ExTS Admin Starbuck Posted November 18, 2012 ExTS Admin Posted November 18, 2012 Hi Tom, everything seems ok Ok, let's clean up the programs we've used. Step 1 Restart MBAM. Click on the Quarantine tab If there are items in quarantine..... Make sure everything is selected and then click Delete All. Close MBAM. Step 2 Please uninstall ComboFix by Clicking on Start ...then run ... and type in combofix /uninstall (don't forget there's is a gap between x and /) Then press Ok http://img.photobucket.com/albums/v708/starbuck50/new/cfu.png This action will uninstall Combofix and also perform a few cleanup measures By default, Windows Vista does not have the "Run" command on the start menu. It's easy to get this back. 1. Open the start menu. 2. Right click on a non-icon area and select "Properties". 3. Press the "Customize" button. 4. Scroll down and find the "Run command" checkbox. 5. Check it and press OK. 6. Press OK. You now have your run command on the start menu. Step 3 Please double-click OTL.exe to run it. You should see a CleanUp! button, press that button, http://img.photobucket.com/albums/v708/starbuck50/cleanupbutton.png This will cleanup an assortment of tools used during malware removal, plus itself Note: MBAM will not be removed Step 3 Now you should set a New Restore Point to prevent possible reinfection from an old one. Some of the malware you picked up could have been saved in System Restore. Since System Restore is a protected directory, your tools can not access it to delete these bad files which sometimes can reinfect your system. Setting a new restore point AFTER cleaning your system will help prevent this and enable your computer to "roll-back" to a clean working state. Click on Start... Control Panel... System and Maintenance... System Click on System Protection in the left-hand task list. Uncheck the checkboxes next to each hard drive listed under the Create restore points automatically on the selected disks: section. When you uncheck a disk you will be presented with a screen. You should click on the Turn System Protection Off button. Click Apply and then OK. Reboot your computer. Now: Click on Start... Control Panel... System and Maintenance... System Click on System Protection in the left-hand task list. Put a checkmark in the checkboxes next to each hard drive listed under the Create restore points automatically on the selected disks: section. Click Apply and then OK. Your System restore will now be active again... starting with a new restore point. To find out how you may have been infected....read this topic: How did i get infected? Not all of the following information will be applicable to you, but it's still best to read it all. Now that you are clean, please follow these simple steps in order to keep your computer clean and secure: Use an AntiVirus Software Avira AntiVir ....installation guide Here Avast free MS Security Essentials ... see note* ...installation guide Here Note*: Upon installation MS Security Essentials will check that your OS is a legal copy. Only install one AntiVirus program [*]Update your AntiVirus Software regularly [*]Use a 3rd party Firewall Online Armor Free ZoneAlarm ...Important note below NOTE: If choosing Zone Alarm be aware that the free version also installs ZoneAlarm Spy Blocker. It is recommended however that you UNcheck this option. Only install one software Firewall Some 3rd party Firewalls will turn off the windows firewall when they are installed. It's always best to check that the Windows Firewall is turned off: How to turn off Windows Firewall: Start ... Control Panel ...click on 'Classic View'. now select Windows Firewall. When the Windows Firewall box opens, put a tick against .. Off (not recommended) and then click Ok [*]Scan regularly with a 'Stand Alone' Anti-Malware scanner: Installing another scanner that you can run once or twice a week is always beneficial. Something like: Malwarebytes Anti-Malware SUPERAntiSypware Remember to update these programs each time before running. You can install more than one of these if you only run them as stand alone programs. [*] Use an alternative browser: Some excellent alternatives to MS Internet Explorer are: Firefox For added security, add the NoScript extension to this browser: Allow active content to run only from sites you trust, and protect yourself against XSS and Clickjacking attacks also consider adding: WOT - Safe Browsing Tool Web of Trust warns you about risky sites that cheat customers, deliver malware or send spam. Millions of members of the WOT community rate sites based on their experience, giving you an extra layer of protection when browsing or searching the Web. Btw: you don't have to make a contribution. Opera They offer better security, more stability, and better speed. [*]Keep a backup of your registry Keeping a regular backup of your registry will help when something goes wrong. Use a program like: Erunt A full tutorial on how to set up and use Erunt can be found here: Erunt tutorial [*]Keep your system clean of temp files etc, using a 'Cleaner': Cleaners are programs that will help to clean out your: Windows temp files Current user temp files Cookies Temporary Internet flies Browser history Recycle bin Etc....... In other words.... all the rubbish that you accumalate over the course of your browsing and day to day usage of your pc. Programs like: TFC by OldTimer ATF Cleaner [*]Visit Microsoft's Windows Update Site Frequently - It is important that you visit http://www.windowsupdate.com regularly. [*]Update all your 'Security' programs regularly - Without regular updates you WILL NOT be protected when new malicious programs are released. Follow this list and your potential for being infected again will reduce dramatically. Glad I was able to help. Safe surfing. http://fc08.deviantart.net/fs71/f/2010/033/b/3/Computer_addict__by_Sinister_Starfeesh.gif Quote Member of:UNITE
tomiso Posted November 22, 2012 Author Posted November 22, 2012 Hi Starbuck follwed steps 1and2 Step3 I never used OTL.exe--- should I run it now then delete? Step3a I did use List Parts.exe ----presume I should delete now? At the moment I use Avast which updates itself and windows Defender firewall which is updated weekly on my windows update. Presumably the 3rd party firewalls suggested are an improvement on defender, do they update on a schedule or would i need to carry it out as a task. alternative browser:- only ever used internet explorer, I have chrome downloaded as a mistake but not yet deleted. will be using hotmail and gmail I assume WOT and OPERA are stand alone browsers which will operate my email, and both offer better security speed and stability ?? Thanks for the help, I'll get on with the reading on 'how infected' and Erunt and await your comments on the above Tom Quote
ExTS Admin Starbuck Posted November 22, 2012 ExTS Admin Posted November 22, 2012 Hi Tom, Step3 I never used OTL.exe--- should I run it now then delete? The speech i used is a generic one and i forgot to remove that part when i copied / pasted the speech. You can forget that step. Step3a I did use List Parts.exe ----presume I should delete now? Yes List Parts can be removed now. and windows Defender firewall which is updated weekly on my windows update. Presumably the 3rd party firewalls suggested are an improvement on defender, do they update on a schedule or would i need to carry it out as a task. Windows Defender and the Windows Firewall are 2 separate programs. Windows Defender is basically an anti malware program, so is updated regularly. The Windows Firewall isn't updated as such but you can add rules to block or allow sites yourself. Some 3rd party Firewalls receive the occasional update, but on the whole they use whitelists to block things. I assume WOT and OPERA are stand alone browsers which will operate my email, and both offer better security speed and stability ?? Wot is a browser addon and is compatible with IE, Firefox, Opera, Chrome and Safari. The WOT add-on shows you which websites you can trust for safe surfing, shopping and searching on the web. With the WOT add-on, you can see the website's reputation based on other users' experiences and carefully chosen trusted sources, such as phishing and spam blacklists. You can also rate websites yourself based on your own experiences. Opera is a browser though. Feels free to ask about anything you are unsure of. Quote Member of:UNITE
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.