Re: [SLUG] Another Mickey$oft virus?

From: Derek Glidden (dglidden@illusionary.com)
Date: Fri May 17 2002 - 11:05:27 EDT


On Thu, 2002-05-16 at 22:22, Ed Centanni wrote:

> I suggest that your wife invest in a windows virus
> protection/elimination product and add the price to the cost of dealing
> with windows. That kind of thing is a MUST HAVE for any windows user
> connected to the internet. Depending on the version of windows, she may
> have to also add the price of a disk defragmenting product.

I second this recommendation.

I also recommend downloading AD-AWARE (http://www.lavasoft.com/) and
running it on a regular basis. AD-AWARE seeks out and destroys
"SPYWARE" which is becoming at least as, if not more, prevalent and
malicious as viruses on the Windows platform. Virtually all "Freebie"
software, particularly file-sharing, that you will download for Windows
today includes spyware. Some are simple things that try to display ads
when you're not doing anything, others (like Gator or the stuff that
comes with Kazaa) are much more malicious and do things like track all
keyboard and mouse clicks, contents of web forms, and browsing actions
and submit them back to the spyware company, or even allow incoming
connections to your box to install new software from the spyware company
without your knowledge.

One of our clients ran Ad-Aware on a relatively newly-installed Windows
computer and found over 170 individual pieces of spyware installed on
his machine just from having installed a few freebie apps that installed
spyware which installed more spyware, etc.

The sad thing is, spyware are not strictly trojans because, if you
bother to read through the license agreement you blithely click "Agree"
to when you install the software, invariably will be a sentence in one
paragraph deep inside that says "You agree to allow us to install
additional software on your machine at our discretion." So you've given
permission, you just didn't notice that you did.
 

-- 
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
#!/usr/bin/perl -w
$_='while(read+STDIN,$_,2048){$a=29;$b=73;$c=142;$t=255;@t=map
{$_%16or$t^=$c^=($m=(11,10,116,100,11,122,20,100)[$_/16%8])&110;
$t^=(72,@z=(64,72,$a^=12*($_%16-2?0:$m&17)),$b^=$_%64?12:0,@z)
[$_%8]}(16..271);if((@a=unx"C*",$_)[20]&48){$h=5;$_=unxb24,join
"",@b=map{xB8,unxb8,chr($_^$a[--$h+84])}@ARGV;s/...$/1$&/;$d=
unxV,xb25,$_;$e=256|(ord$b[4])<<9|ord$b[3];$d=$d>>8^($f=$t&($d
>>12^$d>>4^$d^$d/8))<<17,$e=$e>>8^($t&($g=($q=$e>>14&7^$e)^$q*
8^$q<<6))<<9,$_=$t[$_]^(($h>>=8)+=$f+(~$g&$t))for@a[128..$#a]}
print+x"C*",@a}';s/x/pack+/g;eval 

usage: qrpff 153 2 8 105 225 < /mnt/dvd/VOB_FILENAME \ | extract_mpeg2 | mpeg2dec -

http://www.cs.cmu.edu/~dst/DeCSS/Gallery/ http://www.eff.org/ http://www.anti-dmca.org/



This archive was generated by hypermail 2.1.3 : Fri Aug 01 2014 - 18:48:54 EDT