Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Hijacked! New Browser Exploits Plague Web
various sites | 07-09-04 | The Heavy Equipment Guy

Posted on 07/09/2004 5:27:22 AM PDT by backhoe

There is a new plague of viruses, trojans, and exploits hammering web users... and no one easy solution.

Be advised, I will add the most useful information I have found so far in the first reply, which I am doing for the sake of simple formatting ease.

First off, here's the most current info and links- follow and read all of it:


 
 
 Web Sites Still Infected
 
There are new, nastier browser hijackers flooding the web- the best help is here, but be warned, you have to do most yourself and learn to use some new tools. The old anti-virus software does not work on this new series of bugs:
http://forums.spywareinfo.com/index.php?s=d3c1a671159df31c9420ae4d671f1cd2&showforum=18
 
Microsoft Plugs IE; Warns All Browsers At Risk (Test Your Browser Here)
 
Freepers how do I get rid of this spyware crap that is on my computer?
Worm and Virus Wars- the August Edition
 
 

 

In my comments that follow is the first block of information, in the reply is the second, more detailed:


TOPICS: Extended News; Miscellaneous
KEYWORDS: getamac; internetexploiter; lookoutexpress; lowqualitycrap; microsoft; patch; securityflaw; trojan; virus; windows; worm
Navigation: use the links below to view more comments.
first previous 1-2021-4041-6061-8081-96 next last
To: backhoe; Swordmaker
I sure am glad I have a Mac! I just got another G4 Powerbook, to use on my Airport extreme system at home, and do video on the road... and so I can surf, and post, and not have to worry about this junk...

It sure is a shame to see the PC community in such a whirl... but they can fix it, I'm sure! Just call Bill G!

21 posted on 07/09/2004 5:49:26 AM PDT by pageonetoo (Rights, what Rights'. You're kidding, right? This is Amerika!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: The Great RJ

If you get stricken with the about:blank CWS variant horror, you will be scouring the web for online fixes too. LOL!

The Windows updates/patches and firewalls are useless to stop it. Ad-Aware and SpyBot S&D are useless to remove it. Each one will find some components (though not all - and not the same ones between them) but they will come right back.

The only way to get rid of it is to corner the hidden .dll reloader file, and that's borderline impossible to do when Windows is running.


22 posted on 07/09/2004 5:50:21 AM PDT by AntiGuv (™)
[ Post Reply | Private Reply | To 14 | View Replies]

To: Izzy Dunne
I like my Mac.

I can certainly see why!

23 posted on 07/09/2004 5:50:25 AM PDT by backhoe
[ Post Reply | Private Reply | To 13 | View Replies]

To: sirchtruth

I think the worm and trojan horse being downloaded from the remaining infected web sites are downloaded from that web site's server at the same time you download the web site content that you'd see on your monitor.


24 posted on 07/09/2004 5:52:14 AM PDT by Eagle9
[ Post Reply | Private Reply | To 5 | View Replies]

To: backhoe

good work


25 posted on 07/09/2004 5:52:19 AM PDT by bitt (take a week off from the local rag - and tell them why!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Dallas59

The adware and anti-virus programs will not stop the latest CWS or iSearch variants. If you get one, you'll know it because your browser will be hijacked.

General fyi: the Congress is currently debating between two bills designed to criminalize spyware/adware/malware and they should get something passed soon. Not nearly as soon as they should've, though!


26 posted on 07/09/2004 5:52:54 AM PDT by AntiGuv (™)
[ Post Reply | Private Reply | To 15 | View Replies]

To: AntiGuv

I traced my problem ( I hope! ) to a notepad.exe file, actually 3 of 'em, dated 06-26-04.


27 posted on 07/09/2004 5:53:46 AM PDT by backhoe
[ Post Reply | Private Reply | To 11 | View Replies]

To: backhoe

Bump for bookmark


28 posted on 07/09/2004 5:53:59 AM PDT by listenhillary ($0.273972603 a day = $100 a year to FR., Listenhillary, MD.)
[ Post Reply | Private Reply | To 2 | View Replies]

To: bitt; The Mayor

Thanks for looking!


29 posted on 07/09/2004 5:55:09 AM PDT by backhoe (-30-)
[ Post Reply | Private Reply | To 25 | View Replies]

To: Dallas59

>>You just have to invest in a good Adware/virus program...in fact maybe two or three and scan every day.<<

I updated My FR homepage because I get asked these questions every day.

The biggest prevention is Firefox. The next is spyware blaster. The last is an ad remover as some infections come in that way. I use Ad-Muncher and I've tried them all. http://www.admuncher.com

Try it for 30 days for free. I bought two copies, worth every penny.

