Civilization has finally reached the outskirts of Bergen, ..

G

Guest

Guest
Archived from groups: rec.games.computer.ultima.dragons (More info?)

First we learned how to read and write.
Then we got electricity.
Then we got rid of the swedes.
Then some of us got broadband connection to the Internet.
Then some more of us got broadband connection to the Internet.
Then quite a lot of us got broadband connection to the Internet.
....
Today I got broadband connection to the internet.
Say no more!!!


pibbur, the fastest dragon at the outskirts of Bergen
Never mind the the trojan (mcafe32.exe) who needed no more than 5
minutes to infect the computer, the future's so bright, I gotta wear shades.
 
Archived from groups: rec.games.computer.ultima.dragons (More info?)

Words to the wise, pibbur <oopsREM.OVE512@bergenCAP.ITAonline.noLS>
wrote:

>First we learned how to read and write.

Yeah, in a language no one knows.

>Then we got electricity.

Which you need for half of the year just to light the streets
partially.

>Then we got rid of the swedes.

That really helped.

>Then some of us got broadband connection to the Internet.

Oh.

>Then some more of us got broadband connection to the Internet.

Ohoh.

>Then quite a lot of us got broadband connection to the Internet.

Ohohoh...

>...
>Today I got broadband connection to the internet.
>Say no more!!!

....

>pibbur, the fastest dragon at the outskirts of Bergen
>Never mind the the trojan (mcafe32.exe) who needed no more than 5
>minutes to infect the computer, the future's so bright, I gotta wear shades.

Always install firewall first, then plug in network cable :)
 
Archived from groups: rec.games.computer.ultima.dragons (More info?)

Quoth pibbur <oopsREM.OVE512@bergenCAP.ITAonline.noLS>:
....
> pibbur, the fastest dragon at the outskirts of Bergen
> Never mind the the trojan (mcafe32.exe) who needed no more than 5
> minutes to infect the computer, the future's so bright, I gotta wear shades.

A PC connected to a broadband pipe without a firewall or antivirus
software will succumb to some sort of viral or hacker attack within 15
minutes, on average. Frightening.

But yay broadband, anyway! 😀
--
___________________________________________________________
\^\^//
,^ ( ..) Samurai Dragon -==UDIC Sig Code==-
| \ \ -==(UDIC)==- d++e+N T--Om+U146MA7'! L8u uC++
\ `^--^ \\\\\\\\//////// uF-uG++uLB+uA+nC++uR nH+nP+++
\ \ \ (2 Attentive Points) nI--nPT nS+++nT--wM-wC y+ a29
ksj ^--^ ___________________________________________________________
 
Archived from groups: rec.games.computer.ultima.dragons (More info?)

Claus Dragon wrote:
....

>
>>pibbur, the fastest dragon at the outskirts of Bergen
>>Never mind the the trojan (mcafe32.exe) who needed no more than 5
>>minutes to infect the computer, the future's so bright, I gotta wear shades.
>
>
> Always install firewall first, then plug in network cable :)

I had a firewall (ZoneAlarm), but I didn't pay much attention to it
until it told me that macafe32.exe was trying to access the internet.
Would I allow that. NOO WAY! At least I stopped it from reporting outside.

Yes, It was a silly mistake, but you know, I was eager to try the new
and beautiful world waiting for me...

pibbur
 
Archived from groups: rec.games.computer.ultima.dragons (More info?)

On Fri, 06 May 2005 22:25:13 +0200, pibbur
<oopsREM.OVE512@bergenCAP.ITAonline.noLS> wrote:

>Claus Dragon wrote:
>...
>
>>
>>>pibbur, the fastest dragon at the outskirts of Bergen
>>>Never mind the the trojan (mcafe32.exe) who needed no more than 5
>>>minutes to infect the computer, the future's so bright, I gotta wear shades.
>>
>>
>> Always install firewall first, then plug in network cable :)
>
>I had a firewall (ZoneAlarm), but I didn't pay much attention to it
>until it told me that macafe32.exe was trying to access the internet.
>Would I allow that. NOO WAY! At least I stopped it from reporting outside.
>
>Yes, It was a silly mistake, but you know, I was eager to try the new
>and beautiful world waiting for me...
>
>pibbur

So...why do you think the virus came from broadband? You have a sw
firewall so that should protect you. In all likelihood you downloaded and
executed an infected file, and that didn't require broadband. What AV
product did you use to identify the problem? There could very well be
more traces of it or other malware residing on your system.

--
The Polychromic Dragon of the -=={UDIC}==-
http://home.comcast.net/~macecil/
http://home.comcast.net/~safehex/
RGCUD Photo Gallery: http://home.comcast.net/~rgcud/
 
Archived from groups: rec.games.computer.ultima.dragons (More info?)

On Fri, 06 May 2005 22:25:13 +0200, pibbur
<oopsREM.OVE512@bergenCAP.ITAonline.noLS> wrote:

>Claus Dragon wrote:
>...
>
>>
>>>pibbur, the fastest dragon at the outskirts of Bergen
>>>Never mind the the trojan (mcafe32.exe) who needed no more than 5
>>>minutes to infect the computer, the future's so bright, I gotta wear shades.
>>
>>
>> Always install firewall first, then plug in network cable :)
>
>I had a firewall (ZoneAlarm), but I didn't pay much attention to it
>until it told me that macafe32.exe was trying to access the internet.
>Would I allow that. NOO WAY! At least I stopped it from reporting outside.
>
>Yes, It was a silly mistake, but you know, I was eager to try the new
>and beautiful world waiting for me...
>
>pibbur
You sure that wasn't Mcafee32.exe, as in your antivirus?
-=UDIC=-
Optician Dragon
"Life Is Like A Can Of Tuna Fish - Sometimes It's Good, Sometimes It's Not So Good"
-Alfred E. Neumann
 
Archived from groups: rec.games.computer.ultima.dragons (More info?)

On Fri, 06 May 2005 23:22:02 GMT, Optician Dragon
<DragonLensman1@verizon.net> wrote:

>You sure that wasn't Mcafee32.exe, as in your antivirus?

It could be some malware spoofing a similar name to avoid detection.

--
The Polychromic Dragon of the -=={UDIC}==-
http://home.comcast.net/~macecil/
http://home.comcast.net/~safehex/
RGCUD Photo Gallery: http://home.comcast.net/~rgcud/
 
Archived from groups: rec.games.computer.ultima.dragons (More info?)

Eek! pibbur wrote:
> First we learned how to read and write.
> Then we got electricity.
> Then we got rid of the swedes.
> Then some of us got broadband connection to the Internet.
> Then some more of us got broadband connection to the Internet.
> Then quite a lot of us got broadband connection to the Internet.
> ...
> Today I got broadband connection to the internet.
> Say no more!!!
>
> pibbur, the fastest dragon at the outskirts of Bergen
> Never mind the the trojan (mcafe32.exe) who needed no more than 5
> minutes to infect the computer, the future's so bright, I gotta wear shades.

Happy go lucky to you!

--
Ashikaga a26
 
Archived from groups: rec.games.computer.ultima.dragons (More info?)

Samurai wrote:

> A PC connected to a broadband pipe without a firewall or antivirus
> software will succumb to some sort of viral or hacker attack within 15
> minutes, on average. Frightening.

Here's an updated graph showing survival times:
http://isc.sans.org/survivalhistory.php

SP2 came out around August, right? I don't see much of a difference...

--
Cape Dweller Dragon
 
Archived from groups: rec.games.computer.ultima.dragons (More info?)

On Sat, 07 May 2005 04:23:18 -0400, Cape Dweller <usenet@ciotog.net>
wrote:

>Samurai wrote:
>
>> A PC connected to a broadband pipe without a firewall or antivirus
>> software will succumb to some sort of viral or hacker attack within 15
>> minutes, on average. Frightening.
>
>Here's an updated graph showing survival times:
>http://isc.sans.org/survivalhistory.php
>
>SP2 came out around August, right? I don't see much of a difference...

But it wasn't forced down the autoupdater's throats until April 12th.

Anyhow I have a Windows Server 2003 machine that is directly on the
Internet, no router, no NAT, no firewall, no AV. No viruses or worms or
anything. Darn it. 😉

Not sure if that's because there aren't much of anything to be vulnerable
on it after I tweaked it or if it's just Comcast filtering stuff.

--
The Polychromic Dragon of the -=={UDIC}==-
http://home.comcast.net/~macecil/
http://home.comcast.net/~safehex/
RGCUD Photo Gallery: http://home.comcast.net/~rgcud/
 
Archived from groups: rec.games.computer.ultima.dragons (More info?)

"Polychromic" <macecil@comcast.net> wrote in message
news:723p71d6o9ielt4qvvf3d2giq026lk2a7u@4ax.com...
> On Sat, 07 May 2005 04:23:18 -0400, Cape Dweller <usenet@ciotog.net>
> wrote:
>
>>Samurai wrote:
>>
>>> A PC connected to a broadband pipe without a firewall or antivirus
>>> software will succumb to some sort of viral or hacker attack within 15
>>> minutes, on average. Frightening.
>>
>>Here's an updated graph showing survival times:
>>http://isc.sans.org/survivalhistory.php
>>
>>SP2 came out around August, right? I don't see much of a difference...
>
> But it wasn't forced down the autoupdater's throats until April 12th.
>
> Anyhow I have a Windows Server 2003 machine that is directly on the
> Internet, no router, no NAT, no firewall, no AV. No viruses or worms or
> anything. Darn it. 😉

Think about it this way. /How would you know?/

> Not sure if that's because there aren't much of anything to be vulnerable
> on it after I tweaked it or if it's just Comcast filtering stuff.

--
The Triad
 
Archived from groups: rec.games.computer.ultima.dragons (More info?)

On Sat, 7 May 2005 10:51:38 +0100, "The Triad" <wanderer@beeb.web> wrote:

>"Polychromic" <macecil@comcast.net> wrote in message
>news:723p71d6o9ielt4qvvf3d2giq026lk2a7u@4ax.com...
>> On Sat, 07 May 2005 04:23:18 -0400, Cape Dweller <usenet@ciotog.net>
>> wrote:
>>
>>>Samurai wrote:
>>>
>>>> A PC connected to a broadband pipe without a firewall or antivirus
>>>> software will succumb to some sort of viral or hacker attack within 15
>>>> minutes, on average. Frightening.
>>>
>>>Here's an updated graph showing survival times:
>>>http://isc.sans.org/survivalhistory.php
>>>
>>>SP2 came out around August, right? I don't see much of a difference...
>>
>> But it wasn't forced down the autoupdater's throats until April 12th.
>>
>> Anyhow I have a Windows Server 2003 machine that is directly on the
>> Internet, no router, no NAT, no firewall, no AV. No viruses or worms or
>> anything. Darn it. 😉
>
>Think about it this way. /How would you know?/

Oh, I know things about computers.

--
The Polychromic Dragon of the -=={UDIC}==-
http://home.comcast.net/~macecil/
http://home.comcast.net/~safehex/
RGCUD Photo Gallery: http://home.comcast.net/~rgcud/
 
Archived from groups: rec.games.computer.ultima.dragons (More info?)

Polychromic wrote:
> On Fri, 06 May 2005 23:22:02 GMT, Optician Dragon
> <DragonLensman1@verizon.net> wrote:
>
>
>>You sure that wasn't Mcafee32.exe, as in your antivirus?
>
>
> It could be some malware spoofing a similar name to avoid detection.
>
Yes. I haven't McAfee AV on my PC.

From: http://www.sophos.com/virusinfo/analyses/w32rbotxg.html:

Name W32/Rbot-XG
Type Worm
How it spreads Network shares
Side effects

* Allows others to access the computer
* Steals information
* Downloads code from the internet
* Reduces system security
* Installs itself in the Registry
Aliases
* W32/Sdbot.worm.gen.y
* WORM_RBOT.APU
--
It seems to be fairly new. In the msconfig startup list it identifies
itself as Windows MediaPlayer.

I had forgot to turn off windows filesharing on the NIC on the computer,
a laptop which I only use connected to my home network. I guess that's
how it entered.

Zonealarm gave several warnings, but since I had used the computer very
little on the internet before, a lot of warnings concerned perfectly
valid actions. It wasn't until the "mcafe32.exe is trying to acess the
internet", that it was obvious to me that something fishy was going on.
(Of couse I denied that redquest).

I use Avast on the PC and it was updated. But it didn't detect anything.
So perhaps I should switch to another AV software. We use F-secure at
work, and we have deal with F_secure alloowing employees to install it
at home.

pibbur
 
Archived from groups: rec.games.computer.ultima.dragons (More info?)

Quoth pibbur <oopsREM.OVE512@bergenCAP.ITAonline.noLS>:
....
> Yes. I haven't McAfee AV on my PC.

*grin* That's normally a /fairly/ good sign it wasn't genuine, then.
--
___________________________________________________________
\^\^//
,^ ( ..) Samurai Dragon -==UDIC Sig Code==-
| \ \ -==(UDIC)==- d++e+N T--Om+U146MA7'! L8u uC++
\ `^--^ \\\\\\\\//////// uF-uG++uLB+uA+nC++uR nH+nP+++
\ \ \ (2 Attentive Points) nI--nPT nS+++nT--wM-wC y+ a29
ksj ^--^ ___________________________________________________________
 
Archived from groups: rec.games.computer.ultima.dragons (More info?)

Samurai wrote:
> Quoth pibbur <oopsREM.OVE512@bergenCAP.ITAonline.noLS>:
> ...
>
>>Yes. I haven't McAfee AV on my PC.
>
>
> *grin* That's normally a /fairly/ good sign it wasn't genuine, then.
And I've never heard McAffee AV masquerading itself as Windows Media
Player (BTW I don't use that one either).

pibbur
If you don't succed the first time, skydiving is /probably/ not for you.
 
Archived from groups: rec.games.computer.ultima.dragons (More info?)

Polychromic wrote:
> On Sat, 7 May 2005 10:51:38 +0100, "The Triad" <wanderer@beeb.web> wrote:
>
>>"Polychromic" <macecil@comcast.net> wrote in message
>>news:723p71d6o9ielt4qvvf3d2giq026lk2a7u@4ax.com...
>>
>>>But it wasn't forced down the autoupdater's throats until April 12th.
>>>
>>>Anyhow I have a Windows Server 2003 machine that is directly on the
>>>Internet, no router, no NAT, no firewall, no AV. No viruses or worms or
>>>anything. Darn it. 😉
>>
>>Think about it this way. /How would you know?/
>
> Oh, I know things about computers.

Like the iAshi?

-Lumina Dragon
 
Archived from groups: rec.games.computer.ultima.dragons (More info?)

Samurai wrote:
> Quoth pibbur <oopsREM.OVE512@bergenCAP.ITAonline.noLS>:
> ...
>
>>Yes. I haven't McAfee AV on my PC.
>
>
> *grin* That's normally a /fairly/ good sign it wasn't genuine, then.

Heh. That's like all the junk I find in my inbox. Asking me to confirm
accounts I don't have, or stuff about orders I never made. Honestly.
They don't seem to know they're dealing with someone who relies as
little on e-shopping as possible - which is zero, 95%+ of the time.

-Lumina Dragon