Windows: Difference between revisions

From DWIKI
 
(3 intermediate revisions by the same user not shown)
Line 19: Line 19:


==Viruses and spyware==
==Viruses and spyware==
*[http://www.livecdlist.com/purpose/windows-antivirus The liveCD list]
*[http://www.surfright.nl/en/hitmanpro Hitman Pro]
*[http://www.surfright.nl/en/hitmanpro Hitman Pro]


Line 25: Line 27:
*crapcleaner
*crapcleaner


Run malwarebytes first, then combofix
First let the scanners fetch their updates, disconnect system from network and then run malwarebytes before combofix


===virus scanners===
===virus scanners===
*AVG
*AVG
*avira
*avira
 
*avast


avoid Norton :)
avoid Norton :)
Line 38: Line 40:
Boot a linux rescue CD containing chntpw and use that, or boot sysrescuecd and select 'ntpasss'
Boot a linux rescue CD containing chntpw and use that, or boot sysrescuecd and select 'ntpasss'


===collect passwords===
http://www.maxfreeware.com/cain-and-abel-4920-microsoft-password-recovery.html


===Recovery console===
===Recovery console===

Latest revision as of 18:51, 15 December 2013

Links

Tools and commands

mmc

wmi

Windows Management Instrumentation

mmi

setacl

netsh

Third party tools

Viruses and spyware

First let the scanners fetch their updates, disconnect system from network and then run malwarebytes before combofix

virus scanners

  • AVG
  • avira
  • avast

avoid Norton :)

FAQs

change NT password

Boot a linux rescue CD containing chntpw and use that, or boot sysrescuecd and select 'ntpasss'


collect passwords

http://www.maxfreeware.com/cain-and-abel-4920-microsoft-password-recovery.html

Recovery console

Boot from CD, press R for recovery console

recovery console commands

Error logs

Problem access rights profile

(exact message???)

seems related to "prf*tmp" files on stored profile


Get hardware info

cpu-z