Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

COMPUTER " TROJAN:Win32/Alureon.A"; or, The ROOTKIT MALWARE You Don't Even Know You Have.
http://www.microsoft.com/security ^ | Updated: Dec 16, 2009 | Microsoft

Posted on 04/07/2010 1:22:51 AM PDT by Yosemitest

click here to read article


Navigation: use the links below to view more comments.
first previous 1-2021-4041-6061-80 ... 121-135 next last
To: wireplay

I use both Linux and Windows, and it’s a lot clearer to me in Linux when a security boundary is about to get breached because of how the systems behave. A download, even a drive by download, on Windows can just go hack all my privileged stuff behind my back (password protection is absolutely pitiful). Linux will show some distinct form of annoyance at this, asking me things that nothing decent should ask.


21 posted on 04/07/2010 2:21:03 AM PDT by HiTech RedNeck (I am in America but not of America (per bible: am in the world but not of it))
[ Post Reply | Private Reply | To 17 | View Replies]

To: HiTech RedNeck

Yeah, but you are a computer guy.

BTW, are you using Windows 7?

An average user can be sucked down the hole of malware easily and there is NOTHING you can do to stop it and still let a system be usable. I can call a web service and pass their uid/pw and you cannot prevent that from happening.


22 posted on 04/07/2010 2:32:13 AM PDT by wireplay
[ Post Reply | Private Reply | To 21 | View Replies]

To: wireplay
Ha. Someone else knows! I wrote VMS drivers and worked for DEC. It was a shock to attend a course on NT drivers. The internals of NT 3.1 were VMS!

Later, doing some Unix development I was surprised to see VMS code, lifted from fiche probably, the the Unix kernel. Unix/Linux was and is a grad school project. Apache works because it doesn't have to change. Macs work because Apple has always taken the no one but Apple approach. That is why it will never be used extensively in business, except the publishing business. More credit to Apple's business model. They get all sorts of free publicity and have a committed clientele happy to pay fifty percent more for a limited machine.

This trojan looks nasty, but I've never had a trojan, and neither have most people. A firewall will prevent reassignment of DNS addresses. Current antivirus definitions will identify most trojans. Microsoft gives away pretty decent antimalware tools to legitimate customers. Defender and whatever they named the antivirus product seem fine. My dozen systems run Microsoft and BitDefender. I always use Defender. Being a bigot of any platform is an old story. Unix has been taking over for thirty five years now, but Dave Cutler's work, RSX-11, ELN, VMS, Windows after NT, is real engineering excellence. Some of the imitators look promising, such as Mono. Mono will allow the proliferation of truly machine independent tools, based upon Microsoft innovation, a machine independent Intermediate Language with support for over sixty procedural languages. Mono will promote the migration of .Net to markets outside of Microsoft's business domain.

23 posted on 04/07/2010 2:54:25 AM PDT by Spaulding
[ Post Reply | Private Reply | To 18 | View Replies]

To: wireplay

For the record - the overwhelming number of pc are used as dumb termials - cash registers and such.


24 posted on 04/07/2010 2:54:54 AM PDT by PIF (They came for me and mine .. now it is your turn..)
[ Post Reply | Private Reply | To 13 | View Replies]

To: Yosemitest

Where do I go/what do I search for to see if my pc has the trojan? Can’t I just look for a certain file rather than downloading a scanner?


25 posted on 04/07/2010 2:57:02 AM PDT by chilltherats (First, kill all the lawyers (now that they ARE the tyrants).......)
[ Post Reply | Private Reply | To 1 | View Replies]

To: DontTreadOnMe2009

Apple boycotts Glenn Beck, celebrates Ché and generally touts and supports leftist causes. They’ll never see a dime from me.


26 posted on 04/07/2010 2:59:16 AM PDT by chilltherats (First, kill all the lawyers (now that they ARE the tyrants).......)
[ Post Reply | Private Reply | To 3 | View Replies]

To: Spaulding

Nothing keeps people from writing business applications for Apple. The free OpenOffice suite is already available for Windows, multiple Linuxes, and Mac. Business managers just don’t like spending on Mac.


