#140604 - 12/16/01 08:13 PM
SubSeven Trojan
|
|
Marty, I am sure you have nothing to do with this but thought you should know: that at 5:08PM (Belize Time) Sunday, Dec 16 my personal firewall trapped 4 attempts of the SubSeven Trojan eminating from http://www.ambergriscaye.com I can provide you all the details as to which specific URL I was on at the time, if of any value to you. E-mail me if you have any desire to pursue this.
_________________________
_ _ _ _ _ _ _________________ _ _ _ _ _ _ But then what do I know, I am but a mere caveman
|
|
Top
|
|
|
|
#140606 - 12/16/01 11:09 PM
Re: SubSeven Trojan
|
|
Hope, do not open it, I don't think you can in fact. One of Santa's helpers somewhere in cyberspace, was helping me with contacting all of my good friends, by using my address book, without my permission. Sorry. I have taken care of those helpers now. LOL Happy Holidays.
_________________________
Dare To Deviate
|
|
Top
|
|
|
|
#140607 - 12/17/01 12:17 AM
Re: SubSeven Trojan
|
|
This was NOT an e-mail attachment- it was an attempt to gain access to the computer directly for God only knows what purpose.
Perhaps somebody is using Marty's site as a go-between.
_________________________
_ _ _ _ _ _ _________________ _ _ _ _ _ _ But then what do I know, I am but a mere caveman
|
|
Top
|
|
|
|
#140611 - 12/17/01 03:04 PM
Re: SubSeven Trojan
|
|
If you are on a cable or dsl it's more likely that can happen. A dial-up happens less often. But, to answer your question YES it could happen if you do not have a firewall. Black Ice is a good resource, read read read. Or another one that is Free....is Zone Alarm. Not sure of the web site addresses but try the reading. Do a search for these firewall sites. You can get viruses from ANYWHERE...not just through your emails you receive. You can also get them from http sites you visit. Safest way is don't open attatchments till you are better secured. And scan with your virus scan. (I just got something today from someone in Belize. I e-mailed them right away to ask if they had sent something to me, they responded that they DID NOT) THus, I deleted it right away. It pays to ask or trust your self to be careful. I always was too quick to open up these e-mails but there seems to be more of a rash of "viruses" and hoaxes too. Gosh, I hope I said all that right, if not Sorry. Just do some of that reading assignment LOL  * I am far from a pro*...so this is only a lesson. It takes lots more reading to know for sure. I learn something new each day. Hope this helps some.
|
|
Top
|
|
|
|
#140613 - 12/17/01 07:58 PM
Re: SubSeven Trojan
|
|
Denver-
I agree with NYGal, but more likely your addy tabs popped up because the virus is still active and sending out those obnoxious e-mails to everyone in your addy book...and sometimes they are blank e-mails with just the nasty attachment.
I would suggest that, in addition to your virus software, you pay a visit to symantec's site and check out the commentary on whatever virus you contracted. Frequently they will provide a free download (yes, it's OK to safely download from them) for the various nasties and allow you to clean the system completely. I have noticed lately that, with some of these buggers, quarranting them is not enough....sometimes they slip by and you need to go inside the startup files, etc. and actually remove code. The "how to's" are quite simple, just require some concentration. Sometimes they do not have downloads and you must do the work yourself, carefully following the instructions...not difficult as I said, just requires concentration.
As NYGal said, if you are connected via DSL, cable or wireless, you are more at risk than through a dialup. Thus the need for a firewall as you are connected DIRECTLY to the net.
Good luck!
