T
TonyWa
On top of the ones I mentioned the following are useful,
(getting rid of or at least identifying in detail the
locations of some of the reborn-post-reboot ones like
wtoolsa, ibis and huntbar)
(search for these strings to find them):
ScanSpyWare
Mwav
Sysclean
TDS-3 plus radius file update
Stinger
Procedure is scan with adaware, MS Beta, Spybot, then the
above, then run Hijack this to find bad guys,then clean
em up with hijackthis and manual delete. REMEMBER TO TURN
ON HIDDEN FILES IN EXPLORER VIEW - spyware hides its
components.
One last tip - a file called Nail.exe gave me big
headaches, it wouldn't delete properly with anything. So
on a guess, in safe mode, I renamed it then created a
TEXT file called nail.exe in the same location using
notepad - just put a word or two of crap in it - then
used ATTRIB.EXE at a command prompt to set it to read
only. Then I deleted the renamed original. For some
reason this disabled it's rebirth, guess it's daddy
couldn't overwrite it.
(getting rid of or at least identifying in detail the
locations of some of the reborn-post-reboot ones like
wtoolsa, ibis and huntbar)
(search for these strings to find them):
ScanSpyWare
Mwav
Sysclean
TDS-3 plus radius file update
Stinger
Procedure is scan with adaware, MS Beta, Spybot, then the
above, then run Hijack this to find bad guys,then clean
em up with hijackthis and manual delete. REMEMBER TO TURN
ON HIDDEN FILES IN EXPLORER VIEW - spyware hides its
components.
One last tip - a file called Nail.exe gave me big
headaches, it wouldn't delete properly with anything. So
on a guess, in safe mode, I renamed it then created a
TEXT file called nail.exe in the same location using
notepad - just put a word or two of crap in it - then
used ATTRIB.EXE at a command prompt to set it to read
only. Then I deleted the renamed original. For some
reason this disabled it's rebirth, guess it's daddy
couldn't overwrite it.