• The move to the new server is done. There are some software and database maintenance updates in process. This has us passing the hat around to help out. We appreciate any donations. Seriously, even a dollar helps. The payment page may be found here - https://www.audiokarma.org/support.html

Malware may knock thousands off Internet on Monday, 7/9

tybrad

Lunatic Member
Banned
This undated handout image provided by The DNS Changer Working Group (DCWG) shows the webpage resulting from not having the DNS malware. It will only take a few clicks of the mouse. But for hundreds of thousands of computer users, those clicks could mean the difference between staying online and losing their connections. Tens of thousands of Americans may still lose their Internet service Monday July 9, 2012 unless they do a quick check of their computers for malware that could have taken over their machines more than a year ago.

dnschanger2-11357270.png


The warnings about the Internet problem have been splashed across Facebook and Google. Internet service providers have sent notices, and the FBI set up a special website.
 
Register to hide this ad
There is always something new out there that we hear about and there are always claims of impending computer doom. If I worried about everything that made the news I wouldn't be using a computer.

Oh well. I scan my computer on a regular basis. Not too worried.
 
Weird that you're posting this. I lost connection for the first time day before yesterday (seriously the first time ever). I tried to reconnect and the error was DNS not found. After 20 minutes it came back.
 
So.. wouldn't web sites, especially secure sites like banking, PayPal, or paying utility bills, detect that you were redirected through that temporary server, and notify you if so?
 
From what I understand is that DNS lookups are being redirected through an entry in the HOSTS file... so if you remove that HOSTS entry you should be good to go as far as getting your internet back if you were infected, but it will still leave other parts of the malware..

Best if you run something like malwarebytes or Combofix. Might be surprised what you'll find even if you're not infected with this specific malware.
 
German Telekom offers a test on "www dns ok". Just tested my system - everything is ok.

Thanks tybrad for your tip!

:thmbsp:

BTW - It is also for english speaking users!
 
the fbi website says these folks have been operating for about 5 years. Two years ago i got a DNS redirect virus. As the fbi site indicates it operates in one of two ways. The first way is to set a DNS proxy in you host file or in your internet setup (i.e., lan settings in your Internet Explorer > Tools > Internet Options > Connections > LAN Settings (button), - If it says " Use Proxy Server " and there is a TCP.IP address there, then that is probably redirecting your DNS lookup through the hackers proxy server.

If you have something other than the DNS server of your Internet Service Provider in your host file - then your DNS lookup might be redirected to the hackers proxy server.

What happened to me two years ago was that my username and password for my wireless router was still set to the factory defaults.... and the malware actually put the DNS lookup TCP IP address to the hackers proxy server in my router settings.

Took me a while to find it -like 2 weeks - so the best thing you can do besides running anti-malware software is to set the security up on your wireless router... check the proxy server settings in your Internet Explorer tools, your host files and your ipconfig / all.

happy surfing post internt doomsmonday

==wayne--
 
Windows update runs a malware remover every month. Even if you don't have a virus scanner installed this would fix this particular problem.

It's a pretty good tool. It reboots your computer and runs the remover before Windows boots.

This is why the first thing a virus does is try to disable Windows Update. If updates don't run, that's a big clue that you have a virus.
 
Would not scanning our computters with whatever Anti-virus program we are using either remove or at least inform us of such a virus. I scanned mine using my F-Secure I get though my cable company and found 4 viruses, all related to my Java program. It told me to clean up the cache files in my java, which I did. I then re-scanned them and they are virus free now. I hope I'm safe now! I'll Know tomorrow.

I'm alway's suspious of free software, especially anti-virus/Anti-mallware programs. I can't help but wonder if the viruses they find have been planted there to make you buy there service.
 
Last edited:
Tybrad, that link doesn't seem to be working. FYI.
the link above is actually just a .png image not a working link

here is working link from cnet http://dns-ok.us/

and a good article from cnet http://reviews.cnet.com/8301-13727_...t-and-fix-a-machine-infected-with-dnschanger/

Microsoft Windows Malicious Software Removal Tool is a freely-distributed virus removal tool developed by Microsoft for the Microsoft Windows operating system .
Microsoft releases an updated version of this tool on the second Tuesday of each month, and as needed to respond to security incidents.at which point it runs once automatically in the background and reports if malicious software is found. The tool is available from Microsoft Update, Windows Update and the Microsoft Download Center.http://www.microsoft.com/security/pc-security/malware-removal.aspx

To run it manually at other times, users can start "mrt.exe" using the Command Prompt or Run command in the Start Menu. http://en.wikipedia.org/wiki/Windows_Malicious_Software_Removal_Tool
 
Last edited:
I'm alway's suspious of free software, especially anti-virus/Anti-mallware programs. I can't help but wonder if the viruses they find have been planted there to make you buy there service.

Ha, I've said that before myself. :yes: And it's not crazy to think it could happen, there's BIG money in it, I'm sure, and we all oughta know by now, there are plenty of crooks runnin' loose. :yes:
 
my 2 words on the matter is linux or mac .. please don't all rush and use it as the virus crap may migrate from win.
seriously though if you run the relevant anti programs and stay away from dodgy sites and use your win machines as a guest or one without admin privileges it should be ok ..
 
..I scanned mine using my F-Secure I get though my cable company and found 4 viruses, all related to my Java program. It told me to clean up the cache files in my java, which I did. I then re-scanned them and they are virus free now. I hope I'm safe now! I'll Know tomorrow.

I'm alway's suspious of free software, especially anti-virus/Anti-mallware programs. I can't help but wonder if the viruses they find have been planted there to make you buy there service.


There was a routine Java update a couple of weeks ago that didn't clear out the cache or somesuch. Caused me some issues the next day running the real time stock ticker from my brokerage. Had to go in and clear out the Java cache, and was fixed.

"F-Prot" which F-Secure evolved from was one of those freebie anti-virus programs. I used that on my old Pentium 100 Win 3.1 machine up til 1998 or so.
 
Downloaded the MS tool and

NO MALICIOUS SOFTWARE FOUND

Well, that certainly was a stone waste of time!!

Now, can I go back to getting wasted and playing russian roulette??

TEXTED WHILE DRIVING
 
Back
Top Bottom