Virus on the forum? -> FIXED. VIRUS IS REMOVED.

debate, appreciation, interviews, reviews (events or releases), videos, radio shows
djfoster
Posts: 2083
Joined: Thu May 10, 2007 1:15 pm
Location: Italy

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by djfoster » Thu Sep 02, 2010 12:17 am

dubway wrote:
djfoster wrote:
dubway wrote:
dav.id wrote:I hope so I just got it 5 minutes ago
we were filled with malware again,
so i cleaned it again.

it is safe now, but we have to prevent this happening again...
sorry but from my Safari is not fixed cause I still get that msg every time.
it is safe.
the reason why you still have msg is because google tagged it as infected with malware.
and it takes time till they check again and tag it as clean. ok?
now they checked again and said it is clear and you can access without msg, right?
all good now, thanks
Sub.FM Mondays 2-4pm GMT
Twitter
Facebook
Mixcloud
Soundcloud
Tumblr

User avatar
Stupid_Fly_Records
Posts: 706
Joined: Mon Aug 27, 2007 11:41 am
Location: Jacksonville, Florida, USA
Contact:

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by Stupid_Fly_Records » Thu Sep 02, 2010 2:19 pm

my Avast says its blocked over 100,000 threats in the last few days.. and fire fox has shut down on me every time Ive opened it. so i haven't been able to get any work done.. im still having these issues. In fact since i started typing this message Avast has block 25 malware attempts. this really sucks.. but im not sure if it was dubstepforum or just weird timing

User avatar
Fent Plates
Posts: 554
Joined: Sun Aug 08, 2010 11:50 pm
Location: Fentshire
Contact:

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by Fent Plates » Thu Sep 02, 2010 2:22 pm

Stupid Fly Records wrote:my Avast says its blocked over 100,000 threats in the last few days.. and fire fox has shut down on me every time Ive opened it. so i haven't been able to get any work done.. im still having these issues. In fact since i started typing this message Avast has block 25 malware attempts. this really sucks.. but im not sure if it was dubstepforum or just weird timing
Nope. I'm the same. My mozilla will not open.

And all my java doesn't work. Says I need to update it. Go to update it. Major crash out, bare error screens and it just stops.

jsilver
Posts: 1164
Joined: Tue Jan 13, 2009 11:31 pm
Location: Denver, CO
Contact:

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by jsilver » Fri Sep 03, 2010 2:54 am

i'd wipe my computer or use this fix... http://www.dubstepforum.com/dsf-malware-t158608-20.html

u guys probably been botted hard, just sayin

User avatar
prism
Posts: 450
Joined: Thu Jun 25, 2009 12:56 am

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by prism » Fri Sep 03, 2010 4:41 am

:evil:

this intruded my system too wtf

Phigure
Posts: 14134
Joined: Fri May 28, 2010 5:55 am
Contact:

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by Phigure » Fri Sep 03, 2010 9:22 am

I'm afraid it's happened again

You know how DRTY had that virus? Well I was talking with him about it, and he had this virus called Alureon. Anyways, he ended up getting rid of it, however, two/three days later, I hop on my computer and I've got a fake anti-virus installed called Security Tool. It was pretty nasty, couldn't open up task manager or any system application besides Explorer.exe without it closing instantly. I managed to get rid of it, but two days later, I get on my netbook, and I've got BOTH Alureon and Security Tool, so they must be related. Seems kind of suspicious that three separate computers who were all used to browse DSF were infected by the same malware. I sent Dubway an email two days ago about it, because I figured it COULD be a coincidence and I could be wrong, but now Chrome's giving me warnings on every page on DSF, so it looks like it's happened again :cry:


Anyways, this malware is pretty nasty. But it is relatively easily removed with the proper tools. I've put together a .rar with all the tools that I used to get rid of this malware three times (DRTY, and myself twice). If you don't trust me, and would rather collect the tools yourself, then what you want is:

Malware Bytes Anti Malware
Super Anti Spyware
Combofix
rkill.com
TDSSKiller
Hostsperm.bat (NOT hot sperm)
Task Manager renamed to Explorer.exe

http://phiik.com/Virus%20Kit.rar

DRTY's infection was dealt with using TDSSKiller in conjunction with MalwareBytes and Combofix.

My first computer's infection didn't allow me to open any applications besides Explorer.exe, and it wouldn't let me close the process of the virus so you'll need to go to C:/Windows/system32 and find taskmgr.exe. Put a copy on your Desktop, and rename it Explorer.exe. Now hover over the Security Tool icon in your taskbar, and a short string of numbers will appear. I assume it's randomly generated, but mine was 60821822. Now open Explorer.exe on your Desktop, and go to the Processes tab, and find that string of number appended with .exe. Kill it. Now run rkill.com and TDSSKiller. After they've completed, launch Combofix. It'll most likely reboot your computer, allow it to do that. When your computer reboots, log in to Windows, and let Combofix continue. It'll scan and then go through 50 stages of cleaning. It'll most likely reboot again. When it reboots, it should be finished and will create a log file. Then install and launch Malware Bytes Anti Malware and SuperAntiSpyware, and perform a full scan. Make sure you scan your memory with SuperAntiSpyware. Now run hostsperm.bat to fix your HOSTS file. If your internet doesn't seem to work, open command prompt (run dialog box > cmd), and type in ping google.com. If you get a response with XX ms, etc, but none of your browsers work, then go to Control Panel, find Add or Remove Programs or Programs and Features. Look for some Norton Software that you probably never installed and uninstall it. If pinging google doesn't work, then try reinstalling your ethernet/wireless drivers.

