Notices
Feedback & Suggestions for Our Forum This is NOT a place to ask car/modification questions!
For posting feedback, suggestions or comments regarding our My350Z.com forum.

Virus and keyloggers on my350z

Thread Tools
 
Search this Thread
 
Old 03-08-2010, 09:56 AM
  #61  
Entaille
New Member
iTrader: (16)
 
Entaille's Avatar
 
Join Date: Sep 2008
Location: WA
Posts: 9,043
Received 21 Likes on 16 Posts
Default

Geaux, if you google the name of the fake av program that is running you'll come across a link with a walkthrough that also contains a fixexe.reg file - basically alters the registry entry that is preventing you from opening any .exe files.

alternatively you can boot your pc into safemode and run malwarebytes.
Old 03-08-2010, 10:30 AM
  #62  
Hraesvelg
Got Uranium?
iTrader: (1)
 
Hraesvelg's Avatar
 
Join Date: Apr 2003
Location: The Recliner of Rage
Posts: 35,723
Received 6 Likes on 4 Posts
Default

Originally Posted by 3hree5ive0ero
I'm not blaming him for anything. I just think it's ridiculous that he did that. What if every single member here who no longer visits this site decided to erase all trace of their activity on here? How much info do you think we'd have?

Remember that in order for forums to exist, knowledge must be shared and retained.
If he was happy with y'all that wouldn't have happened. In order for a forum to exist you need to keep members around.
Old 03-08-2010, 10:41 AM
  #63  
Black Z Eddie
New Member
 
Black Z Eddie's Avatar
 
Join Date: Jun 2007
Location: San Pedro
Posts: 947
Received 9 Likes on 3 Posts
Default

Just imagine if this malware was in stealth mode collecting personal data and/or using your machine as a server to distribute more crap. Given this latest outbreak, a lot of people would have been unaware.
Old 03-08-2010, 10:41 AM
  #64  
JCat
---------------
iTrader: (4)
 
JCat's Avatar
 
Join Date: Mar 2004
Location: JC in Atlanta Georgia
Posts: 3,987
Received 73 Likes on 48 Posts
Default

.
Most users ever online was 4,862, 10-06-2008 at 01:27 PM.
.
Old 03-08-2010, 10:44 AM
  #65  
IB Adrian
IB Staff
iTrader: (1)
 
IB Adrian's Avatar
 
Join Date: Apr 2008
Location: Across from the neighbours
Posts: 756
Likes: 0
Received 0 Likes on 0 Posts
Default

<test> update insert union embed
Old 03-08-2010, 10:45 AM
  #66  
IB Adrian
IB Staff
iTrader: (1)
 
IB Adrian's Avatar
 
Join Date: Apr 2008
Location: Across from the neighbours
Posts: 756
Likes: 0
Received 0 Likes on 0 Posts
Default

update insert union embed
Old 03-08-2010, 10:47 AM
  #67  
Hraesvelg
Got Uranium?
iTrader: (1)
 
Hraesvelg's Avatar
 
Join Date: Apr 2003
Location: The Recliner of Rage
Posts: 35,723
Received 6 Likes on 4 Posts
Default

I sense a disturbance in the Matrix....
Old 03-08-2010, 10:49 AM
  #68  
MDHRZ
Registered User
iTrader: (14)
 
MDHRZ's Avatar
 
Join Date: Apr 2008
Location: Southern MD
Posts: 4,026
Likes: 0
Received 0 Likes on 0 Posts
Default

Neo?
Old 03-08-2010, 10:50 AM
  #69  
3hree5ive0ero
Retired Admin
iTrader: (95)
 
3hree5ive0ero's Avatar
 
Join Date: Dec 2000
Location: Dallas / Chicago
Posts: 1,337,017,813
Received 78 Likes on 50 Posts
Default

Good, Adrian's here.
Old 03-08-2010, 11:00 AM
  #70  
Hraesvelg
Got Uranium?
iTrader: (1)
 
Hraesvelg's Avatar
 
Join Date: Apr 2003
Location: The Recliner of Rage
Posts: 35,723
Received 6 Likes on 4 Posts
Default

Old 03-08-2010, 11:00 AM
  #71  
Overlord#1
Registered User
iTrader: (1)
 
Overlord#1's Avatar
 
Join Date: Oct 2007
Location: Denver,Colorado
Posts: 5,215
Received 5 Likes on 5 Posts
Default

Too late for me, this virus royally fcked my computer. My work computer is getting nuked tonight, re setting up chit the rest of the week.
Old 03-08-2010, 11:02 AM
  #72  
3hree5ive0ero
Retired Admin
iTrader: (95)
 
3hree5ive0ero's Avatar
 
Join Date: Dec 2000
Location: Dallas / Chicago
Posts: 1,337,017,813
Received 78 Likes on 50 Posts
Default

+1. This pwnd my personal laptop and my brand new netbook (just freshly taken out of sealed box today). FML. At least, I cleaned them up and they both work now.
Old 03-08-2010, 11:10 AM
  #73  
buzzardmountain
New Member
iTrader: (17)
 
buzzardmountain's Avatar
 
Join Date: Feb 2003
Location: Flying Low....
Posts: 9,898
Likes: 0
Received 7 Likes on 4 Posts
Default

Originally Posted by 3hree5ive0ero
+1. This pwnd my personal laptop and my brand new netbook (just freshly taken out of sealed box today). FML. At least, I cleaned them up and they both work now.
It's probably not the site........
Old 03-08-2010, 11:10 AM
  #74  
Hraesvelg
Got Uranium?
iTrader: (1)
 
Hraesvelg's Avatar
 
Join Date: Apr 2003
Location: The Recliner of Rage
Posts: 35,723
Received 6 Likes on 4 Posts
Default

I've just had pop ups and other windows open to another site. No degradation in performance though.
Old 03-08-2010, 11:30 AM
  #75  
FRESH Z
Registered User
iTrader: (10)
 
FRESH Z's Avatar
 
Join Date: Sep 2006
Location: SoCal
Posts: 1,155
Likes: 0
Received 0 Likes on 0 Posts
Default

Im glad i wasnt the only one!

A 2010 antivirus spyware keeps on coming on everytime i visit this site... i finally got rid of it with anti-malware... but still comes back on when i visit my350z!
Old 03-08-2010, 11:33 AM
  #76  
3hree5ive0ero
Retired Admin
iTrader: (95)
 
3hree5ive0ero's Avatar
 
Join Date: Dec 2000
Location: Dallas / Chicago
Posts: 1,337,017,813
Received 78 Likes on 50 Posts
Default

Originally Posted by buzzardmountain
It's probably not the site........
I swear I wasn't watching **** on my brand new netbook.

It had to be. My netbook's internet connection, after setting up the OS, was tested using google.com and my350z.com. After a minute or so of browsing the forum (and no other site), I had caught the virus (my fault, though, since I hadn't yet set up the anti-virus on it yet). As for the laptop, I had the anti-virus deactivated temporarily since this past Sunday.
Old 03-08-2010, 01:15 PM
  #77  
phreaktor
¯¯\_(ツ)_/¯
iTrader: (22)
 
phreaktor's Avatar
 
Join Date: Jan 2007
Location: The Marketplace
Posts: 28,233
Received 32 Likes on 24 Posts
Default

My work server is blocking certain ads and labeling them as restricted sites now. I hope this doesn't flag someone in IT to come down here and seize this PC. Every time I open an page with one of the blocked ads on it, it's like I am trying to visit a restricted site.

Last edited by phreaktor; 03-08-2010 at 01:16 PM.
Old 03-08-2010, 03:03 PM
  #78  
juju
Registered User
 
juju's Avatar
 
Join Date: Apr 2009
Location: Atlanta, GA
Posts: 1,350
Likes: 0
Received 0 Likes on 0 Posts
Default

I'm willing to bet that a handful of members are stuck without internet right now. This thing locked me out of Firefox when it was infected.

I had to look up the removal instructions on my iPhone while doing everything by hand on the laptop. Not fun.

I think it just tried to infect me again, but AVG caught it this time. Whatever is causing it is still here.
Old 03-08-2010, 03:04 PM
  #79  
juju
Registered User
 
juju's Avatar
 
Join Date: Apr 2009
Location: Atlanta, GA
Posts: 1,350
Likes: 0
Received 0 Likes on 0 Posts
Default

I'm willing to bet that a handful of members are stuck without internet right now. This thing locked me out of Firefox when it was infected.

I had to look up the removal instructions on my iPhone while doing everything by hand on the laptop. Not fun.

I think it just tried to infect me again, but AVG caught it this time. Whatever is causing it is still here.

Last edited by juju; 03-08-2010 at 03:05 PM.
Old 03-08-2010, 04:31 PM
  #80  
GeauxLadyZ
Registered User
iTrader: (9)
 
GeauxLadyZ's Avatar
 
Join Date: Mar 2008
Location: Htown
Posts: 3,798
Likes: 0
Received 3 Likes on 3 Posts
Default

Originally Posted by Shift_SpecV
Mods/Admins can't do anything about it. Its all in the hands of IB staff. Believe me when I say that we are complaining as well. I gotten the phishing web twice already. 3ree5ive0ero already sent a High priority ticket to the IB staff yesterday. Hopefully it should be resolved soon.

Shift_SpecV
Sorry Mods, unaware of what abilities you guys actually have. Thanks for putting in the complaints, though.

So far so good. Im on my personal laptop now that has a blocker so im safe, but so far no block notifies, so it would appear this problem is fixed....

Originally Posted by 35oZephyR
^^^ shhhh....chill out homie.

You might get banned here quicker than this virus gets taken care of.
Ya ya, written in frustration. Thats gotto be the worst spyware ive ever come accross...the little bisch really does some effin damage and seems worse than the average.

I was afraid my work IT would deem the site as unsafe, and block it. Once blocked, it cant be unblocked, and my job would become much more boring in downtime.

Originally Posted by Entaille
Geaux, if you google the name of the fake av program that is running you'll come across a link with a walkthrough that also contains a fixexe.reg file - basically alters the registry entry that is preventing you from opening any .exe files.

alternatively you can boot your pc into safemode and run malwarebytes.
Yes sir, i went on the earlier pages and followed that link with the instructions. It worked like a charm. I have some admin rights on my work PC but i cant boot in safe mode, among some other things. I CAN install programs and change registry, though. After seeing that it could be undone, i dont understand how so many ppls comps on here got so f'ed up they had to wipe drive, or reinstall windows, or etc.

Was this thing infecting everybody differently or something? The first time it blocked my Rundll32.exe in registry, but i fixed. Second time wasnt as bad, and third even less. Weird.

Thanks, though, brosef. Hope this is fixed for good!

Last edited by GeauxLadyZ; 03-08-2010 at 04:37 PM.


Quick Reply: Virus and keyloggers on my350z



All times are GMT -8. The time now is 03:49 AM.