Saturday
Nov292008
Author:
Paul Sylvester |
Date:
Saturday, November 29, 2008 at 7:08AM |
Permalink
[ad#digg-right]
This is another Virus that is going around and thought I'd tell you about it:Spyware.ISpyNow monitors files, network traffic, and keystrokes. This Spyware gives the person who installed it a Web-based interface with summaries of logged information on the host computer.
[Via Symantec]
[ad#ad2-left]
Now this one isn't to hard to figure out what happened. You have to manually install it on your system to get infected. Symantec has a great way on uninstalling this annoyance. I also suggest checking out my other program list just in case you don't want to buy Symantec Anti-Virus programs. Some other things to check out is:This is just the beginning in getting your system clean. You have to keep all you programs up to date and one way I do that is with Appsnap. This little program keeps you programs up to date from Virus to Firewall. I hope this helps people prevent and control spyware.
|
in
ATI,
AVG,
Anti-Virus,
Appsnap,
Begin,
Control,
Detected,
Don,
EST,
Event,
Firewall,
GE,
GENERIC,
Generic 12.htc,
Help,
Horse,
Host,
How-to,
IDE,
IE,
Important,
Info,
Install,
KEY,
Keys,
Make,
Malware,
Manual,
Monitor,
Other,
Spy,
Spyware.ISphynow,
Symantec,
Trojan,
Use,
Via,
Virus,
Wal,
annoyance,
article,
beginning,
case,
check,
checking,
choices,
date,
file,
form,
going,
hijackthis,
host computer,
htc,
information,
interface,
ispynow,
list,
man,
monitors,
net,
network,
network traffic,
perfect defender,
perfect defender 2009,
person,
program,
spyware,
str,
stroke,
system,
thought,
traffic,
trojan horse,
ua,
variety,
virus programs,
viruses,
way
Wednesday
Nov122008
Author:
Paul Sylvester |
Date:
Wednesday, November 12, 2008 at 1:00PM |
Permalink
From what I've seen so far. There seems to be a new rash of email going around with the heading that makes it look and feel like either UPS or Fedex. Saying that you have an undelivered package from them and to either print the order confirmation or to click a link. I will say this once, if you get this delete it. Fedex and UPS will never hide the link and tell you have an package waiting in the email. They will leave a note your door. You must ask yourself how Fedex/UPS found out your email address to tell you have a package waiting? They don't and they won't, just a fact.[ad#ad2-right]
UPS/FedEx Delivery Failure : SnopesTROJ_DLOADR.GG and TSPY_ZBOT.NM Trojan, which will Monitor and try to steal your data. The other one is a ZBot and will try to steal you data also. If you need help removing this virus, I'd suggest checking out my other virus article Avg detected Trojan Horse Generic 12.htc?. There are a lot of ways to remove this virus but the first step is never click on any links in your emails. I also wrote about Some Important programs to prevent yourself from having viruses and Malware!! This will help prevent and fix the common virus problems you might have.
|
in
ATI,
AVG,
Bot,
DLOADR,
Data,
Detected,
Don,
EA,
Email,
FEDEX,
GE,
GENERIC,
Generic 12.htc,
Help,
IDE,
Important,
Links,
Live,
MMO,
Make,
Malware,
Monitor,
New,
Other,
Package,
Problems,
Programs,
Red,
Snopes,
Spy,
The,
Tor,
Trojan,
UPS,
US,
Virus,
Ways,
ad2,
article,
check,
checking,
click,
com,
confirmation,
delivery,
door,
fact,
first,
going,
link,
look,
need,
pack,
problem,
program,
ru,
step,
troj,
trojan horse,
virus problems,
viruses,
war,
way
Tuesday
Nov112008
Author:
Paul Sylvester |
Date:
Tuesday, November 11, 2008 at 4:19AM |
Permalink
[ad#ad2-left]According to Security and The Net:
An update for the AVG virus scanner released yesterday contained an incorrect virus signature, which led it to think user32.dll contained the Trojan Horses PSW.Banker4.APSA or Generic9TBN. AVG then recommended deleting this file; this causes the affected systems to either stop booting or go into a continuous reboot cycle. So far, the problem only appears to affect Windows XP, but there is no guarantee that other versions of Windows don’t have the same issue.
[Via Security and The Net]
[ad#ad2-right]
I bring this up because this is a false positive according to AVG. AVG since sent out another update to there Database and you can go and update the database to get rid of this problem. If you need to restore that DLL check out the article Security and The Net, they got some excellent suggestions on fixing the problem.If you've not been affected by this yet, you probably won't be. It is yet unknown how many people have been affected. I'm blogging about this to tell people about this and to warn people that not all of warnings from AVG are true and that is why you should always ask before you delete or do anything to your system. I always USE google when it comes to these types of questions
|
in
3,
Avg,
Blogging,
Detected,
Don,
False,
False Postives,
GE,
GENERIC,
Google,
LOG,
Questions,
Release,
Security,
Store,
Sue,
TBN,
Tab,
Trojan,
US,
Update,
Use,
Via,
Virus,
Virus Scan,
Warnings,
Windows,
Windows XP,
XP,
ad2,
affected systems,
anything,
article,
avg virus scanner,
bank,
check,
com,
cycle,
d,
dll,
false positive,
file,
guarantee,
issue,
net,
nyt,
problem,
question,
reboot,
rest,
ru,
system,
troj,
trojan horse,
trojan horses,
user,
virus signature,
warning,
yesterday
Friday
Oct172008
Author:
Paul Sylvester |
Date:
Friday, October 17, 2008 at 8:39AM |
Permalink
I had a Friend tell me his system detected this Trojan GENERIC11.BEOG. I did my research and right now. It looking like Adobe added something to there recent updates *see updates below*. I'll Have to check with some other sources but it looking like AVG over did it again and found something that might just be an AVG issue. (correction)
[ad]
I usually wait before updating something like adobe. It is sure to be some minor change to adobe but if your are worried here's the link to watch and see what people are asking or talking about this false positive:Malwarebytes Security ForumsIt seems that AVG is calling this possible virus but yet it looks like it is a false positive. So don't you worry. If it was a true virus you'd probably would never know!! ;) [ad]
*UPDATE*I installed Adobe 9.0 and updated the virus scan database for AVG. It hasn't found any thing yet but I am still scanning my system. I'll let you know if it finds this false positive on my Vista machine!! I'm doing this to test it out!!! Come back later to find out the results of the test. (if you like this website by all means google this website so it too can be on google trends. I want to see it be up on google trends for a day or two.)*UPDATE #2*Just did a whole system scan. It did not find anything. So I will be doing a reboot and scanning again. It might be something that is attached to a PDF, if you went to a malicious website. So I will do another scan.*Update #3*I just rebooted and almost finished scanning with AVG. I still haven't found anything wrong. I have did some more digging into what might cause it. I just did a look registry look up on {AC76BA86-7AD7-1033-7B44-A90000000001} and I found out something really interesting. It's a PDFFile_8.ico File. This is tells me this is an Icon for the desktop. I'm using one of the examples from Malwarebytes Security Forums to try to figure out what might be infected.Here's what AVG said after it finished scanning my system:
So I must assume that it is neither Adobe or AVG who have anything to do with this. I will have to say that it must be a real infection as to not having any viruses after an install of Adobe. How do you get this type of virus. Check out my article on : Some Important programs to prevent yourself from having viruses and Malware!!There you will find some useful tips on how not to get infected and other useful tools to help restore you system to it's glory days.So I will tell my friend to do a full virus scan and double check the results. I can't replicate the so called virus but I am sure there is something going on with the HASH files of the AVG Database and something might be coming back from the adobe install that has the same HASH files. That also might be making AVG flag it as an Virus or Trojan. I might never know though.
|
in
AVG,
Adobe,
Avg,
False Postives,
Forums,
Friend,
GENERIC,
Malware,
Malwarebytes,
Other,
Security,
Trojan,
US,
Update,
Updates,
Virus,
change,
check,
false positive,
issue,
positive,
research,
search,
something,
system
![]()