_________________________
_ _ _ _ _ _ _________________ _ _ _ _ _ _ But then what do I know, I am but a mere caveman
|
|
Top
|
|
|
|
#140616 - 12/17/01 10:08 PM
Re: SubSeven Trojan
|
|
If you are running Outlook express, please open your address book and create a New Contact. Where it says first name type in !000. Then where you add the email adress type in: !0000 It will state that it is NOT a correct email, click to ACCEPT it Anyway as the default email. This will become the VERY first email address in your address book. If you computer becomes infected with a virus/ worm etc, this will prevent it from being AUTOMATICALLY sent to all those listed in your addy book. What will happen is that you will receive an error message, if you receive such a message, then you must look in your deleted items folder (or sometimes, depending on the virus your Drafts folder), you will see what the virus IS by the attachment to the !0000 Email. Then, please go to : http://housecall.antivirus.com/housecall/ This is a copy of an email from Skinny it works Jim
_________________________
Jim
|
|
Top
|
|
|
|
#140617 - 12/17/01 10:24 PM
Re: SubSeven Trojan
|
|
Hi Rick/Cheri, will send some pics this Friday If you dont know what a firewall is you better learn--fast Jim
_________________________
Jim
|
|
Top
|
|
|
|
#140622 - 12/18/01 12:56 PM
Re: SubSeven Trojan
|
|
I am getting port scan hacker hits all the time, too. Fortunately, the McAfee virus scan catches them all. (Yes, Hope...you are protected) I have a cable modem and am connected all the time, so I have to be especially carefull. The Snow White virus is particularly tricky, but not especially harmful. I had to delete and reinstall some files. Hope, if you are still having probs, give me a buzz and I'll come over and try to rid you of the pest once and for all! If all else fails, massive quantities of alcohol deter most viruses, and if it doesn't, who cares??
|
|
Top
|
|
|
|
#140623 - 12/18/01 07:13 PM
Re: SubSeven Trojan
|
|
Ok everyone---rest easy---the "attack" of subseven did not eminate from Marty's site as we figured was very likely, just happened to occur simultaneously while I was on this here board. So, no one need worry about that! Apparently just one of those rogues out there in cyberworld who has nothing better to do than try hacking into all of our universes. (Get a life dude)
Rick/Cheri - Subseven is a back door trojan whereby, if successful, the intruder can gain access & control of your puter. Not a nice thing. The "firewall" is a piece of software which blocks most (if not all) attempts of this type. Subseven is only one of many trojans, does NOT come attached (normally) to an e-mail and piters hookd directly into the web via cable/dsl/wireless are most vulnerable. Almost impossible for one to gain access through dialup I am told. And for you Mac users out there, you are pretty much safe anyway....one of the FEW advantages to a Mac....relatively few viruses/trojans work in Mac environment.
Pier Lounge---have not heard of your solution before, but sounds like it might work...gotta check it out.
And finally -- Marty -- thanks for jumping on this so quick, glad we got it all (relatively) figured out. Thanks for sharing!
Be careful out there!
_________________________
_ _ _ _ _ _ _________________ _ _ _ _ _ _ But then what do I know, I am but a mere caveman
|
|
Top
|
|
|
|
#140624 - 12/18/01 08:50 PM
Re: SubSeven Trojan
|
|
A lot of people don't have ar cannot afford the fancy overpriced virus "software" this is a nuts and bolts approach. It works great--every day in fact. I save Norton for the real problems. Plus if you a good enough hacker, you can find the origin and flood them. Microsoft still is the 'Evil Empire' though. All this stuff should be a free fix from the dopey zillionare. Jim
_________________________
Jim
|
|
Top
|
|
|
|
#140625 - 12/18/01 10:29 PM
Re: SubSeven Trojan
|
|
that !000000 is not as useful as we think. I did it, and have since found out that viruses do not start alpabetically, they randomly use your address book. We use cable and do use firewalls on our computers. Each to their own. I guess whatever works for individuals is their choice. 
|
|
Top
|
|
|
|
|
|
|
|
1
|
2
|
3
|
4
|
5
|
|
6
|
7
|
8
|
9
|
10
|
11
|
12
|
|
13
|
14
|
15
|
16
|
17
|
18
|
19
|
|
20
|
21
|
22
|
23
|
24
|
25
|
26
|
|
27
|
28
|
29
|
30
|
31
|
|
|
|
15661 Members
44 Forums
47417 Topics
406565 Posts
Max Online: 1262 @ 06/10/07 02:16 PM
|
|
|