greatbear: (Default)
[personal profile] greatbear
I just spent the last couple hours hunting down and removing a pile of ad/spy/mal/scumware on this PC. I came back to my PC after showering and find a pile of dialog boxes wanting to install GAIN/Gator, CoolWebSearch, change my homepage, etc... you guessed it, all the nasties werre there. Thing is, I did not visit any websites known for that shit, only occasionally dealing with a stray popup that evades the blocker. Perhaps one of those contained the trigger. I watched as the programs 'mutated' and avoided the scanning tools. Between running Ad-Aware, Spybot Search and Destroy, killing files manually and isolating the PC from the LAN, I think I got it all.

I am not one who has an 'unsecured' PC. In fact, I run with rather strict settings to prevent this shit from occurring, and run various programs to block/scan and avoid these things. Still, it managed to come in.

I am pissed.

The purveyors of this trash should be forced to watch their children be molested by the entire membership of NAMBLA, their houses burned and their knees and ankles shattered with a 20 pound sledgehammer (I'll volunteer for the latter, I have the hammer).

Fuckers.

Date: 2004-06-27 02:22 am (UTC)
From: [identity profile] hypertwink.livejournal.com
I know. I used Spybot and AdAware when I cleaned my computer. It took me a weekend to do it, and I still go through it every 3-4 days to make sure,

Date: 2004-06-27 09:30 pm (UTC)
From: [identity profile] greatbearmd.livejournal.com
Scan often, update religiously!

Date: 2004-06-27 03:28 am (UTC)
From: [identity profile] madhugger.livejournal.com
This past week was a big week for the spreading of such crap.
I was nailed by a couple parasites that ad-aware, hijack this and my virus scan missed entirely. Found a new ap that did a great job at searching the stuff down and destroying it. The real kicker was the invasion to my restore settings and anti-virus software (had to remove it and re-install it to take care of one bug).

I am with you wholeheartedly on the punishment for these muck dwelling bastards!

Date: 2004-06-27 09:32 pm (UTC)
From: [identity profile] greatbearmd.livejournal.com
Sadly this is only going to get worse. It's a war zone on the desktop.

Date: 2004-06-27 04:21 am (UTC)
From: [identity profile] quirkstreet.livejournal.com
Yikes. That sucks. Glad you got it cleaned up. I just love how you titled the post "Fscking ..." Heh. I'm in at work early this morning doing Unixy stuff, it was a very appropriate post to read.

Date: 2004-06-27 09:33 pm (UTC)
From: [identity profile] greatbearmd.livejournal.com
It's my way of flying under 'censorware' and giving a nod to all us geeks out there. ;)

Date: 2004-06-27 06:13 am (UTC)
From: [identity profile] jrjarrett.livejournal.com
There's a local radio show called "SoundBytes" up this way, and they talk about a website they've put together called "The Security Tango" (http://www.securitytango.com/).

It tells you what software you need and how to clean up your Windows computer. I think you seem pretty savvy about this stuff, but in case anyone reading this, or any one you know seems confused, send 'em here.

Thanks

Date: 2004-06-27 04:45 pm (UTC)
From: [identity profile] perkk.livejournal.com
The site looks good. I routinely recommend the use of Antivirus, Antispam, Personal Firewall, and some form of Privacy Software. The only thing I would add to their list would be SpywareBlaster by Javacool Software (free). It's a good inoculation program for Internet Explorer and Firefox, disabling a lot of bad signed ActiveX controls and setting up a number of domains to not set cookies.

For removing badware (a superset of malware which includes adware) I sometimes use HijackThis which looks for all the ways to hook a system, short of replacing DLL's and patching executables (which Antivirus is good at finding).

If you must use IE, I generally recommend disabling 3rd Party cookies, allow session cookies, set 1st Party Cookies to prompt and manage manually. If you use Outlook, I recommend upgrading to Outlook 2003 and note the security features about not loading images in HTML emails and attachment blocking.

Re: Thanks

Date: 2004-06-27 06:43 pm (UTC)
From: [identity profile] jrjarrett.livejournal.com
Hehe.

Well, for the most part, I don't worry because I use my Macs for my main machines, I have a hardware router with only a very few ports open, mostly to the Mac and my Sun, and I don't get email on my PC.

I still have Macafee and Adaware on my PC (adaware only ever finds cookies as badness).

Date: 2004-06-27 09:38 pm (UTC)
From: [identity profile] greatbearmd.livejournal.com
It was how it suddenly showed up that got to me. Walk away from the PC for 20 minutes, come back and it's all there, staring me in the face and mutating and evading the entire time I am after the crap. This PC among several others sits behind a firewalled server. The old clunky server rarely gets affected, and this particular PC, which is actually the most heavily guarded, gets nailed. Arrrgh.

I guess I have to be even more diligent at updating all the sig and def files for various protections now. *sigh*

Date: 2004-06-27 06:26 am (UTC)
From: [identity profile] musicmanchicago.livejournal.com
I just got the hottest visual of oyu sweaty with a sledge hammer..... ;)

Date: 2004-06-27 09:40 pm (UTC)
From: [identity profile] greatbearmd.livejournal.com
I used to have a shirtless pic of me splitting firewood with that sledgehammer. I'll see if I still have it. ;)

Date: 2004-06-28 08:04 am (UTC)
From: [identity profile] musicmanchicago.livejournal.com
hmmmm now that was an excellent welcome to the office!

Date: 2004-06-27 03:28 pm (UTC)
From: [identity profile] thegreenbear.livejournal.com
Oh stop holding back... Tell us how ya REALLY feel about it!

And can I join the club?

Date: 2004-06-27 09:41 pm (UTC)
From: [identity profile] greatbearmd.livejournal.com
Applications now being accepted!

Date: 2004-06-28 01:19 am (UTC)
From: [identity profile] thegreenbear.livejournal.com
WOO HOO!!! SIGN ME UP!!!

Profile

greatbear: (Default)
Phil

December 2016

S M T W T F S
    123
45678910
11121314151617
18192021222324
25262728293031

Most Popular Tags

Style Credit

Expand Cut Tags

No cut tags
Page generated Feb. 6th, 2026 10:48 pm
Powered by Dreamwidth Studios