11 December 2010

System Tool Virus: How to Remove Security Tool Virus / Malware?



system-tool-virus-how-to-remove-security-tool-virus-malwareSystem Tool Antivirus is not a legitimate and Real Antivirus Program but itself a virus, more precisely a new kind of fake antivirus program from the same family of Security Tool.


According to Techjaws Frank J reported, Security Tool Virus is a rogue anti-spyware program that’s distributed through websites that simulate virus scans. The user is than prompted to download the software to clean the infected PC. The tool provides false alerts of legitimate files that are needed by your Windows PC. Do not remove these files!!!

How to manually remove Security Tool Virus:

1. Stop Security Tool Processes: [random numbers].exe
2. Remove Security Tool Files
3. C:\Documents and Settings\All Users\Application Data\[random numbers]\
4. C:\Documents and Settings\All Users\Application Data\[random numbers]\[random numbers].exe
5. Remove Security Tool Registry Keys
*HKEY_CURRENT_USER\Software\Security Tool
*HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Security Tool
6. Remove Security Tool Startup Entry: [random numbers].exe

You can also download MalwareBytes Anti-Malware to remove Security Tool Virus.

According to Ezinemark's Tom Parks reports, How to Get Rid of System Tool Virus? Remove System Tool Virus Completely. How to Remove System Tool Fake Antivirus Program?

System Tool Antivirus is not a legitimate and Real Antivirus Program but itself a virus, more precisely a new kind of fake antivirus program from the same family of Security Tool. The only difference being the core files are modified a little bit and the name is changed to hide it's detection by legitimate Antivirus programs installed on your PC.

This program is distributed with the help of trojans. When the trojan is started, it will automatically download and install System Tool Antivirus onto your computer without your consent and knowledge and configure it to run when you start Windows.
When System Tool Antivirus is started, it will imitate a system scan and detect a lot of various infections that will not be fixed unless you first purchase the program.

mportant to know, all of these reported infections are fake and don't actually exist on your computer! So you can safely ignore the scan results.
While System Tool Antivirus is running, it will block the ability to run any programs as a method to scare you into thinking that your computer is infected with malware.

The following warnings will be shown: What is more, the rogue will flood your computer with warnings and fake security alerts. Some of the alerts:

Warning!: Application cannot be executed. The file cmd.exe is infected.
Please activate your antivirus software.

System Tool Warning: Your PC is infected with dangerous viruses. Activate antivirus protection to prevent data loss and avoid the theft of your credit card details.
Click here to activate protection.

System Tool Warning: Intercepting programs that may compromise your private and harm your system have been detected on your PC.
Click here to remove them immediately with System Tool.

Security Monitor: WARNING!: Attention: System detected a potential hazard (TrojanSPM/LX) on your computer that may infect executable files.

Your private information and PC safety is at risk. To get rid of unwanted spyware and keep your computer safe you need to update your current security software.
CLick Yes to download official intrusion detection system (IDS software).

Warning: Your computer is infected
Windows has detected spyware infection!

Click this message to install the last update of Windows security software...
This infection will also change the background of your Windows desktop to display this

Warning!
Your're in Danger!
Your Computer is infected with Spyware!

All you do with your computer is stored forever in your hard disk. When you visit sites, send emails... All your actions are logged. And it is impossible to remove them with standard tools. Your data is still available for forensics, and in some cases.

For your boss, your friends, your wife, your children. Every site you or somebody or even something, like spyware, opened in your browsers, with all the images, and all the downloaded and maybe later removed movies or mp3 songs - ARE STILL THERE and could break your life!

Secure yourself right now!
Removal all spyware from your PC!

Of course, all of above warnings and alerts nothing more but a scam and like false scan results should be ignored!

As you can see System Tool Antivirus, is a scam that is designed with one purpose to trick you into purchasing the so-called full version. Do not fall for these virus creators bait into buying the Rogueware and if you already have, you should contact your credit card company and dispute the charges.

And now coming back on How to Get Rid of System Tool Antivirus, you need a solid program to fix the damages, the rogue has caused. It alters files, folders,permissions and registry keys.

So you need something as good as Reimage, to fix all the damages that was left behind, to delete all the traces completely....to revive your PC from malicious trojans that may still reside and make your PC slow and to stop from getting re-infected.

When you try to fix this rogue, by running legitimate antivirus you encounter that app cannot be executed warning, task manager disabled, registry editing disabled etc..

So, in order to get rid of System Tool Antivirus completely, start your PC in safe mode with networking, If you can`t run the IE, then you should as below.
Go to C:\Documents and Settings\UserProfile\Application Data. You can notice this system tool virus program as random.exe

"c:\Documents and Settings\All Users\Application Data\\.exe"
By default, this is C:\Documents and Settings\Application Data for Windows 2000/XP. For Windows Vista and Windows 7 it is C:\Users\AppData\Roaming or C:\Users\AppData\Local.

If you can`t run the IE, then you should repair the proxy settings of Internet Explorer. Run Internet Explorer, Click Tools -> Internet Options. Select Connections Tab and click to Lan Settings button. Uncheck "Use a proxy server" box. Click OK. Click Apply. Now Go to http://reimagepcrepair.com/ and run scan to fix System Tool Antivirus.

Reimage works by comparing each and every OS system files with the correct files from a web repository of 25 million Windows components. (since Reimage works by comparing with correct file, it can easily find the hiding rootkit, infact this is what a rootkit remover do......dumps a list of files from your hard disk drive and compares it with the list from the recovery console in order to find a hiding virus) This is the sole reason you can get a PC as good as new once you run Reimage, all other antivirus and antimalware programs just delete the virus....but they don't correct the damage...which results in re-infection and slow performing PC.

Reimage first scans your computer thoroughly; all the files, folders, registry keys and values, drivers, softwares, stacks and then either repair or remove those stuffs that should be there. But it's not just that it does. They have an enormous web repository of application, drivers, system objects, etc. from where they compare your PC's files and if corrupted replace it with the healthy ones.

No comments:

Post a Comment