1. After 20+ years it's time to pass the torch. If you are interested in acquiring this forum please contact support@cv-performance.com for details. Any spam will be reported and blocked.
  2. Welcome to Bike Talk, a forum for all bikers and motorcycle enthusiasts. If you are new to Bike Talk, be sure to register for free and join the conversation.

    There's always someone around willing to help out with questions or give a friendly wave back. All Harley and metric riders are welcome.

Death to the Trojans

Discussion in 'Pull up a chair and sit for a spell' started by Red Rider, Jan 26, 2009.

  1. Red Rider

    Red Rider Well-Known Member

    Jul 5, 2006
    Likes Received:
    Churchill County, NV
    Trojan horse viruses, that is. Not the college teams.

    :rant: My computer got the "Antivirus 2009" Trojan horse virus this weekend. My kid apparently clicked on something that resulted in a bogus phishing add that pretends to tell ya that your computer has a virus and you need "Antivirus 2009" to cure it. Then the stinking thing just keeps popping up as you try to navigate to other sites on the web, blocking them and pimping the "Antivirus 2009" site that wants your credit card number. It is NOT the real Microsoft Antivirus 2009, just looks like it so you'll screw up and send your card number out to some thieves in Russia, China or India or somewhere else.

    Anyway, the point of all this is I used Malwarebyte's Anti-Malware (free) to cure the problem, and it worked great. So just be careful out there in the cyberspace....there are far too many scum on the 'net.
  2. wvak47

    wvak47 Active Member

    Aug 29, 2007
    Likes Received:
    Chas WV
    Thanks for the software tip Red. One of the machines here at work got that stupid virus. It was a real pain in the rear to get rid of. BIG NOTE for the rest of ya. You might want to download a fix for it now before it gets on your machine. Once it is there it is almost impossible to get anything on the infected machine from the NET. We had to download software onto a jumpdrive from another machine and boot in safemode to get it off the one here. It is a REAL nasty sucker.

    You are sure right about too much SCUM on the NET too Red. I could spend the rest of my life beating those programers with a ball bat and die a happy man. :angry:

    The link Red gave is not FREEWARE. It will scan for free but will not fix for free. Now I am working to remove it from my machine.
    Last edited: Jan 27, 2009
  3. Red Rider

    Red Rider Well-Known Member

    Jul 5, 2006
    Likes Received:
    Churchill County, NV
    Clarification -

    Hmmm, I didn't have to pay to download it. :confused: Malwarebyte does advertise a $ Anti-Malware full version that does a whole lot more - and I plan on looking into it soon - but I'm 90% sure I downloaded the software from Malwarebyte's own site, and 100% that it diagnosed and fixed the trouble for FREE.
  4. wvak47

    wvak47 Active Member

    Aug 29, 2007
    Likes Received:
    Chas WV
    Well crap. Guess I went to the wrong place or something maybe. Download/scan was free then they wanted $40 for the registration code so it would fix said problems.
  5. drillsarge

    drillsarge Active Member

    Jun 3, 2007
    Likes Received:
    Hello good peoples, school and work has me covered up so I apologize for not showing up on here in awhile. This may be late but a program called smitfraudfix can cure any ill your computer may have. It is a registry cleaner and will find hidden infected files and will allow you to remove them. it's great for spyware, adware , hijacking software and viruses. I have the instructions somewhere and if anyone is interested, I will try to find and post.:D
  6. chucktx

    chucktx Moderator Staff Member

    Jul 5, 2005
    Likes Received:
    nice to see ya on here again sarge!!!!!!!!:) :)
    i am definatly interested!!!!!
  7. chucktx

    chucktx Moderator Staff Member

    Jul 5, 2005
    Likes Received:
    nice to see ya on here again sarge!!!!!!!!:) :) i miss haveing the "avatar wars" with ya!!!!!!!!!:roflmao:
    i am definatly interested!!!!!
  8. drillsarge

    drillsarge Active Member

    Jun 3, 2007
    Likes Received:
    I will look for and post. I found out about this program on a spyware forum. don't remember the name tho.
  9. CD

    CD Guest

    I ran Macafee Pro, Symantec and AVG on my network with mixed results. I now run Kapersky and it doesn't let anything through. Kapersky is one of those gems you learn about from those that clean PC's for $$$. It is one the tools they use.
  10. AFNurse

    AFNurse Moderator Staff Member

    Jun 8, 2004
    Likes Received:
    Great Falls, MT or deployed to......
    CD...is that a freeware program? or something that is for sale???
  11. RKBud

    RKBud Active Member

    Dec 16, 2007
    Likes Received:
    Piney Woods of East Texas
    Let the Avatar Wars begin....I miss them too
  12. Tomflhrci98

    Tomflhrci98 Active Member

    Aug 18, 2004
    Likes Received:
    So. Cal.
    I am interested in both the Kapersky or the smitfraudfix. I will google both for info.

    On my personal laptop which is an old Dell, I've been using Norton Antivirus and scanner/cleaner whatever it is. The problem is that Norton runs constantly, scanning and live updating and this just absolutly kills the speed of this laptop. I am sick of Norton and am interested in something else.

    Thanks for the good info guys, please send more :)
  13. FLHTbiker

    FLHTbiker Moderator Staff Member

    Nov 3, 2004
    Likes Received:
    I've been using AVG 8.0 free for a long time with no issues. A computer guy who works on my computer from time to time recommended it.
  14. kenfuzed

    kenfuzed Administrator Staff Member

    Jan 1, 2005
    Likes Received:
    Las Vegas NV
    Here is my line of defense and I Never get hit by any of the nasty stuff.
    Software Firewall: ZoneLabs Zone Alarm (free version), set to medium protection. Tells you if anything gets into your system and tries to communicate to the outside world.

