Results 1 to 10 of 10

Thread: Spyware-killing virus

  1. #1
    Tore Anders Berntzen Guest

    Spyware-killing virus

    I discovered that Ad-Aware SE Personal from Lavasoft stops after scanning
    some 92000 files and then it stops. Only option is to abort. The exact
    number of scanned files varies. Number of found objects (number of new
    critical objects)is 22. Obviously I have some virus or spyware on the
    machine that stops Ad-Aware. Help!

    I have Norman anti-virus which I run regularly. I also run Spybot regularly.
    Definition file is SE 1R 155 26.02.2007.



  2. #2
    David H. Lipman Guest

    Re: Spyware-killing virus

    From: "Tore Anders Berntzen" <tore.berntzen@bof-nett.no>

    | I discovered that Ad-Aware SE Personal from Lavasoft stops after scanning
    | some 92000 files and then it stops. Only option is to abort. The exact
    | number of scanned files varies. Number of found objects (number of new
    | critical objects)is 22. Obviously I have some virus or spyware on the
    | machine that stops Ad-Aware. Help!
    |
    | I have Norman anti-virus which I run regularly. I also run Spybot regularly.
    | Definition file is SE 1R 155 26.02.2007.
    |



    If you are using any version of Sun Java that is prior to JRE Version 6.0,
    then you are strongly urged to remove any/all versions.
    There are numerous vulnerabilities in them and they are actively being exploited.

    It is highly suggested that you update to the latest version which is Sun Java JRE/JSE
    Version 6.0

    Simple check, look under...
    C:\Program Files\Java

    The only folder under that folder should be the latest version.

    Such as...
    C:\Program Files\Java\jre1.6.0

    http://java.sun.com/javase/downloads/index.jsp
    http://www.java.com/en/download/manual.jsp

    FYI:
    http://sunsolve.sun.com/search/docum...=1-26-102557-1
    http://sunsolve.sun.com/search/docum...=1-26-102622-1
    http://sunsolve.sun.com/search/docum...=1-26-102648-1
    http://sunsolve.sun.com/search/docum...=1-26-102729-1
    http://sunsolve.sun.com/search/docum...=1-26-102732-1
    http://sunsolve.sun.com/search/docum...=1-26-102760-1



    For non-viral malware...

    Please download, install and update the following software...

    * Ad-aware SE v1.06
    http://www.lavasoft.de/
    http://www.lavasoftusa.com/
    http://www.lavasoft.de/ms/index.htm

    * SpyBot Search and Destroy v1.4
    http://security.kolla.de/
    http://www.safer-networking.org/microsoft.en.html

    * SuperAntiSpyware
    http://www.superantispyware.com/supe...freevspro.html

    After the software is updated, I suggest scanning the system in Safe Mode.

    I also suggest downloading, installing and updating BHODemon for any Browser Helper Objects
    that may be on the PC.

    * BHODemon

    http://www.majorgeeks.com/downloadge...4332b4b8b8442d

    For viral malware...

    * Download MULTI_AV.EXE from the URL --
    http://www.ik-cs.com/programs/virtools/Multi_AV.exe

    To use this utility, perform the following...
    Execute; Multi_AV.exe { Note: You must use the default folder C:\AV-CLS }
    Choose; Unzip
    Choose; Close

    Execute; C:\AV-CLS\StartMenu.BAT
    { or Double-click on 'Start Menu' in C:\AV-CLS }

    NOTE: You may have to disable your software FireWall or allow WGET.EXE to go through your
    FireWall to allow it to download the needed AV vendor related files.

    C:\AV-CLS\StartMenu.BAT -- { or Double-click on 'Start Menu' in C:\AV-CLS}
    This will bring up the initial menu of choices and should be executed in Normal Mode.
    This way all the components can be downloaded from each AV vendor's web site.
    The choices are; Sophos, Trend, McAfee, Kaspersky, Exit this menu and Reboot the PC.

    You can choose to go to each menu item and just download the needed files or you can
    download the files and perform a scan in Normal Mode. Once you have downloaded the files
    needed for each scanner you want to use, you should reboot the PC into Safe Mode [F8 key
    during boot] and re-run the menu again and choose which scanner you want to run in Safe
    Mode. It is suggested to run the scanners in both Safe Mode and Normal Mode.

    When the menu is displayed hitting 'H' or 'h' will bring up a more comprehensive PDF help
    file. http://www.ik-cs.com/multi-av.htm

    Additional Instructions:
    http://pcdid.com/Multi_AV.htm


    * * * Please report back your results * * *


    --
    Dave
    http://www.claymania.com/removal-trojan-adware.html
    http://www.ik-cs.com/got-a-virus.htm



  3. #3
    Pipboy Guest

    Re: Spyware-killing virus

    On Sat, 3 Mar 2007 19:39:32 +0100, Tore Anders Berntzen wrote:

    > I discovered that Ad-Aware SE Personal from Lavasoft stops after scanning
    > some 92000 files and then it stops. Only option is to abort. The exact
    > number of scanned files varies. Number of found objects (number of new
    > critical objects)is 22. Obviously I have some virus or spyware on the
    > machine that stops Ad-Aware. Help!
    >
    > I have Norman anti-virus which I run regularly. I also run Spybot regularly.
    > Definition file is SE 1R 155 26.02.2007.


    Try Superantispyware and try Adaware and Spybot in safemode, press F8
    during botup and select safe mode.

    http://www.superantispyware.com/

  4. #4
    Drumstick Guest

    Re: Spyware-killing virus

    > If you are using any version of Sun Java that is prior to JRE Version 6.0,
    > then you are strongly urged to remove any/all versions.
    > There are numerous vulnerabilities in them and they are actively being exploited.
    >
    > It is highly suggested that you update to the latest version which is Sun Java JRE/JSE
    > Version 6.0
    >
    > Simple check, look under...
    > C:\Program Files\Java
    >
    > The only folder under that folder should be the latest version.

    Ok, I'm confused... I'm seeing v.2 as the latest version on the Sun
    (java.com) site.

    What am I missing?

    Drum--

  5. #5
    David H. Lipman Guest

    Re: Spyware-killing virus

    From: "Drumstick" <no_thanks@you.com>


    | Ok, I'm confused... I'm seeing v.2 as the latest version on the Sun
    | (java.com) site.
    |
    | What am I missing?
    |
    | Drum--

    V2 ? Now I am confused.

    In the middle of the page, find...
    "Java Runtime Environment (JRE) 6"
    http://java.sun.com/javase/downloads/index.jsp


    --
    Dave
    http://www.claymania.com/removal-trojan-adware.html
    http://www.ik-cs.com/got-a-virus.htm



  6. #6
    Kadaitcha Man Guest

    Re: Spyware-killing virus

    David H. Lipman <DLipman~nospam~@Verizon.Net> Thou lunatic knave. If you
    spend word for word with me, I shall make your wit bankrupt. Thou fat
    and greasy citizen. Thou soulless villain. Ye mourned and ye confounded:

    > From: "Drumstick" <no_thanks@you.com>
    >
    >
    >> Ok, I'm confused...


    [http://java.sun.com/javase/downloads/index.jsp]
    <snip>

    > Now I am confused.


    "Confused or having trouble downloading or installing? See the download help
    page."

    Pair of ****ing netloons.

    --
    alt.usenet.kooks - Pierre Salinger Memorial Hook, Line & Sinker:
    September 2005, April 2006, January 2007.

    Vescere puter subgalia meis.

    "Now I know what it is. Now I know what it means when an
    alt.usenet.kook x-post shows up."
    AOK in news:ermdlu$nli$1@registered.motzarella.org

  7. #7
    David H. Lipman Guest

    Re: Spyware-killing virus

    From: "Far Canal" <me@privacy.net>


    | Sun are clueless. I've been running v5, which updated last week to
    | v5.11, despite there being a V6. I've now installed V6 and typically
    | Sun didn't remove V5, I've had to do that myself.
    | Most 'ordinary' users will never know they will have every version of
    | Java still installed after they've updated.
    |

    Yes !

    What's worse is I have seedn decoded scripts that actually load different .CLASS files based
    upon the version of Sun Java. This means that this web site was exploiting the knowledge
    that Sun kept old versions of Sun Java on the PC and targeting the installed versions to
    specific exploits.

    --
    Dave
    http://www.claymania.com/removal-trojan-adware.html
    http://www.ik-cs.com/got-a-virus.htm



  8. #8
    David H. Lipman Guest

    Re: Spyware-killing virus

    From: "Far Canal" <me@privacy.net>


    >>

    | Is there a way of making them aware or are Sun too big and stupid to be
    | told they need to fix the situation?
    |

    A couple of months ago we had a couple of Sun Micro. representatives in out office (they are
    a vendor/contractor to my "organization") and at the end of a briefing I took those reps. to
    the side and tried to discuss all the problems with Sun Java. I mentioned all the problems
    dealing with malware exploiting various versions, their lack of un-installing old versions
    and their inability to produce timely bulletins on vulnerability assessments.

    The response... They blamed Microsoft !

    Here's a perfect example of Sun's stupidity in reference to Java.

    In mid June '06 Sun was notified that there existed a buffer overflow vulnerability that
    would cause elevated privileges in process GIF files. Sun made no public notification until
    7 months later, Jan '07.
    http://sunsolve.sun.com/search/docum...=1-26-102760-1

    --
    Dave
    http://www.claymania.com/removal-trojan-adware.html
    http://www.ik-cs.com/got-a-virus.htm



  9. #9
    pcbutts1 Guest

    Re: Spyware-killing virus

    On Mar 4, 4:24 am, Far Canal <m...@privacy.net> wrote:
    > David H. Lipman wrote
    >
    >
    >
    >
    >
    > > From: "Drumstick" <no_tha...@you.com>

    >
    > > | Ok, I'm confused... I'm seeing v.2 as the latest version on the Sun
    > > | (java.com) site.
    > > |
    > > | What am I missing?
    > > |
    > > | Drum--

    >
    > > V2 ? Now I am confused.

    >
    > > In the middle of the page, find...
    > > "Java Runtime Environment (JRE) 6"
    > >http://java.sun.com/javase/downloads/index.jsp

    >
    > Sun are clueless. I've been running v5, which updated last week to
    > v5.11, despite there being a V6. I've now installed V6 and typically
    > Sun didn't remove V5, I've had to do that myself.
    > Most 'ordinary' users will never know they will have every version of
    > Java still installed after they've updated.- Hide quoted text -
    >
    > - Show quoted text -


    Are you trolls incapable of learning? I'm in Santa Clara right now
    doing business with Sun. The reason they do not uninstall the old
    versions is because some software still require it. Cisco is one that
    comes to mind but there are plenty more. The well publicized exploits
    have been fixed and even if you uninstall ver 1.5.6 or higher the
    exploit patch remains.



  10. #10
    ---Fitz--- Guest

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •