Saturday, July 19, 2008
Avast AntiVirus Configuration and Scanning
The tutorial videos will show you how to configure Avast and then how to complete a manual scan, although for most of the time the Resident Shield offers superb protection.
Full details Click Here
Friday, November 09, 2007
MSN Messenger Spreads Viral Attack Through Users
Please read the complete article before following the steps given.
Once again more MSN Messenger Viruses are spreading around the Internet. This time the virus sends the following message to all your contacts:
cute.pif - W32.Kelvir.A
omg this is funny!
[Followed by a link to download the cute.pif from jose.rivera4.home.att.net]
The user then downloads the file which sends the link to all of their contacts and then downloads a W32.Spybot worm onto the infected machine.
If your are lucky the program will just run on your machine, send to your contacts and end without downloading the Worm.
The first thing you should do therefore is delete the downloaded cute.pif making sure you do not run it again! Then check to see if a Worm has been downloaded as well.
1) Press Ctrl+Alt+Delete and look for hotkeysvc. If it’s there select it and press “End Task”.
2) Use the Windows Find feature to look for a file called “hotkeysvc.exe”. Which if their should be in the %System% directory. If you find the file delete it.
3) Go to ‘Start’ then ‘Run’ and type ‘msconfig’. A new window should appear.
4) Click on the tab at the top right that says ‘Startup’.
5) Look for, and if it exists, untick the box next to “hotkeysvc.exe” or similar name.
The http://jose.rivera4.home.att.net/cute.pif has now been fully removed!
IM-Names virus
1) Close Messenger.
2) Go to ‘Start’ then ‘Run’ and type ‘msconfig’. A new window should appear.
3) Click on the tab at the top right that says ‘Startup’.
4) Untick the box next to ‘IM-Names’. (If you cannot find it skip this task)
5) Click ‘ok’ and when it asks if you want to restart your computer say no.
6) Press ‘Ctr’ + ‘Alt’ + ‘Del’. Find the process that says ‘IM-Names’ and click End Task.
The virus has now been deactivated!
To remove it fully follow these instructions:
1) Search your computer for all files called “IM-Names” (without quotes)
2) Delete all files that it finds.
3) Empty your Recycle Bin.
The virus has now been fully removed!
PIC1234(1)(1)(1)(1)(1).exe
To remove the virus is simple to do. Simply follow these instructions:
1) Close Messenger. This will simply stop any of your contacts getting the virus.
2) Go to ‘Start’ then ‘Run’ and type ‘msconfig’. A new window should appear.
3) Click on the tab at the top right that says ‘Startup’.
4) Untick the box next to ‘MSN Messenger’.
5) Click ‘ok’ and when it asks if you want to restart your computer say no.
6) Press ‘Ctr’ + ‘Alt’ + ‘Del’. Find the file that says ‘MsgSpread‘ and click End Task.
The virus has now been deactivated!
To remove it fully follow these instructions:
1) Go to the Desktop and open My Documents.
2) Double click on Messenger Service Received Files’. If you don’t see a folder called that then go to ‘My Computer’ double left click on ’C’ then ‘Program Files’ and finally ‘Messenger Service Received Files’.
3) You should now see a file called ‘PIC1234(1)(1)(1)(1)(1)(1)(1)(1).exe’.
4) Click on it ONCE and left click and select ’Delete’. This should delete the file.
5) Empty your Recycle Bin.
The virus has now been fully removed!
Choke.exe aka I-Worm.Choke
Even if the user accepts the download he or she will not be infected. The user must download and run the files they received. The file name can differ every time. It can be ‘ShootPresidentBUSH.exe’, ‘Choke.exe’ or ‘%The user name%.exe’ where the user name is a nickname from dalist.txt.
To remove the virus is simple to do. Simply follow these instructions:
1) Press Ctrl+Alt+Delete and select Choke.exe, and press “End Task”.
2) Close Messenger. This will simply stop any of your contacts getting the virus.
3) Go to ‘Start’ then ‘Run’ and type ‘msconfig’. A new window should appear.
4) Click on the tab at the top right that says ‘Startup’.
5) Untick the box next to “Choke.exe” or similar name.
The virus has now been deactivated!
To remove it fully follow these instructions:
1) Go to ‘Start’, then ‘Find’ or ‘Search’ and enter “Choke.exe”, then press OK.
