Author Topic: SECURITY WARNINGS & Notices - Please post them here  (Read 2889760 times)

0 Members and 1 Guest are viewing this topic.

Offline Marc57

  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1944
  • KISS Rules The World!!!
    • KISS Army
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1425 on: June 28, 2011, 10:23:32 PM »
Not sure polonus, Because of this line in the story:

"According to Feng, Popureb detects write operations aimed at the MBR -- operations designed to scrub the MBR or other disk sectors containing attack code -- and then swaps out the write operation with a read operation.

Although the operation will seem to succeed, the new data is not actually written to the disk. In other words, the cleaning process will have failed."

Let's just hope our A/V catches it before it gets in.
« Last Edit: June 28, 2011, 10:25:24 PM by Marc57 »
You Wanted the Best You Got the Best the Hottest Band in the World KISS!!!

Avastfan1

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1426 on: June 28, 2011, 10:54:15 PM »
Polonus! Great to see you back dude!

We missed you on the forum here!

Hope you are here to stay?  :o

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1427 on: June 28, 2011, 11:45:10 PM »
Rootkit Infection Requires Windows Reinstall, Says Microsoft

"Microsoft is telling Windows users that they'll have to reinstall the operating system if they get infected with a new rootkit that hides in the machine's boot sector."

http://www.pcworld.com/article/231255/rootkit_infection_requires_windows_reinstall_says_microsoft.html#tk.nl_dnx_h_crawl
This is actually overhyped and inflated to make a good news story -  It is a basic TDL with a few bells and whistles..  There are some inaccuracies.  A reformat will not replace the MBR - you need to repartition the drive to clear the old and get a new one

Quote
If your system does get infected with Trojan:Win32/Popureb.E, we advise you to fix the MBR and then use a recovery CD to restore your system to a pre-infected state (as sometimes restoring a system may not restore the MBR). To fix the MBR, we advise that you use the System Recovery Console, which supports a command called "fixmbr".
Chun Feng.  In this instance a recovery CD would be the manufacturers factory reset disc which does wipe the disc clean and start afresh.  And here is the disparity, if it can't be cleared why use the recovery console ? Or if that will cure it why reinstall ?


Offline Marc57

  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1944
  • KISS Rules The World!!!
    • KISS Army
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1428 on: June 28, 2011, 11:58:20 PM »
Thanks essexboy.
You Wanted the Best You Got the Best the Hottest Band in the World KISS!!!

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89058
  • No support PMs thanks
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1430 on: June 30, 2011, 11:57:25 AM »
Never a truer statement, why do you thing they plaster "Do Not Click" buttons on videos (etc.), people just can't resist the temptation/challenge, common sense goes out the window.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

tony b

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1432 on: July 01, 2011, 02:24:48 PM »
Hi, I'm an Avast user, not regular poster here but I do read a lot of the stuff. Saw this in a free paper we get in the UK, thought it might be worth passing on :-


"At least 4.5million PCs, including 200,000 in Britain, have been hit in just three months.

They are now part of a vast botnet – a network of private computers infected with malicious software and controlled without the owners’ knowledge. It has been branded by analysts as the ‘most sophisticated threat today’.

The PCs were captured using a bug called TDL-4 – the latest version of a long-standing malware series, which targets Windows machines and hides itself in hard drives, well away from standard anti-virus programmes.

The creators could stand to make millions by ‘renting’ space on the infected network to other cyber criminals.

They pay small fees to ‘affiliate’ hackers to help spread the botnet and receive between £12 and £120 for every 1,000 installations, which are often conducted via pornographic or ‘bootleg’ sites and video and file storage services.

Kaspersky Lab security researchers claim the hackers are ‘essentially trying to create an indestructible botnet that is protected against attacks, competitors and antivirus companies’.

More than 30 per cent of all victims so far are in the US, with seven per cent in India and five per cent in Britain.

A single group is believed to be behind the botnet, which has its own anti-virus code that scans the infected machine for other malicious programmes and deletes them to see off any rival cyber attackers.

Ram Herkanaidu, from Kaspersky, added: ‘As long as the botnet master gets paid they don’t really mind. It can be used for anything really."

http://www.metro.co.uk/tech/868005-at-least-4-5million-pcs-hit-by-indestructible-tdl-4-botnet
« Last Edit: July 01, 2011, 02:29:19 PM by tony b »

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37532
  • Not a avast user

spg SCOTT

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1434 on: July 02, 2011, 01:20:19 AM »
Plug mouse into the computer - be compromised
http://norman.com/security_center/security_center_archive/2011/plug_mouse_into_the_computer_be_compromised/en

Hmm...a bit more sinister than what we used to do in school...plug our mouse into someone elses computer when they weren't looking...Great fun... ;D ;D

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline Left123

  • There Is No Patch For Human Stupidity.
  • Avast Evangelist
  • Advanced Poster
  • ***
  • Posts: 1048
  • Proud Community Member&Helper.
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1436 on: July 02, 2011, 11:05:50 PM »
New banking trojan named Sunspot challanges ZeuS-Spyeye
http://www.theregister.co.uk/2011/05/11/sunspot_banking_trojan/
AMD Athlon(tm) X2 Dual-Core Processor 4200+ - 2.20 GHz,3,00 GB RAM -
Browser:Mozilla Firefox +WOT - SoftWare:CCleaner - Windows 7 32 bit
No Anti-Virus

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1438 on: July 04, 2011, 12:49:58 PM »
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline scythe944

  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 2913
    • My Tech Blog
For generic computer (not avast) problems, you can also visit my forum for help: http://www.jacobytech.net/forum