My laptop…. there’s so much to say! Well, first of all, my laptop was attacked my the Security Tool 2011 virus. I’ve tried so many ways to get rid of it. For the past 3 months, whenever the virus showed up (which usually showed when I pressed a link or something and a website called ‘monstermarketplace’ showed up D:) a whole scan thing would pop up, saying that I have many viruses and I should buy the Security Tool, which is just a rogue/trojan for people to buy which is useless. I dont know how to get rid of it! Before today, all I did whenever it showed up was go to system restore and restore it to the day before. If it was really bad and system restore didnt open, I would go to safe mode with networking and from there do system restore. However, today when it showed up again, system restore didnt work normally – no big deal, ill just go on safe mode. However, when I went on safe mode, the virus showed up there too, which is not something that happens normally. I tried to open system restore, but it wouldnt open either. I later went back to the normal one again (not safe mode) and went to the task manager and tried ending the virus’s process. Whenever I pressed ‘End Process’, the virus file would be gone, but come back again a few seconds later when I tried to open anything besides looking through my documents. So, seeing that this didnt do anything, I decided to play with the actual virus files. I went online to some websites to see how I can handle this on a different computer (the same one which i am on now). It suggested downloading some anti-viruses, but obviously, the virus restricted me from the internet- so that was out of question. The only other way was to remove it manually. I unhid many files and went into AppData. From there I found my way to the file ‘yej.exe’ – the virus’s name. I deleted it and deleted everything from my recycle bin too. It hasnt been coming back in a while, but that might be because of the fact that I cant go on the internet anymore. Somehow if i press mozilla or internet, the files cant be located, which is definitely a problem. Also, I understand that the virus may not be completely gone and it may come back as well. Im scared to take peoples recommendations about antiviruses thinking that the antivirus that was suggested is just something that would give me a virus instead. Plus, at the moment I have Microsoft Security Essentials and SuperAntiSpyware, which both do not detect this trojan/rogue. Usually the rogue turns off all access to any Anti-Virus, so Im left hopeless. Sorry for having this so long! Is there anything you guys can do or suggest to me? Im using Windows 7 and I currently do not have my files backed up, nor do I know how. But then again, I dont even have access to the internet on that because the files cannot be located, so I dont know what to do about backing it up in the first place. Additionally, my laptop has Windows 7 Home Premium, but was originally Windows Vista, so I dont know if I reboot it, if it will revert back to Windows Vista and if I could download Windows 7 again. Thank you if you gave your time in trying to help me solve my issue. It’s very thoughtful for you all to spend your time giving a great answer to help clueless people like me.


Here is the link to removal guide………..http://www.bleepingcomputer.com/virus-re…
http://download.bleepingcomputer.com/gri…
Use it to kill the process and download MalwareBytes in Safe Mode. Also, you could use FileASSASSIN to kill the files that are locked… the Rogue AV’s files are normally locked. Also, how did you get the virus if you didn’t fall for the fake scan? Also, System Restore made it worse, Viruses today copy itself into Registry Files and so it backs itself up on System Restore, so that could explain why it keeps coming back, you’re going to need ComboFix if MalwareBytes didn’t work.
If you can’t access the internet on the other PC, copy RKill and MalwareBytes to a Flash Drive and install from there, RKill first as it will kill the Rogue AV’s progress by bringing up a custom Command-Line to search your C: for known Rogue AVs and kill it’s process, and this is where MalwareBytes comes in, locating and destroying the files on your computer. And if that doesn’t work, burn Linux Ubuntu ISO to a CD/DVD and download a Virus Scanner from the LiveCD and scan the C: that way, so it will scan the files before the Windows 7 boots up. Rogue’s, unless they’re Boot Sector Viruses, autorun on boot-up. If Windows doesn’t boot up, it can’t lock it’s file and hide itself.http://www.youtube.com/watch?v=9h3q5ss40…
And finally, if all of this does not work, proceed to reinstall your operating system.Also, consider a Linux Distro for browsing, it’s virtually impossible to get a Virus unless you give it root access to your computer.
1. Click Start->Run or press WinKey+R. Type in “command” and press Enter key.
2. In the command prompt window type “notepad” and press Enter key. Notepad will come up.
3. Copy all the text given on this page http://justpaste.it/9qv and paste to Notepad.
4. Save file as fix.reg to your Desktop. NOTE: (Save as type: All files)
5. Double-click on the fix.reg file to run it. Click “Yes” for Registry Editor prompt window. Then click OK.
6. Download free anti-malware software from the list below and run a full system scan.
* MalwareBytes Anti-malware
* SUPERAntispyware
* Spybot S&D
* Hitman Pro 3.5
Don’t forget to update the installed program before scanning.
Detailed removal guide: http://deletemalware.blogspot.com/2010/1…
Alternate removal guide: http://www.bleepingcomputer.com/virus-re…