SUBSIM Radio Room Forums



SUBSIM: The Web's #1 resource for all submarine & naval simulations since 1997

Go Back   SUBSIM Radio Room Forums > General > General Topics
Forget password? Reset here

Reply
 
Thread Tools Display Modes
Old 12-23-08, 05:16 AM   #1
Silverleaf
Wild Night in Bangkok
 
Join Date: Dec 2008
Location: Ohio
Posts: 179
Downloads: 5
Uploads: 0
Default Just a friendly (or not so friendly) virus reminder....

Greetings,

This is a bit odd, but I thought I'd post the details of it to help fellow gamers avoid some critical problems with their system. I recently started getting pop-ups here at Subsim with Firefox 3.0.5, and when I'd run AVG 8.0 it would capture a couple freescan.htm files, place them in the Virus Vault and I'd reboot to finish the job.

I kept getting them.

So, phase two, install a spyware product - given that AVG's Free spyware software is no longer supported. I knew of a few good ones, but the best on the market is SuperAntiSpyware. Yes there may be "better ones" out there - but when you include free updates, auto scan AND removal, well it can't be beat - and it's totally free.

So, installed and bang, it found 5 items AVG Spware missed. Reboot, delete good to go right?

I kept getting them.

Sent an email to AVG and a couple other companies I deal with regarding my problem, even included a log file and all pertinent information. They gave me something to try, removed it, rebooted.

I kept getting them.

Searched online, no exact fix, no exact description fit my problem. On a whim, I started searching my older computers because I remembered something in the back of my cerebral cortex about Netscape Navigator and Internet Explorer incompatibility issues. 7 hours later I was down to one last full manual scan of system files, going through anything that looked suspicious and if that didn't work, well...

12 hours later before I prepare for "How R.S. lost his sanity" - commonly known as "Reinstall Time"....

I come back online to check email, and in the midst of doing so I have a popup again. I just glance in the upper left hand corner before AVG captures it and asks me what I want to do with it when I see it. The rat fink that's been causing all sorts of problems for the last 4 days.

Internet Explorer itself.

I use firefox, have not, will not use I.E. on threat of death. So why is it firing pop-ups that nothing can stop?

I open I.E. and start checking options - under "Allowed Popups" I have a listing of 27 links. All 27 turn out to be viral in nature - and because I.E. was allowing them, they couldn't be stopped because AVG/etc. didn't have full access to do so.

I did not give them access!.

So after firing off a final report to a few services I:

ran AVG, rebooted
ran SuperAntiSpyware, rebooted
used my 2nd favoritie uber-utility RegSeeker, rebooted.
ScanDisk, rebooted
Reg Defrag, rebooted
Defrag, rebooted

Started up Firefox and ... and... no pop-ups !!!!.

The system is flying..and I'll make this bold as a plea/reminder to everyone. After I checked everything one last time:

I made a Backup System Restore point - so in case I have an issue in the future, I can pop back to this ultimate awesome point.

So after all that - if you experience the same thing, please check your old - still installed browser's pop-ups and security settings - don't allow any pop-ups, set security to max, turn off active X etc.

Windows Xp still uses I.E. for some services - therefore you need it even if you don't use it.

I'm not sure if Vista does this - if so Be Careful

Save yourself the same headache I just experienced.

Cheers and Merry Christmas...
__________________

Last edited by Silverleaf; 12-23-08 at 05:20 AM.
Silverleaf is offline   Reply With Quote
Old 12-23-08, 06:42 AM   #2
XabbaRus
Navy Seal
 
Join Date: Sep 2001
Posts: 5,330
Downloads: 5
Uploads: 0


Default

Hmmm, some how I don't buy this.

If you exclusively use Firefox and not IE then you shouldn't have any links in IE

"
I open I.E. and start checking options - under "Allowed Popups" I have a listing of 27 links. All 27 turn out to be viral in nature - and because I.E. was allowing them, they couldn't be stopped because AVG/etc. didn't have full access to do so"

although Explorer is at the heart of the XP operating system if you don't use IE6 or 7 to access the web then how come you end up with the allowed popups list?
__________________
XabbaRus is offline   Reply With Quote
Old 12-23-08, 03:13 PM   #3
Digital_Trucker
Silent Hunter
 
Join Date: Jul 2007
Location: The Peach State
Posts: 4,171
Downloads: 141
Uploads: 10
Default

Probably because the virus has modified the IE settings to allow the bad links.
__________________

RSM-GIEP-Killflags-LV Tribute-Playable Elco __Peace be with you, Dave.

Digital_Trucker is offline   Reply With Quote
Old 12-23-08, 03:47 PM   #4
Silverleaf
Wild Night in Bangkok
 
Join Date: Dec 2008
Location: Ohio
Posts: 179
Downloads: 5
Uploads: 0
Default

I still don't fully understand how it happened, but have sent reports to all Anti-Virus parties involved.

Quote:
Probably because the virus has modified the IE settings to allow the bad links.
That's what I'm thinking, though I don't have validation at this point.
__________________
Silverleaf is offline   Reply With Quote
Old 12-23-08, 03:52 PM   #5
Task Force
Rear Admiral
 
Join Date: Jul 2008
Location: SPACE!!!!
Posts: 10,142
Downloads: 85
Uploads: 0
Default

Anyone know of a good virus scanner. I got a popup about a Trojan yesterday. (I hope it was blocked.)
__________________
Task Force industries "Taking control of the world, one mind at a time"
Task Force is offline   Reply With Quote
Old 12-23-08, 07:58 PM   #6
Silverleaf
Wild Night in Bangkok
 
Join Date: Dec 2008
Location: Ohio
Posts: 179
Downloads: 5
Uploads: 0
Default

AVG 8.0

http://www.avg.com/
__________________
Silverleaf is offline   Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -5. The time now is 05:35 AM.


Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
Copyright © 1995- 2025 Subsim®
"Subsim" is a registered trademark, all rights reserved.