in ,

Security Suite Virus: Removal Guide

If you have recently infected with the legitimate-looking Security Suite virus you are probably wondering how to remove it, well the good news is that it is part of the Antivir Solution Pro rogue family, therefore can be removed in a very similar way.

The first thing you need to do is download a few utilities from the Internet (from another PC), all of which are free, these are CCleaner (here), rkill.com (here) and Malwarebytes AntiMalware (here), when they are downloaded burn the files to a CD, if you do not have another computer with a CD burner you can always download these files when you have booted into Safe Mode with Networking (see below).

Now on the infected PC, turn the PC on and whilst it is booing press the F8 key constantly, before the operating system loading screen appears you should get a choice of different boot options, one of which says “Safe Mode with Networking”, choose this option and wait for the desktop to load, if you are having trouble with this step check out this link.

Once you are at your desktop put in your CD and copy the downloaded files to your desktop. The first thing you must do is open Internet Explorer (even if you run an alternative web browser), once loaded go to tools and choose internet options, a windows should appear, click on the connections tab and then click LAN settings, here you should uncheck the box next to “Use a proxy server for your LAN”, once done click OK, then on the next windows click OK again.

Now install CCleaner, there are no custom options you need to choose, so just click next, ok etc, one installed open CCleaner click on the Cleaner button on the left and select run cleaner (this will delete all file build up on your computer, including removing all items in your recycle bin and cookies etc).

Now run rkill, this will stop any processes associated with the infection, this process may take some time however is essential, if any popups say that rkill is an infection they are fake warnings.

Now install Malwarebytes’ Anti-Malware, again there are no custom settings to worry about just click next, next, continue etc. Once installed run the program and click on the update tab, click update to ensure that you have the latest definitions installed, now click on the scanner tab and perform a full scan, this will take some time but will locate any infected files on your PC, when the scan if finished click OK, and then click the show results button, ensure that all of the infections are ticked and then press the Remove Selected button, your computer may need to restart to finish the process, however when it reboots the infection should be no more.

Once your PC seems fine try to ensure that your antivirus software is up-to-date and configured to run regular scans, also always install Windows Updates as these patch critical security vulnerabilities.

If you are still having problems with this infection check out the source link below.

Source: BleepingComputer

Written by Jamie Pert

Jamie has a background in computer repairs and maintenance along with network administration, he now enjoys utilizing the benefits of new technologies and enjoys writing about anything that brings new technology to the world.

He began writing for Product Reviews in mid 2009 and has since expanded his knowledge across a wide-base of devices, he is looking to get more hands-on experience with new devices to gain a better understanding of the latest and greatest technologies.

268
Leave a Reply

avatar
205 Comment threads
63 Thread replies
0 Followers
 
Most reacted comment
Hottest comment thread
159 Comment authors
Jamie PertRich WayneDerrillpauletteJAMES Recent comment authors
Simon
Simon

Okay guys, I read all this stuff and was ready to burn all the stuff over to my other computer. And so i also had the problem that i couldnt open any other anti virus programs on my computer. So what i did was that i restarted the computer. And before Security Suite started i managed to start AD-AWARE FREE VERSION (that already was installed on my computer). Made a quick scan, and the funny thing was that ad-aware found these trojans and other shit and removed them, and then asked me to restart my computer. So i did and… Read more »

Mark Hibbett
Mark Hibbett

Thank you VERY much indeed!!

chris
chris

Well, even went to the next step and bought Spy Doctor… Even after that, it still didnt find the Security Suite scareware….
Why did i even bother listening to these remedial acts… Should have saved my time and reinstalled windows+all my programs…

chris
chris

Got all the way to removing virus in Spy doctor, and it asks for name and product key….

rob
rob

Guys I must say thanks to this post. It fixed my problem. BTW my system was windows 7. So to answer someones question here yes it does work under windows 7. Do not forget to follow ALL the instructions.

andree
andree

I did all the things you told me to do…still have a problem. Still have virus.

Josh
Josh

You, sir, are a genie. You have my humblest thanks.

Bloco
Bloco

Simply an altruistic person who posted this. Thanks so much

doheerty
doheerty

Thanks man worked brilliant, nicest guy on the internet

zoe
zoe

this works! thank you for the instructions – they were easy to follow and effective.

Sarah
Sarah

Worked Great! Thanks!

Electrobob
Electrobob

I used the procedure and it seems to have removed the Security Suite maleware, but now the computer will not connect to any webstie.
"Internet Explorer connot connect to the webpage"

Geo
Geo

do u have t pay 4 any of these programs?

Linda10000
Linda10000

Thanks so much! This worked perfectly.

plzhelp
plzhelp

hi… i'm running in safe mode with networking, did everything fine untill now. Whenever i try to run the anti-malware thing, i get "vbaccelerator II runtime error 0" and "runtime error 404" and it won't run… so… help? plz?

Mozzer
Mozzer

Thanks for posting this. It fixed it all!

satisfied person
satisfied person

wow thank you so much! god bless you! =)

Alex
Alex

Thanks to this thread the virus problem is totally resolved now!

Piggers
Piggers

Followed the directions just as written. I am running Windows 7 and everything seems to be working fine. Malwarebytes software found the issue and I removed it without having to purchase a thing from them. I cannot thank you enough, I was freaking out because my husband (Tech geek) is away from home and I had to go it alone. THANK YOU SO MUCH!! A++++

luke
luke

I have got rid of it twice now and it keeps coming back.

Brandon
Brandon

Got this virus yesterday (8/14). To get rid of it, I hit ctrl-alt-del as soon as my desktop came up (Windows XP). I did not boot in safe mode. Security Suite had not loaded yet and did not block this keystroke. I opened task manager and under the processes tab, I found the executable file ahuokkvshdw.exe. I selected this file and clicked "end process". Thankfully, I now had control of my pc and was able to run my anti-virus software. The virus "Troj/PDF]s-LT" and the file "ahuokkvshdw.exe" were quickly found and quarantined. Hope this helps!

kwp
kwp

I tried all three, but they could not detect Security suite.
Scan is completed with good result, and I still have a headache.
Please help.

Angela
Angela

Thank you so much for posting this. It worked great!

Fiona
Fiona

Brilliant – worked perfectly. Thanks a million 🙂

Don Early
Don Early

Another thing you can do is run rkill the moment your computer loads. Security Suite needs a moment to set up, and you can exploit that to run a few executables. I had the problem of using a wireless card for internet so I was unable to connect while in safe mode w/ networking, so I tried this and it worked for me. Basically I doubleclicked rkill as soon as I saw the icon and then doubleclicked malwarebytes. rkill stopped the security suite from loading and malwarebytes loaded just fine. I updated and scanned and voila: security suite is gone.… Read more »

Kris
Kris

thank you so much it worked after trying many other different things!

chgrr
chgrr

is avg antivirus good enough to stop this happening again or should i get better antivirus software.

Hoho
Hoho

THANK YOU SO MUCH for writing this post!
I have just come back from months holiday and hadnt backed up my PC since taking all my photos off my camera!
I thought I had lost them all!
and of course I was worried about all the work I would be loosing as well! :s
Im running the Malware at the moment but fingers crossed everything should be fine!
again THANK YOU so much for being a genius and writing this post!

Andrew
Andrew

thank you sooo much worked great!

Jen
Jen

I booted up my computer today and it had this virus on it. I was following all your instructions, but it still wasn't removing the virus. I had the Anti-Malware program on my computer already, but the last time it was updated was back March of last year. Turns out the one you linked for downloading is newer than that. So I downloaded it onto a USB and installed/updated it on my infected computer. That was all it needed to get the virus! Thank you so much for having this up! It seems like a lot of people are getting… Read more »

mike
mike

Thank you for these instructions. I just ran through them this morning and my computer is virus-free! A thousand thanks!!!

Ray
Ray

I entered safe mode and use my own anti-virus software sucessfully deleted this dawn thing. But after I reboot my lap top, I can not aceess to the internet. Does anyone know how to fix this problem?

