Question:
how can i remove system tool virus, cannot even start in safe mode goes straight to windows with their warning?
2011-02-28 02:35:33 UTC
Have tried following the answers on here but it will not even let me start in safe mode. Help
Ten answers:
Pall Mall
2011-02-28 03:41:47 UTC
burn this to cd , it runs om linux which will allow you to scan with kaspersky and than you'll be able to load malwarebytes

http://support.kaspersky.com/faq/?qid=208282173

http://www.youtube.com/user/mrizos#p/u/6/znWAfGevYfk
Sly_Old_Mole
2011-02-28 02:42:02 UTC
Remove System Tool and SystemTool (Uninstall Guide)



http://www.bleepingcomputer.com/virus-removal/remove-system-tool
2011-03-02 10:56:58 UTC
type ctrl+alt+del before that the launch of the prgm system tool when widows is starting. If you do fast you can open it and stop the ipkk0565xxx prgm wich is system tool 2011. Then remove this virus using malwarebytes antimalware.



http://deletemalware.blogspot.com/2010/10/how-to-remove-system-tool-uninstall.html



http://www.bleepingcomputer.com/virus-removal/remove-system-tool
2011-02-28 03:17:58 UTC
As it is going straight to their warning screen then you need to download malware bytes, and rename it into IE (System tools does not block it then) Then run a quick scan, and remove the things it comes up with.
2011-03-01 04:50:26 UTC
it is very easy to get rid of system tool. Try manual removal steps to stop this virus from loading up at startup. Then follow manual removal steps :



http://www.review-buddy.com/spyware-removers/how-to-remove-system-tool-2011-system-tool-virus-removal.html
2011-02-28 02:50:13 UTC
Sorry sir, but this question has been repeated 1000000times already so just search yahoo answers of the same kind ;) but anyways



Here's how you remove it



Tap F8 before logging into windows

Run in safemode with networking

Download Malwarebytes

Download rkill.exe

Run malwarebytes

after scan and delete the virus run rkill

Restart computer

Go into safemode once again

and go to this directory



* C:\Documents and Settings\All Users\Application Data\[SET OF RANDOM CHARACTERS]

* C:\Documents and Settings\All Users\Application Data\[SET OF RANDOM CHARACTERS]\[SET OF RANDOM CHARACTERS].exe



(set of random characters= 9zc29-12nvi1-s251)



DELETE THEM



But you must show first hidden files by going



*Control Panel>>Folder Options>>Select>>Show hidden system files*
?
2016-10-06 12:13:37 UTC
uncomplicated approach to get rid of the an infection *turn off the laptop and start up off the laptop in secure mode(faucet f8 the 2nd you turn on the laptop) *prefer to your account the place you have the an infection *For XP, pass to initiate->Run and then replica this area and paste it C:data And SettingsAll UsersApplication records *For Vista/Win7, pass to initiate and then on the commencing up seek or seek application and data, replica and paste this area and then hit enter C:programdata *in this folder you will stumble on a peculiar and wonderful foler which has exchange decrease case and bigger case letters and which will even have 5 numbers *in case you open this folder, you will locate 2 data with the comparable call.. Delete this 2 data and restart the laptop.. guess this works.. Lemme kno wat surpassed off :)
2011-02-28 02:40:03 UTC
Is it one of those bogus scanners? Get malware bytes and do a scan
2011-03-03 08:05:16 UTC
Another method to remove System Tool 2011 is to manually delete System Tool 2011 files in your system. Detect and remove the following System Tool 2011 files:



Processes



* %AppData%\5648541024\5648541024.exe

* %systemdrive%\Documents and Settings\All Users\Application Data\oHaKo00902\oHaKo00902.exe

* %SystemDrive%\Documents and Settings\All Users\Application Data\[FIVE RANDOM LETTERS][FIVE RANDOM NUMBERS]\[FIVE RANDOM LETTERS][FIVE RANDOM NUMBERS].exe



Other Files



* %AppData%\[random]\

* %AppData%\5648541024

* %AppData%\5648541024\5648541024.bat

* %AppData%\5648541024\5648541024.cfg

* %UserProfile%\Desktop\System Tool 2011.lnk

* %UserProfile%\Start Menu\Programs\System Tool 2011.lnk

* %UserProfile%\Start Menu\Programs\System Tool\SystemTool2011.lnk

* %UserProfile%\Start Menu\Programs\System Tool\System Tool 2011.lnk

* %SystemDrive%\Documents and Settings\All Users\Application Data\[FIVE RANDOM LETTERS][FIVE RANDOM NUMBERS]\[FIVE RANDOM LETTERS][FIVE RANDOM NUMBERS]



Registry Keys



* HKEY_CURRENT_USER\Software\System Tool 2011

* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "5648541024"

* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "[random]"

* HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce\"[FIVE RANDOM LETTERS][FIVE RANDOM NUMBERS]" = "%SystemDrive%\Documents and Settings\All Users\Application Data\[FIVE RANDOM LETTERS][FIVE RANDOM NUMBERS]\[FIVE RANDOM LETTERS][FIVE RANDOM NUMBERS].exe"
?
2011-02-28 04:00:45 UTC
http://www.avg.com/gb-en/avg-rescue-cd


This content was originally posted on Y! Answers, a Q&A website that shut down in 2021.
Loading...