Best software to remove "System Security" pop-ups?

Discussion in 'Malware Help (A Specialist Will Reply)' started by mikehende, Jun 25, 2009.

  1. mikehende

    mikehende Private E-2

    Hello all, I am new here, been searching the net for help and decided to try this forum, on Saturday morning I have to go to a friend to try to help him fix the "System Security" pop-ups which recently started. I was wondering if there was any software I can purchase which will surely and very quickly get rid of this pop-up?

    Searching the net I have come across 3 softwares which claim to be able to remove this particular "System Security" pop-up [Malwarebytes, PC Tools and Spyhunter] but reading up on many articles some are saying that the Malwarebytes software sometimes does not install properly. I need a software which will surely and very quickly get rid of the System Security pop-ups, is there a software which I can purchase which will do this? Also, is there a software I can do this with but use on another pc possibly in the future? Thanks.
     
  2. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    The freeware version of Malwarebytes does remove this rogue application. You could purchase volume licenses if you wish for multiple computers. * You should realize that often when pc's get infected, they are often hit with more than one infection... and recently rootkits { TDSSxxxx.sys /Senekaxxxx.sys/GAOPDXxxxx.sys/ UACxxxx.sys /ovfstxxxx.sys/kungsfxxxx.sys/SKYNETxxxx.sys - to name a few } will disable tools such as SUPERantispyware, MBAM, AVG, and other anti-spyware and anti-virus programs and applications.

    So - to bottom line it then - you need to have more than one plan of action... like following our

    READ & RUN ME FIRST. Malware Removal Guide

    .. and getting some trained help.

    dr.m
     
    Last edited: Jun 25, 2009
  3. mikehende

    mikehende Private E-2

    what worries me is if I can't go on the net with his pc on Saturday to dowload all of the cleaning tools then what? I would like to be prepared so should I simply purchase and take with me the paid version of Malwarebytes?
     
  4. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    :)

    * You had also asked about Paid tools that could be used on multiple pc's.

    The freeware version of MBAM can remove it.
    *Links are given in the R & R Me FIRST Guide for downloading and saving to CD the executables and the definition databases for the scanners --- so you wouldn't be dependent on his internet connection. A flashdrive could also be used - but remember - they are writable and could get infected when inserted.

    For instance: I have a SDHC w/card reader & writer that I have all the tools /notes/ and scanners saved for easy transport. All I have to do is load any version updates and definitions --- and off I go!
     
  5. mikehende

    mikehende Private E-2

    I never saw any link for saving to cd? I looked again at all the links from one to another but still can't see it? Also, reason why I was focusing on the "paid" version is becuase I thought that the paid version would be better than the free version, is this not correct please?
     
  6. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    I'll add -

    Activating the full version unlocks realtime protection, scheduled scanning, and scheduled updating... and - the freeware version can be installed on multiple pc's.
     
  7. mikehende

    mikehende Private E-2

    So as far as the actual scanning and removal of the pop-up in question, there is no difference between the paid and free versions? Also, can you direct me to the link to save to the cd please? It's not like I am not trying, as a matter of fact, the opposite, I am just not seeing it?
     
  8. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Last edited: Jun 25, 2009
  9. mikehende

    mikehende Private E-2

    Last question please, so I should as per the instructions on the Read Me First page "Rename the downloaded mbam-setup.exe file to mb.exe"? Should I do this "before" saving it to cd?
     
  10. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    The file re-name is only needed as you transfer the .exes to your friend's pc for installing. :)
     
  11. mikehende

    mikehende Private E-2

    ok so I might as well rename it before burning to cd in case I should forget, appreciate the help, will print and go through all the steps in the Read Me First before running the Malwarebytes software, will report back here on Saturday to let you know what happened, thanks.
     
  12. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    :major

    You're welcome! Good Luck with the cleaning!

    dr.m
     
  13. mikehende

    mikehende Private E-2

    Here's the ordeal. Went to the friend's location, first I tried to see the system info, could not happen, next I tried to go into the ADD/REMOVE programs, would not happen then went to the net and found that when I type a url it would take me to some other site, it would take me a couple of tries to get to the correct site, when I did get to the MBAM site, I renamed and downloaded the setup on the desktop but it would not open, I then installed both MBAM and SAS from cd but they both would not open, I then downloaded HTLog but it too would not open.

    Each time whenever I tried to open a program the System Security icon in the system tray would put up a small promt saying "Warning: Application cannot be executed. The file ccsvchst.exe is infected".

    I'd like to know 2 things here please guys:

    1] Since the System Security pop-ups only started immdiately after attempting the Panda online scan which failed halfway through, is it safe to say that the online scanning is what activated the System Security? If so that means that the System Security had to have been in the pc already, correct?

    2] What else can I do now to get rig of the System Security?
     
  14. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Hello, mikehende

    A dangerous problem is that "System Security" will list legitimate and necessary programs as infections.
    i.e. Ccsvchst.exe is the executable file that belongs to Symantec Service Framework from Symantec Corporation and is added to your system when you install Norton products such as Symantec Security Technologies and Symantec Event Manager. The file originally resides in a subfolder within the C:\Program Files\Common Files folder.

    Ans: 1 The "System Security pop ups" was already on the pc, (refer to your first post) and if System Security is installed, it will be set to start automatically when you login to the computer. I also suspect the presence of a rootkit infection known to interfere with the ability to run malware tools.

    Ans: 2 Please follow these instructions -
    • Bootup into Safe Mode - delete any "System Security" folders found in the "documents and settings\all users\application data\" directory
    • Re-boot into Normal Startup Mode
    • Now try to run Malwarebytes - fixing what it finds
    • Continue on with the rest of our cleaning procedure


    dr.m
     
  15. mikehende

    mikehende Private E-2

    Sorry, i forgot to mention that I also tried many times to boot into safe mode by pressing f8 but it would not let me, whenever I press f8 it would go into setup instead?
     
  16. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Please try continuing with the rest of my instructions and let me know any problems you have doing them.

    dr.m
     
  17. mikehende

    mikehende Private E-2

    Sorry Doc, I must be missing something here? As far as I see it, all of the instructions above has to do with getting into safe mode which I can't?
     
  18. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    :)

    Referring to the instructions in the READ & RUN ME FIRST. Malware Removal Guide
    * If you can't run one tool - DON'T STOP...please continue on to the next, using Normal Startup Mode.

    dr.m
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds