Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Post
  • Reply
yoloer420
May 19, 2006
There isn't much you can do. It will stop if you wait long enough.

If the bounced mail is bothering her, you can set up a rule to delete it.

Adbot
ADBOT LOVES YOU

Lain Iwakura
Aug 5, 2004

The body exists only to verify one's own existence.

Taco Defender
An iPad is unlikely to get compromised unless it's EOL'd by Apple with no patch against an exploit, a state actor is after your mother, or you have managed to jailbreak it.

Cup Runneth Over
Aug 8, 2009

She said life's
Too short to worry
Life's too long to wait
It's too short
Not to love everybody
Life's too long to hate


OSI bean dip posted:

An iPad is unlikely to get compromised unless it's EOL'd by Apple with no patch against an exploit, a state actor is after your mother, or you have managed to jailbreak it.

It's not jailbroken, but I have no idea why she'd be targeted for email spoofing.

Saukkis
May 16, 2003

Unless I'm on the inside curve pointing straight at oncoming traffic the high beams stay on and I laugh at your puny protest flashes.
I am Most Important Man. Most Important Man in the World.

Squeegy posted:

It's not jailbroken, but I have no idea why she'd be targeted for email spoofing.

Because she has an email address and it was included in some "Million Addresses for JUST $49.99!" megadeal.

Cup Runneth Over
Aug 8, 2009

She said life's
Too short to worry
Life's too long to wait
It's too short
Not to love everybody
Life's too long to hate


Saukkis posted:

Because she has an email address and it was included in some "Million Addresses for JUST $49.99!" megadeal.

Along with her contacts list?

Lain Iwakura
Aug 5, 2004

The body exists only to verify one's own existence.

Taco Defender

Squeegy posted:

Along with her contacts list?

Change her e-mail password and tell her to ignore these bouncebacks. It's possible she could have been phished and someone swiped her address book via Gmail or whatever service she uses.

uPen
Jan 25, 2010

Zu Rodina!

Squeegy posted:

Along with her contacts list?

Yes, I've had it happen to a few clients. Change her password and setup a filter/rule to dump the bounce messages until they stop.

Cup Runneth Over
Aug 8, 2009

She said life's
Too short to worry
Life's too long to wait
It's too short
Not to love everybody
Life's too long to hate


Righto, thanks lads.

spiny
May 20, 2004

round and round and round

Squeegy posted:

Along with her contacts list?

it won't neccesarily have been her contacts list, probably someone she knows.

it goes something like this (assuming an infected computer somewhere)

person A (who knows your mother) gets infected.
Virus/worm scans address book
Virus/worm picks an address at random to send 'from'
Virus/wrom then spams address list (and probably loads of other address lists from other unlucky people)
Person B then gets spam from your mother, even though it was Person A that sent it.

I got hit a few years back, got thousands of bounces, and a few hundred angry people telling me my computer was infected, which it wasn't. Just had to sit tight until it stopped :/

Saukkis
May 16, 2003

Unless I'm on the inside curve pointing straight at oncoming traffic the high beams stay on and I laugh at your puny protest flashes.
I am Most Important Man. Most Important Man in the World.

spiny posted:

I got hit a few years back, got thousands of bounces, and a few hundred angry people telling me my computer was infected, which it wasn't. Just had to sit tight until it stopped :/

One of the few useful things Squeegy can do in this situation, is to explain faked email senders to his mother well enough, that she will be able to explain it to ther friends. May not be easy depending on how tech savvy that group is.

Dylan16807
May 12, 2010

Saukkis posted:

One of the few useful things Squeegy can do in this situation, is to explain faked email senders to his mother well enough, that she will be able to explain it to ther friends. May not be easy depending on how tech savvy that group is.

It should be easy enough to talk about putting a fake return address on a letter. Better than explaining most weird tech problems.

Cup Runneth Over
Aug 8, 2009

She said life's
Too short to worry
Life's too long to wait
It's too short
Not to love everybody
Life's too long to hate


To spin this into a somewhat interesting topic, why do you think email encryption has not caught on like SSL encryption has lately?

Rufus Ping
Dec 27, 2006





I'm a Friend of Rodney Nano

Squeegy posted:

To spin this into a somewhat interesting topic, why do you think email encryption has not caught on like SSL encryption has lately?

It kinda has, motivated by Gmail's TLS shaming icon they introduced a while back

Acer Pilot
Feb 17, 2007
put the 'the' in therapist

:dukedog:

I have a SandForce SF-2281 SSD (a Mushkin Chronos Deluxe 240GB) that I'm thinking about enabling bitlocker on. However, I've been reading horrible things bout the SF-2281 and am worried that it'll end up killing my drive if I try to do this and that the encryption this drive apparently provides isn't as strong as it should be. Advice?

I also just upgraded to Windows 10 Pro from 8.1 Pro if that matters.

Professor Shark
May 22, 2012

I got one of those pop ups last night that "locks" your browser (This one told me they were Windows and to call them), I alt-cntrl-del'd out and ran Malwarebytes and AVG, then scanned with Emisoft this morning, this is what Emi came up with:



Anything I need to be concerned about?

Rufus Ping
Dec 27, 2006





I'm a Friend of Rodney Nano

Professor Shark posted:

I got one of those pop ups last night that "locks" your browser (This one told me they were Windows and to call them), I alt-cntrl-del'd out and ran Malwarebytes and AVG, then scanned with Emisoft this morning, this is what Emi came up with:



Anything I need to be concerned about?

yes - how it happened in the first place?

What OS and browser are you using? Do you have Flash or Java installed? An ad blocker?

Also get rid of your third-party antivirus software, all of which have a poor record of security and actually increase your attack surface area.

Professor Shark
May 22, 2012

Windows 7, Firefox

Flash

uBlock

Rufus Ping
Dec 27, 2006





I'm a Friend of Rodney Nano
Uninstall Flash. If you actually got infected with something, this is almost certainly how it happened.

Also
  • upgrade to Windows 10 if your hardware supports it
  • install EMET
  • preferably use Chrome rather than Firefox
  • get rid of your third party antivirus software (but leave Windows Defender enabled)
Good work on running uBlock

Rufus Ping
Dec 27, 2006





I'm a Friend of Rodney Nano
The free Windows 10 upgrade is still available here if you missed the deadline

Professor Shark
May 22, 2012

What should I use instead of Flash? I was under the impression most videos ran on it online...

Lain Iwakura
Aug 5, 2004

The body exists only to verify one's own existence.

Taco Defender

Professor Shark posted:

What should I use instead of Flash? I was under the impression most videos ran on it online...

All of the major video services (YouTube, Vimeo, Twitch, etc) have HTML5 services.

If you still require Flash for video, stop watching porn.

Dubstep Jesus
Jun 27, 2012

by exmarx

Professor Shark posted:

What should I use instead of Flash? I was under the impression most videos ran on it online...

Most websites have HTML5 players these days.

Professor Shark
May 22, 2012

OSI bean dip posted:

All of the major video services (YouTube, Vimeo, Twitch, etc) have HTML5 services.

If you still require Flash for video, stop watching porn.

HBO says I need it :(

spiny
May 20, 2004

round and round and round
Use Chrome.

Professor Shark
May 22, 2012

Installing now

Does Win10 still have the rollback option? I installed it last year and it wouldn't let my iPod or USB connect, only my iPhone, so I changed it back

Rufus Ping
Dec 27, 2006





I'm a Friend of Rodney Nano
yeah Chrome currently still has a built in version of Flash that it will fall back to

Rufus Ping
Dec 27, 2006





I'm a Friend of Rodney Nano

Professor Shark posted:

Installing now

Does Win10 still have the rollback option? I installed it last year and it wouldn't let my iPod or USB connect, only my iPhone, so I changed it back

it gives you 10 days to roll back

Khablam
Mar 29, 2012

Professor Shark posted:

HBO says I need it :(

Go to chrome://plugins/ (in Chrome, obviously) and disable flash. You'll find the majority of sites that were telling you to enable flash now silently roll over to HTML5. If you for-real need flash, you can simply turn it on.

Segmentation Fault
Jun 7, 2012

OSI bean dip posted:

If you still require Flash for video, stop watching porn.

Don't kinkshame :colbert:

Khablam posted:

Go to chrome://plugins/ (in Chrome, obviously) and disable flash. You'll find the majority of sites that were telling you to enable flash now silently roll over to HTML5. If you for-real need flash, you can simply turn it on.

Actually, click-to-play might be the smarter choice. In Chrome, go to Settings, click "Show advanced settings...", and scroll down a bit until you see the Privacy section. Click on "Content settings..." From there, scroll down until you see the Plugins section. You'll have the option to "Let me choose when to run plugin content." Here, you'll get the best of both worlds: Flash will never run unless you explicitly tell it to, and you'll still have it for when you run into a site that requires it, and even then you can enable Flash on a per-app basis (e.g. you can enable a video player without enabling an ad).

Segmentation Fault fucked around with this message at 17:13 on Oct 7, 2016

Khablam
Mar 29, 2012

Segmentation Fault posted:

Actually, click-to-play might be the smarter choice. In Chrome, go to Settings, click "Show advanced settings...", and scroll down a bit until you see the Privacy section. Click on "Content settings..." From there, scroll down until you see the Plugins section. You'll have the option to "Let me choose when to run plugin content." Here, you'll get the best of both worlds: Flash will never run unless you explicitly tell it to, and you'll still have it for when you run into a site that requires it, and even then you can enable Flash on a per-app basis (e.g. you can enable a video player without enabling an ad).

The problem with going click-to-play is that every site that can be flash or HTML5 will prompt you to use flash. If you just disable it, the vast vast majority of all those sites you were going click-to-play on will just use HTML5 instead. I haven't needed to turn the plugin back on in weeks.

Samizdata
May 14, 2007

Rufus Ping posted:

Uninstall Flash. If you actually got infected with something, this is almost certainly how it happened.

Also
  • upgrade to Windows 10 if your hardware supports it
  • install EMET
  • preferably use Chrome rather than Firefox
  • get rid of your third party antivirus software (but leave Windows Defender enabled)
Good work on running uBlock

You know, most of EMET is baked into 10, albeit without the granular controls. Also, how to you justify "DEATH TO THIRD PARTY AV, but not THAT third-party AV!"? (As Defender was originally from Giant Software if I remember correctly)

Wiggly Wayne DDS
Sep 11, 2010



Samizdata posted:

You know, most of EMET is baked into 10, albeit without the granular controls. Also, how to you justify "DEATH TO THIRD PARTY AV, but not THAT third-party AV!"? (As Defender was originally from Giant Software if I remember correctly)
Expertise

Lain Iwakura
Aug 5, 2004

The body exists only to verify one's own existence.

Taco Defender

Samizdata posted:

Also, how to you justify "DEATH TO THIRD PARTY AV, but not THAT third-party AV!"? (As Defender was originally from Giant Software if I remember correctly)

If you can somehow justify burning your money, then go ahead and buy AV. The list vulnerabilities from just one person is slowly increasing as well.

Rufus Ping
Dec 27, 2006





I'm a Friend of Rodney Nano

Samizdata posted:

You know, most of EMET is baked into 10, albeit without the granular controls.
yes - the better exploit mitigation in 10 is why I suggested he upgrade. It certainly wasn't for the new UI lol

I mentioned EMET explicitly in case he disregarded or was forced to stay on windows 7

Samizdata posted:

Also, how to you justify "DEATH TO THIRD PARTY AV, but not THAT third-party AV!"?
I don't set much store by Defender's ability to actually stop viruses but Microsoft know windows internals pretty well and I like to think their quality control would catch the kind of egregious poo poo that ends up in Kaspersky etc

Samizdata posted:

