SUBSIM Radio Room Forums



SUBSIM: The Web's #1 resource for all submarine & naval simulations since 1997

Go Back   SUBSIM Radio Room Forums > General > General Topics
Forget password? Reset here

Reply
 
Thread Tools Display Modes
Old 12-07-12, 11:56 AM   #16
AVGWarhawk
Lucky Jack
 
AVGWarhawk's Avatar
 
Join Date: Jun 2005
Location: In a 1954 Buick.
Posts: 28,281
Downloads: 90
Uploads: 0


Default

Quote:
Originally Posted by jimbuna View Post
This ransomware has been around for a while yet some people actually pay and that is what annoys me.
In your line of work I'm sure you noticed people are gullible and easily open to suggestion. The flashing alert with red numbers running up like mad indicating virus and porn on the computer is overkill on suggestion. People breakout in a cold sweat as soon as they realize something might be wrong with their beloved computer. Visual stimulus of their world crashing in on them. All of this takes place in a second. Second number two the card is out to pay for the program to unlock the virus and free the individual from eminent failure of all they have amassed on the computer! It plays on one's fears. It works quite well.
AVGWarhawk is offline   Reply With Quote
Old 12-07-12, 12:22 PM   #17
Jimbuna
Chief of the Boat
 
Jimbuna's Avatar
 
Join Date: Feb 2006
Location: 250 metres below the surface
Posts: 190,712
Downloads: 63
Uploads: 13


Default

Quote:
Originally Posted by AVGWarhawk View Post
In your line of work I'm sure you noticed people are gullible and easily open to suggestion. The flashing alert with red numbers running up like mad indicating virus and porn on the computer is overkill on suggestion. People breakout in a cold sweat as soon as they realize something might be wrong with their beloved computer. Visual stimulus of their world crashing in on them. All of this takes place in a second. Second number two the card is out to pay for the program to unlock the virus and free the individual from eminent failure of all they have amassed on the computer! It plays on one's fears. It works quite well.
Yep, quite a rollercoaster ride for some I should imagine...especially if they've been looking at iffy sites in the past
__________________
Wise men speak because they have something to say; Fools because they have to say something.
Oh my God, not again!!

Jimbuna is offline   Reply With Quote
Old 12-07-12, 12:32 PM   #18
AVGWarhawk
Lucky Jack
 
AVGWarhawk's Avatar
 
Join Date: Jun 2005
Location: In a 1954 Buick.
Posts: 28,281
Downloads: 90
Uploads: 0


Default

Quote:
Originally Posted by jimbuna View Post
Yep, quite a rollercoaster ride for some I should imagine...especially if they've been looking at iffy sites in the past
Hmmmmmm....wonder how Dowly handles these.
AVGWarhawk is offline   Reply With Quote
Old 12-07-12, 12:34 PM   #19
Jimbuna
Chief of the Boat
 
Jimbuna's Avatar
 
Join Date: Feb 2006
Location: 250 metres below the surface
Posts: 190,712
Downloads: 63
Uploads: 13


Default

Quote:
Originally Posted by AVGWarhawk View Post
Hmmmmmm....wonder how Dowly handles these.
LOL....with just two little fingers I should imagine
__________________
Wise men speak because they have something to say; Fools because they have to say something.
Oh my God, not again!!

Jimbuna is offline   Reply With Quote
Old 12-07-12, 12:41 PM   #20
Sailor Steve
Eternal Patrol
 
Sailor Steve's Avatar
 
Join Date: Nov 2002
Location: High in the mountains of Utah
Posts: 50,369
Downloads: 745
Uploads: 249


Default

Quote:
Originally Posted by HunterICX View Post
Ransomwares are a joke...

I've already removed 2 of them on PC's at work, you only need a set of tools (Anti Virus, Malware scanners, Rootkit killer and stuff that hunts and eliminated the traces)

just boot up your computer in Safe Mode with Network acces to have your PC unlocked from that crap and you can get to work.
Yep. I had one of these not too long ago, and completely re-installing Windows didn't help. Once I found out about doing it in safe mode, Malewarebytes was the only program that finally found the thing and killed it. It was a good thing I already had MB on my PC, because you can't get online to download stuff in safe mode.
__________________
“Never do anything you can't take back.”
—Rocky Russo
Sailor Steve is offline   Reply With Quote
Old 12-07-12, 02:18 PM   #21
eddie
Ocean Warrior
 
Join Date: Jan 2005
Location: Minnesota
Posts: 3,023
Downloads: 99
Uploads: 0
Default

Well Steve, with Win7 you have a choice to rreboot in Safe mode or Safe Mode with networking, which means you can get online while in Safe mode.

I picked up that stupid redirect virus or rootkit. Everytime I wanted to go to a site I normally go to, I would get redirected to somewhere else, a real PITA too,lol

I went to Symantics website, and tried a small virus proggy that they let you have for free, but it didn't work. So I checked out Kaspersky's site and found this for removing rootkits. It does run in Safe mode and fixed my system just fine without reinstalling Windows, which I really appreciated. I also picked up a virus that won't let Windows boot up, has a funnjy name (which I can't remember ATM) but you'll see a blue screen that says something about I/O problem and you should get your systems admin for help. Its name includes Harddisk, but I don't recall the full virus' name.

Should dl it and keep it handy if you pick up this rootkit, when you run this, it will update itself also, which is great!

http://support.kaspersky.com/faq/?qid=208283363
__________________
Don't mistake my kindness for weakness. I'm kind to everyone, but when someone is unkind to me, weak is not what you are going to remember about me.

Al Capone
eddie is offline   Reply With Quote
Old 12-07-12, 02:41 PM   #22
Sailor Steve
Eternal Patrol
 
Sailor Steve's Avatar
 
Join Date: Nov 2002
Location: High in the mountains of Utah
Posts: 50,369
Downloads: 745
Uploads: 249


Default

Quote:
Originally Posted by eddie View Post
Well Steve, with Win7...
Well, you see, I still have XP. So I keep my Malwarebytes handy.
__________________
“Never do anything you can't take back.”
—Rocky Russo
Sailor Steve is offline   Reply With Quote
Old 12-07-12, 02:43 PM   #23
eddie
Ocean Warrior
 
Join Date: Jan 2005
Location: Minnesota
Posts: 3,023
Downloads: 99
Uploads: 0
Default

That's good!
__________________
Don't mistake my kindness for weakness. I'm kind to everyone, but when someone is unkind to me, weak is not what you are going to remember about me.

Al Capone
eddie is offline   Reply With Quote
Old 12-07-12, 02:54 PM   #24
HundertzehnGustav
Sea Lord
 
Join Date: Jun 2005
Location: Lux, betw. G, B and F
Posts: 1,898
Downloads: 66
Uploads: 0
Default



boot safe mode, malwarebytes... presto.
or boot safemode, dos commands, activate admin accont (the hidden one!) and reboot.
log in as asmin account, check msconfig for funny stuff, and find relevant files.
remove delete burn and nuke.
reboot
malwarebytes.
Ccleaner
reboot
use regular account to check...
remove admiin account (deactivate)

basta.

1h work, 50 dollar in the pocket.
5 dollar tip and an embarassed customer... it was obvious where he got the stuff.
happened wednesday to me...
__________________
In conclusion: SH3 is the shizzle, yo. -Frau Kaleun
Another negative about using your deck gun is that you are definately DETECTED, which has long term effects on your relationship with aircraft. -snestorm
HundertzehnGustav is offline   Reply With Quote
Old 12-07-12, 05:13 PM   #25
Stealhead
Navy Seal
 
Stealhead's Avatar
 
Join Date: Feb 2009
Location: Kentucky
Posts: 5,421
Downloads: 85
Uploads: 0
Default

I guess that some people really believe the fake law enforcement ones it seems.Who ever gets the money from these must not be doing to poorly I'd say
not to much effort to make them up really.

