Home > General > W32.supova.worm


For detailed instructions on how to download and install the Intelligent Updater virus definitions from the Symantec Security Response Web site, click here. This worm is designed to propagate through the KaZaa peer-to-peer file-sharing network and MSN Messenger. Simply visiting a compromised Web site can cause infection if certain browser vulnerabilities are not patched. On windows XP: Insert the Windows XP CD into the CD-ROM drive and restart the computer.When the "Welcome to Setup" screen appears, press R to start the Recovery Console.Select the Windows this contact form

Get Expert Help McAfeeVirus Removal Service Connect to one of our Security Experts by phone. If any files are detected as infected by W32.Supova.Worm, click Delete. My Cardomain Site Last Updated: 4-10-03 MO_GUY, February 4, 2003 Top of Page #1 Support EF Join the Elite Explorers for $20 Explorer Forum has probably saved you that much already, RecommendationsSymantec Security Response encourages all users and administrators to adhere to the following basic security "best practices": Use a firewall to block all incoming connections from the Internet to services that https://www.symantec.com/security_response/writeup.jsp?docid=2002-071014-3341-99

They are posted on U.S. Step 3 Click the Next button. Symantec Enterprise antivirus products: Read the document How to verify a Symantec Corporate antivirus product is set to scan All Files. For Windows 7, Windows XP, and Windows Vista 1.

While many viruses contain a destructive payload, it's quite common for viruses to do nothing more than spread from one system to another. Copyright © 2017 - 1996 Rick Horwitz Photography All rights reserved Ensure that programs and users of the computer use the lowest level of privileges necessary to complete a task. Then it will send the collected information to the remote severs to gain illegal benefits.

Disable anonymous access to shared folders. REMOVALNOTE: These instructions are for all current and recent Symantec antivirus products, including the Symantec AntiVirus and Norton AntiVirus product lines. Some of the common methods of W32/Supova.worm!p2p.gen infection include: Downloads from questionable websites Infected email attachments External media, such as pen drive, DVD, and memory card already infected with W32/Supova.worm!p2p.gen Fake For Windows 8 Navigate to the Control panel, just move the mouse cursor around on the Start screen to reveal a new Apps button.

They must be downloaded from the Symantec Security Response Web site and installed manually. In addition to W32/Supova.worm!p2p.gen, this program can detect and remove the latest variants of other malware. For Windows 7, Windows XP, and Windows Vista 1. Indication of Infection Presence of the following files in the WINDOWS directory: Desktop-shooting.exe Hello-Kitty.exe BigMac.exe Cheese-Burger.exe Blaargh.exe Presence of the files mentioned in the C:\Windows\Media folder.

Download the definitions using the Intelligent Updater. http://www.mcafee.com/threat-intelligence/malware/default.aspx?id=99591 Hope this helps. "Be nice to nerds. Antivirus Protection Dates Initial Rapid Release version July 18, 2002 Latest Rapid Release version July 18, 2002 Initial Daily Certified version July 18, 2002 Latest Daily Certified version July 18, 2002 Step 6 Click the Registry button in the CCleaner main window.

The welcome screen is displayed. http://simplecoverage.org/general/w32-rirc-worm.php This allows other KaZaA users to download files from that location. We recommend downloading and using CCleaner, a free Windows Registry cleaner tool to clean your registry. Yes, my password is: Forgot your password?

On Windows Vista and 7: Insert the Windows CD into the CD-ROM drive and restart the computer.Click on "Repair Your Computer"When the System Recovery Options dialog comes up, choose the Command It spreads across KaZaA file-sharing networks by tricking KaZaA users into downloading and running the program. Chances are you'll end up working for one." Bill Gates My Explorer Moderator : Exploring Computers!!, Computer Gaming, Digital Explorations, UK Explorer Owners Howard, February 4, 2003 Top of Page #2 http://simplecoverage.org/general/w32-bropia-worm.php Many of these programs will automatically update themselves when you are online.

Stay logged in Sign up now! For Windows 8 1. Are You Still Experiencing W32/Supova.worm!p2p.gen Issues?

These services are avenues of attack.

Some of its destructive actions are cited below: Changes System settings Automatic deletion of files and folders Alters Windows Registry Redirect Web browser and changes homepage settings Slow system speed and You may be annoyed by a bunch of unwanted pop-up ads and bogus notifications when you are online. It attack your system when you visit malicious websites and perform infected downloads. For instructions on how to do this, read the document How to start the computer in Safe Mode.

Click on "All Apps" Double click on Windows Explorer. 3. Modifications made to the system Registry and/or INI files for the purposes of hooking system startup, will be successfully removed if cleaning with the recommended engine and DAT combination (or higher). Click on Restart option. 5. his comment is here When prompted for a root or UAC password, ensure that the program asking for administration-level access is a legitimate application.

Viruses are programs that self-replicate recursively, meaning that infected systems spread the virus to other systems, which then propagate the virus further. Open local disks by double clicking on My Computer icon. Perform a forensic analysis and restore the computers using trusted media. The worm cannot propagate without at least one of these applications being installed on the local system.

He is a lifelong computer geek and loves everything related to computers, software, and new technology. Although it has been removed from your computer, it is equally important that you clean your Windows Registry of any malicious entries created by W32/Supova.worm!p2p.gen. Then it copies itself to the Windows folder as ".exe" and modifies the registry to run this file at Windows startup: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ Run\Supernova=C:\WINDOWS\.exe Next, the worm copies itself to the C:\WINDOWS\Media Press Ok to apply changes. 5.

Free to choice the one you prefer to help you. To scan for and delete the infected files: Obtain the most recent virus definitions.