Boat Drinks  

Go Back   Boat Drinks > General > General Disruption

Reply
 
Thread Tools Display Modes
Old 23-04-2010, 18:11   #1
A Place of Light
Absinthe
 
Join Date: Dec 2007
Posts: 1,247
Default xp smart security 2010

Somehow I got stung by this one last night and, as it seems to be doing the rounds, I thought I'd help future proof any of you against having the PITA I did. Basically, it stops ".exe" files from working (or rather it deletes the info telling windows what to do with an ".exe" file), so you can't launch browser windows etc etc.
As most of you will already have Malwarebytes installed, just click *Here* and save the reg file. Then, if you catch this nasty little exploit, all you'll need to do is double click on the reg file (under xp smart security 2010 you can still open "my documents" folder), reboot, then run Malwarebytes and you're back in business.

Last edited by A Place of Light; 23-04-2010 at 23:35.
A Place of Light is offline   Reply With Quote
Old 23-04-2010, 22:58   #2
Dymetrie
A large glass of Merlot
 
Dymetrie's Avatar
 
Join Date: Jun 2006
Location: Letchworth with a Lightsaber
Posts: 5,819
Default

Not entirely sure what you're 'saving' us from here, lad...

Care to elucidate?
__________________

Khef, Ka and Ka-Tet....
Dymetrie is offline   Reply With Quote
Old 23-04-2010, 23:31   #3
A Place of Light
Absinthe
 
Join Date: Dec 2007
Posts: 1,247
Default

Quote:
Originally Posted by Dymetrie View Post
Not entirely sure what you're 'saving' us from here, lad...

Care to elucidate?
Google it. Malware of the nasty variety. No idea how I "got" it but it was annoying until I got rid of it.
A Place of Light is offline   Reply With Quote
Old 23-04-2010, 23:49   #4
Mark
Screaming Orgasm
 
Join Date: Jul 2006
Location: Newbury
Posts: 15,194
Default

Don't know why but I decided googling it might be asking for trouble. I did though, and eventually found a site I recognised, so to save everyone the bother...

http://www.bleepingcomputer.com/viru...rus-vista-2010

Contains details of what it does and also the fix (same as above).
Mark is offline   Reply With Quote
Old 23-04-2010, 23:54   #5
Feek
ex SAS
 
Feek's Avatar
 
Join Date: Jun 2006
Location: JO01ou
Posts: 10,062
Default

barstardos
__________________
Feek is offline   Reply With Quote
Old 24-04-2010, 00:03   #6
A Place of Light
Absinthe
 
Join Date: Dec 2007
Posts: 1,247
Default

Quote:
Originally Posted by Feek View Post
barstardos
Yep. I couldn't even open a browser window to look for a fix because iexplorer.exe, like every other frickin' exe on my machine wouldn't work.
A Place of Light is offline   Reply With Quote
Old 24-04-2010, 00:04   #7
Mark
Screaming Orgasm
 
Join Date: Jul 2006
Location: Newbury
Posts: 15,194
Default

Yup. Seems like an awful lot of effort to go to, but if it draws in a few credit card numbers for the scammers to empty (which I'm sure it will) then their job is done.
Mark is offline   Reply With Quote
Old 24-04-2010, 00:12   #8
A Place of Light
Absinthe
 
Join Date: Dec 2007
Posts: 1,247
Default

Quote:
Originally Posted by Mark View Post
Yup. Seems like an awful lot of effort to go to, but if it draws in a few credit card numbers for the scammers to empty (which I'm sure it will) then their job is done.
Quite an intrusive piece of work, this one. Turns off AV/Firewall too. The reason I linked to the reg file is if you download it before you end up on the receiving end (which may not happen but be prepared and all that jazz) then you'll be able to restore order immediately. If you are unlucky enough to contract this and you haven't already got hold of the reg file then you'll need another machine to access the removal instructions.
A Place of Light is offline   Reply With Quote
Old 24-04-2010, 07:39   #9
Nutcase
Moonshine
 
Nutcase's Avatar
 
Join Date: Dec 2006
Location: Chelmsford, innit!
Posts: 3,979
Default

Sounds very similar to what I had to fight my way through recently on a friend's computer.
Nutcase is offline   Reply With Quote
Old 25-04-2010, 16:51   #10
Belmit
The Mouse King of Denmark
 
Belmit's Avatar
 
Join Date: Jul 2006
Location: The Winchester
Posts: 6,476
Default

Got this on a laptop at work the other day - .exe files seemed to open OK in a DOS window so I managed to get into regedit and annihilate it!
__________________
Belmit is offline   Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT +1. The time now is 06:15.


Powered by vBulletin® Version 3.7.4
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.