Author Topic: God Damn Viruses!  (Read 5387 times)

0 Members and 1 Guest are viewing this topic.

Yup, me again.
I made a post around a month ago called spyware issues.
http://www.hard-light.net/forums/index.php/topic,46015.0.html
 I discussed my problem and you guys sorted it out. :)

Now, somehow, i have a ***** of a virus on my pc. I think it may be along the lines as the same issue i had before; a program called SpyLock is telling me there is several viruses on my pc and that i should purchase this product. Thinking it was yet another scam I scanned with Adaware. As expected it found a load of **** so i deleted them. But the problem still persisted so i downloaded several other programs. Some detected and removed various bugs but i still got a system warning.

Now in my previous post Hitmanpro got a mention. People say its great but i am sceptical and reluctant to download it after reading the link at the bottom of the Spyware Issues Page.

Please could someone give me an idea of what to do?
SCP is the greatest cause of Inferiority Complexes in those that can't run it

 

Offline Ulala

  • 29
  • Groooove Evening, viewers!
There are three certainties in life: death, taxes, and re-formatting.
I am a revolutionary.

 

Offline Flipside

  • əp!sd!l£
  • 212
For one, be careful of ads telling you your computer is infected, they have no way of knowing whether your computer is infected or not, it's a cheap trick. It's usually something along the lines of 'Warning! Your computer may contain Viruses! Click here to download new 'ripoff' virus detector to clean your system now!' or the like.

If you want to be sure then I'd suggest something like Avira Antivirus..

http://www.free-av.com/

That's a pretty comprehensive free Antivirus program, it should be good for most normal use.

 

Offline Fury

  • The Curmudgeon
  • 213
Here's what I would suggest you to do.

1) If you have another computer(s), run both anti-virus and anti-malware/-spyware scans on it to check if they're clean or infected.
For anti-virus get avast! Home if you don't have any decent av. www.avast.com
For anti-malware, get both ad-aware and spybot search&destroy.
http://www.lavasoftusa.com/
http://www.safer-networking.org/

2) If the computer(s) comes clean, transfer all your personal files and other stuff you don't want to lose to the other computer from the infected computer. And then re-run the scans to make sure the transferred files are clean.

3) I assume you are running Windows XP. Make sure you have XP installation media with the latest Service Pack. You can create one by following these instructions, and create the new installation media on clean PC. http://www.winsupersite.com/showcase/windowsxp_sp2_slipstream.asp

4) Reboot the infected computer with the newly created XP SP2 installation media. Unplug network cable. Format ALL your hard drives on the infected PC and install XP SP2.

5) After XP is installed, you have SP2 firewall running and should be protected from incoming packets. Plug network cable and get latest updates from WindowsUpdate. http://windowsupdate.microsoft.com

6) While updates are being downloaded and installed, install anti-virus and 3rd party firewall if your broadband modem does not have built-in NAT and firewall. If your modem has built-in NAT and firewall, make sure they're enabled. If they're enabled, SP2 firewall is enough.

7) Once updates and av/fw are set up, transfer your stuff back from the other computer.


Once you get infected with viruses and/or malware, the only way to make sure you get rid of everything is to run full format on all your hard drives. Otherwise you may just get re-infected the next day if something was left after cleanup.

I cannot stress the importance of a decent broadband router with built-in NAT and firewall enough. After you have one, focus on damage control. If one PC gets infected with viruses or malware, make sure to prevent other computers in the same network from getting infected. For that end make sure all Windows PC's are running firewalls with no exception rules for file and printer sharing, network diagnostics, remote assistance, remote desktop and upnp framework. If you really need one of those, change the default ports.
« Last Edit: April 03, 2007, 12:31:05 am by Fury »

 

Offline Fury

  • The Curmudgeon
  • 213
For one, be careful of ads telling you your computer is infected, they have no way of knowing whether your computer is infected or not, it's a cheap trick. It's usually something along the lines of 'Warning! Your computer may contain Viruses! Click here to download new 'ripoff' virus detector to clean your system now!' or the like.

If you want to be sure then I'd suggest something like Avira Antivirus..

http://www.free-av.com/

That's a pretty comprehensive free Antivirus program, it should be good for most normal use.

It is different to get such messages on internet sites than getting these messages on your own desktop. They're nothing more than regular ads if you see these on web sites, but if you get those messages on your desktop, it means your messenger service is enabled and vulnerable.

If you get those messages through the messenger service, it is a huge security hole for your messenger service to be fully open to the outside world. It means that your computer is pretty much exposed to the internet with little to no security. In this case you can be fairly certain your computer is infected with god knows what.

 

Offline Bobboau

  • Just a MODern kinda guy
    Just MODerately cool
    And MODest too
  • 213
I actually had gotten one of those messages (your registry seems damaged) while I was doing some work on some damage in my registry (and surfing for... something or other), I though it was from the scanner I was using and was just a pixel away from clicking on it when I noticed it was the only window not using my windows blinds theme. that was close, who knows what other problems I'd have gotten if I hadn't noticed that.

there was also some add in the VW forum that tried to install some suite of adware, and it happened to popup just as I hit the 'y' key while typing something, I had just reformatted, like that day, I was still installing things, so I just started over and nuked it.
Bobboau, bringing you products that work... in theory
learn to use PCS
creator of the ProXimus Procedural Texture and Effect Generator
My latest build of PCS2, get it while it's hot!
PCS 2.0.3


DEUTERONOMY 22:11
Thou shalt not wear a garment of diverse sorts, [as] of woollen and linen together

 
I hear all these stories about viruses and spyware, yet I have absolutely no idea how anyone can possibly fall for the tricks.

My Windows PC runs without firewall, AV or antispyware apps. Admittedly, it's no more than a gaming rig these days and I can restore the whole thing from a clean image inside of ten minutes if I want (and it's behind a router with a fairly draconian set of firewall rules most of the time), but the last time my machine had a virus on it was four years ago, and that was due to an infected game patch I got at a LAN; the virus was CIH and it was fairly easy to clean out.

I didn't even understand all this stuff 4 years ago, but I've never been dumb enough to click on a popup window while surfing the web, or trusting some random web page re: the state of my computer.
'And anyway, I agree - no sig images means more post, less pictures. It's annoying to sit through 40 different sigs telling about how cool, deadly, or assassin like a person is.' --Unknown Target

"You know what they say about the simplest solution."
"Bill Gates avoids it at every possible opportunity?"
-- Nuke and Colonol Drekker

 

Offline Fury

  • The Curmudgeon
  • 213
Amen brotha. The only times a computer I use has been infected with a virus has been when it has been a test system at work and intentionally let vulnerable.

 
Thats the problem
I have no clue where it came from, i haven't been on the net for days, just games and then it pops up out of no-where
I'm honoured to get such a response. I'll give your suggestions ago short of re-formatting.
SCP is the greatest cause of Inferiority Complexes in those that can't run it

 
Nothings working, though my virus count is still rising!
Looks like i'm gonna have to get it reformatted...

Before I let my parents know can anyone tell me roughly how much it is? I wanna see if i can do behind their backs...
SCP is the greatest cause of Inferiority Complexes in those that can't run it

 

Offline Polpolion

  • The sizzle, it thinks!
  • 211
I have McAffe VirusScan, and I set it to automatically delete anything it finds, and it fixed the problem I had, and I've had none since.

Quote
Before I let my parents know can anyone tell me roughly how much it is? I wanna see if i can do behind their backs...

If you yourself know how to do it, then it's free. Here's the basic process:

1) buy norton ghost (IIRC thats what it's called)
2) unplug all hard drives you don't want formated
3) boot from the ghost
4) format your HD
5) reinstall windows
6) reinstall all SPs
7) reinstall all drivers
8) reinstall all software
9) plug your other HDs back in.
« Last Edit: April 03, 2007, 07:40:15 pm by thesizzler »

 

Offline Flipside

  • əp!sd!l£
  • 212
I love the way the number 8 in most peoples lists turns into the sunglasses guy ;)

 
« Last Edit: April 03, 2007, 09:55:45 pm by Huggybaby »

 

Offline Polpolion

  • The sizzle, it thinks!
  • 211
I love the way the number 8 in most peoples lists turns into the sunglasses guy ;)

I usually catch that, but I didn't this time :p

 

Offline S-99

  • MC Hammer
  • 210
  • A one hit wonder, you still want to touch this.
Always get paired up with a good firewall first. The free version of zonealarm will offer all the containment you'll need for outgoing and incoming connections. Great for keeping **** from getting in and great for keeping **** in....that's when you get an anti virus program. Avg antivirus is free and is a good one many users turn to, but the best in my opinion for free antivirus is Avast4home made by alwil software.

Anyway, if for some reason a virus did get into your computer from something you downloaded and executed, zonealarm will usually tell you the name of the program trying to access the net which is probably going to be that virus. From there you can click deny to not allow the virus access to the net keeping your virus infection contained. Containment is so nice, keeps viruses from getting to other computers, after containment use your good antivirus program to be rid of the problem once and for all.

This is all i do, and yes i've had a virus or two, but this is how much easier being beefed up with a good firewall and good antivirus will be to get rid of infections. And if someone is using dialup, never tell them they don't need an antivirus or firewall because of their low bandwidth, viruses are pretty tiny and they don't take that long to get onto a computer using dialup.

Just for reminder the **** i recommend and use.
Zonealarm - download the free version and only install the basic firewall instead of the 15 day trial with all the bells and whistles(so many people get tripped up and install the trial instead...just keep your eyes open it's not hard).
http://www.zonealarm.com/store/content/company/products/trial_zaFamily/trial_zaFamily.jsp?dc=12bms&ctry=US&lang=en&lid=db_trial

Avast4home (avast antivirus) - download free avast4home in your favorite language, then pop in your email address to get an activation code(which is free) that will enable you to use avast forever as opposed to not getting the activation code and get a 60 day trial (one cool thing i like about avast is that if you must have a virus scanner for linux, avast is for linux as well...want a good firewall for linux, try the iptables frontends guarddog(this ones better) or firestarter).  I can't even begin to praise how ****ing good avast is, i'd definitely pipe down the money for it if i needed antivirus for non-home use(avast for home use is free).
http://www.avast.com/eng/download-avast-home.html

Use good software like this and you should be more than well off and good, happy, alive and kicking, more wise, etc...unless you guys like to pay for you firewall and antivirus(why when you don't have too). Mcafee and norton are the worst antiviruses and firewalls ever, plz don't use them, avast and zonealarm is so much better. Pretty much i emphasize do what i do and you'll stay away from the bull****.
Every pilot's goal is to rise up in the ranks and go beyond their purpose to a place of command on a very big ship. Like the colossus; to baseball bat everyone.

SMBFD

I won't use google for you.

An0n sucks my Jesus ring.

  

Offline Fury

  • The Curmudgeon
  • 213
ZoneAlarm is crap. It often causes more problems than it solves, it has a lot of compatibility problems with different apps. I've never used them myself, but I've heard Jetico and Comodo firewalls are the best of free software firewalls.

avast! on the other hand is pure ace and I use it myself as well.
« Last Edit: April 04, 2007, 01:29:42 am by Fury »

 

Offline S-99

  • MC Hammer
  • 210
  • A one hit wonder, you still want to touch this.
Yeah zonealarm does have compatibility issues, in particular avast detected zonealarm and said it didn't operate too well with it, but i went ahead with it anyway, and they seem to work fine together with absolutely no issues.
I shall check out jetico and comodo, i hope they actually let me mess around with a firewall more than zonealarm basic does(zonealarm basic is a little too basic in my taste, i want to change firewall paramaters besides allowing and blocking ****). Then again, zonealarm isn't a bad fall back plan if anything else doesn't work.
« Last Edit: April 04, 2007, 01:40:36 am by S-99 »
Every pilot's goal is to rise up in the ranks and go beyond their purpose to a place of command on a very big ship. Like the colossus; to baseball bat everyone.

SMBFD

I won't use google for you.

An0n sucks my Jesus ring.

 
The properly configured hardware router is your best first line defense.

If parameters don't scare you, then Comodo is probably the current front runner in firewall protection, though you don't really need to configure anything to my knowledge, unless you need to allow a P2P app.

(ZoneAlarm is kind of a pig nowadays, resource-wise, and protection-wise too.)

No sense in not trying NOD32 trial either, the current best antivirus software you can get. For free, AVG still gets very good ratings, and it's still free, even though they gave a different impression when they recently changed to the new version.

This leaves spyware software. Webroot SpySweeper is considered the best right now, and Spyware Doctor is a close second.

Finally, if you insist on sticking your mouse where it probably shouldn't be, you can prevent the need for all these programs by browsing within the sandbox: http://www.sandboxie.com/. You will have to learn how to get stuff you want to keep out of the sandbox and onto your PC, though it seems worth it in your case.

For hardcore malware removal, if you can't reformat and start over, "hijack this" from merijn is the hardest core tool available, period. http://www.spywareinfo.com/~merijn/programs.php. It will allow you to find and delete anything, just make damn sure you know what you're doing first. The forums are very helpful for analyzing your logs, and you'll be an expert when you finish.

Anyway, don't take my word for it, surely nobody else will. An hour of Googling will show you the depth of my research. And I've used them all too.
« Last Edit: April 04, 2007, 02:39:08 am by Huggybaby »

 

Offline CP5670

  • Dr. Evil
  • Global Moderator
  • 212
I hear all these stories about viruses and spyware, yet I have absolutely no idea how anyone can possibly fall for the tricks.

My Windows PC runs without firewall, AV or antispyware apps. Admittedly, it's no more than a gaming rig these days and I can restore the whole thing from a clean image inside of ten minutes if I want (and it's behind a router with a fairly draconian set of firewall rules most of the time), but the last time my machine had a virus on it was four years ago, and that was due to an infected game patch I got at a LAN; the virus was CIH and it was fairly easy to clean out.

I didn't even understand all this stuff 4 years ago, but I've never been dumb enough to click on a popup window while surfing the web, or trusting some random web page re: the state of my computer.

I agree. I think I got some spyware once around 2000, and that was it. I use a router firewall (which are like $30 these days) with pretty much just the default settings and have nothing on the software side. I used to run anti-virus and anti-spyware programs regularly, but haven't needed to do that for years. All it takes is a little common sense.

 

Offline Bobboau

  • Just a MODern kinda guy
    Just MODerately cool
    And MODest too
  • 213
on the other hand all it takes is one bad click or ill timed key press to screw all that up.
Bobboau, bringing you products that work... in theory
learn to use PCS
creator of the ProXimus Procedural Texture and Effect Generator
My latest build of PCS2, get it while it's hot!
PCS 2.0.3


DEUTERONOMY 22:11
Thou shalt not wear a garment of diverse sorts, [as] of woollen and linen together