Results 11 to 20 of 23
Thread: Potential Virus Threat
-
02-20-2007, 07:02 PM #11
- Join Date
- Aug 2006
- Location
- Maleny, Australia
- Posts
- 7,977
- Blog Entries
- 3
Thanked: 1587It's just a smug smile that says "I told you so..." for linux users....
James.<This signature intentionally left blank>
-
02-20-2007, 07:05 PM #12
You Mac users hide your envy well. Don't worry. If Macs become common enough, someday, somebody will start making viruses for them too.
-
02-20-2007, 07:13 PM #13
- Join Date
- Jan 2007
- Location
- Chicago Area
- Posts
- 19
Thanked: 0I attempted to recreate the attack. Same click sequence, no alarms. Am not yet sophisticated enough to find the logs and i will keep trying.
FYI, the alarms 'went off' when i arrived at the video's page. Had not clicked to download or view either version.
Gotta go now and run a complete scan
-
02-20-2007, 07:19 PM #14
-
02-20-2007, 07:22 PM #15
- Join Date
- Aug 2006
- Location
- Maleny, Australia
- Posts
- 7,977
- Blog Entries
- 3
Thanked: 1587
-
02-20-2007, 08:34 PM #16
- Join Date
- Jan 2007
- Location
- Chicago Area
- Posts
- 19
Thanked: 0Oh well. The joys of the Microsoft hegemony!
I use an ISP supplied McAfee and anothet MS freebie - Windows Defender.
Neither log shows the attacks
-
02-21-2007, 07:53 AM #17
It's certainly possible, but not as likely to gain traction.
It's not just the immunity by obscurity argument either. The underlying system is essentially FreeBSD UNIX, which is related to OpenBSD. OpenBSD, by many counts, is the most secure and stable network connected operating system in existence. It is used in many high volume and highly secured secured environments for this specific reason. Further, many related linux and UNIX variants borrow their security context from versions of OpenBSD. Virtually ALL the large, and highly hacker target'd sites including google, yahoo, etc... run some UNIX/Linux variation. The NSA apparently uses their own version of OpenBSD on their internal machines.
So, while it's possible, I think the success will be lower. Now, I do fully expect viruses/trojans, etc... Funny thing is, I expect them mainly from Windows technologies being run on these *nix boxes. Examples; ActiveX, MS Office, Exchange. Let's hope Apple is smart enough to stay the security course layed out for them by years of sysadmin experience.
For now, I don't feel the need to smirk. I just convert everyone I know to Mac whenever I can. Being a tech type, all my friends and family call me for computer support (kill me, please). I almost never get calls from the converts, excepting, 'how do I do this, I used to do it in Windows like this...'.
Cheers all - John
PS As of the software called Parallels being released, I have NO reason to boot up my home Windows PC. I can now run AutoCAD close to native in OS X.
-
02-21-2007, 04:05 PM #18
- Join Date
- Feb 2007
- Posts
- 7
Thanked: 0Um, I had a rake of 5 trojans when I visited the video section. The remnants of one cannot be removed. That was about a month ago. I registered today and Sophos pulled me up on a single trojan when I tried to get the vid.
Just for your information.
BTW are you sure the virus is not in the directory that the vid is stored in rather than the vid itself?
Cheers
Mat
-
02-21-2007, 05:48 PM #19
I've taken the videos off-line until I can get to the bottom of this. I'm sure there are no viruses and/or trojans, etc. in the files themselves or the directory they reside in. That's not surprising, nor does it mean there's not a problem. The sleeze bag hackers that worm their way into websites to infect them with nasties are much more clever than to make the trail that obvious.
PZBarber... you mentioned a Trojan... what did the message your virus checker put out say? Did it say that downloading such a file "could" contain a virus or trojan? Or did it explicitly state that the file DID contain a trojan? If so, what was it.
-
02-22-2007, 09:02 AM #20
- Join Date
- Feb 2007
- Posts
- 7
Thanked: 0Here is an extract from my Sophos error log. These warnings popped up as soon as I tried to get the video.
Virus 'Troj/DownLdr-NO' has been detected in "C:\Documents and Settings........
Infected file "C:\Documents and Settings\MAT\Local Settings\Temporary Internet Files\Content.IE5\21JUP0ER\xpladv521[1].wmf" has been deleted.
Virus 'Troj/Psyme-DL' has been detected in "C:\Documents and Settings\MAT\Local Settings\Temporary Internet Files\Content.IE5\21JUP0ER\new521[1].htm". Cleanup unavailable.
Infected file "C:\Documents and Settings\MAT\Local Settings\Temporary Internet Files\Content.IE5\21JUP0ER\new521[1].htm" has been deleted.
Virus 'Troj/Wafer-B' has been detected in "C:\Documents and Settings\MAT\Local Settings\Temporary Internet Files\Content.IE5\8PMJU33I\slide521[1].htm". Cleanup unavailable.
Infected file "C:\Documents and Settings\MAT\Local Settings\Temporary Internet Files\Content.IE5\8PMJU33I\slide521[1].htm" has been deleted.
Hope this helps
Mat