Re: anti-malware progs ineffective

From: Ken Smith (kensmith_at_green.rahul.net)
Date: 01/29/05


Date: Sat, 29 Jan 2005 17:04:49 +0000 (UTC)

In article <pan.2005.01.29.04.19.21.358059@att.bizzzz>,
keith <krw@att.bizzzz> wrote:
[...me...]
>> That is sort of what I suggested, but I don't think you can trust the
>> downloaded version of a program for very long. The next time your
>> computer gets hit, the virus may modify the downloaded files too.
>
>They normally infect the installed files, not the raw downloaded files.

If the download file is a selfextracting file you run, it can be infected.
Many viruses watch what you run and infect the files you exec. If you
save the file and don't exec the saved on the virus may not see it to
infect it.

>
>>>> Every time you create something you don't want to lose, write it onto a
>>>> CD.
>>>
>>>...along with all the malware already installed.
>>
>> The "it" I mean is specifically what you created ei: the file you
>> produced. If it gets infected before you save it to CD you lose it but
>> assuming that you detect the virus, all the stuff before that point is
>> safe.
>
>But that backup will re-infect all else after you reinstall.

I still don't see your point or perhaps you don't see mine. I'll try an
example:

(1)
I make a documentment called Physics.html

(2)
I save Physics.html to the CD.

(3)
Months pass and lots of things happen

(4)
My computer gets infected

(5)
I clean off my system and re-install from safe media

(6)
I copy Physics.htlm from the CD

At this point my computer is not infected and I have Physics.html back.

>> My wifes computer is less than 4 months from its last re-install and
>> already stuff doesn't work. Re-installing is a majop pain because it uis
>> an upgrade version so it wants to keep all the malware or refuses to
>> install. When it is installed, it is complete virus bait and has to be
>> patched, patched and patched again before the network is used.
>
>It sounds like you have some bit-rot going on there. Have you totally
>eliminated the possibility of a hardware fault? I haven't had much
>problem, well, at least until I tried installing PDF Reader 7.0, whcih
>pretty much trashed all other versions, and itself. Since, downloads
>have been iffy.

It is hard to completely prove that there is not a hardware fault but I
don't think there is one. The computer always seems to work fine until it
is connected to the network. If I install Win98 on it, it works fine even
when connected to the Network. Neither of these tests have been long
enough to be sure.

The failures seem to follow a pattern. The first one observed is usually
that the machine will not shut down or that it runs very slow. When I
check it after that there is usually an extra *.VXD file.

-- 
--
kensmith@rahul.net   forging knowledge


Relevant Pages

  • Re: computer virus usegroups
    ... New Virus Stealing Information from Computer Users ... You can infect ... attempt to download from a Russian website. ... Internet Explorer to protect users of its Internet Explorer browsers ...
    (sci.med.diseases.lyme)
  • Re: AIM Send out random messages
    ... > dont want to take chances ... you want me to install the firewall (thats what ... > 5) Download ZoneAlarm from www.zonelabs.com. ... > I downloaded the latest virus definations for intellegent updator... ...
    (microsoft.public.security)
  • Re: AIM Send out random messages
    ... you want me to install the firewall (thats what ... or do you want me to check to see if i can download properly?? ... > I downloaded the latest virus definations for intellegent updator... ... > using Intellegent Updater. ...
    (microsoft.public.security)
  • Re: Microsoft Internet Problem
    ... Second, download, install and run Ad Aware: ... Also, open Internet Explorer, go to Tools, select Internet Options, go to ... If you do not have an XP CD, you can download this application ... I took the computer to a computer tech last>>> week and he said that problem was caused by a virus. ...
    (microsoft.public.windowsxp.accessibility)
  • Re: Isass.exe
    ... Process Name: Optix.Pro virus ... Make sure of these settings and nothing will install without you ... [[Specifies to automatically download and install Web components if a Web ... Bazooka Adware and Spyware Scanner v1.13 ...
    (microsoft.public.windowsxp.newusers)