Security Protection is a Trojan from the Malware Protection family that acts as an anti-spyware program in order to infect your computer and deceive you into giving away personal information.
Security Protection does this by setting itself to start automatically and then by aggressively displaying messages that suggest your computer is infected. If the user tries to delete these supposed infected files Security Protection will prompt you that the only way to remove these threats is by purchasing the full version of the program. Do NOT give away your personal information as this so called full version is merely a forgery.
Security Protection will keep its aggressive behavior, displaying numerous pop-up messages when the user tries to use the computer, continuously reminding the user that his/her computer is at threat. Security Protection will also try to preserve itself by preventing the user to execute most of the programs on the computer.
First, in order to start disinfecting your system you need to download RKill and Malwarebytes' Anti-Malware (MBAM).*Note that Security Protection might not allow you to access the internet on the infected machine. If that’s the case you will need to download the necessary files from a working computer and then transfer them to your machine via CD/DVD or any other portable means.
Second, due to the fact that Security Protection is a type of malware that might also contain the TDSS rootkit infection, you should run a program that will take care of TDSS. If you want to learn how to do this, check out this great TDSS tutorial.
Reboot your computer in order to start Windows in Safe Mode with Networking. To do so, keep tapping the F8 key while in the rebooting process until you will see the window where you can select Safe Mode with Networking. Navigate with the arrows on your keyboard.
After booting up in Safe Mode with Networking you will need to kill any processes that are related to Security Protection. You will need to run RKill in order to do so. Let RKill scan the system and ignore any messages that are suggesting RKill is a threat to your computer. Do Not restart your system after RKill is done scanning.
Install MBAM while making sure to check the buttons labeled as Update Malwarebytes’ Anti-Malware and Launch Malwarebytes’ Anti-Malware. Click the Finish button and restart your computer if MBAM will ask you to do so.
MBAM should now start automatically at windows start-up. Press OK in the message box that will appear and then navigate to the Scanner Tab. Check the radio button that belongs to the Perform Full Scan label and then press the Scan button.
Wait for MBAM to finish scanning your computer and after the scanning is finished, check all the threats that have been found on your system and press the Remove Selected button. If MBAM will prompt you to restart your system then please do so.
Subscribe to:
Post Comments (Atom)

