pc-wiz
New Member
- Reaction score
- 0
I just put this together, let me know if I missed anything. You are all free to use this for your own use...
Virus Removal Procedure
Non-booting system:
1. Boot to ERD Commander and perform system restore or use UBCD4WIN to get system to boot to Windows.
Booting system:
2. Run rkill to terminate any known malware processes
3. Use Process Explorer to examine and terminate processes
4. Use Autoruns to check for bad startup entries
5. Check the following locations for suspicious files and entries and remove if necessary:
a. C:\Windows
b. C:\Windows\system32
c. C:\Windows\system32\drivers
6. Delete all temporary files
7. Disable and enable System Restore to delete past restore points
8. Run a quick Malwarebytes scan to check for anything that got missed
9. Run a rootkit scan with Sophos or Fsecure Blacklight
9. Reboot! (if malware is still present, double-check all of the above steps and run more scans if necessary)
Virus Removal Resources:
• www.virustotal.com – Online file scanner
• www.processlibrary.com – Online process library
• www.microsoft.com/security_essentials/ - Free Anti-Virus
• www.google.com – Lots of free information
Virus Removal Procedure
Non-booting system:
1. Boot to ERD Commander and perform system restore or use UBCD4WIN to get system to boot to Windows.
Booting system:
2. Run rkill to terminate any known malware processes
3. Use Process Explorer to examine and terminate processes
4. Use Autoruns to check for bad startup entries
5. Check the following locations for suspicious files and entries and remove if necessary:
a. C:\Windows
b. C:\Windows\system32
c. C:\Windows\system32\drivers
6. Delete all temporary files
7. Disable and enable System Restore to delete past restore points
8. Run a quick Malwarebytes scan to check for anything that got missed
9. Run a rootkit scan with Sophos or Fsecure Blacklight
9. Reboot! (if malware is still present, double-check all of the above steps and run more scans if necessary)
Virus Removal Resources:
• www.virustotal.com – Online file scanner
• www.processlibrary.com – Online process library
• www.microsoft.com/security_essentials/ - Free Anti-Virus
• www.google.com – Lots of free information
Last edited: