Overclock.net - Overclocking.net
     
 
Home Gallery Reviews Blogs Register Today's Posts Mark Forums Read Members List


Go Back   Overclock.net - Overclocking.net > Software, Programming and Coding > Operating Systems > Windows

Reply
 
LinkBack Thread Tools
Old 11-27-07   #1 (permalink)
Windows Wrangler
 
mhsbrian's Avatar
 
intel nvidia

Join Date: Sep 2007
Location: Alabama
Posts: 1,143
Blog Entries: 1

Rep: 75 mhsbrian is acknowledged by some
Unique Rep: 63
Folding Team Rank: 2249
Hardware Reviews: 2
Trader Rating: 1
Default How to remove spyware & viruses without failure

UPDATED GUIDE October 15, 2009!


Removed ad-aware 2007 because the trial version is crap now and replaced links with updated versions of the newest software. Much luck guys


This is a Windows XP, and Vista 32bit Guide
Spyware & Virus Removal Guide.
Has your machine been running rather slow lately ? A few popups maybe ? You could be a victim of Mal-ware, Spyware, Hijacking, or even viruses. Most people believe that having virus protection protects them from everything when it does not.


The Painful Truth

The truth is nothing is 100% at removing Viruses, Spyware, etc. In this tutorial I will have many applications listed with available download links that I use on work machines and my personal machines. The steps I go through 99.98% of the time cleans a machine completely.


**GUIDE UPDATE**

This guide is a bit old I will completely redo it soon, the steps are a bit out of order so I will say now that if your computer can boot into safe mode the best thing to do first is run Combo fix FIRST!


Step 1

Restart your computer, upon the boot screen type F8 simultaneously until you have a black screen with many options. It should look like this or similar.
Safe Mode Screen Shot
After you have gotten to this screen choose safe mode with networking.
Once you are at the Windows login screen, choose Administrator as the user to log on as. Windows will prompt you with a box that has a yes and no option, choose yes.

Step 2

Okay, now that your successfully logged in as the administrator of your computer you can now proceed. Click Start->Run->in the run box, type "%temp%" without the quotations. Once the window open you will see many junk files that you will not recognize. Delete all these files, in some cases windows will not allow you to delete certain files, do not worry; this is normal. None of these files are important and the machine does not depend on any of them. This is deleting possible virus or spyware files that you may have gotten via html encoding or other web based applets such as java or flash.

Now that you have cleared up your temp files. While still having the temp folder open navigate to the tools menu option at the top of the windows explorer bar. Choose Tools-> Folder Options, once the box is open, click the view tab. Navigate into the inside box with the options listed for selection with check marks. Look for the option "Hidden Files and Folders". Once you have located it, check the option "Show hidden files". After doing so apply the settings and click ok and close it out.

Open My computer, navigate to your Hard drive with your windows installation that your currently trying to clean up. Now navigate My Computer->Local Disk C:-> Documents and Settings->"The User account that you log onto"[Take note this part of the tutorial will have to be done to every user account]->Local Settings->Temporary Internet Files. Delete everything in these folders/folder. These are garbage files that windows is not dependent on. Once deleted close the window, proceed to the next step.

Step 3
After removing all the files that will slow down the scanning processes of the applications we will now run some of the best bits of software I've ever came across.

To install AVG you must be in booted in normal mode, once you have have installed AVG and update it in normal mode restart and boot back into safe mode with networking.
Run these Applications in the order I have them listed!!!

A-squared Anti-Malware

A-Squared Anti-Malware Download

A-squared is simply freaking amazing. Just make an account with an email and you have a 30 day free trial to use their product and it's really fantastic, I absolutely recommend it!

Only do this step if AVG could not remove a file/files in the virus scan. If AVG successfully removed all threats, then skip the kill box section of this tutorial .

Kill Box


This program is dedicated to removing files that can absolutely not be removed by normal applications or manual deletion. After you have downloaded kill box run it and search for the file that AVG anti-virus could not remove. If you took note of the exact file location that AVG gave you you can simply copy and paste or retype that link in the kill box browser. Once you have kill box linked to the file choose the option "Replace on Reboot" Then select the below options "Use Dummy". After you have selected the options click the Red button with the white X next to the browser bar to start the process. Don't forget to back into safe mode with networking after the reboot.

After your back under the administrator account in safe mode open kill box again and find the file you replaced with a dummy and and choose to delete it this time and go delete it.


Install the program, follow the easy steps when installing. Once installed make sure the program is up to date and then Hit "Scan My Pc". After clicking that, check to the right in the options and choose "Perform a Full System Scan", do not let it perform the quick scan.

Once it has finished scanning it will prompt you with the infections it found. Sometimes upon removing the infections it will prompt you for a restart, do it; then restart back into safe mode with networking afterwards.
I recommend uninstalling Super Anti-Spyware after you have cleaned the computer with it because it slows the PC at startup.


Smitfraud Fix


This DOS based application is somewhat a genius tool. It removes the nasty hijackers that literally take over your machine.

Once you download this file, place it on your desktop. Double click the Smitfraud.exe and wait while the DOS windows initializes then press any key to continue to the main menu of the application. It will extract a folder onto the desktop called "Smitfraud" during this process. Once you are at the main menu there are 5 options for hijack removal. First start off by updating the program by selection option number 4. Simply type "4" then click enter. After the program updates go in the order as the list goes. Search, Clean, Delete Trusted Zones.

After you have completed all 3 steps using this program restart your computer and yet again boot into Safe mode with networking.

If you have any problems running Smitfraud Fix here is a more detailed Guide.
Smitfraud Fix Guide

**Added 7/18/08**
SD FIX


SD Fix is a tool that works very similar to smitfraud fix. You must be in safe mode to use it and you must use it on every account on the computer(in the case of a imbeded spyware object in the taskbar/wallpaper etc.) the tool takes longer than the smitfraud fix but it is a great tool! You must unzip it to a location then open the "Runthis.cmd" Then press "Y" to start.



Combo Fix!


Very similar to SD Fix, seems to really tackle things that attack very imporant Windows files such as dll's and such. Download and run in safe mode, if it asks to update choose the yes option, then it will ask you to install the recovery console, you can choose either yes or no from then on let it run and it is automated.

**Added 7/18/08**
WinSock Fix



In some cases hijackers attack your HOST file and connect you to IP's and domains that have malicious intent of attacking your system. This utility resets the HOSTS file back to its default format.** WARNING** IF YOU HAVE A VPN SETUP AND HAVE A CUSTOM HOSTS COMMAND LINE ADDED FOR THE SETUP YOU WILL LOSE IT!!!! AFTER RUNNING THIS UTILITY ON THE NEXT REBOOT YOU MUST RE-IMMUNIZE WITH SPYBOT SEARCH AND DESTROY!!!.
This utility requires a restart after its finished


Step 4


After completing all scans restart the computer and boot normally. After running all these scans, you may have missing icons, a missing wallpaper, and even missing programs you thought were legit programs but really they were forms of spyware. These bits of software people don't realize that get on their machine can be harmful and eat up memory and processes without a user knowing.

The last thing you can simply do to organize your computer is to run Windows Defrag after windows has been literally raped by scanners.


OCN Rulez,
Brian D.
__________________
█▄ █▄█ █▄ ▀█▄
Remove Viruses & Spyware Without Failure FAQ!

System: Calypso
CPU
Intel Q6600 @ 3.6 Ghz
Motherboard
Gigabyte EP45-UD3P
Memory
6 Gigabytes Mixed Ballstix,Tracers 1:1 400MHZ
Graphics Card
XFX 9600 GT
Hard Drive
2x Seagate 320, 1x 400 WD in Raid 0
Sound Card
SB X-Fi mX Xtreme Gamer Fatality Pro Edition
Power Supply
Rosewill 600W
Case
Xclio Windtunnel
CPU cooling
Xigmatech HDT
GPU cooling
Stock
OS
Windows Vista Ultimate x86
Monitor
ASUS MK241h 24"

Last edited by mhsbrian : 3 Weeks Ago at 11:13 PM
mhsbrian is offline I fold for Overclock.net   Reply With Quote
Old 11-27-07   #2 (permalink)
*cough* Stock *cough*
 
StickyFingaz's Avatar
 
intel nvidia

Join Date: Nov 2007
Location: Miami, FL
Posts: 190

Rep: 3 StickyFingaz Unknown
Unique Rep: 3
Trader Rating: 0
Default

is there an easier way without downloading all those programs?
__________________
System: RinTinTin
CPU
Intel Pentium D 2.80GHz
Motherboard
DELL 0FJ030
Memory
2GB DDR2 at 533mhz
Graphics Card
Geforce 9600GT 512mb.
Hard Drive
250GB Sata 2
Sound Card
SigmalTel Audio
Power Supply
some dell 375W
Case
Dell xps 410
CPU cooling
stock
GPU cooling
stock
OS
Windows XP Media Center
Monitor
Dell E196FP 19''
StickyFingaz is offline   Reply With Quote
Old 11-27-07   #3 (permalink)
Windows Wrangler
 
mhsbrian's Avatar
 
intel nvidia

Join Date: Sep 2007
Location: Alabama
Posts: 1,143
Blog Entries: 1

Rep: 75 mhsbrian is acknowledged by some
Unique Rep: 63
Folding Team Rank: 2249
Hardware Reviews: 2
Trader Rating: 1
Default

Quote:
Originally Posted by StickyFingaz View Post
is there an easier way without downloading all those programs?
Using all these programs just narrows the chance down that the problem your having won't come back.
__________________
█▄ █▄█ █▄ ▀█▄
Remove Viruses & Spyware Without Failure FAQ!

System: Calypso
CPU
Intel Q6600 @ 3.6 Ghz
Motherboard
Gigabyte EP45-UD3P
Memory
6 Gigabytes Mixed Ballstix,Tracers 1:1 400MHZ
Graphics Card
XFX 9600 GT
Hard Drive
2x Seagate 320, 1x 400 WD in Raid 0
Sound Card
SB X-Fi mX Xtreme Gamer Fatality Pro Edition
Power Supply
Rosewill 600W
Case
Xclio Windtunnel
CPU cooling
Xigmatech HDT
GPU cooling
Stock
OS
Windows Vista Ultimate x86
Monitor
ASUS MK241h 24"
mhsbrian is offline I fold for Overclock.net   Reply With Quote
Old 11-27-07   #4 (permalink)
First Time Build
 
Antolen's Avatar
 
intel nvidia

Join Date: May 2007
Location: Oregon
Posts: 893

Rep: 45 Antolen is acknowledged by some
Unique Rep: 40
Trader Rating: 0
Default

bookmarked it! happens a lot to my friends! (i wonder why ) this will help instead of reinstalling the whole windows! +Rep
__________________
iPhone Club

17360 3Dmark06

P12530 3Dmark Vantage

Xbox Gamertag BOMBngurVillage

System: Intel Core 2 Pwnage
CPU
Q6600 G0 3.4
Motherboard
EVGA 780i A1
Memory
OCZ DDR2 800 2gb*2
Graphics Card
EVGA 260 c216 SC
Hard Drive
1TB WD + 120GB IDE+ 250GB External
Sound Card
Realtec HD
Power Supply
500W Antiec EarthWATS
Case
Antec 900
CPU cooling
ZALMAN 9700 NV
GPU cooling
Stock
OS
Windows x64 Bit
Monitor
Sceptre 24" 1920*1200
Antolen is offline   Reply With Quote
Old 07-16-08   #5 (permalink)
^:cool:^
 
repo_man's Avatar
 
intel nvidia

Join Date: Dec 2007
Location: Alabama
Posts: 6,731

Folding Team Rank: 111
Hardware Reviews: 2
Trader Rating: 33
Default

Thread revival! Some new members can definitely use this!
__________________

Case Mod Comp '09 Intermediate Winner:
Chlokwork Orange - FOR SALE


Current Projects --Sanguineus Cinis Cineris
Completed Build Log's -- Hinges for Syrillian's Silentium // Project: Phoenix // Flip this Tower

System: Clockwork Orange
CPU
e6750,lapped @ 3.8ghz (475x8)
Motherboard
Gigabyte EP45-UD3R
Memory
2x 2GB G.Skill-1066mhz
Graphics Card
XFX 260-216 Core Edition - 24/7 folder
Hard Drive
300gb SATA Maxtor
Sound Card
onboard
Power Supply
Corsair TX750w
Case
Antec 300 + cable management
CPU cooling
Xiggy S1283 Lapped+bolt kit/Extreme Spirit 2 on NB
GPU cooling
Accelero Xtreme GTX 280
OS
Windows 7
Monitor
19" Samsung 932bw
Overclock.net - 2009 Chimp Challenge Champions 1 Million+ Folding at Home points Overclock.net Mod of the Month
repo_man is offline I fold for Overclock.net Overclocked Account   Reply With Quote
Old 07-16-08   #6 (permalink)
dough slinger
 
PizzaMan's Avatar
 
intel nvidia

Join Date: Nov 2007
Location: GA
Posts: 2,772

Rep: 271 PizzaMan is a proven memberPizzaMan is a proven memberPizzaMan is a proven member
Unique Rep: 155
Folding Team Rank: 187
Trader Rating: 10
Default

Some other great apps. .

ATF Cleaner: cleans temp folders http://www.majorgeeks.com/ATF_Cleaner_d4949.html
Only cleans IE based browsers. Will have to do FireFox and Opera browsers manually.

MalwareBytes Anti-malware: http://www.majorgeeks.com/Malwarebyt...are_d5756.html



Prevention:

Comodo BOClean:
http://www.comodo.com/boclean/CBO_download.html

Spyware Blaster:
http://www.javacoolsoftware.com/spywareblaster.html
.
I also like AVG free. It's very good.
__________________




System: Split Open and Melt
CPU
Q6600 3.6Ghz 1.47v 1800QDR
Motherboard
EVGA 780i SLi
Memory
2x1GB OCZ Plats
Graphics Card
9600GT SLi 900/2150/1000
Hard Drive
Seagate 250GB, 32MB cache, 7200RPM
Sound Card
onboard
Power Supply
Corsair TX650
Case
ANTEC|NINE HUNDRED
CPU cooling
ZEROTherm Nirvana
GPU cooling
Switech MCW60/Maze 4
Monitor
Synaps 15" LCD, 20" Compaq
Overclock.net - 2009 Chimp Challenge Champions 1 Million+ Folding at Home points
PizzaMan is offline I fold for Overclock.net Overclocked Account   Reply With Quote
Old 07-17-08   #7 (permalink)
Overclocker in Training
 
Phalanx1's Avatar
 
intel ati

Join Date: Mar 2008
Posts: 923

Rep: 49 Phalanx1 is acknowledged by some
Unique Rep: 42
Trader Rating: 0
Default

THanks! Bookmarked

System: Gets the Job Done
CPU
P4 3.0ghz
Motherboard
ASUS P4C800-E Deluxe
Memory
1 Gig
Graphics Card
Visiontek x1300
Hard Drive
Western Digital 250gb
Sound Card
Onboard
Case
Aspire X-Infinity
OS
XP-32
Monitor
19" Samsung
Phalanx1 is offline   Reply With Quote
Old 07-18-08   #8 (permalink)
Windows Wrangler
 
mhsbrian's Avatar
 
intel nvidia

Join Date: Sep 2007
Location: Alabama
Posts: 1,143
Blog Entries: 1

Rep: 75 mhsbrian is acknowledged by some
Unique Rep: 63
Folding Team Rank: 2249
Hardware Reviews: 2
Trader Rating: 1
Default

Updated Guide !
__________________
█▄ █▄█ █▄ ▀█▄
Remove Viruses & Spyware Without Failure FAQ!

