SaiyanGoku
kamehameha!!
^ Agreed. I would've taken a backup of non-executables using HBCD or Live linux usb and then re-installed windows using a drive which hasn't been plugged into the infected OS.
using HBCD
Yes, and x64 version is maintained by community/fansHiren's Boot CD ? Is it still around ?
Sometimes the original developer abandons a project but community/fans keep it updated,you can say it is "officially abandoned" but not "practically abandoned".I see. Someone told me that it got abandoned some time ago.
If you also copy infected files to external hdd & then run those files later then yes.If i use live cd for backup from hdd to external hdd can i still get infected?
Sent from my iPhone using Tapatalk
Win 10 activation remembers a system's hardware unique ID code that it generates during activation & this info is saved on MS activation servers.As long as hardware remains the same you need not enter any key & system will be automatically activated after going online.i have the OEM windows keys with me..after formatting...will i go back to the original win 8 or the later freely updated win 10
Those crypters/packers can avoid old traditional signature based detection,not the latest ones like sandboxing/behaviour analysis etc.This is also why nowadays an av effectiveness depends a lot on internet connection as much processing is done online at AV company's end to analyse a file behaviour compared to relying on stored virus signatures in user pc. Tools like hiren boot cd are also customizable so one can make their own cd/dvd by using scripts(available on major tech forums) & own source programs.I did a bit of digging and it turns out.
- I stand corrected. The reset method isn't indeed 100% safe.. the Windows reset image itself can itself be infected by sophisticated virus. But many say that reset is safe for almost all cases.
- If you are concerned with the reset. Use Windows refresh. A fresh windows .wim image is downloaded, so equivalent to a format, only much much simpler. See here: *superuser.com/a/1151479
Notes:
Many here are very trusting of antivirus. But its fairly easy to make virus undetectable with crypters, and packers.
See here Malware Crypters - the Deceptive First Layer - Malwarebytes Labs
The above is an analysis of a basic publically available for non-technical a**hole-malware-spreading-people . It even has a gui.
There are also crypter 'services' . upload virus -> get undetectable package.
Hiren's BootCD and similar tools are useful, but terrible from a security point of view! Lots of binaries from unknown sources, many propreitary
I don't know the exact purpose of crypters. If they only change the signature then yeah they will be limited. But the heuristics game is a cat and mouse game. antivirus come with methods to detect, malware dev come with methods to bypass them.. there is no clear winner yet. Point is many new virus released are FUD - full undetectable . And 100,000 are released everyday.not the latest ones like sandboxing/behaviour analysis etc.T
Sure, if the software is obtained from open source trusted places. but most download random isoTools like hiren boot cd are also customizable so one can make their own cd/dvd by using scripts(available on major tech forums) & own source programs.
Just format the PC and then recover C Drive using Easus Recovery software. After formatting any virus will disappear and then you can easily recover.I would still recommend to take backup of other than c drive using live cd and then format everything.Dont take chances software viruses and malware have become smart.Also would like to say use a proper av windows defender is only good for people who are smart enough and dont click any stuff I personally use avast it gives me warning notification before openinf url whenever i click bad stuff.
Sent from my iPhone using Tapatalk
Just format the PC and then recover C Drive using Easus Recovery software. After formatting any virus will disappear and then you can easily recover.
Even with this a certain amount of storage can be recovered and one can buy it rather wasting time over what to do with an infected PC.I dont think Easus Recovery Software is free
Sent from my iPhone using Tapatalk
Even with this a certain amount of storage can be recovered and one can buy it rather wasting time over what to do with an infected PC.