Hi advice re malware

Give them the options. £80 to run multiple scans with various bits of software or a re-install at a lower price as its usually less time consuming. Then tell him to stay off the dodgy websites.
 
Looks a fairly comprehensive guide (if a bit overkill!) just remember that afterwards you should remove all the scanners - especially Kaspersky - it's a massive system hog! - and install something simple, light and free. Windows Defender or whatever they're calling it these days is my favourite as it just works.

Plus, install some sort of child lock on there to stop him visiting porn sites :p

[edit] actually... "my pal" has got malware... 'fess up and delete your porn stash :p
 
That's a lot of time & effort running that lot on his PC. Easier to Format, Reinstall & do a backup once all the apps he uses are back on the PC.

I could never be certain that ALL the malware is removed despite running all those apps. You could clean it and he could do the same again the next day. That or a persistant Trojan you are unaware of, continues to infect His PC with more or the Same malware without his knowledge.
 
This is the process I wrote for malware removal. You might find it helpful.

Step 1: Test Browsers for pop ups and search engine hijacks. We need to ensure that the customer is indeed infected and not just seeing normal adverts. Create a desktop folder called. “<campaign name> Tools create sub folder called “Reg Backups” Move all scanner short cuts into main folder and create a desktop link to the support portal on the desktop.

Step 2: Check through installed programs for possible/suspected malware and uninstall.

Step 3: Download or update Ccleaner from piriform.com or a mirror. During install, deselect the options: run clutter scan and reg scan. Backup reg and scan until no more issues.

Step 4: Download or update (Program and definitions) Superantispyware. Download from superantispyware.com or a mirror. Run a FULL scan. Remove all infections. If machine and connection is stable, reboot. If not, then move onto next scan.

Step 5: Download or update (Program and definitions) Malwarebytes. Download from Malwarebytes.org or mirror. Run a FULL scan. Remove all infections. If machine and connection is stable, reboot. If not, then move onto next step.

Step 6: Test Browsers for infections and popups. If still infected, move onto next scan. If not then jump to Step 8.

Step 7 :Download or update (Program and definitions) Spybot 2. Download from safer-networking.org or mirror. Run a FULL scan. Remove all infections.

Step 8: Check browser homepage and search engines. Check browser extensions and reset IE to defaults. Check the properties for each browser’s .exe files for added URLs and remove if needed. Try resetting Chrome or deleting the profile. Check proxy settings from Internet properties / Connections / LAN Settings to make sure none are set. The configuration should usually also be set to Automatically detect settings.

Step 9 Access %AppData% folder from File Explorer and go up one level. Check in the Local, LocalLow and Roaming folders for malware, infections and old profiles.
Also it is worth checking in the “User” folder under “Downloads” and “Documents” for saved malware data and suspicious installation files.

Step 10: Test Browsers for infections and popups. Try at least four websites. Bbc.co.uk, yahoo.co.uk, amazon.co.uk and facebook.com. Use your own clean and legal websites if you wish. Try clicking links off these sites as well. If OK, jump to Step 12.

Step 11: If still infected try ESET online scanner. Install and run a full scan. Return to Step 10

Step 12: Check startup and services in MSCONFIG. Remove unwanted/unneeded programs from startup, including the scanners. Check services and hide Microsoft services. Disable unneeded/unwanted services.

Step 13: Ensure windows updates are up to date. Make sure they are on the correct service pack for the OS/ Correct version of OS. Make sure they are protected by A/V and it is up to date.

Step 14: Finish off: Clean up system restore. Create a new restore point with the label “<campaign name> Cleaned”. Create a desktop folder called. “<campaign name> Tools” Move all scanner short cuts into there and create a desktop link to the support portal. Advise the customer, by IM, telephone or a message left on the desktop saved as “readme.txt”, that we have finished cleaning their PC.
 
Just install free Malwarebytes do a scan to remove malware, install a decent anti virus eg Kaspersky, about £15, do a scan to remove any remaing malware. Job done.
 
Hey thanks fellas, that is awesome help and I am letting that all sink in. Especially howiepoohs comprehensive protocol, thank you.

lol it is not my machine or pron!

I noticed my pal had a hookie copy of Sony Vagas on his startup bar. I assumed that or pron was the source of his problem.

Second question?


When you do a fresh install, how do the Pros do it, you mentioned making a mirror of the new PC install, any pointers on that?



pod
 
Back
Top Bottom