Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Is this a method for dealing with new soft and related viruses?


  • Please log in to reply
1 reply to this topic

#1 sjd

sjd

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:12:15 PM

Posted 30 May 2010 - 08:20 AM

Is this a method for dealing with new soft and related viruses?
Many people have reported being infected with viruses which cause bogus security alert popups and which sabotage resident antivirus programs by preventing [antivirus.exe] from running. NewSoft virus is one of (seemingly) many which do this type of thing. Evidently the only way to remove them is to have an antivirus program newly loaded from a flash drive or something similar. I wonder if this would work: suppose you started your antivirus program but did not start a scan. Then, when you connect to the internet and get infected, could you just disconnect from the internet and start a scan from the already-opened antivirus program? If the antivirus program has already been opened, then the virus that sabotages the [antivirus.exe] should not inhibit the scan. Am I missing something obvious? I'd appreciate some expert feedback. Thanks

BC AdBot (Login to Remove)

 


#2 Orange Blossom

Orange Blossom

    OBleepin Investigator


  • Moderator
  • 37,011 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:Bloomington, IN
  • Local time:12:15 PM

Posted 30 May 2010 - 02:09 PM

That would not work at all. If the infection blocks the AV, it will do so whether or not you are connected to the internet and whether or not you have started a scan.

AV programs, if set up properly, are up and running anyway. If they weren't, they wouldn't be able to do real-time detection and block threats from entering or activating.

Orange Blossom :thumbsup:
Help us help you. If HelpBot replies, you MUST follow step 1 in its reply so we know you need help.

Orange Blossom

An ounce of prevention is worth a pound of cure

SpywareBlaster, WinPatrol Plus, ESET Smart Security, Malwarebytes' Anti-Malware, NoScript Firefox ext., Norton noscript




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users