Page 1 of 1

Sneaky newsgroup posters.

Posted: Sat Jan 15, 2005 12:43 am
by mart
I was visiting a newsgroup about webcams. Q. about them being hijacked and one poster went on and on about a trojan called Back Orifice which allegedly can download the whole content of your 'puter.
The very next time I ran SpybotS&D what did it find...Yes, Back Orifice. Coincidence or had the sneaky bastard used his posts to get in?

Mart

Re: Sneaky newsgroup posters.

Posted: Sat Jan 15, 2005 2:27 pm
by Holden MacGroyn
B.O allows people to remotely spy on you.
In fact, you can bring up someones desktop onto your own pc and play around with shit.
It's nasty as fuck.

Most noobs that get ahold of it end up just switching your pc off for a laugh.

You actually have to install the BO client for it to have any major effect.
They will fool you into thinking it is something that you really need just so you install the shit, then your IP is fucked harder than a whores backdoors.


Re: Sneaky newsgroup posters.

Posted: Sat Jan 15, 2005 2:32 pm
by mart
I wonder how these bloody things get in. I'm running AVG and ZoneAlarm.

Mart

Re: Sneaky newsgroup posters.

Posted: Sat Jan 15, 2005 3:01 pm
by Holden MacGroyn
Chances are that you may have accidentally clicked a yes without realising.

You know how some things will prompt you for a yes/no answer, well if you click "no", it'll still register as a yes, so to be safe, just click the X in the top right of the box.


Re: Sneaky newsgroup posters.

Posted: Sat Jan 15, 2005 4:30 pm
by Shaun
They also can come in on email. There is also ways of 'interlacing' exe's with media files.

Be very careful.

BO comprises of a scout and a client. The bastard sends out the scout. Its in the form of an .exe. As soon as you install it, it then disappears.

Then... like the Titan, it transmits back to the scout and he can 'ping' it and, in effect, control your computer.

Keep AVG up to date. Get a better firewall that ZA. Try Sygate Personal Firewall (its also free). Get lavasoft Ad-Aware. And just be very careful.

The rule of thumb is that if you are not sure whether to click/run something or not... don't.


Re: Sneaky newsgroup posters.

Posted: Sat Jan 15, 2005 4:52 pm
by diplodocus
how does the XP firewall compare to some of the others?


Re: Sneaky newsgroup posters.

Posted: Sat Jan 15, 2005 5:28 pm
by nachovx
The xp firewall stops things coming in, but there is no outgoing protection. So if you install a trojan it may send data out you would rather it didn't.

Re: Sneaky newsgroup posters.

Posted: Sat Jan 15, 2005 7:10 pm
by Deuce Bigolo
No guarantees on the net

I've read several places that have said that there is no reason to ever click those yes/no boxes for any programs,true or false?.

Maybe some spyware prevention programs like spyguard(real time)or spyblaster,IE-Spyad or even the immunize on spybot(if you haven't activated it,check to see that back orifice isn't ticked to be ignored)
are well worth installing IMHO

cheers
B....OZ

Re: Sneaky newsgroup posters.

Posted: Sat Jan 15, 2005 7:18 pm
by nachovx
If I'm @all suspicious about any yes/no box I don't click it anywhere. It's safer to either right click on the taskbar and end task or do it from Task Manager.

If you suspect a virus may have been installed, restore windows back to a previous staus with System Restore, only an option in xp.

Re: Sneaky newsgroup posters.

Posted: Fri Jan 21, 2005 5:18 pm
by fevrd
> You know how some things will prompt you for a yes/no answer,
> well if you click "no", it'll still register as a yes, so to be
> safe, just click the X in the top right of the box.

Coo that's a handy tip. I never thought of that. Just shows how innocent I am. Human depravity doesn't have to be all that deep to astonish me.