smart fortress incident. the initial issue extremely slow system performance

11
Smart Fortress Incident

Upload: belinda-harrington

Post on 29-Dec-2015

221 views

Category:

Documents


6 download

TRANSCRIPT

Page 1: Smart Fortress Incident. The Initial Issue EXTREMELY slow system performance

Smart Fortress Incident

Page 2: Smart Fortress Incident. The Initial Issue EXTREMELY slow system performance

The Initial Issue

EXTREMELY slow system performance

Page 3: Smart Fortress Incident. The Initial Issue EXTREMELY slow system performance

• Running Windows XP Professional Version 2002

• Due to old, poorly

managed system…? Or something worse…?

Page 4: Smart Fortress Incident. The Initial Issue EXTREMELY slow system performance

The Real Problem

Security Monitor: WARNING! Attention! System detected a potential hazard (TrojanSPM/LX) on your computer that may

infect executable files. Your private information and PC safety is at risk.

To get rid of unwanted spyware and keep your computer safe you need to update your current

security software. Click Yes to download official intrusion detection

system (IDS software).

Page 5: Smart Fortress Incident. The Initial Issue EXTREMELY slow system performance

Smart Fortress 2012

Page 6: Smart Fortress Incident. The Initial Issue EXTREMELY slow system performance

Smart Fortress 2012 Info

• Type: Spyware • Analysis: Installs & gathers info

from a PC without user permission• Cause of Infection: By

downloading freeware & shareware • Common Symptoms: Alters PC

settings, excessive pop-ups, degraded PC performance

Page 7: Smart Fortress Incident. The Initial Issue EXTREMELY slow system performance

What’s the Big Deal?

• Smart Fortress 2012 appears as a simple annoyance

• However, simply “removing” the program WILL NOT WORK

• Gets worse as it remains on the system

• Eventually DENIES ALL ACCESSWarning! Application cannot be executed. The file <appname> is infected. Please activate your antivirus software.

Page 8: Smart Fortress Incident. The Initial Issue EXTREMELY slow system performance
Page 9: Smart Fortress Incident. The Initial Issue EXTREMELY slow system performance

http://trojan-killer.net/absolutely-approach-smart-fortress-virus-removal/

Trojan Killer

Page 10: Smart Fortress Incident. The Initial Issue EXTREMELY slow system performance

Utilizing Malwarebytes

Page 11: Smart Fortress Incident. The Initial Issue EXTREMELY slow system performance

Issues Faced & Lessons Learned

• Essentially no response from company employees– Nonchalant attitude– No IT dept/person whatsoever

• Lack of acknowledgement/understanding of importance of computer & network security

• Disregard to consequences of ignoring security issues & vulnerabilities

• Took a receptionist to realize there was a problem………