2) Click on the file and press ‘Delete’.
3) Empty your recycle bin.
The virus has now been fully removed!
W32.Aplore@mm
W32.Aplore@mm is a MSN Messenger Virus which spreads by sending links to an infected web page. When a user is infected with this virus they send a message do their online contacts. The message may be as follows where ZZZ is the contacts name, the A’s represent an IP address and the B’s represent a port number.
ZZZ says: this is cool, http://AAA.AAA.AA.AA:BBBB
OR ZZZ says: btw, download this, http://AA.AA.AAA.AAA:BBBB
To remove the virus is simple to do. Simply follow these instructions:
1) Close Messenger. This will simply stop any more of your contacts getting the virus.
2) Go to ‘Start’ then ‘Run’ and type ‘msconfig’. A new window should appear.
3) Click on the tab at the top right that says ‘Startup’.
4) Untick the box next to “Explorer”.
5) Restart you Computer.
The virus has now been deactivated!
W32.Annoying.Worm
The delightful author of this worm, who comes “in piece” (pity it’s not “in pieces”), has even included a readme.txt file with uninstall instructions:
How to remove the Annoying.Worm:
1) Click Start, select Run. The Run dialog box pops up.
2) Type: msconfig The System Configuration Utility pops up.
3) Click the Startup tab at the top. In the list, find MsgSprd, Messenger, or pic1324, uncheck, press Apply, then press Ok.
4) Restart your computer Or press Ctrl - Alt - Del, select MsgSprd from the list, then press End Task.
You may freely delete the files or the ‘C:\Messenger1324′ directory.
You may need to uninstall/reinstall Messenger after removing this one from your system.
As you may have passed the MSN Messenger virus on to some of your contacts it is suggested you warn your friends about the MSN Messenger Virus.
Many of these viruses will continue to resend themselves to your contacts and then their contacts, so the vicious circle continues. If you are infected you are in a position to do something about it.
In future if someone tries to send you a file on MSN Messenger and it ends with ‘.exe’ do NOT download it unless you are really sure you know what it is. Ask the person that is sending you it what it is!
Ensure that your pc is fully up-to-date with the latest patches, also ensure that your anti-virus protection is regularly updated.
If you use a file shredder it is better than using the recycle bin to empty files.
I also recommend using CCleaner (formerly CrapCleaner) to rid your system of unwanted garbage that collects on a daily basis.
Virus Alert
Some 30% of computers with a security solution installed scanned last week were infected with some kind of malware. In the case of computers without any kind of protection, the figure goes up to 44%. Source:http://www.infectedornot.com
Malware creators are trying to put a large number of threats in circulation and install them silently to prevent security companies from detecting them and generating the necessary vaccines.
Therefore, traditional security solutions must be complemented with other types of online solutions like BitDefender, which uses the ICSA Labs certified scanning engines, so you can feel secure about their virus protection.
As for the malicious code that has appeared in the past week, highlighted are the Bindo.A and Nuwar.HU worms.
Bindo.A aka autoply.exe is a worm designed to spread and infect as many computers as possible by copying itself under names like autoply.exe or MSshare.exe to the shared folders of any P2P programs that the targeted user might have installed.
It also creates a file called AUTORUN.INF in all drives it copies itself to, in order to be run every time that the drive is accessed It is very easy to detect the presence of this worm on the system, as it increases the number of shared files in the P2P shared folders on the computer.
Bindo.A also changes certain shortcuts in the desktop so that they have two execution paths: the original one and one that runs when the original program is launched.
BitDefender is a FREE online virus scanner, which takes a while to run and it is advisable to run this when you have no other programs using resources. When opened, you will have to click the ‘I Agree’ user license after which you will be taken to the Options page.
Click image for larger view.
The default setting is to scan all of your computer, which is the safest option. Under the ‘Settings’ the default option is for BitDefender to try and clean the infected files. There is a warning that if disinfection fails, the files will be deleted. You can change this option where it says ‘click here’ and a pop-up window opens (ensure you do not have pop-up blockers turned on).
Click image for larger view
Under the heading ‘Action options’ select ‘Prompt user for action’ and under ‘Second action’ again select ‘Prompt user for action’ then click OK, then click where it says ‘Click here to scan’. BitDefender will then load the anti-virus engine and virus signatures.
If it fails to update, select ‘Yes’ to continue and scanning will start.
Click image for larger view
When scanning, if an infection is found you will be prompted for an action and you will see the location of the infected file. You can select ignore, disinfect or delete. If disinfection fails however, the file will be deleted so use this with caution and ensure that it is not an important file.
Nuwar.HU is a new variant of the infamous “Storm Worm” which takes advantage of Halloween to spread. It ends processes of certain security tools that might be installed on the computer.
Nuwar.HU drops a rootkit called noskrnl.sys on the system and sets it as a service so that it is run automatically when the computer is started. Nuwar.HU spreads in email messages with subjects like “Have a Happy Halloween everyone” or “Party on this Halloween” among many others.
These messages include links to certain web pages that show a ‘dancing skeleton’ animation. If the user downloads and runs the animation offered on the website, the worms infects the computer and turns it into a zombie system at the service of a malicious user.
Rootkit detection
Methods to detect rootkits fall into two categories: Signature-based and heuristic/behavior-based detection.
There is an article about rootkits here and advice on searching your hard drive for the presence of rootkits and tools to remove them which you can get more information by clicking here.
Thursday, September 13, 2007
Skype Targeted With Worm
Skype, the VoIP (Voice over Internet Protocol) is considerably less secure than traditional telephone lines. Many people have switched to using Skype because of the savings they can make, and many have abandoned their traditional telephone lines altogether.
Skype was founded in 2002 and was bought by ebay in 2005 for US$2.5 billion. It has seen a steady rise in the number of subscribers to its service.
However, it still has many pitfalls, including the latest Worm called ‘W32/Ramex.A’.
It spreads through the peer-to-peer instant chat utility and is activated when a user clicks on a link within an instant message asking recipients to download a file.
It is very cleverly disguised within a jpeg image of soap bubbles, one of Windows default built-in wallpapers which has been embedded with a malicious executable code.
This code installs Spyware that can easily steal passwords and other personal information. It may also block users from visiting certain websites and stop programs from running or responding. It also connects to a remote server to download additional malicious code.
It is often titled ‘really funny’ or ‘look at this crazy photo sent to me’ with a clickable link. Once clicked, users who continue to download the file then have the risk of their machine becoming infected, and it then uses Skype’s application program to access files on the infected machine. The worm then attempts to replicate itself and then send out messages to recipients on the users contact list.
Ensure your anti-virus is up-to-date, windows updates are downloaded and installed, especially The Windows Malicious Software Removal Tool, which was last updated September 11th 2007. To remove the worm and its variants go to the link below and Download the file, save it to your Desktop (or location where you store downloaded files) and once the download is complete, select Run and the program will install.
You then have the option of a Quick Scan, Full Scan or Customized Scan.
Select Quick Scan and if any Malicious Software is found you will be prompted to run a Full Scan which may take several hours depending on your machines hard drive capacity but it’s worth it for the safety and security of your PC.
Download Here
Friday, September 07, 2007
More Email Dangers
The email Trojans are back in full swing.
Many of these will be titled ‘Office Antics’, ‘It Takes Guts to Say Jesus’, ‘Free Web Tools’ and many other eye catching subjects.
DO NOT open these emails as they contain a Trojan Downloader and if the link contained in the body is clicked a new window will open and you will be prompted to download a file.
Only trust emails from trusted sources, but also ensure that you have real-time anti-virus running. Even trusted sources can innocently pass on trojans and malicious code.
Virus Name: JS/Psyme also known as HTML/Mht@exp
Spreads through Web Browsing, Downloads Code from the internet, Exploits your system and/or Software vulnerabilities, and in extreme cases it can wipe your hard drive of all data.
Ensure your anti-virus is up-to-date. I recommend AVG Anti-Virus (freeware) which catches these Trojans and opens a ‘Threat Detected’ window.
If you are infected with this update your virus definitions file and reboot into Safe Mode, scan with anti-virus and also scan with ad-aware.
Email will read similar to this, with some variations:
Welcome Member,
We are so happy you joined ************
Member Number: 6257277682314
Your Temp. Login ID: user3795
Your Password ID: eq708
Please Change your login and change your Login Information.
Use this link to change your Login info: ******** (link removed)
Welcome,
***********
***********
These emails all follow the same format with a clickable link…….DO NOT click.
Monday, September 03, 2007
SmitFraudFix and Zlob Removal
This tool will remove Desktop hijacking malware.
Firstly, download the removal tool from here:
http://siri.urz.free.fr/Fix/SmitfraudFix.exe
Disconnect from the internet to stop it from trying to reload itself on to your system.
Double-click SmitfraudFix.exe to run the first stage of the program.
On the first screen select 1 and hit Enter, this will create a report of the infected files.
The report can be found at the root of the system drive, which is usually located at C:\rapport.txt
Secondly, reboot into Safe Mode, keep tapping F8 key before Windows splash screen.
Double click the Smitfraudfix.exe and on the screen that opens type in 2 the hit Enter to delete any infected files.
You will then be prompted with ‘Do you want to clean the registry?’ Type Y and again hit Enter to remove the Desktop background and clean any registry keys that are associated with this infection.
The tool will then check to see if winnet.exe is infected. If it is you will be asked if you want to replace infected file? Type Y and again hit Enter to restore a clean file entry to the registry.
You may be required to reboot after the cleaning process, and you can then reconnect to the internet. A full report can be found on your root drive, usually C:\rapport.txt
Another option is to restore Trusted and Restricted sites, type in 3, hit Enter.
You will then be prompted with ‘Restore Trusted Zone?’ Type Y, hit Enter.
Some anti-virus programs detect process.exe as a ‘risk’. It is NOT a virus, it is a program used to stop system processes.
Zlob Removal
Download this file to your desktop
http://www.mvps.org/winhelp2002/DelDomains.inf
Close all browsers, right-click and select: Install
Disconnect from the internet.
This program doesn’t really install, it just clears all sites in the Domains and Ranges keys.
Afterward’s you will need to immunize again in SpyBotS&D and re-protect again with SpywareBlaster or re-install iespyadds if it’s installed, then the file itself (DelDomains.inf) can be safely deleted.
Simply use the Search or Find utility to locate it and delete it.
When your machine is clean, ensure that your Anti-Virus is up to date, I recommend that you use SpyWareGuard, SpyWareBlaster, CCleaner, and AdAware.
Email Danger - Free Web Tools
Below is a copy of an email I received - several copies of it too.
DO NOT open this email as it contains a Trojan Downloader, just Delete it
Virus Name: JS/Psyme also known as HTML/Mht@exp
Spreads through Web Browsing, Downloads Code from the internet, Exploits your system and/or Software vulnerabilities.
Ensure your anti-virus is up-to-date. I recommend AVG Anti-Virus (freeware)which catches these Trojans and opens a ‘Threat Detected’ window.
If you are infected with this update your virus definitions file and reboot into Safe Mode, scan with anti-virus and also scan with ad-aware.
Email will read similar to this, with some variations:
Welcome Member,
We are so happy you joined Free Web Tools.
Member Number: 6257277682314
Your Temp. Login ID: user3795
Your Password ID: eq708
Please Change your login and change your Login Information.
Use this link to change your Login info: Free Web Tools
Welcome,
Internet Support
Free Web Tools
Thursday, June 07, 2007
Virus Protection from AVG - Tutorial included
Because new viruses erupt daily, it is important that you regularly update your antivirus software. Become familiar with the software’s real-time scan feature.
Make it a habit to always scan all new programs or files no matter from where they originate.
Perform regular backups in case your system is corrupted. It may be the only way to recover your data if infected.
I suspect a lot of people get virus infections because they download random files off the internet. Kazaa/eMule and other peer-to-peer are great places to download infected items. It is important that if you use such programs that you have one dedicated folder to download too, and before opening or running anything scan it first with an anti-virus program. I recommend that people who want to exchange files over the internet (including entire folders of files) do so using encrypted solutions (and only with friends or people they know). A great new application is GigaTribe, it encrypts all exchanges, no files size limits, and is free from any spyware/adware.
Their website is http://www.gigatribe.com
AVG Anti-Virus Free Edition is a free downloadable antivirus program that has received high marks for its reliability. In the past, free downloadable antivirus programs have been viewed skeptically because of issues relating to its reliability.
However, AVG from Grisoft, remains one of the best-known free anti-virus programs available. While AVG cannot be installed on a server operating system and there is no technical support, it still makes a good choice for many home computer users.The best part is that it is free for both Windows and Linux and it checks for updates on a regular basis.
I have been using AVG free Anti-Virus for many years and install it as first choice on other peoples machines.
Get yours here:http://free.grisoft.com/doc/avg-anti-virus-free/lng/us/tpl/v5
Save the program to a folder which is easily accessible, I created one on my desktop and renamed it Downloads, this is where I download all of my utilities etc. so I have them in one easily accessible location.
Once installed AVG loads at startup and sits in your system tray.It will carry out a complete scan on a daily basis, but you can schedule it to do this at a time convenient to you. When it has completed its scan a small window will pop up with the results.
You also have the added benefit of real-time scanning as it runs in the backgound and will warn you if something you are downloading is infected.
You can also left click any folder or an item within a folder and scan it with AVG.
Important: Do NOT use more than one Anti-Virus programas it will give you false readings.
http://free.grisoft.com/doc/avg-anti-virus-free/lng/us/tpl/v5
Windows Media Player Tutorial - Click Here
Wednesday, May 30, 2007
Securing Windows XP
Automatic Updates
Keeping your system up-to-date is crucial to maintaining security. Microsoft releases security updates and makes them available for download on the Windows Update web site.
Using the Automatic Updates feature, Windows XP can be configured to download and install updates for you automatically at a time that suits you.
Scheduling this task is very simple. In Windows XP, use the following steps to enable this feature:
1. Right click My Computer and select Properties.
2. Click the Automatic Updates tab from the System Properties box.
3. Select the option to Automatically download the updates, and install them on the schedule that I specify.
4. Select the day and the time when you want the updates installed.
5. Click Ok.
Windows Firewall
Windows XP includes the Internet Connection Firewall service. In Windows XP Service Pack 2, the ICF is renamed to Windows Firewall and it is enabled by default. It is designed to protect your computer from intruders while it is connected to the Internet.
Note: if you are setting up a home network, do not enable Windows Firewall on your LAN (Local Area Network)connection. Only enable it on the Internet connection. If you enable it on your LAN connection, it will block File and Printer Sharing.
Important NoteIf you are using Zone Alarm Free Firewall DO NOT enable the Windows Firewall.
User Accounts
Windows XP includes various built-in user accounts. There are certain steps that you should take to ensure they are not compromised.
Disable the Guest Account. The guest account has always been a huge hacker hole and should remain disabled if it is not required.
Require passwords for all user accounts. Obviously, blank passwords are a bad idea if you care about security.Make sure you assign passwords to all accounts, especiallythe Administrator account and any accounts with Administrator privileges. All passwords should be a minimum of eight characters in length.
In Windows XP Home Edition all user accounts have administrative privileges and no password by default.Make sure you close this hole as soon as possible.
Rename the Administrator account. By renaming the administrator account hackers will have to guess the password and the name assigned to the account.
Don’t make it easy for hackers, renaming the Administrator account will stop some hackers in their tracks, and will deter the more determined ones. They won’t know what the group permissions are for an account, so they’ll try to hack any account they find and then try to hack other accounts toimprove their access. If you rename the Administrator account, try not to use the word Admin in its name. Pick something that won’t make it easy for others to guess.
Remote Desktop
Windows XP Professional’s Remote Desktop allows users to connect remotely to your computer.Although it can be useful for obtaining remote assist with troubleshooting problems, it is also an open door for intruders. Remote Desktop should always be disabled and only enabled when it is needed.
To disable Remote Desktop right click on My Computer, select properties then click on the Remote tab and untick the check box beside Allow Remote Assistance invitations to be sent from this computer.
Anti-virus Software
Anti-virus software is a program designed specifically to detect and remove viruses, making it an essential application to install. Once you install anti-virus software,it will scan your computer and clean any viruses it finds.
Some of the more popular antivirus software programs are listed below, though I refuse to pay for these as mentioned below you can get the same protection for free.
1. Trend Micro
2. McAfee
3. F-secure
4. Symantec
5. Computer Associates
6. Panda Software
Most anti-virus software must be purchased or it may be included with the purchase of a new computer for a limited time.
I highly recommend the use of AVG-AntiVirus available fromhttp://free.grisoft.com/doc/avg-anti-virus-free/lng/us/tpl/v5
I have covered this with a tutorial athttp://cotojo.wordpress.com/2007/04/27/avg-anti-virus-installation-guide/
Important note: DO NOT use more than ONE anti-virus program on your pc as this will cause conflicts.
I prefer to use AVG which scans daily and also runs in the background continuously. On a monthly basis I use Trend Micro housecall online.
Screensavers
Ok, so you are sitting at your desk, or left it for a while and suddenly, a nice image appears on your screen. Ok it’s your screensaver. However, screensavers can serve a much more important purpose other than providing us some cool images, and preventing screen burn.
Enabling a screensaver can increase the security on your computer.
Use a password protected screensaver, this stops others from accessing your computer.
You can configure a screensaver to start when your computer has been idle for a specific amount of time (eg: 5minutes). By password protecting the screensaver, the computer is locked when the screensaver starts. This is a simple idea for additional security. You will need to enter the correct password to resume using your pc.
So once a password protected screensaver has been enabled,you can walk away from your computer knowing thateverything is secure. In Windows XP, you can use the steps outlined below to enable a password protected screensaver.
1. Right click a blank area on your your desktop and click Properties.
2. From the Display Properties dialog box, select the Screensaver tab.
3. Use the drop down arrow to select your screensaver of choice.
4. Change the Wait value to specify how long the computer can remain idle before the screensaver is started.
5. Select the On resume, password protect option. If you do not select this option any activity will cause the desktop to appear.
Give your pc a quick tune-up at http://pcpitstop.com
Run the Full Tests from the menu on the left of the page after creating a user account and password.
Go to http://www.belarc.com/free_download.html
The Belarc Advisor builds a detailed profile of your installed software and hardware, missing Microsoft hotfixes,anti-virus status, CIS (Center for Internet Security) benchmarks,and displays the results in your Web browser. All of your PC profile information is kept private on your PC and is not sent to any web server. I would recommend that you print off the results page as it contains details of your Drivers and Software License Keys, useful if you have to perform a format.
Scan for any viruses at http://housecall.trendmicro.com/
Check to see if your ports are Open, Closed or in Stealth mode athttps://www.grc.com/x/ne.dll?bh0bkyd2
Check your internet connection speed at
http://www.abeltronica.com/velocimetro/pt/?idioma=uk&newlang=uk
Click the green arrow beside the flag on the top right of the header and select your language. Scroll down to Speedometer and click on Test Now.
Remember to always back-up your system or create a restore point before making any changes.
Safe surfing everyone
cotojo
Monday, April 16, 2007
How many spyware items are infecting your computer?
to my browser. What a nightmare! I have another article on this
topic, but this brings home a point. Spyware or adware items are
continually infecting computers. Most computers have no protection
from them. Most frightening is the frequency of them. From the
InfosecWriters web site, "According to a 2004 survey by America
Online and the National Cyber Security Alliance, 91% of users
questioned were familiar with the term spyware. Only 53% believed
their computers were infected, but a scan found that 80% of their PCs
had some type of spyware installed on them." It goes on to say,
"...The average number of spyware components per computer was 93 with
one computer having well over a thousand."
What is Spyware?
Butte College (www.bctv.butte.edu/support/spyware.html) offers this
definition:
“The term ‘spyware’ is broadly defined as any program that gets into
your computer without permission and hides in the background while it
makes unwanted changes to your user experience.
Spyware is generally not designed to damage your computer. The
damage it does is more a by-product of its main mission, which is to
serve you targeted advertisements or make your browser display
certain sites or search results.
At present, most spyware targets only the Windows operating system
(Internet Explorer).”
To be fair, spyware can be harmless, for example tracking cookies
don’t do much. While such things infringe on your privacy, they don't
really harm anything. Others, however, are extremely dangerous.
So what do you do about it?
No spyware program seems to do everything, but there are a lot of
goods solutions out there that can help. Here is a list of some of
the top Spyware tools to look at:
1) Try Ad-Aware 6.0 Professional from LavaSoft (there is also a free
version with less functionality)
2) Spybot Search & Destroy from PepiMK Software
3) Xoftspy form Pareto Logic
4) Spyware Guard from Javacool Software is a free program
5) Pest Patrol (now part of Computer Associates by acquisition)
6) McAfee Anti-Spyware
One thing is for certain: you do need to take spyware seriously.
For some reason, too many people out there think anti-virus solutions
are the end-all solution. They are not.
And, when all else fails?
Finally, as drastic as it seems, if your computer has been infected
with a large number of spyware programs, the only solution you may
have is backing up your data, and performing a complete reinstall of
the operating system.