Virus Related Question!

B

beatnik

Well i use Kasperksy on my XP. I Updates 3-4 times a day! I though i was
safe! But i am not! Even though i use an updated AntiVirus and Firewall i
still get infected with viruses, worm stuff like that. Epsecailly the Sasser
and Lovesan worms.

Within some minutes after the worm infection kasperkey tells me that have
found a worm in systerm32 folder calles TFTP(some number) and after some
other minutes it founds more and more and more files liek this, only the
muber changes. I even get lsass windows telling me that the ystem will
shutdwon in 1 minute.

WHY am i infected? Well for one thing until 1 week ago i was never turned on
automatic win upadtes. I always have this feature disables ( i really dont
know why). Ok then i realised that my system had way to many open holes
(windows programming errors) that patches claim to correct. Although i ahve
googled and found the appropriate patch my system wont accept it! What
happens exaclty is that when i try to install the patch the program tries to
run and then closes immediately or i get an error access denied even though
i am the admin of my pc and logged in as in.

a) Why the patch wont install although my win is activated?!? What must i do
to make it install??!?!

b) Kaspersky screams that finds worms every 10 minutes or less. Why damn
it?!?! If it is able to find them and identify them after i am infected with
these why it does not detect the worm the minute that atttemtps to break
into my pc? After all is nt that AV soft is supposed to do? Preventing virus
to break in into pcs? Do i have to get infected and then clean/delete the
virus? Why not just work like "The Prevention is way better than the Cure"??

c) Kasperksky asks me what i want to do with the virus(.exe) that found in
system32. Well i say delete it of course but then damn AV cant delete
because it says that the virus is in use or access denied! Well thats
logical meaning that the virus(.exe) is already been executing/running in
memory as a proccess but then again why not the aV just KILL the damn
process and all its relevant files ?!??! After all it knows the virus id and
how exaclty the virus is working!!! Well ic an fic it by booting in safe
mode where no other proccesses runs except basic system ones.

d) If you care to answer and i know Gandalf is 9and i appreciate that)
please explin to me this in detail so that i can clarify this one and for
all!

e) Thanks and sorry i ask these here but i know you can answer this!

f) Also wantes to mention is these problems relevant to the fatc than i cant
run Xnews because it just closes by itself as well as Kerio v2.5.1 does the
same?!? I cant explin thise ackward behaviour!!
 
C

Conor

Well i use Kasperksy on my XP. I Updates 3-4 times a day! I though i was
safe! But i am not! Even though i use an updated AntiVirus and Firewall i
still get infected with viruses, worm stuff like that. Epsecailly the Sasser
and Lovesan worms.
Only people who don't use a firewall and don't apply Windows updates
get Sasser.
 
B

beatnik

Conor said:
Only people who don't use a firewall and don't apply Windows updates
get Sasser.

yes but what if they(me) cant install the damn patch that they download
because when they do they get thr message Access Denied although they run it
as admins(logge in) and even if they try in safe mode?
 
J

Jeffrey A. Setaro

yes but what if they(me) cant install the damn patch that they download
because when they do they get thr message Access Denied although they run it
as admins(logge in) and even if they try in safe mode?

Hmm... Maybe it's that stolen copy of XP you running.

Cheers-

Jeff Setaro
jasetaro@SPAM_ME_NOT_mags.net
http://people.mags.net/jasetaro/
PGP Key IDs DH/DSS: 0x5D41429D RSA: 0x599D2A99 New RSA: 0xA19EBD34
 
B

beatnik

Hmm... Maybe it's that stolen copy of XP you running.

Well yes but i managed somehwo to activate it using RockXP 3 :)
Some patched so install though soem others doen 9which damn them is crucial
for me especially the sasser patch ) which give sme access denied!
 
T

The Prophecy

beatnik said:
Well yes but i managed somehwo to activate it using RockXP 3 :)
Some patched so install though soem others doen 9which damn them is
crucial for me especially the sasser patch ) which give sme access
denied!

The serial you used has probably been blacklisted by Microsoft so that any
of it's updates will not work on copies of Windows which are using that
serial number.
 
B

beatnik

The Prophecy said:
The serial you used has probably been blacklisted by Microsoft so that any
of it's updates will not work on copies of Windows which are using that
serial number.

well then how you explain the fact that some of the security updates can be
installes and soem other cant?!?
 
T

The Prophecy

beatnik said:
well then how you explain the fact that some of the security updates
can be installes and soem other cant?!?

Your serial was probably blacklisted after some of the Windows Updates were
released.
 
C

Conor

yes but what if they(me) cant install the damn patch that they download
because when they do they get thr message Access Denied although they run it
as admins(logge in) and even if they try in safe mode?
ONLY PEOPLE WHO STEAL SOFTWARE CAN'T APPLY PATCHES.
 
C

Conor

Well yes but i managed somehwo to activate it using RockXP 3 :)
Some patched so install though soem others doen 9which damn them is crucial
for me especially the sasser patch ) which give sme access denied!
Buy the ****ing software.
 
T

The Prophecy

Conor said:
And WinXP SP2 will blacklist it again.

If it is already blacklisted, SP2 won't BL it again. "beatnik" just has to
find a serial that isn't blacklisted.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top