How to delete the detected file could not be disinfected. The object cannot be disinfected, A special disinfection procedure is required, A dangerous object has been detected in the traffic - KASPERSKY LAB KAV2010 Operation Manual - Kaspersky Anti-Virus. Changing the action on the

If a Kaspersky Virus Removal Tooldetected malicious objects, then in the notification window "" select actions for all objects in the drop-down list on the right and click the button Proceed.

If you want to assign a single action for all objects, refer to the second point.

Note: if there are objects in the list for which no action has been selected, a window will appear with an error message " Select an action for all detected objects". Click the button OK and for objects highlighted in red, select an action and then click on the button Proceed.

2. Selecting a common action for all objects

At the top of the list of detected objects there are buttons for group selection of actions.

Copy everything to quarantine Copy to quarantine, the original files will remain intact.

Process all - objects will be assigned an active action:

  • If the object is curable - Treat.
  • If disinfection is impossible, but there is a backup copy of the object - Reestablish.
  • In all other cases, an action will be assigned to the object Delete.

Skip all - all objects from the list will be assigned an action Skip.

Default - window " Select an action for detected objects"is in its original condition.

3. Treatment of active infection

When an active infection is detected, a notification is displayed " Malicious software detected". At the bottom of the window there is a countdown time for making a decision. Computer disinfection with restart will be launched automatically after the countdown ends, if the user does not select the type of disinfection. counter The window will be closed in ... seconds, the counter will be stopped.

Restart treatment

To disinfect with a restart, click the button Disinfect with computer restart.

Note: during disinfection with reboot, the ability to create new files, write to disk / registry, and so on will be blocked. It is recommended to first save all changes and close all active programs. After the computer is locked, it is disinfected and restarted. Then it automatically starts Kaspersky Virus Removal Tool and rescanning is performed.

Healing without rebooting

If you cannot reboot, click on the link Try to heal without rebooting.

The selection of this item does not guarantee the success of the treatment.

U K O V O D S T V O P O L Z O V A T E L Z



or restarting the program, as well as the execution time of the virus scan task from the moment of launch to
completion.

IT IS IMPOSSIBLE TO SEE THE OBJECT

In some cases, disinfection of a malicious object is impossible. For example, if the file is so damaged
that it is impossible to remove malicious code from it and restore its integrity. In addition, the treatment procedure is not
applies to some types of malicious objects, such as Trojans.

In these cases, a special notification is displayed on the screen, which contains:

Threat type (for example, virus, trojan horse) and the name of the malicious object as it is presented
for more information, see the Kaspersky Lab Virus Encyclopedia. The name of the malicious object is formatted as
links to the resource www.viruslist.ru, where you can get detailed information about the threat of which
kind found on your computer.

Full name of the malicious object and the path to it.

You are asked to choose one of the following actions on the object:

Delete - delete a malicious object. Before deletion, a backup copy of the object is created on
the case if it becomes necessary to restore it or a picture of its infection.

Skip - block access to the object, but do not perform any action on it, only
record information about it in the report.

Later, you can return to processing missed malicious objects from the report window
(the possibility of deferred processing is not available only for objects detected in electronic
messages).

To apply the selected action to all objects with the same status found in the current session
protection component or task, check the box

Apply in all such cases.

The current session is the time that the component has been running from the moment it is started until it is turned off.
or restarting the program, as well as the time it takes to complete the virus scan task from the moment it starts
completion.

SPECIAL TREATMENT PROCEDURE WORKING

When a threat is detected that is currently active in the system (for example, a malicious process in
rAM or startup objects), the screen displays a request for a special
extended treatment procedure.

Kaspersky Lab experts strongly recommend that you agree to the extended
treatment procedures. To do this, click on the button OK... However, please note that at the end there will be
the computer was restarted, therefore it is recommended to save the
results of current work and close all programs.

During the disinfection procedure, it is not allowed to start mail clients and edit the registry
operating system. After restarting your computer, it is recommended to run a full virus scan.

DANGEROUS OBJECT ON TRAFFIC DETECTED

When Web Anti-Virus detects a dangerous object in traffic, a special
notification.

Changing the action on detected objects

As a result of a scan, File Anti-Virus assigns one of the following statuses to found objects:

  • the status of one of the malicious programs (for example, virus, trojan horse).
  • possibly infectedwhen it is impossible to determine unambiguously as a result of the scan whether the object is infected or not This means that a code sequence of an unknown virus or a modified code of a known virus was found in the file.

If, as a result of scanning a file for viruses, Kaspersky Anti-Virus finds infected or possibly infected objects, further operations of File Anti-Virus depend on the status of the object and the selected action.

By default, all infected files are disinfected, and all possibly infected files are quarantined.

All possible actions are shown in the table below.

If you chose

Upon detection of a dangerous object

Request action

File Anti-Virus displays a warning message on the screen containing information about which malicious object / possibly infected the file, and offers a choice of one of the further actions. Actions may vary depending on the status of the object.

Block access

File Anti-Virus blocks access to the object. Information about this is recorded in report . Later you can try to cure this object.

Block access

Treat

File Anti-Virus blocks access to the object and tries to disinfect it. If the object was successfully disinfected, it is provided for work. If disinfection of the object failed, it is either blocked (if it is impossible to disinfect the object), or the status is assigned to it possibly infected (if the object is considered suspicious), and it is placed on quarantine ... Information about this is recorded in report ... You can later try to cure this object.

Block access

Treat

Delete if disinfection fails

File Anti-Virus blocks access to the object and tries to disinfect it. If the object has been disinfected, it is provided for work. If disinfection fails, the object is deleted. In this case, a copy of the object is saved in backup storage .

Block access

Treat

Delete

File Anti-Virus blocks access to the object and deletes it.

Before disinfecting or deleting an object, Kaspersky Anti-Virus creates a backup copy of it and places it in backup storage in case you later need to restore the object or it becomes possible to cure it.

To change the action set for detected objects, do the following:

  1. Open the main application window.
  2. In the left part of the window, select the Protection section.
  3. In the context menu of the component File Anti-Virus select Configure.
  4. In the window that opens, select the desired action.
Did you like the article? To share with friends: