Boot Sector Virus Shipped on German Laptops
Juha-Matti Laurio writes "A consignment of laptops from German manufacturer Medion, sold through German and Danish branches of giant retail chain Aldi, have been found to be infected with the boot sector virus 'Stoned.Angelina', first seen as long ago as 1994. The affected notebook models (German language) Medion MD 96290 have been pre-installed with Windows Vista Home Premium and Bullguard anti-virus, which reportedly is unable to remove it. A special removal tool was released to clean the laptops. Aldi has shared the same warning as well. Two years ago several thousands of Creative Zen Neeon MP3 players were shipped with a Windows worm Wullik.B."
Apple did it too, remember? Cue people whining about how the fanbois ignore Apple's flaws so that they can pretend Creative is satan in 3.... 2.... 1....
...cutting out the middleman!
THL phish sticks
stoned.angelina is a nasty virus too. If your computer is infected it will download other child viruses with weird names from third world countries.
hahah :)
Cant even clean up with their own AV.. Sucks to be them..
Alright, I'll be the first to say it: I can remove any Windows boot sector virus by just installing Linux on it.
It did seem obligatory....
I guess this is what Microsoft means by backwards compatibility!
It doesn't really seem to do anything.
Send email from the afterlife! Write your e-will at Dead Man's Switch.
Stupid, Stupid, Stupid, Stupid... and in case i didn't mention STUPID...
What was whoever doing on the base image that caused it to become infected? I build system images, and rule #1: Make sure it works cleanly when you're done.
Somebody's Head
------------------- = Silver platter
(Silly junk character filter, I can't even ASCII Art a silver platter)
I will not give in to the terrorists. I will not become fearful.
... a Retro-Virus? ;-)
Quick translation: Since there was some Press-noise, MEDION feels the need to say that the ALDI-Notebook is not infected with the Stoned Angelina virus.
I just don't trust anything that bleeds for five days and doesn't die.
.... that there is more backwards compatibility support in Vista than people thought :)
Systems shipped by Wal-Mart were found to contain numerous copies of a simple text game where the user imagines an animal and the game asks questions in order to deduce the animal in question. Anti-malware programs no only failed to identify the game as a threat, but were themselves overwritten with the game.
You mean this one?
Thank goodness it wasn't a BIOS trojan.
Knowledge is how to play a game, intelligence is how to win, wisdom is knowing what game to play.
Isn't Adli a grocery store? WTF is it doing selling PCs? If you buy a PC at the grocery store you deserve to get infected. IMHO
"A government is a body of people, usually notably ungoverned." - Shepard Book Quoting Malcolm Reynolds
Aldi isn't really a grocery store - they're more like a large convenience store... i.e. supermarket. And yes, they sell PCs and Notebooks from time to time. And no, they're not crap either. Yes, they tend to be near the lower range, but within that lower range, you can get a great deal on them by going through stores like Aldi. The reason for that is simply numbers.. Aldi buys up thousands for a much lower price than a consumer can get. They then sell these at only slightly above the price they themselves paid... the profit on these machines for them is minimal. The additional turnover they get by luring in customers is what they're interested in mostly.
Arrrrgh!
I always run DBAN on a new system or hard drive, OEM assembled or not. Insist on proper OS installation media and unless it too is defective, you'll be fine. But never, ever, trust a machine setup by anyone else. That's not practical for everyone, but we're all geeks here, installing your OS of choice should be a rite of passage. :)
... but against super-cheap prices, run by slaves(very low wages, very strict time policies on the counters), and selling great deals on a weekly basis (for which great interest exists). Another company that runs pretty much by the same formula is Lidl.
Slashdot: stuff for news, nerds that matter, matter for news, stuff that nerd
My question is: What good is this "Bullguard anti-virus" if it can't even remove a simple virus that is over 10 years old?
Now that is efficient! Why email trojans to the criminals when you can have them preinstalled by the factory!
I smell a conspiracy.
load "$",8,1
I mean, without voluntarily looking for it? And how do you get it accidentally on a new PC? Have they stored the bios on infected floppies, or what? Installed DOS first, because the Windows Vista upgrade is cheaper than an OEM version? Tsk, tsk.
How adorably quaint.
${YEAR+1} is going to be the year of Linux on the desktop!
If there's a tool to clean it up, then use it. Or just format everything including MBR and get GRUB inside, and boot your fav. distro. (just a thought) And if that virus causes the user (owner of the machine) to lose data (for e.g), there are lawsuits. Next time I buy new stuff, I'll ask - "can you please provide me with a hard drive with a formatted MBR (done in front of me)?" Oh well, if I ask that for an HDD, I may end up with modems without internal firmwares and the tech guy will respond: "okay, you told us to remove everything, we erased the chip" LOL
Do I require the c-sig package to have a signature?
It's not a bug, it's a feature.
How do you identify a troll on Slashdot? They're modded +5, Insightful.
Just imagine if Worst Buy sold these. The Gector Squad would offer a special "new PC tuneup" for an extra hundred clams or so, but then you'd probably get infected by some of the warez they allegedly use to "support" customers. Wait...why am I asking this question? They already do this!
Now I don't have to wait for my daughter to download a virus, it comes preinstalled!
If I was deep this is would be profound, if smart then wise, if a poet then verse. Here it is, you judge!
Good to see these old virii going in an age of windows worms.... takes me back !
As opposed to the above comment, Medion Nordic HAS acknowledged that our laptops have been infected with Stoned.Angelina.
We also have a nice little fix for it, even though it oughtn't have been nescesary to make one in the first place.
But it's always fun to get 3x the amount of calls as normal due to a cock-up like this.
And to be honest - it's an MBR virus. Has no payload, spreads primarily through floppy disks. It's about as dangerous to computers today as diarrhoea is in a western country. Sounds bad, but nothing to worry about.
You used to be able to kill any boot sector virus instantly with "fdisk /mbr", but that command was retired when DOS went away.
I had to scan and repair about 1000 floppies and write a memo about not taking your work home. The IT manager did not believe that virii existed. Discovered it by looking at the boot sector with debug. The text string:"your PC is stoned", showed up. F-prot saved the day. That particular version of Stoned had a bug which would trash part of the root directory.
I remember getting this virus on my 386 in the early 90's. That just goes to show how little things have changed if this virus is still able to infect machines.
The Information Revolution will be fought on the command line.
never to buy bullguard if it can't even deal with a 14 year old virus.
A stealth virus that attacks the BIOS, embeds itself into all firmware it can identify, stays resident in the boot sector and infects backup files and removable media so it that it can spread from PC to PC? Wouldn't this be the end-all-be all malware that would change the way we look at PC security? The BIOS would come to have fail-safes built in and so would all firmware. Physical switches would become the standard for updating all firmware devices. Shouldn't we be doing this already?
... said the guy lying about being homeless while failing to get Linux working on a ThinkPad...
... that theses weren't "trusted" computers (or TPM or whatever they call them).
At least you're still able to re-format and start from scratch.....