Pickering Angels

My Computer Was Attacked!

hungry

Well-known member
Nov 20, 2005
1,532
99
48
To begin, I use free versions of AVG and Zone Alarm. I leave my computer on so AVG updates daily.

I was sitting at my computer playing a game of Free Cell. I was online and had my Hotmail account open and minimized, and some other site I visit frequently. All of a sudden, my computer starts to go nuts. My Zone Alarm is telling me these different sites are asking permission to enter my computer. I click deny about 8 times. The a window pops up that looks a lot like AVG, telling I have been attacked with a virus. I try to close it, but it won't let me. Then, it asked me to move it to virus vault. I said yes. I thought it was AVG. The thing wouldn't give up asking me to download this antivirus software. Anyway, it took over my computer and I could do nothing. I then realized, it was not AVG but AVI, and a new Icon was on my desk top. I had to pull the plug on the power supply and restart in safe mode. I was then able to get in add/remove and removed the AVI file and restared my computer.

When it restarted, the screen was in black and white, the icons were visible but useless, further, there were 010101 accross the whole screen. Also, there was a message accross the screen that was diffucult to read, because of the 01's, saying I was being attacked and someone was stealing my bank info, etc. Then up pops up the AVI thing telling me to download their software, I would close it but it would pop up again in 2 seconds. So again, I had no access to my comuter. I pulled the plug again and restarted in safe mode. This time I chose to get a new restore point. I then, restarted and everything worked. I immediately did and AVG update and scan. It found a virus, I believe called html/fracker. It healed the virus and all seemed okay. When I woke up the next day, the new scan revealed 5 trojan horses which it healed. Everything has been okay ever since. This happened last Thursday.

Has anyone seen anything like this, I mean, I was attacked just sitting there playing a game. It was pretty scary. Is there anything else I should check or do?

Anyway, I thougt I would share this, in case it happens to anyone else.
 

cancowboy2001

Member
Apr 8, 2004
534
0
16
Download Malwarebytes

http://www.malwarebytes.org/

"Malwarebytes is a site dedicated to fighting malware. Malwarebytes has developed a variety of tools that can identify and remove malicious software from your computer. When your computer becomes infected, Malwarebytes can provide the needed assistance to remove the infection and restore the machine back to optimum performance."
 

thewheelman

New member
Feb 3, 2004
575
0
0
+1 for trying MalwareBytes.

It found a "trojan dialer" on my system (running AVAST) that was pinging an Amsterdam IP.

I only noticed it after a routine check of my incoming blocked connections firewall log. Every few minutes I was being pinged on some obscure port. So I ran Wireshark, which is a packet sniffer, and saw the outgoing ping.

Those fake Anti-Virus pop-ups are famous...err, infamous. Had to clean one out on a friends PC just last week.
 

hungry

Well-known member
Nov 20, 2005
1,532
99
48
cancowboy2001 said:
Download Malwarebytes

http://www.malwarebytes.org/

"Malwarebytes is a site dedicated to fighting malware. Malwarebytes has developed a variety of tools that can identify and remove malicious software from your computer. When your computer becomes infected, Malwarebytes can provide the needed assistance to remove the infection and restore the machine back to optimum performance."

Thanks for the tip cancowboy, I ran Malware (5.5 hours to do a complete scan) and I found 18 pieces of garbage, mostly ad aware crap, but I noticed and immediate difference. My computer works a lot quicker. Again, thanks for the tip. I would recommend this site to anyone.:)
 

onehunglow

Active member
Sep 13, 2007
1,027
0
36
cancowboy2001 said:
Download Malwarebytes

http://www.malwarebytes.org/

"Malwarebytes is a site dedicated to fighting malware. Malwarebytes has developed a variety of tools that can identify and remove malicious software from your computer. When your computer becomes infected, Malwarebytes can provide the needed assistance to remove the infection and restore the machine back to optimum performance."

What he said!!!!!
 

bishop101

Banned
Feb 28, 2007
96
0
0
Get rid of AVG and get AVAST, it's free too. It runs 6 scans simultaneously in the background and it doesn't drain your system like Norton, it takes up as much resources as AVG. I use it with Malewarebytes as well.
 

squash500

Banned
Nov 8, 2005
2,814
0
0
How often are you supposed to run the Malware scans? When I was having malware problems on my own computer and the tech guy came over to my place to fix it he also installed Malwarebytes on my PC.

He never told me how often to run the malware scans? I'm presently using Rogers online protection as my anti-virus software. I'm running the anti-virus and spyware scans once a week.

Any advice would be most appreciated on how often to run the Malwarebytes scans?
 

pjoe43

New member
Nov 12, 2004
347
0
0
I usually run my security scans once a week unless I run into someting suspicious when surfing.
 

pjoe43

New member
Nov 12, 2004
347
0
0
Having to run security scans is a real pain with Windows.

I run CCleaner the most, couple times a day. It is fast and cleans lots of junk off Windows.
 

WoodPeckr

Protuberant Member
May 29, 2002
47,064
6,196
113
North America
thewoodpecker.net
You can also switch to FREE Linux and bid all your virus/spyware/malware issues, adieu....:cool:
 

dreamblade

Punster Extraordinaire
Feb 8, 2005
1,438
2
36
in my pants, where there's a party
WoodPeckr said:
You can also switch to FREE Linux and bid all your virus/spyware/malware issues, adieu....
When the average user has trouble knowing where the enter key is, you suggest they start using a command based OS. :rolleyes:

And yes, I know you can install KDE or Gnome, but try to explain that to someone whose brain breaks upon being introduced tabbed browsing.
 

cancowboy2001

Member
Apr 8, 2004
534
0
16
You might want to take a look at SUPERAntiSpyware
http://www.superantispyware.com/
The free version doesn't do real-time checking but it is another worthwhile tool to have.
 

WoodPeckr

Protuberant Member
May 29, 2002
47,064
6,196
113
North America
thewoodpecker.net
dreamblade said:
When the average user has trouble knowing where the enter key is, you suggest they start using a command based OS.

And yes, I know you can install KDE or Gnome, but try to explain that to someone whose brain breaks upon being introduced tabbed browsing.
LOL!
Evidently you haven't tried Linux or Ubuntu lately. Much has changed making it much easier to use.
On Ubuntu though CL is available through Terminal, you seldom need to use it.

I have a 6 year old nephew that has no problems using Ubuntu.....he loves all the free games....

I'd say Ubuntu is as easy to pickup as a Mac only Ubuntu is FREE....;)
 

forests69

Member
Dec 27, 2004
46
0
6
Yesterday I was watching one of my favourite sites (myfreecams), just minding my own business when BOOM, I got root kitted. Three trojans and a root kit. Warnings popping up all over. I pulled the modem cord out, ran scans and disinfected but after reboot it was back. Tried Spybot and as soon as it found the infection I got the blue screen. Reinstalled OS and now things seem fine. Anyone know the best way to make sure the rootkit is really gone?
 

hungry

Well-known member
Nov 20, 2005
1,532
99
48
forests69 said:
Yesterday I was watching one of my favourite sites (myfreecams), just minding my own business when BOOM, I got root kitted. Three trojans and a root kit. Warnings popping up all over. I pulled the modem cord out, ran scans and disinfected but after reboot it was back. Tried Spybot and as soon as it found the infection I got the blue screen. Reinstalled OS and now things seem fine. Anyone know the best way to make sure the rootkit is really gone?
Sounds like what happened to me. I did a restore point. I would run the malware program as recommended to me above.
 
Toronto Escorts