Gabe
Gabe

Thank you!!! Worked a charm the very first time!! I wish I could send you a Christmas card every year!!! LOL YOU ROCK!!!

sad
sad

Thank you so much for this solution! I thought all hope was lost. Also, if you want to be able to access your internet in hopes of getting rid of the virus, go into your internet explorer tools menu, select internet options, and then select LAN settings, you can disable the proxy server that the virus is using to hijack your internet (by un-checking the box that says "use a proxy server . . ."). As for the trouble with rkill, I read on an alternate site that if it isn't working for you, it is also sometimes labeled as… Read more »

Topper
Topper

Virus was gone then came back after about 2 hours. Anything I missed?

marc
marc

Rkill wont run looked like a dos program takes seconds then leaves a message on notepad. Did not get red of this virus. Help

Topper
Topper

Thanks for restoring my faith in humanity. Worked perfectly.

Adam
Adam

Thanks. Virus is GONE! I was scared I was going to have to buy a new laptop. You are a life saver.

JA JA
JA JA

THERE ARE PEOPLE WHO DO GREAT THINGS FOR WORLD WITHOUT KNOWING..YOU ARE ONE OF THOSE..YU HAVE SAVED ME BIG TIME BRO…

Chris
Chris

You're the man, it's either gone or hiding. Ah well, out of sight, out of mind.

Joe
Joe

Thanks it worked great. Your a life saver! God bless!!!

Mei
Mei

I tried everything posted here, but I still had it when I rebooted my computer. However I couldn't update my malwarebytes program. Could that have been the problem? I'm really getting annoyed with this virus..

Stu
Stu

Worked wonders.

To everyone: please ensure that you are on your own account while doing this treatment, as it will not work otherwise.

Rkill.com is also rather hard to find to download, but I believe you can get it from bleepingcomputer.com.

The virus shows up on malwarebytes as ‘rogue.antivir’; making it easy to identify.

Benjamin
Benjamin

I downloaded all three onto a flashdrive, and ran them RKILL first (to stop the processes) CC cleaner, then malware bytes. Worked like a charm!

Thanks!

Steve
Steve

Thank you for this. I was completely stuck and your steps fixed the problem in less than 20 minutes.

Kyle
Kyle

Wow too easy and too free to work…so I thought. I never have replied to anything on the net before HOWEVER I was frustrated with this virus/adware until I followed these SIMPLE and EASY along with FREE steps and it really works. Thanks to whomever, really thanks! Come people give it a try it works!

Lakey-bakey
Lakey-bakey

man u are awesome. thank you so much. i wish there was a way to donate something to u!! do u have a donations thing? u def need to be getting paid for what ur doing!

Candice
Candice

This worked great. Took a little time and effort but it wasn't hard at all. I'm not the smartest "comuter person" and it worked for me. Thanks! =)

Doctorstrange9
Doctorstrange9

OldGeo the money you payed goes to the people who created the virus its a form of malware called scareware designed to scare you to pay, its a protection racket but worse whatever form of payment you made for the 49$ basic security suite you better call your credit card company and have them cancel the charge and report your credit card you used as stolen and get issued a new card if you used your bank account do the same monitor your bank statements and credit card accounts theres a very good chance your pc is still infected so… Read more »

James
James

Thanks! This worked like a charm on my mother-in-law's computer. She thinks I'm a genius. I'm not going to argue with her.

@tmi. I'm for it. I'll bring sticks.

Lars
Lars

I also ran into this shit. It disabled all my programs, and kept horrasing my with pop-ups so that I wouldn't be able to click anything else but the "buy software" button. The easy soultion for Windows7 : (thorough for non-advanced users) *Reboot, tapping F8 during startup allowing me to set my computer in "Safe Mode", and allowing windows to actually run stripped. *Started up Windows Security Essentials (anti virus) once logged on. It was flashing me that I had five severe problems detected *Removing them through the same program, click "clean computer" *Rebooting, and the virus was gone. BUT,… Read more »

Bryan
Bryan

Thank you so much for this removal guide! It was easy to understand and I was able to disinfect my computer very quickly!

jay
jay

thanks! i got the virus when i was downloading from piratebay.org

Momo
Momo

Thank you so much for posting this!! I was freaking out the whole night, but this really helped!

Also, for people who can't get into safe mode by pressing F8, I had to recreated an improper shut-down, which pretty much meant that I had to pull out the plug while my computer was on.

Dangerous? Maybe, but it got me the result I wanted.

derek
derek

thank you so much! it is blocking me from doing anything! i cant even open malware bytes!

