Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

Is this a virus - discover.exe

3 views
Skip to first unread message

John E

unread,
Aug 31, 2001, 5:55:26 AM8/31/01
to
I received an email which was written in a foreign language, therefore the
text was unreadable. It also had an attachment - 'discover.exe'.

I checked VIL, but I could not see it. Does anyone know anything about it?

Cheers,

John


Frederic Bonroy

unread,
Aug 31, 2001, 6:44:33 AM8/31/01
to

Very likely something malicious. Delete it and forget about it.

In the future delete unrequested attachments immediately without asking
questions. If you know the sender ask them if they sent it
intentionally.
If so, scan the file before opening it. If not, inform them they may
have
a virus.

The procedure is always the same.

Kenneth Graham

unread,
Aug 31, 2001, 8:06:15 AM8/31/01
to

There are several EXE's that most anti-virus won't pick up. It could
be that it is a polymorphic virus (i.e. the code changes slightly each
time) or it could be one of the phone dial mungers. These will add a
new phone number profile to your dial up networking setting, causing
you to dial some ISP in Bulgaria. In addition to the long distance
charges, they are a pay per minute service. If you are going to
practive unsafe computing and click on attachments from unknown
senders, make sure that you have your dialer prompt before dialing.

ken

Nick FitzGerald

unread,
Sep 1, 2001, 9:07:16 PM9/1/01
to
"John E" <john_el...@hotmail.com> wrote:

> I received an email which was written in a foreign language, therefore the
> text was unreadable. It also had an attachment - 'discover.exe'.

Some of the text may have helped...

> I checked VIL, but I could not see it. Does anyone know anything about it?

In general, filenames are a very poor device for diagnosing viruses. Most viruses
are parasitic and thus can infect many, many files with names we cannot know in
advance. And, even though some viruses are widely associated with "signal"
names, that is insufficient grounds for diagnosing those viruses.

If pushed, I'd hazard you may have been sent Magistr -- the "foreign language"
may, in fact, just be the "garbage text" that Magistr can use to create its
messages. But, I wouldn't be confident in the diagnosis. As you clearly did not
ask for the attachment, simply delete the whole message and ignore it.


--
Nick FitzGerald


0 new messages