republican-creole
Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » another AIM virus...
Search Topic:
Uniqs:
1143
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
just a "'curious"Virus question »
« Ewido Vs. A squared?  
AuthorAll Replies


kw
Premium
join:2004-06-12

another AIM virus...

Just got about fifty IM's trying to get me to go to
http://www.users.muohio.edu/reberak/pic.pif

These are getting out of control. Good thing is, I ran it and it didn't look like it did much of anything. Runs 'pic.pif' and drops 'NITEAIM.exe' in Windows Directory...I don't see anything else that it does.


Jonson9688
Bogoman

join:2001-10-22
Little Neck, NY
Are you sure? I have this and I couldn't find "niteaim.exe" or "pic.pif".


kw
Premium
join:2004-06-12
reply to kw
I ran it on myself and that's all it did. One user reported NITEAIM.EXE to be running along with Pic.pif.


Jonson9688
Bogoman

join:2001-10-22
Little Neck, NY
reply to kw
lol. I actually clicked it just to help my friend who had this virus. And.... i closed the process and it seems to have disappeared forever. How werid.


kw
Premium
join:2004-06-12
the NITEAIM.exe file appears hidden.


SweetDelight
lagomorph
Premium
join:2004-09-04
Earth

reply to kw
MZkernel32.dllPELàum@pqmMEWFÒÃPàÀÒuÛ?ëÔ`?
àÀ¾`@?Þ­­P­?²?¤¶?ÿsù3Éÿs3Àÿs!¶?A°ÿÀsúu>ªëàèr^ö?ÙuÿSüë&¬Ñèt/Éë?HÁà¬ÿSü=}s
?üs?øwAA??ŶV?÷+ðó¤^ë?­?Àu?­?­?V¬<uûÿSð?V­È@Ytìy¬<uû?@PUÿSô«uçÃ3ÉAÿÉÿrøÃFmSm`@0@
*v @@U?ìè« ]ù? B@#´?h0Hî??Ä,!s?¸¨aôÇEø¸?jÿ,0¼FS8hüØ&1?£¼bF
?=?u
ÇVßʳ Xí&5Xf(PD$=1YjÛ" ??Xì^ÇPhQ<?©?ì?}Àòt3Àé1½,??A"?á¶
á
?ùu??©âÁ4êAút
??8d?yFhë?ºõE è 3ü ïD¼DD÷9"¶1QA?d $' ¨G?úbè«¥F4iYHHLjL1P??P
sN?B8?$aQ?Z???HJm"T{?*P£@"Q`h¡~¦d E?

Q8Dèe??º\·?Ò?kHíÔhpèíuVñfÇo::x®<?41? ??ê/hH êÈ$±"ìï?½G?u? ð?ë¢×æ??? R?Ûvf?
*?òÏBî(»H ^Û­Ïj ô?Bèp
7?õRßLv@?£*ÌIî8?Ò¨
Q?2ÃDEô?*??¡¡P(!hÐ2J\0éþpfè,À ¾
ÐKÀ"?Ét>h£ªÄ¨¿­øíbÈ0v*BøVkwßæ£d,Q§C³ÐB¤@?êREDRr
¯@Q¹?¡?É4¸ÃJp$?_ ìi3ÂM?)?d©²AèI &')d³bè6?BQ¸¢0('ÇÑI?ð®?âÄ?® Oü???y,?UÉÂ
? çd$f?rô!?MüO0ëÎé;Ôrk(!é?ýæ¸~?å]Â.V¤èvBøºXµÎ?E?
?¡(A?;EP,¤?ÀtCh<
g40A÷t÷ø
2(?HR¥¢??øÈÌI?¤¦¡MG ÆDþÞ?â?I Å?|MøÇ|©
Õë?Q Ë)?½ }hDA&ØC:Xâ@?w? AëÉ(hH[h??d4PÆuGäá?Tʸ?ÑhÆ?¸?JZ!BÏMl­
6Z iÑ4Åýú>(h|UM?Q²
m?h?Ad·s 1,\??Q?ú#1î¾4PÑÐÂ_è®QA
ë?È???|??Q?ßé?9FhÔÂÕý)èi1+?èv?z;!?«7±¨~YH!)u9;;?Õxb?ë1h?1è­$Îr2T1?ébr+h?
*F/C??ñü*L0Sª!?g5´Ì$¸??ø§Â$Ø&ÆBõ#q ønpø???"AÁ?UN|ë?æ)Ú(»;Lý¤Ø÷?ÉAºN?ÿ"ë»Eõ8'?.hÇ
*t¤????ÈIÙÌ?Fçí)X®?t¸±&?JËÈ??h%(ý?¼[%Ø?M?yQøG?¬?? í??? £´qëÞÓ"?!H?E?Pç4Ig¿?Ï
*!l!µ?#ÒÆ¯±N*?N82ü??EhTýR ASí%3ÇEü3ëyæ?^5 À";
PÆ])LD|?0¹
E÷ùR?'e¤yDBaòvkj%?P6#!¬Aܹ?? B?U REuÈs-Ck9?p-ÑT¼?¡êF¦òN"Yìt??¹)&?(d@??D? NðæNs
*MÛ?9=R?aìýè£d?þU*øR?Z"ìý?¦¼$?ê?8ôR?
øP3h²ð"@´?w¯6ð©?<A=´8?j???ªÜSGä?=àm?&pvèiD²??G?& läu6ð¦ÄIü?æ¶Æ=*#NÌj?Qî1-
*³ !ô7Iù?ÒÚ?Eì_H?óÿ")á,ñ??ø#$ôíQñ$ÌeëS7?u¥Ë?@©?^ÖêË?d¢P/o¦P¶î??SeSM&w¯?wVüÉC$"/F
*hw$S? k|?ZõV?a&¹uYÁ?,J?²>±?ô=?yô$-ºoNvƳ;?ke!vÊÑ?b#?Øk<B±»Dì?ÇÊ ?I?è±¶-??,íÍ0Í
*¶'êÒ??Y?ËLrKÈ-TÍo©×$É?7ah?¡tJ"¤A¾j?;ý~F?@?¸9Û NÍ?Ï?mu±?%hÂB½ÊVxë²¥k4wukP
*RW??èdzÞà[é>
}p?_b4êÇiçM°"?A?\eµ'??©?&?© ë?ðä?+MÓvQÑ?úÀìP,????¶ 8ü;Æ49÷Ð0ý¹¸¦X?¡UMk"¥èóýÓël
*¶sÄQÔr#¹Â?Ç*6?Ç¡ïxé×?-?bhZòQ?¨?:p0è¾û*h*DlP \è¦??º%¸²??ñè
?FEd?|èb?Ì?$ÕQ &¡H lýÌ¥¬
ÌDø?ªSÊLtF¼ÄÃ?Á ôKÿu Æt$4D?YÃhð)­X, è%¿?ÃG#ÔËÐ|÷Ø3ÀY
H}Îs%Ùe ÐapQ=ÁP¯L$
r?é -?sì+È?ĺ;á<
@PDÔ[^á?hìXN "
dR¡ôî?N% ?ìhS>VWeè3ÛR]üTØ?¨©??
'Ý
«?*¬>?±è??°Èäb¡´?
£ìLè¹?9`(÷hø!w(¸OHèh?hä¨ ß ØÓ¡à @E?j?³
5Ü??²?$ ?ÅÀ"h?3? ¨+$¡Üot?u??>"©:F??áÃt<?òy?? vò ÕÐ?¤?Hö×Ðtw·ÔëX(<Ø,öõj
XPVS?½T?è?îjKq¦?IþTO?å&?PB?$YÆ?È/PØ?É@?¢?Wød¼RÂ??è?03Àç38e@¤M&? ?P1@ÿô!@?È`@
*@p@§Àanite.m1r0>ÿ=|á#aipm?k?8gh%?`FBI.úopvf
1NuAITEWinÜ?Moz§la/4.0 (c§mp°tibl(e)HP\,AèMu.QX3ÀSoftware\M;ic|osY?déwïÁCuC?eÙtVÓ¿Ã
*ioÇ÷Rÿ?PAS! %s
C|UÙER¡?:b¼CK³? ??dñK ?@<JO´N»wPÊfP.QGáO¢?)?0U1<ö&å?`RIVMSG¨D:rÈa"#?dD Òin?_p
*èà_Oscn±St×?uÑNo yfHyÄ327,09A?Ìç?ÑW?Ô?§*HC¤(s|ðB¤
?!H?IqÄBtªµ³ÜØe6agëÃBT?(?T?3.£Z@80@KERN0L32.8dlð?GetWinìow;sD¾r>cùêyTAMôd;ul?FiNa
*m§
Ha`Ú?ExitProc?s8Wa?F?|S?g?:Obj?Ì*C¦aïøMuÌxaSÆ?Er`ç½?TCouNnôzálsÿïÂmp?pTiök
CounJlszÙÙr4?fb?£}SþrêupInfo#Þz?yÚß.
ÛÀºb¥?s6m&zn¬G3ThdoY*îp ÿì?1U?2¥/4??0?ý)AÊ!ì?u??LpÈ?µf?)Ié!?6>ÿÄag¢?$[äDSH??-?ôheÚ
*®? ?!#¸EèDVúPVI$Reg
KáyI

¸¡?³#DA??üVaìuùIøZBT1?WIbNET?S?+`ré?LOp(
SQv
Yc!$U0!$j?Ò\ S2_®®Þ·Ø?
"D?s$rH??*|ïMSVCRs?rcµ _oIÔihaXcp"ËE?¡s*Ütoe.»æ'c £äÐlfpÛM*(kH?³Ý?Ôh¹År39
*Ço îp>{:yú?ßÉfm?§ Í?ö??juo?:¥iv68Ì?mÜhÑ ?$_î4úJ?mgm2"Ï÷?s[~IÑ6cn"?]å¡?$®"Un¦Ø
*¡ù#Zx??P62c??1?$baXs"4_cÐu@DUß"hÔùGÄû&?s å?2d»·V,ù-×1a?)2)QAEâXZ?H4*§.dV0?ùPB *P?Hõ~T
*?BE???B0ª~æB¤?ùKN©B[`£Z@LoadLibraryAGetProcAddress `éÞ?ÿÿ `

(*) WARNING 12 long line(s) split

! is what it shows on Safari


SweetDelight
lagomorph
Premium
join:2004-09-04
Earth
reply to kw
"page not found" removed


Sandolobeaches

@ospreynet.c

reply to kw
i got an IM of the same message and I did click it and got page not found.... does that mean i am not infected... also I think some friend of my daughter's sent it to me deliberately.........

It came from her Screen name.

Please advise.


Kayrac
Premium
join:2001-09-29
Rochester, NH
page not found, means the website was removed, so your not infected

however whoever sent you the message(your daughter?) is alrdy infected by it, you should let her know and or help her get it removed


Sandolobeaches

@ospreynet.c

Thanks for the info, what I am saying about my daughter's ex friend is that I think she knew it was a virus or maybe even inactive and sent it to me because she is evil minded. I think she typed it in her own window.. see? and sent it to me to freak me out. it worked


Kayrac
Premium
join:2001-09-29
Rochester, NH
well that could be, but if they are infected, the virus sends the message all by itself, the people don't even know it's doing it
Forums » Up and Running » Security » Securityjust a "'curious"Virus question »
« Ewido Vs. A squared?  


Saturday, 05-Dec 07:39:23 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [163] Comcast Releasing Promised Usage Meter
· [145] Avast Antivirus Has Gone Mad
· [126] Comcast Makes NBC Universal Acquisition Official
· [104] Graduate Student Unveils Sprint's GPS Sharing With Feds
· [101] Google Invades ISP, OpenDNS Turf With Google Public DNS
· [92] The Bandwidth Hog Does Not Exist
· [83] FCC Ponders Moving From PSTN To IP Voice
· [81] Latest Consumer Reports Survey Not Kind To AT&T
· [79] New Bill Aims To Limit ETFs
· [74] Sprint Defuses GPS Privacy Media Bomb
Most people now reading
· False positive in Avast! or is it real? [Security]
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· Evading throttling with uTP / uTorrent 1.9a [TekSavvy]
· Windows 7 boot manager editing questions [Microsoft Help]
· [Newsgroups] Newzleech down? [Filesharing Software]
· UPS - What do you people think happened? [General Questions]
· DNS options, what are YOU using? [TekSavvy]
· [How to] Install Asterisk on an Asus WL-520GU router [VOIP Tech Chat]
· Enhancement Shaman + Heirlooms, what to pick? [World of Warcraft]
· Road Runnner up to 50 mbps is ready ! [Road Runner]