Jump to content

Humpty

Experienced Members
  • Posts

    2,107
  • Joined

  • Last visited

Posts posted by Humpty

  1. Well to be honest with you if you're going to install an app like Regcure then it could be advisable to post a Hijackthis log in the correct part of this forum.

  2. The quality of the thumb drive can be a factor.

     

    Never have a prob with my 2 and 4 gig Sandisc Cruzers.

     

    Neighbour a while back asked if I wanted a 16 gig for 18 bucks off ebay which I grabbed.

     

    What a waste of dough as it randomly corrupts. :angry:

  3. Security firm Symantec has apologised after an unsigned security patch caused panic among Norton users.

     

    The diagnostic patch PIFTS.exe was included in the latest update for Norton Internet Security with the purpose of anonymously collecting statistics on the computers using its products, according to Symantec.

     

    Unfortunately, "human error" meant the file was unsigned causing firewalls to flag it when it attempted to dial home. Enterprising users discovered the file was attempting to dial out to Norton servers in Africa, and conspiracy theories quickly began to fill the vacuum of silence left by Symantec.

    IT Pro Article

  4. Bit of a kefuffle going on ATM about whether a PIFTS.exe belonging to Symantec is snooping.

     

    Symantec seems to be deleting any posts on their message board relating to such.

     

    Or is it just a story created to stir up a hornets nest with nothing really in it?

     

    Zone Alarm Discussion

     

    WARNING - I googled PIFTS.exe with very first two links being hijackers for two rogue apps in Internet Antivirus Pro and the second being System Security.

  5. There are a few rogue security apps out there that match or closely match the names of decent apps.

     

    Below are some sites that you should never download from as they are ripoffs.

     

    t2999_Smit.JPG

     

    t3000_Vun.JPG

     

    t3001_AdwareFree.JPG

     

    t3002_AdwarePro.JPG

     

    t3003_2Squared.JPG

  6. From the posts Humpty has made he also has his stuff imaged for quick restoration too. ;)

    And only ever used through my own tinkering with the system and never a breach with Sandboxie. ;)

     

    Below is a sample of a 44.0 KB decompression bomb rar file that I have. :blink:

    The file contains 16 zipped files, which again contains 16 zipped files, which again contains 16 zipped files, which again contains 16 zipped, which again contains 16 zipped files, which contain 1 file, with the size of 4.3GB.

     

    So, if you extract all files, you will most likely run out of space :-)

     

    16 x 4294967295 = 68.719.476.720 (68GB)

    16 x 68719476720 = 1.099.511.627.520 (1TB)

    16 x 1099511627520 = 17.592.186.040.320 (17TB)

    16 x 17592186040320 = 281.474.976.645.120 (281TB)

    16 x 281474976645120 = 4.503.599.626.321.920 (4,5PB)

  7. Probably can't connect to the net which makes it much more secure. :blink:

     

    Just kidding, will have to wait and see?

    Microsoft researchers are developing a new Web browser that they say could offer a far greater degree of security than Google's Chrome, Mozilla's Firefox or Microsoft's own Internet Explorer.

     

    The browser, called Gazelle, relies on 5,000 lines of C# code called a "browser kernel" that helps enforce security rules to prevent malicious access to the PC's underlying operating system, according to a recently published paper.

     

    So far, Gazelle is just a prototype, with other parts of the browser based on Microsoft's IE. Due to the complex nature of the way it processes Web pages for better security, the browser's performance is more tortoise than gazelle, but the researchers think a few tweaks can make it faster.

    Computerwork UK Article

  8. Gave the sample below a run.

    Virus Total

     

    Sandboxie contained it easily as it couldn't or wouldn't run sandboxed.

     

    Installed it into an XP vm and trust me, it's one of the worst I've seen and a system destroyer.

     

    Downloaded heaps of data from the net including a rootkit, two other viruts and a coupla trojans.

     

    Dunno why it needs to download those additional malwares as it does enough damage by itself in needing a reimage or format reinstall. :unsure:

     

    The vm came through ok after being in Returnil mode and deleting all changes after testing.

  9. With the free version, the Rescue Boot CD doesn't work. Or it didn't last time I tried it, which isn't too long ago.

     

    Macrium works fine.

    Tried the Paragon rescue disk here and it worked fine.

     

    Trying the restore from the gui didn't work on this dual boot XP/Vista hard drive.It did reboot for a restore but didn't or couldn't carry it out. :unsure:

     

    Haven't tried a restore on one of my single boot drives as yet.

     

    Still have a the old backups in place in Ghost Images where I boot from a Fred Flinstone floppy drive to backup and or restore as well. :blink:

  10. You could try Paragons free backup that can back the first track, mbr, single partitions or the entire drive.

     

    Only thing with the free edition is you can only boot from a cd or usb which the app creates for you for a restore but seems to work fine.

    Paragon

    Think I may have been wrong on the assertion above with the free version being able to do a restore from within windows? :huh:

  11. You could try Paragons free backup that can back the first track, mbr, single partitions or the entire drive.

     

    Only thing with the free edition is you can only boot from a cd or usb which the app creates for you for a restore but seems to work fine.

    Paragon

     

    There's also a free version of Acronis True Image 10 Personal Edition around, dunno how long for though?

    True Image

  12. Comet Lulin, named after the observatory in Taiwan where the discovery-photo was taken, is now approaching Earth. "It is a green beauty that could become visible to the naked eye any day now," says Ye.

     

    Lulin's green color comes from the gases that make up its Jupiter-sized atmosphere. Jets spewing from the comet's nucleus contain cyanogen (CN: a poisonous gas found in many comets) and diatomic carbon (C2). Both substances glow green when illuminated by sunlight in the near-vacuum of space.

     

    Feb. 6th: Comet Lulin glides by Zubenelgenubi, a double star at the fulcrum of Libra's scales. Zubenelgenubi is not only fun to say (zuBEN-el-JA-newbee), but also a handy guide. You can see Zubenelgenubi with your unaided eye (it is about as bright as stars in the Big Dipper); binoculars pointed at the binary star reveal Comet Lulin in beautiful proximity.

    Nasa Article

  13. Could you have been tricked into downloading Regcure from the link below which is on the border of being a rogue app?

    http://www.ccleanerdownload.org/

     

    If you hit the "Free Download" tab at that link you end up with Regcure and which is highly deceptive in my opinion.

     

    If not the link and if you can remember the download location could you pm me the link please.

     

     

  14. As a non antivirus user I would recommend Avira or Avast with Malwarebyte's Antimaslware and SuperAntispyware as on demand.

     

    Below is a sample of a rogue antivirus, Winiguard, which was zero day yesterday, meaning no av/as detected it at the time and re-uploaded to Virus Total a day later to see who was detecting it.

     

    Yesterday:

    File setup.exe received on 01.27.2009 23:19:42 (CET)

    Current status: finished

    Result: 0/39 (0.00%)

    Virus Total

     

    Today:

    File setup.exe received on 01.28.2009 23:53:59 (CET)

    Current status: finished

    Result: 2/38 (5.26%)

    Virus Total

  15. Is that for real, Humpty? My FF2 takes about 4 seconds to load normal -- and about 14 seconds to load sandboxed. Guess something isn't quite right here either??

    Yep, for real.

     

    Xeon quad, 4 gig dominator ram, raptor drive in Returnil mode with no realtime AV/AS.

     

    In fact FF seems nearly instant opening non-sandboxed and I only said 2 seconds to be half believable but definately around 3 seconds sandboxed. :huh:

×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.