S.O.S. Apple Soft malware. Intrusion

Hello everyone, for the las 6 months, sort of, one or more people - if you can call those who - sent to my flexible computer. / messages that appear to come from Apple, so far, I hope, none of them have reached the target I have cancel since the first time I found them suspicious; at first I thought that if I ignore them, they would go, but that was not the case. Whenever I start the iMac, they jump, others also appear in Safari; I was not able to remove them. Hereby I post some screenshots of these things to support my request. I had to cut the screenshots that the photo of the whole screenshot was not aloud on this site. I looked around the site of communities and found that as the most appropriate to post my problem. I hope that someone here may be able to let me know what to do to solve this issue. Attached are the screenshots:

PS I also have a Macbook Pro and this problem appears in it.

Thanks for your attention to this problem.

Sal909

Remove the browser pop up problems

Malwarebytes | Free Anti-Malware detection and removal of software for

Apple Macintosh computers

Adblock more 1.8.9, GlimmerBlocker, or AdBloc k

Remove the adware that displays pop-up ads and graphics on your Mac

How to remove adware FlashMall of OS X

Stop advertising and pop-up advertising windows in Safari - Apple Support

2.11 DetectX

Useful links about Malware problems

Open Safari, select Preferences from the Safari menu. Click the Extensions icon in the toolbar. Disable all Extensions. If it stops your problem, then re-enable one by one until the problem returns. Now remove this extension as it is the origin of the problem.

The following comes from user stevejobsfan0123. I made minor changes to adapt to this presentation.

Difficulty of pop-ups in browser that support Safari.

Common pop - ups include a message saying that the Government has taken over your computer and you pay release (often called "Moneypak"), or a false message saying that your computer has been infected and you need to call a number of tech support (sometimes claiming to be Apple) to get it to be resolved. First of all, understand that these pop-ups are not caused by a virus and that your computer has not been assigned. This "hack" is limited to your web browser. Also understand that these messages are scams, so don't pay not money, call number, or provide personal information. This article will give an overview of the solution to remove the pop-up window.

Quit Safari

Usually, these pop-ups will not go by clicking 'OK' or 'Cancel '. In addition, several menus in the menu bar may become disabled and show in grey, including the option to leave Safari. You'll probably force quit Safari. To do this, press command + option + ESC, select Safari, press on force quit.

Relaunch Safari

If you restart Safari, the page will reopen. To avoid this, hold the "Shift" key when opening Safari. This will prevent windows since the last time that Safari was running since the reopening.

It will not work in all cases. The SHIFT key must be maintained at the right time, and in some cases, even if done correctly, the window is displayed again. In these circumstances, after force quit Safari, turn off Wi - Fi or disconnect Ethernet, depending on how you connect to the Internet. Then restart Safari normally. He'll try to reload the malicious Web page, but without a connection, it will not be able to. Leave this page by entering a different URL, i.e. www.apple.com and try to load it. Now you can reconnect to the Internet and the page that you entered is displayed rather than the malicious.

Tags: Mac OS & System Software

Similar Questions

  • How will I know if an email from 'Apple' on malware is legitimate?

    I received an e-mail might alert, apple, on malware that requires immediate attention.  I need to know how to determine if it is legitimate. In my safari, I went on the link they posted in the warning and got this announcement of: http://icloud-webserver-3.online/index-2.html

    Your computer is infected with adware or malware, which allows you to see this popup.

    This can happen because of the obsolete virus protections.

    To fix, please call Apple Support to 1-800-982-1346 immediately. Please ensure that you do not restart your computer to avoid any data loss.

    Possibility of data & identity theft, if not fixed immediately.

    In fact, I called the number, don't do not still think that it was a 'bad' site...? How can I check the legitimacy of this warning?

    It's easy. It is NOT legitimate. It's a scam, and it came not from Apple.

  • Antivirus soft

    My Acer has been infected by the "Antivirus Soft" malware and I don't know how to remove it.  Help, please.

    Follow the instructions to remove Antivirus Soft:

    http://deletemalware.blogspot.com/2010/01/how-to-remove-antivirus-soft-fake.html

  • Command-Z don't cancel reliably

    Does anyone else have this problem? I am a user of long date Photoshop and in the two latest versions (CS5/6 and CC), if I make a mark, stop, and then type command-Z, nothing happens. I have to save the historical Panel to return to the previous state. Sometimes cancel works, most of the time it isn't. I mean, I know that Photoshop doesn't cancel infinite as Illustrator, but now I can't seem to do even a single cancellation. Is it me, or is this Photohop? If anyone else has encountered this problem, it is probably my low synchronizing or just awkwardness of the brain. Is this a setting? But why would there be a "Undo on" vs. "cancel out" switch? Any ideas?

    I solved the problem. There was another weird problem elsewhere on the mysterious series, a computer of pictures of the inside of a meatlocker filed at the level of the root of the HD that defied my attempts to remove. They kept coming back, who told me it was good, something weird, while I posted this fact on the Apple forum (malware!), got some alarming and elaborate responses and liquidation to reformat my boot drive, and then re-setup of creative cloud. Meatlocker missing shots, Photoshop "Undo" issue is no longer a problem. So the problem is not in Photoshop. These are malware. Take care, oh ye of little faith.

  • Someone broke into my computer informing me that he has been infected with malware, viruses, etc. and advising me to contact a phone number, also send me a live conversation on how to solve the problem. He claims to be an Apple / Safari servic

    Someone broke into my computer informing me that he has been infected with malware, viruses, etc. and advising me to contact a phone number, also send me a live conversation on how to solve the problem. He claims to be an Apple / Safari servic

    This kind of message is a scam. Do not meet it.

    Force Quit Safari, then restart Safari while holding the SHIFT key.

  • How to remove the malicious software that is causing the pop up ads "to go around the web"?  These pop ups appear on almost every page I open and I have bad non-kid-friendly images?  Apple instructions for the removal of the malware did not help.

    How to remove the malicious software that is causing the pop up ads "to go around the web"?  These pop ups appear on almost every page I open and I have bad non-kid-friendly images?  Instructions from Apple to remove the malware have not removed despite them a number of times.

