Oh Noes - Taurus Car Club of America : Ford Taurus Forum
 
LinkBack Thread Tools
post #1 of 8 (permalink) Old 01-14-2010, 02:46 PM Thread Starter
Devoted Member
 
risoworker's Avatar
 
Join Date: Oct 2004
Posts: 4,467
Rep Power: 41
 
Trader Score: 0 reviews
Send a message via AIM to risoworker Send a message via MSN to risoworker
risoworker is offline  
Sponsored Links
Advertisement
 
post #2 of 8 (permalink) Old 01-14-2010, 02:55 PM
Don't Be Stupid
 
Join Date: Dec 2004
Location: Commierado
Chapter: Southern
Posts: 7,049
Rep Power: 44
 
Trader Score: 1 reviews

Give a man a fire and he'll be warm for the day. Set him on fire, and he'll be warm for the rest of his life.

00tec-satx is offline  
post #3 of 8 (permalink) Old 01-14-2010, 03:24 PM
Crazy Devoted Member
 
Racer X's Avatar
 
Join Date: Oct 2002
Location: Queens, NYC
Posts: 5,111
Rep Power: 0
 
Trader Score: 0 reviews
Send a message via AIM to Racer X
So was I this morning, PDF exploit.

Hopefully my machine isn't too hosed; I'll know more when I get home tonight.

This is the first time my computer has been compromised in a long, long time.

Fin.
Racer X is offline  
 
post #4 of 8 (permalink) Old 01-14-2010, 03:35 PM
Don't Be Stupid
 
Join Date: Dec 2004
Location: Commierado
Chapter: Southern
Posts: 7,049
Rep Power: 44
 
Trader Score: 1 reviews
QUOTE (Racer X @ Jan 14 2010, 02:24 PM)
Quote:
So was I this morning, PDF exploit.

Hopefully my machine isn't too hosed; I'll know more when I get home tonight.

This is the first time my computer has been compromised in a long, long time.[/b]
Had a PDF problem a while back. Search redirects, etc.
Rebuilt the machine.

The in-laws PC is so bad, it has keyloggers on it. The better half's email was compromised by it.----I don't care enough to fix it.


I was on Bryan's machine earlier messing around while playing with his modem.

Give a man a fire and he'll be warm for the day. Set him on fire, and he'll be warm for the rest of his life.

00tec-satx is offline  
post #5 of 8 (permalink) Old 01-14-2010, 05:07 PM
Crazy Devoted Member
 
Twilight's Avatar
 
Join Date: Oct 2002
Location: Kitchener, Ontario, Canada
Posts: 5,359
Rep Power: 0
 
Trader Score: 0 reviews
Send a message via AIM to Twilight Send a message via MSN to Twilight
I haven't had a virus or anything since Windows 98.

Never used anti-virus software, either.

05 Lincoln LS V8 - black/black, tints, stock (for now).

99 Mercury Sable LS (retired) - green/gray, Duratec, 135000 mi, G4 Taurus wheels, stereo, 11.6" brakes, clear corners, stack of parts in the garage and endless list of repairs.
Twilight is offline  
post #6 of 8 (permalink) Old 01-14-2010, 07:32 PM
Crazy Devoted Member
 
Racer X's Avatar
 
Join Date: Oct 2002
Location: Queens, NYC
Posts: 5,111
Rep Power: 0
 
Trader Score: 0 reviews
Send a message via AIM to Racer X
QUOTE (00tec-saTX @ Jan 14 2010, 04:35 PM)
Quote:
QUOTE (Racer X @ Jan 14 2010, 02:24 PM)
Quote:
So was I this morning, PDF exploit.

Hopefully my machine isn't too hosed; I'll know more when I get home tonight.

This is the first time my computer has been compromised in a long, long time.[/b]
Had a PDF problem a while back. Search redirects, etc.
Rebuilt the machine.

The in-laws PC is so bad, it has keyloggers on it. The better half's email was compromised by it.----I don't care enough to fix it.


I was on Bryan's machine earlier messing around while playing with his modem.
[/b][/quote]
Mine was related to the latest PDF.EXPLOIT that's affecting Adobe reader.

In short, a malicious PDF can execute whatever code it wants on any system with Adobe's PDF reader browser plug-in and javascript. In my case, I got hit with a trojan that after disabling all of my AntiVirus and AntiMalware software and services, installed a SMTP server, a proxy server, and a data aggregator.

