smart fortress incident

11
Smart Fortress Incident

Upload: kendall

Post on 26-Feb-2016

60 views

Category:

Documents


0 download

DESCRIPTION

Smart Fortress Incident. The Initial Issue. EXTREMELY slow system performance. Running Windows XP Professional Version 2002 Due to old, poorly managed system…? Or something worse…?. The Real Problem. - PowerPoint PPT Presentation

TRANSCRIPT

Page 1: Smart Fortress Incident

Smart Fortress Incident

Page 2: Smart Fortress Incident

The Initial Issue

EXTREMELY slow system performance

Page 3: Smart Fortress Incident

• Running Windows XP Professional Version 2002

• Due to old, poorly

managed system…? Or something worse…?

Page 4: Smart Fortress Incident

The Real ProblemSecurity Monitor: WARNING!

Attention! System detected a potential hazard (TrojanSPM/LX) on your computer that may infect executable files. Your private information and PC

safety is at risk. To get rid of unwanted spyware and keep your

computer safe you need to update your current security software.

Click Yes to download official intrusion detection system (IDS software).

Page 5: Smart Fortress Incident

Smart Fortress 2012

Page 6: Smart Fortress Incident

Smart Fortress 2012 Info• Type: Spyware • Analysis: Installs & gathers info

from a PC without user permission• Cause of Infection: By

downloading freeware & shareware • Common Symptoms: Alters PC

settings, excessive pop-ups, degraded PC performance

Page 7: Smart Fortress Incident

What’s the Big Deal?• Smart Fortress 2012 appears as a

simple annoyance• However, simply “removing” the

program WILL NOT WORK• Gets worse as it remains on the

system• Eventually DENIES ALL ACCESS

Warning! Application cannot be executed. The file <appname> is infected. Please activate your antivirus software.

Page 8: Smart Fortress Incident
Page 9: Smart Fortress Incident

http://trojan-killer.net/absolutely-approach-smart-fortress-virus-removal/

Trojan Killer

Page 10: Smart Fortress Incident

Utilizing Malwarebytes

Page 11: Smart Fortress Incident

Issues Faced & Lessons Learned

• Essentially no response from company employees– Nonchalant attitude– No IT dept/person whatsoever

• Lack of acknowledgement/understanding of importance of computer & network security

• Disregard to consequences of ignoring security issues & vulnerabilities

• Took a receptionist to realize there was a problem………