Warning

 

Close
Confirm Action

Are you sure you wish to do this?

Cancel Confirm
AR15.COM
Previous Page
/ 3
Next Page
11/23/2010 12:05:28 PM EDT
Last week, I was on youtube on my work laptop.

(not violating any policies) and when I finished watching a video and clicked on part of the screen that list associated videos, I got this pop up, you know the ones that looks like it is scanning your hard drive files really fast?



This thing was called "System tool" and I tried everything to shut it off.

this is one bad piece of work.



After a few tries to get it to stop, my desk top went blue and these big red letters telling me I'd better pay the 29.95 to get the cure and clean off my infected hard drive.



Well, I booted in safe mode and ran Malware, the free one.

The reason I had to go to safe mode is that this thing stops any new processes from launching!



It found it and I asked it to remove/quarantine and I was prompted to re-boot



well, then Windows would not launch, it damaged a critical file needed to boot Windows.



So, I called my IT, told them what happened and they had me take it in.

I just got a call back and since my laptop was a hand me down about 4 years old, I am getting a new one





then my buddy told me of a friend of his at a conference last week was on youtube and had the exact same thing happen to him




11/23/2010 12:07:24 PM EDT
[#1]
FireFox + AdBlock Plus
11/23/2010 12:07:44 PM EDT
[#2]
Geeze. Thanks for the heads up.
11/23/2010 12:10:25 PM EDT
[#3]
If it only affects windows, I'm good to go. I'm running on Snow Leopard
11/23/2010 12:10:31 PM EDT
[#4]
Thanks for the warning
<––-uses work laptop at home (yes it's OK to do that)
11/23/2010 12:11:09 PM EDT
[#5]
I've ran into this shit before. It really drives me mad. I hope the fuckers who create this garbage rot in a special place in hell.
11/23/2010 12:12:02 PM EDT
[#6]
Whenever I've had those kinds of mal/virus's I have also gone back to a restore point. Not sure if it works all the time though, and you have to be able to start up somehow to get to that restore point.
11/23/2010 12:48:09 PM EDT
[#7]
Deep freeze for the win.
11/23/2010 12:59:24 PM EDT
[#8]
Linux
11/23/2010 1:00:33 PM EDT
[#9]



Quoted:


If it only affects windows, I'm good to go. I'm running on Snow Leopard


+One.

 


11/23/2010 1:02:29 PM EDT
[#10]
Did you check for LSO cookies?

Better Privacy FTW.

Sneaky fuckers!
11/23/2010 1:03:18 PM EDT
[#11]



Quoted:


FireFox + AdBlock Plus


Plus NoScript.



Oh sure, people may whine like they always fucking do about "I have to allow each thing???" but yeah, that's exactly the goddamn point!
 
11/23/2010 1:04:55 PM EDT
[#12]
Happened to me a few weeks ago. Once it booted I went to my task manager, and stopped the program from running. Then I googled the name of the process, and found the file name, and manually deleted it. It was a nasty one. Wouldn't let me open new stuff if I didn't close it on start up on time, and wouldn't let me connect to the Internet.
11/23/2010 1:06:35 PM EDT
[#13]
Youtube...


Riiiiiiiiiiiiiiiiiiiggggggggggggggggghhhhhhhhhhhhhhhhhhttttttttttttttttttttttttttttt

11/23/2010 1:06:42 PM EDT
[#14]
I run Firefox and my wallpaper is a depiction of Jack Bauer and Chuck Norris sodomizing Steven Seagal.



I'm safe.
11/23/2010 1:07:05 PM EDT
[#15]
Quoted:

Quoted:
FireFox + AdBlock Plus

Plus NoScript.

Oh sure, people may whine like they always fucking do about "I have to allow each thing???" but yeah, that's exactly the goddamn point!


 


I am already running AdBlock Plus, hadn't heard of NoScript.  Checking that one out now, thanks.  
11/23/2010 1:08:06 PM EDT
[#16]
Mac OS X here, should be safe for a while.
11/23/2010 1:09:43 PM EDT
[#17]



Quoted:


I run Firefox and my wallpaper is a depiction of Jack Bauer and Chuck Norris sodomizing Steven Seagal.



I'm safe.


Listen... Chuck Norris stands on his own, but Steven Seagal would eat Jack Bauer's lunch.



Everyday.





Jack Bauer would not be allowed to eat. He'd just wither away while Seagal meditated.
 
11/23/2010 1:10:54 PM EDT
[#18]
I've gotten that one a few times. I just ended the process before it started fully and deleted it. That probably wont work anymore though.
11/23/2010 1:12:20 PM EDT
[#19]
hmm, i'll have to watch out for that.
11/23/2010 1:13:13 PM EDT
[#20]
Quoted:
Mac OS X here, should be safe for a while.


nope, pretty sure you caught the gheys!  

TXL
11/23/2010 1:17:28 PM EDT
[#21]
You guys aint listening!

Adobe is the debil.

Google is the worlds largest marketing company.

Anyone even know what a LSO cookie is?????

Anyone know what a hosts file is?????

11/23/2010 1:18:28 PM EDT
[#22]
Quoted:
You guys aint listening!

Adobe is the debil.

Google is the worlds largest marketing company.

Anyone even know what a LSO cookie is?????

Anyone know what a hosts file is?????



Go on...
11/23/2010 1:19:11 PM EDT
[#23]
Quoted:
Quoted:
You guys aint listening!

Adobe is the debil.

Google is the worlds largest marketing company.

Anyone even know what a LSO cookie is?????

Anyone know what a hosts file is?????



Go on...


English, do you speak it???
11/23/2010 1:19:16 PM EDT
[#24]



Quoted:




Listen... Chuck Norris stands on his own, but Steven Seagal would eat Jack Bauer's lunch.



Everyday.





Jack Bauer would not be allowed to eat. He'd just wither away while Seagal meditated.

 


Blasphemous blasphemer be blaspheming.




Quoted:


You guys aint listening!



Adobe is the debil.



Google is the worlds largest marketing company.



Anyone even know what a LSO cookie is?????



Anyone know what a hosts file is?????





I don't need to know what it is. I only need to know how to kill it.



 
11/23/2010 1:21:17 PM EDT
[#25]
So what you're saying is...

Click on the pop-up, and you'll get a new computer?

*click* *click* *click* *click*
11/23/2010 1:23:32 PM EDT
[#26]
Quoted:
Quoted:
Quoted:
You guys aint listening!

Adobe is the debil.

Google is the worlds largest marketing company.

Anyone even know what a LSO cookie is?????

Anyone know what a hosts file is?????



Go on...


English, do you speak it???


You asked if anyone knew what a LSO cookie was... NO I dont...

You asked if anyone knew what a host file is... NO I dont...


Settle down Sally.
11/23/2010 1:28:00 PM EDT
[#27]
Quoted:

Quoted:
FireFox + AdBlock Plus

Plus NoScript.

 



Heck yes.  Never surf naked.
11/23/2010 1:33:16 PM EDT
[#28]
So YouTube is hosting Russian kiddie porn, who knew!
11/23/2010 1:34:51 PM EDT
[#29]
bitches don't know about my noscript.
11/23/2010 1:36:28 PM EDT
[#30]
Quoted:
FireFox + AdBlock Plus


I run this, and the same virus still got my PC about three weeks ago.
11/23/2010 1:38:07 PM EDT
[#31]



Quoted:


So YouTube is hosting Russian kiddie porn, who knew!


Kinda what I was thinking...



 
11/23/2010 1:38:54 PM EDT
[#32]
11/23/2010 1:39:25 PM EDT
[#33]
I have also used this for a number of years, it's free, and it doesn't "run" at all, only when you start it up to get updates.






Multi-Angle Protection
               

  • Prevent the installation of ActiveX-based spyware and other potentially unwanted programs.

  • Block spying / tracking via cookies.

  • Restrict the actions of potentially unwanted or dangerous web sites.







               No-Nonsense Security
               SpywareBlaster can help keep your system secure, without
interfering with the "good side" of the web. And unlike other programs,
SpywareBlaster does not have to remain running in the background. It
works alongside the programs you have to help secure your system.
               
               






http://www.javacoolsoftware.com/spywareblaster.html





Check it out, it's good stuff.
 
11/23/2010 1:40:18 PM EDT
[#34]
Quoted:
If it only affects windows, I'm good to go. I'm running on Snow Leopard


Found out from a tech that right now there are no viruses "in the wild" for OSX.
11/23/2010 1:44:22 PM EDT
[#35]
If you can get into safemode install malwarebytes.
11/23/2010 1:52:50 PM EDT
[#36]
Quoted:

Quoted:

Listen... Chuck Norris stands on his own, but Steven Seagal would eat Jack Bauer's lunch.

Everyday.


Jack Bauer would not be allowed to eat. He'd just wither away while Seagal meditated.
 

Blasphemous blasphemer be blaspheming.

Quoted:
You guys aint listening!

Adobe is the debil.

Google is the worlds largest marketing company.

Anyone even know what a LSO cookie is?????

Anyone know what a hosts file is?????


I don't need to know what it is. I only need to know how to kill it.
 


OK, I get it.

First rule of war, know your enemy. How are you gonna know how to "kill it" if you don't know where it's weak?

Cookies on your machine can track all kinds of things, make things happen based on your previous moves.

Adobe has designed a kind of hidden cookie - read up for 3 minutes:

http://www.wired.com/epicenter/2009/08/you-deleted-your-cookies-think-again/

Next, a little background of how your machine "knows" how to transform a name into an internet number/site/location....

DNS - a basic name to number transformer. All machines have to "lookup" the transformation to get to a site (another machine on the net that delivers content)

The most basic form of "name to number" transformation, before DNS - the "hosts" file. Most all machines look at the hosts file first to determine this transformation, then if nothing is found, use DNS.

Your machine always has an address of "localhost" or an IP address of 127.0.0.1

So, search for a file named "hosts" and open it in some flavor editor (windowz users use notepad to view/edit this file).

Let's say, some fuckbrain has a link in their "page" to stuff some shit down your throat, including a cookie or some new-fangled thing like a hidden LSO cookie, 99.999% of all computer owners have no fucking clue and makes reference to some shit like "feedme.someshit.onlya.marketing.company.com" needs to keep track of and popup some shit some sad fucker will buy.

Well in that hosts file (surely you've found it by now) if you make an entry on a single like like:

127.0.0.1          feedme.someshit.onlya.marketing.companywants.com                  

When a site wants to stuff that shit down ur throat and ur machine looks it up, it finds none other than itself, which delivers absolutely nothing to your browser!!!

So here's an example of a hosts file. Add what you need based on looking at the "source" of the webpage:

Holy shit, too big for copy and paste w/all the shitheads on the net making u fat, grab it here:

hosts.new

Save the damn thing somewhere, copy and paste, nobody cares, just put that shit in your hosts file
11/23/2010 2:02:56 PM EDT
[#37]
Quoted:
Quoted:

Quoted:

Listen... Chuck Norris stands on his own, but Steven Seagal would eat Jack Bauer's lunch.

Everyday.


Jack Bauer would not be allowed to eat. He'd just wither away while Seagal meditated.
 

Blasphemous blasphemer be blaspheming.

Quoted:
You guys aint listening!

Adobe is the debil.

Google is the worlds largest marketing company.

Anyone even know what a LSO cookie is?????

Anyone know what a hosts file is?????


I don't need to know what it is. I only need to know how to kill it.
 


OK, I get it.

First rule of war, know your enemy. How are you gonna know how to "kill it" if you don't know where it's weak?

Cookies on your machine can track all kinds of things, make things happen based on your previous moves.

Adobe has designed a kind of hidden cookie - read up for 3 minutes:

http://www.wired.com/epicenter/2009/08/you-deleted-your-cookies-think-again/

Next, a little background of how your machine "knows" how to transform a name into an internet number/site/location....

DNS - a basic name to number transformer. All machines have to "lookup" the transformation to get to a site (another machine on the net that delivers content)

The most basic form of "name to number" transformation, before DNS - the "hosts" file. Most all machines look at the hosts file first to determine this transformation, then if nothing is found, use DNS.

Your machine always has an address of "localhost" or an IP address of 127.0.0.1

So, search for a file named "hosts" and open it in some flavor editor (windowz users use notepad to view/edit this file).

Let's say, some fuckbrain has a link in their "page" to stuff some shit down your throat, including a cookie or some new-fangled thing like a hidden LSO cookie, 99.999% of all computer owners have no fucking clue and makes reference to some shit like "feedme.someshit.onlya.marketing.company.com" needs to keep track of and popup some shit some sad fucker will buy.