-Mal


30 posted on 07/09/2004 5:55:25 AM PDT by Malsua
[ Post Reply | Private Reply | To 15 | View Replies]

To: sirchtruth
Is it really that hard for someone to develope a program that would not let ANY program ever get downloaded without a permission alert? Especially when your surfing the net?

Because of the way that windows is designed, yes.

Windows base design still assumes that any executables or script code was placed there by the user.

This is due to the original design as a single user stand alone system. This design flaw still permeates the entire windows architecture.

31 posted on 07/09/2004 6:02:15 AM PDT by DarthFuzball ("Life is full of little surprises." - Pandora)
[ Post Reply | Private Reply | To 5 | View Replies]

To: backhoe

Just switched to Firefox. It is great.


32 posted on 07/09/2004 6:04:01 AM PDT by sd-joe
[ Post Reply | Private Reply | To 20 | View Replies]

To: backhoe
If you have what I think you had, the notepad.exe corruption is not the root of your problem. In fact, I traced that little part of the issue within two hours and simply deleted everything in all my Temp folders to be done with it. It's very annoying now that I have to use Wordpad manually for things that were previously automatic to Notepad (like viewing source code).

Anyhow, if you want to ascertain whether you still have a problem, you should run a Find (Files or Folders) search for *.dll on your C Drive. Once that comes up, put your .dll files in order by the date modified. Look at the recently modified files to see if there are any random meaningless names. (For the record, my last one generated before I finally cleaned things up was Kbddjk.dll) If you find one (and you can just search for the .dll names on Google to see if they're legit - most of them can be found here: www.dll-files.com) then you haven't resolved the problem.

Alternatively, you can download HijackThis and search for suspicious BHOs which are another sign of malware activity. Examining the .dll files is the quickest way to go though.

33 posted on 07/09/2004 6:05:47 AM PDT by AntiGuv (™)
[ Post Reply | Private Reply | To 27 | View Replies]

To: backhoe
This link is to a Microsoft Critical Security alert. It's in the last line of the article you linked, Web Sites Still Infected.

What You Should Know About Download.Ject

34 posted on 07/09/2004 6:06:07 AM PDT by Eagle9
[ Post Reply | Private Reply | To 1 | View Replies]

To: backhoe
Great post full of useful info!!!

It might be helpful to explain first what's going on, in general, for those that are completely un-aware?

Trojan/Virus
Spyware/Hijack

are used interchangeably and it's may not be clear to the more casual user exactly what is being discussed.

I suspect most don't know about browser hijacking and what browser helper objects are?

Thanks again for the info.
35 posted on 07/09/2004 6:06:33 AM PDT by Smartaleck
[ Post Reply | Private Reply | To 2 | View Replies]

To: AntiGuv; Eagle9

Info's appreciated- thanks!


36 posted on 07/09/2004 6:09:17 AM PDT by backhoe (-30-)
[ Post Reply | Private Reply | To 33 | View Replies]

To: backhoe

spent 6 hours on a customer pc, finally tracked CWS problem to "peper", there is a fix tool thru google...

never=ending problems this week - I don't do banking on a pc, and might stop buying on a pc, too...


37 posted on 07/09/2004 6:10:15 AM PDT by bitt (take a week off from the local rag - and tell them why!)
[ Post Reply | Private Reply | To 29 | View Replies]

To: backhoe

I've been running spybot and BlazeFind.bridge?? keeps coming up, (I'm really a babe in the woods here so bear with me) and when I ask spybot for a definition none comes up. Is it trojan and can I delete all this stuff?


38 posted on 07/09/2004 6:12:31 AM PDT by Tuscaloosa Goldfinch
[ Post Reply | Private Reply | To 2 | View Replies]

To: AntiGuv
It's very annoying now that I have to use Wordpad manually for things that were previously automatic to Notepad (like viewing source code).

Among all those links and forums, there is a download of a zipped, clean notepad file-- that's what I used to replace my 2 copies in winnt & system32.

39 posted on 07/09/2004 6:13:09 AM PDT by backhoe (-30-)
[ Post Reply | Private Reply | To 33 | View Replies]

To: Tuscaloosa Goldfinch
BlazeFind.bridge??

Bear in mind I am no expert- but that sure doesn't look like any legit file to me!

40 posted on 07/09/2004 6:15:48 AM PDT by backhoe (-30-)
[ Post Reply | Private Reply | To 38 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-4041-6061-8081-96 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson