Daugher's PC has new Malware/Virus that can't be detected.

Moderator: Moderators

Timothian
Member
Posts: 1646
https://www.behance.net/kuchnie-warszawa
Joined: Tue Jan 18, 2005 10:25 pm
Location: Orlando

Post by Timothian »

Just following up on this.

I did manage to successfully remove all the bad stuff off my daughter's PC, and did most of it manualy via searches and deleting stuff out of the registry, file searches, etc. Google searches, looking at network activity (logs from wireshark), examining windows prefetch (and clearing it.). After slash and burn deleting, needed to restore registry file and fix a few things, but got it working. Over all, very painful and rebuilding PC would of been faster, easier, but machine seems solid now, no weird stuff.

I found the lag in virus signature updates interesting. Obvious symptoms appeared on a Thursday, Mcafee found some things that weekend, but I found stuff executing on the machine Tuesday and Wednesday of the following week that never got found by the virus checker or AdAware. I would update AdAware and Mcafee everyday and run scans. A full week later, Thursday and Friday both, Mcafee finally did find a few suspicious .dll files and deleted them that I believe were byproducts of the infestation, but no longer executing on the machine.
Aaeadiel
Bogagar
Posts: 565
Joined: Thu Jul 28, 2005 10:10 pm

Post by Bogagar »

a fact is evry 5th windows pc is hacked
my 3 firewalls blocking stuffs non stop, and even with this is my virus scaner having to do with stuffs i didnt download activly last week i found 2 trojans in my volume information folder on my terabyte-harddrive that im only using for backups
the problem is there is no perfekt firewall and no perfect virus scaner at least not for the scurity cheese windows
im close to only using linux since i got everquest running under ubuntu8.10
<a href="http://eq.magelo.com/profile/1034337" target="_blank"><img src="http://eq.sig.magelo.com/1034337" border="0"></a>
Es heisst, dass wenn man einer Klinge einen Namen gibt dann gibt man ihr auch eine Seele, und dass diese Seele mit jedem vergossenem Tropfen Blut und jedem ausgeloeschten Leben maechtiger und finsterer wird.
User avatar
kasantitz
Posts: 133
Joined: Fri Feb 06, 2009 6:39 am
Location: KY

Post by kasantitz »

a fact is evry 5th windows pc is hacked
So if I have 4 desktop machines and 1 server, all running windows, in my house, none of them have ever been on the internet and no one but me has ever used them, at least 1 of them is hacked/infected?
:shock:

I think not....


Lol, I am just messing with you Bogagar, because there are some loopholes to your "fact". :wink:
But yes I do agree that no firewall/anti-spyware/anti-spam/anti-virus program/device can catch everything out there, mainly because they are all maintained by people and people make mistakes and miss things.

How does that old saying go? "83% of all statistics are fake!" :P


Kas
<a href="http://eq.magelo.com/profile/1402278" target="_blank"><img src="http://eq.sig.magelo.com/1402278.png" border="0"></a>
You might be a little obsessed with Halloween if you've ever pulled over on the shoulder of a busy highway, risked life and limb crossing the busy highway on foot only to discover the bright bit of orange plastic you glimpsed out your car window was not a Halloween decoration but a stinkin' Tide laundry soap jug
GoogleTalk ID - Dwnocturnal
Timothian
Member
Posts: 1646
Joined: Tue Jan 18, 2005 10:25 pm
Location: Orlando

Post by Timothian »

The numbers I hear regarding zombie PCs (hacked and being used as bots), is amazing.

The best defense is being anonymous, minimizing surfing, and being paranoid about clicking and opening. Any system can be hacked regardless of firewalls, virus scanners etc.. Each layer of defense just reduces the probability.
Aaeadiel
User avatar
kasantitz
Posts: 133
Joined: Fri Feb 06, 2009 6:39 am
Location: KY

Post by kasantitz »

Agreed....
The internet is like the government; you can do everything possible to protect yourself from it, but you will still never be safe...
<a href="http://eq.magelo.com/profile/1402278" target="_blank"><img src="http://eq.sig.magelo.com/1402278.png" border="0"></a>
You might be a little obsessed with Halloween if you've ever pulled over on the shoulder of a busy highway, risked life and limb crossing the busy highway on foot only to discover the bright bit of orange plastic you glimpsed out your car window was not a Halloween decoration but a stinkin' Tide laundry soap jug
GoogleTalk ID - Dwnocturnal
User avatar
Succuba
Member
Posts: 65
Joined: Fri Jun 23, 2006 1:11 am

if recent

Post by Succuba »

I have WINXP Pro. I have used WINXP System Restore, to fix my computer from random crap picked up from surfing, successfully. If you find the problem early, i.e. the spyware has not been lurking on your computer for months. Just keep system restoring it back to earlier date until the problem is removed. You may undo winxp updates or virus scanner updates and other legitimate file changes so you still should back up data files you have been working with. In general, data files like music, text, pictures cannot pass viruses. It is executable programs like *.exe, *.com, *.batch that contain/install viruses. Word and Excel files are generally ok but if they have embedded macros can infect your computer. The problem with surfing is that everytime you click on something, you are practically giving permisson for the site to access your computer by either writing cookies or other b*llsh*t. If a website requires you to download crap programs to access its information, this is a huge clue to not download their crap. Most if not all legitimate downloads can be read with common programs like Adobe Acrobat, MSWord(no-macros), MS Media Player. Also, those funnies you get in your email...avoid clicking them at all costs because this is where many viruses are transfered.
Succuba Incuba
L85 Dark Elf Cleric of Innoruuk
http://www.magelo.com/eq_view_profile.html?num=1064927
Post Reply