Bill Brown
Bill Brown

How to get rid of in 10mins the safe way: (if you have any questions on any steps google is your best friend) 1st. boot in safemode 2nd. go to system restore 3rd. choose a date a week or so back 4th. enjoy the lack of a virus 5th. update your anti virus or get a better anti virus program so you don't have the same problem again. wow that was hard… As for the origin of this virus, it uses a adobe acrobat/reader loophole(based off a false plugin I suspect). It works on vista and xp however i'm not… Read more »

Chris
Chris

I would like to meet the programmers of this virus. I would then rip out all their small organs and make them eat them while I assaulted their dirty skanky wives.

cristyandco
cristyandco

You saved my life!!!! Well, not literally, but IT WORKED!!!! And, for that, I am forever in debt to you. It is nice to know there are still nice people in this world. Thank you!!!

Doctorstrange9
Doctorstrange9

OldGeo the money you payed goes to the people who created the virus its a form of malware called scareware designed to scare you to pay, its a protection racket but worse whatever form of payment you made for the 49$ basic security suite you better call your credit card company and have them cancel the charge and report your credit card you used as stolen and get issued a new card if you used your bank account do the same monitor your bank statements and credit card accounts theres a very good chance your pc is still infected so… Read more »

IneedHELPnow
IneedHELPnow

PLEASE tell me REALLY FAST URGENT can I use a USB drive cause I dont seem to have any CD's to burn. Also i cant system restore, any way to use that instead of all this????

DuPontC
DuPontC

I started following the steps on here, had my laptop in safe mode with networking, was running Rkill, my laptop made a whirring noise and turned off. now it won't turn back on! is there any hope?

Jeff
Jeff

The thing I hate most about the world…………………Jerk wads that spend their time making spyware when they could mprob. make more money and do more good if they just made something that was usful to someone in the world!

Chris
Chris

I did all 3 steps but the Security shit is still working….what can i do??? >_<

D Baker
D Baker

Thank you! By following your instructions I was able to get rit of this virus on my daughters computer.

Norm
Norm

Thanks! Your detailed instructions were easy to follow and worked like you said.

One question… Now that the virus is gone, should the "Use a Proxy Server for your LAN" box remain unchecked or should I go back and check it?

Thanks again!

mike
mike

hey for some reason after i did this the the internet browsers are not working ..from crome, opera, only one that works is firefox…even on itunes searching it does not work…can someone help me out plz

Devon
Devon

Ummm im using windows 7 so i can burn the disc and use on my comp wit windows vista but wen i try to download ccleaner it said my securtiy wont allow it what shoul i do?

tmi
tmi

so if someone does pay for this virus, who gets the money? cant someone follow the money trail so we can hang the guy by his sack and let all of us have a turn at him with a stick?

andy
andy

Thanks for this.your a star.

Paul
Paul

I'm very protective and still got hit with this. Following this advice seemed to work but now I still can't get on the internet. I'm in W7 x64 and I think it's a proxy problem but I can't seem to get passed it.
Either I missed something or it's still there though nothing pops up and I'm able to use the rest of the system save the network.
Any ideas? And, thanks for the good work.

Pat
Pat

I tried all 3 and none of them worked (2 of them wanted me to buy the software before it would remove anything leading me to believe this site is capitalizing on the virus to sell software) is, I have windows vista, does anyone have a solution for Vista

george_riley
george_riley

hey so i had the pop up but i could still do stuff ..i downloaded all the stuff whilst i was downloading the rkill.com the pop up just went away…but im not sure should i leave it like that or countine with the rounitine…should i turn my pc off and turn it back on to put it on safe mode and boot it…cause this happen to me while i waas on the pc

kal
kal

I followed all the instructions, including the safe-mode with network but mbam wont update. tried without updating and virus is still there – any advice?

