Live Chat & Podcast at 1:00PM Eastern on Sunday!
There's no such thing as a stupid question, but they're the easiest to answer.
JoinTour
Login
Search
General Security
Tag Cloud
access acer asus bios bsod computer crash desktop driver drivers error ethernet excel freeze gaming hard drive hardware hdmi internet laptop malware memory modem monitor motherboard network printer problem ram registry router security slow software sound toshiba trojan ubuntu 11.10 uninstall usb video virus vista wifi windows windows 7 windows 7 32 bit windows 7 64 bit windows xp wireless
Search
Search for:
Tech Support Guy Forums > Security & Malware Removal > General Security >
Win32/Genetik trojan

Reply  
Thread Tools
sgeva2001's Avatar
Member with 237 posts.
 
Join Date: Aug 2003
04-Jul-2008, 03:11 AM #1
Win32/Genetik trojan
I get this alert from NOD32:
"
Time Module Object Name Threat Action User Information
04/07/08 06:23:36 Kernel file C:\Program Files\Replay AV 8\ReplayAV.exe probably a variant of Win32/Genetik trojan
"
1. I have REPLAY AV program fo more then a year and now it became a threat? is it a real threat?
2. What the damage it can cause?

thank you
__________________
Thank you

Shaul

windows XP PRO SP3
NOD32
FIREWALL COMODO
1SillyBilly's Avatar
Computer Specs
Member with 120 posts.
 
Join Date: Jul 2008
Experience: Intermediate
04-Jul-2008, 12:12 PM #2
It may be a false positive. Download, update and run Spybot S&D. Do not enable TeaTimer. But do Immunize.

http://www.safer-networking.org/en/download/index.html
sgeva2001's Avatar
Member with 237 posts.
 
Join Date: Aug 2003
04-Jul-2008, 04:52 PM #3
I have run SPYBOT before this post and no result.
But it was with enable Tea Timer and I do not know about Immunize..
Why it is important to disable TeaTimer and enable Immunize?
Byteman's Avatar
Moderator & Malware Removal Specialist with 17,387 posts.
 
Join Date: Jan 2002
Location: NY
Experience: Junkware Jouster
05-Jul-2008, 12:26 AM #4
Hi,

Tea Timer protects the system from changes...and it cannot tell the difference between changes you need to make and those that malware might be making....Tea Timer must be turned off during the time you are scanning for or fixing malware, and often during other changes such as uninstalling and installing software.

The directions for turning off Tea Timer are at this page, along with a list of other programs that do similar things and sometimes must be temporarily turned off:

http://wiki.castlecops.com/Malware_R...oring_Programs


Immunizing in SpyBot means to install the latest detection updates....when you download the latest ones, they don't get added until you run the Immunize feature...here's the how to:

http://www.it.northwestern.edu/secur...-immunize.html

I see you have posted here:

http://www.computing.net/answers/sec...jan/23001.html


They've answered you and you scanned the files with Jotti online scanner> that should satisy you that this is a false positive.
__________________
Mung (computer term), the act of making several incremental changes to an item that combine to destroy it
Donate directly to help the site TSG Library
TSG's Welcome Guide- Tips, Rules, How to use TSG and more!
sgeva2001's Avatar
Member with 237 posts.
 
Join Date: Aug 2003
05-Jul-2008, 05:34 AM #5
thank you on the wide explanation.

I want to be sure I undersatnd:
1. every time I am making a scan I have to turn off all this programs? I use part of them.
IT is hard work...
and then turning back to on...
What about working in this way:
for scanning only they can remain active
and then if they discover a malware and does not succeed in fixing the malware
Only then to do this long procedure?
__________________
Thank you

Shaul

windows XP PRO SP3
NOD32
FIREWALL COMODO
Byteman's Avatar
Moderator & Malware Removal Specialist with 17,387 posts.
 
Join Date: Jan 2002
Location: NY
Experience: Junkware Jouster
05-Jul-2008, 06:18 PM #6
Keep your antivirus program running-

1. The question about NOD32 was dealt with, the file it found is a false positive and you do not need to delete or quarantine the file.

2. SpyBot's Tea Timer feature:

It's your choice to use Tea Timer or not, but having it enabled means each time some program, good or bad, changes the Windows Registry or does certain other things, you will have to take an action like clicking Yes or No, to block or Allow the action. Many people find Tea Timer to be a problem to use. TT can be simply turned off.

3. For Immunization: Has nothing to do with scanning....

You immunize only just after SpyBot has the latest detection updates downloaded (by you, it does not update automatically). You simply click "Immunize" on the left side of SpyBot's window....the program shows you the number of items that the updates will add to protection for you. Then, you simply click the Immunize cross at the top of SpyBot to add the latest protections. That is not any long procedure....it's how the program works.
__________________
Mung (computer term), the act of making several incremental changes to an item that combine to destroy it
Donate directly to help the site TSG Library
TSG's Welcome Guide- Tips, Rules, How to use TSG and more!
sgeva2001's Avatar
Member with 237 posts.
 
Join Date: Aug 2003
06-Jul-2008, 03:19 PM #7
Immunization and SpywareBlasterr does not do the same thing?
Byteman's Avatar
Moderator & Malware Removal Specialist with 17,387 posts.
 
Join Date: Jan 2002
Location: NY
Experience: Junkware Jouster
06-Jul-2008, 10:54 PM #8
Hi, No, but similar. I use both SpyBot and Spywareblaster on every system I work on.

SpyBot is not going to give you much protection without Immunizing after the Updates are downloaded.



Spywareblaster= you have to also get Updates for protection and add them
sgeva2001's Avatar
Member with 237 posts.
 
Join Date: Aug 2003
07-Jul-2008, 12:05 PM #9
thank you very much.
Reply

THIS THREAD HAS EXPIRED.
Are you having the same problem? We have volunteers ready to answer your question, but first you'll have to join for free. Need help getting started? Check out our Welcome Guide.

Search Tech Support Guy

Find the solution to your
computer problem!




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
WELCOME TO TECH SUPPORT GUY! Are you looking for the solution to your computer problem? Join our site today to ask your question -- for free! Our site is run completely by volunteers who want to help you solve your computer problems. See our Welcome Guide to get started.
Thread Tools



Facebook Facebook Twitter Twitter TechGuy.tv TechGuy.tv Mobile TSG Mobile
You Are Using:
Server ID
Advertisements do not imply our endorsement of that product or service.
All times are GMT -4. The time now is 11:37 PM.
Copyright © 1996 - 2011 TechGuy, Inc. All rights reserved.

Powered by Cermak Technologies, Inc.