answersLogoWhite

0

📱

Computer Viruses

Computer viruses are harmful pieces of software which can reproduce themselves and automatically spread to other computers and networks. Questions about computer virus techniques and specific computer viruses belong here.

5,673 Questions

How do you block Green AV from trying to make you buy its Antivirus Software?

Log into Windows Safe Mode. To get to safe mode reboot your computer and start pressing the F8 key repeatedly until the Safe Mode options screen appears. You want Safe Mode which is the first option, not Safe Mode with Networking.

If any user id's how up select the Administrator, if not don't worry about it. Once safe mode is up Click on My Computer and open your C: drive. Click on Tools/Folder Options/View. Then click on Show Hidden Files and Folders.

Green AV is normally located by navigating to the following directories: C:\Program Files\Documents and Settings\All Users\Application Data\GAV\gav.exe

  1. Delete gav.exe which is the executable module for the virus
  2. Delete mgrdll.exe this is the messenger for gav that keeps sending you the messges and popups
  3. Delete the folder GAV (just hit your back arrow one time to get back to folder Application Data then you will be able to see and delete folder GAV
  4. Right Click on your Recycle Bin and select Empty Recycle Bin or Double Click on your Recycle Bin and select Empty Recycle Bin

Now reboot your system and you should be rid of the pesky virus

What to do when your hood pops up when driving?

you pull over and hope that nowone saw you. you pull over and hope that nowone saw you.

Why computer getting slow and keeps on duplicating?

This is called a 'Companion Virus' where files are duplicated, and the duplicate files contain the virus, and can also be hidden in files, and this can repeat many times until the computer is ovverun.

Some Worms and Trojans use this method, Spybot S&D should be able to fix the problem.

It is available free from safer-networking.org.

How do you remove rust from tools?

Navel Jelly, available at any hardware store, or good old steel wool and elbow grease.

How do you search fo a particular file in MS-DOS?

Go to the root directory of the drive (eg c:\), then type: dir <filename> /s For example, to search for the file fred.doc, you would type: dir fred.doc /s Adding /s to the dir makes dos search all the subfolders, so starting in the root directory makes dos search the entire disk.

Does pirate bay give viruses?

Yes- The piratebay site or ads on it's home page plays host to a piece of software called "antivirus 2010" or "anto virus XP 2010" it selfloads on your computer and starts to throw up bogus security warnings, it also opens links to drug sites and adult sites- it's main purpose is to get you to buy a "full version" of itself. Do not do this, instead remove it...Purchasing it will lead to the theft of your credit card info. This spyware will also disconnect icons and prevent you from opening your browser or other software. You need not download or start any torrents for it to download itself.

Got infected at The Pirate Bay yesterday (03/06/2010) with XP Antivirus 2010. I didn't click a thing. Even with an updated copy of Avast running as well as Spybot Seek and Destroy running, I was still infected.

Removal:

Hopefully you have Spybot Search and Destroy. If not download it on a friends computer to a USB flash/ thumb drive or CD.

Immediately reboot into in safe mode. Reboot and press F8 during the reboot. Windows will give you a menu of options. Choose safe mode.

Do a search for av.exe. It will find av.exe and also a prefetch version.

Open task manager. (CTRL-ALT - DELETE)

End Task the AV.exe

Go to your search results and right click on av.exe. Immediately delete AV.exe and the prefetch version of the file as well. If it says unable to delete it, go back to task manager and make sure you have clicked on av.exe and then clicked end process and then again go immediately to the window with your search results and delete the av.exe file.

Go into your C drive, Programs, Spybot Search and Destroy folder. In order to get around the problem of not being able to launch executables (.exe files) change the .exe to .com. (right click on SpybotSD.exe and choose rename, rename the file SpybotSD.com) The double click the file to Run Spybot Search and Destroy. Run the scan and Fix the problems it finds.

Run Ccleaner to clean out all the accumulated crap.

Problem fixed. Reboot the machine and run a full virus scan on through mode, just to be sure there are no other issues remaining.

How do you get unbanned on aqw?

Sorry 2 say u can not Unband ur self. The only way 2 do this is by creating a new account.

i know for some people who gotten banded and try to get a new account cant. Because its says account creation suspended. the only way 2 create a new account is by doing it on another computer.

:D Happy playing

Describe a computer worm?

A worm is another type of malicious code, or malware, that focuses primarily on spreading to other vulnerable computer systems. It typically spreads by sending out copies of itself to other computers, either via email, instant messages, or some other service.

(I copied this from Norton so that it would be specific!)

Is there a browser virus letting your computer download radom programs?

Yes, there are certain viruses that get installed in your computer as extensions and start downloading random programs.

How do you solve database are obsolete in kaspersky antivirus?

Well im not sure but i take it you have an illegally downloaded copy of this program from a torrent site, this will dis-allow you to update the program as it would void your fake key.

Im not sure if this is the case or not, because you simply should be able to click "Fix It" And the updates should just automatically download.

Thank you and good day

Answer 2:

The above answer made a number of unfortunate assumptions, that I will attempt to clear up.

There are no illegal copies of Kaspersky Anti-virus or Internet security on torrents or otherwise, the simple reason being that Kaspersky offer a 1 month free trial version of either program on their website. However fake keys for Kaspersky do exist. A fake key/or duplicate would give a "key blacklisted" message (as described on their website), and not a "database obsolete" message.

If you're Kaspersky virus definitions are out of date, you will get a "database out of date" message, after this if Kaspersky is not updated for a while, the next message you get is "database is obsolete".

This can happen if you have your updater set to manual and not automatic, or if your current purchased license has expired. So either do a manually update (press update button), or set updates to automatic (i.e., it will update automatically whenever new virus definitions are available). If your license has expired, then you'll have to buy another one to update. If you can't update your database with these options then contact their customer support, or ask for help on their forum.

In either event, Kaspersky does not become inactivated if the database is obsolete (no matter for how long it is left for), and will work as normal. However it will use the old virus definitions until it is updated.

What is an antivirus sweep?

viruses, malware, and spyware are antivirus army. many people will think that is anti-virus task. however there is always function of Disk cleaner, History cleaner, Process supervisor, LSP repair tools, and System repair tools.

so if u install the antivirus(such as kingsoft free ) , u will experience more

How do you walk on walls on cp?

This is no hack! It's so easy. All you've got to do is go to the iceberg (this works anywhere). Now go to the end of it and zoom to 850. When you see sky click on the nearest sky not covered up by the line! Now you should walk to it. You did it!

How do you get rid of a Trojan dropper?

Trojan dropper can be cleaned and removed with the hep of your licensed antivirus. sometimes you might not get exactly where the torjan exists, so recommended opt for Antivirus scan.

Trojan Dropper is a backdoor Trojan computer virus. This means that once the Trojan infects your computer, it opens a security home (or "backdoor"), which can then be used by remote hackers to access your private information and download large amounts of adware onto your computer. Moreover, Trojan Dropper will slow your computer and generate pop-ups. Fortunately, the Trojan can be removed manually before causing irreparable damage.

1.Press "Ctrl," "Shift" and "Escape" simultaneously to open the Task Manager.

2.Click the "Processes" tab.3.Click "Show Processes From All Users."4.End the following processes (o do so, right-click the process and select "End Process"):

  • search[2].exe
  • sysrtmvs.exe
  • senh.exe
  • wd7gi8nnew.exe
  • visfx500new.exe
  • OEM.exe
  • numbsoftnew.exe
  • Mendoza1.exe
  • Mendoza.exe

5.Close the Task Manager.

6.Click "Start," type "regedit" into the "Search" box, and press "Enter" to open the Registry Editor.

7.Delete the following registry entry from the left pane of the Registry Editor: Microsoft\Windows\CurrentVersion\Emitt

  • To delete a registry entry, right-click the entry and select "Delete." If you are having trouble locating the entry, click "Edit," "Find" and type the name of the entry into the "Find" box.

8.Close the Registry Editor.

9.Click "Start," and click the "Search" box.

10.Search for and delete each of the following files:

  • search[2].exe
  • sysrtmvs.exe
  • aouei
  • senh.exe
  • wd7gi8nnew.exe
  • visfx500new.exe
  • OEM.exe
  • numbsoftnew.exe
  • Mendoza1.exe
  • Mendoza.exe

11.Restart your computer.

If you are browsing on a personal banking website and get a salami attack is your banking info in danger?

This would depends on what were the symptoms of the salami attack,

Also it would depend on what antivirus ,firewall ,anti spyware and browser you had at the time of the attack.

How do you end sysupd exe in task manager so you can delete it?

sysupd.exe is a process process associated with an Dialer application. It tries to disconnect your current internet connection and dial a toll number with ...

www.liutilities.com/products/wintaskspro/processlibrary/sysupd/

Run Malwarebytes Anti-Malware

Run the anti spyware removal programs spybot

Run Superantispyware

Run a complete scan with free curing utility Dr.Web CureIt!

Sysupd ExeHere's how I did it:

1) Write a batch file killsysupd.battop

ren sysupd.exe xxx del sysupd.exe goto top

Start this batch file - it will run continuously.

2) Press Ctrl-Alt-Del to go into Task Manager. Right click on the sysupd process and select Set Priority. Set it to Low. Now find the process for your batch file and set this to High.

3) Highlight the sysupd process and choose End Process.Confirm Yes and the batch file running at high priority should be able to kill the program before it can restart.

4) Switch to the batch file window. When it starts saying file not found you can press Ctrl-C to end the batch file.

Here is more input:

  • Install a firewall on your machine. there are free ones you can find easily. using the firewall you can stop the sysupd.exe from doing whatever it is doing online, which was prohibiting you from stopping the service. ctrl+alt+delete to bring up the task manager and stop the service. if you close task manager, I've found the sysupd.exe starts right back up, so don't close the task manager until you've searched for the sysupd.exe on your machine, and deleted it completely. cool.

enjoy.

  • Sysupd.exe is a known dialer and also accompanies dpusys.ini usually found on the desktop, but known to other locations as well. To get rid of, end process on sysupd.exe. Make sure that you are set to see all hidden system files and folders. Search your hard drive for the following SYSUPD.EXE and DPUSYS.INI. Delete all found instances of these files. Reboot!
  • Delete the sysupd.exe from registry. Download the adaware 6.0 {www.tinyurl.com/tjxr} do a complete scan..delete all infected files. Do a complete chk for sysupd.exe in the whole system. Delete it. It should work out.
  • Make sure you check the Startup folder (Start->Program Files->Startup) and look for a wscript file. It is a Visual Basis script file that generates network traffic via Internet Explorer and (I believe) always tries to reinfect the PC.
  • I found deleting sysupd.exe difficult. It worked in conjuction with a program called Advertimondo. I tried to delete if from the start-up menu and it wouldn't let me. McAfee viruscan found it but since it contstantly runs it wouldn't let me delete it. I finally went to the registry and did a find on sysupd.exe and deleted all references. One problem is it is resident in the reg start up folder. doing this apparently got rid of it since it no longer runs and I can find no reference to it in task manager, McAfee and the startup menu. The program was also imbedded in Advertimondo. This was really a pain in the neck.
  • To end and delete 'sysupd.exe' from WinXP this is what I had to do: run a command prompt; find the sysupd.exe file in C:\windows; RENAME the file to sysupd.old (attempting to delete the file while in memory returns "access denied" error). Once the file is renamed then you may end the process in Taskmgr and once that process is killed you can go back into C:\Windows and delete the file you renamed (sysupd.old), reboot and run SpybotS&D, AdAware, Webroot Spysweeper, etc., to remove any remnants of the bundle that remain.
  • Here's what worked for me: locate the directory containing sysupd.exe. Open Task Manager Processes and find sysupd.exe. Run some CPU intensive apps to slow your machine down, this should give you a couple of seconds between killing the process and it restarting, enough to flip over to the directory and deleting the .exe
  • I wrote this batch file, started some CPU intensive task, and ran this. pskill sysupd ren c:\windows\sysupd.exe sysupd.old del c:\windows\sysupd.exe del c:\windows\sysupd.old dir c:\windows\sysupd.* In this order it was fast enough to delete it. Remember to clean your registry as well afterwards. No reboot required.
  • I found this really hard to get rid of - the process restarts itself as fast as you terminate it in Task Manager and the file is recreated eevry time you rename or delete it.

What is Filter Results?

Filter Results is an adware in fact sneaking into your PC without making you any inform and warning. When you are aware of its existence, it is too late, because it has made you in trouble.

If you want to know more about it and remove it from your PC, there are two removal guides-manual removal and automatic removal guides in virusremovalexpert.blogspot.com. I hope you can get help from it.

What are the advantages and disadvantages of naked virus?

Naked viruses, which lack an envelope, have several advantages, including increased stability in harsh environmental conditions and resistance to detergents and heat, allowing them to survive outside a host for longer periods. These properties enhance their transmissibility and ability to infect hosts. However, their lack of an envelope also means they are less versatile in evading the host immune system and may have a narrower range of host cells they can infect compared to enveloped viruses. Additionally, they often rely on more direct methods of cell entry, which can limit their infection strategies.