• Lucid Dreaming - Dream Views




    Results 1 to 24 of 24

    Thread: Msn Virus

    Hybrid View

    1. #1
      I Drink Universe Juice Adanac's Avatar
      Join Date
      Jul 2006
      Gender
      Location
      Parry Sound
      Posts
      415
      Likes
      6
      I just had one of my friends send me a message saying "HOLY SHIT!!! You have to look at this!!" and a link to some site. Curious, I clicked. Now, first warning, it is a page with only my email address and a download bar on it. Second warning, the internet download blocker thing detected something and blocked it, and DO I want to allow it? "YES!" I scream with unbeilavable stupidity, as I click allow and grant access to many a evil software....... So it downloads my so called "profile" and then my msn freaks out on a very extreme level and sends the same message to all of my online contacts. Oh xrap! Yup, the ball has dropped and my feeble little mind has connected two and two. It's a virus. So I quickly tell everyone I can to not go to that link, time is of the essance!!! Contacts I havent even talked to for years are assailing me with a bombardment of questions!!! "WTF DUDE!!!????" "OH SHHNAP Whats this???" "HAHAHAHA IM DUMB *CLICK*" I try to explain when my computer sends out another hellish wave of this foul internet spawn! I quickly shut down msn, and going over my choices, open up task manager and obliterate anything suspicious. I fear the possibilities of restarting my computer, so I start AVG, guardian of the pure and too cheap to buy real protection. And so it is that I came unto this site. With AVG detecting on errors so far, as suspected, and after some google research returning results I didn't understand. Please help me...


      Also, on a simaler note, I had 3817 viruses about a week ago but they are gone now...
      I had a strange dream last night...

    2. #2
      Member Achievements:
      1 year registered Veteran First Class 10000 Hall Points
      wasup's Avatar
      Join Date
      Oct 2003
      Gender
      Posts
      4,668
      Likes
      21
      My advice is...

      Don't be stupid.

    3. #3
      Member
      Join Date
      Feb 2007
      Posts
      52
      Likes
      0
      Quote Originally Posted by Adanac View Post
      And so it is that I came unto this site. With AVG detecting on errors so far, as suspected, and after some google research returning results I didn't understand.
      Also, on a simaler note, I had 3817 viruses about a week ago but they are gone now...
      [/b]
      Umm, looks like you've been here a couple months. Judging by that it just seems like you're posting this everywhere you can find, right? Lol.

      In any case there are seriously a lot of ways to remove this, it would also be a good idea to get a HijackThis log cleaned up. Tech Support Guy is a great forum, the people there really know what they're talking about..post it there if you haven't already.

    4. #4
      Member Achievements:
      1 year registered Veteran First Class 10000 Hall Points
      Umbrasquall's Avatar
      Join Date
      Oct 2003
      Gender
      Location
      NYC
      Posts
      3,444
      Likes
      3
      Search for a solution on Google. It solves all problems.

    5. #5
      Party Pooper Tsen's Avatar
      Join Date
      Feb 2004
      LD Count
      ~1 Bajillion.
      Gender
      Posts
      2,530
      Likes
      3
      Press ctrl-alt-delete and go to "processes". Google the names of all of the processes, starting with the ones that use the most memory and CPU power.
      Eventually you'll find the one that's causing it, and Googling it should bring up fixes.
      Other than that, download and install Lavasoft Adaware and Spybot Search & Destroy. Both are good antivirus programs that are entirely free. If you've got Norton or McAffee, toss them. They suck, they waste memory and CPU, and they don't catch as much as free alternatives do.
      AVG's okay, but don't rely on it's virus scan capabilities too much, as it doesn't catch everything (In fact, I have AVG and keep it running, but I never use it's scan. All I keep it around for is its running process detection).

      And yeah, stop being stupid. It helps.
      [23:17:23] <+Kaniaz> "You think I want to look like Leo Volont? Don't you dare"

    6. #6
      Banned
      Join Date
      Mar 2007
      Gender
      Location
      USA
      Posts
      53
      Likes
      0
      I use Avast and that works pretty well.

      One thing to remember is, if your computer wants to block it... let it. either that or look up the site first. Some people have to learn that the hard way, others just do it to be extra cautious... either way, it can save you alot of trouble in long run.

    7. #7
      I Drink Universe Juice Adanac's Avatar
      Join Date
      Jul 2006
      Gender
      Location
      Parry Sound
      Posts
      415
      Likes
      6
      Alright I&#39;ll try all of these.
      I had a strange dream last night...

    8. #8
      Banned
      Join Date
      Jul 2006
      Gender
      Location
      ʇsǝɹɔpooʍ
      Posts
      3,207
      Likes
      176

    9. #9
      Member Kaniaz's Avatar
      Join Date
      Jan 2004
      Gender
      Location
      England
      Posts
      5,441
      Likes
      9
      You should not say yes to security messages like "Do you want to basically install something that this site says it should?". That&#39;s the obvious moral, but I think you realised that.

      Now that you actually have the virus it doesn&#39;t sound like a very smart or subtle one and should (you&#39;d think) be easily removed. But I know these can be quite persistent from some recounts and some people even attack me on MSN with such messages. I&#39;ve never yet clicked one myself.

      A good idea may be to take a screenshot of your entire &#39;processes&#39; tab in Task Manager, if you&#39;re on XP or Vista, and if there&#39;s any particular process that&#39;s out of place it can be identified quite easily by us and then you&#39;ll know what to search on the internet for better instructions.

      <div align="center"></div>
      This is what I see. It&#39;s relatively obvious from each description that&#39;s available what each process is - yes, I would swear to Firefox having the world&#39;s biggest memory leak - and I know none of them are trojans or otherwise.

      If AVG or otherwise has identified the virus, searching for it on the internet almost always finds you a solution. Often by Microsoft itself or otherwise: just don&#39;t go and download ANOTHER virus in the process, y&#39;hear?

    10. #10
      FBI agent Ynot's Avatar
      Join Date
      Oct 2005
      Gender
      Location
      Southend, Essex
      Posts
      4,337
      Likes
      14
      it&#39;s quite easy to hide things from the windows build in process viewer

      Use Sysinternals one instead
      http://download.sysinternals.com/Fil...ssExplorer.zip

      but to be honest,
      there&#39;s nought like having another machine (that you know is clean)
      and plug your hard-disk into that, and scan it *

      scanning a hard-disk from an OS installed on that same disk is not 100% guaranteed to pick up everything


      * you can also, if you wish, use a boot CD of some kind
      and virus scan from that
      there&#39;s a couple about, but I forgot their names
      (\_ _/)
      (='.'=)
      (")_(")

    11. #11
      Member Kaniaz's Avatar
      Join Date
      Jan 2004
      Gender
      Location
      England
      Posts
      5,441
      Likes
      9
      it&#39;s quite easy to hide things from the windows build in process viewer[/b]
      Sure it is, but I&#39;ve never seen a trojan do that yet. They&#39;re all pathetic excuses for trojans. That said Process Explorer is always handy to have around. So I&#39;d get it anyway.

      (That or I haven&#39;t seen them because they&#39;re hidden, har har).

    12. #12
      Party Pooper Tsen's Avatar
      Join Date
      Feb 2004
      LD Count
      ~1 Bajillion.
      Gender
      Posts
      2,530
      Likes
      3
      ...Privoxy, eh Kaniaz? Do you use it with TOR, and isn&#39;t that slow on dial up? And why do you have AOL processes running? I mean, you make fun of me for using Linux, but AOL&#39;s, well, the root of all stupid.
      Anyway. Back on topic...

      Normally, I&#39;d say that stupid should hurt, but in this case it looks like it already has. So, have you installed/ran some of those antivirus programs?
      [23:17:23] <+Kaniaz> "You think I want to look like Leo Volont? Don't you dare"

    13. #13
      Member Kaniaz's Avatar
      Join Date
      Jan 2004
      Gender
      Location
      England
      Posts
      5,441
      Likes
      9
      No, I don&#39;t use Tor. It&#39;s just a decent proxy that I run for other reasons (and not for my own use).

      I have AOL processes running because it&#39;s not me that pays the bills and, consequently, it&#39;s not my choice of ISP. If it wasn&#39;t for the piece of shit AOL client which wastes CPU all the time doing just about fuck all, I&#39;d say that AOL was actually rather good with their 56k pricing and service.

    14. #14
      I Drink Universe Juice Adanac's Avatar
      Join Date
      Jul 2006
      Gender
      Location
      Parry Sound
      Posts
      415
      Likes
      6
      Alright, problem sloved guys. It was disguising itself as SVCHOST.exe. Thanks for your help.
      I had a strange dream last night...

    15. #15
      Party Pooper Tsen's Avatar
      Join Date
      Feb 2004
      LD Count
      ~1 Bajillion.
      Gender
      Posts
      2,530
      Likes
      3
      Pricing, maybe, service, HELL NO. We used to use them at our house until my mom got sick of the advertisements and all the crap their service reps gave her.
      Anyway, that does suck that you&#39;re stuck with your parent&#39;s choice of ISP. Have you scoped out your neighborhood for unsecured WiFi?
      [23:17:23] <+Kaniaz> "You think I want to look like Leo Volont? Don't you dare"

    16. #16
      The 'stache TweaK's Avatar
      Join Date
      Jul 2006
      Location
      The Netherlands
      Posts
      1,979
      Likes
      12
      Quote Originally Posted by Adanac View Post
      Alright, problem sloved guys. It was disguising itself as SVCHOST.exe. Thanks for your help.
      [/b]
      SVCHOST.exe is also a Windows file you can&#39;t miss, so be careful.

    17. #17
      I Drink Universe Juice Adanac's Avatar
      Join Date
      Jul 2006
      Gender
      Location
      Parry Sound
      Posts
      415
      Likes
      6
      Quote Originally Posted by TweaK View Post
      SVCHOST.exe is also a Windows file you can&#39;t miss, so be careful.
      [/b]
      Yeah I know, but this one was running under OWNER.
      I had a strange dream last night...

    18. #18
      Member Kaniaz's Avatar
      Join Date
      Jan 2004
      Gender
      Location
      England
      Posts
      5,441
      Likes
      9
      Have you scoped out your neighborhood for unsecured WiFi?[/b]
      Haha, you bet. We don&#39;t live in a built up area (the nearest house is pretty far away), so it&#39;s not an option. Not that I&#39;d probably consider it anyway.

    19. #19
      resident featherdragon dragon-architect's Avatar
      Join Date
      Mar 2007
      Gender
      Location
      Baxter, TN
      Posts
      23
      Likes
      0
      I almost fell for that virus. When it popped up from a contact I hadn&#39;t spoken with in a long time, I was like "Wtf??"

      I seem to have a natural adversion to sudden links that pop up on me, so I was one of the lucky ones that avoided infection.
      Love - - By: Calyo Delphi
      Love poetry, for poetry loves you.
      Love to read, for books are not few.
      Learn to write to express yourself.
      Learn to love, for love itself,
      - - is something that is always new.

      My deviantART gallery/journal

    20. #20
      The 'stache TweaK's Avatar
      Join Date
      Jul 2006
      Location
      The Netherlands
      Posts
      1,979
      Likes
      12
      People over here fall for it all the time, even though the original message is in English and coming from a Dutch guy/girl (to another Dutch person), yet they click it and are completely astonished when it turns out to be a virus. But it seemed to be so legitimate&#33;

    21. #21
      Banned
      Join Date
      Feb 2006
      Location
      Northern Sweden
      Posts
      935
      Likes
      1
      Follow ataraxis advice. You probably knew that place was not good going to, but you let your curiousity get the upper hand over your rationality.

      And if it is a really bad virus, reinstall Windows/Linux (assuming you have a cd for it).

    22. #22
      Banned
      Join Date
      Jul 2006
      Gender
      Location
      ʇsǝɹɔpooʍ
      Posts
      3,207
      Likes
      176
      And if you do happen to reinstall your O.S. keep in mind of the following that "WILL" occur. Here are some...

      FUN FACTS
      • Your Favorites folder will be back to the Operating System defaults.
      • Any saved passwords will no longer be stored on your machine.
      • Your browser homepage will be back to the default homepage.
      • Your computer&#39;s Desktop settings including the screen resolution will be reset to the default settings.
      • Your computer documents won’t be in the My Documents folder; they will be in the Recovered Data folder. This folder will have the same directory structure that your data had prior to the reinstallation.

    23. #23
      The 'stache TweaK's Avatar
      Join Date
      Jul 2006
      Location
      The Netherlands
      Posts
      1,979
      Likes
      12
      Quote Originally Posted by Ne View Post
      • Your computer documents won’t be in the My Documents folder; they will be in the Recovered Data folder. This folder will have the same directory structure that your data had prior to the reinstallation.
      [/b]
      Not if you reformat.

    24. #24
      Banned
      Join Date
      Jul 2006
      Gender
      Location
      ʇsǝɹɔpooʍ
      Posts
      3,207
      Likes
      176
      All I can say is "Perhaps" but reformatting doesn&#39;t guarantee anything.

    Bookmarks

    Posting Permissions

    • You may not post new threads
    • You may not post replies
    • You may not post attachments
    • You may not edit your posts
    •