User Tools

Site Tools


malware_and_spyware_tools

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision
Previous revision
malware_and_spyware_tools [2025/06/25 18:58]
47.128.110.245 old revision restored (2024/11/21 02:11)
malware_and_spyware_tools [2025/06/30 09:31] (current)
47.128.113.185 old revision restored (2025/04/27 08:57)
Line 6: Line 6:
  
 It is time to clean all of that stuff off. Now for a secret. This is what I do when I clean/tweek someone's computer at $50 an hour.\\ It is time to clean all of that stuff off. Now for a secret. This is what I do when I clean/tweek someone's computer at $50 an hour.\\
- 
-<fs 125%>Click on any image to see a larger version.</fs> 
  
 ===== What does an Infected Computer Look Like? ===== ===== What does an Infected Computer Look Like? =====
Line 44: Line 42:
 It is going to be best if you copy all of these tools to the desktop on the infected computer. Then start WinPatrolToGo. It is an .exe and does not need to install. Your startup screen should look like this: It is going to be best if you copy all of these tools to the desktop on the infected computer. Then start WinPatrolToGo. It is an .exe and does not need to install. Your startup screen should look like this:
 {{::wp1.png?direct&200|}}\\ {{::wp1.png?direct&200|}}\\
-Look at your startup programs. This is a clean example. Look for things that start toolbars. If you see something that should not be on this list, make a note of it, but do not Remove it right now. Next look at the Active Tasks. Once again, right now we are looking for information. After you have written down the information on an active task and determined it should not be running, you can kill it. **NOTE:** Some viruses cannot be stopped with this tool.  +Look at your startup programs. This is a clean example. Look for things that start toolbars. If you see something that should not be on this list, make a note of it, but do not Remove it. Next look at the Active Tasks. Once again, right now we are looking for information. After you have written down the information on an active task and determined it should not be running, you can kill it. **NOTE:** Some viruses cannot be stopped with this tool. 
-\\ +
-This is the same screen from an infected computer. {{::highlighted_1.png?direct&100|}} Unfortunetly WinPatrolToGo does not highlight the bad stuff as I have in this image.+
 {{::wp2.png?direct&200|}}\\ {{::wp2.png?direct&200|}}\\
 You want the path information on the info page. "C:\program files\vmware\wmaretools\vmtoolsd.exe" in this case. VMWare tools is not a virus.\\ You want the path information on the info page. "C:\program files\vmware\wmaretools\vmtoolsd.exe" in this case. VMWare tools is not a virus.\\
-Now look at the IE Helpers. Kill off ones for tool bars. Especially AVG or other Anti-virus tool bars+Now look at the IE Helpers. Kill off ones for tool bars. Especially AVG or other Anti-virus tool bars. 
-\\ +
-==== Cleaning with Revo Uninstaller ==== +
-The [[http://www.revouninstaller.com/revo_uninstaller_free_download.html|Revo Uninstaller]] is one of my favorite tools. It is the first thing I install on a new computer to remove the junk that comes "free" out of the box. It works better than the Microsoft provided Add/Remove programs tool that is part of Windows. Install and start Revo Uninstaller.\\ +
-{{::highlighted_2.png?direct&200|}} This is the main Revo screen for the same computer as the WinPatrol screen above. See the highlighted programs? Those are our targets. For each program, click on the program in the list and click on remove. You want the moderate level of removal. Just follow the next buttons. The first step is running the program's uninstaller. <color #FFA500>What a surprise!</color> the built in uninstaller doesn't do much to really uninstall the software+
  
  
malware_and_spyware_tools.1750903097.txt.gz · Last modified: 2025/06/25 18:58 by 47.128.110.245