Windows: Difference between revisions
From DWIKI
m (→FAQs) |
|||
Line 25: | Line 25: | ||
*crapcleaner | *crapcleaner | ||
First let the scanners fetch their updates, disconnect system from network and then run malwarebytes before combofix | |||
===virus scanners=== | ===virus scanners=== |
Revision as of 08:39, 27 April 2011
Links
Tools and commands
mmc
wmi
Windows Management Instrumentation
mmi
setacl
netsh
Third party tools
Viruses and spyware
- http://www.malwarebytes.org/
- http://www.combofix.org/
- crapcleaner
First let the scanners fetch their updates, disconnect system from network and then run malwarebytes before combofix
virus scanners
- AVG
- avira
avoid Norton :)
FAQs
change NT password
Boot a linux rescue CD containing chntpw and use that, or boot sysrescuecd and select 'ntpasss'
collect passwords
http://www.maxfreeware.com/cain-and-abel-4920-microsoft-password-recovery.html
Recovery console
Boot from CD, press R for recovery console
recovery console commands
Error logs
Problem access rights profile
(exact message???)
seems related to "prf*tmp" files on stored profile