Photobucket Virus?

This is for non-Subaru related topics. Keep it realistic please.

Moderator: Moderators

Mattheww044
Fourth Gear
Posts: 2045
Joined: Tue Nov 28, 2006 8:17 am
Location: Spokane, WA

Photobucket Virus?

Post by Mattheww044 »

Hey guys, I know it sounds wierd, but I think I got a "virus" from photobucket. I hardly ever use photobucket, but the problems never started until I went there. First off my buddy came over and used photobucket, and a "Anti-virus Soft" thing popped up. It basically downloaded itself, and looks like a legit anti-virus software. It popped up in the bottom right corner task bar thing. When it happened the first time, I just restarted my computer, and it didn't come back.

Then the other day, I got on photobucket (first time since the "virus" thing popped up, I wasn't aware that photobucket caused it), and the same thing popped up. So I restarted my computer, and the damn thing was still there. Basically completely took over my computer, I can't even access the internet from THAT computer anymore. I found a few forums online about how to "remove" the virus, but it says to download other anti-virus software to get rid of it (I don't know how trustworthy that is), and also I can't access the internet at all from that computer to DL it in the first place.

Also, my friend was at the library and went on photobucket, and the same damn thing popped up (which I thought was wierd because you would think they would have some crazy anti-virus stuff on their comps.) Which is why I am led to believe photobucket is causing the problems.

I was just curious if anyone has heard of the "virus" program, and if anyone knew ways to get rid of it. I've had this computer for like 8 years, and its still holding up quite nicely, but this "virus" thing just completely took over and I have no idea where to go from here. I don't know TOO much about computers, but I can follow instructions quite well :P. Don't really have money to take it in or get a new computer. Anyways thanks for the help
Legacy777
Site Admin
Site Admin
Posts: 27930
Joined: Tue Oct 15, 2002 11:37 am
Location: Houston, Tx
Contact:

Post by Legacy777 »

It's probably adware. Don't click accept/install/download.

There's a few adware removal software out there.

I did a search, but the links that show up I can't view because of my stupid work's internet policy.

You may want to browse them.

google search
Josh

surrealmirage.com/subaru
1990 Legacy (AWD, 6MT, & EJ22T Swap)
2020 Outback Limted XT

If you need to get a hold of me please email me rather then pm
Perkul8r
First Gear
Posts: 60
Joined: Fri Dec 18, 2009 8:02 am
Location: Mandan, ND

Post by Perkul8r »

I used to do computer repair alot. I have not seen a virus come from Photobucket, but its probably possible. I usually seen it associated with programs like Limewire or Frostwire. Mainly cause once you download their programs anytime you download something from the program you are bypassing any and all security products you have on the computer. The virus you have is called a Rouge Security Product. It makes you think its a legit program, but once you click accept, download or give it your CC info, your f'ed. I have seen it way to many times, and also had it on my own personal computer. What are you running for an anit-virus anti-spyware program? That could be the problem. It didn't catch it.
Buffman
Second Gear
Posts: 501
Joined: Sat Sep 13, 2008 1:59 am
Location: MI

Post by Buffman »

Perkul8r wrote:I used to do computer repair alot. I have not seen a virus come from Photobucket, but its probably possible. I usually seen it associated with programs like Limewire or Frostwire. Mainly cause once you download their programs anytime you download something from the program you are bypassing any and all security products you have on the computer. The virus you have is called a Rouge Security Product. It makes you think its a legit program, but once you click accept, download or give it your CC info, your f'ed. I have seen it way to many times, and also had it on my own personal computer. What are you running for an anit-virus anti-spyware program? That could be the problem. It didn't catch it.
most anti-virus programs don't recognize malware items. This has happened on imageshack.us before via popup adds. I'd email photobucket and tell them that either their ads or their site are compromised.

download and install malwarebytes. Run it in safe mode. Disable system restote. After it finds and removes everything, and a restart and rescan you can turn system restore back on.
1992 Legacy LS Special Wagon..
evolutionmovement
Knowledgeable
Knowledgeable
Posts: 9809
Joined: Mon Jun 16, 2003 11:20 pm
Location: Beverly, MA

Post by evolutionmovement »

I used to get the same BS when I had a PC (which is why that's past tense). Adware slipped right past both virus scans. Reinstalling entire OS seemed to work (rapid-fire pop-ups went away), but then I'd randomly lose drivers that would not be recognized upon reinstall, so my computer was never right again. Due to the Adware, (and even after wiping the drive and reinstalling windows) I could only go online for a few minutes at a time before the browser would just shut down, none of my peripherals would work, and I was on dial up. The only way to transfer my files was by attaching them to emails to myself, but I had to work quick and could only get a couple at a time. Sucked genital wart-laden balls.

I'm not a Mac-fanatic, but when I went to a PPC without any anti-virus, I laughed at the only thing in four years that tried to instal itself. Too bad I have to move to an Intel Mac soon as they're not quite as immune.
Midnight in a Perfect World on Amazon or order anywhere. The first book in a quartet chronicling the rise of a man from angry criminal to philanthropist. Midnight... is a distopic noirish novel featuring 'Duchess', a modified 1990 Subaru Legacy wagon.
Perkul8r
First Gear
Posts: 60
Joined: Fri Dec 18, 2009 8:02 am
Location: Mandan, ND

Post by Perkul8r »

I've been using a pretty good anti-spyware and anti-virus program and it has caught everything so far. Had it on my computer almost a year now and no Virus's or malware. But than again, i also know what to avoid cause i have seen the problems before.
evolutionmovement
Knowledgeable
Knowledgeable
Posts: 9809
Joined: Mon Jun 16, 2003 11:20 pm
Location: Beverly, MA

Post by evolutionmovement »

If I get a weird pop up, I shut down the browser since the adware I got installed itself when I clicked the X to close it. Then hundreds of the windows just started cascading all over and I actually had to unplug the computer to kill it. Pissed off doesn't even begin to describe it. I would love to run the guy who made that thing through a giant meat grinder.
Midnight in a Perfect World on Amazon or order anywhere. The first book in a quartet chronicling the rise of a man from angry criminal to philanthropist. Midnight... is a distopic noirish novel featuring 'Duchess', a modified 1990 Subaru Legacy wagon.
fishbone79
Second Gear
Posts: 502
Joined: Fri Sep 03, 2004 3:14 am
Location: Armpit, USA

Post by fishbone79 »

It was me!!!!!

Code: Select all

#!/bin/bash
int main(PissSteveOff) {
      int x = 0;
      int y = 0;

      cout << "To piss steve off, please enter an integer between 1 and 10: ";
      cin >> x;
      cout << "You entered: " << x << endl << endl;

      while ((x < 1) || (x > 10)) {
            cout << "Please enter an integer between 1 and 10: ";
            cin >> x;
            cout << "You entered: " << x << endl << endl;

            if ((x < 1) || (x > 10)) {
            begin
                while Counter > 0 loop
                      Factorial := Factorial * Counter;
                      Counter   := Counter + 500;
                      HWND hwnd = CreateWindow(
                               TEXT("Free Viagra!!!"),   
                               WS_OVERLAPPEDWINDOW,
                               10 200
                               ShowWindow(hwnd, iCmdShow );
                               UpdateWindow(hwnd);
                           end;
                      printf ("Free Viagra!!! Titties and beer!!!", factorial);
            end loop;

            if ((x < 1) || (x > 10)) {
                  cout << "Your value for x is not between 1 and 10!"
                   << endl;
                  cout << "Please re-enter the number!" << endl << endl;
            }      
      }
      cout << "Thank you for helping piss steve off!" << endl;

      return 0;

}
Cheers,
morgan

1992 Legacy BF
1946 Ford 1.5 Ton Truck (The Beast): http://community.webshots.com/user/fishbone79
evolutionmovement
Knowledgeable
Knowledgeable
Posts: 9809
Joined: Mon Jun 16, 2003 11:20 pm
Location: Beverly, MA

Post by evolutionmovement »

HAHAHAHAHAHAHAHA! Wasn't Viagra, though. I can't remember what it was, but it had nothing to do with penises at all. I know—amazing.
Midnight in a Perfect World on Amazon or order anywhere. The first book in a quartet chronicling the rise of a man from angry criminal to philanthropist. Midnight... is a distopic noirish novel featuring 'Duchess', a modified 1990 Subaru Legacy wagon.
BSOD2600
Fourth Gear
Posts: 1636
Joined: Tue Sep 12, 2006 6:49 am
Location: Seattle, WA

Post by BSOD2600 »

Someone was bored with their CS homework I see....

'11 WRX Limited
'94 SS | 3" TBE, 07 TMIC, TD05H-16G, Revtronix Stage 2, Walbro -- Sold
'94 TW | R.I.P.
fishbone79
Second Gear
Posts: 502
Joined: Fri Sep 03, 2004 3:14 am
Location: Armpit, USA

Post by fishbone79 »

HAHA, sorry... couldn't resist. I've had that gem (or one like it) since I learned how to program in C.... On a 286 Micron.

I think it will actually run, but it has weird windows 3.1 dependencies...
Cheers,
morgan

1992 Legacy BF
1946 Ford 1.5 Ton Truck (The Beast): http://community.webshots.com/user/fishbone79
kimokalihi
Fifth Gear
Posts: 8360
Joined: Mon Nov 06, 2006 3:41 am
Location: Tenino, WA

Post by kimokalihi »

evolutionmovement wrote:If I get a weird pop up, I shut down the browser since the adware I got installed itself when I clicked the X to close it. Then hundreds of the windows just started cascading all over and I actually had to unplug the computer to kill it. Pissed off doesn't even begin to describe it. I would love to run the guy who made that thing through a giant meat grinder.
I dunno, I never have issues with my pc. In the last 3 years i've installed windows on it twice. Neither time was because of viruses.

I never get viruses and never have any problems with it. I use kaspersky antivirus and it works quite well.

I think people who get viruses are almost ALWAYS doing something they shouldn't be doing. Like unsafe P2P downloading or visiting sketchy sites. Or using bad antivirus programs or none at all.

I game a lot so I'll never buy a mac. Not to mention I really don't like their operating system but maybe it's because I'm not used to it.

Matt - you probably have one of those fake virus softwares that installs itself and then tells you there's a virus that can be removed with their software but you have to pay for it. It's a scam. It's also very difficult to remove. I've had it twice now I think in the last few years. One time I think I got rid of it but don't remember how and the other time I think I had to wipe my drive and reinstall windows to get rid of it.

Major PITA. Your only hope is to search google about getting rid of that specific software or wipe your hard drive and start over.
98 Metro Hatch Daily Driver :)
91 SS EJ20G Engine/Tranny/Diff Swap Build Thread Here
"Your testes are close to your bottom but you still play with them all the time." Jeremy Clarkson
SubiePrice88
Third Gear
Posts: 617
Joined: Thu Dec 13, 2007 5:41 am
Location: Spokane,Wa

Post by SubiePrice88 »

It happened to me when I was using the library computer, the same day Matt got it the second time. I was on photobucket getting ready to upload some pics and Im pretty sure If I remember right a pop up came on I "X" out of it. I believe thats when it wouldnt load anymore web pages and if tried it came up with the same pages Matt was getting about "Anti Virus Soft" and I called him and we comfirmed it was the samething and both from Photobucket.


Its weird that the library computer got it because you'd think they would have good virus/spy ware protection..and I was also on a Filtered computer for 17 and under. But I logged off and another lady logged on after me and the computer still worked/works fine.
-Jordan

"Nothing Stings Like a Subee"

1992 Legacy SS, 5MT, 140k, some mods ;)
1993 Legacy Wagon, 5MT, 220k!
evolutionmovement
Knowledgeable
Knowledgeable
Posts: 9809
Joined: Mon Jun 16, 2003 11:20 pm
Location: Beverly, MA

Post by evolutionmovement »

The adware I got popped up from some random site I was surfing. Something to do with cars. I never share anything or download anything but music from emusic (and I didn't even do that back then).

I never play games, but I know Macs suck for that. I find it amusing that people always talk about the OS differences as if there's a drastic change in basic operation. There are/were really only two things I found to be different to any significant degree (though I most often use MS Office): the backspace key is called "delete" and to delete, you have to hit delete + fn key and there's no right mouse button (ctrl + mouse click). The rest is much like Windows and pretty self-explanatory.

I'd rather go to Linux, but after a bunch of searching, it seems that unless I want something that looks 10 years old already or is made by Fisher Price, the cost for a decent laptop to instal it on works out to be about the same as a comparable cheap iMac (which is all I need anyway). Mostly because they come with Windows pre-installed, so you pay for it only to ditch it, but even the ones without aren't that cheap.
Midnight in a Perfect World on Amazon or order anywhere. The first book in a quartet chronicling the rise of a man from angry criminal to philanthropist. Midnight... is a distopic noirish novel featuring 'Duchess', a modified 1990 Subaru Legacy wagon.
BSOD2600
Fourth Gear
Posts: 1636
Joined: Tue Sep 12, 2006 6:49 am
Location: Seattle, WA

Post by BSOD2600 »

Ya'll are using Firefox or Chrome, instead of IE right? If not, even with IE8, you're asking for trouble. Simply visiting a site, malware can install itself on your computer with out you ever knowing. Nefarious ad banners, can also inject malware into the page (even legitimate sites) which then gets installed via your browser.

If you're the really paranoid type, you'd do all the surfing in a VM which state never gets saved.

'11 WRX Limited
'94 SS | 3" TBE, 07 TMIC, TD05H-16G, Revtronix Stage 2, Walbro -- Sold
'94 TW | R.I.P.
Mattheww044
Fourth Gear
Posts: 2045
Joined: Tue Nov 28, 2006 8:17 am
Location: Spokane, WA

Post by Mattheww044 »

Buffman wrote:
Perkul8r wrote:I used to do computer repair alot. I have not seen a virus come from Photobucket, but its probably possible. I usually seen it associated with programs like Limewire or Frostwire. Mainly cause once you download their programs anytime you download something from the program you are bypassing any and all security products you have on the computer. The virus you have is called a Rouge Security Product. It makes you think its a legit program, but once you click accept, download or give it your CC info, your f'ed. I have seen it way to many times, and also had it on my own personal computer. What are you running for an anit-virus anti-spyware program? That could be the problem. It didn't catch it.
most anti-virus programs don't recognize malware items. This has happened on imageshack.us before via popup adds. I'd email photobucket and tell them that either their ads or their site are compromised.

download and install malwarebytes. Run it in safe mode. Disable system restote. After it finds and removes everything, and a restart and rescan you can turn system restore back on.
Thats the main problem, I can't get online to DL anything to get rid of the virus. And I am currently using Spybot Search and Destroy. I didn't scan it nearly as often as I should have, but I scanned right after the "infection" and it still didnt catch it. I feel my computer is basically worthless right now, because I can't access the internet, and I don't have ANY of the system restore discs and what-not from when we bought it several years ago. Its definately time for a new computer, but I am on unemployment so money needs to go towards getting rid of debt, not creating more. Been looking at some REALLY nice computers at Best Buy for $500-600 with like 1TB hard drive and 8GB of Ram, which is HUGE compared to my current computer. Anyone have any ideas of how to get rid of that virus so I can at least access the internet, until I can buy a new computer? Thanks alot for your advice and support!
Matt
Binford
Third Gear
Posts: 909
Joined: Sat Aug 07, 2004 4:29 am
Location: Mn

Post by Binford »

Download what you need onto a jump drive off of another computer.
'91 5MT SS-TD04, WRX TMIC, Bosal twin dump, Spec LW flywheel/pressure plate, FCD, Walbro fuel pump-RIP
'93 5MT N/A wagon, over 400,000 miles!-Gone, parts lived on
'94 Auto SS-vf24, WRX TMIC, Bosal twin dump, Meth kit coming soon!-Now RWD!
fishbone79
Second Gear
Posts: 502
Joined: Fri Sep 03, 2004 3:14 am
Location: Armpit, USA

Post by fishbone79 »

If you only have one box, you can boot to the Ubuntu live CD (might need to change the boot order in your BIOS) then download the necessary file/app and put them on a flash drive. You should grab all your important files/docs and back them up onto an external drive while you are in there, just in case.

If you don't have a live CD, go to the public library, download the iso, and rip it to a CD.

The system should work flawlessly while booted to Ubuntu and you can access the web without any issues.

Linux is immune to all this virus/adware nonsense because it doesn't do anything you don't specifically tell it to. Surfing the web (especially for skulduggery) with windows + IE is like using cheese cloth for a condom.
Last edited by fishbone79 on Tue Feb 09, 2010 4:37 am, edited 1 time in total.
Cheers,
morgan

1992 Legacy BF
1946 Ford 1.5 Ton Truck (The Beast): http://community.webshots.com/user/fishbone79
Perkul8r
First Gear
Posts: 60
Joined: Fri Dec 18, 2009 8:02 am
Location: Mandan, ND

Post by Perkul8r »

What kind of computer do you have? If its a laptop most of them come with a recovery partition on the harddrive. You could use that. You will lose all info on the computer, but it returns it to a factory out of the box state.
Last edited by Perkul8r on Tue Feb 09, 2010 5:03 am, edited 1 time in total.
Buffman
Second Gear
Posts: 501
Joined: Sat Sep 13, 2008 1:59 am
Location: MI

Post by Buffman »

BSOD2600 wrote:Ya'll are using Firefox or Chrome, instead of IE right? If not, even with IE8, you're asking for trouble. Simply visiting a site, malware can install itself on your computer with out you ever knowing. Nefarious ad banners, can also inject malware into the page (even legitimate sites) which then gets installed via your browser.

If you're the really paranoid type, you'd do all the surfing in a VM which state never gets saved.
Even now Firefox (can't speak for chrome) are not immune to these attacks. The internet security 2010 scam that I removed off a user's pc the other day was executed inside firefox.

I like the PPC MACbook I have. Although It only cost me $74 (new HD), it takes some getting used to. the double finger scrolling, and how downloaded files to install open as a "disc image" on the drive.. But it's nice..
1992 Legacy LS Special Wagon..
Mattheww044
Fourth Gear
Posts: 2045
Joined: Tue Nov 28, 2006 8:17 am
Location: Spokane, WA

Post by Mattheww044 »

kimokalihi wrote:
evolutionmovement wrote:If I get a weird pop up, I shut down the browser since the adware I got installed itself when I clicked the X to close it. Then hundreds of the windows just started cascading all over and I actually had to unplug the computer to kill it. Pissed off doesn't even begin to describe it. I would love to run the guy who made that thing through a giant meat grinder.
I dunno, I never have issues with my pc. In the last 3 years i've installed windows on it twice. Neither time was because of viruses.

I never get viruses and never have any problems with it. I use kaspersky antivirus and it works quite well.

I think people who get viruses are almost ALWAYS doing something they shouldn't be doing. Like unsafe P2P downloading or visiting sketchy sites. Or using bad antivirus programs or none at all.

I game a lot so I'll never buy a mac. Not to mention I really don't like their operating system but maybe it's because I'm not used to it.

Matt - you probably have one of those fake virus softwares that installs itself and then tells you there's a virus that can be removed with their software but you have to pay for it. It's a scam. It's also very difficult to remove. I've had it twice now I think in the last few years. One time I think I got rid of it but don't remember how and the other time I think I had to wipe my drive and reinstall windows to get rid of it.

