Virus on the forum? -> FIXED. VIRUS IS REMOVED.

debate, appreciation, interviews, reviews (events or releases), videos, radio shows

Moderators: dubway, wub, seckle, fractal, joe muggs, badger, pete bubonic

Forum rules
New members: By using this site you acknowledge that you have read, understood and agreed to our terms of use. Click HERE to read them. If you do not agree to our terms of use, you must exit the site immediately. All members must also fully comply with our forum rules while accessing and using the site. Click HERE to read them.

Re: Virus on the forum? - VIRUS IS REMOVED.

Postby dubway » Mon Aug 30, 2010 6:18 pm

fixed. virus is removed.
User avatar
dubway
Site Admin
 
Posts: 2675
Joined: Fri Oct 07, 2005 12:30 am

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Postby dav.id » Mon Aug 30, 2010 6:21 pm

I hope so I just got it 5 minutes ago
dav.id
 
Posts: 564
Joined: Thu Aug 27, 2009 12:20 am
Location: Rotterdam

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Postby rayman612 » Mon Aug 30, 2010 7:02 pm

I'm using IE right now to look at this, Firefox is too safe... Won't let me on, no good
User avatar
rayman612
 
Posts: 583
Joined: Wed Mar 24, 2010 4:58 am
Location: Pittsburgh

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Postby Fent Plates » Mon Aug 30, 2010 7:08 pm

I've waited so long to do this but...

PARTY THREADDD!!!

Image
Image


For ALL news and information about releases, clothing and new merchandise and 12", this is the place... http://tinyurl.com/fprarejuststraightupmad
User avatar
Fent Plates
 
Posts: 505
Joined: Mon Aug 09, 2010 12:50 am
Location: Buckinghamshire/Southampton

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Postby dubway » Tue Aug 31, 2010 6:19 am

dav.id wrote:I hope so I just got it 5 minutes ago

we were filled with malware again,
so i cleaned it again.

it is safe now, but we have to prevent this happening again...
User avatar
dubway
Site Admin
 
Posts: 2675
Joined: Fri Oct 07, 2005 12:30 am

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Postby Phigure » Tue Aug 31, 2010 6:21 am

anyone infected might want to take a look at this:
http://www.dubstepforum.com/dsf-malware-t158608.html
Mala wrote:Just because somebody makes a piece of music that people enjoy, in my mind, doesn’t necessarily mean that you have to sell it. Sometimes things are better left in people’s memories.

Website | Soundcloud | Blogspot | Tumblr | Twitter
User avatar
Phigure
 
Posts: 4896
Joined: Fri May 28, 2010 6:55 am
Location: Not London :(

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Postby knivez » Tue Aug 31, 2010 8:13 am

got this earlier wouldnt even let me go on the site at first
knivez
 
Posts: 594
Joined: Sat Jan 31, 2009 2:46 am
Location: Los Angeles

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Postby djfoster » Tue Aug 31, 2010 12:30 pm

dubway wrote:
dav.id wrote:I hope so I just got it 5 minutes ago

we were filled with malware again,
so i cleaned it again.

it is safe now, but we have to prevent this happening again...


sorry but from my Safari is not fixed cause I still get that msg every time.
Dubspencersound / SubMafia
Image
Every Monday @ Sub Fm 2-4pm GMT
Twitter
Facebook
Mixcloud
Soundcloud
Tumblr
djfoster
 
Posts: 2007
Joined: Thu May 10, 2007 2:15 pm
Location: Italy

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Postby Fent Plates » Tue Aug 31, 2010 2:57 pm

Using Google Chrome and still getting malware infections.
Image


For ALL news and information about releases, clothing and new merchandise and 12", this is the place... http://tinyurl.com/fprarejuststraightupmad
User avatar
Fent Plates
 
Posts: 505
Joined: Mon Aug 09, 2010 12:50 am
Location: Buckinghamshire/Southampton

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Postby deadly habit » Tue Aug 31, 2010 3:57 pm

time to compile all the info:
Phigure wrote:I'm afraid it's happened again

You know how DRTY had that virus? Well I was talking with him about it, and he had this virus called Alureon. Anyways, he ended up getting rid of it, however, two/three days later, I hop on my computer and I've got a fake anti-virus installed called Security Tool. It was pretty nasty, couldn't open up task manager or any system application besides Explorer.exe without it closing instantly. I managed to get rid of it, but two days later, I get on my netbook, and I've got BOTH Alureon and Security Tool, so they must be related. Seems kind of suspicious that three separate computers who were all used to browse DSF were infected by the same malware. I sent Dubway an email two days ago about it, because I figured it COULD be a coincidence and I could be wrong, but now Chrome's giving me warnings on every page on DSF, so it looks like it's happened again :cry:


Anyways, this malware is pretty nasty. But it is relatively easily removed with the proper tools. I've put together a .rar with all the tools that I used to get rid of this malware three times (DRTY, and myself twice). If you don't trust me, and would rather collect the tools yourself, then what you want is:

Malware Bytes Anti Malware
Super Anti Spyware
Combofix
rkill.com
TDSSKiller
Hostsperm.bat (NOT hot sperm)
Task Manager renamed to Explorer.exe

http://phiik.com/Virus%20Kit.rar

DRTY's infection was dealt with using TDSSKiller in conjunction with MalwareBytes and Combofix.

My first computer's infection didn't allow me to open any applications besides Explorer.exe, and it wouldn't let me close the process of the virus so you'll need to go to C:/Windows/system32 and find taskmgr.exe. Put a copy on your Desktop, and rename it Explorer.exe. Now hover over the Security Tool icon in your taskbar, and a short string of numbers will appear. I assume it's randomly generated, but mine was 60821822. Now open Explorer.exe on your Desktop, and go to the Processes tab, and find that string of number appended with .exe. Kill it. Now run rkill.com and TDSSKiller. After they've completed, launch Combofix. It'll most likely reboot your computer, allow it to do that. When your computer reboots, log in to Windows, and let Combofix continue. It'll scan and then go through 50 stages of cleaning. It'll most likely reboot again. When it reboots, it should be finished and will create a log file. Then install and launch Malware Bytes Anti Malware and SuperAntiSpyware, and perform a full scan. Make sure you scan your memory with SuperAntiSpyware. Now run hostsperm.bat to fix your HOSTS file. If your internet doesn't seem to work, open command prompt (run dialog box > cmd), and type in ping google.com. If you get a response with XX ms, etc, but none of your browsers work, then go to Control Panel, find Add or Remove Programs or Programs and Features. Look for some Norton Software that you probably never installed and uninstall it. If pinging google doesn't work, then try reinstalling your ethernet/wireless drivers.

My second computer's infection made my computer reboot as soon as I logged in, so I had to boot into Safe Mode by pressing F8 during start up. I managed to kill the infection using only this:

"Now run rkill.com and TDSSKiller. After they've completed, launch Combofix. It'll most likely reboot your computer, allow it to do that. When your computer reboots, log in to Windows, and let Combofix continue. It'll scan and then go through 50 stages of cleaning. It'll most likely reboot again. When it reboots, it should be finished and will create a log file. Then install and launch Malware Bytes Anti Malware and SuperAntiSpyware, and perform a full scan. Make sure you scan your memory with SuperAntiSpyware. Now run hostsperm.bat to fix your HOSTS file. If your internet doesn't seem to work, open command prompt (run dialog box > cmd), and type in ping google.com. If you get a response with XX ms, etc, but none of your browsers work, then go to Control Panel, find Add or Remove Programs or Programs and Features. Look for some Norton Software that you probably never installed and uninstall it. If pinging google doesn't work, then try reinstalling your ethernet/wireless drivers."



Even if you're not infected, or think you're not infected, I recommend you download the .rar and keep it on your Desktop because you could have the infection hiding in your system without even knowing it (EGADS!). It pretty much crippled both of my computers. Neither were able to connect to the internet, so I had to use an SFTP client to connect to my jailbroken phone with which I downloaded the antivirus tools and copy over the tools...


deadly habit wrote:my combo that does me right
avira, spybot, peerguardian 2
extensions for firefox: adblock plus, noscript

i would use chrome, but not keen on it's imprint on hard drive fragmentation

at OP: burn a AV rescue or live cd like kaspersky rescue disk or avira rescue system to hopefully take care of what you caught, then armor up your browser ;)


to disable the attack site warnings:
deadly habit wrote:tools>options>security
block attack sites

just make sure you have the needed addons in case the shit happens again


deadly habit wrote:
faust.dtc wrote:Thanks, ill give that a try when I get home.

