System Tool 2011 Virus

wat docdude

New member
Local time
11:17 PM
Messages
32
So my dad goes to hotels all the time with shoddy networks and browses the internet. It seems like everyday he comes back with some form of malware or another :(.

These rogue anti-viruses are what he has trouble with. It's sometimes possible just to remove some of the other things with a quick MBAM scan, but these things are just too hard for me to get rid of by myself.

The one that really has me stumped right now is "System Tools 2011". An icon popped up on the desktop with a padlock logo labeled "System Tools 2011", and it changed the backround to a really cheesy warning about how everything you do is saved on the computer and junk. It's pretty obviously fake, because of the fact that it's just a backround. I can change it to anthing else through the controll panel, and the backround has some binary in the backround to make it look official (Think The Matrix).

The only program it will let me run is IE. Anything else that I try to run comes up with a pop up from the virus that says it's infected. Anything from MBAM to The Snipping Tool.

I can't really think of anything more. I've done some googling and nothing has helped, and I don't want my dad to have to spend money to get this off of his computer.

Any ideas on how I can get this off the computer? It seems so difficult because it won't let anything else run.
 

My Computer

Computer Manufacturer/Model Number
ASUSTeK Computer INC.
OS
Windows 7 Home Premium 64bit
CPU
Intel(R) Core(TM) i5 CPU @ 3.20 GHz (4 CPUs) ~3.2 GHz
Memory
8192 MB
Graphics Card(s)
ATI Radeon HD 5750
Try scanning with mbam in safe mode
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom Build
OS
Windows 10 Pro x64, Arch Linux
CPU
Intel Core 2 Quad Q8200 OC'd 3.08GHz
Motherboard
Asus Rampage formula LGA775
Memory
8GB DDR2 900Mhz
Graphics Card(s)
MSI GT730 2GB GDDR5 (Kepler)
Sound Card
Supreme FX2
Monitor(s) Displays
Samsung LS22F350 LED
Screen Resolution
1080P
Hard Drives
Kingston SSDNow UV400 120GB, 500GB Hitachi, 2TB Samsung, 500GB Seagate FreeAgent, 640GB Samsung, 160GB Toshiba (Arch)
PSU
AeroCool 500W Bronze
Cooling
Cooler Master V6 + 3X fans
Keyboard
Prolink keyboard
Mouse
Logitech M705
Internet Speed
1MiB/s
Browser
Chrome Beta
Or go into MBAM's programs folder and rename mbam.exe to iexplore.exe and see if it will come up.

If it does start don't forget to try and update first before a scan.

If still no go then you could try the RogueKiller from the link below which is able to kill exe killing rogues if active and can even nullify quite a few from auto starting and then try a scan with MBAM to cleanup any dregs.

RogueKiller
 

My Computer

OS
7
These rogue anti-viruses are what he has trouble with. It's sometimes possible just to remove some of the other things with a quick MBAM scan, but these things are just too hard for me to get rid of by myself.

If your dad is running XP boot into SAFE mode and log into the (normally hidden) Admin account. Rogue AV's often install in the user account and won't be active when you login as Admin. Run a "quick scan" with MBAM. If MBAM doesn't catch it followup with SuperAntiSpyware.

If the OS is Vista/7 try SAFE mode first. If that doesn't work see if you can create a new Admin account and then log into it in SAFE mode...try the scans.
 

My Computer

Computer type
PC/Desktop
OS
Windows 7 x64
CPU
Intel Core2 Extreme Q6850 3.00GHz
Motherboard
EVGA 132-CK-NF79
Memory
8 GB
Graphics Card(s)
Radeon R7 260X
Sound Card
Xonar DS
Hard Drives
Hitachi Deskstar 1 tb

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio

My Computer

Computer Manufacturer/Model Number
Too many to describe...
OS
Windows 7 x64 pro/ Windows 7 x86 Pro/ XP SP3 x86

My Computer

Computer Manufacturer/Model Number
ASUSTeK Computer INC.
OS
Windows 7 Home Premium 64bit
CPU
Intel(R) Core(TM) i5 CPU @ 3.20 GHz (4 CPUs) ~3.2 GHz
Memory
8192 MB
Graphics Card(s)
ATI Radeon HD 5750
Same problem here!!! PLEASE HELP!!

I'm good with pcs, build and repair, always have a friend's pc to clean up.

But this virus is killing me, I cannot start any programs except IE and Windows explorer. I tried already to create another user, no go.... cannot start task manager or computer manager.The worse thing is I cannot even start in safe mode!!!

Somehow this crap block access to my keyboard even before windows starts!

The only thing that may work is a script to boot in safe mode. But I don't know how to create a scrpit at all.

Any ideas?
 

My Computer

OS
Windows 7 Ultimate 64 bit
Same problem here!!! PLEASE HELP!!

I'm good with pcs, build and repair, always have a friend's pc to clean up.

But this virus is killing me, I cannot start any programs except IE and Windows explorer. I tried already to create another user, no go.... cannot start task manager or computer manager.The worse thing is I cannot even start in safe mode!!!

Somehow this crap block access to my keyboard even before windows starts!

The only thing that may work is a script to boot in safe mode. But I don't know how to create a scrpit at all.

Any ideas?


go into your \system32 directory and find taskmgr.exe, doesn't matter if it wont work, just copy it and paste the copy to your desktop somewhere. rename it to iexplore.exe and run it. This will trick your virus into thinking that its really internet explorer and you can disable the goofy app with wierd strings of letters. youll notice it is usually letters and numbers like vdus87s9d9sdsd8 or something.
end those tasks, then run msconfig in run and disable it from the programs in the startup tab. Once you do that, use your antivirus tools like Malwarebytes' et al.

Good luck.
 

My Computer

Computer Manufacturer/Model Number
Custom
OS
Windows 7 Ultimate x64
CPU
Intel Core i7 920
Motherboard
Intel DX58SO
Memory
6gb DDR3 Patriot Viper w/ XMP support
Graphics Card(s)
Nvidia Maxcore GTX295 (BFG Tech Overclocked)
Sound Card
Creative XFi
Monitor(s) Displays
21" LCD
Hard Drives
Western Digital Blue 500GB
PSU
750 Watt Corsair
Case
Antec 900
Cooling
Stock Cooling for the CPU, 8" fan on top, (3) 5" case fans
Keyboard
Logitech Wave
Mouse
Logitech MX Revolution
Internet Speed
30mbps
Other Info
Water Cooled CPU w/ Corsair H60
filename

Hi,

after some trouble with this virus myself i found that the following file was created

c:/program data/pdapjni06300/pdapjni06300.exe

i removed all entries in the registry and deleted the file..

this did get rid of the virus however all of my shortcut links for IE etc are now defunct, i will still need to rebuild the machine :(

hope this helps people out:party:
 

My Computer

OS
windows 7 ultimate 64 bit
System Tool Scareware

Hey Guys,

Ive just dealt with three of these this weekend alone. The best, and easiest way Ive found to reverse the problem is by using System Restore. Just press F7 during the boot sequence, then F8 in the next screen, click on System Restore, choose a restore point/date, and let it run. Doing this has fixed all of the systems I have repaired lately in about 5 or 10 minutes.

Hope this helps.
 

My Computer

OS
Windows 7 Pro 64
removal of system tool 2011

Hi…………… really, system tool 2011 is a critical problem which completely damages the performance of our PC. Actually, system tool 2011 is a fake application which creates fraudulent error messages to ensure us about the presence of virus in our system. But, in actual it is not so.


Beside this, system tool 2011 corrupts all the important files of system and even don’t allow you to open the task manager window, therefore, you can't remove it from the system manually. So, to remove system tool 2011 you can use system tool 2011 removal software which quickly detect virus and make your system free from this fake application. :geek:
 

My Computer

OS
Windows XP
Hi…………… really, system tool 2011 is a critical problem which completely damages the performance of our PC. Actually, system tool 2011 is a fake application which creates fraudulent error messages to ensure us about the presence of virus in our system. But, in actual it is not so.


Beside this, system tool 2011 corrupts all the important files of system and even don’t allow you to open the task manager window, therefore, you can't remove it from the system manually. So, to remove system tool 2011 you can use system tool 2011 removal software which quickly detect virus and make your system free from this fake application. :geek:

Hello hp1 and welcome to Seven Forums.

With all due respect I think there's a better chance of removal using a couple of tried and true free on-demand scanners. Namely, Malwarebytes free, SuperAntispyware free, and Hitman Pro free.

Malwarebytes : Malwarebytes Anti-Malware PRO removes malware including viruses, spyware, worms and trojans, plus it protects your computer

SUPERAntiSpyware.com | Remove Malware | Remove Spyware - AntiMalware, AntiSpyware, AntiAdware!

Hitman Pro 3 - SurfRight

But once a computer gets infected with any kind of malware, the only sure way to know it's clean is to reinstall everything either from a known clean system image or the old fashioned way of reformatting/reinstalling everything from scratch. ;)
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Sony Vaio VPCEB47GM Laptop
OS
Win 7 Pro 64-bit
CPU
Intel i5 2.4 Ghz
Memory
8GB DDR3
Graphics Card(s)
Intel HD 3000
Sound Card
IDT High Definition
Monitor(s) Displays
15.6 WGXA Anti-Glare LED
Screen Resolution
1280x800
Hard Drives
640Gb 7200rpm
Antivirus
MSE
Browser
Opera (primary) with IE9 backup
Remove System Tool and SystemTool (Uninstall Guide)

But to be sure you may be more secure using an image backup or wipe the disc and reinstall everything. System image restore is just minutes away. But if you don't have one then...I know this is burdensome and will take a lot of hours (if you wipe and re-install) but you will be sure it will be gone.

Goodluck :)
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom Build
OS
Win7 Ultimate 64bit
CPU
AMD A8 5600K APU
Motherboard
Gigabyte F2A75MD3H
Memory
16gb DDR3
Graphics Card(s)
Radeon 7560
Sound Card
onboard
Monitor(s) Displays
kingston lcd 23inch wide
Hard Drives
WD 500gb (2)
WD 1TB
Antivirus
EAM + Online Armor Premium -- desktop
Drag the pop up

So my dad goes to hotels all the time with shoddy networks and browses the internet. It seems like everyday he comes back with some form of malware or another :(.

These rogue anti-viruses are what he has trouble with. It's sometimes possible just to remove some of the other things with a quick MBAM scan, but these things are just too hard for me to get rid of by myself.

The one that really has me stumped right now is "System Tools 2011". An icon popped up on the desktop with a padlock logo labeled "System Tools 2011", and it changed the backround to a really cheesy warning about how everything you do is saved on the computer and junk. It's pretty obviously fake, because of the fact that it's just a backround. I can change it to anthing else through the controll panel, and the backround has some binary in the backround to make it look official (Think The Matrix).

The only program it will let me run is IE. Anything else that I try to run comes up with a pop up from the virus that says it's infected. Anything from MBAM to The Snipping Tool.


I can't really think of anything more. I've done some googling and nothing has helped, and I don't want my dad to have to spend money to get this off of his computer.

Any ideas on how I can get this off the computer? It seems so difficult because it won't let anything else run.
Each pop up will only happen once unless you keep making it go away ( I can drag and hide all but a tiny corner is showing) drag them to the corner of the screen so as little as possible is showing and forget about it it can only block one browser at a time it works for me.
 

My Computer

Computer Manufacturer/Model Number
compaq
OS
windows 7 32bit
Each pop up will only happen once unless you keep making it go away ( I can drag and hide all but a tiny corner is showing) drag them to the corner of the screen so as little as possible is showing and forget about it it can only block one browser at a time it works for me.

So you don't try to remove a virus?
 

My Computer

Computer Manufacturer/Model Number
HP p6608f
OS
Win 7 Home Premium x64
CPU
Intel Core i3-540 3.07 GHz
Motherboard
MS-7613 (Iona-GL8E)
Memory
4 GB (2 X 2) Dual-Channel PC-10600 DDR3 @ 665MHz (9-9-9-24)
Graphics Card(s)
Integrated Intel H57
Sound Card
Integrated Realtek ALC888S Audio
Monitor(s) Displays
17" SDM-HS73 (a vestige from my old computer)
Screen Resolution
1280 X 1024
Hard Drives
750GB SATA 7200 RPM
PSU
250W
Keyboard
HP USB keyboard
Mouse
HP USB optical mouse
Internet Speed
15Mbps/1Mbps
Back
Top