Posts: 4,012
Threads: 377
Joined: May 2011
10-05-2012, 11:55 PM
(This post was last modified: 10-08-2012, 01:00 PM by ImagenAshyun.)
http://trojan-killer.net/beware-virus-sk...-gl-links/
The virus started from a hack into Mezrin's Skype account then spread to those in his contact list. Other users such as myself, CappnRob, Reese, KageAcuma, etc., may be sending it too. You may be seeing similar links from other users in your contact list.
Do not click on the link--it is a trojan wherein upon download, it'll infect your files. Click onto the link I provided in this post (NOT the "lol is this your profile pic?"), which will include some instructions. Also run your anti-virus, anti-malware, anti-spyware, and other cleanup programs.
Beware that some files may not be able to be removed. These can be sought out manually, the processes disabled via your Task Manager, then deleted manually.
ADDED: You need to remove the trojan itself as well, not just the viruses. Here is a tutorial: http://www.bleepingcomputer.com/tutorial...r-malware/
Posts: 2,106
Threads: 186
Joined: Aug 2010
Saddly I do not know what I'm looking for when I'm trying to find these files. Anyway you can let me know what I should be looking for?
Posts: 4,012
Threads: 377
Joined: May 2011
10-06-2012, 12:18 AM
(This post was last modified: 10-06-2012, 12:19 AM by ImagenAshyun.)
Look for randomly named files. An example is "D4C8.exe".
For Windows PC users, you can hunt these down by going to your Task Manager, then clicking on the Processes tab. Right-click and select "Open File Location". You'll be directed to the folder where all the viruses are being stored. If you can't remove them, it's because the process is running. Close the process in the Task Manager and delete them, then remove them from your Recycling Bin.
Given that this is a Trojan, you may not be able to find them all at once. Keep on the lookout. Continuously run your anti-virus/malware programs until you clean your computer. It's likely you'll need to run them multiple times before they're completely gone.
Since I don't run a Mac, I can't offer advice there.
Posts: 407
Threads: 66
Joined: Nov 2010
How would someone know if they've been infected?
Posts: 1,374
Threads: 78
Joined: May 2010
The common message i've been getting is "lol is this your profile pic?"
So yeah. Now you know.
Posts: 4,012
Threads: 377
Joined: May 2011
If they didn't click the link, they should be fine.
If they did but didn't open the zip file, I still recommend not taking any chances and remove it entirely then run your anti-virus. But if you surely opened it, you will be infected.
Nevertheless, just run your anti-virus and other anti-malware programs. Doing so should be a regular habit anyway.
Posts: 1,448
Threads: 114
Joined: Jan 2009
Also a tip: If you see something in your processes that you're not really sure what it is, do a google search on it. More often than not, it'll be some random process you never really know about that isn't too important, but it can definitely help educate yourself on what should and shouldn't be in your processes on a normal day. <nod>
Frogspawned: RAAAAAAAAAAAAAGH!
Frogspawned: Frogspawned flips a table.
Frogspawned: (╯°□°)╯︵ ┻━┻
FROG, STOP FLIPPING TABLES. YOU'RE MAKING A MESS.
Frogspawned: ┬─┬ ノ( ゜-゜ノ)
Posts: 1,139
Threads: 85
Joined: Jun 2012
Luckily I do a clean through everyday  YAY! Though my skype got deleted and I'm to lazy to get it back up :P I'll be up tomarrow on skype, glad you told me about it though
Posts: 4,012
Threads: 377
Joined: May 2011
Posts: 1,730
Threads: 78
Joined: Jul 2011
... Luckily I read this before I logged on Skype and didn't click the link when I got it. Thanks a lot, Immy!
Posts: 648
Threads: 47
Joined: Sep 2011
10-06-2012, 02:05 AM
(This post was last modified: 10-06-2012, 02:59 AM by Ebenezer.)
Guess I'm safe as nobody has talked to me on Skype for a while. :)
Nevermind.
I want there to be only the picture here, but sadly it is too large so I have to spoiler it and the spoiler doesn't appear if I don't write anything else here so now that's done, it's time for you to press it.
Posts: 791
Threads: 54
Joined: Sep 2011
I've been checking my processes, and everything looks good.
I never click on random links. >.>
Allons-y!
Have you hugged a dwarf today?
Posts: 2,137
Threads: 123
Joined: Jul 2010
I clicked on the link... But from my iPhone! It couldn't download the file, which made me suspicious and then I found out that it was a trap. Not to mention I saw two other messages that said the same thing.
Hope everyone comes out okay! I'd suggest watching your bank accounts, just in case.
Posts: 713
Threads: 27
Joined: Mar 2009
Bleepingcomputer.com is great.
Malware has become increasingly complex in recent years, expecially in the case of rootkits and the like. Google searches, while being effective enough, can be misleading as nearly every system process can be corrupted and the majority of malware issues retain similar symptoms. My advice concerning manual removal, assuming that you are not a malware expert, is to seek aid from someone who is. Post a system log from a program such as Hijackthis on the bleepingcomputer forum along with a short summary of what you believe the problem to be. I knew that I had aquired a pilar rootkit and they were able to manage my thread rather quickly... that and they're just great. I advise keeping them in your favorites.
Posts: 1,696
Threads: 143
Joined: Mar 2009
...my brain doesn't work this early in the morning.
Sorry!
The true test of his choice lies forward.
— The story of the Silithian.
See life through shades of silver.
|