Saturday, September 26, 2009

How to Get Rid Security Tool Virus




What is security tool? The security tool virus is a misleading malware that poses as a legitimate antivirus. It is promoted via browser hijackers and malicious websites such as Utilitiesdiscounts.com. Security tool virus employs scare tactics such as generation of deceitful alerts so as to coerce computer users into paying for the license key or full version of the software that it promotes. This article provides information on how to get rid of security tool virus.*

The "security tool" virus and its symptoms
The security tools virus is characterized by misleading system scans and reports of non existing or exaggerated computer issues often followed by popups urging you to “get full protection with security tool”. The alerts may show that there are certain viruses, worms and trojans in your computer but these malwares are likely exaggerated or do not exist in your PC. They were generated to make you buy the fake av security tool. Like most fake antiviruses, the virus security tool may also redirect browser searches to random websites. Clones of the pc security tool virus include the blueflare antivirus, the security protection 2011 and the system tool virus.

How to get rid of security tool for free
It is apparent that getting rid of security tool virus is necessary once its symptoms show up in your PC. Having this malware in your PC would make it difficult for you to navigate the web or use your computer efficiently. Follow the guide below on how to remove security tool virus:

  • * Reboot your computer in Safe mode with networking. Do this by restarting your PC and pressing the F8 key after hearing your computer beep on startup. Once the Windows Advanced Options menu appears, select Safe mode with networking and then press ENTER.
    * Download Malwarebytes’ Anti-Malware.
    * Double-click mbam-setup.exe and follow the prompts to install the program.
    * At the end, be sure a check-mark is placed next to the following:
    Update Malwarebytes’ Anti-Malware
    Launch Malwarebytes’ Anti-Malware
    * Click Finish.
    * If an update is found, Malbytes anti malware will download and install the latest version.
    * Once the program has loaded, select Perform quick scan, then click Scan.
    * When the scan is complete, click OK, then Show Results to view the results.
    * Be sure that everything is checked, and click Remove Selected. Reboot your computer if prompted.
    * When completed, a log will open in Notepad. The securitytool virus should now be gone.



  • You may also want to check out the comments below for other suggestions on removing security tool virus.

    If for unfortunate reasons you have been made to believe that the software is legit and you have bought the security tool hoax software, you may want to read this post on how you can get your money back.

    34 comments:

    juanband said...

    Nice post, just in case it cannot be remove. Try to reboot your computer in safe mode as instructed on this security website to remove Security Tool
    precisesecurity.com/rogue/securitytool/

    Matt said...

    Hey guys, i had the same problem ith Security tool. Just as said above start in safe mode, then delete it manually. 8 digit file name. prob in application data

    mily said...

    hey guys ive tried to delete it manually but i can never find it and ive tried to remove it using malwarebytes but it wont go away. Is there anything else i can do without paying for anything???

    SarahD. said...

    This thing is nasty. I can't run most of my programs and when I tried that free antimalware download, Security tools would not even let me in to run it. There must be a free way to get rid of it, but it might take a computer expert.

    Jean said...

    Security tool and most rogue antivirus softwares may not let you download or run malwarebytes easily in your PC. What to do:

    Download and rename malwarebytes from a different computer and burn this to a CD.
    Boot your computer in safe mode (by pressing F8 when your pc restarts)
    Install malwarebytes (using the cd with the program in it)
    Run malwarebytes

    RLH said...

    I've loaded the Malwarebytes from another computer and I've tried to run Malwarebytes in SafeMode and the Cyber Protection Center still manages to hides from it. The Malwarebytes does not find anything during the scan but the virus is still on the computer.
    I need new suggestions on how to get rid of this nasty virus. HELP

    Sayme said...

    I just did a system restore, the "Security Tool" was trying not to let me get to the restore by popping up the different warnings, I just kept closing them by pressing x and finally got to restore. Everything appeared to be back to normal after the restore but I still see the Security Tool icon so I am running malwarebyte, it is still running but found 15 infected objects so far

    Sayme said...

    I got the security tool virus and it seemed to override my antivirus software as well. I did a system restore, it was difficult to get to it because of the pop ups but I was persistent and kept closing them. It appeared as if I fixed the problem after the restore because I got my screen back and everything but I noticed the icon for the "security tool". I downloaded malwarebytes and did a scan, there were several files infected and I followed the instructions that were given to me. I had to restart to finish removal and it seems to be completely fixed. The icon is gone at least, I dont know what else to do. I just thought I would post this to try and help someone else. Good luck

    Brian Newham said...

    security tool just popped up and was driving me mad. I seem to have solved it by rebooting in safe mode and deleting it manually in DOS. After that I deleted the desk top icon and the program menu option. I used the desk top icon properties to locate the directory.

    Paul Barnes said...

    Well i had the virus the other day so i thought id post how i managed to clear it.

