PM
Response to Original message
Advertisements [?]
 Top

Home » Discuss » The DU Lounge Donate to DU

Powered by DCForum+ Version 1.1 Copyright 1997-2002 DCScripts.com
Software has been extensively modified by the DU administrators


Important Notices: By participating on this discussion board, visitors agree to abide by the rules outlined on our Rules page. Messages posted on the Democratic Underground Discussion Forums are the opinions of the individuals who post them, and do not necessarily represent the opinions of Democratic Underground, LLC.

Home  |  Discussion Forums  |  Journals |  Store  |  Donate

About DU  |  Contact Us  |  Privacy Policy

Got a message for Democratic Underground? Click here to send us a message.

© 2001 - 2011 Democratic Underground, LLC