home hardware prices news articles forums photos user reviews
Go Back   Tech Support Forums - TechIMO.com > PC Hardware and Tech > Security and Privacy Issues
Join TechIMO for Free!
Register Blogs FAQ Members List Calendar Search Today's Posts Mark Forums Read
Reply Get bargains at  »  Dealighted.com
 
Thread Tools
Currently Active Users: 1886
Discussions: 188,470, Posts: 2,244,174, Members: 232,724
Old May 25th, 2004, 07:26 PM   Digg it!   #1 (permalink)
Junior Member
 
Join Date: May 2004
Posts: 2
P2P Viruses

Alright, not a self-proclaimed virus and hacker expert or anything and the follwing is quite long, so please bare with

Trouble started several months ago I suppose. I believe I have been suffering from a Trojan type virus and one which is P2P based. I am a former user of Kazaa (explain why shortly). Naturally, I frequently download music, music videos, the odd tv show, etc. Since this is my only major source of download, it is the only link I can think of with recent activity, listed in order of occurance:

- Upon opening Kazaa, search and download would occur at random, though I noticed many of my "banned words" from my filter were frequently used as a basis.

- Total downloads would often exceed the supposed maximum set by Kazaa (100). Again, would begin at random and high numbers would naturally slow my computer down.

- This activity made it very difficult to use Kazaa, but had some success pausing all downloads and hunting down those that I actually wanted and then reactivate them. Though, after a time paused downloads would resume.
Biggest problem was all the unwated files that would show up in your shared folder, from porn to obvious viruses and various "false files". Many of these such files would show up outside my shared folder as well placed in an almost random fashion about my hard drive. ( Labeled Warcraft3, Grand theft auto, MS Office, etc)

- Maximum uploads was set at '1', but often many times that would be downloading off of me. Thus whatever was being downloaded, false or not, was passed on (along with the virus I'm sure).

- As this activity did not always happen, Kazaa was a 50/50 reliable source for downloading. This reliability decreased over the months until recently when it became essentially unusable.

- Also in recent months, many very bizarre things would occur during normal computer usage. Wordpad would activate and display jibberish. MSPaint would activate and pictures would be scrawled on it. CD drive would open and close etc.

Until now, the firewall present in our Router is all that was used. Using a PC-cillin 2002 as virus protection (though evaluation ran out a few months ago).

Taking some advice from a web board, I replaced Kazaa with Emule, which apparantly has no known viruses yet. I installed the PC-cillin firewall and set security to high. Kazaa and all associated files were deleted. Ad-Aware 6.0 software was installed and eliminated over 100 processes that were thought to be malicious. I also went ahead with the slow process of checking every folder on my HDD for files which did not belong.

It has been roughly one week since. Computer is running much quicker, emule has offered no trouble to speak of, bizarre happenings have ceased etc.

Thought i'd share the mixed experience with P2P, but also wish to know if there are any other precautions (aside from not using a P2P) I could take to ensure this never happens again; is there a good free Anti-Virus software for example

Sorry about the length!!

Roner is offline   Reply With Quote
Old May 25th, 2004, 07:46 PM     #2 (permalink)
Ultimate Member
 
paul9's Avatar
 
Join Date: Aug 2003
Location: Gateshead U.K.
Posts: 8,838
Send a message via MSN to paul9 Send a message via Yahoo to paul9
be very vigilant when opening files you have downloaded, make sure that there are no executable files opened. www.grisoft.com will lead you to avg antivirus with a free personal edition.

paul9 is offline   Reply With Quote
Old May 25th, 2004, 07:52 PM     #3 (permalink)
Senior Member
 
Dooin' it's Avatar
 
Join Date: Aug 2003
Posts: 657
I won't claim to know the technical details of how they infect your computer "smartly" but I believe the situations occur lately like this........

You want a file.....
You search it & typically d/l the one with the most sources...
Problem is that while Kazaa knows that file to be the same amongst those various users it only takes one of the dozen or 2 dozen or however many sources there are, to be a bad apple &.......presto......your d/l'd file will be bad.

Almost every "software" file I've scanned lately (I always scan w/ AV after a file is d/l'd before it's opened for the first time) has had a worm or trojan in it. Perhaps they're adware/malware or something even less harmful, but I want "clean" files only. I, too, would highly suggest and recommend AVG from Grisoft. It's great freeware, for sure!

Dooin' it is offline   Reply With Quote
Old May 25th, 2004, 08:21 PM     #4 (permalink)
Junior Member
 
Join Date: May 2004
Posts: 2
Downloaded the suggested software! That site actually has a few other goodies too!

I guess it's not surprising the sheer number of files that are infected as such. Unfortuneate that you indirectly become part of the problem when you pass it on uknowningly with P2P sharing

Is Emule a viable alternative? Or does anyone suggest a better?

Thanks again!
Roner is offline   Reply With Quote
Old May 25th, 2004, 09:05 PM     #5 (permalink)
Ultimate Member
 
paul9's Avatar
 
Join Date: Aug 2003
Location: Gateshead U.K.
Posts: 8,838
Send a message via MSN to paul9 Send a message via Yahoo to paul9
Quote:
Originally Posted by Roner
Unfortuneate that you indirectly become part of the problem when you pass it on uknowningly with P2P sharing
yes, but at least you are doing something about it. unlike someone who is the cause of another 16 virus emails sent to my favourite email addy, which for years i have kept virus and spam free. never giving my addy to family again
now i'm done ranting on, try www.shareaza.com if you d/l a crap file, you can mark it as such when you delete it through shareaza, and it will warn you if you try to d/l it again, even if it has a new name. plus it connects to 3 networks and handles bit torrents.
www.moosoft.com has a trial of the cleaner which is like an anti virus proggy, but it searches only for trojans, and is more comprehensive in this area than most a/v programs.

Last edited by paul9 : May 25th, 2004 at 09:08 PM. Reason: more security stuff
paul9 is offline   Reply With Quote
Old May 25th, 2004, 09:31 PM     #6 (permalink)
Member
 
Join Date: Oct 2003
Posts: 105
__________________
What's a domain ?
Where do babies come from ?
DRF138 is offline   Reply With Quote
Old May 25th, 2004, 10:55 PM     #7 (permalink)
Newbie
 
filipino's Avatar
 
Join Date: May 2004
Location: Philippines
Posts: 3,894
i use kazaalite and viruses i love to play with e lolz
filipino is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may post new threads
You may post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are On
Refbacks are Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
who uses kazza? thekemp Networking and Internet 39 May 31st, 2004 09:01 PM
Do I need a software firewall?? PETE General Tech Discussion 27 March 25th, 2004 05:53 AM
Here's one heck of a computer problem FamousMoe Technical Support 15 July 29th, 2003 08:51 PM
RIAA suits-> viral sharing? samwichse IMO Community 11 June 30th, 2003 07:18 PM

Most Active Discussions
Is It Just Me? (2999)
"mastermind" of London at.. (65)
Intel Pentium 4 531 (7)
Please don't divorce us (40)
AMD Phenom II X4 940 Black Edition (11)
nVidia GTX 295 now available (21)
Replacing integrated video card (5)
Folderchat Weekday thread (458)
building a gaming computer, input p.. (14)
Recent Discussions
canon eos20d problem (1)
I cant sign into msn messenger,.. (8)
nVidia GTX 295 now available (21)
Folderchat Weekday thread (458)
Could I run this set-up (15)
Bought the Visiontek Radeon 387.. (1)
CPU Overheating ?? (18)
Computer will not boot(powers o.. (2)
*TechIMO's Top 30 PCs* (44)
Blackberry Storm, Gears of War .. (2)
Core 2 Quad Q9550 system (3)
COWBOOM Ripoff! Used Laptop w/$.. (4)


All times are GMT -4. The time now is 06:44 AM.
TechIMO Copyright 2008 All Enthusiast, Inc.



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28