Removal tool latest. Curative antivirus utility from Kaspersky Lab

Proprietary utility from Kaspersky Lab Kaspersky AVP Tool - This free scanner, which quickly and efficiently detects Trojans, viruses, Internet worms and thousands of other threats. They are then either deleted or moved to quarantine.

The Kaspersky AVP Tool program has a fairly simple appearance. Its installation on an infected computer takes place within a couple of minutes - even if we are talking about Safe Windows mode. The search for malware is carried out using signature databases and has its own heuristic analyzer.

In the last Kaspersky versions The AVP Tool, which you can download from the website, has been greatly improved user interface. The creators of the scanner simplified the installer and configured it to run from flash drives. The treatment of active infection, as well as the self-defense of the process itself, has also been improved. Don’t forget about the use of cloud technologies called Kaspersky Security Network.

Among the features of Kaspersky AVP Tool:

  • Completely free antivirus utility to quickly check your computer.
  • The program has a simple appearance.
  • Allows you to collect information about the system and makes the creation of treatment scripts completely interactive.
  • Manual and automatic treatment of your PC from Trojans, viruses and worms.

Of course, the price for having a free scanner is that Kaspersky AVP Tool does not provide the user with real-time protection. It also does not include a module for automatic update virus databases. This utility will not replace a regular antivirus. Therefore, we advise you to install free antivirus, which you can download here, or purchase a paid one.

For new check PC (for example, in a week or in a month), the user will need to download this utility again with the latest antivirus databases. With other antivirus Kaspersky programs AVP Tool does not conflict, so can be used as additional remedy protection.

  • Letter. Please tell us on your website about, for example Kaspersky Virus Removal Tool or Kaspersky Security Scan, I think they deserve attention. I just had an argument with a friend, he tells me that the best anti-virus utility that works without installation on the computer is . I don’t argue, and you often mention it in your articles, it actually finds and neutralizes malware well, but I think the utilities from Kaspersky are no worse than the utilities from Dr.Web. Kaspersky Lab even has a utility called TDSSKiller.exe - it finds and neutralizes malware such as rootkits. There is an article on your website about, but not a word about the above-mentioned utilities. Or you think that they are not effective in fighting viruses. Max.
  • Letter No. 2 Downloaded the utility from Kaspersky Kaspersky Security Scan, but it turns out that it does not remove viruses, but simply informs you about the threats and security status of your computer. I don’t understand what the point is in using it then. Without a signature.
  • Letter No. 3 Admin, help with advice. When scanning the computer for the presence of rootkits using the Kaspersky utility TDSSKiller, it was found suspicious object, medium danger – Service: sptd. The instructions for using the utility say: copy the suspicious object to quarantine and then send the files to Kaspersky Virus Lab or check for viruses on VirusTotal.com. In short, I copied a suspicious file to quarantine and wanted to check it on the VirusTotal.com website, but I can’t find the quarantine itself, there is no information about this anywhere in the program settings, the Kaspersky forum advised me to carefully read the instructions for using the TDSSKiller program, but there is no such information in the instructions either. Without a signature.

Free Kaspersky utilities

In this article we will download and use it in combat conditions free utilities Kaspersky- Kaspersky Virus Removal Tool, Kaspersky Security Scan, and anti-rootkit utility TDSSKiller. Let's get acquainted with the Kaspersky Rescue Disk. How everything works for Kaspersky (and it works), you will see for yourself and draw a conclusion.

Undoubtedly, it is worth carrying anti-virus utilities from Kaspersky on a flash drive and using them as needed in the fight against viruses. I didn’t write anything about these utilities only because I simply don’t have enough time.

All Kaspersky Lab products include latest developments in the field of anti-virus technologies, including new “cloud” technologies. Take, for example, Kaspersky Virus Removal Tool (AVPTool) - a constantly updated free antivirus scanner. It should be used from time to time to scan your computer for the presence of malware. Scanning your computer this utility neutralizes malicious programs located on your computer: Trojans, Internet worms, rootkits, as well as spyware and adware. Kaspersky Virus Removal Tool can be launched in automatic and manual mode.
  • But it is important to know that this utility does not provide real-time protection for your computer, that is, Kaspersky Virus Removal Tool will not replace you standard antivirus, but will only help him. Working on your computer, Kaspersky utilities do not conflict with the anti-virus software you have installed.
  • Very important note. You should know everything about all the utilities you use so that the situation described in the second letter does not happen. The Kaspersky Security Scan utility does not actually remove viruses, but you still need to use it and now you will see how. We will check the functionality of free Kaspersky utilities on my friend’s computer; when visiting one site that turned out to be malicious, he planted two Trojans for himself - in the Startup folder and the temporary folder Temp files.
All free utilities from Kaspersky can be downloaded on the official page http://www.kaspersky.ru/virusscanner

Kaspersky Virus Removal Tool

Let's start with the Kaspersky Virus Removal Tool utility, analyze all its settings and check our computer for viruses.

The language is Russian and click Download, then download the program installer to our computer and run it.

We agree with license agreement and press Get to work.

The free utility Kaspersky Virus Removal Tool can be launched in Automatic check , there is also a Manual Treatment mode.

Before you click Run scan, I advise you to go to the program settings. In option Check area, be sure to check My Documents, My Mail and most importantly Disk (C:). Why?

When scanning an infected computer, I did not check Disk (C:) and Kaspersky utility Virus Removal Tool found only one virus in startup,
, but did not find the second malicious program - located in the folder temporary files Temp
. I had to rescan Drive (C:) separately, and only after rescanning was the virus found.
Security level can be left in the middle

Option Action, you can check the box - Prompt when detected.

If the Kaspersky Virus Removal Tool utility detects your virus program, it will inform you to Treat, (if possible) Delete (recommended) or Skip.

So, let's go, let's press Run scan

First Trojan horse was found 8 minutes later.

The second Trojan, as I already said, was found during a second scan, so do not forget to select drive (C:) for scanning in the program settings. The utility immediately suggested removing the second malicious program.

As for manual treatment. It takes place in three stages. Click Collecting information about the system,

The utility collects the information it needs, which is located in the file avptool_sysinfo.zip

Next, register on the Kaspersky Lab forum in the Anti-Virus thread, ask your question and attach the archive avptool_sysinfo.zip, you should definitely receive an answer, and sometimes specialists may offer you to run a script, which you need to copy into the Execute script window and click Run script.

http://support.kaspersky.ru/6182

At the end of the utility, the following proposal is received. If you press the button Install protection, we will immediately go to the page with paid antivirus solutions Kaspersky Lab.


Free utility Kaspersky Security Scan

Let's move on to the second Kaspersky Security Scan utility, we will check the same infected computer with two viruses: in Startup and in the Temp temporary files folder.

The Kaspersky Security Scan utility does not remove viruses, but after scanning the computer it provides detailed information about the threats in your operating system and where they are found, vulnerabilities and other problems. It all looks like this.
Let's go to the page again http://www.kaspersky.ru/virusscanner, select Kaspersky Security Scan and click Download.

Download and run the utility. Again I want to say that if Quick check you are not satisfied, then choose Full check. In my case the situation is Quick check repeated, she found only one virus in Startup.

C:\Users\Username\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
When conducting full check The utility found a second malware in temporary files
C:\Users\Username\AppData\Local\Temp
Over time

The free Kaspersky Security Scan utility will give you this report. Click on the arrow.

What condition is it in? antivirus program on your computer, I got a warning because my antivirus program was disabled at the time the utility was running.
If the utility finds malware, it will give you their location.

Vulnerabilities

Other problems . Gives out very important information about vulnerabilities associated with the parameters of programs installed on your computer and the operating system itself. As you can see, the utility correctly noted problems on my computer related to autorun with various media that need to be corrected.


Rescue Disk Kaspersky Rescue Disk

The advantage of checking the operating system with boot disk The salvation over other utilities is that the malicious programs located in the operating system are in an inoperative state, one might say - they are simply lying on the hard drive.

Select Kaspersky Rescue Disk and click download.

The disk image is downloaded to ISO format, burn it onto a blank. Who doesn't know how to burn ISO image on blank disk CD or DVD, read our article
So, after we have burned the image onto a blank CD, we boot our computer from the Kaspersky Rescue Disk. Again, for those who don’t know how, read our article
In this window, to continue loading, you need to press any key on the keyboard.

We choose the language Russian, however, who needs which one.

We accept the conditions - press key 1.

Choose Graphic mode.

Wait for the disks to mount.

Here is the desktop of the Kaspersky Rescue Disk antivirus disk. Let's look at the main capabilities of the disk.
Click on Kaspersky Rescue Disk to open a settings window; there is nothing complicated to manage here. In the settings, we additionally mark drive C: for virus scanning, or if you want all drives, but the scan in this case will take a very long time. Click on the button Run check objects.

Kaspersky Rescue Disk has a registry editor, which you will agree is very convenient, by the way, in earlier versions there was no disk.

You can also use the File Manager if you need to move your files from one partition hard drive another.

And using the built-in browser you can access the Internet.


TDSSKiller - protection against rootkits

Well, the turn has come to the TDSSKiller utility, which can help you detect and neutralize rootkits on your computer. Rootkit - a program for hiding presence malware in the operating system, helps the attacker manage the hacked Windows and hide traces of his malicious activities by hiding destructive processes and the rootkit itself.

You can download it on the official website of Kaspersky Lab, by the way it is available at this link detailed instructions using the utility http://support.kaspersky.ru/5353?el=88446 Click Download the file TDSSKiller.exe

Download and launch.

If the program displays a window indicating that an update is available for download, click on Download update.

By default, the utility is configured optimally and there is no need to change anything. Click Start checking.

If after scanning the program displays the following window - Suspicious object, medium danger - Service: sptd, then this is not scary. Service: sptd is a program service - a disk drive emulator Daemon tools. You may ask - How can you determine whether it’s scary or not?

TDSSKiller can detect the following suspicious services or files:
Hidden service– hidden key in the registry;
Blocked service– inaccessible key in the registry;
Hidden file – hidden file hidden on disk when enumerated in the standard way;
Locked file- the file on the disk is not available for opening in the standard way;
Spoofed file- when reading, the file’s contents are not real;
Rootkit.Win32.BackBoot.gen - suspected of being infected boot entry MBR.

For detailed analysis, Kaspersky Lab, advises copying detected objects to quarantine by selecting the Copy to Quarantine action (the file will not be deleted!!!), then sending the files to Kaspersky Virus Lab or VirusTotal.com scanning.

Quarantine location is the root of the C:\TDSSKiller_Quarantine drive
Open the website VirusTotal.com, then click Choose File

Open and Check

Analysis of the sptd.sys file on VirusTotal.com showed that only one antivirus company, TrendMicro, classified the sptd.sys file as a PAK_Generic.009 virus.

At one time I established that this file is safe, but to be completely sure, our reader can send it to Kaspersky Virus Lab.

Articles on this topic: