Tintukso virus - Very little is known about this virus as of now. It comes to you through Yahoo messenger as a link when one of your friend’s pc gets infected. Once you click the link, it installs itself at attaches itself with the OS to keep you bugging :d It sends the link to all your active contacts once it infects. This was found (on a friend's pc) just today, 09th October 2006.
Symptoms
Cause
Virus/trojan not yet explained in detail on the net yet. it sends a message saying test the site and shows up the folowing url
http://tintucso.com/luke/
Please do not launch the above url unless you have a good firewall and antivirus (and enough courage to open it).
My official PC categorized it as a dating/unwanted site and blocked it. Didnt take a chance on my Home pc.
Remedy
http://www.microsoft.com/windowsxp/using/helpandsupport
/learnmore/systemrestore.mspx
Update from Symantec as on 12th October 2006
Symantec Japan has confirmed the virus and documented the details of the virus here
http://translate.google.com/translate?
hl=en&sl=ja&u=http://www.symantec.com/region/jp/avcenter/
venc/data/jp-w32.imaut.b.html&sa=X&oi=translate&resnum=4
&ct=result&prev=/search%3Fq%3Dtintucso%26hl%3Den%26lr
%3D%26rls%3DGGLG,GGLG:2006-26,GGLG:en
Thanks Arvind for your valuable feedback on this virus.
I shall keep updating this post with the new findings on the virus.
Have a safe computing :)
1 comment:
Ah the website is blocked by the hosting service provider. Now it shows me the following message..
-----------------------------------
403 forbidden
Server configuration does not allow access to this page. Please go back and try again.
Post a Comment