blim Posted December 27, 2008 Report Share Posted December 27, 2008 Ummmm, as usual, I don't know where I should put this question so if it should be in the malware section, feel free to move itI got bit by that Phony Antivirus Cootie (2008? 2009? too busy fixing it to remember). I tell ya, Daughter is a Cootie Magnet, she used my idiotbox for an hour and swears she didn't click on any links.Thanks to Malwarebytes, it is gone and the idiotbox is running stellar again. Buttttt, when Malwarebytes was doing its thing, it generated a log of the cooties found on notepad. Yeah, I didn't think to see if the log had a name and when I asked Son how to find Notepad (yes, I don't know how!) he said I shoulda written the name of the log down. I didn't. I figured that was the only thing ON notepad since I never use it, ha! (darned kids....) So, because I'm anal , I want to see that log. How can I find it? Or is it living in the Malwarebytes program somewhere, and where/how? Don't forget, Kindertech translations please Thanks a bunch,Liz Quote Link to post Share on other sites
Falcon1986 Posted December 27, 2008 Report Share Posted December 27, 2008 Open MBAM, click on the 'Logs' tab and open the log you wish to view. Quote Link to post Share on other sites
blim Posted December 27, 2008 Author Report Share Posted December 27, 2008 (edited) Ohhhhh, that's easy! Thanks, Falcon! Off to google the cooties Edit! Opened the log and there was a bunch of techo gobbly-goop but clicked the "quarantine link" and there was this precise little list of cooties, that is exactly what I was looking for so thanks again, Falcon for leading me to itLiz Edited December 27, 2008 by blim Quote Link to post Share on other sites
martymas Posted December 27, 2008 Report Share Posted December 27, 2008 you realise your not exclusive to getting these thingstho havent had them for some time now i used to be a regulari was forever posting to techtv c.f.hto get clean so join the clubmarty Quote Link to post Share on other sites
hitest Posted December 27, 2008 Report Share Posted December 27, 2008 you realise your not exclusive to getting these thingsLiz did not suggest or claim to be the only one getting infected, marty. She asked a well-written technical question and received an equally well-written answer from Falcon. Just my 2 cents worth. Quote Link to post Share on other sites
blim Posted December 27, 2008 Author Report Share Posted December 27, 2008 I think Marty's sharing my pain and sending along some sympathy.Liz, well written and technical in the same sentence??? Impossible Liz Quote Link to post Share on other sites
hitest Posted December 27, 2008 Report Share Posted December 27, 2008 Liz, well written and technical in the same sentence??? Impossible LizI thought so. Quote Link to post Share on other sites
martymas Posted December 27, 2008 Report Share Posted December 27, 2008 yes i was sharing your painive been there done that ime glad youve fixed it i havent tried that scanner you usei hope ive advanced enough now to avoid those pitfallstho in this game any thing can happenmaybe hitest got out of the wrong side of the bedi wouldnt critersize liz i was sypathising with herperhaps the job has gone to his headmarty Quote Link to post Share on other sites
hitest Posted December 27, 2008 Report Share Posted December 27, 2008 yes i was sharing your painive been there done that ime glad youve fixed it i havent tried that scanner you usei hope ive advanced enough now to avoid those pitfallstho in this game any thing can happenmaybe hitest got out of the wrong side of the bedi wouldnt critersize liz i was sypathising with herperhaps the job has gone to his headmartyGood to hear you're sympathizing with Liz, marty! Heh,no I did not get out of the wrong side of the bed, marty. But, it seems that I mis-read your post as being critical of Liz. On the Internet it is often difficult to determine the intent of a post.My apologies, marty! Quote Link to post Share on other sites
Pete_C Posted December 28, 2008 Report Share Posted December 28, 2008 From what I have seen most of these are now using "zero day" exploits in outdated software such as java, flash player, winzip, acrobat reader etc. They take advantage of these to silently install the nasty without the antivirus software being any the wiser. So go to secunia and run the software inspector to find out what software you have which has security holes currently being exploited by malware.http://secunia.com/vulnerability_scanning/online/Then follow their advice; uninstall any of the older unpatched versions, install the new upgraded version and then scan again to make sure you removed all the vulnerabilities (often a plugin or file or folder from the old version will remain and have to be deleted) Quote Link to post Share on other sites
blim Posted December 29, 2008 Author Report Share Posted December 29, 2008 We gotta remember that Hitest has a little one and a teenager--this close after Christmas AND with the kids being on School Break, I bet his brain is turning to mush (and sending my sympathies to you! With both my kids working during break, I actually MISS them, they're never home!)Pete, as far as getting infected, I never even gave updating that stuff a thought! Thank you! I must admit that I've never updated that stuff. I never use FlashPlayer, Adobe or WinZip so never *thought* I needed to keep up on that stuff. And Java....nope, not that, either and I'm thinkin' Java is part of "the internets", isn't it?? Son is on Break till Jan5, I'll make HIM tinker if he has time since he actually......likes it. I'm betting everything that site checks is gonna need updating!Liz Quote Link to post Share on other sites
hitest Posted December 29, 2008 Report Share Posted December 29, 2008 We gotta remember that Hitest has a little one and a teenager--this close after Christmas AND with the kids being on School Break, I bet his brain is turning to mush (and sending my sympathies to you! With both my kids working during break, I actually MISS them, they're never home!)Thank you, Liz! Yes, as you know having a teenager is a challenge:-) I do make mistakes sometimes, which I do regret:-) Happy New year! All the best to you and your adult children:-) Quote Link to post Share on other sites
martymas Posted December 29, 2008 Report Share Posted December 29, 2008 sorry for the out burst hitesthaven had a good 3-4 monthshealth wiseand at the moment ime having problemsi know you mean well liz is one of my favouriteson this board[tho you all are]and wouldnt i do any thing to send her in the wrong direction my appoligys for not puting the words in the right contexttho i took it for grantedagain my appoligysmarty Quote Link to post Share on other sites
hitest Posted December 29, 2008 Report Share Posted December 29, 2008 sorry for the out burst hitesthaven had a good 3-4 monthshealth wiseand at the moment ime having problemsi know you mean well liz is one of my favouriteson this board[tho you all are]and wouldnt i do any thing to send her in the wrong direction my appoligys for not puting the words in the right contexttho i took it for grantedagain my appoligysmartyNo need to apologize, marty! I've had the pleasure of knowing you for quite a few years now. I know you're a good guy. Thank you for the nice words. I should have understood what you meant. No worries, man:-)Yes. I've been reading about your health problems lately and my thoughts are with you! Hang in there and please get well soon. Happy New Year! Quote Link to post Share on other sites
Pete_C Posted December 30, 2008 Report Share Posted December 30, 2008 Pete, as far as getting infected, I never even gave updating that stuff a thought! Thank you! I must admit that I've never updated that stuff. I never use FlashPlayer, Adobe or WinZip so never *thought* I needed to keep up on that stuff. And Java....nope, not that, either and I'm thinkin' Java is part of "the internets", isn't it?? Son is on Break till Jan5, I'll make HIM tinker if he has time since he actually......likes it. I'm betting everything that site checks is gonna need updating!LizYep, even if you do not think you have those installed you probably do and even if you do not use them it is easy for some malicious website to put in a call for flash player 6 or jave 1.5 and if you still have it installed it loads but if there is no content to display you see nothing but they can exploit it and install what they will. This was not so common a year ago even; but recently with microsoft pushing automatic updates and more and more people heeding the advice to use an antivirus and get behind a router or firewall the malware guys have been seeking alternate paths. I think the first cases I became aware of was when that nasty you mention began using an exploit to change the X and Close buttons on the dialog box it popped up to the function of "disable antivirus and install silently with no user interaction" (well that is a verbose explanation but basically explains it, they just executed a script to change some registry settings for dialog boxes).So now it is vital that you keep everything up to date. Quote Link to post Share on other sites
Matt Posted December 30, 2008 Report Share Posted December 30, 2008 Blim, it also wouldn't be a bad idea to head over to the HJT forum just to have someone double-check that your computer is completely clean. I know you don't like to mess around over there, but its really not hard! This post is a good resource, whether or not you want to post a log:http://www.besttechie.net/forums/index.php?showtopic=13853 Quote Link to post Share on other sites
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.