Overclock.net - Overclocking.net
     
 
Home Gallery Reviews Blogs Register Today's Posts Mark Forums Read Members List


Go Back   Overclock.net - Overclocking.net > Software, Programming and Coding > Operating Systems > Windows

Reply
 
LinkBack Thread Tools
Old 11-27-07   #1 (permalink)
Unleash The Fooking Fury
 
mhsbrian's Avatar
 
intel nvidia

Join Date: Sep 2007
Location: Alabama
Posts: 918
Blog Entries: 1

Rep: 58 mhsbrian is acknowledged by some
Unique Rep: 49
Folding Team Rank: 1762
Hardware Reviews: 2
Trader Rating: 1
Default How to remove spyware & viruses without failure

UPDATED GUIDE July 18, 2008!


Removed ad-aware 2007 because the trial version is crap now and replaced links with updated versions of the newest software. Much luck guys


This is a Windows XP Guide
Spyware & Virus Removal Guide.
Has your machine been running rather slow lately ? A few popups maybe ? You could be a victim of Mal-ware, Spyware, Hijacking, or even viruses. Most people believe that having virus protection protects them from everything when it does not.


The Painful Truth

The truth is nothing is 100% at removing Viruses, Spyware, etc. In this tutorial I will have many applications listed with available download links that I use on work machines and my personal machines. The steps I go through 99.98% of the time cleans a machine completely.

Step 1

Restart your computer, upon the boot screen type F8 simultaneously until you have a black screen with many options. It should look like this or similar.
Safe Mode Screen Shot
After you have gotten to this screen choose safe mode with networking.
Once you are at the Windows login screen, choose Administrator as the user to log on as. Windows will prompt you with a box that has a yes and no option, choose yes.

Step 2

Okay, now that your successfully logged in as the administrator of your computer you can now proceed. Click Start->Run->in the run box, type "%temp%" without the quotations. Once the window open you will see many junk files that you will not recognize. Delete all these files, in some cases windows will not allow you to delete certain files, do not worry; this is normal. None of these files are important and the machine does not depend on any of them. This is deleting possible virus or spyware files that you may have gotten via html encoding or other web based applets such as java or flash.

Now that you have cleared up your temp files. While still having the temp folder open navigate to the tools menu option at the top of the windows explorer bar. Choose Tools-> Folder Options, once the box is open, click the view tab. Navigate into the inside box with the options listed for selection with check marks. Look for the option "Hidden Files and Folders". Once you have located it, check the option "Show hidden files". After doing so apply the settings and click ok and close it out.

Open My computer, navigate to your Hard drive with your windows installation that your currently trying to clean up. Now navigate My Computer->Local Disk C:-> Documents and Settings->"The User account that you log onto"[Take note this part of the tutorial will have to be done to every user account]->Local Settings->Temporary Internet Files. Delete everything in these folders/folder. These are garbage files that windows is not dependent on. Once deleted close the window, proceed to the next step.

Step 3
After removing all the files that will slow down the scanning processes of the applications we will now run some of the best bits of software I've ever came across.

To install AVG you must be in booted in normal mode, once you have have installed AVG and update it in normal mode restart and boot back into safe mode with networking.
Run these Applications in the order I have them listed!!!

AVGAnti-Virus

AVG Anti-Virus Free Edition Download

I use AVG on my machine and my work machines and it always seems to out due all other forms of virus protection that I've used.
Once you have the machine booted under Administrator open AVG and then update it. Once it is completely up to date click "Scan My Computer".

Once AVG finishes scanning if it found viruses it should have removed them or sent them to the vault. Every now and then AVG can't remove viruses, if this happens you will have to do it manually. Make sure to take note of the virus location and the EXACT name of the virus it listed and the file name.

Only do this step if AVG could not remove a file/files in the virus scan. If AVG successfully removed all threats, then skip the kill box section of this tutorial .

Kill Box


This program is dedicated to removing files that can absolutely not be removed by normal applications or manual deletion. After you have downloaded kill box run it and search for the file that AVG anti-virus could not remove. If you took note of the exact file location that AVG gave you you can simply copy and paste or retype that link in the kill box browser. Once you have kill box linked to the file choose the option "Replace on Reboot" Then select the below options "Use Dummy". After you have selected the options click the Red button with the white X next to the browser bar to start the process. Don't forget to back into safe mode with networking after the reboot.

After your back under the administrator account in safe mode open kill box again and find the file you replaced with a dummy and and choose to delete it this time and go delete it.


Install the program, follow the easy steps when installing. Once installed make sure the program is up to date and then Hit "Scan My Pc". After clicking that, check to the right in the options and choose "Perform a Full System Scan", do not let it perform the quick scan.

Once it has finished scanning it will prompt you with the infections it found. Sometimes upon removing the infections it will prompt you for a restart, do it; then restart back into safe mode with networking afterwards.
I recommend uninstalling Super Anti-Spyware after you have cleaned the computer with it because it slows the PC at startup.


Smitfraud Fix


This DOS based application is somewhat a genius tool. It removes the nasty hijackers that literally take over your machine.

Once you download this file, place it on your desktop. Double click the Smitfraud.exe and wait while the DOS windows initializes then press any key to continue to the main menu of the application. It will extract a folder onto the desktop called "Smitfraud" during this process. Once you are at the main menu there are 5 options for hijack removal. First start off by updating the program by selection option number 4. Simply type "4" then click enter. After the program updates go in the order as the list goes. Search, Clean, Delete Trusted Zones.

After you have completed all 3 steps using this program restart your computer and yet again boot into Safe mode with networking.

If you have any problems running Smitfraud Fix here is a more detailed Guide.
Smitfraud Fix Guide

**Added 7/18/08**
SD FIX


SD Fix is a tool that works very similar to smitfraud fix. You must be in safe mode to use it and you must use it on every account on the computer(in the case of a imbeded spyware object in the taskbar/wallpaper etc.) the tool takes longer than the smitfraud fix but it is a great tool! You must unzip it to a location then open the "Runthis.cmd" Then press "Y" to start.



Spybot Search & Destroy


Spybot is simply one of the best adware and spyware removers out there. It removes and protects against many IE based spyware. The program is very simple to install. Simply download, run the install, go through the steps. I recommend choosing to uncheck the box for "Tea Timer" because it is a background based protection that is VERY annoying and I never use it.

When the program starts for the first time go threw the simple steps. Backup registry->Update->Immunize. After you have completed the steps Click the button "Check for problems". Spybot will take a good while to scan the PC usually around 30-45 minutes depending on the speed of the machine.

Once spybot finished scanning the PC click "Fix Problems". Sometimes it will ask allow spybot to scan on system startup, click yes(it will scan the next time your computer boots in normal mode).

**Added 7/18/08**
WinSock Fix



In some cases hijackers attack your HOST file and connect you to IP's and domains that have malicious intent of attacking your system. This utility resets the HOSTS file back to its default format.** WARNING** IF YOU HAVE A VPN SETUP AND HAVE A CUSTOM HOSTS COMMAND LINE ADDED FOR THE SETUP YOU WILL LOSE IT!!!! AFTER RUNNING THIS UTILITY ON THE NEXT REBOOT YOU MUST RE-IMMUNIZE WITH SPYBOT SEARCH AND DESTROY!!!.
This utility requires a restart after its finished


Step 4


After completing all scans restart the computer and boot normally. After running all these scans, you may have missing icons, a missing wallpaper, and even missing programs you thought were legit programs but really they were forms of spyware. These bits of software people don't realize that get on their machine can be harmful and eat up memory and processes without a user knowing.

The last thing you can simply do to organize your computer is to run Windows Defrag after windows has been literally raped by scanners.


OCN Rulez,
Brian D.

System: Calypso
CPU
Intel Q6600 @ 3.6 Ghz
Motherboard
Gigabyte EP45-UD3P
Memory
6 Gigabytes Mixed Ballstix,Tracers 1:1 400MHZ
Graphics Card
XFX 9600 GT
Hard Drive
2x Seagate 320, 1x 400 WD in Raid 0
Sound Card
SB X-Fi mX Xtreme Gamer Fatality Pro Edition
Power Supply
Rosewill 600W
Case
Xclio Windtunnel
GPU cooling
Stock
OS
Windows Vista Ultimate x86
Monitor
ASUS MK241h 24"

Last edited by mhsbrian : 07-18-08 at 12:22 PM.
mhsbrian is online now I fold for Overclock.net Overclocked Account   Reply With Quote
Old 11-27-07   #2 (permalink)
*cough* Stock *cough*
 
StickyFingaz's Avatar
 
intel nvidia

Join Date: Nov 2007
Location: Miami, FL
Posts: 171

Rep: 2 StickyFingaz Unknown
Unique Rep: 2
Trader Rating: 0
Default

is there an easier way without downloading all those programs?
__________________
System: RinTinTin
CPU
Intel Pentium D 2.80GHz
Motherboard
DELL 0FJ030
Memory
2GB DDR2 at 533mhz
Graphics Card
Geforce 9600GT 512mb.
Hard Drive
250GB Sata 2
Sound Card
SigmalTel Audio
Power Supply
some dell 375W
Case
Dell xps 410
CPU cooling
stock
GPU cooling
stock
OS
Windows XP Media Center
Monitor
Dell E196FP 19''
StickyFingaz is offline   Reply With Quote
Old 11-27-07   #3 (permalink)
Unleash The Fooking Fury
 
mhsbrian's Avatar
 
intel nvidia

Join Date: Sep 2007
Location: Alabama
Posts: 918
Blog Entries: 1

Rep: 58 mhsbrian is acknowledged by some
Unique Rep: 49
Folding Team Rank: 1762
Hardware Reviews: 2
Trader Rating: 1
Default

Quote:
Originally Posted by StickyFingaz View Post
is there an easier way without downloading all those programs?
Using all these programs just narrows the chance down that the problem your having won't come back.

System: Calypso
CPU
Intel Q6600 @ 3.6 Ghz
Motherboard
Gigabyte EP45-UD3P
Memory
6 Gigabytes Mixed Ballstix,Tracers 1:1 400MHZ
Graphics Card
XFX 9600 GT
Hard Drive
2x Seagate 320, 1x 400 WD in Raid 0
Sound Card
SB X-Fi mX Xtreme Gamer Fatality Pro Edition
Power Supply
Rosewill 600W
Case
Xclio Windtunnel
GPU cooling
Stock
OS
Windows Vista Ultimate x86
Monitor
ASUS MK241h 24"
mhsbrian is online now I fold for Overclock.net Overclocked Account   Reply With Quote
Old 11-27-07   #4 (permalink)
First Time Build
 
Antolen's Avatar
 
amd nvidia

Join Date: May 2007
Location: Vancouver WA
Posts: 713

Rep: 36 Antolen is acknowledged by some
Unique Rep: 32
Trader Rating: 0
Default

bookmarked it! happens a lot to my friends! (i wonder why ) this will help instead of reinstalling the whole windows! +Rep
__________________
10,635 3Dmark06

System: AMD BEAST!
CPU
AMD Althon 64 X2 5600 3.01
Motherboard
Abit An-M2HD
Memory
OCZ DDR2 800 1GB*2
Graphics Card
8800GT
Hard Drive
250 GB ATA
Sound Card
Realtec HD
Power Supply
500W Antiec EarthWATS
Case
Antec 900
CPU cooling
Stock
GPU cooling
Stock
OS
XP
Monitor
Acer AL2002W
Antolen is offline   Reply With Quote
Old 07-16-08   #5 (permalink)
Mmm...cases.OM NOM NOMNOM
 
repo_man's Avatar
 
intel nvidia

Join Date: Dec 2007
Location: Alabama
Posts: 3,133

Folding Team Rank: 805
Hardware Reviews: 2
Trader Rating: 20
Default

Thread revival! Some new members can definitely use this!
__________________


Current Projects - Sanguineus Cinis Cineris Hinges for Syrillian's Silentium

Completed Build Log's Project: Phoenix Flip this Tower
My guides and How-to'sBondo Q & A Rivets!

System: Phoenix
CPU
E2160 OC 2.9gHz ;-)
Motherboard
MSI P6NGM-L
Memory
2GB DDR2 533
Graphics Card
XFX 7600GT
Hard Drive
300gb SATA Maxtor
Sound Card
onboard
Power Supply
Antec 80Plus 500w
CPU cooling
AC Freezer 7 Pro
GPU cooling
Stock single slot
OS
XP Home SP3

Overclock.net Mod of the Month
repo_man is offline I fold for Overclock.net Overclocked Account   Reply With Quote
Old 07-16-08   #6 (permalink)
nVidia Enthusiast
 
PizzaMan's Avatar
 
intel nvidia

Join Date: Nov 2007
Posts: 462

Rep: 39 PizzaMan is acknowledged by some
Unique Rep: 26
Trader Rating: 1
Default

Some other great apps. .

ATF Cleaner: cleans temp folders http://www.majorgeeks.com/ATF_Cleaner_d4949.html
Only cleans IE based browsers. Will have to do FireFox and Opera browsers manually.

MalwareBytes Anti-malware: http://www.majorgeeks.com/Malwarebyt...are_d5756.html



Prevention:

Comodo BOClean:
http://www.comodo.com/boclean/CBO_download.html

Spyware Blaster:
http://www.javacoolsoftware.com/spywareblaster.html
.
I also like AVG free. It's very good.

System: BlackKnight
CPU
E5200 @ 3.75Ghz 1.36v (so far)
Motherboard
EVGA 780i SLi
Memory
Balistick Tracer DDR2 800 (double-sided) 4x1GB
Graphics Card
PNY 9600GT SLi and XFX 8800 Ultra (physx/display)
Hard Drive
Seagate 250GB, 32MB cache, 7200RPM
Sound Card
onboard
Power Supply
Corsair TX650
Case
ANTEC|NINE HUNDRED
CPU cooling
ZEROTherm Nirvana lapped
GPU cooling
factory fan 100%
OS
Winodows XP MCE and Vista x86
Monitor
Synaps 15" LCD, 20" Compaq
PizzaMan is offline   Reply With Quote
Old 07-17-08   #7 (permalink)
Overclocker in Training
 
Phalanx1's Avatar
 
intel ati

Join Date: Mar 2008
Posts: 746

Rep: 41 Phalanx1 is acknowledged by some
Unique Rep: 35
Trader Rating: 0
Default

THanks! Bookmarked

System: Gets the Job Done
CPU
P4 3.0ghz
Motherboard
ASUS P4C800-E Deluxe
Memory
1 Gig
Graphics Card
Visiontek x1300
Hard Drive
Western Digital 250gb
Sound Card
Onboard
Case
Aspire X-Infinity
OS
XP-32
Monitor
19" Samsung
Phalanx1 is offline   Reply With Quote
Old 07-18-08   #8 (permalink)
Unleash The Fooking Fury
 
mhsbrian's Avatar
 
intel nvidia

Join Date: Sep 2007
Location: Alabama
Posts: 918
Blog Entries: 1

Rep: 58 mhsbrian is acknowledged by some
Unique Rep: 49
Folding Team Rank: 1762
Hardware Reviews: 2
Trader Rating: 1
Default

Updated Guide !

System: Calypso
CPU
Intel Q6600 @ 3.6 Ghz
Motherboard
Gigabyte EP45-UD3P
Memory
6 Gigabytes Mixed Ballstix,Tracers 1:1 400MHZ
Graphics Card
XFX 9600 GT
Hard Drive
2x Seagate 320, 1x 400 WD in Raid 0
Sound Card
SB X-Fi mX Xtreme Gamer Fatality Pro Edition
Power Supply
Rosewill 600W
Case
Xclio Windtunnel
GPU cooling
Stock
OS
Windows Vista Ultimate x86
Monitor
ASUS MK241h 24"
mhsbrian is online now I fold for Overclock.net Overclocked Account   Reply With Quote
Old 07-18-08   #9 (permalink)
You break it, I fix it
 
noobdown's Avatar
 
amd nvidia

Join Date: Sep 2006
Location: Overclock.net
Posts: 6,525

Rep: 625 noobdown is becoming famousnoobdown is becoming famousnoobdown is becoming famousnoobdown is becoming famousnoobdown is becoming famousnoobdown is becoming famous
Unique Rep: 432
Trader Rating: 2
Default

Quote:
Originally Posted by Antolen View Post
bookmarked it! happens a lot to my friends! (i wonder why ) this will help instead of reinstalling the whole windows! +Rep
probably quicker to reinstall windows

nice guide
__________________
"noobdown" just another OCN member helping noobs get up to speed
Official Cooler Master 690 Club
Quote:
Originally Posted by Syrillian View Post
Have a rest... sometimes it is the Human that needs the re-set.

System: Space Heater
CPU
8450
Motherboard
MA790GP-DS4H
Memory
g skills 1066 2x1
Graphics Card
9800gtx
Hard Drive
2x80 (raid 0) 250g
Power Supply
650
CPU cooling
s963
noobdown is offline Overclocked Account   Reply With Quote
Old 07-18-08   #10 (permalink)
Unleash The Fooking Fury
 
mhsbrian's Avatar
 
intel nvidia

Join Date: Sep 2007
Location: Alabama
Posts: 918
Blog Entries: 1

Rep: 58 mhsbrian is acknowledged by some
Unique Rep: 49
Folding Team Rank: 1762
Hardware Reviews: 2
Trader Rating: 1
Default

Quote:
Originally Posted by noobdown View Post
probably quicker to reinstall windows

nice guide
This is really a guide for people that don't want to or can't reinstall Windows.

I work with a lot of businesses and comptuer that contain special software and clients setup it cant be veryannoying formatting and reloading someones computer and having to re-setup all their software again.

If your like me and keep everything on a server in your home then yes, format and reload. :P

System: Calypso
CPU
Intel Q6600 @ 3.6 Ghz
Motherboard
Gigabyte EP45-UD3P
Memory
6 Gigabytes Mixed Ballstix,Tracers 1:1 400MHZ
Graphics Card
XFX 9600 GT
Hard Drive
2x Seagate 320, 1x 400 WD in Raid 0
Sound Card
SB X-Fi mX Xtreme Gamer Fatality Pro Edition
Power Supply
Rosewill 600W
Case
Xclio Windtunnel
GPU cooling
Stock
OS
Windows Vista Ultimate x86
Monitor
ASUS MK241h 24"
mhsbrian is online now I fold for Overclock.net Overclocked Account   Reply With Quote
Reply

Tags
how do i remove a virus?, virus removal



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools



All times are GMT -4. The time now is 02:39 AM.


Overclock.net is a Carbon Neutral Site Creative Commons License Internet Security By ControlScan

Terms of Service / Forum Rules | Privacy Policy | Advertising | Become an Official Vendor
Copyright © 2008 Shogun Interactive Development. Most rights reserved.
Page generated in 0.37879 seconds with 8 queries