icarus: Snape by mysterious artist (Default)
[personal profile] icarus
Oh, wonderful. I tried downloading the latest SPN episode from mininova.org and got a virus infected file instead.

Threat name: Trojan.Downloader.NUS and, worse yet, Adware.Maxifiles
Threat level: somewhere between Kristallnacht and nuclear holocaust

Bonus? Looks like it blocks me from going to the mininova.org web page. I can't warn anyone. Except you, of course.

Currently cleaning it out with Spywaredoctor. Next I run AVG.



ETA: Spywaredoctor caught it, cleaned it. Malwarebytes Anti-Malware found more. I still can't access mininova, however.

Annihow has more info for all of us. This particular problem disabled AVG, so she has masterful ways and tools to scan and disinfect your computer.

Date: 2008-11-21 06:55 am (UTC)
From: [identity profile] skipmcgee.livejournal.com
Yeah same thing just happened to me. You say spywaredoctor is the way to go? I've tried Adaware and it's just not cutting it

Date: 2008-11-21 06:59 am (UTC)
From: [identity profile] icarusancalion.livejournal.com
Yep. The sites say that Spywaredoctor will remove it.

(no subject)

From: [identity profile] skipmcgee.livejournal.com - Date: 2008-11-21 07:06 am (UTC) - Expand

(no subject)

From: [identity profile] icarusancalion.livejournal.com - Date: 2008-11-21 07:07 am (UTC) - Expand

(no subject)

From: [identity profile] skipmcgee.livejournal.com - Date: 2008-11-21 07:10 am (UTC) - Expand

(no subject)

From: [identity profile] icarusancalion.livejournal.com - Date: 2008-11-21 07:27 am (UTC) - Expand

(no subject)

From: [identity profile] icarusancalion.livejournal.com - Date: 2008-11-21 07:32 am (UTC) - Expand

(no subject)

From: [identity profile] skipmcgee.livejournal.com - Date: 2008-11-21 05:15 pm (UTC) - Expand

(no subject)

From: [identity profile] icarusancalion.livejournal.com - Date: 2008-11-21 05:39 pm (UTC) - Expand

(no subject)

From: [identity profile] skipmcgee.livejournal.com - Date: 2008-11-21 05:43 pm (UTC) - Expand

(no subject)

From: [identity profile] icarusancalion.livejournal.com - Date: 2008-11-21 05:56 pm (UTC) - Expand

(no subject)

From: [identity profile] icarusancalion.livejournal.com - Date: 2008-11-22 11:25 pm (UTC) - Expand

Date: 2008-11-21 07:25 am (UTC)
ext_2068: (Default)
From: [identity profile] seticat.livejournal.com
I've totally ditched Mininove at all. I hunt with Isohunt and avoid anything pointing to Mininova. When I got hit a bit back, I found a combo of Anti-Malware and Spyware Doctor [from PC Tools] were the only things that totally cleared stuff. AVG wouldn't touch it. neither would Spybot or Ad-Aware.

Date: 2008-11-21 07:29 am (UTC)
From: [identity profile] icarusancalion.livejournal.com
This nasty virus has completely shut off AVG. I have no virus protection right now.

(no subject)

From: [identity profile] seticat.livejournal.com - Date: 2008-11-21 07:41 am (UTC) - Expand

(no subject)

From: [identity profile] starrylizard.livejournal.com - Date: 2008-11-21 08:01 am (UTC) - Expand

(no subject)

From: [identity profile] icarusancalion.livejournal.com - Date: 2008-11-21 08:40 am (UTC) - Expand

Date: 2008-11-21 08:00 am (UTC)
From: [identity profile] starrylizard.livejournal.com
Thanks. I don't use torrents, but I'm spreading the word as best I can. Ugh, so annoying! I hope it hasn't done any damage to your computer.

Date: 2008-11-21 08:46 am (UTC)
From: [identity profile] icarusancalion.livejournal.com
Thank you. I just wish I could go to mininova and warn people there, but the Malware has somehow blocked that connection (along with my virus protection database updates).

Date: 2008-11-21 08:04 am (UTC)
From: [identity profile] ifyouweremine.livejournal.com
Aw crap, I'm sorry that happened to you, hon! #huggles#

Is a streaming video version of the episode alright? (http://www.surfthechannel.com/episode/343/143077.html)

If not I know there are some reliable downloads already up at SPN comms, I could grab a link to one for you if you needed.

Date: 2008-11-21 08:47 am (UTC)
From: [identity profile] icarusancalion.livejournal.com
I got an alternate version from the SPN coms and those seem to be just fine. But thank you, I appreciate it.

(no subject)

From: [identity profile] ifyouweremine.livejournal.com - Date: 2008-11-21 08:53 am (UTC) - Expand

Date: 2008-11-21 08:22 am (UTC)
amalthia: (Default)
From: [personal profile] amalthia
did I ever share the link to EZTV?

Date: 2008-11-21 08:56 am (UTC)
From: [identity profile] icarusancalion.livejournal.com
I found EZTV to be frustrating and difficult to use.

(no subject)

From: [personal profile] amalthia - Date: 2008-11-21 08:57 am (UTC) - Expand

p.s.

Date: 2008-11-21 08:24 am (UTC)
amalthia: (Default)
From: [personal profile] amalthia
Sorry about the virus. :( and yeah I think our projector computer got something very similar but what I think happened was some new kind of trick they use to trick people into downloading the virus when you visit a website. It basically overlays an invisible link? At least that's what happened to EZTV and they had to get strong security because no one could see the link to the virus download? I'm not explaining so well but that's how I understood it. :(

Re: p.s.

Date: 2008-11-21 08:44 am (UTC)
From: [identity profile] icarusancalion.livejournal.com
This one tricked me with a "codec." Shit. Spydoctor removed the virus (I think) and Malwarebytes Anti-Malware found something else. But I'm still unable to connect to mininova.org or update the database on AVG.

I'm hoping an alternate free trial version of Trend Micro's virus protection will help me in the interim. But I think this is going to mean a trip to the computer guy.

I have No Script to prevent those invisible links. It's a pain in the neck, but well worth it.

Re: p.s.

From: [personal profile] amalthia - Date: 2008-11-21 08:49 am (UTC) - Expand

Date: 2008-11-21 09:38 am (UTC)
From: [identity profile] anniehow.livejournal.com
Sorry to intrude, I saw the warning up at Starrylizard's (and just in time too!) since there's more than one torrent listed at Mininova for the episode, could you be more specific as to which one infected you? And it happened when you finished the download and it asked you to get an "extra" codec?

Date: 2008-11-21 09:46 am (UTC)
From: [identity profile] icarusancalion.livejournal.com
Unfortunately in my (probably understandable) flurry to get rid of it, I didn't mark which file it was. I'd just avoid the mininova files altogether unless you have a friend who can verify it's clean.

It was a zip file, that when opened, required an extra "codec" (named HDTV secure or something, which should have roused my suspicions). I got warnings from Spyware Doctor that something was up, and it popped open a page with various butt hole shots.

My virus protection appeared to still be operative, but I ran Spy Doctor ASAP. It found the infections (there were five in all) and quarantined them. I tried to access mininova and found that I couldn't.

Then I went to run AVG, and that's when I discovered that I couldn't update AVG's virus database.

I'm sorry I'm not able to do more. Stay away from mininova's SPN torrent unless you know for sure it's good. Everyone who downloaded this virus is likely unable to inform mininova that there's a problem.

(no subject)

From: [identity profile] anniehow.livejournal.com - Date: 2008-11-21 10:12 am (UTC) - Expand

(no subject)

From: [identity profile] icarusancalion.livejournal.com - Date: 2008-11-21 10:20 am (UTC) - Expand

(no subject)

From: [identity profile] anniehow.livejournal.com - Date: 2008-11-21 05:32 pm (UTC) - Expand

(no subject)

From: [identity profile] icarusancalion.livejournal.com - Date: 2008-11-21 06:01 pm (UTC) - Expand

Date: 2008-11-21 10:20 am (UTC)
From: [identity profile] sherryillk.livejournal.com
Do you have a Demonoid account? A private tracker might be the way to go if only for the community that warns of this stuff...

I hardly ever use Mininova... It's always looked a bit sketchy to me.

Date: 2008-11-21 12:01 pm (UTC)
From: [identity profile] daneffew.livejournal.com
Have you tried a couple of LJ communities that have downloads instead of torrents.

Dramatic_Eps and TVShare. They have downloads from everything on the different sites such as Megaupload sendspace etc. I think easier and quicker that torrents.

Date: 2008-11-21 05:41 pm (UTC)
From: [identity profile] icarusancalion.livejournal.com
I have. I was just impatient because I wanted WG to watch with me and he has to go to bed early. And I thought I'd be a nice guy and upload for people.

Yeah, I don't think I'm going to upload this one.



Date: 2008-11-21 03:02 pm (UTC)
ext_9136: (Default)
From: [identity profile] birggitt.livejournal.com
Mininova had been down for a while, now. I only hunt at isohunt, and avoid mininova as hell.
Also, they are trying to go legal, allowing legal downloading. You could use torrents to download them, using a new tech: Hyper MP (http://hypermpgroup.blogspot.com/). This thing is an exe file! which contains a player with the movie or episode and adds.
I, myself, wouldn't download an .exe file even if my mother send i to me, so...
Anyhow, I'm really sorry about nasty bugs

Date: 2008-11-21 05:31 pm (UTC)
From: [identity profile] icarusancalion.livejournal.com
That sounds like what I was hit with. If I'm right -- I know I don't need to tell you -- don't download it. The worst problem I encountered was Adware.Maxifiles which is very dangerous.

