Minecraft Blogs

ATTENTION: New Malicious Virus Detected

  • 49
  • 8
  • 98
avatar MinerDiner123
Level 36 : Artisan Musician
60
Just a shoutout to whom didn't get the message. So Apparently, Skype had warned users of an malicious virus that seek to infect computers running Microsoft's Windows Operating System. However, this virus not only affects Skype, but it affects other Video Chatting Programs also.

In a blog post, The Security Vendor Sephos announced that the virus exploits Skype's API to spam messages which claim, "lol, is this your profile pic?", along with an suspicious link.

Clicking on the mysterious link will lead you to the download of a ZIP File (Often called Skype_06102012_image.zip, or Skype_08102012_image.zip) that contains files detected by Programs including Sophos anti-virus products as Trojan Horse/Agent YCW or Trojan Horse/Agent YDC, it said.

The problem is that Skype users are not suspicious about links sent to their friends or relatives hence the fact that they trust them.

Once the Virus is installed, The Trojan Horse will open a backdoor letting an remote hacker gain access of your infected PC, and also communicate with a remote server via HTTP.

Plus, Sophos explained there had been many other variants of the Dorkbot attack last year, spreading to websites such as Facebook, Twitter, Myspace and USB drives and instant messaging as well.

Thato s not all. Behind the scenes, the malware is also making click fraud attempts. Weo re not just talking about a few clicks: in the space of 10 minutes, GFI recorded 2,259 transmissions.

I got this virus earlier on today, and I found an article at: http://community.skype.com/t5/Windows/Skype-spam-virus/m-p/1092504/highlight/true#M82322, which shows you how to remove the virus. Note that I did not write this, so credit is to Tamim, the rightful owner of the tutorial on removing the virus.

Step 1: Change your Skype password, as then you won't have any messages saying "lol, is this your profile pic, anymore.
https://login.skype.com/account/password-reset-request

Step 2: In Skype application,
Go to, Tools >> Options... >> Advanced Settings
Click Manage other programs' access to skype
Remove any unknown application (if any)

Step 3: download malwarebytes
http://www.malwarebytes.org/products/malwarebytes_free/
Run MBAM and use the FileASSASSIN tool to delete the all exe file found under AppData directory
C:UserstamimAppDataRoaming

restore performance counter setting from backup (If any)

After you have used malwarebytes then do this online scan.
to make sure you have nothing else hiding away.
http://www.eset.com/onlinescan/

Thank you for reading, and I bid you good luck. If you liked the blog, don't forget to show your support by leaving a diamond or by favoriting it!

Sincerely,
MinerDiner123
CreditCredit is to Tamim, who wrote
Tags

1 Update Logs

Update #1 : 10/14/2012 1:30:13 amOct 14th, 2012

Added Credit to the owner, and description.

1
08/31/2013 8:39 am
Level 43 : Master Pokemon
Jacob Rigoberto
All of my friends sendt me "Hey, is this your new profile picture (link)" (in my language of course)
EVERYONE got it, exept me, who did not get tricked...
1
10/26/2012 1:21 am
Level 8 : Apprentice Nether Knight
DarkFusion
This is how you fix it other way, use FB web chat system or alternative one. :P but this is very informational and helping people.
1
10/19/2012 6:46 am
Level 34 : Artisan Droid
Downn
Thanks for the warning, I would probably click the link from curiosity if you hadn't written this >.<
1
10/19/2012 8:20 am
Level 36 : Artisan Musician
MinerDiner123
Haha, I would do that too =P
1
10/15/2012 11:38 am
Level 22 : Expert Architect
Cib21_
lol i have never gotten this virus. Oh, defreind Echo? WOW that was easy. Plus if you have more than 100 Skype friends then your going to have a bad day (use teamspeak ppl)
1
10/19/2012 8:20 am
Level 36 : Artisan Musician
MinerDiner123
ikr. So many people sended me that link. Derp.
1
10/15/2012 8:54 am
Level 17 : Journeyman Toast
Gafloff
I got skype for 3 days ago as I got my headset... So its hard for me to know these stuffs! Thanks! :-]
1
10/15/2012 8:55 am
Level 36 : Artisan Musician
MinerDiner123
No Problem, Friend.
1
10/15/2012 8:53 am
Level 50 : Grandmaster Architect
-EquinoX-
thanks
1
10/15/2012 9:31 am
Level 36 : Artisan Musician
MinerDiner123
np :)
1
10/15/2012 1:26 pm
Level 50 : Grandmaster Architect
-EquinoX-
^^
1
10/15/2012 7:36 am
Level 65 : High Grandmaster Meme
peytonisgreat
Good thing my antivirus blocked that link!
1
10/15/2012 7:38 am
Level 36 : Artisan Musician
MinerDiner123
:D Yay!
1
10/15/2012 7:03 am
Level 26 : Expert Pony
sseeaann33
OH SHIT! (Immedietley closes skype). man, how can people be such douchebags nowadays? thanks for warning me. just saw the message *shudders* diamonded and faved :)
1
10/15/2012 7:05 am
Level 36 : Artisan Musician
MinerDiner123
Haha, np.
1
10/15/2012 4:01 am
Level 18 : Journeyman Miner
Phrozenbit
Great! Thanks for providing this solution, it helps raise awareness against viruses.

Another solution would be installing Linux. It does not run evil .EXE files straight away so one would be safe from this virus. I'm not saying Linux can't get any viruses, it's more unlikely though.