(As Defender was originally from Giant Software if I remember correctly)
yes! - great company - big fan of Farming Simulator 2017

mod saas
May 4, 2004

Grimey Drawer

Samizdata posted:

You know, most of EMET is baked into 10, albeit without the granular controls. Also, how to you justify "DEATH TO THIRD PARTY AV, but not THAT third-party AV!"? (As Defender was originally from Giant Software if I remember correctly)

this is a valid query because in the twelve years Microsoft has has the product, they certainly didn't ever change the internals

especially not when they rewrote the entire core in 2006

Samizdata
May 14, 2007

OSI bean dip posted:

If you can somehow justify burning your money, then go ahead and buy AV. The list vulnerabilities from just one person is slowly increasing as well.

Yeah, well, the Defender detection rate has been shown to be not very good, so... I will stick with what has worked for me. I don't expect perfect software of any type, not do I rely on it solely as my only line of defense, so, yeah.

Also, as far as expertise goes, I think it makes more sense to stick with a company that specializes in AV as opposed to it being yet another in a line of products.

Samizdata
May 14, 2007

Rufus Ping posted:

yes - the better exploit mitigation in 10 is why I suggested he upgrade. It certainly wasn't for the new UI lol

I mentioned EMET explicitly in case he disregarded or was forced to stay on windows 7

I don't set much store by Defender's ability to actually stop viruses but Microsoft know windows internals pretty well and I like to think their quality control would catch the kind of egregious poo poo that ends up in Kaspersky etc

yes! - great company - big fan of Farming Simulator 2017

Seriously? They can't even make Office worth a crap. And, why do I have to reboot after Office updates anyway?

Also, I was semi-wrong. It was GIANT Company Software, not just Giant Software. (citation)

Segmentation Fault
Jun 7, 2012

Khablam posted:

The problem with going click-to-play is that every site that can be flash or HTML5 will prompt you to use flash. If you just disable it, the vast vast majority of all those sites you were going click-to-play on will just use HTML5 instead. I haven't needed to turn the plugin back on in weeks.

Word? I haven't had this happen to me, Youtube and etc. just give me HTML5 players.

Samizdata posted:

Yeah, well, the Defender detection rate has been shown to be not very good, so...

Says who?

Samizdata posted:

I will stick with what has worked for me. I don't expect perfect software of any type, not do I rely on it solely as my only line of defense, so, yeah.

You're correct that you shouldn't rely on it as your only line of defense, but is your anti-virus even working for you? What is it finding? Is its service a net gain considering the many vulnerabilities antivirus introduces into your machine, as OSI Bean Dip references?

Samizdata posted:

Also, as far as expertise goes, I think it makes more sense to stick with a company that specializes in AV as opposed to it being yet another in a line of products.



I am the pusher robot


Samizdata posted:

Seriously? They can't even make Office worth a crap. And, why do I have to reboot after Office updates anyway?

lol

Samizdata
May 14, 2007

Segmentation Fault posted:


Says who?


You're correct that you shouldn't rely on it as your only line of defense, but is your anti-virus even working for you? What is it finding? Is its service a net gain considering the many vulnerabilities antivirus introduces into your machine, as OSI Bean Dip references?




I am the pusher robot


lol

How's this from last year?
https://www.av-comparatives.org/wp-content/uploads/2015/10/avc_fdt_201509_en.pdf

They use the Defender as the out of box baseline with the worst detection rate.

It primarily detects driveby attempts and malvertising online. I did some extra reading on the AV solution I uses vulns and I don't match any of the use cases.

Not worried about Eset. I am protected.

And the Office comments were designed to prove that MS can suck out loud when delaing with their own stuff.

Adbot
ADBOT LOVES YOU

Lain Iwakura
Aug 5, 2004

The body exists only to verify one's own existence.

Taco Defender
Please do not reply to this thread as you clearly do not understand what you speak of. By just citing AV tests you have demonstrated that you are clueless about everything.

Lain Iwakura fucked around with this message at 07:46 on Oct 8, 2016

  • 1
  • 2
  • 3
  • 4
  • 5
  • Post
  • Reply