Thursday, April 12, 2007

War on Crap-ware

ok, I am going to post some of the tools that I use when attempting to combat Spyware/Spamware/Malware.

The first tool in my arsenal is CCleaner (or Crap Cleaner). It is a powerful little application that cleans temp files (temp, temporary internet files, History, cookies, typed URL's and a whole load of other stuff). This utility also takes care of the registry by searching for dll's that are registered in the registry but don't exist. Also, it has the ability to show you what is starting at start up and remove them from startup. It is a FREE application, it does request that you donate to keep the cause going, but doesn't require it (I recommend that you do drop them a few bucks if it saves your computers @$$).

The next tool for any good technician is Housecall, excellent utility. The way I usually work it is I load the computer up in Safe mode w/Networking, and then go into this site. This usually takes care of most of my viral infestation calls. Pros are that it is a free to use service that works well, gets most things, and will fix it without charging you anything (i.e. FREE), there is no footprint for a virus to kill. The con is that there are new viruses that are getting smarter. Had a couple of viruses that had gotten into the BHO fields and wouldn't allow me to actually go to housecalls, also, if the client doesn't have DSL, don't even think about it.

Next up is the new program that I found a couple of blogs ago, called Prevx. Only tried it once, but it worked great. I am going to keep this one on the top of my next viral infestation. It isn't free, but it has a 14 day unlimited trial. Means that the software will fix the problems it finds, not just say "you have several problems buy me and I will fix it."

Finally, the next attack vector that I use is BartPE, allows me to gain access to the system in a GUI enviroment and full access to FAT32 and NTFS file formats. catch22 is that most applications will not work, so you had better have a good understanding of what files are infested and how to delete them, now if you actually have the money, my recommendation is to pop over to Avast and purchase Avast for BartPE. Nice little fully configured and updatable computer support system.

0 comments: