lsass.exe, GMT.exe, save.exe, smss.exe, svchost.exe, spoolsv.exe
---
extract from
http://www.wilderssecurity.com/showthread.php?t=15913
Ad-aware *
- Download Ad-aware from here: http://www.lavasoftusa.com/software/adaware
- Install by double-clicking on the downloaded file.
- After installing but before running, update Ad-aware by using its Globe icon.
- After updating, shutdown and restart Ad-aware.
- Under Ad-aware 6 > Settings (Gear at the top) > Tweaks > Scanning Engine:
"Unload recognized processes during scanning." - Under Ad-aware 6 > Settings (Gear at the top) > Tweaks > Cleaning Engine:
"Let Windows remove files in use after reboot." - Press "Scan Now"
- Check option "Use Custom scanning options"
- Check option "Activate In-Depth Scan"
- Press "Select drives\folders to scan"
- Select the active partition which is usually C:
- Press "Next" to let Ad-aware scan your drives...
- If it finds "bad" files and registry keys, press "Next" again
- Right-click in that pane and choose "select all"
- Press "next"
- When it asks to remove all checked items, Press "OK"
Spybot S&D *
- The Spybot S&D product page is here and this is a direct download link (4.15MB).
- Install by double-clicking on the downloaded file.
- Run Spybot S&D from desktop icon or Start menu.
- Press "Search for updates" button to get list of updates available.
- Press "Download updates" button.
- Close all IE windows and close & restart Spybot S&D.
- Press "Check for problems" button.
- Have SpyBot remove all it marks in red by pressing "Fix selected problems"
* A Spybot S&D overview and tutorial can be found here.
HijackThis *
- Download HijackThis.exe from here.
- This is a direct download link. You should save this program to a permanent folder on your system, not your desktop! - Run HijackThis.exe
- Press "Scan" button.
- When done the "Scan" button will change to "Save Log", press that.
- Save the log as a text file.
- In step 3 below, you'll need to copy and paste the contents of this log to a post here.
No comments:
Post a Comment