Striper Talk Striped Bass Fishing, Surfcasting, Boating

     

Left Nav S-B Home Register FAQ Members List S-B on Facebook Arcade WEAX Tides Buoys Calendar Today's Posts Right Nav

Left Container Right Container
 

Go Back   Striper Talk Striped Bass Fishing, Surfcasting, Boating » Striper Chat - Discuss stuff other than fishing ~ The Scuppers and Political talk » Computers

Computers Sidetrack to Computers, Questions on your home computer? Posting just for registered members....

Reply
 
Thread Tools Rate Thread Display Modes
Old 03-23-2009, 06:51 PM   #1
tlapinski
All up in the Interweb!
iTrader: (1)
 
tlapinski's Avatar
 
Join Date: Mar 2002
Location: In the dog house.
Posts: 5,196
Question Conflicker

Any computer guys know anything about this? I had never heard of it until my fiance's boss started to go into panic mode over it. He plans to unlplug his server at work the day before and wait until he hears it is ok to go back online on the 1st. Someone he knows at his local coffee hang out that is "in the know" set him in a frenzy. Is this Y2K madness all over again?

http://hi-tech-consulting.com/blog/?p=190

http://chattahbox.com/technology/200...off-april-1st/

Co-Host of The Surfcast Podcast

"Out there in the surf is where it's at, that's where the line gets drawn in the sand between those who talk fishing and those who live it."
- a wise man.

One good fish, a sharpie does not make...

Certified rock hopping billy goat.
tlapinski is offline   Reply With Quote
Old 03-23-2009, 07:14 PM   #2
striperman36
Old Guy
iTrader: (0)
 
striperman36's Avatar
 
Join Date: Oct 2004
Location: Mansfield, MA
Posts: 8,760
It could happen. This malware stuff is beyond malicious. Day 0 stuff can kill anyone no matter how protected you are.
Our security guys are losing sleep over this or I should say our security guys never sleep.
striperman36 is offline   Reply With Quote
Old 03-24-2009, 07:37 AM   #3
fishy07
Registered User
iTrader: (0)
 
fishy07's Avatar
 
Join Date: Nov 2007
Location: In the real house
Posts: 87
Quote:
Originally Posted by striperman36 View Post
It could happen. This malware stuff is beyond malicious. Day 0 stuff can kill anyone no matter how protected you are.
Our security guys are losing sleep over this or I should say our security guys never sleep.
So what can the average person or small business do to protect themself? Not turn on their computer that day or could it attack you in the days that follow? I'm not the smartest person when it comes to computers
fishy07 is offline   Reply With Quote
Old 03-24-2009, 10:50 AM   #4
Striperknight
Plug Paladin
iTrader: (0)
 
Striperknight's Avatar
 
Join Date: Mar 2003
Location: Jackson, N.J.
Posts: 1,132
Run all the MS updates on your servers.
Striperknight is offline   Reply With Quote
Old 03-24-2009, 10:50 AM   #5
The Dad Fisherman
Super Moderator
iTrader: (0)
 
The Dad Fisherman's Avatar
 
Join Date: Sep 2003
Location: Georgetown MA
Posts: 18,178
Backup your files for starters....

and if the FBI, MIT and other security companies can't figure out how to stop it.....well.....I would shut off my PC and go fishing.

"If you're arguing with an idiot, make sure he isn't doing the same thing."
The Dad Fisherman is offline   Reply With Quote
Old 03-24-2009, 08:30 PM   #6
Striperknight
Plug Paladin
iTrader: (0)
 
Striperknight's Avatar
 
Join Date: Mar 2003
Location: Jackson, N.J.
Posts: 1,132
I missed plugfest because of conflicker.
Striperknight is offline   Reply With Quote
Old 03-31-2009, 09:59 AM   #7
Striperknight
Plug Paladin
iTrader: (0)
 
Striperknight's Avatar
 
Join Date: Mar 2003
Location: Jackson, N.J.
Posts: 1,132
I swear if I ever meet the guy who created this........:cens :
Striperknight is offline   Reply With Quote
Old 05-05-2009, 08:12 PM   #8
MrHunters
What was that!?!
iTrader: (0)
 
MrHunters's Avatar
 
Join Date: May 2005
Location: East Kingston, NH
Posts: 3,108
updated patches and antivirus you should be good.

virus guys exploit an MS vulnerablity. MS releases a patch... and repeat.

they are 16 year old russians making this chit and are regarded as heros.
MrHunters is offline   Reply With Quote
Old 05-16-2009, 01:43 AM   #9
bloocrab
Callinectes sapidus
iTrader: (0)
 
bloocrab's Avatar
 
Join Date: Oct 2001
Posts: 6,245
Anyone run into an issue with the Removal Tool not being able to remove an infected file?

We've installed the patch MS08-067, ran the Removal Tool from Symantec ...but it keeps detecting a file that it says it will delete after a reboot, but after a rescan, the infected file is still there?


Gotta do some more research ....

...it finally happened, there are no more secret spots
bloocrab is offline   Reply With Quote
Old 05-20-2009, 03:32 PM   #10
bloocrab
Callinectes sapidus
iTrader: (0)
 
bloocrab's Avatar
 
Join Date: Oct 2001
Posts: 6,245
Has anyone successfully removed it?

I thought I did, 2 days later...it's BAAACK!!!

ANY HELP is GREATLY appreciated!!!!


...it finally happened, there are no more secret spots
bloocrab is offline   Reply With Quote
Old 05-20-2009, 07:50 PM   #11
Saltheart
Registered User
iTrader: (1)
 
Saltheart's Avatar
 
Join Date: May 2000
Location: Cumberland,RI
Posts: 8,555
I had a virus , it had an okh extension and was called a Trojan horse by the AV software but it did not specify it was conflicker. I had to jump through hoops to get it out. Do a serach for *.okh and if you got it you can read how I got it out under the "best firewall" thread. I suppose the same method should work on any virus as long as you have an AV program that has the virus signature.

Saltheart
Custom Crafted Rods by Saltheart
Saltheart is offline   Reply With Quote
Old 06-25-2009, 09:58 PM   #12
bloocrab
Callinectes sapidus
iTrader: (0)
 
bloocrab's Avatar
 
Join Date: Oct 2001
Posts: 6,245
Quote:
*** ...but as long as you have an AV program that has the virus signature
Saltheart, sorry for the late reply.,,,no okh extension, strictly junk dlls, items in a bogus Recycler folder and new registry entries/edits, and if that's not enough, ,,bogus Services were created.....but you hit the nail pretty square on the head with the anti-virus needing to be up to par.,,


For anyone still suffering from this mess, (like me ) I ran the Symantec removal tool "D:exe" (located on their site for free) ....installed the patch from MS but couldn't get rid of the file that it was supposed to delete after a reboot...(a weird named,, dll file), each workstation had a different one, so you couldn't just search for the same one. ...but anyway,, The log file that the tool creates displays the location of the junk dll, (uncheck "hide protected operating system files" under your folder options) within the system32 folder, take ownership of the file and then manually delete it. Do all of this in safe mode. Sometimes the tool does delete the file, but if it says it will delete it after the next reboot, it never did. I then emptied the recycle bin, and installed the patch, rebooted...re-ran the scan and it came back clean.

However, I thought the patch was supposed to keep it out, it does NOT!

*** I'm currently battling with my anti-virus company because they're having difficulties disinfecting or quarantining it...so it keeps on coming back, when you're dealing with shared drives throughout the network, a virus that LOVES thumb/flash drives....woah what a mess!!!...
It's been quite the adventure...It's on over 600 workstations and 10 servers....God only knows how many thumb drives it's taken residence on....

I'm hoping once my anti-virus can contain it, I can catch up........until then....


Any advice or comments are GREATLY welcome.

...it finally happened, there are no more secret spots
bloocrab is offline   Reply With Quote
Reply

Bookmarks


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -5. The time now is 11:55 AM.


Powered by vBulletin. Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Please use all necessary and proper safety precautions. STAY SAFE Striper Talk Forums
Copyright 1998-20012 Striped-Bass.com