Well in that hosts file (surely you've found it by now) if you make an entry on a single like like:

127.0.0.1          feedme.someshit.onlya.marketing.companywants.com                  

When a site wants to stuff that shit down ur throat and ur machine looks it up, it finds none other than itself, which delivers absolutely nothing to your browser!!!

So here's an example of a hosts file. Add what you need based on looking at the "source" of the webpage:

Holy shit, too big for copy and paste w/all the shitheads on the net making u fat, grab it here:

hosts.new

Save the damn thing somewhere, copy and paste, nobody cares, just put that shit in your hosts file


You clearly have a gift for teaching.  Thank you.
11/23/2010 2:20:22 PM EDT
[#38]
I copy and paste that list to my host file in notepad, then when I try to save it, it wont let me. How did  I fail.
11/23/2010 2:24:47 PM EDT
[#39]
ur some kind of protected "for the kids" kind of user, apparently.

Log in as administrator, super user, king of kings, nothing can stop you kind of user and try again.

If you cant do that in some kind of OS - be it windoz or ubuntfu, ask someone else, I am root everywhere I go, or I don't.
11/23/2010 2:28:26 PM EDT
[#40]
I'd gladly boot into safe mode and run malwarebytes over paying $1K+ for a computer(mac).
11/23/2010 2:32:01 PM EDT
[#41]
Quoted:
Quoted:

Quoted:
FireFox + AdBlock Plus

Plus NoScript.

Oh sure, people may whine like they always fucking do about "I have to allow each thing???" but yeah, that's exactly the goddamn point!


 


I am already running AdBlock Plus, hadn't heard of NoScript.  Checking that one out now, thanks.  


NoScript is a PITA at first but man does it save you a lot of trouble down the road.  However I cannot update my Flash or watch LiveLeak anymore but I will survive.

OMG NoScript turned my laptop into an iPad WTF BBQ!!!!!!!!1111one!!
11/23/2010 2:38:35 PM EDT
[#42]
I'll be the first to say, these "magic" add-ons are viruses in themselves, constantly "phoning home" and all kinds of other shit I could care less about.

Stick to the basics, it's not magic!!!!

11/23/2010 2:39:00 PM EDT
[#43]
It's not Youtube, it's spyware / malware / virus that was already on your machine and is designed to use pop-ups when you're browsing the web. It just happened to activate (or is designed to activate) while you were on Youtube.
11/23/2010 2:52:48 PM EDT
[#44]



Quoted:


I copy and paste that list to my host file in notepad, then when I try to save it, it wont let me. How did  I fail.


Save as txt file in the same folder as host. Then delete old host file and remove .txt file extension from new host file.



 
11/23/2010 2:54:22 PM EDT
[#45]
iMac.
11/23/2010 2:54:38 PM EDT
[#46]
summary: after enjoying youtube video you get a free laptop upgrade.

Am I missing something here?  
11/23/2010 2:59:34 PM EDT
[#47]

...it damaged a critical file needed to boot Windows.




Yes that is some bad shit.  Used the Restore back-ups to boot from and launched a slew of virus killers.   Better now.
11/23/2010 2:59:34 PM EDT
[#48]
Quoted:
iMac.


Amazing how Mac fanboyz think their shit is *any* different than anyone else's...

Only difference is mac users have no idea what's going on under the hood and have no idea how to access/check it - as there is NO way to root/gain access and fix the jail,  - just hope and prayer (ask me how I know).
11/23/2010 2:59:53 PM EDT
[#49]


That's amazing!  Especially how it was able to scan system32 on MacOS X!  That must be some good scanning software right there.
11/23/2010 3:03:55 PM EDT
[#50]
Quoted:
Youtube...


Riiiiiiiiiiiiiiiiiiiggggggggggggggggghhhhhhhhhhhhhhhhhhttttttttttttttttttttttttttttt



That was my first thought.
Previous Page
/ 3
Next Page
Close Join Our Mail List to Stay Up To Date! Win a FREE Membership!

Sign up for the ARFCOM weekly newsletter and be entered to win a free ARFCOM membership. One new winner* is announced every week!

You will receive an email every Friday morning featuring the latest chatter from the hottest topics, breaking news surrounding legislation, as well as exclusive deals only available to ARFCOM email subscribers.


By signing up you agree to our User Agreement. *Must have a registered ARFCOM account to win.