SUBSIM Radio Room Forums



SUBSIM: The Web's #1 resource for all submarine & naval simulations since 1997

Go Back   SUBSIM Radio Room Forums > General > General Topics
Forget password? Reset here

Reply
 
Thread Tools Display Modes
Old 01-06-14, 01:09 PM   #1
GT182
Ocean Warrior
 
GT182's Avatar
 
Join Date: May 2005
Location: New Castle of Delaware
Posts: 3,231
Downloads: 658
Uploads: 0
Malware/Virus Warning

I received 2 emails yesterday from Costco on an undelivererable item.... COS-079616001. I don't go to Costco nor does any of the family. Email was from Manager at scarilemm dot com. Yeah it looked funny but I read it... at least I didn't save the file that was attached to download.

If you get one of these Do Not open it, just delete it. It contains a virus or malware that will mess up your IE. The only way I could fix it was a System Restore to the day before.
__________________
Gary

No Borders, No Language, No Culture =s No Country

I'm a Deplorable, and proud of it.
GT182 is offline   Reply With Quote
Old 01-06-14, 01:14 PM   #2
Gerald
SUBSIM Newsman
 
Gerald's Avatar
 
Join Date: May 2008
Location: Close to sea
Posts: 24,254
Downloads: 553
Uploads: 0


I never open unknown files, they usually come to the spam pile and filtered out, lucky that you were able to restore the computer anyways.
__________________
Nothing in life is to be feard,it is only to be understood.

Marie Curie





Gerald is offline   Reply With Quote
Old 01-06-14, 01:19 PM   #3
Jimbuna
Chief of the Boat
 
Jimbuna's Avatar
 
Join Date: Feb 2006
Location: 250 metres below the surface
Posts: 190,461
Downloads: 63
Uploads: 13


Default

NEVER open anything from unknown sources...at the very least scan it with whatever programmes you have.
__________________
Wise men speak because they have something to say; Fools because they have to say something.
Oh my God, not again!!

Jimbuna is offline   Reply With Quote
Old 01-06-14, 03:49 PM   #4
Wolferz
Navy Seal
 
Wolferz's Avatar
 
Join Date: May 2007
Location: On a mighty quest for the Stick of Truth
Posts: 5,963
Downloads: 52
Uploads: 0
It's artsy fartsy but, there's Trojans in that horse.

Leave it outside the gate. We're going to burn it in the morning.

My mail stays on the server at my ISP and I never open attachments of any kind or click on embedded links.
__________________

Tomorrow never comes
Wolferz is offline   Reply With Quote
Old 01-06-14, 04:45 PM   #5
Mr Quatro
Navy Seal
 
Join Date: May 2013
Posts: 6,772
Downloads: 0
Uploads: 0


Default

Thanks for the warning, but remember he didn't open any attachment all he did is read it. If you are clicking next you can't help, but read the next one.

I wonder what the future holds for these bad guys? I wonder how they get their jolly's doing this? I wonder who ever gets caught and when they do get caught ... I wonder what kind of sentence do they get?

Here's two more to watch out for: check card scam artist got me for close to $20.00 day after Christmas from somewhere overseas for items I did not order.

checkcard TDWCS.com $9.84
checkcard CWEBCS.com $9.84
Mr Quatro is offline   Reply With Quote
Old 01-06-14, 05:04 PM   #6
Sailor Steve
Eternal Patrol
 
Sailor Steve's Avatar
 
Join Date: Nov 2002
Location: High in the mountains of Utah
Posts: 50,369
Downloads: 745
Uploads: 249


Default

"Next"? My mail server doesn't have "Next" button. It just puts them all up for me to open or delete. I never open anything I don't recognize. The funny part is that there seems to be someone out there who sends me emails under the names of people I know. It's easy enough to avoid them because they are never about anything those people would send me.
__________________
“Never do anything you can't take back.”
—Rocky Russo
Sailor Steve is offline   Reply With Quote
Old 01-06-14, 05:08 PM   #7
d@rk51d3
Sea Lord
 
Join Date: Sep 2006
Location: Adelaide, South Australia
Posts: 1,951
Downloads: 207
Uploads: 0
Default

Fed-Ex is another one that pops up quite regularly too.
d@rk51d3 is offline   Reply With Quote
Old 01-06-14, 05:35 PM   #8
Skybird
Soaring
 
Skybird's Avatar
 
Join Date: Sep 2001
Location: the mental asylum named Germany
Posts: 42,602
Downloads: 10
Uploads: 0


Default

A system that got compromised, remains to be compromised, no matter what deletion, repair or clever mind stuff implemented - once compromised, forever compromised. You just cannot be certain that your repairing attempts were really successfull, you cannot rule out that something wicked survived. It's like with Carpenter's movie "The Thing".

And there is really some clever malware code out there these days. Stuff that you get infested by by said stuff landing on your HD , you must not even open or activate something anymore, or press a button. And that is email only. Drive-by-infections during normal browsing is a completely new ballgame. Your get directed by a pop up window to another website - and by that autodirection you already got infested.

Thats why I am in a sandbox, tend to use TOR or VPN on occasions, but also have Java, Javascript, scripts and stuff like that usually shut down, and have switched off all automatically functioning stuff in the browser where possible. Well, almost all such stuff. Some less candy and FX that way, yes, but its worth it.

If there is problems, or suspicion, do not trust system restore points, they already can be infested as well. Run the Klingon strategy instead: attack frontally and destroy the whole planet; delete the HD, means: re-format, switch off power, reformat again and switch off power again; copy an image from a HD that you stored physically disconnected form the system. Really clever malware even can survive formatting by harddrives and physically power interruption, just to scare you a bit. that's why it is good to cut power in a brute fashion: olull the plug, do not log off and close windows - some malware write itself to the HD again already, some code that protects the malware infested part of the HD from being formatted next time the format command is given.

Regarding computers, paranoia is a virtue.

I replace the complete HD every 18 months now.

Regarding email management, in the past I used to change email addresses constantly,m every couple of moths, every time I started to receive spam. I used the same name, just added "01", "02", "03" to it, to all names I used for different email addresses. That made it easier to keep track of it. I also had several email addresses, some for trusted people, some for one-way interactions, some for a forum entry, and so on.

100% safety is impossible these days, none of the methods above give you that, nor do live scanners, firewalls and such. You can just reduce the probability of getting hit. When you step into dog sh!t, then you have stepped into dog sh!t. Overkill the system then. Most infestations get spread by private systems whose owners have no clue that their systems are infested. That's why I am extremely angry at people who sometimes boast on some forums that they do not care for security and do not use any protective measure at all, saying their surfing habits and guts feeling is their guidance. They are either extremely antisocial, or they do not know what they are talking of .
__________________
If you feel nuts, consult an expert.
Skybird is offline   Reply With Quote
Old 01-06-14, 05:37 PM   #9
Stealhead
Navy Seal
 
Stealhead's Avatar
 
Join Date: Feb 2009
Location: Kentucky
Posts: 5,421
Downloads: 85
Uploads: 0
Default

I recon that these scams must work well enough or they'd not bother.They most likely send out several thousand at a time and the majority do not bite but when it all just spamming out anyway it is not like it takes much effort.

I also have a feeling that many of these e-mails are coming from "zombie computers" that have already been infected and it just propagates even if the majority do not fall some will.

http://en.wikipedia.org/wiki/File:Circle_of_spam.svg

What Skybird said is true a system Restore will not do anything to a virus in most cases unless it is a real amateur job.Usually they simply hide themselves in the system restore temporary files which means they'll come right back and the better ones will lay dormant for a few hours or days.
P.S. I love No Script.
Stealhead is offline   Reply With Quote
Old 01-06-14, 05:53 PM   #10
STEED
Lucky Jack
 
Join Date: Jan 2006
Location: Down Town UK
Posts: 27,695
Downloads: 89
Uploads: 48


Default

Bin it unread problem sorted.
__________________
Dr Who rest in peace 1963-2017.

To borrow Davros saying...I NAME YOU CHIBNALL THE DESTROYER OF DR WHO YOU KILLED IT!
STEED is offline   Reply With Quote
Old 01-06-14, 09:14 PM   #11
Kptlt. Neuerburg
Admiral
 
Join Date: Apr 2007
Location: Florida
Posts: 2,279
Downloads: 54
Uploads: 0
Default

@Mr Quatro, yeah I got the CWEBS.com thing too on Christmas Eve. Sent a fraud report to my credit union a couple of days later.

As for e-mail scams in general, if I see one that I don't know I delete it. Its simple, but there are people who do fall for it. It saddens and angers me to no end that there are people who are greedy enough to do something like this. As for viruses and malware you can get a virus on your computer from almost anything online, one person I worked with told me that his computer had been hit with a virus... while looking at a picture of a bicycle and it toasted his computer.
__________________
"When you're born into this world, you're given a ticket to the freak show. If you're born in America you get a front row seat." - George Carlin
Kptlt. Neuerburg is offline   Reply With Quote
Old 01-07-14, 06:11 PM   #12
swamprat69er
Aceydeucy
 
swamprat69er's Avatar
 
Join Date: Jan 2008
Location: Ontario,Canada
Posts: 1,889
Downloads: 11
Uploads: 0
Default

Ever since Christmas, like two or three times a day there is a email coming to my spam folder offering me a platinum credit card. I automatically delete it, I don't even bother to see what kind of interest they are offering or credit limit. If I want a platinum credit card I will go shopping for one. That is besides all the offers of sex, etc.
__________________
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
That which does not kill us, makes us stronger.

We the willing, led by the unsure, have done so much with so little, for so long, that we are now qualified to do anything with nothing.
swamprat69er is offline   Reply With Quote
Old 01-07-14, 09:26 PM   #13
Oberon
Lucky Jack
 
Join Date: Jul 2002
Posts: 25,976
Downloads: 61
Uploads: 20


Default

Malwarebytes is a good program, I can recommend it, grab it and let it give your system a scan, it's pretty good at finding nasty stuff. The problem with viruses like the one described in the OP is, like Skybird has said, they can be very hard to fully get rid of, especially rootkits and the like, it's like a weed, you can cut the stuff above ground, but unless you pull it up by the roots, it's not going away.
Another good bit of kit is Firefox with the noscript addon installed, gives you a lot more control over what scripts run on your page, because even internet adverts can carry viruses in them now, I've been got that way a couple of times before I got noscript and Malwarebytes.
Obviously precaution is also a potent weapon, I've had a few of those Costco emails recently, but they've all fallen into my junk folder, I'll say this for Hotmail, it's got a pretty smart filter.
Oberon is offline   Reply With Quote
Old 01-07-14, 11:04 PM   #14
Kptlt. Neuerburg
Admiral
 
Join Date: Apr 2007
Location: Florida
Posts: 2,279
Downloads: 54
Uploads: 0
Default

Quote:
Originally Posted by Oberon View Post
Malwarebytes is a good program, I can recommend it, grab it and let it give your system a scan, it's pretty good at finding nasty stuff. The problem with viruses like the one described in the OP is, like Skybird has said, they can be very hard to fully get rid of, especially rootkits and the like, it's like a weed, you can cut the stuff above ground, but unless you pull it up by the roots, it's not going away.
Another good bit of kit is Firefox with the noscript addon installed, gives you a lot more control over what scripts run on your page, because even internet adverts can carry viruses in them now, I've been got that way a couple of times before I got noscript and Malwarebytes.
Obviously precaution is also a potent weapon, I've had a few of those Costco emails recently, but they've all fallen into my junk folder, I'll say this for Hotmail, it's got a pretty smart filter.
Yeah Malewarebytes is what I use as my main anti-virus program and I would highly recommned it, I also use the Microsoft Security Essentials cause it has found things that Malwarebytes has missed (which isn't often I might add), but better safe then sorry.
__________________
"When you're born into this world, you're given a ticket to the freak show. If you're born in America you get a front row seat." - George Carlin

Last edited by Kptlt. Neuerburg; 01-07-14 at 11:43 PM.
Kptlt. Neuerburg is offline   Reply With Quote
Old 01-07-14, 11:48 PM   #15
swamprat69er
Aceydeucy
 
swamprat69er's Avatar
 
Join Date: Jan 2008
Location: Ontario,Canada
Posts: 1,889
Downloads: 11
Uploads: 0
Default

i use Advanced System Care Ultimate 7 for the A-V and once a week I disable that and run Ad-Aware A-V. So far everything appears as it should.
__________________
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
That which does not kill us, makes us stronger.

We the willing, led by the unsure, have done so much with so little, for so long, that we are now qualified to do anything with nothing.
swamprat69er is offline   Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -5. The time now is 09:37 AM.


Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
Copyright © 1995- 2025 Subsim®
"Subsim" is a registered trademark, all rights reserved.