TechRepublic : A ZDNet Tech Community

Report as spam Discussion  -  Post 1 of 49
Virus Alert
Virus Report

I know the people who keep up on all the Viruses probably know a lot more about them than I do,
But I got a Virus yesterday, so I wanted to let everyone know How I got it, what it does, and what I did to clean it, and the Companies who are involved with the Virus I received.

I got the Virus on Myspace, someone requested to be my friend, and when I went to their Profile page to check them out to see if I wanted to be their Friend or not, another page auto-loaded on top of their Profile Page, with a Link on it that said ?Download Myspace Adult Viewer? I assumed this was because this particular Girl had Nude Pics of herself or something and this was the way that Myspace regulated adult viewers. WRONG!

I Clicked on the Link and Downloaded the Program which I THOUGHT was some kind of Myspace Adult media player, and after it installed, I realized I just made a terrible mistake. The link I had Clicked on that said ?Download Myspace Adult Viewer? downloaded a Virus into my Computer, which immediately took over my Internet Explorer. I wasn?t even USING internet Explorer for the Internet I use Firefox, so I thought I was safe, but I forgot that Internet Explorer still exists on your Computer as long as you are using Windows. Regardless of what Browser is your default browser, the Virus will take over Internet Explorer and begin to Launch Internet Explorer and use the Back Door Channels in Internet Explorer to stream you Endless amounts of Pop up ads.

Then it wants you to BUY a particular Software Program called ?Virus Burster? to fix the problem. This leads me to believe that the people at Virus Burster CREATED the Virus (which Mcafee could not clean) just to Force you to buy their Program. And if you buy their Program, then they have all of your Credit Card Information, and judging from the way they marketed their product I don?t think I want to trust them with my Credit Card Information.

On top of all of this, while you are Busy trying to fight off all the Pop Ups and make sense of what is happening to your Computer, the Hackers have complete access to your Computer through the Back door in Internet Explorer, allowing them to collect information such as Passwords from your Cookies Folder, or Addresses and Phone Numbers from Software Registration Forms stored on your Computer, all of which they can use to either Hack your Sites and Spread their Virus by Posting their Virus on YOUR Myspace Profile, and or, hacking other Sites you have passwords stored for in your Cookies Folder, or Using your Personal Information from Software Registration forms to engage in Identity Theft.

I tried cleaning the Virus by using Mcafee. Mcafee at first detected the Virus, then said it Cleaned it, but the Virus Self Replicates, and then Mcafee doesn?t try to clean it anymore. It just forgets about it, or the Virus contains something in it to disable Mcafee. I Tried using Ad-Aware Scanner to remove pieces of the Virus, it Cleaned parts of it also, yet, the Virus still functioned. Then I went through every single File associated with the Virus in my Registry and tried to Manually Clean it, but even with the related files were deleted from my Registry the Virus Still functioned.
I unchecked all my windows Services to Block the Hackers from Remote Access to my Computer, but the Virus still functioned even though it could not access the Internet. I tried unchecking all the things in my Start up using msconfig one by one to determine what was infected. It appears that the file ctfmon.exe was related in someway to the Virus, and that is how the Virus was unable to be deleted or removed. I am not a Software programmer, so I can get that specific, I can only tell you the behavior of the Virus and by process of elimination which files I found were associated with the Virus. I can tell you that the Majority of the Files were hidden, so I could not even FIND them on my Computer. But the Virus still functioned so I know it was there. It seems to infect any Toolbars that you have such as Yahoo or Google, to access your Computer.

The Companies Involved with this Virus either by paying these people to Create it, or paying them for Advertising in USE with the Virus are:
Virus Burster.com
Greatdate.com
Adultfriendfinder.com
Mmedia Codecs
Spyware.Cyberlog-X

I Received the Virus from Myspace, and the Following Display Names on Myspace were also found to contain the Virus:
Tessa
Madalynn
Bena
Pearl
Bronwyn

If you know about Viruses or if you are involved in helping Protect people from Viruses, please address this Problem. I would really like to see these people arrested for the aggravation they cause others.

The only way I was able to Clean the Virus was to Delete the Partition, Format my Hard Drive and Completely re-install everything. I want to see these people arrested.

Thank you,

Mark Evans
The_webninja@yahoo.com
Posted: 10/23/2006 @ 12:14 PM (PDT)
avatar
the_webninja@...     1
Job Role: Other IS/IT or Technology Function
Location: POMPANO BEACH, Florida
Member since: 12/11/2000

View Profile  | Send Message
Post a Reply Save
« Previous  |  Next »

