Question:
getting rid of malware..... HELP !!!?
anonymous
2007-12-25 17:50:54 UTC
HKEY_LOCAL_MACHINE:system\currentcontrolset\enum\root\legacy_*008f__6q*00d4*00f5*0013'*00aa*00b4*00c6*00d08\

That is the file that I need to delete but can not find. Please help.
Six answers:
TNguy
2007-12-25 18:00:06 UTC
Do not start messing with your registry..you can easily disable your entire system.



Download the programs linked below. Install them. Update them. Scan your pc with them, and do so weekly.



If you have System Restore turned on, the Restore files may be infected, and trying to reinfect your pc. I turn off that feature, reboot to delete the files, then turn it on after a full system scan with AVG.



Turning off System Restore.

(right-click My Computer, Properties, System Restore tab, check the box to turn off System Restore on all drives.)



Restart your PC, and hold down the F8 key.

When you see the Boot Menu appear (black screen white letters), choose SAFE MODE.



Run a FULL SYSTEM SCAN with AVG.

You can heal or quarentine anything found.



Run CCleaner to delete all your Temp and Temporary Internet Files.



You can also run Spybot and AdAware while in Safe Mode. I suggest you do a full system scan. Get rid of anything they find.



To exit Safe Mode, just restart your PC normally.



AVG Antivirus - Free Antivirus Software

(CNET: "AVG Anti-Virus Free Edition is the most popular free solution available at no cost to home users and provides the high level of detection capability that millions of users around the world trust to protect their computers.")



Ad-Aware - Free Antispyware Software

(CNET: "One of the first applications built to find and remove adware and spyware, Ad-Aware 2007's excellent reputation is well-justified.")



Spybot Search&Destroy - Free Antispyware/Antitrojan Software

Some REALLY great features of Spybot Search&Destroy: Its ability to help your PC block known spyware/hijacker sites with Immunize feature, a Secure Shredder for truly removing files from your PC, and Startup, which allows you to view the files starting with Windows.



SuperAntiSpyware

SUPERAntiSpyware Free Edition is 100% Free and will detect and remove thousands of Spyware, Adware, Malware, Trojans, KeyLoggers, Dialers, Hi-Jackers, and Worms. SUPERAntiSpyware features many unique and powerful technologies and removes spyware threats that other applications fail to remove.



CCleaner is a freeware system optimization and privacy tool. It removes unused files from your system - allowing Windows to run faster and freeing up valuable hard disk space. It also cleans traces of your online activities such as your Internet history. But the best part is that it's fast (normally taking less than a second to run) and contains NO Spyware or Adware! :)
♠ jhun ♠
2007-12-26 01:56:54 UTC
Here's how:



Log-on as administrator then press CTRL+ALT+DEL

Click on process name header (to sort alphabetically).



Examine all process that runs in your system.

If you find some not familiar. Remember its name and Search the file (or where did it stored) by then you will able to determine if this is a essential file (part of windows) or not.



Malwares are processes that run itself when you terminate. So while in the task manager. try to end a program. (not a window process). you will see that it will run itself again.



Boot to Safe Mode:

Run Registry Editor



Open Task Manager

End the program first then



go to HKEY_Local_Machine / Software /Microsoft / Windows / Current version / Run /



Delete the key of the program.



go back to the your Windows Explorer / Uninstall the Program or delete the whole directory
anonymous
2007-12-26 10:12:15 UTC
Try GarbageClean online scanner



http://www.GarbageClean.com
pinkypop
2007-12-26 01:55:42 UTC
try to download spybot search and destroy..it works when the spyware try to disable my add delete program in my computer.maybe it will also work with u.by the way its free.
anonymous
2007-12-26 02:09:47 UTC
try http://www.safe4surf.co.nr/

my favourite is BITDEFENDER
muffer_3
2007-12-26 01:54:41 UTC
i think its in a restore point,


This content was originally posted on Y! Answers, a Q&A website that shut down in 2021.
Loading...