Maxifiles adds a toolbar onto your task manager and creates pop-up advertisements.

Threat High: these infections may override user control of your system or pose high security risks such as capturing high-risk data for example, bank account details or passwords for unsolicited third-party use. Typical characteristics could include:

* Involuntary installation with no user interaction or control
* Hijacking browser home pages
* Returning sensitive data to other servers
* Automatically reinstalling itself following an uninstall
* Examples of these infections include keyloggers and dialers

Could it be possible that this is how their HyperMP.tv works? Or maybe a hacker knew that people would be expecting it so took advantage.

(no subject)

From: [identity profile] birggitt.livejournal.com - Date: 2008-11-21 06:18 pm (UTC) - Expand

(no subject)

From: [identity profile] icarusancalion.livejournal.com - Date: 2008-11-21 06:46 pm (UTC) - Expand

(no subject)

From: [identity profile] birggitt.livejournal.com - Date: 2008-11-21 06:53 pm (UTC) - Expand

(no subject)

From: [identity profile] icarusancalion.livejournal.com - Date: 2008-11-21 07:06 pm (UTC) - Expand

(no subject)

From: [identity profile] birggitt.livejournal.com - Date: 2008-11-21 07:50 pm (UTC) - Expand

(no subject)

From: [identity profile] icarusancalion.livejournal.com - Date: 2008-11-21 07:12 pm (UTC) - Expand

(no subject)

From: [identity profile] birggitt.livejournal.com - Date: 2008-11-21 07:52 pm (UTC) - Expand

(no subject)

From: [identity profile] birggitt.livejournal.com - Date: 2008-11-21 08:27 pm (UTC) - Expand

(no subject)

From: [identity profile] icarusancalion.livejournal.com - Date: 2008-11-21 08:46 pm (UTC) - Expand

(no subject)

From: [identity profile] birggitt.livejournal.com - Date: 2008-11-21 09:26 pm (UTC) - Expand

Date: 2008-11-21 05:43 pm (UTC)
ext_26836: BEES! (Default)
From: [identity profile] mellifluous-ink.livejournal.com
Trendmicro.com is also lovely for cleaning out everything, not just malware. Viruses, worms, trojan viruses...everything.

Date: 2009-02-18 04:37 am (UTC)
From: [identity profile] icarusancalion.livejournal.com
I ended up downloading the free trial version of Trendmicro and running it for a while, but I'd rather use a free virus protection software. For obvious reasons. *g*

(no subject)

From: [identity profile] mellifluous-ink.livejournal.com - Date: 2009-02-18 02:23 pm (UTC) - Expand

(no subject)

From: [identity profile] icarusancalion.livejournal.com - Date: 2009-02-18 03:30 pm (UTC) - Expand

(no subject)

From: [identity profile] mellifluous-ink.livejournal.com - Date: 2009-02-18 10:41 pm (UTC) - Expand

Date: 2008-11-21 06:31 pm (UTC)
ext_2356: Water Ribbon (Default)
From: [identity profile] dunv-i.livejournal.com
You could try grabbing the databases on a different computer and manually installing them - I dunno how AVG does this kind of thing, unfortunately. I use avast. I also don't know if that will work. Um. Techsupportforum.com is my current redirect when I'm offering tech help.

Date: 2009-02-18 04:36 am (UTC)
From: [identity profile] icarusancalion.livejournal.com
Techsupportforum.com? Okay, I'll keep them in mind. I've heard two recs (oh, ha, that sounds like fanfic...), one for Avast, another for Clam. Any thoughts?

Date: 2008-11-21 08:09 pm (UTC)
From: [identity profile] lherelenfeline.livejournal.com
I use ISOHunt, and it's generally kept the compy safe.

Date: 2009-02-18 04:35 am (UTC)
From: [identity profile] icarusancalion.livejournal.com
Thank you, I'm starting to use those guys now.

(no subject)

From: [identity profile] lherelenfeline.livejournal.com - Date: 2009-02-18 04:41 am (UTC) - Expand

Profile

icarus: Snape by mysterious artist (Default)
icarusancalion

May 2024

S M T W T F S
   1234
567891011
12131415 161718
19202122232425
262728293031 

Most Popular Tags

Style Credit

Expand Cut Tags

No cut tags
Page generated Jun. 25th, 2025 09:19 pm
Powered by Dreamwidth Studios