Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar Mark Forums Read
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 03-01-2008, 11:16 AM   #1
Ross
Ik ben een aap
 
Industry Role:
Join Date: Sep 2002
Location: Traffic Force Towers, Canada!
Posts: 18,874
GALLERY SUBMITTERS!! Site Giving VERY NASTY Virus! INSIDE!

A couple of days ago my laptop shut down while submitting a gallery and when it started back up I had a pretty nasty virus called Winreanimator. No matter what I do nothing works, It stops me from using virus tools by disabling them.

Now today my girlfriend was submitting and her computer just shut down by itself and now its restarted she has the same one again it happened when she was submitting. I can only think its definately coming from a site in the submission list but I searched every site and they looked clean, so maybe its only doing it at certain times or something...

Anyway, I went to a couple of computer shops and they told me they don't know how to remove it and their Health Checks won't get rid of it.

If anyone else has got this post in here and if you know what site it came from post that also!
Ross is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-01-2008, 11:18 AM   #2
Dirty F
Too lazy to set a custom title
 
Dirty F's Avatar
 
Industry Role:
Join Date: Jul 2001
Posts: 59,204
Ross.
Dirty F is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-01-2008, 11:19 AM   #3
Ross
Ik ben een aap
 
Industry Role:
Join Date: Sep 2002
Location: Traffic Force Towers, Canada!
Posts: 18,874
Quote:
Originally Posted by Dirty F View Post
Ross.
Thanks for the bump
Ross is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-01-2008, 11:22 AM   #4
minddust
Confirmed User
 
Join Date: Feb 2005
Posts: 2,438
Internet Exploited
minddust is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-01-2008, 11:22 AM   #5
Dirty F
Too lazy to set a custom title
 
Dirty F's Avatar
 
Industry Role:
Join Date: Jul 2001
Posts: 59,204
Quote:
Originally Posted by Ross View Post
Thanks for the bump
I'm like that.
Dirty F is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-01-2008, 11:26 AM   #6
Pornopat
AdultTubeSubmits.com
 
Industry Role:
Join Date: Dec 2003
Location: The Netherlands
Posts: 10,598
Sometimes the only way to reach an orgasm is to do it manually...

http://www.symantec.com/security_res...353-99&tabid=3
Pornopat is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-01-2008, 11:28 AM   #7
Ross
Ik ben een aap
 
Industry Role:
Join Date: Sep 2002
Location: Traffic Force Towers, Canada!
Posts: 18,874
Quote:
Originally Posted by Pornopat View Post
Sometimes the only way to reach an orgasm is to do it manually...

http://www.symantec.com/security_res...353-99&tabid=3
I tried this two days ago Pat and the registry key it tells me to remove isn't in there.
Ross is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-01-2008, 11:31 AM   #8
Scott McD
Too lazy to set a custom title
 
Scott McD's Avatar
 
Join Date: Nov 2002
Location: Glasgow, Scotland
Posts: 67,795
Sucks dude.

I better not get it !!
__________________


I Buy My High Quality Traffic Here, You Should Too!

Scott McD is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-01-2008, 11:36 AM   #9
Babaganoosh
♥♥♥ Likes Hugs ♥♥♥
 
Babaganoosh's Avatar
 
Industry Role:
Join Date: Nov 2001
Location: /home
Posts: 15,841
lol @ windows
__________________
I like pie.
Babaganoosh is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-01-2008, 11:47 AM   #10
Pornopat
AdultTubeSubmits.com
 
Industry Role:
Join Date: Dec 2003
Location: The Netherlands
Posts: 10,598
Quote:
Originally Posted by Ross View Post
I tried this two days ago Pat and the registry key it tells me to remove isn't in there.

Do you have several users on the pc? If so check the registry of the local machine and not a user.
I notice symantec also does not say you need to repair in safe modus. You should...
Pornopat is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-01-2008, 12:09 PM   #11
Ross
Ik ben een aap
 
Industry Role:
Join Date: Sep 2002
Location: Traffic Force Towers, Canada!
Posts: 18,874
Ok so far it looks like I don't have the full virus, on my girlfriends computer I downloaded killbox and it got rid of the file causing the pop up to start trying to install the Virus. So far so good, gonna try it on my laptop next.

I suspect these people with the registry key changes are people who let the virus install. I haven't done that so I just need to get a file called Braviax.exe removed and hopefully I'm ok.

I really wanna find the site thats causing this tho!
Ross is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-01-2008, 12:33 PM   #12
Diligent
Confirmed User
 
Diligent's Avatar
 
Join Date: Aug 2003
Location: Hoy Suecia, mañana Nirvana
Posts: 1,594
Hmm.. it's that bad 'eh?

If You're still having problems, here's what should work in ANY case:


Download setup files for say.. the free AVG + free Ad-Aware on a computer that's not infected, burn them to CD or put on floppies if possible (in that case You write-protect them afterwards with the corner notch).

Have Your internet disconnected from the computer during this process, then:

Do a "repair" from Your Windows install CD (You may need the password for "Administrator" if one was set at first install).

After that's done, install the scanners from the CD or the floppies, and reboot.

Hit <F8> (or <F6>? I think it's F8) just when Windows starts booting, to enter "fail safe mode" (will NOT enable any LAN in this case)...
and run the newly installed scanners. Update the definitions first, then let them do full scans.

The point of this tedidous process, is it'll restore all of Windows' own system files, which is important because; if those are "hijacked"/hacked by the virus,
they can control *everything*, and easily disable/disallow all kinds of scanners.
__________________
~¤~ MORE MONEY ~¤~ VOD? XoD! ~¤~
~¤~ ICQ# 9828 2461 ~¤~

Diligent is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-01-2008, 12:40 PM   #13
Diligent
Confirmed User
 
Diligent's Avatar
 
Join Date: Aug 2003
Location: Hoy Suecia, mañana Nirvana
Posts: 1,594
Oh, one more tip:

If You're running a submitter app; try running it under an earlier setup "limitied user" ("user accounts" in "control panel")... "Run As..." if You right-click the app's shortcut.
Have a password set for that user account, or it may not work.

That way it will run in a more protected environment, which could be much safer... since many tools actually invoke the piece of shit Internet Explorer for it's own internet connectivity.

If You're NOT running a special app for submitting, stay the fuck away fron using IE ffs!! lol
Try using FireFox/Mozilla (any kit) with the NoScript plugin (which You set to forbid scripts (JS particularly) and Flash by default.. You can whitelist sites You trust with it)
http://www.noscript.net/
__________________
~¤~ MORE MONEY ~¤~ VOD? XoD! ~¤~
~¤~ ICQ# 9828 2461 ~¤~


Last edited by Diligent; 03-01-2008 at 12:42 PM..
Diligent is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-01-2008, 01:29 PM   #14
Dirty F
Too lazy to set a custom title
 
Dirty F's Avatar
 
Industry Role:
Join Date: Jul 2001
Posts: 59,204
Quote:
Originally Posted by Ross View Post
A couple of days ago my laptop shut down while submitting a gallery and when it started back up I had a pretty nasty virus called Winreanimator. No matter what I do nothing works, It stops me from using virus tools by disabling them.

Now today my girlfriend was submitting and her computer just shut down by itself and now its restarted she has the same one again it happened when she was submitting. I can only think its definately coming from a site in the submission list but I searched every site and they looked clean, so maybe its only doing it at certain times or something...

Anyway, I went to a couple of computer shops and they told me they don't know how to remove it and their Health Checks won't get rid of it.

If anyone else has got this post in here and if you know what site it came from post that also!
Kinda sad how computer shops arent able to get rid of it.
Dirty F is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-01-2008, 02:26 PM   #15
Ross
Ik ben een aap
 
Industry Role:
Join Date: Sep 2002
Location: Traffic Force Towers, Canada!
Posts: 18,874
Quote:
Originally Posted by Dirty F View Post
Kinda sad how computer shops arent able to get rid of it.
Yep, it wasn't shitty shops I took it to, it was the biggest Computer Store in the UK. Idiots.

So far I think I've narrowed down where the site is that is causing the virus. I need to speak to the owner to see if he has any idea about this.
Ross is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-01-2008, 03:30 PM   #16
kapopoy
Confirmed User
 
Join Date: Nov 2006
Posts: 593
everytime i do a submission with chameleon, my av always caught a virus that reside in log directory. i won't able to track it down coz my av move to her vault.
kapopoy is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-01-2008, 03:41 PM   #17
Oracle Porn
Affiliate
 
Oracle Porn's Avatar
 
Industry Role:
Join Date: Oct 2002
Location: Icq: 94-399-723
Posts: 24,433
Quote:
Originally Posted by Ross View Post
Yep, it wasn't shitty shops I took it to, it was the biggest Computer Store in the UK. Idiots.

So far I think I've narrowed down where the site is that is causing the virus. I need to speak to the owner to see if he has any idea about this.
lol what exactly can they do at a shop that you cant do on your own?
__________________


Oracle Porn is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-02-2008, 07:22 AM   #18
Ross
Ik ben een aap
 
Industry Role:
Join Date: Sep 2002
Location: Traffic Force Towers, Canada!
Posts: 18,874
Quote:
Originally Posted by Oracle Porn View Post
lol what exactly can they do at a shop that you cant do on your own?
Well yes I can eventually remove it on my own but this takes time to find the proper fixes for it. I thought a shop would know how to remove it immediately and get it back to me later that day.
Ross is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-02-2008, 10:57 AM   #19
bu((aneer
Confirmed User
 
Join Date: Nov 2004
Posts: 651
start - programs - accessories - system tools - system restore


restore to a point before you noticed the virus infecion
bu((aneer is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks
Thread Tools



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.