Will
Will

I followed your instructions and it worked like a charm. Many thanks!

betomidian777
betomidian777

worked like a charm. read the source for really good step by step. thank you =)

John
John

I used a different procedure. I use Firefox, a firewall and a router and still somehow got it. I already had Malwarebytes’ Anti-Malware installed but could not run it because the virus stopped me from running anything. I eventually tried booting into safe mode (F8 while booting) instead of going completely into safe mode, windows will give you an option of doing a system restore, I chose a restore point that was taken before the last recorded one. That seems to have done the trick. I ran my anti-virus and Malwarebytes and both have found nothing, so far everything seems… Read more »

OldGeo
OldGeo

So, anybody else sign up for the $49 Basic Security Suite software package/download?
I did and the problem, which as others have described, locked up my PC to where I couldn't do/access anything.
Anyway, that all seemed a bit suspicious but the problem seems resolved. Decided to snoop around and wound up here, asking questions.
Anyway advice would be welcome.

Megan
Megan

I cannot get the rkill program to run. I have tried all of the versions as suggested by bleepingcomputer.com but none work- they seem to still ALL be blocked by Security Suite. So, I tried skipping the rkill step and I will go back and try running rkill after malwarebytes and see if that might work. Anyone have suggestions? Thanks!

carlos
carlos

worked like a charm! thanks

Sam
Sam

I was skeptical as you only wrote this today, but WOW! Everything looks good so far. You're a REALLY SMART GUY!

Steve Jones
Steve Jones

I got this virus yesterday and spent much of the day trying to get rid of it based on other guidance I found online. I'd even found and tried Malwarebytes. But I made the mistake of coming up in Safe mode but without networking. I figured I was OK because I knew I had the latest version, not thinking about the database being continually updated. I was about ready to wipe my disk today when I found your new post. Worked like a charm! It was hard to believe I was going to get it back. Thanks!

Ken
Ken

Worked great.. Thanks!!!

Alex
Alex

I followed your directions step by step after receiving the Security Suite Virus then rebooted and it was good as new … This would help a lot of people …Thank you so much for posting!!!!!!

Jim K
Jim K

Okay – thanks. I have tried this (the rapid click F8 was key for me). When I install/update the Anti-Malware I get this error
MBAM_ERROR_UPDATING(12007,0,WinHttpSendRequest). I ran the program (took an hour or so); some stuff seems to have been cleaned up, but the problem remained.

I was told to report the error. To whom? And more important to me, what do I do now?

Diego
Diego

Great info at the right price too!! Cannot thank you enough. That crazy virus just would not let me do anything by go to its site.

Greg
Greg

Thanks a TON. This worked out perfectly for me. This virus was driving me crazy! Another family member's computer got infected on the same day… any chance this was carried by a windows update? My internet activity has been limited to a hotmail and gmail account for at least a week before I noticed this.

Josh
Josh

I booted my computer into safe mode and followed all of these directions, are you supposed to do ALL of this in safe mode? Does it matter?

CKHillman
CKHillman

Thank you was able to get the viris removed and the compter back up and running.

mark r
mark r

Thank you so much! I thought I was screwed. This worked. I had to find different copies of the software as i am running 64-bit windows 7.

Ashe Hollaway

Thanks for posting this. My laptop was infected by the virus and this cleared it up quickly.

Joanie
Joanie

The Malwarebytes wanted me to register the product with a license key, which I did not have, so after 3 hrs and 12 minutes, I'm stuck.

Ron
Ron

Press F8 a bunch of times as fast as you can. Then, select the one you need.

Brad
Brad

Tried this and still can not get rid of it.

Dtown
Dtown

Thank you sir. You have restored my faith in the fact that there are still good people in this world.

Yin
Yin

I was not able to boot to safe mode on my laptop to perform this clean up procedure. Is there a way to by pass the boot to safe mode bit and clean it up within windows XP SP3?

Jayesh Patel

I had this virus yesterday! What a pain! No sure how I got it.
It did not let me do anything. I could not open any program including anti-virus!!

So I rebooted the computer in the Safe mode and from Accessories > Systems tools > Recovery, I recovered to a week old snapshot. This seemed to fix my issue and my computer worked fine then after. Am I really good or should I follow your steps above?

Thanks for putting this info online

luke
luke

This worked wonderfully! Thanks for the help. I was dreading the thought of a full re-install.

Scott
Scott

Does this work on Windows 7? I still have problems after doing all this.

Marc
Marc

Thanks so much – this worked perfectly

Jeff
Jeff

Thanks for posting this!! It worked perfectly!!

Samsung Epic 4G: Reserve for in-store pickup

Borderlands: Claptrap’s New Robot Revolution DLC Info