Author Topic: Nasty Virus  (Read 4245 times)

0 Members and 2 Guests are viewing this topic.

Online Corrine

  • The Mystical Rose
  • Administrator
  • Hero Member
  • *****
  • Posts: 11540
  • "Stronger than the past, united in our goal."
    • Security Garden
Re: Nasty Virus
« Reply #15 on: May 01, 2009, 07:35:17 PM »
You are most welcome, Pat.  Feel free to stop in any time.  Should you wish assistance on guidance for your daughter on securing the OS, we will be happy to assist.
,  

Take a walk through the "Security Garden" -- Where Everything is Coming up Roses!

Remember - A day without laughter is a day wasted.
May the wind sing to you and the sun rise in your heart.

Offline Temmu

  • The Assimilator
  • Hero Member
  • *****
  • Posts: 4999
    • gooooooooogle
Re: Nasty Virus
« Reply #16 on: May 04, 2009, 06:54:11 PM »
would any av scanner pick up the virut virus mentioned above?
Linux Registered User #433481

[ t h i s . s p a c e . f o r . r e n t ] ~ debian ~ ubuntu ~ pclinuxos ~ xp ~ opera ~ firefox ~ keyboard ~ mouse ~ color monitor ~

click here

Online Corrine

  • The Mystical Rose
  • Administrator
  • Hero Member
  • *****
  • Posts: 11540
  • "Stronger than the past, united in our goal."
    • Security Garden
Re: Nasty Virus
« Reply #17 on: May 04, 2009, 07:16:47 PM »
Depends on the variant.  Most don't pick it up.  The problem is that Virut infects not just the system files but 3rd party software as well.  Thus, even a "repair install" isn't any good since that would only replace Windows files not the infected 3rd party programs.  A reformat is the only safe solution.  Otherwise, even one missed file would result in regenerating the infection.
,  

Take a walk through the "Security Garden" -- Where Everything is Coming up Roses!

Remember - A day without laughter is a day wasted.
May the wind sing to you and the sun rise in your heart.

Offline Temmu

  • The Assimilator
  • Hero Member
  • *****
  • Posts: 4999
    • gooooooooogle
Re: Nasty Virus
« Reply #18 on: May 05, 2009, 11:27:25 PM »
ok, what scanner to use?  a rescue cd?
Linux Registered User #433481

[ t h i s . s p a c e . f o r . r e n t ] ~ debian ~ ubuntu ~ pclinuxos ~ xp ~ opera ~ firefox ~ keyboard ~ mouse ~ color monitor ~

click here

Offline Paddy

  • LandzDown Team
  • Hero Member
  • *****
  • Posts: 1376
Re: Nasty Virus
« Reply #19 on: May 05, 2009, 11:44:17 PM »
Well if I see the information right, a rescue CD would depend on the time it was created .
Quote
The problem is that Virut infects not just the system files but 3rd party software as well.  Thus, even a "repair install" isn't any good since that would only replace Windows files not the infected 3rd party programs.

Because a rescue, CD just might have infected files backed up on to it, were as a total system restore, does away with that possibility.. 

Clean system install, I think.. Now comes the kicker with how many people didn't have a restore CD ..  Some  Systems come with one others when you start the computer from New you are asked to create one even before you get as far as an internet connection ...

Paddy.. 
This is one race of people for whom psychoanalysis is of no use whatsoever - Sigmund Freud (about the Irish)

Never argue with a fool, they will lower you to their level and then beat you with experience.

Online Corrine

  • The Mystical Rose
  • Administrator
  • Hero Member
  • *****
  • Posts: 11540
  • "Stronger than the past, united in our goal."
    • Security Garden
Re: Nasty Virus
« Reply #20 on: May 05, 2009, 11:55:27 PM »
Quote
ok, what scanner to use?
Not sure what you mean by "what scanner to use?"  In the case of Pat's daughter's laptop, he said he used "Avast. Malwarebytes. prevx. sophos. Spyhunter."  What I know is that when I was researching unknown files in the log, Virut was identified at one of the research sites.  I was already suspicious when I saw the rootkit and Sality in the log. 
,  

Take a walk through the "Security Garden" -- Where Everything is Coming up Roses!

Remember - A day without laughter is a day wasted.
May the wind sing to you and the sun rise in your heart.

Offline Temmu

  • The Assimilator
  • Hero Member
  • *****
  • Posts: 4999
    • gooooooooogle
Re: Nasty Virus
« Reply #21 on: May 06, 2009, 12:18:09 AM »
- true, most pc mfg's don't include actual cd's any more.
- sorry.  my point is that concept is simply scary.    i'm running eset, for example, but put free versions of avira or avg on friends machines.  point is, it looks like it may to do little or no good against something like that.
Linux Registered User #433481

[ t h i s . s p a c e . f o r . r e n t ] ~ debian ~ ubuntu ~ pclinuxos ~ xp ~ opera ~ firefox ~ keyboard ~ mouse ~ color monitor ~

click here

Online Corrine

  • The Mystical Rose
  • Administrator
  • Hero Member
  • *****
  • Posts: 11540
  • "Stronger than the past, united in our goal."
    • Security Garden
Re: Nasty Virus
« Reply #22 on: May 06, 2009, 12:28:50 AM »
I'm sure you've taught your friends about getting the security updates.  Also warn them about the dangers of P2P programs. 
,  

Take a walk through the "Security Garden" -- Where Everything is Coming up Roses!

Remember - A day without laughter is a day wasted.
May the wind sing to you and the sun rise in your heart.

Offline Paddy

  • LandzDown Team
  • Hero Member
  • *****
  • Posts: 1376
Re: Nasty Virus
« Reply #23 on: May 06, 2009, 12:45:12 AM »
Temmu it would also depend on the users surfing habits, you can  not be responsible for a click of a mouse ..    ( virut )    is and usually comes with, p2p programs > keygens > cracks..

I also use to worry about things  when I left a computer as to wots going to happen with certin types of software .. Just to be called back, because something was ..   and well you can guess ?  Warnings in side Av software that were ignored, plus P2P software.. Installed ..
 
Paddy..
This is one race of people for whom psychoanalysis is of no use whatsoever - Sigmund Freud (about the Irish)

Never argue with a fool, they will lower you to their level and then beat you with experience.

Offline Temmu

  • The Assimilator
  • Hero Member
  • *****
  • Posts: 4999
    • gooooooooogle
Re: Nasty Virus
« Reply #24 on: May 06, 2009, 02:03:04 AM »
ah, cracked software.  lord only knows what's actually in that.  and limewire et al, oooo, yuck.
Linux Registered User #433481

[ t h i s . s p a c e . f o r . r e n t ] ~ debian ~ ubuntu ~ pclinuxos ~ xp ~ opera ~ firefox ~ keyboard ~ mouse ~ color monitor ~

click here