Jump to content

Recommended Posts

  • ExTS Admin
Posted

Hi Tom,

 

everything seems ok

Ok, let's clean up the programs we've used.

 

Step 1

Restart MBAM.

Click on the Quarantine tab

If there are items in quarantine.....

Make sure everything is selected and then click Delete All.

Close MBAM.

 

 

 

Step 2

Please uninstall ComboFix by

Clicking on Start ...then run ... and type in combofix /uninstall (don't forget there's is a gap between x and /) Then press Ok

http://img.photobucket.com/albums/v708/starbuck50/new/cfu.png

 

This action will uninstall Combofix and also perform a few cleanup measures

 

By default, Windows Vista does not have the "Run" command on the start menu. It's easy to get this back.

 

1. Open the start menu.

2. Right click on a non-icon area and select "Properties".

3. Press the "Customize" button.

4. Scroll down and find the "Run command" checkbox.

5. Check it and press OK.

6. Press OK.

 

You now have your run command on the start menu.

 

Step 3

  • Please double-click OTL.exe to run it.
  • You should see a CleanUp! button, press that button,
     
    http://img.photobucket.com/albums/v708/starbuck50/cleanupbutton.png
     
  • This will cleanup an assortment of tools used during malware removal, plus itself

 

Note:

MBAM will not be removed

 

 

Step 3

Now you should set a New Restore Point to prevent possible reinfection from an old one. Some of the malware you picked up could have been saved in System Restore. Since System Restore is a protected directory, your tools can not access it to delete these bad files which sometimes can reinfect your system. Setting a new restore point AFTER cleaning your system will help prevent this and enable your computer to "roll-back" to a clean working state.

 

Click on Start... Control Panel... System and Maintenance... System

Click on System Protection in the left-hand task list.

Uncheck the checkboxes next to each hard drive listed under the Create restore points automatically on the selected disks: section.

 

When you uncheck a disk you will be presented with a screen.

You should click on the Turn System Protection Off button.

Click Apply and then OK.

 

Reboot your computer.

 

Now:

Click on Start... Control Panel... System and Maintenance... System

Click on System Protection in the left-hand task list.

Put a checkmark in the checkboxes next to each hard drive listed under the Create restore points automatically on the selected disks: section.

Click Apply and then OK.

 

Your System restore will now be active again... starting with a new restore point.

 

To find out how you may have been infected....read this topic:

How did i get infected?

 

Not all of the following information will be applicable to you, but it's still best to read it all.

 

Now that you are clean, please follow these simple steps in order to keep your computer clean and secure:

  • Use an AntiVirus Software

     

    Note*:

    Upon installation MS Security Essentials will check that your OS is a legal copy.

     

    Only install one AntiVirus program

     

    [*]Update your AntiVirus Software regularly

     

    [*]Use a 3rd party Firewall

    NOTE: If choosing Zone Alarm be aware that the free version also installs ZoneAlarm Spy Blocker. It is recommended however that you UNcheck this option.

     

    Only install one software Firewall

     

    Some 3rd party Firewalls will turn off the windows firewall when they are installed.

    It's always best to check that the Windows Firewall is turned off:

     

    How to turn off Windows Firewall:

    Start ... Control Panel ...click on 'Classic View'.

    now select Windows Firewall.

    When the Windows Firewall box opens, put a tick against .. Off (not recommended) and then click Ok

     

    [*]Scan regularly with a 'Stand Alone' Anti-Malware scanner:

    Installing another scanner that you can run once or twice a week is always beneficial.

    Something like:

    Malwarebytes Anti-Malware

    SUPERAntiSypware

    Remember to update these programs each time before running.

    You can install more than one of these if you only run them as stand alone programs.

     

    [*] Use an alternative browser:

    Some excellent alternatives to MS Internet Explorer are:

     

    Firefox

    For added security, add the NoScript extension to this browser:

    Allow active content to run only from sites you trust, and protect yourself against XSS and Clickjacking attacks

    also consider adding:

    WOT - Safe Browsing Tool

     

    Web of Trust warns you about risky sites that cheat customers, deliver malware or send spam. Millions of members of the WOT community rate sites based on their experience, giving you an extra layer of protection when browsing or searching the Web.

    Btw: you don't have to make a contribution.

     

    Opera

     

    They offer better security, more stability, and better speed.

     

    [*]Keep a backup of your registry

    Keeping a regular backup of your registry will help when something goes wrong.

    Use a program like:

    Erunt

     

    A full tutorial on how to set up and use Erunt can be found here:

    Erunt tutorial

     

    [*]Keep your system clean of temp files etc, using a 'Cleaner':

    Cleaners are programs that will help to clean out your:

    Windows temp files

    Current user temp files

    Cookies

    Temporary Internet flies

    Browser history

    Recycle bin

    Etc.......

    In other words.... all the rubbish that you accumalate over the course of your browsing and day to day usage of your pc.

    Programs like:

    TFC by OldTimer

    ATF Cleaner

     

    [*]Visit Microsoft's Windows Update Site Frequently - It is important that you visit http://www.windowsupdate.com regularly.

     

     

    [*]Update all your 'Security' programs regularly - Without regular updates you WILL NOT be protected when new malicious programs are released.

Follow this list and your potential for being infected again will reduce dramatically.

 

Glad I was able to help.

 

Safe surfing. http://fc08.deviantart.net/fs71/f/2010/033/b/3/Computer_addict__by_Sinister_Starfeesh.gif

Member of:

UNITE

  • Replies 27
  • Created
  • Last Reply

Top Posters In This Topic

Posted

Hi Starbuck

follwed steps 1and2

Step3 I never used OTL.exe--- should I run it now then delete?

Step3a I did use List Parts.exe ----presume I should delete now?

 

At the moment I use Avast which updates itself and windows Defender firewall which is updated weekly on my windows update. Presumably the 3rd party firewalls suggested are an improvement on defender, do they update on a schedule or would i need to carry it out as a task.

 

alternative browser:- only ever used internet explorer, I have chrome downloaded as a mistake but not yet deleted. will be using hotmail and gmail

I assume WOT and OPERA are stand alone browsers which will operate my email, and both offer better security speed and stability ??

 

Thanks for the help, I'll get on with the reading on 'how infected' and Erunt and await your comments on the above

 

Tom

  • ExTS Admin
Posted

Hi Tom,

 

Step3 I never used OTL.exe--- should I run it now then delete?

The speech i used is a generic one and i forgot to remove that part when i copied / pasted the speech.

You can forget that step.

 

Step3a I did use List Parts.exe ----presume I should delete now?

Yes List Parts can be removed now.

 

and windows Defender firewall which is updated weekly on my windows update. Presumably the 3rd party firewalls suggested are an improvement on defender, do they update on a schedule or would i need to carry it out as a task.

Windows Defender and the Windows Firewall are 2 separate programs.

Windows Defender is basically an anti malware program, so is updated regularly.

The Windows Firewall isn't updated as such but you can add rules to block or allow sites yourself.

Some 3rd party Firewalls receive the occasional update, but on the whole they use whitelists to block things.

 

I assume WOT and OPERA are stand alone browsers which will operate my email, and both offer better security speed and stability ??

Wot is a browser addon and is compatible with IE, Firefox, Opera, Chrome and Safari.

The WOT add-on shows you which websites you can trust for safe surfing, shopping and searching on the web. With the WOT add-on, you can see the website's reputation based on other users' experiences and carefully chosen trusted sources, such as phishing and spam blacklists. You can also rate websites yourself based on your own experiences.

Opera is a browser though.

 

Feels free to ask about anything you are unsure of.

Member of:

UNITE

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.


×
×
  • Create New...