Tuesday, April 13, 2010

Anti-virus programs put to the test... and the winner is...

One of my computers would not load properly after a friend used it for a few days. Turns out "explorer" was not loading upon system startup.

I ran Hitman Pro 3.5.4 and it found a Trojan -- lgou.rlo in c:\windows\system32. My trial had expired, so I couldn't clean it with Hitman Pro, so I used this situation to test other anti-virus software.

I Googled that file, came up with this page from SuperAntiSpyware.com that says it can remove it. I installed SuperAntiSpyware and scanned my system. It found nothing. I uninstalled it and rebooted, and the problem was still there.

I installed AVG free anti-virus and ran a full scan of my system. It found nothing. I uninstalled it and rebooted, and the problem was still there.

I installed Spybot Search & Destroy 1.6.2 and ran a full scan. It found nothing. I uninstalled it and rebooted, and the problem was still there.

I then reran Hitman Pro 3.5.4 just for kicks. Yep, the trojan was still there.

I installed and ran ComboFix. It found nothing. I uninstalled it and rebooted, and the problem was still there.

So I had a choice -- pay for Hitman Pro to clean it, or rebuild the system. Since we purposely had the system pretty bare bones anyway, I decided to wipe the system and rebuild it as I worked on other things. 10 points for Hitman Pro.

Thursday, April 1, 2010

Scam alert: A1AccessDirectory.com and A1 Access Directory

For each of the past two days, my business has receieved a call from someone at "A1 Access Directory" who says we are past due on online advertising. We, of course, never authorized nor requested this service.

This scam is detailed here: http://www.spamlaws.com/yellow-pages-scam.html

And here on the FTC's site: http://www.ftc.gov/bcp/edu/pubs/business/alerts/alt024.shtm

Funny thing is they called up and asked for the owner of the business by my wife's given name, a name she NEVER uses in day to day business. So this information must have come from standard public records, or county DBA records, or something other than us.

Today they sent us an email, full of spelling mistakes, threatening to ruin our "good credit rating" if we don't pay.


Date: Thu, 01 Apr 2010 12:59:29 -0500
From: cs@a1accessdirectory.com
To: *******
Subject: Past Due Invoice - A1-****

Good afternoon ********* (given name here),

Attached herewith is a copy of the past due invoice that is 62 days overdue for your company's online advertising on: www.a1accessdirectory, placed on January 27, 2010. To avoid ruining your good credit rating and further accrual of lates fees, pleae remit your payment as soon as possible.

To pay online, please log onto: www.a1accessdirectory.com Otherwise, your cheque must be mailed to A1 Access Directory, Inc. to the following address: 907 Hanshaw Road, Suite 194, Ithaca, NY, 14850.

Respectfully,

Megan Beresford
Accounts Receivable Manager
A1 Access Directory, Inc.
1-866-678-5522 Ext. 23
cs@a1accessdirectory.com


The attached invoice is very official looking.



So I called their number and spoke with someone named Lori. I gave the invoice number. She put me on hold. She said they have a recording of the order being "approved". They played it for me. My wife was heard just answering yes and verifying information. She had no idea it was placing a $250 order.

When Lori came back on, I asked to cancel the service immediately as this was not authorized. She spoke over me, ignored me, and said to get an attorney and have them contact A1 and then hung up on me.

I emailed them back, saying:


This service was never authorized, requested, nor approved. Remove us from your records IMMEDIATELY and confirm that this service has been cancelled and no further charges will be made.


They responded with:


Date: Thu, 01 Apr 2010 15:18:56 -0500
From: cs@a1accessdirectory.com
To: *********
Subject: Re: Past Due Invoice - A1-*****

In response to your email, this service will not be cancelled as it was authorized and the proof of authorization has already been provided to you, therefore, it is in your best interest to resolve this matter as swiftly as possible to avoid further ramifications.

Threatening our company will not get the invoice cancelled, as we will provide the parties concerned with the proof of authorization for the service provided. So, we suggest you get legal representation on this matter.


Found their BBB rating (a D!!!): http://www.bbb.org/upstate-new-york/business-reviews/mailing-lists/a1-access-directory-inc-in-ithaca-ny-183808444/ .

I posted a complaint with the BBB of Upstate New York. I also called the FTC and talked with an awesome lady named Maria who took my complaint there and also directed me to the Attorney General's office in New York, where I just faxed in another complaint.

And I did contact a lawyer, one of our customers, who sent a Demand Letter to the company this week to stop this nonsense.