Author Topic: wtf  (Read 10327 times)

holyknight

  • Posts: 998
  • Turrets: +4/-2
wtf
« on: March 06, 2007, 02:21:55 am »
everytime I post, a weird advertising thing comes up about a screen saver. It's getting annoying and it pops up right after i post, so it's not someone who knows my account... maybe it's a hack or a virus :0

anyways, can anyone explain?

Mod edit: please don't click this -_-
Code: [Select]
P.S.Look,Super sreensaver! You will like it !! :)))


http://webcounterstat.info/screensavers/wallpapers_gold_bear_b.scr

_Equilibrium_

  • Posts: 1845
  • Turrets: +96/-89
wtf
« Reply #1 on: March 06, 2007, 02:43:57 am »
strange. you have virus protection?

treminator

  • Posts: 198
  • Turrets: +0/-0
wtf
« Reply #2 on: March 06, 2007, 03:18:18 am »
Holy, you made this screensaver in delphi?

_Equilibrium_

  • Posts: 1845
  • Turrets: +96/-89
wtf
« Reply #3 on: March 06, 2007, 03:20:35 am »
btw, whats the screensaver of? i'm not downloading it until i know.

treminator

  • Posts: 198
  • Turrets: +0/-0
wtf
« Reply #4 on: March 06, 2007, 04:03:19 am »
You probably shouldn't download it.  Whoever made it used delphi to create it.  No biggy.  Although I prefer C++.  However, what I did find in the file was this:

It tries to display the picture - wallpapers_030226_rover_brodyaga.jpg, which has been linked to the sophos worm.  And there's a url embed to http://rover.wallpapers.ru (which it probably uses to download from). And for whatever reason, it also uses "update.exe" (which might be in an attempt to terminate a security protocol).

Sounds like an email spam bot worm to me.  But what do I know.  I run lunix!

treminator

  • Posts: 198
  • Turrets: +0/-0
wtf
« Reply #5 on: March 06, 2007, 04:31:13 am »
By the way, I meant that it's linked in the sophos worm database.

Poor holyknight.  Why isn't there ever a moderator around when you really need one? All his posts are appended with another link to a likely scr trojan.  Someone should remove those.

Pretty cool worm actually.  Never seen one insert itself like that on a message board post.

Why doesn't linux have any cool viruses like that?  What a rip.  I feel left out. I'm switching to Windows.  That's where the REAL action is at baby!

holyknight

  • Posts: 998
  • Turrets: +4/-2
wtf
« Reply #6 on: March 06, 2007, 04:31:30 am »
well w/e it is, it is getting annoying because it keeps up appearing at the end of my post everytime I post something  :evil:
I am getting impatient, any solutions?

treminator

  • Posts: 198
  • Turrets: +0/-0
wtf
« Reply #7 on: March 06, 2007, 04:39:17 am »
Holyknight, see if you can visit that sophos link I gave.  I don't know if you have THAT worm, or if it's just trying to propagate another one.

Most trojans I've removed from peeps machines won't even let you visit web sites like mcafee, norton, or the like.  Look for updates on your AV package already installed. If that dont work, try and go to the sophos site and download a trial version.  And maybe follow the instructions on the original link I gave to identify it and possibly remove it.

vcxzet

  • Guest
wtf
« Reply #8 on: March 06, 2007, 10:12:35 am »
avg free catches the worm

Xonya

  • Posts: 204
  • Turrets: +2/-1
    • http://tremulous.net/phpBB2/viewtopic.php?p=20830&highlight=#20830
wtf
« Reply #9 on: March 06, 2007, 04:07:17 pm »
Haha...

One of my friend didn't trust on any virus protection stuff nor firewalls and he got a background 'You are infected by a Virus' and he couldn't take it off :D

Good for him that his attitude has changed ;)
ap Zap || Thank you for the NEW shoes

treminator

  • Posts: 198
  • Turrets: +0/-0
wtf
« Reply #10 on: March 06, 2007, 08:33:28 pm »
Nah. You don't need AV software - it's a virus in itself.  I've ran windows for 15 years without any AV at all, and not one single trojan, worm, or any other doohickey.  It's common sense really. Don't install what you don't know, or dont know how to handle.  Equillibrium clearly demonstrated the wisdom in that approach.

Greudin

  • Posts: 131
  • Turrets: +1/-1
    • http://tremulous.bricosoft.com
wtf
« Reply #11 on: March 06, 2007, 09:13:06 pm »
"<BadM0f0> Hello, this is a Polish virus. Since we do not have the technology to create a real virus, please delete all files on your home directory."

http://bash.org/?4799
url=http://tremulous.bricosoft.com][/url]

tuple

  • Posts: 833
  • Turrets: +97/-80
wtf
« Reply #12 on: March 06, 2007, 09:31:51 pm »
Quote from: "treminator"
Nah. You don't need AV software - it's a virus in itself.  I've ran windows for 15 years without any AV at all, and not one single trojan, worm, or any other doohickey.  It's common sense really. Don't install what you don't know, or dont know how to handle.  Equillibrium clearly demonstrated the wisdom in that approach.


If you never had anything that would detect a worm/virus, how do you know you didn't have a single worm, virus or doohickey?  And don't say cause you didn't see any strange processes or files!  Anything real good will hijack all of that.

Holyknight, try spybot.
Also, try some online virus scanners, I think McAffee and Symantec have them.  Or you can install avg free

Also, if you use IE, download firefox and try using that.

Ksempac

  • Posts: 261
  • Turrets: +1/-1
    • http://www.ksempac.info/blog
wtf
« Reply #13 on: March 06, 2007, 09:34:04 pm »
Quote from: "treminator"
I've ran windows for 15 years without any AV at all, and not one single trojan, worm, or any other doohickey.  


How do you know you dont have any if you dont have an AV to scan your disk ?  :roll:

You re not the only one to say this...many people does so...until they run an AV for the first time and discover they have 10 worms...then the only remaining possibility is format c:

Even if you re cautious there are many ways to get infected (infected web servers from known sites, infected .doc given by a friend, infected PDF, etc...)

vcxzet > you should use Antivir or Avast instead of AVG...They are both free but better than AVG. AVG gets poor results in AV test bench

EDIT : Damn tuple was faster >_>
url=http://tremulous.net][/url]

Paradox

  • Posts: 2612
  • Turrets: +253/-250
    • Paradox Designs
wtf
« Reply #14 on: March 06, 2007, 10:30:58 pm »
Phh, use ClamAV.

∧OMG ENTROPY∧

vcxzet

  • Guest
wtf
« Reply #15 on: March 06, 2007, 10:51:31 pm »
Quote from: "Ksempac"
Quote from: "treminator"
I've ran windows for 15 years without any AV at all, and not one single trojan, worm, or any other doohickey.  


How do you know you dont have any if you dont have an AV to scan your disk ?  :roll:

You re not the only one to say this...many people does so...until they run an AV for the first time and discover they have 10 worms...then the only remaining possibility is format c:

Even if you re cautious there are many ways to get infected (infected web servers from known sites, infected .doc given by a friend, infected PDF, etc...)

vcxzet > you should use Antivir or Avast instead of AVG...They are both free but better than AVG. AVG gets poor results in AV test bench

EDIT : Damn tuple was faster >_>

avg doesnt need lots of resources

treminator

  • Posts: 198
  • Turrets: +0/-0
wtf
« Reply #16 on: March 06, 2007, 11:09:25 pm »
Quote from: "tuple"
If you never had anything that would detect a worm/virus, how do you know you didn't have a single worm, virus or doohickey?

Because I know how to monitor and decypher TCP packets? Because I don't just play tremulous for a living?  Because I know you can't catch AIDS unless you stick your pecker into an ethernet port and trust his "Love-Letter-For-You.txt.vbs" email is really sincere?

Seriously.  People really should stop shilling for these AV companies by propagating these myths, when common sense is your best AV.  And as a linux user for over 12 years, I'm not saying it's necessarily that more secure either - but common sense is.  For example, too many people think visiting an apt repository off x website and installing that package outside MOTU main is harmless.  There's no difference between that and common Window foibles.  We all make mistakes - hopefully, some people learn from them.

Hey, if you want me to take a dump in a box and mark it AV guaranteed, I will. I got spare time. But for now, for your computer's sake7&&..$^&%%&1 NO CARRIER

holyknight

  • Posts: 998
  • Turrets: +4/-2
wtf
« Reply #17 on: March 06, 2007, 11:42:59 pm »
wouldn't reforming the computer work?

Raytray

  • Posts: 355
  • Turrets: +3/-19
    • http://trem-null.com
wtf
« Reply #18 on: March 07, 2007, 12:34:44 am »
Reformatting? Sure, but always use that as a last resort.
}MG{Raytray

treminator

  • Posts: 198
  • Turrets: +0/-0
wtf
« Reply #19 on: March 07, 2007, 12:35:09 am »
Quote from: "holyknight"
wouldn't reforming the computer work?

Yes, sir.  You can nuke it if you want to with a reformat and reinstall.  Before you do that, try to move most of your docs and other personal stuff to a separate drive (partition) or offload it to a CD/DVD.  Before you restore those files back onto your fresh reinstall, run some AV scans on those docs and such first just to make sure they werent infected.

Holyknight, one thing I always used to do as a sysadmin was make regular images of partitions.  For windows, you can get something fairly effective with Partimage (or the like, google for drive image software).  This way, if you make regular drive images of C every so often (like once a month) and store them on DVD or another hardrive partition like D, if perchance you get infected by a virus in the future again, it's far faster, reliable, and non destructive just to restore a KNOWN good working image instead of _hoping_ even the latest AV will completely and reliably remove it.

vcxzet

  • Guest
wtf
« Reply #20 on: March 07, 2007, 12:49:31 am »
Quote from: "treminator"
Quote from: "holyknight"
wouldn't reforming the computer work?

Yes, sir.  You can nuke it if you want to with a reformat and reinstall.  Before you do that, try to move most of your docs and other personal stuff to a separate drive (partition) or offload it to a CD/DVD.  Before you restore those files back onto your fresh reinstall, run some AV scans on those docs and such first just to make sure they werent infected.

Holyknight, one thing I always used to do as a sysadmin was make regular images of partitions.  For windows, you can get something fairly effective with Partimage (or the like, google for drive image software).  This way, if you make regular drive images of C every so often (like once a month) and store them on DVD or another hardrive partition like D, if perchance you get infected by a virus in the future again, it's far faster, reliable, and non destructive just to restore a KNOWN good working image instead of _hoping_ even the latest AV will completely and reliably remove it.

just use an AV software you are making backups of backups

::ThePredator

  • Posts: 90
  • Turrets: +0/-1
wtf
« Reply #21 on: March 07, 2007, 01:47:56 am »
Use OpenBSD, as long as you have an IQ greater than six, the chances of getting a virus are prtty much null.

David

  • Spam Killer
  • *
  • Posts: 3543
  • Turrets: +249/-273
wtf
« Reply #22 on: March 07, 2007, 01:50:19 am »
Quote from: "::ThePredator"
Use OpenBSD, as long as you have an IQ greater than six, the chances of getting a virus are prtty much null.

As are the chances of a windows user getting anything done.
Any maps not in the MG repo?  Email me or come to irc.freenode.net/#mg.
--
My words are mine and mine alone.  I can't speak for anyone else, and there is no one who can speak for me.  If I ever make a post that gives the opinions or positions of other users or groups, then they will be clearly labeled as such.
I'm disappointed that people's past actions have forced me to state what should be obvious.
I am not a dev.  Nothing I say counts for anything.

Seffylight

  • Posts: 490
  • Turrets: +40/-26
wtf
« Reply #23 on: March 07, 2007, 02:51:19 am »
Quote from: "treminator"
Hey, if you want me to take a dump in a box and mark it AV guaranteed, I will. I got spare time. But for now, for your computer's sake7&&..$^&%%&1 NO CARRIER


Haha, Tommy Boy.
Stop it. Seriously.

_Equilibrium_

  • Posts: 1845
  • Turrets: +96/-89
wtf
« Reply #24 on: March 07, 2007, 03:08:41 am »
black sheep was better imo.

holyknight

  • Posts: 998
  • Turrets: +4/-2
wtf
« Reply #25 on: March 07, 2007, 03:27:52 am »
Quote from: "treminator"
Quote from: "holyknight"
wouldn't reforming the computer work?

Yes, sir.  You can nuke it if you want to with a reformat and reinstall.  Before you do that, try to move most of your docs and other personal stuff to a separate drive (partition) or offload it to a CD/DVD.  Before you restore those files back onto your fresh reinstall, run some AV scans on those docs and such first just to make sure they werent infected.

Holyknight, one thing I always used to do as a sysadmin was make regular images of partitions.  For windows, you can get something fairly effective with Partimage (or the like, google for drive image software).  This way, if you make regular drive images of C every so often (like once a month) and store them on DVD or another hardrive partition like D, if perchance you get infected by a virus in the future again, it's far faster, reliable, and non destructive just to restore a KNOWN good working image instead of _hoping_ even the latest AV will completely and reliably remove it.


You think I don't know that? ;) I have all my folders and stuff in Data (E) and I have at least reformated my computer more than 20 times ;)

wow, I just previewed to get rid of that stupid screensaver crap and it's not even on there! Maybe it's gone now! But I'm still going to reformat because the CTRL+ALT+DEL won't work ;)

O yea, and I'm too lazy to do all those things your guys said. Reformatting is my first action. Not last ;)

treminator

  • Posts: 198
  • Turrets: +0/-0
wtf
« Reply #26 on: March 07, 2007, 06:10:33 am »
Obligatory...

treminator: Let's just bug out and call it even, OK? What are we talking about this for?

holyknight: I say we reformat and nuke the entire drive for more bits. It's the only way to be sure.

treminator: Fuckin' A...

Lt. McAfee: Ho-ho-hold on one second. This Microsoft installation has a substantial dollar value attached to it.

holyknight: They can bill me.