Does this block/unblock all attack sites or can you select or specify which particular sites you would like to block or unblock?

I want to surf this site as I have been told it is now safe however I dont want to turn it off only to become vulnerable by exposing my self to other possible attack sites.

it turns it off for all sites, but if you have the combo of:
noscript
noflash
adblock plus

along with decent av/spyware/malware programs, you should be fine
User avatar
deadly habit
 
Posts: 17276
Joined: Tue Oct 24, 2006 4:41 am
Location: rochester, ny

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Postby -dubson- » Tue Aug 31, 2010 5:54 pm

Still getting Malware warnings from Safari every time i go on here. Thinking i should still be careful..
batu
lloydnoise wrote:YAY! WE'RE ALL IDIOTS ON THE INTERNET!!! YAY!! :h: :h:
User avatar
-dubson-
 
Posts: 4356
Joined: Sun Jul 06, 2008 9:09 pm

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Postby Bloodstream » Tue Aug 31, 2010 6:08 pm

i only can log-in with opera :( firefox down !
User avatar
Bloodstream
 
Posts: 1644
Joined: Fri Jan 15, 2010 4:50 pm
Location: Undercover

Re: Virus on the forum?

Postby DstructO » Tue Aug 31, 2010 7:29 pm

logic pro wrote:its the ROBOSTEP virus.
(chant it! :)



Lol robostep is starting to infect the forum..

:twisted:
DstructO
 
Posts: 175
Joined: Wed Feb 24, 2010 12:24 am

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Postby dubway » Wed Sep 01, 2010 6:50 am

djfoster wrote:
dubway wrote:
dav.id wrote:I hope so I just got it 5 minutes ago

we were filled with malware again,
so i cleaned it again.

it is safe now, but we have to prevent this happening again...


sorry but from my Safari is not fixed cause I still get that msg every time.

it is safe.
the reason why you still have msg is because google tagged it as infected with malware.
and it takes time till they check again and tag it as clean. ok?
now they checked again and said it is clear and you can access without msg, right?
User avatar
dubway
Site Admin
 
Posts: 2675
Joined: Fri Oct 07, 2005 12:30 am

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Postby Bloodstream » Wed Sep 01, 2010 7:43 am

finally its working again :) thanks :mrgreen:
User avatar
Bloodstream
 
Posts: 1644
Joined: Fri Jan 15, 2010 4:50 pm
Location: Undercover

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Postby DRTY » Wed Sep 01, 2010 8:57 am

Phigure wrote:anyone infected might want to take a look at this:
http://www.dubstepforum.com/dsf-malware-t158608.html


True story. Phigure saved my life :U:
User avatar
DRTY
 
Posts: 6241
Joined: Mon Apr 21, 2008 7:08 pm
Location: Bournemouth

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Postby Molzie » Wed Sep 01, 2010 10:11 am

Cheers Phigure. Massive respect holmes!
User avatar
Molzie
 
Posts: 1797
Joined: Sun Feb 21, 2010 5:09 am
Location: CHCH, NZ

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Postby bunzer0 » Wed Sep 01, 2010 10:23 am

dubway wrote:
dav.id wrote:but we have to prevent this happening again...



this
User avatar
bunzer0
 
Posts: 6780
Joined: Sat Oct 08, 2005 4:48 am
Location: Brussels

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Postby fractal » Wed Sep 01, 2010 6:45 pm

bunzer0 wrote:
dubway wrote:
dav.id wrote:but we have to prevent this happening again...



this



hard to do...
sub.wise:.
User avatar
fractal
Moderator
 
Posts: 9799
Joined: Tue Apr 18, 2006 6:58 pm
Location: Gone

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Postby Byronik » Wed Sep 01, 2010 9:07 pm

Malware = Burial ??
User avatar
Byronik
 
Posts: 55
Joined: Mon Oct 05, 2009 10:34 am

PreviousNext

Return to General Discussion

Who is online

Users browsing this forum: benjybars, frizzwah, Isley, LumiNiscent, Maccaveli, murky21, NKCproductions, skimpi, undoks and 32 guests