The SMTP servers purpose was obvious (and was blocked by a firewall rule FTW), however the proxy server/ aggregator combo was a real treat. I'm also lucky that I only use MSIE for playing web radio.

The trojan, after disabling AVG and Spybot and another AntiMalware solution that I run, proceeded to install the proxy server. Then it told MSIE to direct all web browsing through the new local proxy server, where the aggregator sat and fished through all the data passing through the proxy looking for passwords, financial data, etc.

Honestly, if I hadn't seen the AVG, WAUCLT, and TeaTimer icons all vanish from the system tray, I would have never known it was there.

Adobe says that they have a fix, I'm applying it now.

Fin.
Racer X is offline  
post #7 of 8 (permalink) Old 01-15-2010, 01:53 AM
Crazy Devoted Member
 
qwertz9586's Avatar
 
Join Date: Feb 2003
Location: ATX
Chapter: Southern
Posts: 15,922
Rep Power: 65
 
Trader Score: 0 reviews
Does this only apply to Adobe Reader or all PDF viewers?





To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.

[
To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
] - [
To view links or images in signatures your post count must be 10 or greater. You currently have 0 posts.
]
Ford Lincoln Mercury Sable? A personal conveyance named after its inventor, an
assassinated ruler, a character from Greco-Roman myth and a small furry mammal.
qwertz9586 is offline  
post #8 of 8 (permalink) Old 01-15-2010, 02:00 AM
Devoted Member
 
dark_fire's Avatar
 
Join Date: Aug 2007
Location: Wisconsin
Posts: 2,064
Rep Power: 0
 
Trader Score: 0 reviews
Send a message via MSN to dark_fire
QUOTE (Racer X @ Jan 14 2010, 08:32 PM)
Quote:
QUOTE (00tec-saTX @ Jan 14 2010, 04:35 PM)
Quote:
QUOTE (Racer X @ Jan 14 2010, 02:24 PM)
Quote:
So was I this morning, PDF exploit.

Hopefully my machine isn't too hosed; I'll know more when I get home tonight.

This is the first time my computer has been compromised in a long, long time.[/b]
Had a PDF problem a while back. Search redirects, etc.
Rebuilt the machine.

The in-laws PC is so bad, it has keyloggers on it. The better half's email was compromised by it.----I don't care enough to fix it.


I was on Bryan's machine earlier messing around while playing with his modem.
[/b][/quote]
Mine was related to the latest PDF.EXPLOIT that's affecting Adobe reader.

In short, a malicious PDF can execute whatever code it wants on any system with Adobe's PDF reader browser plug-in and javascript. In my case, I got hit with a trojan that after disabling all of my AntiVirus and AntiMalware software and services, installed a SMTP server, a proxy server, and a data aggregator.

The SMTP servers purpose was obvious (and was blocked by a firewall rule FTW), however the proxy server/ aggregator combo was a real treat. I'm also lucky that I only use MSIE for playing web radio.

The trojan, after disabling AVG and Spybot and another AntiMalware solution that I run, proceeded to install the proxy server. Then it told MSIE to direct all web browsing through the new local proxy server, where the aggregator sat and fished through all the data passing through the proxy looking for passwords, financial data, etc.

Honestly, if I hadn't seen the AVG, WAUCLT, and TeaTimer icons all vanish from the system tray, I would have never known it was there.

Adobe says that they have a fix, I'm applying it now.
[/b][/quote]
Right click C:\, Format

<div class='quotetop'>QUOTE
Quote:
When Chuck Norris goes to sleep every night,
he checks his closet for Clint Eastwood.
dark_fire is offline  
Sponsored Links
Advertisement
 
Reply

Quick Reply
Message:
Options

Register Now



In order to be able to post messages on the Taurus Car Club of America : Ford Taurus Forum forums, you must first register.
Please enter your desired user name, your email address and other required details in the form below.

User Name:
Password
Please enter a password for your user account. Note that passwords are case-sensitive.

Password:


Confirm Password:
Email Address
Please enter a valid email address for yourself.

Email Address:
OR

Log-in










Thread Tools
Show Printable Version Show Printable Version
Email this Page Email this Page



Posting Rules  
You may post new threads
You may post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

 
For the best viewing experience please update your browser to Google Chrome