27 posted on 04/07/2010 3:03:01 AM PDT by HiTech RedNeck (I am in America but not of America (per bible: am in the world but not of it))
[ Post Reply | Private Reply | To 23 | View Replies]

To: driftdiver
but but but mac has NEVER had a self propagating virus!! really it hasn’t. That must mean its secure.

Please forgive my dullness: if you are being sarcastic, then I'm right there with you; if you are being serious, I respectfully point out that your conclusion "its secure" is a bit of a stretch.

Consider this analogy. If I leave my unoccupied home unlocked in a low-crime area and my possessions are not stolen, does that mean my home is more secure? Or merely safer?

I argue the latter.

Just my 2¢

28 posted on 04/07/2010 3:05:34 AM PDT by Two-Shoes (The Second Amendment exists to guarantee & give teeth to the First.)
[ Post Reply | Private Reply | To 10 | View Replies]

To: Spaulding

People don’t seem to get that IBM invented everything in computing in the 1950s. We are just tweaking it ;-]

The Mac folks don’t know crap about computing because they play around with cute stuff and don’t realize how it works. “Dude! Check it out! I have a nice salmon matched with an antique white and it looks fab! Let’s PS it and rotate it on the latest advert then have a doob!”

A solid router prevents most stuff w/o the need of a firewall. I use Vipre for most defense now.

Macs have who? .NET has Anders. Pick someone in the Mac community better than Anders. Not going to happen.

Pffftttt on most of the folks out there who have a Mac fanboy poster on their wall. They have no idea how coding works or how computers operate.

Give me lambda expressions or give me death!


29 posted on 04/07/2010 3:08:50 AM PDT by wireplay
[ Post Reply | Private Reply | To 23 | View Replies]

To: PIF

Now, THAT is a good stat. Can you document it?


30 posted on 04/07/2010 3:09:30 AM PDT by wireplay
[ Post Reply | Private Reply | To 24 | View Replies]

To: Spaulding

The story, as I understand it, is this.

The VMS guys came up with a new kernal. They asked DEC to support it. The kernal guys were in Seattle. DEC said, move to Boston and we don’t like the idea.

The team lead at DEC went to Bill Gates and said they had an idea for O/S. Bill G said cool, and hired them en masse. Win NT came out which had NOTHING in common with Windows but some screens. But people think they are connected.

You still have folks that think that Windows is based on DOS. It isn’t. It is based on VMS. The last DOS Windows was Windows ME and even it wasn’t that DOS based.

Hence, Win NT, Win 2000, Win XP, Win Vista, Win 7 are all VMS products with a deep lineage. And VMS is a mainframe system with similarities to zOS. It lifted functionality from IBM.

Ah well. Getting gray hair in this industry.


31 posted on 04/07/2010 3:20:08 AM PDT by wireplay
[ Post Reply | Private Reply | To 23 | View Replies]

To: chilltherats
Where do I go/what do I search for to see if my pc has the trojan? Can’t I just look for a certain file rather than downloading a scanner?

Do a Google/Yahoo/Live search on "Win32/Alureon" and read the stuff available. For example, here's what one security vendor has to say:
http://www.ca.com/us/securityadvisor/virusinfo/virus.aspx?ID=50214

Also, I'd recommend using Malwarebytes' Anti-Malware. The personal version is free.

BUT DON'T JUST TAKE MY WORD and blithely follow my advice. Please research this yourself. For all you know, I could be someone trying to take advantage of you.

I specifically didn't make the URL to the CA website above a hyperlink so you'd have an opportunity NOT to click a link, but instead would have to copy and paste the URL into your browser. It's not a very good idea to be in the habit of clicking links served up by strangers.

Hope this helps.

32 posted on 04/07/2010 3:20:43 AM PDT by Two-Shoes (The Second Amendment exists to guarantee & give teeth to the First.)
[ Post Reply | Private Reply | To 25 | View Replies]

To: wireplay
WOW! You know your stuff dude!

I laugh at the Mac freaks how they say they don't even need virus or firewall protection, “Cus, their Mac is soooo bullet proof and flawlessly awesome, that hackers run in fear when they even see the name.”

But, back to the DEC thing. I know a little history about Microsoft myself. How they first went to Altair to get a foothold on developing an OS. And what launched them over the top was them getting the IBM compatible OS that NEC (Japan) was selling worldwide by the Millions.

Apple decided that they would remain exclusive and push red diaper doper baby home computers like the “Wendy”.

(Your rendition of the Mac user was classic, LOL!)

33 posted on 04/07/2010 3:29:47 AM PDT by PSYCHO-FREEP ( Give me Liberty, or give me an M-24A2!)
[ Post Reply | Private Reply | To 31 | View Replies]

To: Spaulding; wireplay

I worked for VMS for DEC, Compaq, and HP. Dave Cutler, the principal architect of Windows NT, left DEC/VMS to work for Microsoft.

Windows NT (WNT) is VMS++. The next letter after V is W, after M is N, after S is T.

Dave had a vision, and DEC did not want to fund development for it. Microsoft offered Dave a great opportunity. As for DEC, Another in a long list of missed opportunities.


34 posted on 04/07/2010 3:30:54 AM PDT by Westbrook (Having more children does not divide your love, it multiplies it.)
[ Post Reply | Private Reply | To 23 | View Replies]

To: Westbrook
I have a late version of Vista. I immediately installed all the updates and use Microsoft Security Essentials free virus and firewall add-ons. They are both very nice, compatible and keep my OS lightening fast. I have had absolutely no problems with Vista.

Is Win.7 really that much better? And, is this virus able to get into Vista or 7?

35 posted on 04/07/2010 3:39:14 AM PDT by PSYCHO-FREEP ( Give me Liberty, or give me an M-24A2!)
[ Post Reply | Private Reply | To 34 | View Replies]

To: wireplay

“An average user can be sucked down the hole of malware easily and there is NOTHING you can do to stop it and still let a system be usable”

So much truth to this. I am the family “computer guy”. I have had to clean up so many friends and family computers because they have no idea how to keep them secure.

With my close relatives, I finally put them on non-admin accounts. They can’t install anything on their own computers. They have to call me. That has helped a lot. Even so, things periodically get through.


36 posted on 04/07/2010 3:40:58 AM PDT by CriticalJ (Suppose you were an idiot. And suppose you were a member of Congress.. But then I repeat myself. MT)
[ Post Reply | Private Reply | To 22 | View Replies]

To: Two-Shoes

sorry I forgot my /s tag


37 posted on 04/07/2010 3:44:32 AM PDT by driftdiver (I could eat it raw, but why do that when I have a fire.)
[ Post Reply | Private Reply | To 28 | View Replies]

To: Westbrook

And what would DEC have been able to run this new VMS on? The nice thing about the series of Windowen is that they were to some extent backwards compatible with previous hardware, AND they were big enough to get new peripherals designed to them that could often be slipped into the old hardware.

Linux, by trying very hard with thousands of volunteers, has been able to embrace most of the hardware that Windows does. That’s the spot VMS would have been in, except without the volunteers.


38 posted on 04/07/2010 3:44:54 AM PDT by HiTech RedNeck (I am in America but not of America (per bible: am in the world but not of it))
[ Post Reply | Private Reply | To 34 | View Replies]

To: CriticalJ

Most people know that the computer in 2001 A Space Odessey was a play on IBM (computer name HAL is IBM minus one letter — the leter before I is H, before B is A, and M is L). I heard that Windows New Technology (WNT) was a salute to this and VMS (W-1 is V, N-1 is M, T-1 is S).


39 posted on 04/07/2010 3:51:47 AM PDT by wizwor (webmaster danvilledelivery.com)
[ Post Reply | Private Reply | To 36 | View Replies]

To: wizwor

So Cutler, disappointed in DEC, looked around until he found someone with a product whose name began with “W”


40 posted on 04/07/2010 3:53:07 AM PDT by HiTech RedNeck (I am in America but not of America (per bible: am in the world but not of it))
[ Post Reply | Private Reply | To 39 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-4041-6061-80 ... 121-135 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson