System Tool 2011 - Virus Warning (Related to Hotmail Adverts)
Hello All!
I'm sure some of you maybe of seen it already, but take a look at the screenshots below...
http://blog.teesupport.com/wp-conten...ol-2011-31.jpg
http://www.im-infected.com/wp-conten...-tool-2011.png
This all down to the "System Tool 2011" Virus that's started to go around like wildfire! We've had 3 staff personal computers, a couple of student laptops and 2 on-site computers get hijacked with this virus in the last week. All of the on-site machines accessed hotmail before getting infected and from researching this, it's coming through an advert on the hotmail website. You don't even need to click the advert as the virus executes via a Java/Javascript vulnerability. There's also a PDF vulnerability this virus can take advantage as well. There are reports other sites are infected too through the same type of advert. I'm unsure of these though. It effects all Windows XP, Vista and 7.
The only way we've been able to remove the virus use the Malwarebytes' Tool. The instructions in the forum post below work 100%. The tool needs to be run in the user account it's hijacked. However, we've seen one computer corrupt itself as the virus had time to completely ruin the boot-up and then we had to rebuild it from scratch.
Removal instructions for System Tool - Malwarebytes Forum
We've blocked the hotmail website as a precaution so far to stop any further infections. It might be worth warning staff who have home computers that could be at risk. Unfortunately, it's bypassed Sophos Anti-Virus (due to the nature of how the virus renames itself everytime it excutes after a reboot) and it cannot be detected outside of the user account it's hijacked.