PDA

View Full Version : AVG antivirus question.....


rubberman
04-06-2004, 10:07 AM
I have the free version of AVG antivirus. Lately i am having trouble downloading the virus updates. It comes up saying CONNECTION CANCELED. Never had any troubles before. It does the same thing on my work computer. any ideas?

Elaine
04-06-2004, 10:21 AM
I've read that is this has been happening due to server overload. So the only real solution is to change which server is connects to.

Go to Grisoft\AVG6 folder, find the file "URL.INI" and open it with Notepad. Edit it as follows...

[SERVER_NAME]
1=free.grisoft.cz
2=www.grisoft.com

[SERVER_URL]
1=http://free.grisoft.cz/softw/60/fe
2=http://www.grisoft.com/softw/60/fe
Actual URL=2

Save the file and then reboot.
Right click the AVG System Tray icon and select "Run AVG Control Center" and
select the "Update Manager" tab. Then change the server in the drop down
list to "www.grisoft.com". Hit Apply and then OK.

rubberman
04-06-2004, 02:39 PM
already have that. Actually i have 3 servers listed. one site always says 'connection cant be established' but the others says what i wrote above.

Elaine
04-07-2004, 08:58 PM
After reading a bit more, all their servers are overloaded during any major updates. There's really nothing you can do, other than trying to update late at night.

impydave
04-08-2004, 04:50 AM
You can manually update the program guys......if you go to

http://www.grisoft.com/us/us_updt6.php?avg6=fe

Grab the latest file (look on the info tab on AVG to see what version you have) copy it into the updates folder for AVG, close the program, then open it again and it will install the update.

Impy

loobylou
04-10-2004, 03:55 AM
I have just updated my AVG on impydave's link and can't believe on scanning it picked up 39 files affected by adware. What are E-group diallers

bono_head
04-10-2004, 07:09 AM
try another antivirus program. I have tried them all including f-secure, norman, norton, trend, avg, and the only antivirus program i found useful at all was norton. And thats my sincere opinion. I got one of the raobot? viruses, and none except norton was able to find and cure. Avg found it, but couldn`t remove it...

pepsik
04-13-2004, 04:33 PM
try another antivirus program. I have tried them all including f-secure, norman, norton, trend, avg, and the only antivirus program i found useful at all was norton. And thats my sincere opinion. I got one of the raobot? viruses, and none except norton was able to find and cure. Avg found it, but couldn`t remove it... seems i'm in the same boat as you on that goabot virus.

Neo
04-13-2004, 09:12 PM
What are E-group diallers Google does not bite, remember.



Dialer: Software that dials a phone number. Some dialers connect to local Internet Service Providers and are beneficial as configured. Others connect to toll numbers without user awareness or permission.

_________

Aliases:

eGroup

Variants:

IEAccess/IEDial and IEAccess/HTMLAccess are similar but use different filenames and IDs.

Description:

IEAccess is an ActiveX control used to download and install premium-rate dialers*, primarily for porn sites.

* Dialers are a type of software typically used by vendors serving pornography via the Internet. Once dialer software is downloaded, the user is disconnected from their modem's usual Internet service provider, connected to another phone number, and the user is billed. Dialers do not "spy" on their intended victims, but these malevolent programs can rack up significant long distance phone charges, costing victims time and money.

Method of Infection:

IEAccess is primarily installed by ActiveX drive-by-download on porn-related pages from nocreditcard.net and sex-explorer.com. These pages may be redirected to or opened by pop-up advertising.

*The IEDial variant is known to exploit a security hole to install automatically, without prompting, on Internet Explorer versions earlier than IE6 Service Pack 1. The installer pages exploit this security hole to run an EXE which adds 'Electronic Group' to the list of trusted publishers whose software IE will install automatically without asking.

Privacy Issues:

While dialers do not specifically invade privacy by stealing credit card numbers, they are credited with resulting in thousands of dollars in unauthorized telephone charges. What's worse, most victims won't even know they have a dialer on their PC until they get their telephone bill.

Security Issues:

It is suspected that it may be possible to use an IEAccess ActiveX control on any web page to cause arbitrary unsigned code to be executed.

Removal Process:

The removal of any dialer program requires knowledge of the Windows registry. Without an anti-spyware software program, removal of IEAccess and its variants can be a difficult process. Running a good anti-spyware program on a daily, or weekly basis, will alert you to the presence of (and completely remove) dialers before significant charges can be made.

Manual Removal Process:




From 'Downloaded Program Files' in the Windows folder, right-click the 'IEDial Class' (IEDial variant) or 'HTMLAccess Class' (HTMLAccess variant) entry and remove it. This will not actually remove the software.
Next, open a DOS command prompt window (from Start->Programs->Accessories) and enter the following commands,
for the IEDial variant: cd "%WinDir%\System" regsvr32.exe /u IEAccess2.dll
Or, for the HTMLAccess variant: cd "%WinDir%\System" regsvr32.exe /u DHTMLAccess.dll

You can now delete the 'IEAccess2.dll' or 'DHTMLAccess' file in the System folder (which is inside the Windows folder, called 'System32' on Windows NT, 2000 and XP, or just 'System' on Windows 95, 98 and Me.)
Next open the registry (Start->Run->regedit) and delete the key 'HKEY_CURRENT_USER\Software\egroup'
Finally, check whether Electronic Group has been added to your Trusted Publishers list, from Internet Options->Content->Certificates->Publishers. If so, delete the entry, then open the registry (Start->Run->regedit) and find the key HKEY_CURRENT_USER\Software\Microsoft\Windows\Curre ntVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0. Delete the entry with the value 'ELECTRONIC GROUP'


IEAccess may have downloaded more than one unwanted dialers. Look for an 'eGroup' folder in the Windows folder, as well as entries the more usual Program Files folder. Check and delete any dialers you find.

Vendor:

Electronic Group are also known to distribute at least two other dialers, StripPlayer (http://www.doxdesk.com/parasite/StripPlayer.html) and DialerOffline (http://www.doxdesk.com/parasite/DialerOffline.html).

http://www.electronic-group.com/