System Security 4.51 Infection

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by strappyblues, May 16, 2009.

  1. strappyblues

    strappyblues Private E-2

    My computer is infected with System Security 4.51. I was unable to run any programs, I could not look at the task manager to stop any suspcious processes nor could I use the add and remove programs to remove any applications.

    I did an Internet search on an uninfected computer and found a site that directed me to the all users/application data folder, I started the computer in safemode with dos and I removed two suspicous directories and its contents. The directories were: all users\application data\12297964 and all users\application data 92307956

    I know have control of my computer and I used the list of program to uninstall from your site to remove Viewpoint. System Security showed up but when I tried to remove it, it said it was already gone. I have an old version of java on the computer and I removed that. The current version was also on the computer.

    Msconfig is set for normal setup. I have emptied the recycle bin.

    I have run CCleaner on all accounts including the Administrator account.

    I have followed all the steps listed. My logs are attached. Please review.

    Thank you.

    Strappyblues
     

    Attached Files:

  2. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Welcome to MajorGeeks!

    I am currently reviewing your logs and will get back to you with a set of instructions as soon as possible. Our queue is working the oldest threads first.

    Thanks for your patience.
    dr.m
     
  3. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Hello, strappyblues.


    The below fixes are specific to your problem and should only be used for issue(s) on this machine. Also, please do not install any other software while we are still working with you unless instructed. Once we have given you the all clean and final instructions you will be free to install what you want.

    *Comment: Giving all users of this pc "Adminstrator Accounts" is bound to lead to problems.

    Step 1:
    Please look in Add/Remove Programs for the following and uninstall if found. If you get any errors just make a note and proceed
    Step 2:
    Run C:\MGtools\analyse.exe by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:

    After clicking Fix, exit HJT.

    Step 3:
    Open Ccleaner - select "Cleaner" > "Run Cleaner" <---use this function ONLY!

    Step 4:
    Now install the latest Sun Java Runtime Environment

    Step 5:
    Now go to this link MGTools and download the new version of MGtools....overwrite your previous MGtools.exe file with this one.

    Then run the C:\MGtools\GetLogs.bat file by double clicking on it (Note: if using Vista, use right click and select Run As Administrator).

    Attach the below log to your next reply:
    • C:\MGlogs.zip

    Make sure you tell me if you had any problems running this procedure and give a description of how things are working now!

    dr.m
     
  4. strappyblues

    strappyblues Private E-2

    Dr. M,

    Thanks for your assistance.

    I followed all your instructions in order. I did not encounter any problems. I did reduce the rights of one user to a Power User.

    The computer seems to be working well. Attached is my latest log.

    I will wait for the all clean.

    Thanks again.

    strappyblues
     

    Attached Files:

  5. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Hello again, strappyblues

    Please refer to this guide for dealing with controlling your startups:
    Dealing with Startup Processes

    Your logs look good! If you are not having any other malware problems, it is time to do our final steps:
    Safe surfing! [​IMG]
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds