Don't blame a program for not removing the infection. Most Malware infect areas of your computer that are hidden and do not allow the AV and AS programs access to them for a scan and removal.
This procedure will open all those areas and provides repair instructions if the removal damages any of the Winsock. You can use your AdAware SE or any other AV or AS program with this procedure.
Trojan Removal Procedure.
Malware is a general word for all form of Viruses, Spyware etc. This procedure works for all Malware. Replace the Ewido program with the appropriate program.
You might be unable to access the Internet after removing the Malware so you will need to run LSPfix or Winsockxpfix (as appropriate). Download one and save to desktop, run it later.
LSPfix: all Windows OS except 95.
http://www.cexx.org/lspfix.htm
Winsock XP Fix: Windows XP only.
http://www.spychecker.com/program/winsockxpfix.html
Download and Update Ewido (now called the AVG Antispyware):
http://www.ewido.net/en/download/
-- If you have problems updating see here:
http://www.ewido.net/en/download/updates/
Once the updates are installed do the following:
Let's get cleaning
Part 1
• Temporarily show hidden files.
For Windows XP:
1.
Click Start, and then click Control Panel.
2.
Click Appearance and Themes, and then click Folder Options.
3.
On the View tab, under Hidden files and folders, click "Show hidden files and folders", and clear(uncheck) the "Hide protected operating system files" check box.
For older systems:
1.
Double-click My Computer, click View, and then click Folder Options.
2.
On the View tab, under "Hidden files and folders", click "Show hidden files and folders", and clear (uncheck) the "Hide protected operating system files" check box.
IMPORTANT: Files are hidden by Windows for a very good reason. It is not wise to experiment with these files. Unfortunately, to successfully remove modern spyware we must turn this protection off temporarily. Please turn the protection back on when you have finished cleaning your system.
Empty your Internet Explorer cache and your other temporary file folders:
1.
On the Internet Explorer Tools menu, click Internet Options.
2.
On the General tab, in the Temporary Internet Files section, click the Delete Files button. This will delete all the files that are currently stored in your cache.
3.
Select the Delete all offline content check box in the confirmation dialogue box that appears, click OK.
4.
Click OK again.
Restart in Safe Mode:
To do this you need to hold down or repeatedly tap the F8 key while the computer is booting (when the computer is displaying a black screen with white text). When the boot menu appears, use your keyboard arrows to select "Safe Mode."
Safe Mode can look quite ugly. The color may look bad, and all of your desktop icons will be very large. This is normal.
Start Scan and let Ewido scan the PC
When the scan and removal are completed REBOOT COMPUTER. This will restart you in normal mode.
If you are unable to access the Internet after removing Malware you will need to run LSPfix or Winsockxpfix (as appropriate).
If you are using Windows XP Service Pack 2 (SP2) and are unable to access the Internet after removing Malware, there is a command that may fix the problem, removing the need to run Winsockxpfix. It works by resetting the winsock catalogue. Click on Start, then Run and type CMD in the dialogue box that appears. Click OK. Type "netsh winsock reset" (no quotes)into the DOS window that appears.
The last steps
If you are running Windows XP or Windows ME, and your computer has been successfully cleaned of Malware, there is one more thing that needs to be done.
Delete any old restore points and then create a new restore one. The old ones may, of course, be infected with the Malware and cannot be used.
First, start and then stop the Restore Service. This is done differently depending on what operating system you are running.
Windows XP:
1.
Click Start, and then click Control Panel.
2.
Click Performance and Maintenance, click System, and then click on the System Restore tab.
3.
Select the Turn Off System Restore check box, click Apply, then restart your computer.
4.
Return to the System Restore Tab and turn System Restore back on.
Windows ME:
1.
Click Start, click Control Panel, click System.
2.
Click Performance, click File System, and then click Troubleshooting.
3.
Enable the option Disable System Restore, click Apply then restart your computer.
4.
Return to the Troubleshooting tab and turn System Restore back on.
To set a manual restore point complete the following steps:
1.
Click the Start button.
2.
Point to Programs, then navigate to Accessories, then System Tools, then click System Restore.
3.
Choose Create a restore point, and then click Next.
4.
In the Restore point description box, type a name for your restore point, and then click Next.
5.
Click OK.
If the above program(s) didn't remove the infecion then it could be in the SmitFraud family of Trojans. These two sites have the programs and procedure to remove Smitfrauds.
http://www.internetinspiration.co.uk/roguefix.htm
http://siri.urz.free.fr/Fix/SmitfraudFix_En.php
2006-10-06 14:34:59
·
answer #1
·
answered by Anonymous
·
0⤊
0⤋
There is no bullet proof way but the best and cheapest way of doing it is to use Yahoo for your Front/Internet page and download the yahoo tool bar. You will find on that bar the way how to get most of these annoying things out of your machine.
Now, if you want to spend a couple of bucks, like about $70.00, get the Norton Internet security 2006 and install it in your machine after you have uninstall any and all other security programs you may have. Also, make sure that before you install any new programs, clean your system thoroughly. That is, delete your Internet temporary files, cookies, history and cache; then do a check disk and a de-fragmentation and then install your new program.
Nikolas S
2006-10-06 21:42:17
·
answer #2
·
answered by Nikolas S 6
·
0⤊
0⤋
Popup blockers will only stop web based popups. They can help somewhat, but if you are getting excessive popups, and popups even when you are offline, it means you have trojan downloaders on your machine that are calling out to deliver the pop up ads.
Try a full cleaning and dis-infection routine.
This is the one I use (it will take some time).
1. Scan for virus and remove (free online scan) with BitDefender
http://www.bitdefender.com/site/home/
2. Scan for trojans and remove (free online scan) with Ewido
http://www.ewido.net/en/
3. Scan for ad/spyware and remove (free download) with Spybot Search & Destroy
http://www.safer-networking.org/en/spybotsd/index.html
If you are using an older version of Windows (pre XP-SP2) you may also be getting "Messenger Service" popups which are caused by Microsoft leaving the almost never used Windows Messenger Service enabled by default. This was corrected in Windows XP- Service Pack 2.
Understand that the Windows Messenger Service is completely different from, and not in any way related to, "MSN Messenger", "Windows Live Messenger" "yahoo Messenger", or any other well-known instant messaging system. Therefore, disabling the Windows Messenger service will have no effect upon your use of any other instant messaging applications. They will continue to work without trouble.
To disable this service in older versions of Windows use the free, Shoot The Messenger from:
http://www.grc.com/stm/ShootTheMessenger.htm
Good luck.
2006-10-06 21:58:06
·
answer #3
·
answered by jibberjabar 5
·
0⤊
0⤋
Getting irrelevant pop ups on opening your browser is definitely a sign of Malware attack. And I can understand that the normal antiviruses are not able to delete all associated folders and files. The problem seems to be grave. I would suggest you contact an online malware removal service provider.
Their technicians are professionals and will surely be able to help you out. These people took me and so many of my friends out of such situations.
http://www.jupitersupport.com/services/virus-removal-service.html
2014-09-30 00:44:25
·
answer #4
·
answered by ? 2
·
0⤊
0⤋
Antiviral. (free)
AVG free. Excellent protection available from: http://www.Grisoft.com
Don't use two antiviral products together as they may be incompatible. If your Antiviral trial has run out, then remove product from your computer and get the AVG installed.
Anti-spyware (all free)
O.K. Some quick links to get you out of trouble
Essential products are: Adaware SE from: http://www.lavasoft.com
Spybot SD http://www.safer-networking.org/en/spybotsd/index.html
Spywareblaster http://www.javacoolsoftware.com/spywareblaster.html
Windows Defender - http://www.microsoft.com/athome/security/spyware/software/default.mspx
Spycatcher
http://www.tenebril.com/consumer/spyware/spycatcher-express.php
Ewido http://www.ewido.com
PC starter kit at download.com 20 of the best recommended programes for people new or less advanced in computers. Check all three pages, at bottom see Security/Tools/Fun
http://www.download.com/PC-Starter-Kit/2001-12350_4-0.html?tag=dir
Now for some informed reading, courtsey of 2-spyware Research centre.
Anti-Spyware contains the list of all known legitimate anti-spyware programs that can effectively detect and remove spyware, adware threats and other kinds of computer parasites from the system. Listed programs have been carefully tested by the 2-spyware.com research center and successfully passed our strict tests. This means that all of them can quite precisely recognize a particular pest, completely disable it by terminating its processes, deleting its essential files, registry entries and other related objects and eventually clean the infected system ensuring that no unsolicited programs will stay and attempt to violate your privacy and harm your computer.
All the products in Anti-Spyware category really work, do not deceive the user by producing false positives and cannot damage a compromised computer while eliminating found malware. However, it is important to know that not all of them are recommended for daily use. Each spyware remover in the list comes with a review describing its positive sides, drawbacks and impression it left. Such review also includes program screenshots, information about its price, implemented features, performance and general effectiveness. We rate tested programs by giving marks from 1 to 100. The higher mark a spyware remover gets the more effective it is. Please carefully read each review, pay attention to the rating mark a program got and read comments published by other visitors. This will help you to make a wise choice and compare your current anti-spyware program with other modern solutions on the market.
If you cannot find a particular spyware remover in anti-spyware category, take a look on the category of corrupt tools. It contains the list of rogue, fake, illegal, even harmful applications that definitely cannot correctly detect and remove various security and privacy threats and therefore must be avoided.
Additionally we provide the list of recommended anti-spyware software that got the highest marks and therefore is the most effective. From the personal experience we can tell that one spyware remover is not enough, different programs find different parasites. You need to do a wise choice.
Anti-spyware tools:
Total Anti-Spyware products in our DB: 71
Recommended Anti-Spyware products:
Spyware Doctor
(91/100) - real time protection; deep file scan; optimal (low) system requirements; complete system scan; highly configurable
Spy Sweeper
(89/100) - real time protection; trial version available; deep file scan; complete system scan; highly configurable
Spybot Search and Destroy
(84/100) - quick performance; real time protection; free to use; highly configurable
Windows Defender Beta 2
(75/100) - real time protection; free to use; deep file scan; complete system scan
For more information from this site http://www.2-spyware.com/anti-spyware
C Cleaner.http://www.ccleaner.com/
This will tell you a lot about what is on your computer, such as running programmes,cookies, History, settings etc. and will help you clean up and remove unwanted items. Be careful how you use it as it is a very powerful programme and you should read the help index before you do anything with it.
Hope this information is of help to you and others.
2006-10-06 21:25:22
·
answer #5
·
answered by Mordak 5
·
1⤊
0⤋
Also try Ewido, Spybot and AVG
http://www.cybertopcops.com/free-downloads.php
If you continue to have problems after scanning your PC with them follow the instructions on this page:
http://www.cybertopcops.com/malicious-software-removal.php
2006-10-07 07:43:44
·
answer #6
·
answered by cppgenius 4
·
0⤊
0⤋
Try system restore: start control panel, performance mainenance, click and left side.
2006-10-06 21:32:45
·
answer #7
·
answered by !{¤©¤}! 4
·
0⤊
0⤋
Ad-Aware is good and highly recommended, but sine you have tried that try AVG Anti virus. Spybot - Search & Destroy is also good.
2006-10-06 21:25:04
·
answer #8
·
answered by Anonymous
·
0⤊
1⤋
The best method is to reformatt everything. It will be back to original state..
2006-10-07 06:41:38
·
answer #9
·
answered by Hijacker_Man_in_Mid 2
·
0⤊
0⤋
get a virus scan
2006-10-06 21:26:20
·
answer #10
·
answered by govtagent_2001 4
·
0⤊
0⤋