View Full Version : Virus? win32/robzips.b
N2NKW
09-19-2007, 09:30 PM
Anyone run across this one yet? I can't find any English pages on this Virus for removal. My AV removes it and it reinstalls itself. Can't find any websites for help. Found one from Uruguay but the translation is not good. Don't know if it's bad or not
kc2orw
09-19-2007, 09:50 PM
You should have used google's translate feature it has an alternate name. I Got the following off of the grisoft page.
Displaying Results for threat
Worm/Pazetus
The exact description is not available.
This type of virus spreads across local networks or through internet via shares disks. The virus searches for computers in its "neighborhood" with shared network drives and then copies itself on them.
For prevention as far as possible do not share whole disks, but only selected folders. It is also advisable to use passwords on shared folders.
We recommend you remove binding to "File and printer sharing" in Bindings Tab under TCP/IP Properties for all TCP/IP protocols (the TCP/IP protocol is usually defined for every LAN or Dial-Up adapter).
Peer-to-peer networks
Next most common method of spreading is by "peer-to-peer" networks (like KaZaA), the virus creates a few copies of itself in folders within the P2P shared system. If these files have got alluring names then there is a good chance somebody will download these files and execute them.
So you you might be getting it from another local network computer...
N2NKW
09-20-2007, 07:18 AM
Thanks Al. It wouldn't surprise me if I got it from another computer. I am on a public network although you have to pay to use it. I would imagine there is at least 100 other users here. Makes for quite a bandwidth issue with that many users. I'm sure there are a few who don't have AV or protection either.
At any rate, I think I got it worked out. It moved around a bit but my AV finally quarantined it and deleted it. Took me a few scans.
I tried using google translator on some of the pages. The problem is that they came out literal and in very confusing bits:
n order to be able to see the true extensions of the archives and in addition visualize those with attributes of “Hidden”, it comes thus:
1. Execute the Explorer of Windows
2. Select the menu “To see” (Windows 95 /98/NT) or the menu “Tools” (Me/2000/XP Windows), and puncture in “Options” or “Options of folders”.
3. Select the tongue-piece “To see”.
4. IT UNMARKS the option “To hide extensions for the types of well-known archives” or similar.
5. In Windows 95 /NT, MARKS the option “To show to all the archives and hidden folders” or similar.
In Windows 98, under “Hidden files”, IT MARKS “To show all the archives”.
In Me/2000/XP Windows, in “hidden Archives and folders”, IT MARKS “To show to all the archives and hidden folders” and DISTANCING “To hide protected archives of the operating system”.
6. Puncture in “Applying” and “Accepting”.
That is not written in a way i can understand...lol
At any rate,Thanks for the help!
73 Brian
Powered by vBulletin® Version 4.1.12 Copyright © 2012 vBulletin Solutions, Inc. All rights reserved.