Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » Question about THIS virus.
Search Topic:
Uniqs:
597
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
TrojanHunter and .dll files? »
« AdAware update error  
AuthorAll Replies


DaMaGeINC
The Lan Man
Premium
join:2002-06-08
Greenville, SC
clubs:
·Charter Pipeline
·AT&T Southeast


4 edits
Question about THIS virus.

I was just browsing the forums when some people on my buddy list on AIM started send me a message,

"DO NOT DOWNLOAD THIS FILE, IT IS A VIRUS"

this is the message

friend on aim: this looks like you : Link Removed. Read the forum rules. People in this forum are not Guinea pigs. WCB!

When I messaged him back, he said he dident send it and that someone sent it to him, right then I knew it was a virus and was glad I dident click on it, well comon, pic.pif? Its like how stupid do you think I am to click on some shit like that. So, can anyone indentify this file and give me some removal methods I can relay on to him. I sent him to about 3 online virus scaner sites already.

--
inc.ath.cx
Have a Networking problem or question? Stop by the Networking Forum and let us help you.

kpatz
MY HEAD A SPLODE
Premium
join:2003-06-13
Manchester, NH


1 edit
It's against the rules here to post links to malware. You should remove the link from your post, or a moderator may do it for you.

That said, when I scanned the sample on Jotti's site BitDefender identified it as a possible new variant of Sdbot. None of the AVs Jotti uses detected it positively, but any unsolicited executable file, especially .pif files should be considered suspicious.

I'll submit the sample to the AV companies.
--
SMTP: Spam and Malware Transfer Protocol. Also used on rare occasion to transmit e-mail messages.


DaMaGeINC
The Lan Man
Premium
join:2002-06-08
Greenville, SC
clubs:
·Charter Pipeline
·AT&T Southeast

reply to DaMaGeINC
A quick lookup on the domain

Domain Name: GAMENIAC.COM
Registrar: GO DADDY SOFTWARE, INC.
Whois Server: whois.godaddy.com
Referral URL: »registrar.godaddy.com
Name Server: NS1.ICH-3.COM
Name Server: NS2.ICH-3.COM
Status: REGISTRAR-LOCK
Updated Date: 04-may-2005
Creation Date: 15-jan-2005
Expiration Date: 15-jan-2006

Figures
--
inc.ath.cx
Have a Networking problem or question? Stop by the Networking Forum and let us help you.


NyQuil Kid
8f The Nyquil Kid

join:2001-01-06
Brick, NJ
reply to DaMaGeINC
Here's a thread that appears related to your experience:

»another AIM virus...

[8F] The NyQuil Kid


DaMaGeINC
The Lan Man
Premium
join:2002-06-08
Greenville, SC
clubs:

2 edits
reply to DaMaGeINC
opps, wrong company


DaMaGeINC
The Lan Man
Premium
join:2002-06-08
Greenville, SC
clubs:
reply to DaMaGeINC
So no one can offer any help?


m0x
I love juice too
Premium
join:2002-11-04
San Francisco, CA

reply to DaMaGeINC
said by DaMaGeINC See Profile:

Go Daddy is a KNOW malware/virus company, why doesent our goverment shut them down? This world is soo fucked up
GoDaddy is known registrar, one of the biggest at that...
--
Just because you're paranoid doesn't mean they're not out to get you


DaMaGeINC
The Lan Man
Premium
join:2002-06-08
Greenville, SC
clubs:
reply to DaMaGeINC
Well, this thread was useless. Last time I come here for help.


DaMaGeINC
The Lan Man
Premium
join:2002-06-08
Greenville, SC
clubs:
reply to m0x
So who actually made the domain?


NyQuil Kid
8f The Nyquil Kid

join:2001-01-06
Brick, NJ
·Comcast
·Verizon Online DSL

reply to DaMaGeINC
If you bothered to check the link I provided, you would have noticed that no one really knows alot about this particular virus, so you are not alone in your ignorance.

Rather than ranting on, perhaps you want to review that link and just chalk it up to good fortune that you knew enough not to click on it. As for your friend who did...well, our ancestors learned that fire was hot when they touched it, so maybe he'll remember this experience the next time around.

[8F] The NyQuil Kid
--
[8F] The NyQuil Kid comes into town not looking for trouble...n00bz gang up, but he ain't seein' double,...pulls and draws, his deagles two...n00bz litter the ground you know it's true.


waltham41
My ISP can beat up your ISP
Premium
join:2003-11-26
Fort Gibson, OK
·HughesNet Satellit..

reply to DaMaGeINC
said by DaMaGeINC See Profile:

Well, this thread was useless. Last time I come here for help.
How Rude!!!!!
--
DirecWay | DW 2 way | SatMex5 1270mhz |HP a620n 2.2G | Win XP SP2 | 2 XP PC's on the internet via D-Link DSS 5+ switch


Wildcatboy
Premium,Mod
join:2000-10-30
Toronto, ON

Host:
Security Product V..
Security
reply to DaMaGeINC
said by DaMaGeINC See Profile:

Well, this thread was useless. Last time I come here for help.
Let's try to make sure of that.
--
You can catch the Devil, but you can't hold him long.
Thread is
Forums » Up and Running » Security » SecurityTrojanHunter and .dll files? »
« AdAware update error  


Monday, 09-Nov 13:47:15 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [51] VoIP Over 3G Still Not Working For iPhone
· [22] Bill Would Force ISPs To Block Financial Scams
· [11] Mediacom Hints At 50, 100 Mbps Speeds
· [10] Clearwire To Get Another $1.5 Billion
· [5] 15 States Have Now Gotten Broadband Mapping Money
· [0] Verizon Keeps Swinging At AT&T
Most people now reading
· Divorce advice... [General Questions]
· 60 Minutes piece on cyber security last night [Security]
· Framed for child porn 151; by a PC virus [Security]
· [WIN7] Which Services in Win 7 Have You Turned Off? [Microsoft Help]
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· My cat is reluctant to exercise. [General Questions]
· Blown out Ballasts [Home Repair & Improvement]
· Is Gear Score now the new requirement to get pug invite? [World of Warcraft]
· Connecting to Google Voice Via SIP [VOIP Tech Chat]
· [Rant] Brand New 'Jasper' Xbox360 - RRoD Hardware Failure [Rants, Raves, and Praise]