    Click here and follow the instructions. If you would rather not remove it manually, you can run rather MalwareBytes for Mac.

    MalwareBytes is a removal tool and does not stop adware or other malware from entering the computer. It should not be invoked to prevent future incidents; Instead, avoid downloading software from sources other than the Mac App Store or Developer Web sites.

    (140621)

  • Malware via FaceBook and their suggestion to install Maverick while I'm running on El Capitan... Apple recommends?

    FaceBook gives an alarm signal:... detected Malware via FaceBook on my computer... and their suggestion to install Maverick while I'm running on El Capitan... Apple recommends? ... and of course, this happens in the weekend... Please some advice...

    Aalthough I've not heard of before, it looks like a scam. Nothing on the Internet can scan your Mac Malware or something.

    I would also say that you don't take any advice someone on Facebook.

  • y at - it a soft note for the Apple Watch that can be used when you are not wearing your phone with you?

    Hello

    Y at - it a notes app where you can see the note when the watch is not attached to the phone?

    Using OneNote, for example is very good when the watch is related to the phone, but if I'm going to run and leave the phone at home / in the Office I can't see the note.

    I need to remember several combinations of numbers, which are stored on the phone, but I don't want to use running with the phone, so looking for a way to store the numbers on the watch.

    Any ideas?

    Thank you

    Hello

    You can see that the following application (for example) meets your needs:

    • Cheatsheet - A Quick note keyboard and today Widget
  • Cannot start my MacBook Pro after the intrusions on the apple Web site to stop pop up ads. S

    Cannot start for hours

    Try SMC and NVRAM resets:

    https://support.Apple.com/en-us/HT201295

    https://support.Apple.com/en-us/HT204063

    Try a safe boot:

    https://support.Apple.com/en-us/HT201262

    It may be helpful if you indicated the EXACT MBP model/year you have.

    Ciao.

  • Software Malware suggests an intrusion of Microsoft

    I just installed a malware detection software and run a scan complete my system (approx. 4 to). He found only one potentially dangerous file:

    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\ {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB}

    I have it has not deleted because it seems to be a Microsoft registry file. Please tell me what it is and if it is safe to leave on my system.

    Thank you.

    I just installed a malware detection software and run a scan complete my system (approx. 4 to). He found only one potentially dangerous file:

    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\ {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB}

    I have it has not deleted because it seems to be a Microsoft registry file. Please tell me what it is and if it is safe to leave on my system.

    Thank you.

    Web info - this is a virus-check google

    http://www.Google.co.UK/search?q=HKEY_CURRENT_USER%5CSOFTWARE%5CMicrosoft%5CWindows%5CCurrentVersion%5CExt%5CStats%5C%7B1D4DB7D2-6ec9-47a3-BD87-1E41684E07BB&RLS=com.Microsoft: en - gb:IE - SearchBox & ie = UTF-8 & oe = UTF-8 & sourceid = ie7 & rlz = 1I7GGLT_en & redir_esc = & ei = DZAbTcDuA8SAhAfI1o24Dg

  • fake apple support keeps popping up

    Tabs are open on my macbook, which are Apple support, but I did not open them. They say I have a problem with my system. The tabs that are open are asking me to download more Mac products. I know that they are not legitimate, I want to just get rid of these pages who keep the opening. How can I get rid of this problem?

    You may have installed ad-injecting malicious software ("adware").

    Do not use any type of product, "anti-virus" or "anti-malware" on a Mac. It is never necessary for her, and relying on it for protection makes you more vulnerable to attacks, not less.

    Save all data first.

    If you are not already running the latest version of Mac OS X, update or upgrade in the App Store you risk adware remove automatically. If you are already using the latest version, please log off or restart the computer. Still, some types of malware will be deleted, not all. There is no such thing as the automatic removal of all possible malware, either by OS X third party software. That's why you can't rely on software to protect you.

    If the malware is deleted in your case, you will still need to make changes to the way you use your computer to protect you from new attacks. Ask if you need advice.

    If the malware is not removed automatically, see below.

    This simple procedure to detect any type of adware that I know. Disabling is a procedure distinct and better still.

    Some legitimate software is funded by advertising and may display advertisements in its own windows or in a web browser while it is running. It's not malware and it may not appear. In addition, some Web sites display advertising intrusive popup that can be confused with adware.

    If none of your web browsers work well enough to carry out these instructions, restart the computer in safe mode. The malware will be disabled temporarily.

    Step 1

    Please triple - click on the line below on this page to select it, and then copy the text to the Clipboard by pressing Control-C key combination:

    ~/Library/LaunchAgents

    In the Finder, select

    Go ▹ go to the folder...

    from the menu bar and paste it into the box that opens by pressing command + v press return. Open a folder named "LaunchAgents", or you will get a notice stating that the file cannot be found. If the file is not found, proceed to the next step.

    If the folder opens, press the combination of keys command-2 to select the display of the list, if it is not already selected. Please don't skip this step.

    There should be a column in the update Finder window. Click this title two times to sort the content by date with the most recent at the top. If necessary, enlarge the window so that all the content show.

    Follow the instructions in this support article under the heading "take a screenshot of a window." An image file with a name starting in 'Screenshot' should be saved to the desktop. Open the capture screen and make sure it is readable. If this isn't the case, capture a small part of the screen indicating that what needs to be shown.

    Start a reply to this message. Drag the image file in the editing window downloading. Alternatively, you can include text in the response.

    Leave the case open for now.

    Step 2

    Do as in step 1 with this line:

    /Library/LaunchAgents

    The record which can open up will have the same name but is not the same as in step 1. In this step, the folder does not exist.

    Step 3

    Repeat with this line:

    /Library/LaunchDaemons

    This time the file will be called "LaunchDaemons."

    Step 4

    Open Safari preferences window and select the tab 'Extensions'. If the extensions are listed, post a screenshot. If there are no extensions, or if you cannot launch Safari, skip this step.

    Step 5

    If you use Firefox or Chrome browser, open the list of extensions and do as in step 4.

  • Continuing to malware / adware problem

    Hello

    I have finally upgraded to El Capitan at last week. I had no problem until today when I downloaded a new Java Update, which I think may have also installed some sort of adware / malware on my system. Since the installation of new advertising tabs open (on both Firefox and Safari) when I click on some normal links on some sites. I also see underlined green links ad on some pages.

    I tried all the tips I can find online, including of Malwarebytes, Avast, reinstall browsers, try a new user, follow the instructions to remove "DownLite" etc. I also checked the LaunchAgent and LaunchDaemons folders in my library, and they seem to be something unusual.

    Any help with this would be much appreciated because it becomes extremely frustrating Apple have advised me to reinstall OS X, but I would try other options first as it may seem a bit drastic!

    Thank you very much

    Tomai

    You may have installed ad-injecting malicious software ("adware").

    Do not use any type of product, "anti-virus" or "anti-malware" on a Mac. You have already seen that it does not work.

    Save all data first.

    If you are not already running the latest version of Mac OS X, update or upgrade in the App Store you risk adware remove automatically. If you are already using the latest version, please log off or restart the computer. Still, some types of malware will be deleted, not all. There is no such thing as the automatic removal of all possible malware, either by OS X third party software. That's why you can't rely on software to protect you.

    If the malware is deleted in your case, you will still need to make changes to the way you use your computer to protect you from new attacks. Ask if you need advice.

    If the malware is not removed automatically, see below.

    This simple procedure to detect any type of adware that I know. Disabling is a procedure distinct and better still.

    Some legitimate software is funded by advertising and may display advertisements in its own windows or in a web browser while it is running. It's not malware and it may not appear. In addition, some Web sites display advertising intrusive popup that can be confused with adware.

    If none of your web browsers work well enough to carry out these instructions, restart the computer in safe mode. The malware will be disabled temporarily.

    Step 1

    Please triple - click on the line below on this page to select it, and then copy the text to the Clipboard by pressing Control-C key combination:

    ~/Library/LaunchAgents

    In the Finder, select

    Go ▹ go to the folder...

    from the menu bar and paste it into the box that opens by pressing command + v press return. Open a folder named "LaunchAgents", or you will get a notice stating that the file cannot be found. If the file is not found, proceed to the next step.

    If the folder opens, press the combination of keys command-2 to select the display of the list, if it is not already selected. Please don't skip this step.

    There should be a column in the update Finder window. Click this title two times to sort the content by date with the most recent at the top. If necessary, enlarge the window so that all the content show.

    Follow the instructions in this support article under the heading "take a screenshot of a window." An image file with a name starting in 'Screenshot' should be saved to the desktop. Open the capture screen and make sure it is readable. If this isn't the case, capture a small part of the screen indicating that what needs to be shown.

    Start a reply to this message. Drag the image file in the editing window downloading. Alternatively, you can include text in the response.

    Leave the case open for now.

    Step 2

    Do as in step 1 with this line:

    /Library/LaunchAgents

    The record which can open up will have the same name but is not the same as in step 1. In this step, the folder does not exist.

    Step 3

    Repeat with this line:

    /Library/LaunchDaemons

    This time the file will be called "LaunchDaemons."

    Step 4

    Open Safari preferences window and select the tab 'Extensions'. If the extensions are listed, post a screenshot. If there are no extensions, or if you cannot launch Safari, skip this step.

    Step 5

    If you use Firefox or Chrome browser, open the list of extensions and do as in step 4.

  • How can I remove chum research Malware from my mac Air

    I've been infected by malware - research of Chum. How can I delete?

    You may have installed ad-injecting malicious software ("adware").

    Do not use any type of product, "anti-virus" or "anti-malware" on a Mac. It is never necessary for her, and relying on it for protection makes you more vulnerable to attacks, not less.

    Save all data first.

    Some of the most common types of adware can be removed by following the instructions from Apple. But before you follow these instructions, you can try an automatic removal.

    If you are not already running the latest version of Mac OS X ("El Capitan"), update or upgrade in the App Store you could adware to automatically remove. If you are already using the latest version of El Capitan, you can still download the current update of the Apple Support downloads page and run it. Still, some types of malware will be deleted, not all. There is no such thing as the automatic removal of all possible malware, either by OS X third party software. That's why you can't rely on software to protect you.

    If the malware is deleted in your case, you will still need to make changes to the way you use your computer to protect you from new attacks. Ask if you need advice.

    If the malware is not automatically deleted, and you cannot remove yourself by following the instructions from Apple, see below.

    This simple procedure to detect any type of adware that I know. Disabling is a procedure distinct and better still.

    Some legitimate software is funded by advertising and may display advertisements in its own windows or in a web browser while it is running. It's not malware and it may not appear. In addition, some Web sites display advertising intrusive popup that can be confused with adware.

    If none of your web browsers work well enough to carry out these instructions, restart the computer in safe mode. Allows to temporarily disable the malware.

    Step 1

    Please triple - click on the line below on this page to select it, and then copy the text to the Clipboard by pressing Control-C key combination:

    ~/Library/LaunchAgents

    In the Finder, select

    Go ▹ go to the folder...

    from the menu bar and paste it into the box that opens by pressing command + v press return. Open a folder named "LaunchAgents", or you will get a notice stating that the file cannot be found. If the file is not found, proceed to the next step.

    If the folder opens, press the combination of keys command-2 to select the display of the list, if it is not already selected. Please don't skip this step.

    There should be a column in the update Finder window. Click this title two times to sort the content by date with the most recent at the top. If necessary, enlarge the window so that all the content show.

    Follow the instructions in this support article under the heading "take a screenshot of a window." An image file with a name starting in 'Screenshot' should be saved to the desktop. Open the capture screen and make sure it is readable. If this isn't the case, capture a small part of the screen indicating that what needs to be shown.

    Start a reply to this message. Drag the image file in the editing window downloading. Alternatively, you can include text in the response.

    Leave the case open for now.

    Step 2

    Do as in step 1 with this line:

    /Library/LaunchAgents

    The record which can open up will have the same name but is not the same as in step 1. In this step, the folder does not exist.

    Step 3

    Repeat with this line:

    /Library/LaunchDaemons

    This time the file will be called "LaunchDaemons."

    Step 4

    Open Safari preferences window and select the tab 'Extensions'. If the extensions are listed, post a screenshot. If there are no extensions, or if you cannot launch Safari, skip this step.

    Step 5

    If you use Firefox or Chrome browser, open the list of extensions and do as in step 4.

  • Virus Malware Trojans and other junk

    Okay, so, it is true that I am not a Mac person, gasp, but here comes a true unbiased.

    I helped a member of the family rebuild a MacBook Pro using a USB stick to boot and install the latest version of El Capitan.  I was helping to restore the data literally 48 hours later and to my surprise, that the machine was infected with two pieces of malware (which was visible) 'Advanced Mac Cleaner' and 'ZipClould '.  It is interesting ZipCloud himself had placed in the dock bar, replacing a similar looking cloud storage service.

    So clearly the machine has been compromised, and it was easier to rebuild than to go on the road to 'cleaning up' at this stage.

    How can I avoid this happening again?  I can't look over the shoulder 24 x 7, but there should be a way to avoid this.

    Mac users often ask if they should install "anti-virus" (AV) or software "anti-malware". The answer is 'no', but it can give the false impression that there is no threat of what is loosely called 'virus '. There is a threat.

    1. it is a comment on what you should - and should not-do to protect you from malicious software ("malware") that runs on the Internet and gets onto a computer as an unintended consequence of the user's actions.

    It does not apply to the software, such as keyloggers, which can be installed deliberately by an intruder who has convenient access to the computer, or who has been able to take control of it remotely. This threat is in a different category, and there is no easy way to defend against it. AV software is not intended to and does not, to defend against these attacks.

    The comment is long because the issue is complex. The essential points are in articles 5 and 11.

    OS X implements now three levels of integrated protection specifically against malware, not to mention the protections of runtime such as quarantine the file, execute disable, sandbox, protecting the integrity of system, System Library randomization and randomized address space layout , which can also prevent other kinds of exploits.

    2. all versions of Mac OS X 10.6.7 were able to detect the malware Mac known in downloaded files and block non-secure web plugins. This feature is transparent to the user. Apple calls internally it "XProtect."

    The malware used by XProtect recognition database is automatically updated. However, you should not count on it, because the attackers are still at least a day before the defenders.

    The following restrictions apply to XProtect:

    ☞ circumvented by some third-party network software, such as the BitTorrent clients and Java applets.

    ☞ It applies only to software downloaded on the network. Software installed from a CD or other media is not verified.

    As new versions of Mac OS X are available, it is not clear whether Apple will continue indefinitely maintain the older versions such as 10.6 XProtect database. Versions of obsolete systems security may eventually be affected. Updates to security for the code of obsolete systems will be stop being released at any given time, and which can leave them open to other types of attack in addition to malware.

    3. starting with the OS X 10.7.5, there was a second layer of built-in malware protection, designated "Gatekeeper" by Apple. By default, applications and installation packages downloaded from the network will be run only if they are digitally signed by a developer to a certificate issued by Apple. Certified software in this way has not been checked for safety by Apple, unless it comes to the App Store, but you can be reasonably sure that it has not been changed by someone other than the developer. His identity is known to Apple, so it could be held legally responsible if it distributes malicious software. Which may not mean much if the developer lives in a country with a weak legal system (see below).

    Access controller does not depend on a database of known malware. He has, however, the same limitations as XProtect and in addition the following:

    ☞ It can easily be turned off or overridden by the user.

    ☞ A malware attacker could find a way around it, or could take control of a certificate of signing of code under false pretenses or could simply ignore the consequences of the distribution of malware Tryggvason.

    ☞ Developer App store could find a way around the Apple control, or the control may fail due to human error.

    Apple took too long to revoke some known attackers codesigning certificates, thus diluting the value of the keeper and the program developer ID. These variances do not involve the App Store products, however.

    For the reasons given, App Store, and, to a lesser extent - other applications recognized by signed Gatekeeper, are safer than others, but they cannot be considered to be absolutely sure. "Sand" applications could make to access to private data, such as your contacts, or for access to the network. Think that before granting access. Security sandbox is based on user input. Never click through any application for leave without thinking.

    4. by starting with OS X 10.8.3, a third layer of protection has been added: a "Malware Removal Tool" (MRT). MRT runs automatically in the background. He checks and removes, malware that corresponds to a database of recognition held by Apple. To ensure that MRT will be executed when the database is updated, the App Store tab in system preferences and check the box marked

    Install the system data files and security updates

    If it is not already done.

    As XProtect, MRT is effective against known threats, but not against strangers. It alerts you if it detects malware, but otherwise, it has no user interface.

    5. the built-in Mac OS x security features reduce the risk of malware attack, but they are not and will never be complete protection. Malware is a problem of human behavior, not a behavior machine, and none only of technological solution will solve. Software protect you from trust only will make you more vulnerable.

    The best defense is always going to be your own intelligence. Except perhaps feats of Java, all the known malware, circulating on the Internet wearing reached a completely setting installation to update to OS X 10.6 or later takes the form of so-called "Trojans", which may have no effect if the victim is deceived in their execution. The threat thus amounts to a battle of wits between you and cybercriminals. If you are better informed, they think you are, you win. In effect, it means that you always stay in the shelter of practical computing. How do you know when you leave the safe harbor? Here are a few signs warning of danger.

    Software from a reliable source

    ☞ Software with a brand, such as Adobe Flash Player, does not come directly from the Web site. Don't be fooled an alert of any website for updating Flash, or your browser, or other software. A real alert that Flash is outdated and blocked is shown on this support page. In this case, follow the instructions on the support page. Furthermore, assume that the alert is false and that someone is trying to rip you off to install malicious software. If you see these alerts on more than one Web site, ask for instructions.

    ☞ Software any is distributed via BitTorrent or Usenet, or on a Web site that distributes pirated music and movies.

    ☞ Rogue sites Web such as CNET Download MacUpdate, Soft32, Softonic and SourceForge distribute free applications that have been packaged in a superfluous "install".

    ☞ The software is advertised through spam or intrusive web ads. Any announcement, on any site, which includes a direct link to a download should be ignored.

    Software that is clearly illegal or doing something illegal

    Commercial software ☞ high-end such as Photoshop is "cracked" or "free."

    ☞ An application helps you violates copyright law, for example to circumvent the copy protection on a commercial software, or streamed media recording to be reused without permission. All the 'YouTube downloaders' are in this category, but not all are necessarily malicious.

    Conditional or unsolicited offer from strangers

    ☞ A phone calling or a web page you indicates that you have a "virus" and offers to remove. (Some reputable sites warned visitors who have been infected with the malware "DNSChanger" legitimately. The exception to this rule applies.)

    ☞ A web site offers a free content like music or video, but for use, you must install a "codec", 'plug-in', 'player' 'Downloader', 'extractor', or 'certificate' which comes from the same site, or a stranger.

    ☞ You win a prize in a competition that you are never entered.

    ☞ someone on a forum like this is eager to help you, but only if you download an application of your choice.

    ☞ a 'FREE WI - FI!' network presents itself in a public place like an airport, but is not provided by management.

    ☞ Online everything that you expect to pay is 'free '.

    Unexpected events

    ☞ a file is downloaded automatically when you visit a web page, without any further action on your part. delete any file without opening it.

    ☞ You open what you think, it is a document and you receive an alert that it is "an application downloaded from the Internet." Click Cancel and delete the file. Even if you don't get the alert, you still need to delete any file that is not what you expected it to be.

    ☞ An application does something you don't expect, such as permission to access your contacts, your location or the Internet without obvious reason.

    ☞ Software is attached to the email you na not ask, even if it is (or seems to come) by a person of trust.

    I do not leave the safe harbour that once will necessarily lead to disasters, but make a habit of it will weaken your defenses against malicious software attacks. None of the above scenarios must, at the very least, make you uncomfortable.

    6. Java on the Web (not to be confused with JavaScript, to which it is not related, despite the similarity of names) is a weak point in the security of any system. Java is, among other things, a platform to run complex applications in a web page. That was always a bad idea, and Java developers have proved unable to apply it without also creating a portal for malware to enter. Past Java exploits are the closest thing there has ever been a type virus Windows affecting OS X. simply load a page with Java malicious content could be harmful.

    Fortunately, client-side Java on the Web is outdated and largely disappeared. Only a few outdated sites still use it. Try to accelerate the process of extinction by avoiding these sites, if you have a choice. Forget to play games or other uses not Java essentials.

    Java is not included in OS X 10.7 and later versions. Discrete Java installers are distributed by Apple and Oracle (the developer of Java). Do not use one unless you need it. Most of the people don't. If Java is installed, turn it off- not the JavaScript in your browser.

    Whatever the version, experience has shown that Java on the Web is not reliable. If you must use a Java applet for a job on a specific site, Enable Java only for the site in Safari. Never activate Java for a public Web site that carries the third-party advertising. Use only on websites that are well known, protected by login and secure without ads. In Safari 6 or later, you will see a padlock icon in the address bar when you visit a secure site.

    7. another perennial weak point is Adobe Flash Player. Like Java, Flash is declining well deserved, but content Flash is still much more widespread than the contents of Java on the Web. If you choose to install the Flash plugin, you can reduce your exposure to Flash by checking the box marked

    Stop the plug-ins to save energy

    in the Advanced tab of the preferences of Safari window, if not already done. Consider also installing an extension Safari as "ClickToFlash" or "ClickToPlugin." They will prevent the Flash content automatically load and are initially not Flash video is substituted for Flash on YouTube and perhaps a few other sites. I tested the extensions and found them safe, but you should always do your own research before you decide whether to trust any third party software.

    8. remain within the sphere of security, and you will be as safe from malware you can be practically. The rest of this comment is what you must do to protect you.

    Never install any AV or products 'Internet security' for Mac if you have a choice, because they are all worse than useless. If you are required by a (wrong) institutional policy to install some kind of AV, choose one of the free apps in the Mac App Store, nothing else.

    Why you should not use products AV?

    ☞ To recognize malware, software depends on a database of known threats, which is always at least one day to day. This technique is a proven failure, as a major supplier of AV software has admitted. Most of the attacks are "zero-day" - that is, previously unknown. Recognition-based AV does not defend against such attacks, and the enterprise IT industry comes to realize that the traditional AV software is worthless.

    ☞ design is based generally on the nonexistent threat that malware can be injected at any time, anywhere in the file system. Malware is downloaded from the network; He is not of the blue leaves. To meet this threat does not exist, a commercial AV software changes or low level functions of the operating system, which is a waste of resources and a frequent cause of instability, bugs, poor performance, and duplicates.

    ☞ changing the operating system, the software can also create weaknessesthat could be exploited by malicious attackers.

    ☞ especially, a false sense of security is dangerous. This fact relates to all AV software it will never be any changes elsewhere.

    9. a free AV product from the Mac App Store is safe as long as you don't let it delete or move files. Ignore all the warnings that it can give you on "heuristic" or "phishing." These warnings, if they are not simply false positives, see the text of e-mail messages or updates cached web pages, not malware.

    An AV application is not necessary and may not be invoked for protection against malware for OS X. It is useful, or even not at all, only to detect malware Windows and even for this use it is not really effective, because the new Windows malware makes its appearance much faster than OS X malware.

    Windows malware cannot hurt you directly (unless, of course, you use Windows). Just do not pass to someone else. A malicious link in the e-mail is usually easy to recognize by the name alone. A concrete example:

         London Terror Moovie.avi [124 spaces] Checked By Norton Antivirus.exe

    You don't need software to tell you it's a horse Trojan for Windows. Software may be able to tell what trojan is, but who cares? In practice, there is no reason to use a recognition software, unless an organizational strategy requires. Malware Windows is so widespread that you must assume that it is in each attachment until proof to the contrary. Nevertheless, a free AV product on the App Store can serve a purpose if it fulfills a misinformed network administrator that says you must have some sort of application AV. An App Store product will not change the operating system; in fact, it does nothing, unless you run it.

    If you are just curious to know if a file is considered malware by the AV engines, you can download it from the "VirusTotal" site, where it will be tested against most of them without charge. A negative result is evidence of what whether, for the reasons given above. I do not recommend doing this with a file that may contain private information.

    10. There seems to be a common belief that the firewall Application acts as a barrier to infection, or prevents operation of malware. He does not. It blocks incoming connections to some network services you are using, such as file sharing. It is disabled by default, and you should leave it like that if you're behind a router on a private home or office network. Activate only when you are on an untrusted network, for example a public Wi - Fi hotspot, where you do not want to provide services. Disable services that you don't use in the sharing preferences window. All are disabled by default.

    11. as a Mac user, you don't have to live in fear that your computer may be infected whenever you install the software, read emails, or visit a web page. But nor can you assume that you will always be free from exploitation, no matter what you do. Internet browsing, it's like walking the streets of a big city. It can be as safe or as dangerous that you choose to do so. The greatest harm done by software AV is precisely its selling point: it makes people feel safe. They can then feel sufficiently safe to take risks, which the software does not protect them. Nothing can reduce the need for safe computing practices.

  • Virus, Malware, Spyware, etc. prgrams withdrawal will not update google redirects me to random Web sites; Windows update cannot find the updates and will not install ect.

    These problems have been going on a month now and I can't get rid of them

    Logfile of IObit HijackScan v1.0.0.0
    Scan saved at 23:1:41, 2009-10-3

    Ongoing process:
    C:\Windows\System32\smss.exe
    C:\Windows\system32\csrss.exe
    C:\Windows\system32\wininit.exe
    C:\Windows\system32\csrss.exe
    C:\Windows\system32\services.exe
    C:\Windows\system32\lsass.exe
    C:\Windows\system32\lsm.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\System32\svchost.exe
    C:\Windows\system32\nvvsvc.exe
    C:\Windows\System32\svchost.exe
    C:\Windows\System32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\SLsvc.exe
    C:\Windows\system32\winlogon.exe
    C:\Windows\system32\rundll32.exe
    C:\Windows\system32\WLANExt.exe
    C:\Windows\System32\spoolsv.exe
    C:\Windows\system32\svchost.exe
    C:\Program Files\Fichiers Apple Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\Fichiers Files\LightScribe\LSSrvc.exe
    c:\Program Files\Microsoft SQL Server\MSSQL10. SQLEXPRESS\MSSQL\Binn\sqlservr.exe
    C:\Program NetworkAccessManager Corporation\nTune\nTuneService.exe
    C:\Windows\system32\PnkBstrA.exe
    C:\Windows\SMINST\BLService.exe
    C:\Program CyberLink Files\RichVideo.exe
    c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
    C:\Program Alcohol Soft 120\StarWind\StarWindServiceAE.exe
    C:\Windows\system32\svchost.exe
    C:\Program Files\Viewpoint\Common\ViewpointService.exe
    C:\Program Files\Common Files\Microsoft Shared Live\WLIDSVC. EXE
    C:\Windows\system32\DRIVERS\xaudio.exe
    C:\Program Files\Common Files\Microsoft Shared Live\WLIDSvcM.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\HP\QuickPlay\QPService.exe
    C:\Program Hewlett-Packard HP Quick Launch Buttons\QLBCTRL.exe
    C:\Windows\System32\rundll32.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Hewlett - Packard HP wireless Assistant\HPWAMain.exe
    C:\Program HP Imaging\bin\HpqSRmon.exe
    C:\Program HP HP Software Update\hpwuSchd2.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Windows\ehome\ehtray.exe
    C:\Windows\ehome\ehmsas.exe
    C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
    C:\Windows\system32\wbem\wmiprvse.exe
    C:\Program Files\Windows Media Player\wmpnetwk.exe
    C:\Program Hewlett - Packard HP wireless Assistant\WiFiMsg.EXE
    C:\Users\Zach\AppData\Local\Google\Update\1.2.183.7\GoogleCrashHandler.exe
    C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
    C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
    C:\Program Hewlett-Packard HP Quick Launch Buttons\Com4QLBEx.exe
    C:\Windows\system32\wuauclt.exe
    c:\Program Hewlett-Packard HP health Check\hphc_service.exe
    C:\Windows\system32\taskeng.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Windows\system32\PnkBstrB.exe
    C:\Program Files\IObit\IObit security 360\is360.exe
    C:\Program Files\IObit\IObit security 360\is360tray.exe
    C:\Program Files\IObit\IObit security 360\IS360srv.exe
    C:\Program Files\iTunes\iTunes.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\IObit\IObit security 360\a_hijackscan.exe

    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll, ShowWelcomeCenter
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe/autorun
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [RAM Medic] C:\Program Files\Iomatic\RAM Medic\RAMMedic.exe
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [Octoshape Streaming Services] "C:\Users\Zach\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe" - inv: bootrun
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [NVIDIA nTune] "C:\Program NetworkAccessManager Corporation\nTune\nTuneCmd.exe' clear
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [nclauncher] C:\Program Files\NCSoft\Launcher\NCLauncher.exe / reduced
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" / background
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [Google Update] "C:\Users\Zach\AppData\Local\Google\Update\GoogleUpdate.exe" / c.
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [ehTray.exe] C:\Windows\ehome\ehTray.exe
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [AlcoholAutomount] "C:\Program Alcohol Soft 120\axcmd.exe" / automount
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [amd_dc_opt] C:\Program AMD Dual-Core Optimizer\amd_dc_opt.exe
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe - hide
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [UCam_Menu] "C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" 'C:\Program CyberLink YouCam' updated 'Software\CyberLink\YouCam\2.0 '.
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" - atboottime
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe".
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [QlbCtrl.exe] C:\Program Hewlett-Packard HP Quick Launch Buttons\QlbCtrl.exe/Start
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [NvMediaCenter] RUNDLL32. EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [NvCplDaemon] RUNDLL32. EXE C:\Windows\system32\NvCpl.dll,NvStartup
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [TkBellExe] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [hpWirelessAssistant] C:\Program Hewlett-Packard HP Wireless Assistant\HPWAMain.exe
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [hpqSRMon] C:\Program HP Imaging\bin\hpqSRMon.exe
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [HP Software Update] C:\Program HP HP Software Update\HPWuSchd2.exe
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [HP Health Check Scheduler] c:\Program Hewlett-Packard HP health Check\HPHC_Scheduler.exe
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [BitDefender Antiphishing Helper] "C:\Program Files\BitDefender\BitDefender 2010\IEShow.exe".
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [AppleSyncNotifier] C:\Program Files\Fichiers Apple Support\bin\AppleSyncNotifier.exe
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [adobe Reader Speed Launcher] "C:\Program 8.0\Reader\Reader_sl.exe Adobe."
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\Run\: [IObit Security 360] C:\Program Files\IObit\IObit security 360\IS360tray.exe
    O4 - HKLM. \Software\Microsoft\Windows\CurrentVersion\RunOnce\: [Malwarebytes' Anti-Malware] C:\Program Malwarebytes Anti-Malware\mbamgui.exe/install/silent
    O8 - Extra context menu item: E & xport to Microsoft Excel - res: / / C:\PROGRA~1\MICROS~3\Office12\EXCEL. EXE/3000
    O9 - Extra button: send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} -.
    O9 - Extra button: research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR. DLL
    O9 - Extra button: HP Smart Select - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR. DLL
    Ø16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} Java plug-in 1.6.0_15 - http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
    Ø16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} Java 1.6.0_05 plugin - http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab
    Ø16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} Java plug-in 1.6.0_07 - http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
    Ø16 - DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} Java plug-in 1.6.0_15 - http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
    Ø16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} Java plug-in 1.6.0_15 - http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
    O23 - Service: Apple Mobile Device (Apple Mobile Device) - Apple Inc. - C:\Program Files Apple Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: BitDefender Arrakis Server (Arrakis3) - BitDefender S.R.L. http://www.bitdefender.com - C:\Program Files\Common Files\BitDefender\BitDefender Server\bin\arrakis3.exe Arrakis
    O23 - Service: Bonjour Service (morning Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: Com4QLBEx (Com4QLBEx) - Hewlett-Packard Development Company, L.P. - C:\Program Hewlett-Packard HP Quick Launch Buttons\Com4QLBEx.exe
    O23 - Service: Server DCOM (DcomLaunch) - unknown process Launcher.
    O23 - Service: political diagnosis Service (DPS) - unknown -.
    O23 - Service: Windows Media Center Service Launcher (ehstart) - unknown - %windir%\system32\svchost.exe
    O23 - Service: GameConsoleService - WildTangent, Inc. - (GameConsoleService) C:\Program HP Games My game console HP Console\GameConsoleService.exe
    O23 - Service: Group Policy Client (gpsvc) - Unknown -.
    O23 - Service: HP Health Check (HP Health Check Service) Service - Hewlett-Packard - c:\Program health Hewlett-Packard HP
    O23 - Service: hpqwmiex (hpqwmiex) - Hewlett - Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: Windows CardSpace (idsvc) - Unknown - %systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
    O23 - Service: iPod Service (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers Files\LightScribe\LSSrvc.exe
    O23 - Service: BitDefender Desktop Update Service (LIVESRV) - BitDefender S.R.L. - C:\Program Files\Common Files\BitDefender\BitDefender update Service\livesrv.exe
    O23 - Service: Net.Tcp Port Sharing Service (NetTcpPortSharing) - Unknown - %systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
    O23 - Service: Service nProtect GameGuard (npggsvc) - INCA Internet Co., Ltd. - C:\Windows\system32\GameMon.des
    O23 - Service: nTune Service (nTuneService) - NVIDIA - C:\Program NVIDIA Corporation\nTune\nTuneService.exe
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
    O23 - Service: PnkBstrA (PnkBstrA) - unknown - C:\Windows\system32\PnkBstrA.exe
    O23 - Service: Video Audio quality Windows (QWAVE) - Unknown - %windir%\system32\svchost.exe experience
    O23 - Service: recovery for Windows Service (Service recovery for Windows) - unknown - C:\Windows\SMINST\BLService.exe
    O23 - Service: Cyberlink RichVideo service (RichVideo) - Unknown - C:\Program CyberLink Files\RichVideo.exe
    O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown - %ProgramFiles%\WinPcap\rpcapd.exe
    O23 - Service: remote procedure (RPC) call (RpcSs) - unknown -.
    O23 - Service: Manager of security accounts (SamSs) - unknown -.
    O23 - Service: secondary (seclogon) - Unknown - %windir%\system32\svchost.exe to logon
    O23 - Service: Service AE StarWind (StarWindServiceAE) - Rocket Division Software - C:\Program Alcohol Soft 120\StarWind\StarWindServiceAE.exe
    O23 - Service: Distributed Link Tracking Client (TrkWks) - unknown -.
    O23 - Service: installer of Modules of Windows (TrustedInstaller) - unknown -
    O23 - Service: Service Manager Viewpoint (Service Manager Viewpoint) - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
    O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S.R.L. - C:\Program Files\BitDefender\BitDefender 2010\vsserv.exe
    O23 - Service: Service host (WdiServiceHost) - Unknown diagnosis.
    O23 - Service: Diagnostic system host (WdiSystemHost) - unknown -.
    O23 - Service: VNC Server Version 4 (WinVNC4) - RealVNC Ltd. - C:\Program Files\RealVNC\VNC4\WinVNC4.exe
    O23 - Service: Windows Media Player Network Sharing Service (WMPNetworkSvc) - Unknown - %ProgramFiles%\Windows Media Player\wmpnetwk.exe
    O23 - Service: XAudioService (XAudioService) - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
    O23 - Service: PnkBstrB (PnkBstrB) - unknown - C:\Windows\system32\PnkBstrB.exe
    O23 - Service: IS360service (IS360service) - IObit - C:\Program Files\IObit\IObit security 360\IS360srv.exe

    Hello

    You can access Microsoft.com, McAffee.com, Symatec.com? Thinking you have a conficker.

    Check with this site
    http://www.confickerworkinggroup.org/infection_test/cfeyechart.html

    Alert on the Win32/conficker virus
    http://support.Microsoft.com/kb/962007

    Protect yourself from Conficker
    http://www.Microsoft.com/security/worms/Conficker.aspx

    How to remove the worm Downadup Conficker (Uninstall Instructions)
    http://www.bleepingcomputer.com/virus-removal/remove-Downadup-Conficker

    How to manually remove the Conficker worm
    http://www.411-spyware.com/Conficker-worm-removal#how-to-remove

    BDTool to remove
    http://www.bdtools.NET/

    -----------------------------------------------

    Run the malware removal tool from Microsoft, add Prevx to detect any malware you have
    the system and execution UnHackMe - then do the rest for you.

    Start - type in the search box-> find MRT top - right on - click RUN AS ADMIN.

    You should get this tool and its updates via Windows Update - if necessary, you can download it here.

    Download - SAVE - go where go out you there - top - right click RUN AS ADMIN
    (Then run MRT as shown above.)

    Malicious removal tool from Microsoft
    http://www.Microsoft.com/downloads/details.aspx?FamilyId=AD724AE0-E72D-4F54-9AB3-75B8EB148356&displaylang=en

    Malwarebytes - a scanner at the request - update on the updates tab and run whenever you think malware.
    http://www.Malwarebytes.org/

    Here are some free online scanners to help the

    http://www.eset.com/onlinescan/

    http://www.Kaspersky.com/virusscanner

    Other tests free online
    http://www.Google.com/search?hl=en&source=HP&q=antivirus+free+online+scan&AQ=f&OQ=&AQI=G1

    also install Prevx to be sure that it is all gone.

    Prevx - Home - free - small, fast, exceptional CLOUD protection, working with other security programs. It comes
    a scan only, VERY EFFICIENT, if it finds something to come back here or use Google to see how to remove.
    http://www.prevx.com/

    Choice of PCmag editor - Prevx-
    http://www.PCMag.com/Article2/0, 2817,2346862,00.asp

    --------------------------------------------

    Also do to the General corruption of cleaning.

    Run DiskCleanup - start - all programs - Accessories - System Tools - Disk Cleanup

    Start - type this in the search box-> find COMMAND at the top and RIGHT CLICK – RUN AS ADMIN

    Enter this at the command prompt - sfc/scannow

    How to analyze the log file entries that the Microsoft Windows Resource Checker (SFC.exe) program
    generates in Windows Vista cbs.log
    http://support.Microsoft.com/kb/928228

    Run checkdisk - schedule it to run at the next startup, then apply OK then restart your way.

    How to run the check disk at startup in Vista
    http://www.Vistax64.com/tutorials/67612-check-disk-Chkdsk.html

    -------------------------------------------------

    Run Malwarebytes when you can.

    IE - Tools - Internet Options - Advanced - tab click on restore, and then click Reset - apply / OK

    IE - Tools - Internet Options - Security - reset all Zones by default level - apply / OK

    Close IE

    IE - tools - manage Addons (for sure disable SSV2 if it is there, it is no longer necessary but Java always install
    "(and it causes problems - you never update Java to go back in and turn it off again)." Search for other possible problems.

    Windows Defender - tools - software explore - look for problems with programs that do not look right. Permit
    are usually OK and "unauthorized" are not always bad. If in doubt about a program to ask about it here.

    Could be that a BHO - BHOremover - free - standalone program, needs no installation, download and run - not all
    are bad, but some can cause your question. (Toolbars are BHO)
    http://securityxploded.com/bhoremover.php

    Startup programs
    http://www.Vistax64.com/tutorials/79612-startup-programs-enable-disable.html

    Don't forget to do:

    Logon as administrator

    Start - type in the search box-> COMMAND - find on the list above - CLICK RIGHT - RUN AS ADMIN

    Enter each of these one at a time and press ENTER after each

    ipconfig/flushdns

    nbtstat-r

    nbtstat - RR

    netsh int Reinitialis

    netsh int ip reset

    netsh winsock reset

    Reset
    ------------------------------------------------------

    Here are a few rootkits if it were a question:

    SpyDLL Remover - free
    http://securityxploded.com/spydllremover.php

    Advanced Windows Service Manager
    http://securityxploded.com/winservicemanager.php

    Run the Rootkit Revealer - free
    http://TechNet.Microsoft.com/en-us/Sysinternals/bb897445.aspx

    UnHackme - trial
    http://www.Greatis.com/UnHackMe/

    This shows how to use UnHackme and includes a link to version 2.5 – use it as a guideline and current
    available as version above is 5.5
    http://safecomputing.umn.edu/guides/scan_unhackme.html

    IceSword - free
    http://www.AntiRootkit.com/software/IceSword.htm
    Instructions and pictorial
    http://securityxploded.com/IceSword.php
    Tutorial for use of IceSword
    http://translate.Google.com/translate?hl=en&SL=zh-CN&u=http://soft.zol.com.CN/2004/0803/145163.shtml&prev=/search%3Fq%3Dicesword%26hl%3Den%26lr%3D

    I hope this helps.

    Rob - bicycle - Mark Twain said it is good.

Maybe you are looking for

  • HP Pavilion ho23-056 23, touch: copy full hard on an external hard drive as a return to the top

    I am currently running windows 8.1 x 64 bit, and I think the copy of my entire hard drive (consisting of readers of C & D using a total of 929.2 GB of space.  And wanting to get an external Western Digital hard drive with 1.5 TB of space.  I was led

  • Windows 7 desktop clock

    Need a desktop clock secured to replace the clock which is no longer available through gadgets. Clock softonics thoughtful but the download required downloading additional software that I did not understand

  • Updating BIOS for Tecra A2

    Hello! I'm trying to update the BIOS on a Tecra A2 and I need help. I downloaded the current version (1.40 - WIN) and then extracting the zip file to copy on a diskette as instructed, the package extracts from 1.84 MB! Obviously this will not keep on

  • Pavilion g6: System off

    My computer is locked, the system to disable the code: 86944677

  • HP 15-r007tx blutooth drivers

    I'm having the problem with the installation of the blutooth driver I am using windows 7 64 bit operating system in Device Manager, it shows the yellow mark blooth controller the product is HP 15-r007tx