look in here for it, or out there if not here

Loading...

Thursday, April 11, 2013

Garda "false" webpage

Ok, anyone that recognises the above, you can ignore the rest of this. Others read on.

There has been a new malware page doing the rounds and it's causing issues.

The first sign anyone has an issue is when they are confronted by a "webpage" saying that their machine has been accessing "dubious" websites, and has ben reported to the Garda. Next is the demand for a payment via a website payment system to "release" their machine from the problem.
Firstly, the Irish Garda dot not demand payment in this way. If you get this , report it to the Garda.

How are you infected ?

Normally you get an email from FedEx, or another reputable company, stating that you missed a delivery or payment, or some such. they ask you to click on a link to get further details. At this point, the infection is installed, and the reason anti-virus doesn't pick up on it, is because you are installing something, the link is a program that infects your machine and AV programs won't prevent you from doing this. the infection not normally instant, it will wait a random time or for the next reboot. Always be wary of emails that ask you to confirm details by re-entering them, always check the page for poor English, poor grammar, typo's and especially downloadable links. The best advice is.

If not doubt, delete, and leave it. If it's important, you will be reminded. Also, when you do click and get infected once, this confirms that the account is active and they can attack again.

To remove :

I suggest downloading malwarebytes, free and excellent for clearing 99% of infections . No I don't work for them, but found their software to be very good.

Top tip :

Just because it appears to be legit, doesn't mean it is. Hover the mouse over the link and you wil normally see it has nothing to do with the site in question.

set up an email account to subscribe to initially for services. If after time, you don't receive spam, than it's probably ok. NEVER use your primary email account for subscribing to services or email notifications. Keep it just for emailing trusted people / services.

Hope I have helped and as always this is help and I can not be help responsible for anything here that might cause damage or loss of data. USE THIS ADVICE AT YOUR OWN RISK!

As they say, be careful out there !



Wednesday, February 09, 2011

ms time service under ms Hyper-v

Another post from me, am I getting ahead of myself?
Well, down to business. Over the last couple of months I have been experiencing a problem with my windows 200X servers, ( well some of them anyway), not holding time sync with the NTP which was DC. Tried all the Ms solutions they had, w32tm this, net stop that. No matter what I did on the domain, the time would immediately reset 6 minutes ahead, making any time reliant service have problems. After checking the event log, spotted that there was a VM IC Time service provider. Hazarding a guess VM was , surprise, Virtual Machine, looked atht e hosts and lo and behold, there was my 6 minute time difference, staring at me from the bottom right of the taskbar. Even though the AD was outside of the VM host, and all the servers were told to get their time corrections from this, the VM Host overrode this and provided the time service from itself. SO, pointed the host to the AD, resynced, and Presto!, all is well in the land of the VM's below the host.

Coouldn't find any documents on it , so made this up, in case anyone else has the same problem.

Hope that helps someone and saves them the time chasing a ghost, or is that a VHD?

TTFN

Wednesday, February 02, 2011

win defrag malware



Fellow earthicans,
I have spent the last two days trying to fix a problem for a friend on his Pc, called WIN Defrag. This malware is much like our "old friend" ms antivirus 2010, in both look and feel but has a extra twist, it hides disk 0 from the computer management console, so you cannot check or change it.
My "discovered method of removal is below ( Windows XP pro sp3, may work with vista / win 7 )
Run the following in safe mode with networking, ( when machine boots after bios and before windows splash screen, hit f8 and select safe mode with networking)
download malwarebytes and update
run and clear all discovered malware.
download stinger from mcafee, free utility and very thorough, takes about an hour .
Load XP pro cd in cd drive, and boot from this, select repair option and run fixmbr. If there was a message that the mbr file is damaged or not a supported type select yes to repair. type exit and when check that the drive has returned to the Disk management screen.
( these instructions are provided, "as is", and I would suggest that you back up any important information before doing any remedial work on any pc. You them at your own risk. forewarned is forarmed)
If in doubt, seek prefessional advice. If you use system restore, you may be able to restore the machine to a point before the infection but the method above provides for the least data loss.
Hope that helps.
ttfn

Sunday, October 03, 2010

bank bailout or "family busniess"

well, what a joke has Ireland become. Here's a simple question not asked yet ? "show me the money?" Sounds funny, but very serious. Money doesn't just disappear, as the taxpayer knows. When money is gone from the banks, no one has to show where it has gone. But the money to fix the problem, is very visable.
Government my arse, jobs for the boys more like. Ireland as an economy is screwed. All thanks to business greed, backed, and banked, by government . No pensions, no health system, no jobs, no future. We have been down this road before , and it seems to be every 20 odd years. At what time does a country learn that all this shite doesn't work. All we hear is government double speak, and twisty talk. " in the interim, at the end of the day, to the best of our ability, we will meter the water, tax the gas, vat the food, levy your house". the only winners with a job all the time, are the politicans, their consultants, the lawyers. A tribunal a year, makes more money for the law society. National interest is for the nation, not that shower of blowhards, fair play to the cement mixer man. that fat lazy "leader".

Bin the goverment, but that's too late. They have their pensions, we havent. Stick the fiscal plan up its own arse. Anglo, 23 years ago, Alan Dukes, make him Finance minister.

who has the money? Where is the money? Money does not just "disappear". It's somewhere so where. Brian Cowen, leave now, we do not want you Do a Bertie real quick. And take your cronies with you.

I rest my case