Print/View all Posts | Subscribe to this Thread 

Virus Alertthe_webninja@... | 10/23/2006 @ 12:14 PM (PDT)
Get in line- you are the fifth or sixth person I have heard about.TiggerTwo | 10/23/2006 @ 12:29 PM (PDT)
Those porn thingszlitocook@... | 10/23/2006 @ 05:29 PM (PDT)
Sorry that it happened, but you should know bettersMoRTy71 | 10/27/2006 @ 06:34 AM (PDT)
Makes me want to backup!hyposave@... | 10/30/2006 @ 02:02 AM (PST)
Use CallingID LinkAdvisorarthur@... | 10/30/2006 @ 02:16 AM (PST)
Netcraftbdfew@... | 10/30/2006 @ 03:59 AM (PST)
.breshears_michael@... | 10/30/2006 @ 02:42 AM (PST)
Posibilityscollignond@... | 10/30/2006 @ 03:57 AM (PST)
Virtual appliances may helpProfTheory | 10/30/2006 @ 05:06 AM (PST)
Rootkit solutiondonniebnyc@... | 10/30/2006 @ 07:09 AM (PST)
What was the name of the virusjjprehn@... | 10/30/2006 @ 05:12 AM (PST)
perve.exe I guessNOW LEFT TR | 01/05/2007 @ 06:36 AM (PST)
Step One...wmlundine | 10/30/2006 @ 05:44 AM (PST)
Agree -- disconnect first!sjm@... | 10/30/2006 @ 06:27 AM (PST)
Me toocomputermandan@... | 10/30/2006 @ 06:36 AM (PST)
no sympathylrb081@... | 10/30/2006 @ 07:13 AM (PST)
Let's go phishing!!!tamashii | 10/30/2006 @ 07:32 AM (PST)
When will people learn??mjd420nova | 10/30/2006 @ 08:04 AM (PST)
BartPE disk was needed, also AVAST, also some cautiontanzerguy@... | 10/30/2006 @ 08:07 AM (PST)
Avast is the way to gophillipscomputers@... | 12/03/2006 @ 07:07 PM (PST)
Try WinPatrol for Help with Prevention and CleaningNabilMish | 10/30/2006 @ 10:04 AM (PST)
I also Endorse WinPatrola1slipkid | 10/30/2006 @ 05:51 PM (PST)
3 options to remove a virusgeorge@... | 10/30/2006 @ 01:33 PM (PST)
Amazing....This virus is old hat...frank.kaplan@... | 10/30/2006 @ 02:29 PM (PST)
until internet access is controlled by fingerprint or retina scanrcpr@... | 10/30/2006 @ 03:05 PM (PST)
Watch Out For MSN toojinteik@... | 10/30/2006 @ 06:58 PM (PST)
Webninja?NOW LEFT TR | 10/31/2006 @ 01:12 AM (PST)
No Kidding!michaelwarthan@... | 11/05/2006 @ 07:33 AM (PST)
solution to virus burstfrancois_edwards_72@... | 11/07/2006 @ 04:09 PM (PST)
A true solution for me use at your own riskWrathlon | 11/14/2006 @ 07:50 PM (PST)
Has anyone tried getting their money back?ben.lumbert@... | 11/15/2006 @ 09:40 AM (PST)
GET RID OF IT USING GOBACK 4sstt@... | 11/30/2006 @ 04:16 AM (PST)
Use webrootMalley1366@... | 12/03/2006 @ 12:13 AM (PST)
Use webrootMalley1366@... | 12/03/2006 @ 12:13 AM (PST)
Apparently you're not using a firewall.deepsand | 12/03/2006 @ 07:58 PM (PST)
Easily get rid of viruses without reformatting your harddrive.Oktet | 01/05/2007 @ 01:58 AM (PST)
So you don;t really know what a Virus is then, do you?NOW LEFT TR | 01/05/2007 @ 06:21 AM (PST)
Do you really believe that it's that simple?deepsand | 01/05/2007 @ 05:05 PM (PST)
VirusesOktet | 01/06/2007 @ 02:12 PM (PST)
Boot time scans are not guaranteed to be 100% effective.deepsand | 01/06/2007 @ 06:12 PM (PST)
Easily try to get rid of viruses Or format your hard drive.Oktet | 01/06/2007 @ 10:14 PM (PST)
Not saying it never works; only that it does'nt always work.deepsand | 01/07/2007 @ 10:02 AM (PST)
I would not admit that in public....jdclyde | 01/06/2007 @ 06:21 PM (PST)
Don't even have to browse in order to get nailed.deepsand | 01/06/2007 @ 06:50 PM (PST)
I have legal software now.Oktet | 01/06/2007 @ 10:08 PM (PST)
Legal or not, always use a fire wall!deepsand | 01/07/2007 @ 10:07 AM (PST)
Remember Ghost?pc21geek | 01/05/2007 @ 06:08 AM (PST)
hahadude@... | 12/29/2007 @ 10:42 PM (PST)

SponsoredWhite Papers, Webcasts, and Downloads

White Papers, Webcasts, and Downloads

Browse by Tag

networking
Popular tags: windows,  software,  hardware,  security,  it management
e-mail
Popular tags: windows,  software,  networking,  security,  hardware
hardware
Popular tags: windows,  software,  networking,  it management,  security
programming
Popular tags: software,  windows,  networking,  hardware,  it management
software
Popular tags: windows,  hardware,  networking,  programming,  it management
windows
Popular tags: software,  networking,  hardware,  security,  it management
linux
Popular tags: software,  windows,  networking,  hardware,  security
it management
Popular tags: networking,  windows,  software,  security,  hardware
career
Popular tags: it management,  networking,  software,  windows,  feedback
security
Popular tags: networking,  windows,  software,  it management,  hardware
off-topic
Popular tags: software,  windows,  hardware,  feedback,  networking
feedback
Popular tags: software,  windows,  hardware,  networking,  it management
project management
Popular tags: it management,  software,  networking,  windows,  programming
IT Help Desk Survival Guide, Third Edition
TechRepublic's IT Help Desk Survival Guide, Third Edition provides tools and recommendations to help you better manage help desk services, improve end-user support, troubleshoot frustrating hardware issues, identify quick fixes to vexing Windows problems, and help users make the most of Microsoft Office 2003.
Buy Now
Administrator's Guide to TCP/IP, Second Edition
Maintain your critical TCP/IP system and ensure reliable, safe remote access. Get the expert advice and solutions to handle Windows networking, Cisco routing, documentation, and troubleshooting.
Buy Now

SmartPlanet

Click Here