Ubuntu Machine Has Malware And Spyware....Need Help!
Linux - NewbieThis Linux forum is for members that are new to Linux.
Just starting out and have a question?
If it is not in the man pages or the how-to's this is the place!
Notices
Welcome to LinuxQuestions.org, a friendly and active Linux Community.
You are currently viewing LQ as a guest. By joining our community you will have the ability to post topics, receive our newsletter, use the advanced search, subscribe to threads and access many other special features. Registration is quick, simple and absolutely free. Join our community today!
Note that registered members see fewer ads, and ContentLink is completely disabled once you log in.
If you have any problems with the registration process or your account login, please contact us. If you need to reset your password, click here.
Having a problem logging in? Please visit this page to clear all LQ-related cookies.
Get a virtual cloud desktop with the Linux distro that you want in less than five minutes with Shells! With over 10 pre-installed distros to choose from, the worry-free installation life is here! Whether you are a digital nomad or just looking for flexibility, Shells can put your Linux machine on the device that you want to use.
Exclusive for LQ members, get up to 45% off per month. Click here for more info.
So one last question, can the BIOS be repaired by taking out the battery and simply resetting it to factory specs?
Or can the BIOS 'pollute' the mother board somehow.
I tell you what Dave, let me think about it over night, and tomorrow I'll send you the story.
You won't believe it probably, cause mostly when I've shared it, I've heard a lot of crap, but it still remains that there's over 800 (823 I think) virus' for Linux now, and God knows how many root kits.
Thanks for listening to me, I appreciate it, and thanks for your help, even MORE.
Lou
Quote:
Originally Posted by ilikejam
Hi Lou.
If you're utterly convinced that you've been compromised, then nothing I or anyone else says will persuade you otherwise. Let's work on that premise.
If you doubt the integrity of the BIOS on your motherboard w.r.t keyloggers et al, then you and me both know that you need to not use that motherboard. So don't. Chuck it in the bin and be done with it. Buy a new motherboard. No amount of drive wiping will be sufficient for your ends.
"I could tell you the real truth about HOW all of this happened, but you wouldn't believe me anyway."
Try me. PM me if you feel the need. You're giving off some serious paranoid vibes here, but if you have reason to be paranoid then fair enough - you'll know if you're willing to share accordingly.
No, it's because I actually forgot which one that I used, or how I found it exactly.
But, to clarify, when you visited the site you got a popup with a bar running across, and it looked like it was scanning your machine and said it had found loads of viruses and malware, right? And since, the graphics were cool and they either 1) asked for money or 2) didn't ask for money, you choose to believe this random site, rather than the people you turn to for help.
No, it's because I actually forgot which one that I used, or how I found it exactly.
That's it, it's pretty simple.
Right. Well, at this point you haven't provided any information to us which would indicate that you have any kind of spyware at all on your system. It really does sound like you fell for some kind of hoax. Either that or you're just toying with us.
But, to clarify, when you visited the site you got a popup with a bar running across, and it looked like it was scanning your machine and said it had found loads of viruses and malware, right? And since, the graphics were cool and they either 1) asked for money or 2) didn't ask for money, you choose to believe this random site, rather than the people you turn to for help.
I hate being thought of as "crazy", I hate being made fun of.....
I had to join this forum today, and begin asking questions which I hate to ask, because it'll be MORE of the above again.
Look, "the authorities" (and I won't say anymore in public, about WHO I mean) KNOW about the guy who's hacking our PC.
Now, I told Dave that I'd tell him, I will.
He may think that I'm crazy too, or on the slim chance that he actually BELIEVES ME, I don't know that he'll have any real idea WHAT TO DO.
I DON'T "play" anyone, and I know that you don't know me at all, so you don't know this about me yet.
OK, I've said all that I want to say in public.
Please believe me.
Thanks. Lou
Quote:
Originally Posted by win32sux
Right. Well, at this point you haven't provided any information to us which would indicate that you have any kind of spyware at all on your system. It really does sound like you fell for some kind of hoax. Either that or you're just toying with us.
Last edited by Ubuntu Lou; 12-22-2008 at 09:59 PM.
I'll pass. Your post is completely without specifics and has all the hallmarks of somone just jerking us around. We, in this forum, know that what you describe isn't happening, so why not just come clean and save us all some time and effort?
Aren't you the guy who posted under another name about his neighbor taking over his router or his computer or some other nonsense?
I never read, nor heard of that post, until a few minutes ago.
I found this forum TODAY, looking on Google.
Where did that guy live, do you know?
We live in Iowa.
NO I'M NOT HIM.
I give you my word, that I'm not him.
What's up with all of this B.S.?
I tell you the truth, and you accuse me of being somebody that I've never even HEARD OF BEFORE.
Is that polite? NO.
Really, WHO'S "paranoid"??
Lou
Quote:
Originally Posted by Quakeboy02
I'll pass. Your post is completely without specifics and has all the hallmarks of somone just jerking us around. We, in this forum, know that what you describe isn't happening, so why not just come clean and save us all some time and effort?
Aren't you the guy who posted under another name about his neighbor taking over his router or his computer or some other nonsense?
I hate being thought of as "crazy", I hate being made fun of.....
I don't see anyone making fun of you here.
What I see is a lot of people asking you questions to which you have zero answers.
Quote:
Please believe me.
Why? This is a technical forum. Provide technical details about the problem you are having, and you'll get free technical support. Belief has absolutely nothing to do with anything here. You claim to have been rooted, yet you don't show us how you know this. You claim to have spyware installed on your system (and a keylogger in your BIOS), yet you don't even know what software you used to make that determination. What are we supposed to do with that?
Seriously, if your objective is to nuke the drive then just run DBAN on it. If your objective is to reinstall the BIOS then go to your motherboard manufacturer's website and look for the instructions on how to do that for your specific model.
In all seriousness, you need to THROW OUT THE COMPUTER.
It's not doing you any good. Even if you do get it up and running there'll always be a niggling in the back of your mind whether or not someone is HACKING YOU RIGHT NOW.
So THROW IT OUT.
Even better, take it apart and get out an angle grinder and grind off the magnetic material from the hard drive platters, so it's not recoverable. And put a hammer to the motherboard, CPU and the RAM.
Then THROW IT OUT.
Cancel your internet connection with your current provider. Change provider, and watch closely as they install it to see whether you're being compromised. Perhaps use an alias. Check for parked cars or vans on the other side of the street. Look for any compromises in your security, e.g. strange boxes that you're cable is going to, etc.
Then install a new OS WITHOUT INTERNET CONNECTION ON. Check the MD5SUM if you download it from somewhere from a secure offsite location with a completely trusted computer.
THROW OUT YOUR ROUTER AS WELL.
Get a new one, set it up BEFORE YOU CONNECT TO THE INTERNET. Put it on WPA2 Security with a REALLY LONG PASSWORD with CHARACTERS AND SYMBOLS.
Continually check your logs and monitor your neighbours and look out for anything that doesn't seem quite right.
Encrypt your harddrive. Take precautions. Use a proxy. Don't download anything you don't know you is safe. Don't visit any website that you don't know and trust.
LinuxQuestions.org is looking for people interested in writing
Editorials, Articles, Reviews, and more. If you'd like to contribute
content, let us know.