<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: How to Get Rid Security Tool Virus</title>
	<atom:link href="http://cantalktech.com/2009/09/26/security-tool-virus/feed/" rel="self" type="application/rss+xml" />
	<link>http://cantalktech.com/2009/09/26/security-tool-virus/</link>
	<description>Yet another site on computer viruses and spam</description>
	<lastBuildDate>Mon, 15 Mar 2010 02:33:56 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
	<item>
		<title>By: Vicki Collaco</title>
		<link>http://cantalktech.com/2009/09/26/security-tool-virus/comment-page-10/#comment-7101</link>
		<dc:creator>Vicki Collaco</dc:creator>
		<pubDate>Wed, 10 Mar 2010 11:26:30 +0000</pubDate>
		<guid isPermaLink="false">http://cantalktech.com/?p=5597#comment-7101</guid>
		<description>This is considered to be fine stuff. Thank you</description>
		<content:encoded><![CDATA[<p>This is considered to be fine stuff. Thank you</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Antivirus 7</title>
		<link>http://cantalktech.com/2009/09/26/security-tool-virus/comment-page-10/#comment-7079</link>
		<dc:creator>Antivirus 7</dc:creator>
		<pubDate>Tue, 09 Mar 2010 22:07:15 +0000</pubDate>
		<guid isPermaLink="false">http://cantalktech.com/?p=5597#comment-7079</guid>
		<description>[...] of bogus antivirus protection softwares. Rogue security tools such as the virus Antivirus 7, security tool virus and soldierantivirus will usually make infected computers display bogus system scans and [...]</description>
		<content:encoded><![CDATA[<p>[...] of bogus antivirus protection softwares. Rogue security tools such as the virus Antivirus 7, security tool virus and soldierantivirus will usually make infected computers display bogus system scans and [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Paul</title>
		<link>http://cantalktech.com/2009/09/26/security-tool-virus/comment-page-9/#comment-7045</link>
		<dc:creator>Paul</dc:creator>
		<pubDate>Mon, 08 Mar 2010 14:41:56 +0000</pubDate>
		<guid isPermaLink="false">http://cantalktech.com/?p=5597#comment-7045</guid>
		<description>This happened to me last night and I was able to kill it (after a couple of hours of trying different methods) by downloading malwarebytes in safe networking mode.  Also deleted the program from my desktop and used search to delete it in the other folders (remember to empty recycle bin before restarting).  Virus appears to be gone now.</description>
		<content:encoded><![CDATA[<p>This happened to me last night and I was able to kill it (after a couple of hours of trying different methods) by downloading malwarebytes in safe networking mode.  Also deleted the program from my desktop and used search to delete it in the other folders (remember to empty recycle bin before restarting).  Virus appears to be gone now.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dom</title>
		<link>http://cantalktech.com/2009/09/26/security-tool-virus/comment-page-9/#comment-7003</link>
		<dc:creator>Dom</dc:creator>
		<pubDate>Fri, 05 Mar 2010 18:36:20 +0000</pubDate>
		<guid isPermaLink="false">http://cantalktech.com/?p=5597#comment-7003</guid>
		<description>Go to youcandoit123. com , it worked great for me... easy to follow step by step instructions.</description>
		<content:encoded><![CDATA[<p>Go to youcandoit123. com , it worked great for me&#8230; easy to follow step by step instructions.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Complete Removal Instructions - Tag along virus- WINCAP and DNA ( Security Tool Virus)</title>
		<link>http://cantalktech.com/2009/09/26/security-tool-virus/comment-page-9/#comment-6486</link>
		<dc:creator>Complete Removal Instructions - Tag along virus- WINCAP and DNA ( Security Tool Virus)</dc:creator>
		<pubDate>Mon, 08 Feb 2010 18:40:16 +0000</pubDate>
		<guid isPermaLink="false">http://cantalktech.com/?p=5597#comment-6486</guid>
		<description>COMPLETE REMOVAL INSTRUCTIONS

Removal instructions from XP (&amp; probably 2000 &amp; maybe Vista)

1. After rebooting, ASAP, before the tool loads, press [CTL-ATL-DEL] you may have to try a couple of times.

2. Select “Task Manager”,”Processes” tab,

3. Click on “Image Name” (to sort in ascending order)

4. There should be a process running that is 8 numbers and only numbers… Mine was 808561

5. Kill the process as noted above, and you now should have control of your system again.

6. Open control panel, “Add, Remove Programs”

7. Find and uninstall “DNA” (1 of 3 to be uninstalled and deleted)

8. Open windows explorer (show all files &amp; folders)

9 Navigate to C:\Program files\

10. You need to have your “explorer”, “view” “detail” selected to see the time stamps. Then sort by modified date (Desc) (click on the date column to sort and again to reverse the sort order). Order the sort so that the most recently modified appear at the top for you.

11. 1 or 2 folders should appear on the top with the current dates of your infection. “DNA” with  and “WINCAP..(something along these lines) Also look for any other added folders since the day and time of the infection. You can tell by the date stamp on them. If you know you didn’t install any programs on these recent dates:
delete them.

I found DNA (Security Tool Virus, with an executable file called BTDNA.exe, this is the virus program —  and WINCAP (RPCAPD.exe). DNA is the Security Tool Virus and WINCAP is a trojan came along as a package deal with the DNA. You need to be sure to remove all the bad stuff. If you aren’t sure, look them both up

12. Be sure to have your “Explorer”, “Tools”,”Folder Options” “view” “Show Hidden Files &amp; Folders” ON). Then go to c:/documents &amp; settings/all users/application data as noted in other posts above and delete the folder with the 8 numbers for the name.  Note: It will match the process that you killed to get here)

13. reboot … and you should be home free.

14. Delete all the files in your folders C:/Document &amp; Settings//Local Settings/Temp
    Find and delete:  GDIPFONTCACHEV1.DAT 
    Scan your computer for all files dated at with time stamp from your infection date.  Use 
    your judgement to delete them or not.  If you are not comfortable with WINDOWS OS better  
    to not delete.


15. And if you are comfortable with checking your registry file. 
    Scan your registry file for BTDNA, the eight digit numerical name, WINCAP, and RPCAPD. 
    I found a bunch with the eight digit numerical name &amp; BTDNA and deleted them. DNA appears 
    to be used for more than just a virus, so BE CAREFUL. 

16. Empty your recycle bin. Run your antivirus. 
  
17. If this doesn’t work, try booting in safe mode and restoring it.</description>
		<content:encoded><![CDATA[<p>COMPLETE REMOVAL INSTRUCTIONS</p>
<p>Removal instructions from XP (&amp; probably 2000 &amp; maybe Vista)</p>
<p>1. After rebooting, ASAP, before the tool loads, press [CTL-ATL-DEL] you may have to try a couple of times.</p>
<p>2. Select “Task Manager”,”Processes” tab,</p>
<p>3. Click on “Image Name” (to sort in ascending order)</p>
<p>4. There should be a process running that is 8 numbers and only numbers… Mine was 808561</p>
<p>5. Kill the process as noted above, and you now should have control of your system again.</p>
<p>6. Open control panel, “Add, Remove Programs”</p>
<p>7. Find and uninstall “DNA” (1 of 3 to be uninstalled and deleted)</p>
<p>8. Open windows explorer (show all files &amp; folders)</p>
<p>9 Navigate to C:\Program files\</p>
<p>10. You need to have your “explorer”, “view” “detail” selected to see the time stamps. Then sort by modified date (Desc) (click on the date column to sort and again to reverse the sort order). Order the sort so that the most recently modified appear at the top for you.</p>
<p>11. 1 or 2 folders should appear on the top with the current dates of your infection. “DNA” with  and “WINCAP..(something along these lines) Also look for any other added folders since the day and time of the infection. You can tell by the date stamp on them. If you know you didn’t install any programs on these recent dates:<br />
delete them.</p>
<p>I found DNA (Security Tool Virus, with an executable file called BTDNA.exe, this is the virus program —  and WINCAP (RPCAPD.exe). DNA is the Security Tool Virus and WINCAP is a trojan came along as a package deal with the DNA. You need to be sure to remove all the bad stuff. If you aren’t sure, look them both up</p>
<p>12. Be sure to have your “Explorer”, “Tools”,”Folder Options” “view” “Show Hidden Files &amp; Folders” ON). Then go to c:/documents &amp; settings/all users/application data as noted in other posts above and delete the folder with the 8 numbers for the name.  Note: It will match the process that you killed to get here)</p>
<p>13. reboot … and you should be home free.</p>
<p>14. Delete all the files in your folders C:/Document &amp; Settings//Local Settings/Temp<br />
    Find and delete:  GDIPFONTCACHEV1.DAT<br />
    Scan your computer for all files dated at with time stamp from your infection date.  Use<br />
    your judgement to delete them or not.  If you are not comfortable with WINDOWS OS better<br />
    to not delete.</p>
<p>15. And if you are comfortable with checking your registry file.<br />
    Scan your registry file for BTDNA, the eight digit numerical name, WINCAP, and RPCAPD.<br />
    I found a bunch with the eight digit numerical name &amp; BTDNA and deleted them. DNA appears<br />
    to be used for more than just a virus, so BE CAREFUL. </p>
<p>16. Empty your recycle bin. Run your antivirus. </p>
<p>17. If this doesn’t work, try booting in safe mode and restoring it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Desktop Security 2010</title>
		<link>http://cantalktech.com/2009/09/26/security-tool-virus/comment-page-9/#comment-6141</link>
		<dc:creator>Desktop Security 2010</dc:creator>
		<pubDate>Thu, 21 Jan 2010 23:50:10 +0000</pubDate>
		<guid isPermaLink="false">http://cantalktech.com/?p=5597#comment-6141</guid>
		<description>[...] and pop ups so you will buy Desktop Security 2010 AV. Other examples of fake antiviruses include security tool virus and antivirus live inc [...]</description>
		<content:encoded><![CDATA[<p>[...] and pop ups so you will buy Desktop Security 2010 AV. Other examples of fake antiviruses include security tool virus and antivirus live inc [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: CHleo</title>
		<link>http://cantalktech.com/2009/09/26/security-tool-virus/comment-page-9/#comment-6099</link>
		<dc:creator>CHleo</dc:creator>
		<pubDate>Tue, 19 Jan 2010 01:05:50 +0000</pubDate>
		<guid isPermaLink="false">http://cantalktech.com/?p=5597#comment-6099</guid>
		<description>My recomendation is to go to YOUTUBE.COM y type how to get rid of the tools virus, It will walk you, step by step.

Good Luck.</description>
		<content:encoded><![CDATA[<p>My recomendation is to go to YOUTUBE.COM y type how to get rid of the tools virus, It will walk you, step by step.</p>
<p>Good Luck.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Live PC Care</title>
		<link>http://cantalktech.com/2009/09/26/security-tool-virus/comment-page-8/#comment-6010</link>
		<dc:creator>Live PC Care</dc:creator>
		<pubDate>Fri, 15 Jan 2010 00:17:55 +0000</pubDate>
		<guid isPermaLink="false">http://cantalktech.com/?p=5597#comment-6010</guid>
		<description>[...] but deleting non-working PC security tools such as the Live PC Guard, the antivirus live and the security tool scam is much easier with a free fake antivirus removal tool. Malwarebytes, for one, is a tool that you [...]</description>
		<content:encoded><![CDATA[<p>[...] but deleting non-working PC security tools such as the Live PC Guard, the antivirus live and the security tool scam is much easier with a free fake antivirus removal tool. Malwarebytes, for one, is a tool that you [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Great Defender Virus</title>
		<link>http://cantalktech.com/2009/09/26/security-tool-virus/comment-page-8/#comment-5862</link>
		<dc:creator>Great Defender Virus</dc:creator>
		<pubDate>Fri, 08 Jan 2010 05:05:46 +0000</pubDate>
		<guid isPermaLink="false">http://cantalktech.com/?p=5597#comment-5862</guid>
		<description>[...] security tool virus [...]</description>
		<content:encoded><![CDATA[<p>[...] security tool virus [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mr_JDL</title>
		<link>http://cantalktech.com/2009/09/26/security-tool-virus/comment-page-8/#comment-5436</link>
		<dc:creator>Mr_JDL</dc:creator>
		<pubDate>Thu, 31 Dec 2009 03:29:20 +0000</pubDate>
		<guid isPermaLink="false">http://cantalktech.com/?p=5597#comment-5436</guid>
		<description>If it&#039;s possible to pay ~$50 to Security Tool, that money goes to someone via a debit/credit card.  How come the person/people who (wrongfully) receives the ~$50 from someone regretfully &quot;buying&quot; the full version of Security Tools can&#039;t be tracked down?  
If it&#039;s OK for these people to cheat people via a debit/credit card, why can&#039;t I pay $50 to learn who that person is and do terrible and painful things (to those that create viruses).  
Torturing people who create viruses would make me happy.</description>
		<content:encoded><![CDATA[<p>If it&#8217;s possible to pay ~$50 to Security Tool, that money goes to someone via a debit/credit card.  How come the person/people who (wrongfully) receives the ~$50 from someone regretfully &#8220;buying&#8221; the full version of Security Tools can&#8217;t be tracked down?<br />
If it&#8217;s OK for these people to cheat people via a debit/credit card, why can&#8217;t I pay $50 to learn who that person is and do terrible and painful things (to those that create viruses).<br />
Torturing people who create viruses would make me happy.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
