good security info

kem

New member
Member
Local time
10:55 AM
Messages
62
Location
USA
I had this folder on my hard-drive which had a lock icon on it. I looked in the folder and there was a file called install.exe. I tried to delete the folder and it wouldn't let me, said i needed admin priv. So i tried to delete the file within and it said the same thing. I am the admin. So i downloaded a program called Eraser to remove it and even it would not:mad: and it was written by a D.O.D. guy to shred data.
Finally...
I remembered a file i downloaded here awhile ago called Take Ownership which puts the option in the right-click menu. Took ownership and the folder/file is history.

I think this file was a virus or trojan or something bad because my pc got real sluggish:( all of a sudden a couple days ago and i just noticed the file. Long story short, download "Take Ownership".

cheers
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
custom / home built
OS
7 x64
Browser
Palemoon x64
yeah install.exe with a lock on it, sounds like the system quarantined it.
You probably could have deleted it easily if you had gone through your antivirus/defender.
 

My Computer

Computer Manufacturer/Model Number
Insane hobo technologies. ;-)
OS
Windows 7 x64
CPU
Intel i7 2600k
Motherboard
Asrock z68 extreme 4 gen 3
Memory
G.skill Ripjaw 16gigs @ 1866
Graphics Card(s)
Nvidia gtx580 (evga)
Sound Card
Integrated HD audio + hdmi
Monitor(s) Displays
24" ASUS widescreen + 42" insignia
Screen Resolution
1080p (1920x1080)
Hard Drives
128 Samsung 830
256 Samsung 840
3 x 1tb storage drive (various)
1 western digital 1tb (eSATA)
1 Seagate 1tb (eSATA)
PSU
1 kilowatt SLI/Crossfire rated Silverstone modular
Case
NZXT Phantom + additional 220 fan
Cooling
Zalmann
Keyboard
Microsoft wireless 3000 (v2)
Mouse
MS - wireless 5000 (bluetrack)
Internet Speed
depends on if you ask me or my provider.
Other Info
The above information is provided as is, and the author assumes no responsibility for issues it may cause with your sanity or fanboyism.
kem,
quite often malware doesn't travel alone.

Strongly recommend performing a full scan of all of your drives with MalwareBytes from MalwareBytes.org. Link in my signature.
 

My Computer

Computer Manufacturer/Model Number
Toshiba Satellite S875D-S7239 laptop
OS
MS Windows 7 Ultimate SP1 64-bit
CPU
AMD A10-4600M
Motherboard
AMD Pumori (Socket FT1)
Memory
6.00 GB Dual-Channel DDR3 @ 798MHz (11-11-12-28)
Graphics Card(s)
AMD Radeon HD 7660G
Sound Card
High Definition Audio Device
Monitor(s) Displays
Generic PnP Monitor (1600x900@60Hz)
Screen Resolution
1600x900@60Hz
Hard Drives
SSD 119GB Corsair CSSD-V128GB2 ATA Device
Keyboard
Standard PS/2 Keyboard
Mouse
HP Wireless Optical Mobile Mouse Model FHA-3410
Internet Speed
What the local pub, local coffee shop offers.
Other Info
Optical Drive:MATSHITA BD-CMB UJ160B ATA Device


Also have an Asus ha1002xp netbook with Win 7 Ultimate installed.
Or I probably could have drilled into the permissions maybe but this was quick.

Well I have no AV or FW installed but that is about to change. A couple hours ago I went to DuckDuckGo and got a plugin for Firefox that blocks all tracking.
duckduckgo is a search engine that does not put you in a filter bubble or track you like google does.
You wouldn't believe the massive tracking you are bombarded with the second you get on the web. The program is DoNotTrack+ or DNT+.

I'm installing comodo to lock down portals etc. and do a clean install.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
custom / home built
OS
7 x64
Browser
Palemoon x64
thanks karl :)
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
custom / home built
OS
7 x64
Browser
Palemoon x64
Well all is good n clean with my pc. Didn't do a clean install, I installed avast, did a complete sys scan and a boot scan, it found 1 infection and deleted it. Then I turned off avast and installed comodo firewall then turned avast self protection back on and the 2 programs seem to be playing nice with each other.:D But I wonder if they will fight over who gets to put something in either sandbox ?

Tell me something: My pc is behind a router and without comodo all ports are closed except telnet and with comodo on they're all closed except telnet. :mad:
How can I close it ?
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
custom / home built
OS
7 x64
Browser
Palemoon x64

My Computer

Computer Manufacturer/Model Number
Toshiba Satellite S875D-S7239 laptop
OS
MS Windows 7 Ultimate SP1 64-bit
CPU
AMD A10-4600M
Motherboard
AMD Pumori (Socket FT1)
Memory
6.00 GB Dual-Channel DDR3 @ 798MHz (11-11-12-28)
Graphics Card(s)
AMD Radeon HD 7660G
Sound Card
High Definition Audio Device
Monitor(s) Displays
Generic PnP Monitor (1600x900@60Hz)
Screen Resolution
1600x900@60Hz
Hard Drives
SSD 119GB Corsair CSSD-V128GB2 ATA Device
Keyboard
Standard PS/2 Keyboard
Mouse
HP Wireless Optical Mobile Mouse Model FHA-3410
Internet Speed
What the local pub, local coffee shop offers.
Other Info
Optical Drive:MATSHITA BD-CMB UJ160B ATA Device


Also have an Asus ha1002xp netbook with Win 7 Ultimate installed.
  • Like
Reactions: kem
Thanks Karl,

I'll look over that 2mar. zZzz

One reason I bought a router was so that it provided firewall protection therefore no need for a software firewall. The router looks like it is closing all ports except 23 and even with comodo it's like that so I might dump comodo.

Does the mse have a sandbox ?
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
custom / home built
OS
7 x64
Browser
Palemoon x64
One reason I bought a router was so that it provided firewall protection therefore no need for a software firewall.

Hi Kem,

You still need a software firewall - both compliment each other.

A hardware firewall (router) is the first line of defense, but if it is breached and you do not use a software firewall, there is no second layer of defense to protect the PC's sitting behind the hardware firewall. Hardware firewalls tend to be less sensitive to traffic leaving your PC on its way out to the interent : quite a problem if you unknowingly have a malicious bit of software sending every keystroke you type back to some hacker. A hardware-based firewall will not recognise this activity as malicious, and will not block it.

A software firewall on the other hand plays the role of the secondary defense. It specialises in filtering all the outbound traffic from your PC to the internet, and has the ability to determine what is malicious traffic or not, based on several rules (which is why it is so important to keep your firewall software updated).

In a nutshell :

Hardware firewalls inspect and intercept inbound traffic from the internet to your PC
Software firewall inspect and intercept outbound traffic from your PC to the internet

I strongly recommend you install a software-based firewall.

Regards,
Golden
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Golden Mk. I.4
OS
Windows 10 Pro x64 ; Xubuntu x64
CPU
Intel i7 860 @ 2.80 GHz O/C'ed to 4.0GHz
Motherboard
Gigabyte P55A-UD3R Rev.1. Award BIOS F13
Memory
16GB Corsair Vengance DDR3 @ 661 MHz Dual Channel (9-9-9-24)
Graphics Card(s)
EVGA NVidia GTX 560 1024MB
Sound Card
Realtek Integrated
Monitor(s) Displays
Dual Samsung SyncMaster 2494HS
Screen Resolution
1920*1080 and 1920*1080
Hard Drives
1*Samsung 840 EVO 120GB SSD;
1*OCZ Vertex 2 60GB SSD;
2*Samsung F3 SpinPoint 1TB in RAID0;
1*Samsung F1 SpinPoint 1TB;
2*Western Digital 1TB External USB 3.0
1*Western Digital 500GB External USB 3.0
1*Seagate 500GB External USB 2.0
PSU
Thermaltake ToughPower QFan 750W
Case
Thermaltake Element S VK60001W2Z
Cooling
Corsair H60 Water Cooling, 2*230mm and 2*80mm case fans
Keyboard
Logitech G110
Mouse
Logitech MX518
  • Like
Reactions: kem
Well said,
the outbound traffic is one of main the reasons i acquired comodo.
You reminded me of why I should keep comodo.

thanks golden
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
custom / home built
OS
7 x64
Browser
Palemoon x64
Back
Top