Is your computer a zombie?

Hello folks,

Half of the population with computers go onto the Internet, with bad secured computers (not fully updated, no AV, no FW etc).
Evil programmers can take over these machines at their command to do what they want with so-called bot-nets through a worm or trojan-virus.
What are the signs of a Zombied PC?

  • Ads and pop-ups that seems to come out of the blue.
  • Overall function of the PC is very slow.
  • The Anti-Virus solution does not respond anymore.
  • The Firewall all of a sudden halts and fails to function.
  • You cannot go to sites of AV vendors.
  • The processor loads to 90-100% activity.

See information on the processes that cause this, go here:
http://www.doshelp.com/trojanports.htm

Keep security your ongoing concern, and keep your bandwidth for yourself.

polonus

Hi Polonus!

A useful posting, but I fear the times they are a-changing. Botnets are now big business and I’ve read reports of the latest worms trying to disguise their activity, even deleting other malware so that the 'puter responds as normally as possible.

I can’t remember the exact link. Have you heard of such a thing?

Edit: here’s one link:

http://news.com.com/Experts+Zombies+ousting+viruses/2100-7355_3-5720428.html?tag=st.rn

Botnets are now big business and I've read reports of the latest worms trying to disguise their activity, even deleting other malware so that the 'puter responds as normally as possible.

Stop them being able to do that, they would need to inherit administrator rights to do this. Drop the rights of the software you browse or collect email, etc. (with limited user rights they can’t place files in system folders, create registry entries, etc.

See DropMyRights in my signature.

Yes FreewheelinFrank,

I know this is becoming more and more of a problem the hidden rootkit in the hands of the botnet creators. That is for one I like to see an non-compromised system CD running under an OS that can’t be infected, so that hidden rootkit activity can easily be traced.
Well easily is not the word, easier, because to-day it is very difficult to fully remove some forms of the latest spyware from a compromised system (CWShredder has to be adjusted all the time). In browser checking like Dr. Web provides is a form to see if a hyperlink can be trusted code and script wise. These servers plus the so-called honey-nets gather a lot of information on illegal activities on the Net . For the end-user though the best way is prevention, adequate script blocking, system monitoring,
IDS, and a logical brain. But I agree with FreewheelinFrank in this respect that the days that only a Firewall and an Anti-Virus product could save you, are long long gone by now, and will not return in the foreseeable future. Multilayer protection and prevention is the word.

polonus

PS
No-one should be allowed to surf with a box with default settings and in that respect admin rights or super root is meant too. Only for updates and special maintanance jobs, but not connected to the Internet. polonus

Polonus
A simple question…
Do you ever just enjoy being on the internet or, is it a worry to you every time you go on the internet?
I have yet to see one post from you that doesn’t spell out doom and gloom.
Nothing personal but if I had to worry every time I opened my browser, then why bother?
Play it safe and pull the plug. ;D
I thought the internet was a place to enjoy. I know I enjoy it.
I’ve taken all reasonable precautions and that’s all I or any one else can do. Worrying about some possible future
infection that might some day happen, will give me an ulser and make some doctor rich. ;D
Enjoy life. It’s to short not to. :slight_smile:

Nicely said Bob ;D I think Polonus enjoys hunting malware and reading about it, just like i enjoy reading about newest PC games(and playing them ofcourse) and newest hardware…But you gotta hand it to him he always keeps us informed haha :wink: Polonus i think you should work for some anti-malware company!

Cheers

Mikey

Half of the population with computers go onto the Internet, with bad secured computers (not fully updated, no AV, no FW etc).

It’s true. I’ve seen it.

People who haven’t paid any attention to security since they bought their computers in the last millennium.

No anti-virus
No firewall
Dozens of critical updates not installed.

These are the computers that are being used in criminal attacks on major web sites, in an attempt to extort thousands of pounds in blackmail.

I think Polonus is hoping his message might reach the owners of these computers.

Of course if you have an up-to-date AV, OS and browser and a strong firewall, you can relax.

But there are many people out there who are far too relaxed when they should be sweating profusely if they knew what their computer was being used for.

Maybe one or two will even read Polonus’s warnings and take note of them!

People who haven't paid any attention to security since they bought their computers in the last millennium.

my goodness FWF most of these people are still looking for the any-key ;D ;D

If they can’t find a simple key how are they going to find this forum? ;D

Well just a word,

Polonus enjoys computers, but was once hit by a real nasty virus. With the help of a friend I had to clean and re-install. That was my inspiration to go to the fora and this forum.
I think my postings have meaning, if I think about the fact that 51% of people on the Internet in the States have not got a clue about the relation between settings of a browser and security, hoards of people send friends nice games and hoaxes and even virus by mail. If only some percentage of this people become more aware I think my existence on the Internet has been worth. Everyone does something in between the road from the sweat and slave to the shallow grave. My hobby is security related issues, because it is fascinating stuff. Others like to play games and go to the Internet just for fun. Let them, but do it in a way, that it is safe for others to do the same. If the Net is completely rootkitted, and we have to go onto the Net in code-chains, that is not the Internet I like very much. Think about your freedom, else you have half lost it, be a “patriot”,

greets,

polonus

Not a simple key but the any-key, as in press any key to continue ;D

Geez love a $$ for every time I was called or asked ? My keyboard doesn’t have an any key where is it Dah! ;D ;D

Got to laugh ::slight_smile:

People who haven't paid any attention to security since they bought their computers in the last millennium.

They probably still worry about the “Millennium Bug”! ;D

@David & Peter: I’m :-[

@Polonus: You’re posts are a good and welcome read, it’s just it sometimes seems like you really worry too much and are not enjoying yourself behind the PC that’s all :slight_smile:

Cheers

Mikey

It is wise to take precautions and also to be aware of what is going on as malware is becoming more and more powerful, devious, trying to hide themselves with the use of rootkits that are a total swine to remove. It is not long ago that we hadn’t heard of rootkits, now we are seeing more and more of them in these very forums.

So when you are deprived of the use of your computer and the enjoyment and freedom of the internet, it is a little late to start educating yourself.

To use a similar analogy to Bob, we all enjoy the freedom and enjoyment of our cars, but we are aware of the potential risks (and responsibilities to other road users). We don’t just drive along taking in the view ignoring the potential dangers and consequences until we have our first car wreck.

Much of the spam/phishing emails that we receive are routed through these zombie systems. So we have a responsibility to other PC and internet users also.

Polonus,

As I stated to you once before here in this forum:
http://forum.avast.com/index.php?topic=14213.msg120406#msg120406
I will state it again. I do believe that your information is VERY usefull and helpfull. Thank You again for taking an interest in helping others to be more informed about the security precautions they need to take to protect their computers. ;D

No. My computers are not zombies.

They’re loaded with safety features, fully stealthed and I now Cerf (remember him?) safer than I used to.

That’s probably largely due to what I’ve learned here and the advice and genuine concern of those who know a lot more than I do - like you, friend Polonus, who has kept me “on my toes” security wise and made me aware of the dangers out there. I hadn’t even considered the evils of rootkit spyware until you alerted me. So your “existence on the internet” has certainly helped me!

But then, you all have! I come in here, read the latest posts from you all and always leave a little better informed and empowered.

Thank you all VERY much
Happy days

Guys and gals NOBODY said that this information was useless or in any way doubted Polonus, i personally think he’s a great guy and we can all be thankfull he’s here informing us about malware, it’s just damn sad when you sit behind the PC and all you can think about is malware, that’s all i’m trying to say nothing else.You see i think if you do that than the malware writers have already won in a way cause now you’re not having fun behind the computer you’re only worrying about the next virus that might hit you or whatever.OK that being said i’d just like to say BACKUP regulary people this way you can save yourself alot of trouble if god forbit a virus attacks you or whatever(altough i must admit i have yet to restore my system from a backup)!Just my 2 cents people :wink:

Take Care

Mikey

Hi dear avast forum friends,

I have just got a letter from my provider that my downstream/upstream DSL will be twice as fast, not costing me.
More quality for the same money. Polonus is glad, so you see an extra bonus for Polonus. Who can say that securing computers cannot be fun. I like those proggies to see what happens like TDImon. I like to understand what is going on. I do not see a virus around every corner, and since I use my tweaked FF browser the only thing I had to clear from this old box was a tracking cookie.
I further like searchengines, and special searchlore to get to certain information. I like the news on the net. I almost instantly made the switch to the off-topic of the three ladies. Fighting malware must be fun, no one says there is nothing besides. But it is always nice when you grow to learn a bit about a subject, and the fun and satisfaction to help others, dear friends it is so rewarding. I like this forum here, it is as simple as that. I am hammering on the fact that security in computing must be an ongoing thing, just like hygiene, like brushing your teeth or eating the right food. If people knew the importance of this and we could do without the botnets, the people that use the computer only for fun would be entitled to it. Polonus keeps doing what he has always done. No sweat,

your anti-malware friend,

polonus

Well so it’s like i said before Polonus enjoys the “malware wars” , i enjoy PC gaming , someone likes to fish so we’re all happy and that’s the most important thing! ;D