Welcome, Guest. Please login or register.
November 23, 2009, 11:03:06 AM

Login with username, password and session length

337091 Posts
37304 Topics
84574 Members

Latest Member: nrcmn

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Desktop Security Products
| |-+  Comodo Internet Security - CIS
| | |-+  Virus/Malware Removal Assistance
| | | |-+  What to do if you're infected - eXPerience Rev.3
« previous next »
Pages: 1 2 [3] Go Down Print
Author Topic: What to do if you're infected - eXPerience Rev.3  (Read 7531 times)
knk2006
Comodo Member
**
Offline Offline

Posts: 41


« Reply #30 on: August 25, 2009, 07:53:34 AM »

Download and burn Avira's Rescue CD, it will scan offline and that will be much more reliable then an "online" scan...

http://www.avira.com/en/support/support_downloads.html

Avira AntiVir Rescue System

Use the ISO download and burn it to a CD, next boot your system from it and run a scan.


yeah that what was in my mind .. but I also still wonder if the Avira's CD will be able to clean the files when they are infected with worm , because you don't want to delete explorer.exe for example  Undecided  .. as far as I know the only CD here with this ability is DrWeb live CD ... correct me if I'm wrong ..
Logged
eXPerience
Malware Researcher Virus Removal Helper Advanced Tweak Freak Crazy Little Devil
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 6472


Why not ? The choice is yours !


« Reply #31 on: August 25, 2009, 07:59:34 AM »

yeah that what was in my mind .. but I also still wonder if the Avira's CD will be able to clean the files when they are infected with worm , because you don't want to delete explorer.exe for example  Undecided  .. as far as I know the only CD here with this ability is DrWeb live CD ... correct me if I'm wrong ..
I'm planning on using that LiveCD from DrWeb anyway Wink. But let's see what we can come up with also Smiley

eXPerience
Logged

Kyle
Computer Security Testing Group
Comodo's Hero
*****
Online Online

Posts: 3133



WWW
« Reply #32 on: September 16, 2009, 09:41:17 PM »

Bump didy dump.      You need to reupload those pics on the front page XP Smiley
Logged

E5200 2.5ghz [at] 3.2ghz, POV 9800gt 512mb, 2gb DDR2 RAM.  500gb. HDD

DUAL BOOT: 
Linux Mint - Everything.
Win XP - Only when needed.
LaserWraith
Usability Study Member
Comodo's Hero
*****
Offline Offline

Posts: 3146


BSOD is my friend. He should be yours!


WWW
« Reply #33 on: September 17, 2009, 11:17:16 AM »

Bump didy dump.      You need to reupload those pics on the front page XP Smiley

Yeah Cheesy.

But he is gone for good....


(Last active: September 14...seems like ages ago...)
Logged

Visit my site!

Some of my articles - click for blog page.


Dch48
Comodo's Hero
*****
Offline Offline

Posts: 714



« Reply #34 on: September 18, 2009, 02:31:22 PM »

Download and burn Avira's Rescue CD, it will scan offline and that will be much more reliable then an "online" scan...

http://www.avira.com/en/support/support_downloads.html

Avira AntiVir Rescue System

Use the ISO download and burn it to a CD, next boot your system from it and run a scan.


Use a rewritable CD, Avira's rescue disk is not updateable. As I understand it,you need to redownload it every time you want to use it unless it has changed since it was reviewed at remove-malware.com.
Logged

HP dv5215us Laptop
Turion64 ML-34 1.8ghz single core, 2g RAM, 5meg cable connection
XP Professional SP3, IE8 & Outlook Express
CIS 3.13 full
languy99
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 835



« Reply #35 on: November 01, 2009, 02:40:19 PM »

why don't you guys include my SARDU videos on the how to? A bootable solution in my opinion is the only way to truly clean a computer today. 


Quote
I decided to make a video set on how to use SARDU and how to use it to clean a system.

Here you go.

Video 1  http://www.youtube.com/watch?v=JiJ1aUHql3E
Video 2  http://www.youtube.com/watch?v=VUUTUICZj0A
Video 3 http://www.youtube.com/watch?v=uaiCzSl_Eb4
Logged

http://www.youtube.com/languy99

Software Reviews For All
emhami2009
Newbie
*
Offline Offline

Posts: 5


« Reply #36 on: November 01, 2009, 02:50:42 PM »

hiya (and yet again SORRY if i'm posting in the wrong place!)...

i just posted the following question in the "what to do....Rev.2" not realising there was a Rev 3....

"Hello,

I seem to be having some 'kido.ih' virus problems.....& not having too much experience, self taught, have been trying to resolve them various ways.....kaspersky's kidokiller resulted (when i was FINALLY able to get CIS to update after various steps - seems maybe going back using system restore to the date at which comodo's AV was last updated MAY have been what helped) as infected (I've quarantined it)....

and so I'm now following the instructions here....BUT bitdefender during setup tells me i should uninstall any other AV i have on the computer - i only use comodo - which picked up kido whereas malwarebytes for example did not....

I'd greatly appreciate any advice - & hope I've posted in the right place.....

Thanks,

Em.
"

BUT, i see here that you are not even advising the use of bitdefender any longer - is there a reason for that?

Thanks for any info you can share,

Em.

ps: i haven't yet setup bitdefender & am about to run superantispyware for the first time - ANOTHER question i would like to ask is the following:

my knowledgable friend (who isn't around right now) says that really one can ultimately waste a lot of time dealing with these viruses - & you're better off just backing up & reformatting....your thoughts?

Logged
languy99
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 835



« Reply #37 on: November 01, 2009, 03:23:35 PM »

my recommendation is watch my videos and follow what I did, then use the kaspersky bootable part of sardu, boot up with that, update it and do a full scan, remove anything it finds.

If still not cleaned, follow up with a Sardu scan using Gdata. Gdata combined with Kaspersky have a detection rate of at least 99.9%
« Last Edit: November 01, 2009, 03:39:00 PM by languy99 » Logged

http://www.youtube.com/languy99

Software Reviews For All
Monkey_Boy=)
Product Translator
Comodo's Hero
*****
Offline Offline

Posts: 1154


^^^^


« Reply #38 on: November 01, 2009, 03:34:40 PM »

I think emhami2009 friend is bringing up a valid point, many times a format can save you a lot of time (and speed up a computer thats full of junk, most homecomputers is full of junk after a while anyway and experiences major slowdowns..).. Ofc make sure to apply all windows updates directly after the format, or you will have a OS open to all sorts of attacks..

And always wear a condom err I mean, always use protection.. For the computer that is..  Wave comodo is currently working on a product to make it possible to jump back in time when stuff like this happen and you get infected.. https://forums.comodo.com/beta_corner_ctm/comodo_time_machine_21116458141_beta_released-t46766.0.html <-- read about it if you like. =) But its beta so don't use it..  Grin
Logged
syzygy
Newbie
*
Offline Offline

Posts: 8


« Reply #39 on: November 14, 2009, 07:39:37 PM »

I haven't been on here in a while and I don't see a way to start a new thread - kk

Has ne1 else had the experience of getting a comodo update only to find that the update has created a new configuration called "updated"?  On examination the configuration under the heading "My Protectied Con Interfaces" contains nothing  - it is null.

Isn't this a bit irregular?

I deleted the configuration - and was told I was successful - but I have no idea whether I am now compromised...
Logged
Ronny
Product Translator
Global Moderator
Comodo's Hero
*****
Online Online

Posts: 4900



« Reply #40 on: November 15, 2009, 07:40:05 AM »

If you upgrade a previous CIS version the updater will "copy" your current settings to the new install and add -updated behind the name of the profile.

You so somehow don't trust the settings, you can always select the default "Internet Security" or the more secure and more alerting "Proactive Security", downside of this is that all your rules have to be recreated because they are not part of the previous configuration.
Logged

Any concerns? Please send me a PM and/or review the Forum Policy !
Tags:
Pages: 1 2 [3] Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 0.045 seconds with 20 queries.
Powered by SMF 1.1.10 | SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by 7dana.com