What the Blazes happened three weeks ago???

  • Thread starter Thread starter Chiam123
  • Start date Start date
C

Chiam123

Starting about three weeks ago, all manner of System Messenger type MALWARE
began showing up on our Windows XP machine [SONY VAIO P2.4 GHz]...but when I
checked with "Shoot the messenger" [available FREE from GRC.com], it indicated
that that System Messenger port in the TCP/IP protocall was STILL blocked.

We enforce strict bans on Downloading anything from KAAZA, etc, and in fact
have never downloaded stuff...[ the 'Shoot the Messenger' utility from Gibson
Research [grc.com] was downloaded on a Gateway P II 450 MHz running Win98 SP#1]

Is there something inherently wrong with XP???

Right now, I have placed a warning sign "THIS MACHINE IS INFECTED...INTERNET
ACTIVITY FORBIDDEN!!!" and disconnected the the modem cable.

Right now, that XP machine is used only as a Printer Driver for our other two
machines [Win 98, Win ME], where we SNEAKERNET the documents to be printed on
Floppies and Zip Disks.

Oh! yes, my wife can still play Solitare and Hearts...off line, of course!!

I am NOT looking forward to rebuilding the software suite from scratch!!

Also, where does the FIFTY DIGIT Authentication number appear???

The stuff from SONY has many serial numbers, but neither alone nor in the
Aggregate, total 50 digits!

Could we get some help here???

Thanks in advance!!!
 
Try some other malware apps like ad-aware (lavasoft) and spybot, STM seems
to be a very restricted app that only deals with one facet of one section
of malware.

Also, got a firewall? Got anti-virus? Got the latest Windows updates? If the
answer to any of these but esp firewall and updates is 'no' then you could
have been infected just by being connected to the net.
 
Sure
Don't rebuild anything..


STEP

Update your antivirus
Download, install, and UPDATE the following programs

Spybot-S&D (http://spybot.safer-networking.de/
AND (it's AND, not OR
Ad-aware (http://www.lavasoftusa.com/

Disconnect Internet
Restart computer in Safe Mode (see Help(F1) for more information), and scan it using all these programs, antivirus first

STEP

Low transfat and low carb diet for your pc or How to optimize Windows XP for the best performance

http://www.rikhard.com (link in the middle

Always keep antivirus and spy removal applications (links on the bottom of the page) up-to-date, and scan regularly.
 
Here is a list of freeware that will solve your problem. SpywareBlaster, SpywareGuard, Spybot Search and Destroy, Adaware, and HijackThis. Get them and learn how to use them. {:~)
 
Chiam123 said:
Starting about three weeks ago, all manner of System Messenger type MALWARE
began showing up on our Windows XP machine [SONY VAIO P2.4 GHz]...but when I
checked with "Shoot the messenger" [available FREE from GRC.com], it indicated
that that System Messenger port in the TCP/IP protocall was STILL blocked.

Go to http://aumha.org/a/quickfix.htm and get the linked tools -
especially CWShredder. It is much easier to pick up these nasties than
you seem to think.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Back
Top