| View previous topic :: View next topic |
| Author |
Message |
datababe Warrior

Joined: 13 Dec 2004 Last Visit: 10 Oct 2012 Posts: 217 Location: Inside your head
|
|
| Back to top |
|
 |
wyrmrider Warrior Addict
Joined: 25 Jun 2004 Last Visit: 17 Jan 2009 Posts: 730
|
|
| Back to top |
|
 |
suzi Site Admin

Joined: 27 Jul 2003 Last Visit: 25 May 2013 Posts: 10271 Location: sunny California
|
Posted: Mon Jan 05, 2009 9:08 pm Post subject: |
|
|
I've been looking at the Ironkey also. Do you know if any retail stores sell them? I looked some time ago and could not find any.
If anyone wants to check it out...
https://www.ironkey.com/ _________________ Former Microsoft MVP 2005-2009, Consumer Security
Please do not PM or Email me for personal support. Post in the Forums instead and we will all learn.  |
|
| Back to top |
|
 |
datababe Warrior

Joined: 13 Dec 2004 Last Visit: 10 Oct 2012 Posts: 217 Location: Inside your head
|
|
| Back to top |
|
 |
Proactive Services Security Expert

Joined: 06 Feb 2006 Last Visit: 24 Jun 2009 Posts: 169 Location: Hampshire, UK
|
Posted: Thu Jan 08, 2009 3:16 am Post subject: |
|
|
I've come across such malware twice in the last few months. One came from an iPod which NOD32 nabbed, thankfully. Other one was at a 20+ PC installation...what a mess that was! _________________ Adam Piggott, Proprietor, Proactive Services (Computing)
Professional, friendly computer support in Hampshire, UK. |
|
| Back to top |
|
 |
datababe Warrior

Joined: 13 Dec 2004 Last Visit: 10 Oct 2012 Posts: 217 Location: Inside your head
|
Posted: Fri Jan 16, 2009 11:18 am Post subject: |
|
|
They may be after more than just $49.99 per victim...
http://www.darkreading.com/security/attacks/showArticle.jhtml;jsessionid=TRX1XWCD5MAYGQSNDLOSKH0CJUNN2JVN?articleID=212900793
| Quote: |
| The perpetrators have been cranking out new variants of the worm to evade detection, and, so far, its main mission has been pushing rogue antivirus software. |
And to tie it together....
http://www.theregister.co.uk/2009/01/15/conficker_worm/
| Quote: |
| The malware also infects removable devices and network shares using a special autorun.inf file. |
Hmmmm. The infestation that snapped at my thumb drive came from a machine riddled with (among other things) "Windows Antispyware 2009". Nice.
This is an interesting read:
http://www.f-secure.com/weblog/archives/00001579.html
| Quote: |
| A very large part of that traffic is coming from corporate networks, through firewalls, proxies, and NAT routers. Meaning that one unique IP address that we see could very well be 2,000 infected workstations in real life. |
Oh, ugh.
 _________________ - Datababe
Until you spread your wings, you'll have no idea how far you can walk.
http://redoakranch.x10hosting.com
http://datababe007.blogspot.com |
|
| Back to top |
|
 |
suzi Site Admin

Joined: 27 Jul 2003 Last Visit: 25 May 2013 Posts: 10271 Location: sunny California
|
|
| Back to top |
|
 |
Writer Warrior
Joined: 28 Feb 2007 Last Visit: 05 Oct 2009 Posts: 57
|
Posted: Mon Feb 23, 2009 6:22 pm Post subject: |
|
|
| I have a question about USB viruses, though not specifically this one. Obviously the best way to protect yourself from a USB virus would be to only use USB drives that don't have viruses on them, but is having autorun disabled and scanning the USB drive before you open it a way to make sure you don't get infected? Or can a USB virus still get on your computer even if you have autorun disabled and do a virus scan? |
|
| Back to top |
|
 |
Proactive Services Security Expert

Joined: 06 Feb 2006 Last Visit: 24 Jun 2009 Posts: 169 Location: Hampshire, UK
|
Posted: Tue Feb 24, 2009 2:58 am Post subject: |
|
|
If autoplay is *properly* disabled then I do not believe that infection can occur automatically, unless it leverages an exploit in Windows in the future. _________________ Adam Piggott, Proprietor, Proactive Services (Computing)
Professional, friendly computer support in Hampshire, UK. |
|
| Back to top |
|
 |
datababe Warrior

Joined: 13 Dec 2004 Last Visit: 10 Oct 2012 Posts: 217 Location: Inside your head
|
Posted: Tue Feb 24, 2009 9:36 pm Post subject: |
|
|
The key there is properly (and thoroughly).
The flip side of the coin is to make sure your thumb drives aren't at risk of getting compromised by an infected pc. I've been busy shoring up my defenses on that front - I don't need my critical toolkit rendered useless by a computer that I'm trying to rescue!  _________________ - Datababe
Until you spread your wings, you'll have no idea how far you can walk.
http://redoakranch.x10hosting.com
http://datababe007.blogspot.com |
|
| Back to top |
|
 |
Nightmaretony Warrior
Joined: 15 Mar 2005 Last Visit: 30 Jun 2011 Posts: 256 Location: Meadowbrook
|
Posted: Sun Mar 08, 2009 4:02 pm Post subject: |
|
|
My habit is to throw me saver toolkit on a CD Rom. Viruses have a HELL of a time trying to infect one! _________________ For this is the place
where dreams
and nightmares
are birthed
and bred
Nightmare Park |
|
| Back to top |
|
 |
datababe Warrior

Joined: 13 Dec 2004 Last Visit: 10 Oct 2012 Posts: 217 Location: Inside your head
|
Posted: Mon Mar 09, 2009 7:28 am Post subject: |
|
|
Yep, me too. My newest plaything is a Puppy Linux bootable CD. That un' is a tough nut to crack. The downside is I have a hell of a time updating tools on a CD. I can't just burn new CDs every other week or so - my budget's so tight these days it squeaks going into a turn...  _________________ - Datababe
Until you spread your wings, you'll have no idea how far you can walk.
http://redoakranch.x10hosting.com
http://datababe007.blogspot.com |
|
| Back to top |
|
 |
mikey Malware Expert

Joined: 12 Feb 2004 Last Visit: 03 Sep 2012 Posts: 1061 Location: CenTex
|
|
| Back to top |
|
 |
datababe Warrior

Joined: 13 Dec 2004 Last Visit: 10 Oct 2012 Posts: 217 Location: Inside your head
|
Posted: Tue Mar 10, 2009 5:43 am Post subject: |
|
|
I'll check that out, thanks. I do have autorun disabled six ways from Sunday, but I know a lot of people who don't. My potential problem is rather the opposite; we handle a lot of pcs that contain unknowns, and a lot of our tools are on thumb drives. I think I've got us covered on that front - for now.
I suspect though it's only a matter of time before we get a call for help from someone with an infected thumb drive. We know for sure of one that's loose in the locality, but the user is in denial. He's brought down one network we've seen (and repaired) first hand, but it belonged to a church so they forgave him and opted not to pursue the matter.
So I guess we just wait until he blows up something that belongs to a less forgiving group and we get a call from them.  _________________ - Datababe
Until you spread your wings, you'll have no idea how far you can walk.
http://redoakranch.x10hosting.com
http://datababe007.blogspot.com |
|
| Back to top |
|
 |
|