Graal Forums  

Go Back   Graal Forums > PlayerWorlds > Bomy Island Main Forum
FAQ Members List Calendar Today's Posts

Reply
 
Thread Tools Search this Thread Display Modes
  #1  
Old 07-27-2001, 09:47 PM
_0AfTeRsHoCk0_ _0AfTeRsHoCk0_ is offline
Banned
_0AfTeRsHoCk0_'s Avatar
Join Date: Jun 2001
Location: Alberta, Canada
Posts: 8,260
_0AfTeRsHoCk0_ is on a distinguished road
Send a message via ICQ to _0AfTeRsHoCk0_
Well... I am a guild leader with over 50 members. My mail qouta is like always full
Reply With Quote
  #2  
Old 07-27-2001, 11:01 PM
cheaterzx22 cheaterzx22 is offline
Registered User
Join Date: Jun 2001
Location: I'm Lost
Posts: 228
cheaterzx22 is on a distinguished road
That virus is everywhere. Even i got sent this one, but i was smart enough not to run it.
__________________


If at first you don't succeed, skydiving is not for you.
~This message IS spam~
See my spiffy game!
Reply With Quote
  #3  
Old 07-27-2001, 11:08 PM
LordAzeroth LordAzeroth is offline
Registered User
LordAzeroth's Avatar
Join Date: Apr 2001
Location: Canada
Posts: 1,010
LordAzeroth will become famous soon enough
Send a message via ICQ to LordAzeroth Send a message via AIM to LordAzeroth
It's fun when the Virus Scanner gets infected, then it clear all files but itself and then you delete the Virus Scanner, whee!
__________________

F U, join now.
Reply With Quote
  #4  
Old 07-28-2001, 12:39 AM
Komieko Komieko is offline
Registered User
Join Date: Mar 2001
Posts: 494
Komieko is on a distinguished road
I've had like a million trojans launched on me without accepting any file..I do virus scans all the time and Sub7 appeared and I thought since I had had sub7 is left a 'residue'..then the next day I scanned and I now had sub7gold infected on me and I've never used sub7 gold...SO I knew someone was infecting me without sendig files..forcing a download on my comp o.O
Reply With Quote
  #5  
Old 07-28-2001, 12:48 AM
iSplash iSplash is offline
Banned
Join Date: Jun 2001
Location: california
Posts: 238
iSplash is on a distinguished road
Send a message via ICQ to iSplash Send a message via AIM to iSplash Send a message via Yahoo to iSplash
Heh, no good. I didn't download it because it was entitled. NW_24leak.zip.idl. I didn't download it because idl? thats a file type, not a zip. I wouldve downloaded a zip then deleted if it didnt have levels, The first one I got was: Please help me with my levels by checking this out, i really appriciate it. Then i got 5 more lol, the text should say:"Hi! How are you?

I send you this file in order to have your advice

See you later. Thanks"

DO NOT DOWNLOAD ANYTHING THAT SAYS THIS, I REPEAT DO NOT DOWNLOD FILES FROM [email protected]
Reply With Quote
  #6  
Old 07-28-2001, 01:14 AM
Guest
Posts: n/a
www.mcafee.com

It had instructions on how to get rid of it and everything. My mom had it on her computer, we followed instructions, and it fixed.


The virus attaches itself to every EXE opened.
Reply With Quote
  #7  
Old 07-28-2001, 03:29 AM
BeZeRkEr BeZeRkEr is offline
what
BeZeRkEr's Avatar
Join Date: Jun 2001
Posts: 1,863
BeZeRkEr is on a distinguished road
Send a message via ICQ to BeZeRkEr Send a message via AIM to BeZeRkEr
A new virus has been discovered that has the possibility to fill up users' hard drives, delete files, distribute private documents, hide itself from typical virus scanners, and propagate itself across the Internet using the Microsoft Outlook address book.
The Symantec Anti-Virus Research Center (SARC) has ranked the threat of the virus, entitled SirCam, a four, with five being the most serious. The McAfee Anti-Virus Emergency Response Team (AVERT), as well as the Trend Micro Virus Information Center, ranks the virus as a medium threat. SirCam also joined Trend's Worldwide Virus Tracker Top 10 list at number 3.

The virus usually comes as an e-mail attachment with the file name "SirCam32.exe." There are several payloads of the virus that randomly occur. One user could actually be a carrier of the virus but never be infected.

"When you run it, it does three things that are sort of odd and unusual," said Steve Trilling, director of SARC.




The first thing it does is compute a random number that has a 1 in 33 chance of triggering the machine to fill up all the remaining space on the hard disk by adding text to a system file in the Recycle Bin (c:recycledsircam.sys) at each startup.

Next, the virus will check to see if the date is October 16. If it is and the Windows operating systems is using a European date format (day/month/year), then it will again generate a random number that has a 1 in 20 chance of triggering the machine to delete all the files on the hard drive.

Finally, it will export a random document form the hard drive and append it to the body of the virus when it propagates itself to other users. This could present a privacy breach if the document is confidential.

Another unusual characteristic of the virus is that when it uploads a file from the hard drive to send to other users, it will append the file name with either .exe, .bat, .tif., .com, or .link. If it uses .link or .bat, the virus will essentially "neuter" itself, Trilling says, ceasing to operate.

The virus stores itself in the Microsoft Windows Recycle Bin, where most virus scanners don't scan for viruses.

Trilling says Symantec, which first discovered and issued a patch for the virus on Monday, has received 200 submissions of the virus from around the world, 40 of which were from corporate customers. McAfee has received 50 worldwide submissions, 30 over the evening between Wednesday night and Thursday morning.

The virus is also a worm, spreading by sending itself out to all the addressees in a person's Microsoft Outlook address book, and copies itself to any shared drives it finds.

The e-mail that people get is either in English or Spanish, and the body of the message varies although it typically looks like this:

Hi! How are you?

I send you this file in order to have your advice

I hope you can help me with this file that I send

I hope you like the file that I sendo(CQsendo) you

This is the file with the information that you ask for

See you later. Thanks

Patches have been available for download for most of the week from the major anti-virus software vendors. Those that don't fix their systems could have an ugly awakening October 16, Trilling says.

The last well-known virus to use a date as its trigger was the Chernobyl virus, which went off on April 26, 2000, the anniversary of the Chernobyl incident in Russia. That virus also was distributed months before the actual trigger date (August 1999), giving users plenty of time to patch their systems before the virus went off.

Vincent Gullotto, senior director of McAfee AVERT, says not everyone patches their anti-virus systems. Among McAfee's customer base, Gullotto says about 50 to 60 percent perform weekly updates, another 30 percent update monthly, and the rest either update less often or not at all.



Reply With Quote
  #8  
Old 07-28-2001, 03:36 AM
omni-m00gle omni-m00gle is offline
delete all proofs
omni-m00gle's Avatar
Join Date: Apr 2001
Location: United Kingdom
Posts: 2,528
omni-m00gle is on a distinguished road
Send a message via AIM to omni-m00gle
Quote:
Originally posted by Komieko
I've had like a million trojans launched on me without accepting any file..I do virus scans all the time and Sub7 appeared and I thought since I had had sub7 is left a 'residue'..then the next day I scanned and I now had sub7gold infected on me and I've never used sub7 gold...SO I knew someone was infecting me without sendig files..forcing a download on my comp o.O
! WIZARDGODZ!
__________________
-+ Malak +-

Never taste of the fruit...

Quote:
Originally posted by Stefan
on andor i got jailed for
impersonating me
Reply With Quote
  #9  
Old 07-28-2001, 03:42 AM
BeZeRkEr BeZeRkEr is offline
what
BeZeRkEr's Avatar
Join Date: Jun 2001
Posts: 1,863
BeZeRkEr is on a distinguished road
Send a message via ICQ to BeZeRkEr Send a message via AIM to BeZeRkEr
lol
funnylink is sending people sub7 server
he calls it pearldouble.exe and give it to n00bs
he said to me "i wanna show you the matrix thing"
im helllll nO!@#
i infected myself once.. i used norton to get rid of it.. and all the dlls on my comp got deleted so i had to reinstall windows and my ddrivers
Reply With Quote
  #10  
Old 07-28-2001, 05:11 AM
_0AfTeRsHoCk0_ _0AfTeRsHoCk0_ is offline
Banned
_0AfTeRsHoCk0_'s Avatar
Join Date: Jun 2001
Location: Alberta, Canada
Posts: 8,260
_0AfTeRsHoCk0_ is on a distinguished road
Send a message via ICQ to _0AfTeRsHoCk0_
If you have ICQ and you have a sub7 the ICQ network keeps sending you warnings... "web pagers" (that's what it's called) and I think it gives you an IP, not totally sure
Reply With Quote
  #11  
Old 07-28-2001, 05:12 AM
Guest
Posts: n/a
Re: Trojan

Quote:
Originally posted by iSplash
What e-mail was it that was sending the trojan, [email protected]? I recieved like 15 e-mails from this e-mail saying, i want your opinion! blarg, so I didnt download.

I got e-mails from someone kiiitty cat saying that, with a holiday inn thing attached. I know it's a virus.
Reply With Quote
  #12  
Old 07-28-2001, 05:55 AM
Solareon Solareon is offline
Registered User
Solareon's Avatar
Join Date: Jun 2001
Location: In a corn field
Posts: 548
Solareon is on a distinguished road
Send a message via AIM to Solareon
Talking ooooooooohhhhhhh

If you get it as a .doc try make the file viewable in notepad and you can find out what is actually in the document without infecting yourself. Last time I got this was from someguy with his resume. Full contact info and everything *grin*. If stefan did block the people sending out the message he' have a lot less mail in his folder to sort through and important people would get replies
__________________
-Solareon Doll, thanks to BirdBird_0 for making it
-
First person to choke on a gummi bear and cough it up =)

AIM: SolareonX
flame me 24/7 roffel
-- l33t
JubieSaotomeX < Me
Reply With Quote
  #13  
Old 07-28-2001, 10:20 AM
BeZeRkEr BeZeRkEr is offline
what
BeZeRkEr's Avatar
Join Date: Jun 2001
Posts: 1,863
BeZeRkEr is on a distinguished road
Send a message via ICQ to BeZeRkEr Send a message via AIM to BeZeRkEr
sub7 is for n00bie hax0rz y0
people who connect to you can send icq pager messages.. they can make your desktop flip too.. hide your mouse.. its scary
Reply With Quote
  #14  
Old 07-28-2001, 10:43 AM
konidias konidias is offline
Old Bee
konidias's Avatar
Join Date: Jul 2001
Location: Orlando, FL
Posts: 7,222
konidias will become famous soon enough
Send a message via AIM to konidias
My email service auto detects trojan viruses in emails.. www.netaddress.com IT OWNS YOU

I have gotten around 10 this week alone.. You aren't alone stefan =/
__________________

Put this image in your sig if you support Bomy Island! (g2k1 revision)
play bomberman while you wait!


Reply With Quote
  #15  
Old 07-28-2001, 12:32 PM
Dilrod_Elven Dilrod_Elven is offline
Registered User
Join Date: Jun 2001
Location: Beaver County, Pennsylvania
Posts: 73
Dilrod_Elven is on a distinguished road
Send a message via AIM to Dilrod_Elven Send a message via Yahoo to Dilrod_Elven
i dont use my email@all period just to mess with my graal acct nothing else
Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT +2. The time now is 08:12 PM.


Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2025, vBulletin Solutions Inc.
Copyright (C) 1998-2019 Toonslab All Rights Reserved.