PDA

View Full Version : Cross platform proof of concept virus


RedjackRyan
04-10-2006, 07:57 AM
APRIL 07, 2006 (COMPUTERWORLD) - Kaspersky Labs is reporting a new proof-of-concept virus capable of infecting both Windows and Linux systems.
The cross-platform virus is relatively simple and appears to have a low impact, according to Kaspersky. Even so, it could be a sign that virus writers are beginning to research ways of writing new code capable of infecting multiple platforms, said Shane Coursen, senior technical consultant at Kaspersky.

http://www.computerworld.com/securitytopics/security/virus/story/0,10801,110330,00.html?source=NLT_PM&nid=110330

DaveM
04-10-2006, 03:41 PM
Something has crept into my system which my anti-spyware software identifies as a "Microsoft IE virus"--ten different infections, no less. Whatever it is, it crashes the spyware removal program when I attempt to remove it. Anyone have any thoughts? Best I can think of at the moment is to update Bitware as best I can and let it do an overnight scan of my system. That's worked before, at least.

John L
04-10-2006, 07:00 PM
Best thing to do is to pick a favorite anti-spyware application, boot into safe mode (F8 during the Windoze splash screen), then let the anti-spyware do it's thing.

I kind of liked Lavasofts Ad-aware http://www.lavasoftusa.com/ for that kind of stuff, but I have seen some nasties (like CWS) that it could not completely remove. If I had to save the OS (See my other recent post) I'd usually try a Regedit into HKLM/Software/Microsoft/Windows/Current_Version/Run and then the same location in the Current_User and USer trees. If you have critters they most likely will be listed there. Delet the reference to them and they do not initialize anymore. Now reboot into safe mode and delete the directory/files/whatever that the AS software referenced.

Disclaimer: If you don't KNOW how to backup, restore, and edit the registry, or cannot look completely relaxed while doing so, DON'T use regedit. One bad keystroke can equal an unbootable, unrecoverable OS...

Amy in Vermont
04-10-2006, 07:15 PM
For the more recalcitrant infections of spyware etc, one of our students has put together a package that combines Ad-Aware, SpyBot, Hijack This, CWShredder, and a few others. You can downlaod it here:
http://community.middlebury.edu/~pmitrevs. Install it, reboot in to safe mode if you want to, and let it run...

A

Bat
04-10-2006, 11:09 PM
I had that damned CWS trojan/virus whatever it is...awful! McAfee couldn't catch it, didn't even identify it...
Marcia asked around at work and was recommended Xoftspy, which did catch it. Webroot's Spysweeper is also very good for catching the remnants of stuff, too, and Trend Micro antispyware (Venus flytrap) and SpyDoctor complete the package. I also run Microsoft's Beta Firewall, and AdAware, Spyblaster, and a few others from time to time. Trend and SpyDoctor update automatically about every day, Xoftspy about once a week or so...
works for me. Haven't had a serious infection in a couple years. Oh yeah, I got rid of McAfee...that has to be the slowest program in the world!, not to mention it being rather ineffectual against some of the nasties out there.
I'd rather run several scans that catch stuff!
If you have to get one, I'd recommend either Xoftspy or Spysweeper, but both is better.

DaveM
04-11-2006, 12:05 AM
AdAware seems great as long as I keep it updated. But when a stubborn "bug" comes along, Bit Defender seems to put it to rest, despite requiring roughly six hours to check and clear all of my hard drives.

Bat
04-11-2006, 12:20 AM
Good grief! Try Xoftspy..it's fast and very good...of course, if you have 11 harddrives....