B
bryan
i have been hit big time by spyware that does the following
on boot up hijacks IE and changes security settings to
custom that renders activeX inabled so McAfee will not run
(not that thas has found it anyway but has foudn soe of
the other junk it sends out )- glad this spyware
recognises the changes to IE and promptes for them to be
reset BUT it is too late the hijack of IE then takes you
to http://www.byggnork.com/vti.html (WARNING DO NOT GO
THERE) there is a rediect to
public.windupdates.com/vti.html (AS ABOVE) that send all
manner of nasties to your PC including some very unsavoury
things popping up in IE.
The payload also conatins a worm and this rapidly spreads
to other machines on the network.
Latest Spyware upgrade appeared to identified this after I
had been battling for a week but does not clean it out
completely. I have had to rebuild one machine twice just
to get on the net. downloads stop partway through making
it niegh on impossible to install latest patches etc.
I tried adding the above URL's to blocked sites in IE and
spyware pops up reporting that they are being added to my
Trusted sites so I cant get them in the blocked sites
list - they do not actualy appear in the trusted sites
list via IE.
i think it also added MS Office to the startup group -
that way IE was there before virus software and coulds
then go to above sites unhindere and install more nasties.
Please get a fix for this - I'd guess anyone out there
isn't reporting it - my emails system is also affected and
i cant send/receive so this form has been my only option -
i had to paste the URL in the browser and press go three
time to get here!
Please get it sorted guys - can the latest upgrade be
emailed to above so I can copy to floppy and upgrade
machines with it on
on boot up hijacks IE and changes security settings to
custom that renders activeX inabled so McAfee will not run
(not that thas has found it anyway but has foudn soe of
the other junk it sends out )- glad this spyware
recognises the changes to IE and promptes for them to be
reset BUT it is too late the hijack of IE then takes you
to http://www.byggnork.com/vti.html (WARNING DO NOT GO
THERE) there is a rediect to
public.windupdates.com/vti.html (AS ABOVE) that send all
manner of nasties to your PC including some very unsavoury
things popping up in IE.
The payload also conatins a worm and this rapidly spreads
to other machines on the network.
Latest Spyware upgrade appeared to identified this after I
had been battling for a week but does not clean it out
completely. I have had to rebuild one machine twice just
to get on the net. downloads stop partway through making
it niegh on impossible to install latest patches etc.
I tried adding the above URL's to blocked sites in IE and
spyware pops up reporting that they are being added to my
Trusted sites so I cant get them in the blocked sites
list - they do not actualy appear in the trusted sites
list via IE.
i think it also added MS Office to the startup group -
that way IE was there before virus software and coulds
then go to above sites unhindere and install more nasties.
Please get a fix for this - I'd guess anyone out there
isn't reporting it - my emails system is also affected and
i cant send/receive so this form has been my only option -
i had to paste the URL in the browser and press go three
time to get here!
Please get it sorted guys - can the latest upgrade be
emailed to above so I can copy to floppy and upgrade
machines with it on