System: Calypso
CPU
Intel Q6600 @ 3.6 Ghz
Motherboard
Gigabyte EP45-UD3P
Memory
6 Gigabytes Mixed Ballstix,Tracers 1:1 400MHZ
Graphics Card
XFX 9600 GT
Hard Drive
2x Seagate 320, 1x 400 WD in Raid 0
Sound Card
SB X-Fi mX Xtreme Gamer Fatality Pro Edition
Power Supply
Rosewill 600W
Case
Xclio Windtunnel
CPU cooling
Xigmatech HDT
GPU cooling
Stock
OS
Windows Vista Ultimate x86
Monitor
ASUS MK241h 24"
mhsbrian is offline I fold for Overclock.net   Reply With Quote
Old 07-18-08   #9 (permalink)
You break it, I fix it.
 
noobdown's Avatar
 
amd ati

Join Date: Sep 2006
Location: Overclock.net
Posts: 7,989

Rep: 777 noobdown is becoming famousnoobdown is becoming famousnoobdown is becoming famousnoobdown is becoming famousnoobdown is becoming famousnoobdown is becoming famousnoobdown is becoming famous
Unique Rep: 524
Trader Rating: 3
Default

Quote:
Originally Posted by Antolen View Post
bookmarked it! happens a lot to my friends! (i wonder why ) this will help instead of reinstalling the whole windows! +Rep
probably quicker to reinstall windows

nice guide
__________________
ATi 4830 Club


Official Cooler Master 690 Club
Quote:
Originally Posted by Syrillian View Post
Have a rest... sometimes it is the Human that needs the re-set.


System: my sig was stolen.
CPU
p2
Motherboard
dell
Memory
215m 133
Graphics Card
ati rage
Hard Drive
10g
Power Supply
250w dell
noobdown is offline Overclocked Account   Reply With Quote
Old 07-18-08   #10 (permalink)
Windows Wrangler
 
mhsbrian's Avatar
 
intel nvidia

Join Date: Sep 2007
Location: Alabama
Posts: 1,143
Blog Entries: 1

Rep: 75 mhsbrian is acknowledged by some
Unique Rep: 63
Folding Team Rank: 2249
Hardware Reviews: 2
Trader Rating: 1
Default

Quote:
Originally Posted by noobdown View Post
probably quicker to reinstall windows

nice guide
This is really a guide for people that don't want to or can't reinstall Windows.

I work with a lot of businesses and comptuer that contain special software and clients setup it cant be veryannoying formatting and reloading someones computer and having to re-setup all their software again.

If your like me and keep everything on a server in your home then yes, format and reload. :P
__________________
█▄ █▄█ █▄ ▀█▄
Remove Viruses & Spyware Without Failure FAQ!

System: Calypso
CPU
Intel Q6600 @ 3.6 Ghz
Motherboard
Gigabyte EP45-UD3P
Memory
6 Gigabytes Mixed Ballstix,Tracers 1:1 400MHZ
Graphics Card
XFX 9600 GT
Hard Drive
2x Seagate 320, 1x 400 WD in Raid 0
Sound Card
SB X-Fi mX Xtreme Gamer Fatality Pro Edition
Power Supply
Rosewill 600W
Case
Xclio Windtunnel
CPU cooling
Xigmatech HDT
GPU cooling
Stock
OS
Windows Vista Ultimate x86
Monitor
ASUS MK241h 24"
mhsbrian is offline I fold for Overclock.net   Reply With Quote
Reply

Tags
how do i remove a virus?, spyware, virus, virus removal


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools



All times are GMT -4. The time now is 06:00 AM.


Overclock.net is a Carbon Neutral Site Creative Commons License

Terms of Service / Forum Rules | Privacy Policy | DMCA Info | Advertising | Become an Official Vendor
Copyright © 2009 Shogun Interactive Development. Most rights reserved.
Page generated in 3.14643 seconds with 8 queries