PDA

View Full Version : generic.PUP.z & backdoor.bandok



whatsthis?
03-24-2009, 05:44 PM
Hi everyone
Not a techie (wish I was). I don't know how to post logs, etc. I have spydoctor, mcafee and adware alert, all up-to-date and working well in terms of finding viruses. All keep finding genericPUP.z and backdoor.bandok. They quarantine them, I remove them, and ten minutes later, both viruses are back again (I can tell before the pop-up comes because my PC fan starts going bonkers). Is there anything I can do myself before getting the pro's in? Specifically, one virus says hkey user-users\s-1-5-21-1887615345-3482257737-1356089945-1005\software\microsoft\windows\currentversion\pol icies\system,disabletaskmgr. Thanks.

haapy
03-24-2009, 05:56 PM
I suggest that you do a systematic cleanup. You need to use multiple tools and this will take a lot of scan time.

Clean Restore Points
Manually create a new restore point
\Windows\system32\restore\rstrui.exe

Run Disk Cleanup
\windows\system32\cleanmgr.exe
and choose options , delete all but the current restore point.

Download, install and run CCleaner with Cleaner and Registry options.

Perform an update and full scan with Spyware Doctor and McAfee, then temporarily disable them.

Download, install and update and scan Avira free edition antivirus.

Download, install and update and full scan Superantispyware.

Download, install and update and full scan Malwarebytes Antimalware.

Uninstall or disable the real time protection of Superantispyware (it has real time protection that may conflict with SD).

Uninstall or disable real time protection of Avira (you never want more than one AV program running).

Malwarebytes is OK to leave as is.

Enable Spyware Doctor and McAfee programs.

Re-boot.

If this does not clean up your system, then you have some really bad malware and it will take a lot more time to research and find out what it is.

whatsthis?
03-24-2009, 06:53 PM
Hi there. Thanks for that. I'm a quarter-way through the process. Let's hope it works, and thanks again.