Wednesday, May 19, 2010

How to Remove Malware

A lot of users even after carefully surfing the Internet find themselves infected by some variant of Malware on their computers. it's becoming easier than ever for computers to become infected by Malware especially if users are nonetheless running Windows XP with outdated patch levels and virus scans. Writers of Malware are getting more clever about how they tempt an unsuspecting user into clicking a banner or installing software that on the outside looks to be beneficial. If your computer has become infected with Malware, what steps can you take to get rid of the infection?

Analyze the Damage

The first step is to analyze the damage that has been done to your computer. What does that mean? The first consider the machine ought to be to determine whether or not the computer can nonetheless boot into Windows. This can alteration things. evidently, if your computer won't boot, your first priority will be to get the computer to boot into Windows.

For this article, we will consider a situation where the computer will boot into Windows. If this is the case, we know that the boot sector just like system files have not been corrupted beyond repair.

Getting Started

You may have weird pop-ups, windows background, or other odd behavior going on with Malware infecting your system. a lot of Malware programs make their installation evident by what you see after you log back in. a lot of prompt you that your system is infected with spyware or Malware and you need to click to enter your information just like a credit card number to purchase the fix. don't fall for it!

among the first things we need to do is get the right utilities to check out the system and repair the Malware infection. If you have control over your system with ability to insert a USB drive, copy the following files to your thumb drive. Each are free downloads via the web and are easy to find with Google.

· Autoruns

· Process Explorer

· Malwarebytes Anti-Malware

Running the Utilities

After you have the files copied to the USB drive, connect the drive to your computer and run the "autoruns.exe" file from the extracted location on your thumb drive.

Autoruns provides you to see what is starting up on your computer and even discloses programs and registry entries that may be missed by popular startup editing tools such as "msconfig" which is built into Windows.

among the most valuable abilities of autoruns is the ability to consider code signatures. The code signatures allow you to see whether or not the software is in reality what it says that it's. it's the digital fingerprint that verifies its authenticity.

Most of the time, malware will fail this test of authenticity using the code signatures.

additional really nice feature of Autoruns, is that it provides you to hide the genuine Microsoft and Windows entries so you don't must parse through those entries to find any abnormalities.

Uncheck anything you see that is suspicious which may include items that don't have a description or that the code signature appears invalid.

If you have popup windows on your desktop associated with the Malware, you are able to use the Process Explorer utility mentioned earlier to pinpoint the service or process that is spawning the windows. This can greatly help to identify the malware infection and where it's advent from.

After you have cleared out suspicious startup items just like processes that look to be malware related, you are able to install Malwarebytes Anti-Malware utility to run a full system scan to track down and eliminate malware. The first thing you need to ensure to do is update the signatures as these alteration and get updated regularly. You want the utility to be as effective as possible when you run the full system scan and the recent signatures make this possible.

Some malware is very good at making your efforts hard when it comes to cleaning up your system. They even look for applications with the familiar executables of most popular anti malware utilities and block these from executing. If you notice that you cannot install Malwarebytes, try renaming the executable for the installer. You may even need to rename the extension from.exe to.bat. The program will nonetheless install and this will ensure the malware does not keep the program from running.

This may also be the case after the program is installed. You may need to rename and alteration the extension of the actual program files executable to be able to run the utility.

Malwarebytes most likely will find the infections that you have present on your system. A reboot will probably be necessary after the cleanup process has finished. After rebooting, verify that the suspicious popups are gone and other malicious software is no longer present. At this point it will probably be a good theme to also run a full system scan with your virus scan software of choice.

Note, you may need to reinstall your virus scan program as a lot of times these are corrupted by malware attacks, especially if the virus scan program was severely out of date and was compromised.

Post Repair

If you were fortunate and the utilities mentioned above provided you to free your system from a severe malware infection, please use the second chance to prepare your system for the next attack. Especially if you are running Windows XP, ensure you are at the current system patch level of SP3. Also, ensure you are running at least Internet Explorer version 7 and preferably version 8 as these contain the latest security enhancements.

ensure that your anti-virus software is functioning normally. Having outdated virus signatures cripples the effectiveness of these programs. In fact, you are just about as safe not having a virus scan installed as having it installed with outdated signatures.

There are a lot of great free anti-virus software packages accessible. Avast, AVG, and other people offer really great service that is free to home users. You are simply asked to register the software and install the key that is sent via email.

If you don't want the hassle and expense of keeping an up to date copy of McAfee, Symantec, or other more expensive virus scan packages, the above mentioned free alternatives are a great manner to keep your system protected at no cost.

Browsing Habits

No matter how well you have protected your system with software solutions, one have to nonetheless be scrupulous in this day and age to keep a strict watch on their browsing habits. Installing tons of free trial software just like downloading P2P programs significantly increases your risks of your system becoming infected with some variant of Malware.

don't agree to install software that is unsolicited that may pop up from a strange website. don't fall for the trick of a popup telling you that your system is infected and will stay infected until you install their software. All of these scams are ways that Malware writers are infected thousands of Internet users. Be smart where you click and which websites you visit. Running web filter software such as the free tool known as Untangle can greatly benefit your overall Internet security as well.

Malware is definitely here to stay and then the threats will continue to mount on home and corporate users alike. even so, using the right utilities and implementing a lot of protective layers that are accessible will help you to avoid Malware altogether.

No comments: