Vitriol: isecurity.exe #virus #malware

Okay, so I was just tooling around the Internet, not really clicking on anything, when this crazy isecurity.exe thing popped up.

Kaspersky flashed red a couple of times, then shut itself down, as did Peerblock. That’s when that isecurity tried to tell me that I had all kinds of viruses, malware, my files were being deleted, etc, etc.

It is a trick. This thing is just some spammer tool’s idea of an advertisement to buy their crappy ass product. Unfortunately, it installs itself in your appdata and won’t let you access any .exe files or your task manager (it tells you that there’s blasterworm.)

I freaked out for like 5 seconds–just frozen horror–then immediately switched off my WiFi. I restored my computer to an earlier restore point, and now it’s gone.

BTW, I personally had to hard shut down my laptop and let it come back up in Safe Mode. I’d already found the isecurity.exe crap, ran a search and found where it was, but since it was running it wouldn’t let me delete it or shut it down. But once I knew where it was located, I could come back in Safe Mode and find and delete it. Then I hit system restore and it was only afterward that I found out what exactly had hit me. Until then though, I was in a full-on panic and I really thought I was screwed. Like, for reals, man.

Whoever made this thing should be taken out, castrated, made to drink their own blood, then shot in the head. (Yeah, I know that’s pretty fiery talk, but my heart is still fluttering from the drop in adrenaline.)

My best advice: Keep your restore points fresh. Don’t buy anything from some weird program popping up. And if you’re one of the jerks making this stuff, stay the hell away from me because I’m VERY vindictive.

Helpful isecurity.exe removal link==>  HERE <== Deets on how to get this thing gone if you’re past the point of using a system restore.

7 Comments on "Vitriol: isecurity.exe #virus #malware"


  1. Goddamnit I just fucking had this, I went to safe mode and deleted that shit and cleaned the registry. Whoever wrote this should get tortured in hell..

    Reply

  2. Thanks for putting this up – i had to reboot in safe mode and run ccleaner and malwarebytes.

    I concur with your proposed treatment of the perpetrators and offer to assist with all the fury that i can muster up.

    Reply

  3. My solution-
    No need to go in safe mode!
    Just rename the isecurity.exe file to isecurity.txt and relogin, now find that file and delete it!!!!!! It doesnt bother u anymore……
    SImplllleeeeee!!!

    Reply

  4. i my case, it rewrote my hosts files in our terminal server. after I delete isecurity.exe, I have to restore hosts file.

    Reply

  5. The redirect for isecurity.net, which I just took off my girlfriends computer is to lesearch.net –pisses me off to no end. So, I did some digging. I called the number below and left a nice message, sharing my feelings, maybe you should too:

    Visit AboutUs.org for more information about LESEARCH.NET
    AboutUs: LESEARCH.NET

    Registrant: Make this info private
    Leading Edge Search Group
    PO Box 36
    Monhton, PA 19540-0036
    US

    Domain Name: LESEARCH.NET

    Promote your business to millions of viewers for only $1.25 a month!
    Learn how you can get an Enhanced Business Listing here for your domain name. Learn More

    Administrative Contact , Technical Contact :
    Leading Edge Search Group
    dltms@aol.com
    PO Box 36
    Monhton, PA 19540-0036
    US
    Phone: 610-781-7832

    Record expires on 02-Feb-2014
    Record created on 02-Feb-2009
    Database last updated on 09-Feb-2012

    Domain servers in listed order: Manage DNS

    Reply

  6. Just get the Startup Controller applet for Windows XP written by Mike Lin. It can be found at
    Snapfiles-dot-com-slash-freeware in the internet security category.
    Once installed, if you get such a virus it will have put itself into your startup list, so goto
    Control Panel, run the Startup Controller, find the listing it added and delete it.
    Then just re-boot your computer, no more problem………

    Reply

  7. …..almost forgot !!! If you DO get this Turd in the punch bowl, and manage to disable it,
    DON’T DELETE IT JUST YET !!!

    First, righ-click it, and “open with” NOTEPAD.
    Then, use “search” for “HTTP” , or “.com” , or “.net” , or “.org”

    Sometimes it will find the name of whatever web site it reports to. Then YOU can REPORT THEM !!!
    Some Viruses I’ve found this way were actually written by someone dumb enough to SIGN HIS NAME in the remarks of the coding………BANG, YOU MOTHER !!!

    Reply

Leave a Reply


Patreon: HarperKingsley