Thought I would update this security section with some more info. Especially as most of my time of late has been spent out on the road fighting malware.
These are the tools that I use at the moment pending those malware writers from running background tasks to stop you installing them. If they do then rename the installer before running the app.
malware scanners:
malwarebytes
superantispyware (has some script tools for those taskmanager switch offs etc)
ccleaner
atf cleaner
Antivirus software: dont use often as time is usually limited when on site but
Avast (when installed will scan system on startup so has a better chance of finding those hidden virus/malware)
Also when the system is so unusable and even in safe mode then I will use UBCD so that you can run superantispyware from CD. Only helps if its the latest download or the system you are fixing is on a router with internet access so that you can update.
Then if that has helped run malwarebytes after in windows. Both these have quick scans so usually only take about 15 mins to run. I do trust Malwarebytes more to find malware that appears to be buried. However thats down to the virus/malware writers to stop that happening I'm sure it will soon as they get to know what the current tools we use to combat the terror.
Spybot I used to use but have found that of late its Malwarebytes that seems to be a snip better then the others and quick to use.
Oh and if system restore hasn't been switched off try that as well back to a previous date and then run the above apps before thinking about reinstalling windows etc.
If you do find that its best to reinstall the system back to factory default (probabaly because of time restraint) then you'll probably need to do a backup of your/their data.
Micro-Scope DUO will help here with the supplied Puppy Linux, You can repartition the drive and then copy the data over to that partition or copy data over to an external HD or memory stick.
In some cases when using system restore it will not be succesfull, well one trick is to rerun system restore from safe mode.
However in all cases don't forget once you have the system up and running to remove sytem restore points restart and create a new restore point.
You may also find that the Antiviris software that was running on the PC has been damaged or switched of so uninstall and reinstall. It might be best if you get the av suppliers tools to uninstall the AV's rather than relying on the normal uninstaller (which dont clear all the rubbish out).
If the PC has only just been infected then I may do a system restore first and then run the scanners afterwards but thats usually ok if it has only just been infected or has not been used very much since it was first realised that it had been infected.
I will leave these apps on the PC so that a full test can be run by the user and leaving him with the choice of paying the software writers a fee for their full versions - only fair if its helped them to get their PC up and running again.
So how do you go about resolving these issues?