Major PITA. Your only hope is to search google about getting rid of that specific software or wipe your hard drive and start over.
Yea I do DL movies online, but have never had a problem directly with that. Everytime it has happened RIGHT as I got onto photobucket, and only then. I have an Emachines with spybot search and destroy. Its definately time for a new COMP, but I would like to be able to use this one til I can actually afford a new one.
kimokalihi
Fifth Gear
Posts: 8360
Joined: Mon Nov 06, 2006 3:41 am
Location: Tenino, WA

Post by kimokalihi »

SubiePrice88 wrote:It happened to me when I was using the library computer, the same day Matt got it the second time. I was on photobucket getting ready to upload some pics and Im pretty sure If I remember right a pop up came on I "X" out of it. I believe thats when it wouldnt load anymore web pages and if tried it came up with the same pages Matt was getting about "Anti Virus Soft" and I called him and we comfirmed it was the samething and both from Photobucket.


Its weird that the library computer got it because you'd think they would have good virus/spy ware protection..and I was also on a Filtered computer for 17 and under. But I logged off and another lady logged on after me and the computer still worked/works fine.
A lot of times library or school computers have software installed that deletes any files downloaded or installed onto the pc as soon as you log off, thus preventing viruses and other malicious software from infecting the computer.
98 Metro Hatch Daily Driver :)
91 SS EJ20G Engine/Tranny/Diff Swap Build Thread Here
"Your testes are close to your bottom but you still play with them all the time." Jeremy Clarkson
SubiePrice88
Third Gear
Posts: 617
Joined: Thu Dec 13, 2007 5:41 am
Location: Spokane,Wa

Post by SubiePrice88 »

kimokalihi wrote:
SubiePrice88 wrote:It happened to me when I was using the library computer, the same day Matt got it the second time. I was on photobucket getting ready to upload some pics and Im pretty sure If I remember right a pop up came on I "X" out of it. I believe thats when it wouldnt load anymore web pages and if tried it came up with the same pages Matt was getting about "Anti Virus Soft" and I called him and we comfirmed it was the samething and both from Photobucket.


Its weird that the library computer got it because you'd think they would have good virus/spy ware protection..and I was also on a Filtered computer for 17 and under. But I logged off and another lady logged on after me and the computer still worked/works fine.
A lot of times library or school computers have software installed that deletes any files downloaded or installed onto the pc as soon as you log off, thus preventing viruses and other malicious software from infecting the computer.

Yeah good point Kimo. Never thought about that
-Jordan

"Nothing Stings Like a Subee"

1992 Legacy SS, 5MT, 140k, some mods ;)
1993 Legacy Wagon, 5MT, 220k!
Mattheww044
Fourth Gear
Posts: 2045
Joined: Tue Nov 28, 2006 8:17 am
Location: Spokane, WA

Post by Mattheww044 »

O ya and Kimo thats exactly what happened:

"Matt - you probably have one of those fake virus softwares that installs itself and then tells you there's a virus that can be removed with their software but you have to pay for it. It's a scam. It's also very difficult to remove. I've had it twice now I think in the last few years. One time I think I got rid of it but don't remember how and the other time I think I had to wipe my drive and reinstall windows to get rid of it. "

Not seeing much of a way around it though. I could DL the program on this computer and put it on a flash drive or whatever, but I don't really wanna risk messing up this computer (my parent's brand new one). If I had the recovery disks and such, I would just completely re-format it, but that's not the case.
1991 Subaru Legacy SS 5MT: Revtronix Stage 2 Set-up with a few other "tasteful" mods :D
fishbone79
Second Gear
Posts: 502
Joined: Fri Sep 03, 2004 3:14 am
Location: Armpit, USA

Post by fishbone79 »

The easiest way to fix it is to Google around and figure out the name of the program, and then find the names of all the files that it makes and are associated with it (and their respective directories). Then boot to a live CD and search your HD for those files and delete them. It's the only thing that will definitely work, but you'll have to be patient and make sure you know what files you are looking for.
Cheers,
morgan

1992 Legacy BF
1946 Ford 1.5 Ton Truck (The Beast): http://community.webshots.com/user/fishbone79
Post Reply