aside from just formatting your HD.
Get a boot cd like ERD2003 or PE boot CD. Those who know, know how to get it.
use the cd to boot and access your registry, services,drivers and files.
look for recently added or modified files especially in your windows and system32 directories.
look for services that start automatically and have names that don't make any sense.
look for drivers that are obiously fake, like "POOF" or *^#^@*$
look for things in your registry in the "run" keys.
disable task scheduler.
delete any tasks folder in your windows folder.
even if you think you have found everything, rename Iexplore.exe to something else.
this file is found in your program files directory.
boot off HD into safemode. run spybotSD, AdAware, and then use HiJack This to verify everything is legit. run winsock fix and reboot into safemode.
see if anything has been added with HiJack this.
reboot into normal mode. If everything looks good, restore your IExplore file to its original name.
Make sure your AV software starts up, if not, re-install it. I like SAV corp and trendnet officescan client.
Might as well do a error check and then a defrag on your HD while you're at it.
Thats all folks.
Subscribe to:
Post Comments (Atom)

No comments:
Post a Comment