new virus

Discussion in 'NOD32 version 2 Forum' started by gio90thebest, Aug 6, 2007.

Thread Status:
Not open for further replies.
  1. gio90thebest

    gio90thebest Registered Member

    Joined:
    Aug 6, 2007
    Posts:
    2
    hello ppl....i dont now if that is the correct place for post that or if another one post that before me but i do that here...
    (sorry for bad english)
    i want to report the virus whose is infect a lot of pc by MSN...
    this virus send automsg to all msn contact with a link for example:
    Malware link removed. Do not post any links to malware what so ever on this forum.
    this virus modify the file explorer.exe located in c:\windows
    and create a connection to an ip (already reported) in ovh.net...
    for remove this virus is sufficent close that connection and scan it with nod32 or another antivirus.... iF this virus persist in his action try to enter in "modalita provvisoria" and replace the explorer.exe with the original one
    maybe a lot of ppl when see that post say all are capable to do that......
    i think not all :D
    goodbye

    and remember TNT OwN YoUr BoX :D
     
    Last edited by a moderator: Aug 6, 2007
  2. ASpace

    ASpace Guest

    ESS/NOD32 user just need to keep them enabled ;)
     

    Attached Files:

  3. gio90thebest

    gio90thebest Registered Member

    Joined:
    Aug 6, 2007
    Posts:
    2
    yep :) i post that here because a lot of ppl nod32 dont delete that virus
    and i post how to remove if nod dont delete :D
     
  4. jagungnet

    jagungnet Registered Member

    Joined:
    Aug 11, 2007
    Posts:
    3
    Last edited by a moderator: Aug 11, 2007
  5. Brian N

    Brian N Registered Member

    Joined:
    Jul 7, 2005
    Posts:
    2,148
    Location:
    Denmark
    Well by uploading it to virustotal they'll submit the sample to companies that didn't detect it.
    So I think it'll be added in a couple of days - Provided that it is a working sample and not a low priority one.
     
Thread Status:
Not open for further replies.