    Hardware Firewall: use a router, brand really doesn't matter. If you are on DSL (most these days are) then this should be placed inline with your cable or DSL modem. For those who don't know, a router will act as its own IP address between the internet and your computer. Many trojans try to send out your IP information, but upon returning to find you your IP is hidden behind the router so those using the trojan to get back into your PC will give up.

    Anti-virus software: I use AVG (free) and don't spend any money on expensive AV software. The main reason, most only detect viruses AFTER they have been discovered and those definitions have been uploaded back to your program. I dumped McAfee a few years ago as their program tends to slow down performance. Using a good firewall and router to hide your PC from prying eyes is far more effective then many AV programs IMHO.

    Browser: Firefox. As much as you may like Microsoft's Internet Explorer, those who write viruses, malware, and Adware absolutely LOVE Internet Explorer even more. That is why I fondly call it Internet Exploiter. This is one of the biggest offenders to gaining access to your PC. No matter how many patches MS puts out IE is still a piece of crap with a big welcome mat that says "come on in, steal my info and rape my computer". Not only that, but all the add-on junk within IE slows down your browsing. Don't believe me? Download Firefox and compare how fast many sites come up. When I do any coding for this and other sites I run them through many browsers, Firefox always makes pages appear better and faster.
    Firefox is free, here's a link to download Firefox.

    With all of the above in place my kids, nieces, nephews, and their friends all come over and browse the net on my computer and I never have to worry. Sometimes I'll look at the ZoneAlarm logs and see thousands of blocked attempts afterward which tells me that my defense is working. I can also always tell when someone has used IE on my computer as there are 3x as many reported attempts to place crap on my system.
    Last edited: Feb 15, 2009
  15. AFNurse

    AFNurse Moderator Staff Member

    Jun 8, 2004
    Likes Received:
    Great Falls, MT or deployed to......
    I currently run a router....then I use zone alarm (freeware!).....I use Antivir for antivirus with pretty good success. My browser for everything except school, my bank, and any military sites (.gov) that I need to go to I use OPERA. I really like it, but it does not work on the above listed types of sites. I use IE for those......
  16. chucktx

    chucktx Moderator Staff Member

    Jul 5, 2005
    Likes Received:
    i have been using firefox for about a month now....i like it better than ie. it also has a customizaton that has all the icons and stuff harley related....pretty cool!!! i used to have a router with huges net, but now i have verizion wirless usb plugin thingy.....i really like that!!!! much faster than my sat was. and cheaper!
  17. CD

    CD Guest

    We ran dual firewalls, Norton Corporate, Adaware pro and still could get hit occaisonally. When you have 10-12 nodes and people with any free time it is gonna happen. After shutting down I kept Norton going until the license ran out and switched to MaCafee for all of two weeks. It's knickname is Macrappy for a reason. Ran AVG free for a while and then bought the AVG pro for multiple nodes. AVG is a bit cludgy and takes way to much CPU time and the firewall can be a PITA. They tend to be a little slow on catching new bugs relying on other sources. After getting zapped with a Trojan back door loader on one of the gaming machines I went to their support... Nope, no new bugs!! Then, AVG updated the DB a couple of days later....Was recommended Kapersky free to try and clean the Trojan and it worked. Switched to Kapersky Internet secutity suite and it updates multiple times a day, is a smaller app and it's CPU time is low.
    A 3 node license ran me $89.00 for the suite Antivirus Software & Internet Security - Kaspersky Lab

    So now I have a Netgear firewall for brute force attacks and Kapersky Suite.
    BTW, Adaware Pro always worked great.
  18. drillsarge

    drillsarge Active Member

    Jun 3, 2007
    Likes Received:
    As promised, smitfraudfix instructions:
    * Search:
    o Double-click smitfraudfix.exe
    o Select 1 and hit Enter to create a report of the infected files. The report can be found at the root of the system drive, usually at C:\rapport.txt

    * Clean:
    o Reboot your computer in Safe Mode (before the Windows icon appears, tap the F8 key continually)
    o Double-click smitfraudfix.exe
    o Select 2 and hit Enter to delete infect files.
    o You will be prompted: Do you want to clean the registry ? answer Y (yes) and hit Enter in order to remove the Desktop background and clean registry keys associated with the infection.
    o The tool will now check if wininet.dll is infected. You may be prompted to replace the infected file (if found): Replace infected file ? answer Y (yes) and hit Enter to restore a clean file.
    o A reboot may be needed to finish the cleaning process. The report can be found at the root of the system drive, usually at C:\rapport.txt

    * Optional:
    o To restore Trusted and Restricted site zone, select 3 and hit Enter.
    o You will be prompted: Restore Trusted Zone ? answer Y (yes) and hit Enter to delete trusted zone.

    process.exe is detected by some antivirus programs (AntiVir, Dr.Web, Kaspersky) as a "RiskTool". It is not a virus, but a program used to stop system processes. Antivirus programs cannot distinguish between "good" and "malicious" use of such programs, therefore they may alert the user.
    I had Norton and don't anymore(it sucks). Used AVG Free for awhile. Now have my ISP's security suite. Sometimes things can get through, this program is really gooood for homepage hijackers.:D
    Still searching for some good avatars, don't want to battle with an empty arsenal.:roflmao:
  19. chucktx

    chucktx Moderator Staff Member

    Jul 5, 2005
    Likes Received:
    "Still searching for some good avatars, don't want to battle with an empty arsenal"

    hehehehehehehe.......guess i need to "load up" also!!!!! lol

Share This Page