BetaONE will rise again!


Reply
  #1  
Old 29th Jan 04, 10:01 AM
~*McoreD*~'s Avatar
~*McoreD*~ ~*McoreD*~ is offline
Super Moderator
 
Join Date: Jul 2002
Location: Australia
Posts: 2,902
~*McoreD*~ is an unknown quantity at this point
18 hours old news but anyway...

How to Tell If a Computer Is Infected with Mydoom.B
For Windows XP

To find out if a computer is infected, do the following:
  • Click Start, and then click Search.
  • In the What do you want to search for? box, click All files and folders.
  • In the All or part of the file name box, type ctfmon.dll. If that file exists on the computer, the computer is infected with Mydoom.B.
  • Otherwise, the computer is not infected with that variant of the virus.
For Windows 2000 and Windows NT4
  • Click Start, and then click Run.
  • In the Open box, type cmd
  • Click OK. The black Command Prompt window will open, displaying C:\...> followed by a cursor.
  • Click the cursor, type dir ctfmon.dll /a /s and then press ENTER.
  • Wait a few moments:
If the results show File Not Found, the computer is not infected with Mydoom.B.
If the results show File Found and the file size is displayed, the computer is infected with Mydoom.B, and you need to follow the steps below.

Code:
http://www.microsoft.com/security/antivirus/mydoom.asp
Reply With Quote
  #2  
Old 29th Jan 04, 01:59 PM
jakesnake's Avatar
jakesnake jakesnake is offline
BetaONE Supporter
 
Join Date: Jan 2002
Location: UK
Posts: 220
jakesnake is an unknown quantity at this point
Send a message via MSN to jakesnake
MyDoom is the worst virus ever !!!

read more here:
Code:
http://www.theregister.co.uk/content/56/35174.html
Seems to be "bigger" then SoBig-F

jake
Reply With Quote
  #3  
Old 29th Jan 04, 02:08 PM
Dudelive Dudelive is offline
Senior Member
 
Join Date: Oct 2001
Location: USA
Posts: 603
Dudelive is an unknown quantity at this point
The quote is from the removal tool text from the f-secure removal tool. in case you are infected this will remove it, also if you are not it will also let you know.


Quote:
F-Mydoom is a special tool to detect and remove the W32/Mydoom.A@mm
worm from the infected computer.

For detailed information on the Mydoom worm please visit
http://www.f-secure.com/v-descs/novarg.shtml

Thanks "~*McoreD*~" for posting this and reminding all to check their stuff.

The attached file is a free download from the website but if you are infected you may not be able to connect to certain websites to get the file.

Thanks
Dudelive
__________________
Be careful what you ask for, because you might just get it.
Reply With Quote
  #4  
Old 29th Jan 04, 10:25 PM
darklord's Avatar
darklord darklord is offline
BetaONE Supporter
 
Join Date: Sep 2001
Location: uk
Posts: 122
darklord is an unknown quantity at this point
many thnx for the info and the removal tool m8s
Reply With Quote
  #5  
Old 29th Jan 04, 10:26 PM
jakesnake's Avatar
jakesnake jakesnake is offline
BetaONE Supporter
 
Join Date: Jan 2002
Location: UK
Posts: 220
jakesnake is an unknown quantity at this point
Send a message via MSN to jakesnake
Here's a few more


Sophos Anti-Virus - Removal Tool (W32/MyDoom-A)
Code:
http://www.sophos.com/support/cleaners/mydoogui.com

BitDefender Anti-Virus - Removal tool
Code:
http://www.bitdefender-av.de/Removals/Win32.Novarg.A@mm/Antinovarg-de.exe

Bullguard Anti-Virus - Removal tool
Code:
http://download.bullguard.com/antinovarg.exe

C.I.T (Symantec) Anti-Virus - Removal tool
Code:
http://antivirus.nih.gov/files/MS_PATCH/Retina_Mydoom/Retina_Mydoom.zip

F-Secure Anti-Virus - Removal tool
Code:
ftp://ftp.f-secure.com/anti-virus/tools/f-mydoom.exe
or
Code:
http://www.f-secure.com/tools/f-mydoom.exe

Network Associates Anti-Virus - Removal tool
Code:
http://download.nai.com/products/mcafee-avert/stinger.exe
Removes following viruses:
Code:
BackDoor-AQJ Bat/Mumu.worm Exploit-DcomRpc IPCScan IRC/Flood.ap IRC/Flood.bi IRC/Flood.cd NTServiceLoader PWS-Narod PWS-Sincom W32/Bugbear@MM W32/Deborm.worm.gen W32/Dumaru@MM W32/Elkern.cav W32/Fizzer.gen@MM W32/FunLove W32/Klez W32/Lirva W32/Lovgate W32/Lovsan.worm W32/Mimail@MM W32/MoFei.worm W32/Mumu.b.worm W32/MyDoom@MM W32/Nachi.worm W32/Nimda W32/Pate W32/Sdbot.worm.gen W32/Sober@MM W32/SirCam@MM W32/Sobig W32/SQLSlammer.worm W32/Swen@MM W32/Yaha@MM

Here's Trend Micros FREE online virus scanner:
Code:
http://housecall.trendmicro.com/


atb
jake
Reply With Quote
  #6  
Old 29th Jan 04, 10:29 PM
darklord's Avatar
darklord darklord is offline
BetaONE Supporter
 
Join Date: Sep 2001
Location: uk
Posts: 122
darklord is an unknown quantity at this point
many thnx for the info and the removal tool m8s
Reply With Quote
  #7  
Old 29th Jan 04, 10:31 PM
darklord's Avatar
darklord darklord is offline
BetaONE Supporter
 
Join Date: Sep 2001
Location: uk
Posts: 122
darklord is an unknown quantity at this point
thnx for the info and the removal tool m8s
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Zafi-C mutant virus targets Google and Microsoft NewsBot NeoWin News 0 28th Oct 04 10:00 PM
EBay virus 'start of worrying trend' NewsBot NeoWin News 0 26th Oct 04 05:30 PM
Virus rips into Macs NewsBot ieXbeta News 0 25th Oct 04 03:30 PM


All times are GMT +1. The time now is 04:53 PM.


Design by Vjacheslav Trushkin for phpBBStyles.com.
Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.