SmartFeedSmartFeed          



WELCOME - YOU ARE CURRENTLY VIEWING 419EATER AS A GUEST

By joining our community you will have the ability to post topics and access other forums reserved for members. Registration is quick, simple and absolutely free. Join our community today by clicking here.

ScamWarners.com - Internet Anti-Fraud Center - now open!

These forums are READ ONLY. Click here to register on our new forums - aff.419eater.com


 I need help with nasty virus? I got while scambaiting.

View next topic
View previous topic
 
This forum is locked: you cannot post, reply to, or edit topics.This topic is locked: you cannot edit posts or make replies.
Author Message
Pastor Frank
Baiting Guru


Joined: 31 Jan 2007
Posts: 12237


PostPosted: Wed Nov 07, 2007 12:17 am Reply with quoteBack to top

wingman wrote:
I never had any problems before I started playing around with these scammers


There may be the answer to your question, perhaps scambaiting is not your cup of tea. It is easy to blame the unknown.

I have never had problems before, or after scambaiting. 99% of problems like this are "user error".

Personally I don't think you "caught" anything and it is McAfee just being it's crappy self. There were several good solutions mentioned. Try them and see what happens.

_________________
"Father Juan are sure that you are man of God,because your behaviors showed you as unbeliever" -Mary R

Last edited by Pastor Frank on Wed Nov 07, 2007 12:19 am; edited 1 time in total
View user's profileSend private messageSend e-mail
lotta
Baiting Guru


Joined: 08 Jun 2005
Posts: 13612
Location: 2 Speckled Cct Springfield Lakes QLD 4300


PostPosted: Wed Nov 07, 2007 12:18 am Reply with quoteBack to top

OK Folks enough of the nasty and sarcastic comments. If you're not willing to offer any real help/advice, move along.

I'm sorry wingman....

_________________
<a href="/forum/donate.php">[Click here to donate to 419Eater.com]</a> Lead Support Contact for Missing Posts - (pm me)

Nigeria bank kills South Africa Netherlands Netherlands United Kingdom United Kingdom United Kingdom United Kingdom Spain Spain Spain United Arab Emirates
star star
Mortar Nurse Nastys Audi TT Mc Fry

Alan James Watson (AKA Bi Gal, AKA Big Al, AKA De Master Yoda) -2007, 2008, 2009, 2010 "Doos of the year" award winner

Frederick Fokker:
"I am giving you about a month to get your act together, i am cutting you and the eater a bit of slack"
Dec 11, 2007

Elton Purple Flower Black Ribbon Flying Monkey
View user's profileSend private message
wingman
Master Baiter


Joined: 31 Oct 2007
Posts: 155
Location: State of Confusion, USA


PostPosted: Wed Nov 07, 2007 12:56 am Reply with quoteBack to top

For those who gave me the links, thanks. I am working through the scans, one by one.

For the rest of you, sorry I misspoke. I got some kind of malware that is jacking with my system, while looking at some eBay fraud. I went to a phishing site, and my computer has been displying certain symptoms ever since. I just want to fix it.

"user error" doesn't explain why my AV software and windows update suddenly were rendered inoperable. And I agree, the lads of Lagos most likely had nothing to do with this, I just figured it might be something that some of you had experienced before.
View user's profileSend private message
mindgames
Not quite a Newb


Joined: 20 Jun 2007
Posts: 54
Location: United States


PostPosted: Wed Nov 07, 2007 1:15 am Reply with quoteBack to top

You can post (I think) if you don't find it. I probably won't be here by the time they finish though. If they all say nothing is wrong, I'd suspect something called a root kit, and you may need a specific utility designed to remove that. I'll probably let some other people cover that in more detail as I need some sleep...

Disabled updates on Windows/McAfee is a clear sign of malware, but I really doubt it came from a phishing site, let alone some mugu e-mail scammer. There is no way a fake eBay page downloaded a virus. It wouldn't look like an eBay page if all of a sudden some window popped up asking you to download something or install an ActiveX control. Yes, I've experienced viruses before (they don't usually live very long on my machine unless I want them to). No, none of them have been related to a phishing site or 419 scambait.

It's common that the symptoms don't fully appear until the next reboot, since they add themselves to a list of programs that run automatically on startup (like the one that displays your desktop, or at one time, the one that stops viruses). Then, once it's started, the machine slows down and suspicious things start happening.

I think some errors can prevent Windows updates from working. Not sure what kind of user error would do that, but I've seen cases where updates fail and aren't caused by malware.

Not all scammers operate out of Lagos. A significant portion operate in Nigeria, but they really come from all around the world.
View user's profileSend private message
wingman
Master Baiter


Joined: 31 Oct 2007
Posts: 155
Location: State of Confusion, USA


PostPosted: Wed Nov 07, 2007 1:21 am Reply with quoteBack to top

Ok, problem fixed. I had not allowed windows to update for quite some time. Windows malicious software removal tool got the job done.

Thanks for all the help.
View user's profileSend private message
lokie
Master Baiter


Joined: 30 Jun 2006
Posts: 123
Location: teh interweb


PostPosted: Wed Nov 07, 2007 1:30 am Reply with quoteBack to top

Well McAfee can't be that good if you just caught a virus (play nice Lokie!).

Okay I'll be nice and get you 90% out of this mess. First off roll the system back to lets say Friday. So Start->Accesories->System Tools->System Restore. Its fairly user friendly, so follow the prompts and guess a "safe" date.

Now once thats rebooted and brought the system upto last weeks config, run McAfee's updator, run the av scan, cross your fingers. DO NOT run IE until McAfee has done its thing, System Restore doesn't restore the browser settings in XP.

Hopefully your now good to go.

SALES PITCH
www.avast.com Free for personal use, and rather good at keeping the system clean and healthy.
www.opera.com A way better browser than Firefox in my opinion.
http://www.microsoft.com/athome/security/spyware/software/default.mspx Surprisingly good anti spyware considering its from Microsoft.
http://www.microsoft.com/security/malwareremove/default.mspx Microsofts monthly malware removal tool.

EDIT: Just spotted you fixed the problem, but as the links are useful posted anyway.

_________________
As always good luck with your bait.


Click here to support 419Eater.com
View user's profileSend private message
Akai Ryu
Chuck Norris


Joined: 11 Jun 2007
Posts: 1357


PostPosted: Wed Nov 07, 2007 1:42 am Reply with quoteBack to top

Hi! Glad if your problem is fixed. Did you figure out what the issue was? Smile

Anyway, I know I found this thread late, but here are a few pointers that I hope will help: It is imperative to let your Windows update. Not doing so puts you at a much higher risk than if you let it update regularly.

If you still have any concerns, or run into this in the future, download Hijack This from TrendMicro, you can find the latest version here.

Then, go to Castle Cops and register there. Start a topic in this forum, and paste the HijackThis log along with a description of the problem you are experiencing. Within a few days a security expert will walk you through the steps you need to take to get rid of the nasties on your system.

There are a number of great downloads on that site--anti-spyware, ant-trojan tools, etc. that you can check out here.

_________________
Several hundred fake escrows (and others) deaded--no longer counting.

aa419.org --dead a fake site today.

No, Akai, you're a wonderful bitch. --Reaper
View user's profileSend private messageVisit poster's websiteSkype Name
kleindoofy
*** BANNED ***


Joined: 24 Oct 2004
Posts: 6248
Location: Europe


PostPosted: Wed Nov 07, 2007 1:49 am Reply with quoteBack to top

lokie wrote:
Well McAfee can't be that good if you just caught a virus ...


That's not necessarily true. Some viruses are highly specialized and not common and can get around the AV software, especially when they're new.

I caught a virus about two years ago. To this day I don't know how I got it. I'm probably the most cautious user around. The virus killed all the AV software first off. It then copied itself onto every .exe and .com on the whole computer, within minutes. The next step it took was to disable Windows and corrupt all the system software. It then spread through the network. It took out seven machines before I even realized it.

No common AV software could help. Nothing. I finally found a killer that was made especially for that one virus. It ran in DOS - it had to. It killed the virus, but Windows was dead too, so in order to copy out the data that I didn't have backed up, I had to boot in DOS mode and copy by hand. Thank God I'm a strict believer in 8:3 file names.

I saved everything, but I had to format all the disks and reinstall everything, including Windows.

The attack and destruction of my system took about 15 minutes.

As I say, to this day I don't have the slightest idea how it happened.
View user's profileSend private message
lokie
Master Baiter


Joined: 30 Jun 2006
Posts: 123
Location: teh interweb


PostPosted: Wed Nov 07, 2007 5:21 am Reply with quoteBack to top

@KD

Putting aside my loathing for Norton and McAfee for a moment, I added my comment with the benefit of seeing that the problem was solved. And most importantly that Microsofts malicious code removal tool had removed it.

Now as you may be aware (or not), Microsoft updates that tool with just the big prevalent viruses. Every first Tuesday of the month the new updated version is released, and depending on what went in that month between 7~14 days out of date. To give you a relevant example of how long the process can take, Storm was only added in Septembers download, a full 9 months after that trojan hit the internet.

So getting back to my comment, theres a reasonable expectation that an anti-virus package that charges a subscription fee for updates should have caught it over the weekend.

Now your comment brings us to the big bad problem of anti-virus. Theres a delay between a virus being released, and a vendor creating an update to identify and remove that virus. So nothing is perfect, theres always some risk. However, a lot of real time scanners are beginning to use heuristics to try and determine if code is safe or malicious. Some are pretty good, some are pathetic. But ultimately the future lies with good heuristics as opposed to large upto date signature files.

Which indirectly brings us to here. I've seen far to many compromised machines enter the workship with Norton or McAfee installed. One thing all those machines share in common is the real time scan was switched off. On an average PC those programs are performance killers, its no surprise a user will switch them off as soon as someone tells them how to. Those machines share another trait in common, boot time checking is also disabled. Again who wants to wait 10~20minutes for their PC to boot. Theres just far to many machines where the installed anti-virus package is just a pretty icon in system tray and not much else.

Time to move on before we start thinking Vista and DRM chips are the solution to our problems Laughing

_________________
As always good luck with your bait.


Click here to support 419Eater.com
View user's profileSend private message
Inspector Gadget
Angel of unrealistic meetings


Joined: 20 Feb 2007
Posts: 6259
Location: Trumpton


PostPosted: Wed Nov 07, 2007 10:10 am Reply with quoteBack to top

Or you could buy a Mac.

Glad you got it sorted.


Try the Firefox/noscript suggestions. Latest success on my PC was to stop a copy of Prockill getting through. that is a hdd eraser if I've read the write-up correctly.

_________________
Easter 2015 x2 Pith Helmet Co bait with Rumbero Sao Tome island to Gabon van donation
Pith Helmet Co bait with Jayhawk and VJD. Stanley's bottle tour Aba to Lagos
Pith Helmet Pith Helmet Team Hector, airport in installments and St Louis to Kayes
Pith Helmet Halil, Cotonou to Accra
Pith Helmet + Sand Timer Precious 10/08/11
Cellphone x8 Nigeria Spain Mortar x34 Closed lad accounts x 73 Goat
grown up man like him, still doing all this shit games - Stanley, (he doesn't like Parcel Direct)
You again do the strange reflections stuffed with drugs? - Natalia
Sand Timer x3 Hector 24/1/13 Sand Timer Moses 15th Oct 2011
Pretty Rose Sand Timer x 2Mick Ole 11th Sept 2014-16 Sand Timer Asare Akuffo start 4th Aug 2014
View user's profileSend private messageSkype Name
thud419
Baiting Guru


Joined: 04 Jan 2006
Posts: 3193


PostPosted: Wed Nov 07, 2007 10:13 am Reply with quoteBack to top

When you do get a new AV solution, make sure that only one of them is doing on-access scanning. Having two of them doing it makes a virus infection seem a good idea. Wink

_________________
Click here to feel warm and cozy.

I did not f**k your wife in any way -- Nike Akanbi
I don't know what else to do or do I continue filling and filling forms. -- Barr. Koloti
you has been dribbling me up and down but I will show some thing you have never seen before, I think you breath air wait and see. -- Sand Timer Barr. Cole
Cellphone x14
United States x 0.25 won from Reaper in a sucker's bet

Hello Kitty! pony Mortar x8 Closed lad accounts x several
View user's profileSend private messageSend e-mailVisit poster's website
Klaasvaak
Baiting Guru


Joined: 11 May 2004
Posts: 2163


PostPosted: Wed Nov 07, 2007 1:16 pm Reply with quoteBack to top

Breddan Butter wrote:
Quote:
"I need help with nasty virus? I got while scambaiting".

What a strange topic title.
What the hell has scambaiting got to do with you getting a virus?



Maybe he downloaded something his lad has sent to him.

downloading stuff from lads is bad.

_________________
Easter 2015Elton Flying Monkey Pole Dancer
www.microsoft.com

View user's profileSend private message
Lpico
Master Baiter


Joined: 16 Nov 2006
Posts: 161
Location: coonztowne


PostPosted: Wed Nov 07, 2007 9:08 pm Reply with quoteBack to top

I never run as an administrator on my computer and I use Opera. If you're not running as admin, things can't auto-install themselves. IE & Firefox are the most commonly used browsers so the most targeted by viruses.

I have had few problems. Good luck with yours!

_________________
also for me to continue my education because i am just here surfing doing nothing. --solomon johnson
so i have decided to send you this palm flirt concerning my father. --stella
CellphoneCellphoneCellphone
View user's profileSend private messageSkype NameICQ Number
mindgames
Not quite a Newb


Joined: 20 Jun 2007
Posts: 54
Location: United States


PostPosted: Thu Nov 08, 2007 6:27 pm Reply with quoteBack to top

Klaasvaak wrote:
Maybe he downloaded something his lad has sent to him.

downloading stuff from lads is bad.


I do that all the time. I just do it in a honey net. Plus, I want the virus samples so I can send them to AV companies if one of my anti-viruses don't detect it (and if it's a lad, ask why it set off my anti-virus from an attached screenshot), but they haven't sent me anything yet... Crying or Very sad
View user's profileSend private message
troglodite
Master Baiter


Joined: 28 May 2004
Posts: 147
Location: Planet Earth, usually


PostPosted: Thu Nov 08, 2007 7:23 pm Reply with quoteBack to top

For antimalware tools, I recommend Kaspersky. I found out about it based on a recommendation from Kevin Mitnick. The software is really good, and I have found it better than either McAfee or Norton (I have used both).

Yes, you can easily pick up something nasty from a web site. While I was testing some web spidering software, I came across a site whose default page was a virus. Kaspersky caught it immediately, and I was not running a browser of any type. It was caught through the datastream. Nice!

I personally won't use anything else but Kaspersky on my machines.

_________________
Cell phones are yuppie CBs.
View user's profileSend private message
Display posts from previous:      
This forum is locked: you cannot post, reply to, or edit topics.This topic is locked: you cannot edit posts or make replies.


 Jump to:   



View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum





All Content © 2003 - 419Eater.com : SEO Company : Free SEO Audit Tool : SEO Console : AI Search Readiness : v2.5
Powered by phpBB © 2001, 2002 phpBB Group :S5: FI Theme :: All times are GMT