Really common sense would be that if you really had been busted you'd have the police at your door with a search warrant but I suppose that people are gullible.
Stealhead is offline   Reply With Quote
Old 12-07-12, 05:28 PM   #26
Jimbuna
Chief of the Boat
 
Jimbuna's Avatar
 
Join Date: Feb 2006
Location: 250 metres below the surface
Posts: 190,712
Downloads: 63
Uploads: 13


Default

Quote:
Originally Posted by Stealhead View Post
I guess that some people really believe the fake law enforcement ones it seems.Who ever gets the money from these must not be doing to poorly I'd say
not to much effort to make them up really.

Really common sense would be that if you really had been busted you'd have the police at your door with a search warrant but I suppose that people are gullible.
Precisely
__________________
Wise men speak because they have something to say; Fools because they have to say something.
Oh my God, not again!!

Jimbuna is offline   Reply With Quote
Old 12-07-12, 06:16 PM   #27
Catfish
Dipped Squirrel Operative
 
Catfish's Avatar
 
Join Date: Sep 2001
Location: ..where the ocean meets the sky
Posts: 17,779
Downloads: 38
Uploads: 0


Default

Quote:
Originally Posted by HundertzehnGustav View Post
boot safe mode, malwarebytes... presto.
or boot safemode, dos commands, activate admin accont (the hidden one!) and reboot.
log in as asmin account, check msconfig for funny stuff, and find relevant files.
remove delete burn and nuke.
reboot
malwarebytes.
Ccleaner
reboot
use regular account to check...
remove admiin account (deactivate)

basta.

1h work, 50 dollar in the pocket.
5 dollar tip and an embarassed customer... it was obvious where he got the stuff.
happened wednesday to me...

Well then you had another than our clients in Germany.
We did exactly what you did, only it came back after 5-7 reboots.

There was no other way than really wiping it -
Catfish is offline   Reply With Quote
Old 12-07-12, 06:26 PM   #28
HundertzehnGustav
Sea Lord
 
Join Date: Jun 2005
Location: Lux, betw. G, B and F
Posts: 1,898
Downloads: 66
Uploads: 0
Default

There was one thing i did not have to try yet:
http://www.bleepingcomputer.com/download/combofix/

It seems to be like ACID for your OS... removing everything but the stuff needed to operate your programs, and leaving your files alone.

The guys that use it where i work can not praise it enough...

and this webpage says:
http://www.bleepingcomputer.com/download/windows/

Based on Total Downloads
1. ComboFix 5,794,630
2. RKill 882,349
3. Malwarebytes Anti-Malware 803,527
4. Unhide 258,174
5. TDSSKiller 188,374




and i mean... 5mill to 800k in second position... can not be bad software!
But as they say: handle with care (test in VM or something...?) and know exactly what you do!
__________________
In conclusion: SH3 is the shizzle, yo. -Frau Kaleun
Another negative about using your deck gun is that you are definately DETECTED, which has long term effects on your relationship with aircraft. -snestorm
HundertzehnGustav is offline   Reply With Quote
Old 12-07-12, 06:46 PM   #29
Madox58
Stowaway
 
Posts: n/a
Downloads:
Uploads:
Default

I use ComboFix when needed.
  Reply With Quote
Old 12-07-12, 07:56 PM   #30
Skybird
Soaring
 
Skybird's Avatar
 
Join Date: Sep 2001
Location: the mental asylum named Germany
Posts: 42,674
Downloads: 10
Uploads: 0


Default

Careful with Combofix, it seems to be very powerful, but can kill system elements that leave you with anm instabile system. I know of two such cases, and inb oth cases people were not able to revert via system restore points and sooner or later ended with reinstalling.

At a couple of German places I also occasionally read that it is not fully reliable/compatible under x64 OS.

For routine scans I would definitely stay away from it.

Number of downloads must not mean anything. On German sites, it does not get mentioned much, and gets mediocre ratings only.
__________________
If you feel nuts, consult an expert.
Skybird is offline   Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -5. The time now is 01:39 AM.


Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
Copyright © 1995- 2025 Subsim®
"Subsim" is a registered trademark, all rights reserved.