My second computer's infection made my computer reboot as soon as I logged in, so I had to boot into Safe Mode by pressing F8 during start up. I managed to kill the infection using only this:

"Now run rkill.com and TDSSKiller. After they've completed, launch Combofix. It'll most likely reboot your computer, allow it to do that. When your computer reboots, log in to Windows, and let Combofix continue. It'll scan and then go through 50 stages of cleaning. It'll most likely reboot again. When it reboots, it should be finished and will create a log file. Then install and launch Malware Bytes Anti Malware and SuperAntiSpyware, and perform a full scan. Make sure you scan your memory with SuperAntiSpyware. Now run hostsperm.bat to fix your HOSTS file. If your internet doesn't seem to work, open command prompt (run dialog box > cmd), and type in ping google.com. If you get a response with XX ms, etc, but none of your browsers work, then go to Control Panel, find Add or Remove Programs or Programs and Features. Look for some Norton Software that you probably never installed and uninstall it. If pinging google doesn't work, then try reinstalling your ethernet/wireless drivers."



Even if you're not infected, or think you're not infected, I recommend you download the .rar and keep it on your Desktop because you could have the infection hiding in your system without even knowing it (EGADS!). It pretty much crippled both of my computers. Neither were able to connect to the internet, so I had to use an SFTP client to connect to my jailbroken phone with which I downloaded the antivirus tools and copy over the tools...
j_j wrote:^lol
Soundcloud | Twitter

User avatar
Visitor
Posts: 281
Joined: Wed Jan 13, 2010 1:59 am
Location: USA
Contact:

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by Visitor » Fri Sep 03, 2010 3:23 pm

that shit was so annoying lol

User avatar
basra
Posts: 290
Joined: Wed Jan 07, 2009 2:49 pm

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by basra » Sat Sep 04, 2010 8:40 am

anything similar programs for Mac users?

User avatar
prism
Posts: 450
Joined: Thu Jun 25, 2009 12:56 am

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by prism » Sun Sep 05, 2010 1:10 pm

Visitor wrote:that shit was so annoying lol
still is.

User avatar
badger
Posts: 13776
Joined: Mon Nov 13, 2006 10:24 pm
Location: Bristol

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by badger » Sun Sep 05, 2010 7:03 pm

basra wrote:anything similar programs for Mac users?
mac users should be ok

have you actually had any problems?

djvj3000
Posts: 45
Joined: Sun Aug 10, 2008 3:42 am

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by djvj3000 » Mon Sep 06, 2010 3:02 am

i just noticed today some of my google searches are getting redirected to kdirectory.co.uk, did a search and alot of people are saying its malware ..

anyone else get this ?

Phigure
Posts: 14134
Joined: Fri May 28, 2010 5:55 am
Contact:

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by Phigure » Mon Sep 06, 2010 4:39 am

djvj3000 wrote:i just noticed today some of my google searches are getting redirected to kdirectory.co.uk, did a search and alot of people are saying its malware ..

anyone else get this ?
run combofix from the virus pack, should do it
j_j wrote:^lol
Soundcloud | Twitter

djvj3000
Posts: 45
Joined: Sun Aug 10, 2008 3:42 am

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by djvj3000 » Mon Sep 06, 2010 11:14 am

yea did all those programs, looks like it worked

cheers!

User avatar
incnic
Permanent Vacation
Posts: 5841
Joined: Fri Jun 20, 2008 9:28 am

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by incnic » Wed Sep 08, 2010 3:32 pm

lolsss
thought i got rid of it
but it got in mah online bank and took 3k lol

:x

:w:
brostep

User avatar
arktrix45hz
Posts: 1609
Joined: Tue Sep 22, 2009 9:41 pm

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by arktrix45hz » Thu Sep 09, 2010 12:30 pm

Yooo, this is back on that "dubstep t-shirts" thread near the top!
http://45hertzofbass.com- Guest mixes and interviews with the likes of Danny Scrilla/Baitface/Mishva and more.

http://facebook.com/45hz
http://soundcloud.com/arktrix
Ask for AIM

User avatar
Bloodstream
Posts: 2396
Joined: Fri Jan 15, 2010 3:50 pm
Location: Arabia

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by Bloodstream » Thu Sep 16, 2010 9:10 am

its again attacked via modzilla firefox :!: :!: :!: :!:


faust.dtc
Posts: 5162
Joined: Mon Sep 01, 2008 11:17 am

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by faust.dtc » Thu Sep 16, 2010 10:35 am

Phigure wrote:
djvj3000 wrote:i just noticed today some of my google searches are getting redirected to kdirectory.co.uk, did a search and alot of people are saying its malware ..

anyone else get this ?
run combofix from the virus pack, should do it
Im still getting redirected after the last attack but nothing seems to be able to remove it.

Its definitely back though... :q:

Ruttah
Posts: 95
Joined: Tue Jan 26, 2010 10:06 pm

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by Ruttah » Fri Oct 08, 2010 2:52 pm

Just got a warning from chrome before I entered the forum then a random file tryed to download itselff, looks like its back :!:

User avatar
badger
Posts: 13776
Joined: Mon Nov 13, 2006 10:24 pm
Location: Bristol

Re: Virus on the forum? -> FIXED. VIRUS IS REMOVED.

Post by badger » Fri Oct 08, 2010 4:01 pm

should be fixed now :)

Locked

Who is online

Users browsing this forum: No registered users and 0 guests