    The virus does not let you easily get into task mangager once its loaded it it shuts it almost as soon as you open it,the trick appears to be timing on start up.
    Basically i restarted my comp and hit CTRl/ALT/DEl as soon as i saw the desktop items come up,it took a min or two but taskmanger opened,i was then able to search for the exe. file which will be a bunch of numbers,and then closed it down temporarily disabling the virus.
    I then ran spybot,malware bytes, and Avg consecutively and that seems to have sorted the problem.

    Hope this helps.

    Vikram said...

    My still have this nasty malware, i tried everything discussed in various forums. It seems to be removed but as soon as i fireup my internet it comes back. i may have to reformat.

    Kayla said...

    Hey all... I just had a night of it with this virus... I paid $30.00 for PCDOCTOR and it only deleted 5 of the 300 infected files.. so after a wasted purchse I attempted to download malwarebytes.org and it too was blocked by the virus.... so then I downloaded malwarebytes.org *THE FREE VERSION* to my desktop.... u have to click save rather than run and save to desktop.... then the virus will continue to block malware (mbam as seen on desktop icon) from running so u must restart your computer in safe mode. This somehow disables Service Tool (the virus) from blocking malware and it took about 40 min for a total computer scan, but as I said... malware found over 300 infected files the PCDOCTOR missed... best of luck to you all!

    aldrin said...

    PC Doctor and Spyware Doctor are being promoted as the main virus remover. If you search the internet for a certain virus, you may notice that most of the top sites will offer you to buy PC Doctor or Spyware Doctor, they offer this programs for a commission when get sold and dont realized if it can removed the infection. In my experienced, Spyware Doctor never removed any threats. This is why I already BLOCKED sites that are offering this program as a solution.

    Jim D said...

    go to http://www.combofix.org/, download and rename the file, run from cd and the virus will be removed, free of charge. then run malwarebytes.org also free.

    dustwolf said...

    I just got hit with this nasty virus on my laptop (XP Pro). A screen came up saying that "Security tools has successfully downloaded, although I didn't download anything. I was just shopping for Christmas (some Christmas present I got!).

    I figured it was one of those viruses, so I didn't click on anything except I tried to bring up task manager so I could close the window. That didn't work, it only brought up the full screen of this "security tools" and it started doing the fake scan.

    I didn't click anything, but just rebooted in hopes that I could get to either task manager soon enough to close down the program, or to explorer and get to a virus remover such as malwarebytes. That didn't work either, the screen came up as soon as I rebooted, so I shut down again and tried going into safe mode. When doing that, the drivers only go halfway down and stop, then nothing.

    I tried just rebooting normally, thinking if I signed up for that security tools with false info, at least I could get rid of the opening screen and access the net. Now when I try to reboot, I get nothing at all, just a black screen. Did I kill my computer by doing this the wrong way? Please help! Thank you in advance.

    P.S. This is on my laptop and I do have my desktop that I'm using now. How can I safeguard (with strong preventative measures!) that something like this doesn't happen on this one too?

    Engie said...

    1. Open file location on virus source. (Right click and go to properties and click 'open file location') 2. Right click virus source and go to properties. (Example. 45263672.exe) 3. Click security tab and then go down to the bottom and click advanced. 4. Click change permissions. 5. Find yourself as a user, in my case it was ( John (John-PC\John) ) ; and click Edit tab. 6. Check DENY on all the tabs. 7. Apply and restart your computer. BAM your Security Tool Virus Free!!!.

    lizperrott said...

    I am using another laptop to write this, my infected one is inoperabale. All normal content is now blocked and when I click x to close security tool it now freezes my mouse. I managed initially to run a full scan using spy doctor and it showed up and I clicked ' remove' and it said it had removed it but it was still there and now wont let me back into spydoctor. It has disabled my macafee programme altogether, wont let me access anything at all. Spy doctor help tech gave me three ways it might be removable but all involve accessing Internet explorer and other programes. I can't access anything but security tool at the moment.

    Mr_JDL said...

    If it's possible to pay ~$50 to Security Tool, that money goes to someone via a debit/credit card. How come the person/people who (wrongfully) receives the ~$50 from someone regretfully "buying" the full version of Security Tools can't be tracked down?
    If it's OK for these people to cheat people via a debit/credit card, why can't I pay $50 to learn who that person is and do terrible and painful things (to those that create viruses).
    Torturing people who create viruses would make me happy.

    CHleo said...

    My recomendation is to go to YOUTUBE.COM y type how to get rid of the tools virus, It will walk you, step by step.

    Good Luck.

    Complete Removal Instructions - Tag along virus- WINCAP and DNA ( Security Tool Virus) said...

    COMPLETE REMOVAL INSTRUCTIONS

    Removal instructions from XP (& probably 2000 & maybe Vista)

    1. After rebooting, ASAP, before the tool loads, press [CTL-ATL-DEL] you may have to try a couple of times.

    2. Select “Task Manager”,”Processes” tab,

    3. Click on “Image Name” (to sort in ascending order)

    4. There should be a process running that is 8 numbers and only numbers… Mine was 808561

    5. Kill the process as noted above, and you now should have control of your system again.

    6. Open control panel, “Add, Remove Programs”

    7. Find and uninstall “DNA” (1 of 3 to be uninstalled and deleted)

    8. Open windows explorer (show all files & folders)

    9 Navigate to C:\Program files\

    10. You need to have your “explorer”, “view” “detail” selected to see the time stamps. Then sort by modified date (Desc) (click on the date column to sort and again to reverse the sort order). Order the sort so that the most recently modified appear at the top for you.

    11. 1 or 2 folders should appear on the top with the current dates of your infection. “DNA” with and “WINCAP..(something along these lines) Also look for any other added folders since the day and time of the infection. You can tell by the date stamp on them. If you know you didn’t install any programs on these recent dates:
    delete them.

    I found DNA (Security Tool Virus, with an executable file called BTDNA.exe, this is the virus program — and WINCAP (RPCAPD.exe). DNA is the Security Tool Virus and WINCAP is a trojan came along as a package deal with the DNA. You need to be sure to remove all the bad stuff. If you aren’t sure, look them both up

    12. Be sure to have your “Explorer”, “Tools”,”Folder Options” “view” “Show Hidden Files & Folders” ON). Then go to c:/documents & settings/all users/application data as noted in other posts above and delete the folder with the 8 numbers for the name. Note: It will match the process that you killed to get here)

    13. reboot … and you should be home free.

    14. Delete all the files in your folders C:/Document & Settings//Local Settings/Temp
    Find and delete: GDIPFONTCACHEV1.DAT
    Scan your computer for all files dated at with time stamp from your infection date. Use
    your judgement to delete them or not. If you are not comfortable with WINDOWS OS better
    to not delete.


    15. And if you are comfortable with checking your registry file.
    Scan your registry file for BTDNA, the eight digit numerical name, WINCAP, and RPCAPD.
    I found a bunch with the eight digit numerical name & BTDNA and deleted them. DNA appears
    to be used for more than just a virus, so BE CAREFUL.

    16. Empty your recycle bin. Run your antivirus.

    17. If this doesn’t work, try booting in safe mode and restoring it.

    Dom said...

    Go to youcandoit123. com , it worked great for me... easy to follow step by step instructions.

    Paul said...

    This happened to me last night and I was able to kill it (after a couple of hours of trying different methods) by downloading malwarebytes in safe networking mode. Also deleted the program from my desktop and used search to delete it in the other folders (remember to empty recycle bin before restarting). Virus appears to be gone now.

    Vicki Collaco said...

    This is considered to be fine stuff. Thank you

    angela pitts said...

    i would like to report a scam and i would like a refund from them i would like to stop the payment to them

    Security Tool is stupid said...

    This info is great! I wrote this site URL into the back of my notebook since Security Tool is winding me up completely:

    - Making my screen go black
    - Getting rid of the icons on my Desktop
    - Telling lies
    - Stopping me from going on anything except Internet Explorer
    - Cruddy pop-ups

    THE PEOPLE WHO CREATED SECURITY TOOL SHOULD BE LOCKED UP FOR THE REST OF THEIR LIVES!!!!!!!

    jevonne samuels said...

    nice advice
    got rid of my security tool in 5 mins
    (RECOMENDED)if u have security tool
    doesent work for normal viruses though
    thanks for all the help

    Moo said...

    What i don't get is that it says my credit card info is trying to be sent i know it is a scam because i don't have a credit card! THANKS for the advice

    Paul said...

    I tried all the other soloutions and in the end tried ctrl/alt/del and then deleted
    system tools which was hiding behind a random number which I suspect is different
    for each pc.. seems to be working

    BEN said...

    MY computer is messed i got this security tool and i did a virus scan on safe made the i came back later and my cpu was switched off and now when i try going into safe mode it freezes and whenever i got on my cpu normally it goes into crash dump! i need help and i dont know what to do.

    meg said...

    This exact thing happened to my laptop a few days ago. It said I had 36 infections found on my computer and said to purchase a security tool anti-viral box worth $80. I took it to my pc store instead - they told me it was a hoax and they wiped my whole hard-drvie to get rid of it. Unfortuantley all my files were lost - i didn't think to back them up.
    Some advice - ALWAYS back up files incase this ever happens to you!!
    - megan

    STEP said...

    Please sent me free antivirus

    Ashley said...

    can anyone help me??? my computer has the System Tool 2011 virus...how do I get rid of it??

    ernest brown said...

    solution- purchase-its already downloaded and cannot be removed-purchase there unlock key-remove their downloaded trojan virus-then-call your bank-and refuse payment-reason fraudulent acts-thewn never open a fake fed x e mail again

    Minda said...

    Ahaa, its nice dialogue about this post at this place at this web site, I
    have read all that, so at this time me also commenting at this place.

     
    design by suckmylolly.com