A directory infested with Virus.

Discussion in 'Directories' started by FlyingBear, Sep 4, 2007.

  1. #1
    timeclicker dot biz. it is a download virus. hopefully, the owner will see this.

    good luck


    bear
     
    FlyingBear, Sep 4, 2007 IP
    Fastian and pipes like this.
  2. jminscoe

    jminscoe Peon

    Messages:
    1,223
    Likes Received:
    119
    Best Answers:
    0
    Trophy Points:
    0
    #2
    to everyone this is the virus its trying to download I forgot to give the name its called pysme
    Discovered: April 1, 2004
    Updated: February 13, 2007 12:20:34 PM
    Also Known As: Troj/Psyme (Sophos), VBS/Psyme (McAfee), Trojan.VBS.KillAV (KAV)
    Type: Trojan Horse
    Systems Affected: Windows 2000, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows XP
     
    jminscoe, Sep 4, 2007 IP
  3. deluxdon

    deluxdon Catch Me If You Can...!!!™ Staff

    Messages:
    25,481
    Likes Received:
    1,943
    Best Answers:
    32
    Trophy Points:
    480
    #3
    Thanks to both of you for the heads up.
     
    deluxdon, Sep 4, 2007 IP
  4. templates

    templates Notable Member

    Messages:
    4,772
    Likes Received:
    218
    Best Answers:
    0
    Trophy Points:
    205
    #4
    wow..thanks for this
     
    templates, Sep 4, 2007 IP
  5. pipes

    pipes Prominent Member

    Messages:
    12,766
    Likes Received:
    958
    Best Answers:
    0
    Trophy Points:
    360
    #5
    FlyingBear, may i ask what Antivirus your using please? ive noticed you have run into a few viruses recently at various places and im aware that many antivirus software will miss what another will pick up.

    Thanks for another warning, much appreciated.
     
    pipes, Sep 5, 2007 IP
  6. Fastian

    Fastian Peon

    Messages:
    2,085
    Likes Received:
    235
    Best Answers:
    0
    Trophy Points:
    0
    #6
    Thanks for the "heads up" guys.

    I hate viruses ....
     
    Fastian, Sep 5, 2007 IP
  7. Ibn Juferi

    Ibn Juferi Prominent Member

    Messages:
    6,221
    Likes Received:
    365
    Best Answers:
    0
    Trophy Points:
    310
    #7
    Is there a virus at this directory? I went to it and browsed through but I didn't get any warning messages from my anti-virus software.
     
    Ibn Juferi, Sep 5, 2007 IP
  8. jminscoe

    jminscoe Peon

    Messages:
    1,223
    Likes Received:
    119
    Best Answers:
    0
    Trophy Points:
    0
    #8
    mine when off and showed me it was trying to download pysme, also Dawzz checked it and said ,I took out url below

     
    jminscoe, Sep 5, 2007 IP
  9. the Patrician

    the Patrician Well-Known Member

    Messages:
    253
    Likes Received:
    23
    Best Answers:
    0
    Trophy Points:
    110
    #9
    I landed on a web page the week before last that tried to put this on my system. (I was on a PTC site.) Fortunately PCTools A/V (the free edition) caught it coming in and quarantined and deleted it before it could activate.

    I contacted the webmaster of the site who said he couldn't find a problem so he did nothing about the report until two days later I get an APB to all members about how so many people complained about it he canceled the site. I'm glad I don't have HIS computer.:D

    I was wondering jminscoe since you seem knowledgeable, what does this virus do to infected machines? Is it an Ad Tracker, key logger, e-mail pirate? You mentioned IE, I use Firefox. Does it have any way through them? Inquiring minds would love to know.

    That, and why so many people still don't have a clue about preventative measures for their machines despite all the information on line.:rolleyes:
     
    the Patrician, Sep 5, 2007 IP
  10. jminscoe

    jminscoe Peon

    Messages:
    1,223
    Likes Received:
    119
    Best Answers:
    0
    Trophy Points:
    0
    #10
    alls I know is what I read
     
    jminscoe, Sep 5, 2007 IP
    the Patrician likes this.
  11. The Pheonix

    The Pheonix Banned

    Messages:
    1,233
    Likes Received:
    96
    Best Answers:
    0
    Trophy Points:
    0
    #11
    I just tested the link in ie7 with the popup blocker interupting, would it be the popup that carries the germ?
     
    The Pheonix, Sep 5, 2007 IP
  12. the Patrician

    the Patrician Well-Known Member

    Messages:
    253
    Likes Received:
    23
    Best Answers:
    0
    Trophy Points:
    110
    #12
    jminscoe,

    Thank you so very much for putting all the details you could find here to help us. The world needs more folk like you (and way less of the type FlyingBear warned us about!)

    I have printed out a copy of your wonderful instructions so if it ever crops up again or I find someone who's been infested, I can pass on your knowledge.

    Positive rep added for a positive person...Thanks :)
     
    the Patrician, Sep 5, 2007 IP
  13. jminscoe

    jminscoe Peon

    Messages:
    1,223
    Likes Received:
    119
    Best Answers:
    0
    Trophy Points:
    0
    #13
    I think it would probably be thru the popup but I am unsure as my avg caught it right away as I was using ie7 at the time and I have my popup blocker on so just went into my virus vault to see the name
     
    jminscoe, Sep 5, 2007 IP
  14. indyguidedotinfo

    indyguidedotinfo Notable Member

    Messages:
    3,254
    Likes Received:
    202
    Best Answers:
    0
    Trophy Points:
    245
    #14
    lets all just use linux and will solve all of the problems!
     
    indyguidedotinfo, Sep 5, 2007 IP
  15. The Pheonix

    The Pheonix Banned

    Messages:
    1,233
    Likes Received:
    96
    Best Answers:
    0
    Trophy Points:
    0
    #15
    It never got passed my blocker so I kinda guess it was in the popup then. Thanks for the info though John.

    Great stuff.
     
    The Pheonix, Sep 5, 2007 IP
  16. jminscoe

    jminscoe Peon

    Messages:
    1,223
    Likes Received:
    119
    Best Answers:
    0
    Trophy Points:
    0
    #16
    whos John if your referring to me its JoDee;) and your welcome
     
    jminscoe, Sep 5, 2007 IP
  17. Creative_illusion

    Creative_illusion Well-Known Member

    Messages:
    2,702
    Likes Received:
    103
    Best Answers:
    0
    Trophy Points:
    175
    Digital Goods:
    2
    #17
    Very thanks for the heads up..
     
    Creative_illusion, Sep 5, 2007 IP
  18. The Pheonix

    The Pheonix Banned

    Messages:
    1,233
    Likes Received:
    96
    Best Answers:
    0
    Trophy Points:
    0
    #18
    Everyone is John to me, sorry, I do get names mixed up. :D
     
    The Pheonix, Sep 5, 2007 IP
  19. FlyingBear

    FlyingBear Peon

    Messages:
    184
    Likes Received:
    7
    Best Answers:
    0
    Trophy Points:
    0
    #19
    I use Norton Pro version + SpySweeper + Adaware's Ad Watch. WinXP. Most of time, I use Opera as browser. Sometimes, IE.

    It seems these things saved me many times in the passing several years.

    one more thing, I turned on firewall on the route, maybe it helped too.


    bear


     
    FlyingBear, Sep 5, 2007 IP
  20. pipes

    pipes Prominent Member

    Messages:
    12,766
    Likes Received:
    958
    Best Answers:
    0
    Trophy Points:
    360
    #20
    I used to use Norton and Spysweeper, so many people say Norton isn't very good but it was not bad when i used it i guess, i do now though use NOD32 and AVG, i know your not supposed to use 2 together but it works for me.
     
    pipes, Sep 5, 2007 IP