Diamonded for the food work!
1
10/14/2012 9:05 pm
Level 20 : Expert Artist
Viper2000
CRAP! I clicked on that link a week ago! I deleted the download right when it was done though... :(
1
10/14/2012 8:57 pm
Level 3 : Apprentice Architect
ateramana10
what about ipods......
can they get the virus
1
10/15/2012 7:05 am
Level 36 : Artisan Musician
MinerDiner123
Your I-pod won't get the virus. Only Computers that run Microsoft's Windows Operating System.
1
10/15/2012 1:57 pm
Level 3 : Apprentice Architect
ateramana10
oh sorry to bother and im lucky i got that off my computer!
lol
1
10/14/2012 8:45 pm
Level 40 : Master Goblin
ItsBill
I first heard about this on Ars.
1
10/14/2012 6:55 pm
Level 12 : Journeyman Miner
Zakoschris
i got the message. when i clicked on the link it said that the file was deleted!! Lucky Ass ME!
1
10/14/2012 4:21 pm
Level 1 : New Miner
ninjacowftw
I don't get why people make viruses like these, other than to be a douche.
1
10/14/2012 3:16 pm
Level 23 : Expert Dragonborn
ajdog0106
Very helpful i hate skype now
1
10/14/2012 3:01 pm
Level 10 : Journeyman Dolphin
renttrent
Thanks so much for the warning. Diamond and Subscriber for you.
1
10/14/2012 12:56 pm
Level 52 : Grandmaster Blob
crafter4ever
Good thing I have been offline on skype since July, I get on and I have no messages, but if I did this blog and that forum post would have stopped me.
1
10/14/2012 2:55 pm
Level 31 : Artisan Pixel Painter
zmann98
yeah i apreciate the help. i wouldnt have known until now. i did hear about skype having some kind of virus but now im fully informed. thanks again
1
10/14/2012 12:37 pm
Level 31 : Artisan Pokemon
DemonicWolfz
I only new it was a virus from the start because i should know what my profile pic is, I guess some people are so gullible.
1
10/14/2012 10:36 am
Level 32 : Artisan Architect
distortion
*Reads blog.
*Opens skype on mac.

...AWWWWWWWWWW YYYYEEEAAAAAAHHHHHHHHHHHH!!!

*...........realizes macs can get the virus.

.___________. crap...
1
10/14/2012 12:35 pm
Level 2 : Apprentice Herobrine
chriscrossy
But he said only people with a Windows Operating System could get it?
1
10/14/2012 1:22 pm
Level 32 : Artisan Architect
distortion
Macs are also able to get malware and trojans as well, I probably should have said one of those instead of virus.
1
10/14/2012 8:04 am
Level 40 : Master Dragonborn
Purpaw
Yeah, I got spammed all the time, I really hate it!
Luckly my computer detected it and said: Warning! This contains a virus! and protected me from it.
I got spammed by some friends, glad you made this blog.
1
10/14/2012 8:05 am
Level 36 : Artisan Musician
MinerDiner123
Thanks :3 Trying to inform news.. That's all :P
1
10/14/2012 9:15 am
Level 6 : Apprentice Miner
anonpmc775233
[deleted]
1
10/14/2012 9:17 am
Level 36 : Artisan Musician
MinerDiner123
Yah, I know :P That's bad though.
1
10/14/2012 9:24 am
Level 6 : Apprentice Miner
anonpmc775233
[deleted]
1
10/14/2012 9:28 am
Level 36 : Artisan Musician
MinerDiner123
I'll check it out.
1
10/14/2012 7:18 am
Level 40 : Master Poro
Danifix123
LoL I got spammed by a guy that I hate alot... Started download then decided not to
1
10/14/2012 6:13 am
Level 59 : Grandmaster Taco
TacoDip
Dinow keeps sending me those on skype XD
1
10/14/2012 8:07 am
Level 40 : Master Dragonborn
Purpaw
Me too -.-
1
10/14/2012 6:16 am
Level 36 : Artisan Musician
MinerDiner123
Rofl :P
1
10/13/2012 10:34 pm
Level 1 : New Explorer
Alphonic
That is when Norton stopped me.
1
10/13/2012 9:40 pm
Level 29 : Expert Pixel Puncher
Haasman29
Good, I now have another reason to stay off Skype! Thank you.
1
10/13/2012 8:51 pm
Level 43 : Master Grump
ModdingMan55
Another Way, Delete Skype, And Reinstall.
1
10/13/2012 11:38 pm
Level 71 : Legendary Button Pusher
the_soup
The malicious files are not saved in Skype, deleting it will not get rid of them.
1
10/14/2012 11:45 am
Level 43 : Master Grump
ModdingMan55
OH, Well I Didn't Get It, And Norton Ran Out, So Im Lucky.
1
10/15/2012 12:58 pm
Level 56 : Grandmaster Pyro
Supernova666
Norton does not work. 'Avast' does, you can also try 'Malwarebytes Anti-Malware'. Both of which are free for 30 days.
1
10/13/2012 10:39 pm
Level 1 : New Miner
fatturret
It only uses skype it doesnt save files to skype.
1
10/13/2012 6:53 pm
Level 21 : Expert Architect
nightingale48
thanks man I don't have the virus but you just saved me a lot of wasted time TY!
1
10/13/2012 6:50 pm
Level 51 : Grandmaster Wizard
cowsareawesome
Kind of off topic, does anyone know how I can remove the fbi moneypack ransom virus? I have tried malwarebytes and gotten rid of all the virus files but it still "locks" my computer.
Planet Minecraft Logo

Website

© 2010 - 2020
www.planetminecraft.com

Welcome