Question:
How do I check out the intentions behind I virus I received?
Jeaux
2010-10-14 08:14:15 UTC
So I got an e-mail with an attachment and it passed MSE. Ran it thru Kasperskies online file scanner and np. Something is not right with this file. It just FEELS awkward? It's from the USPS with sender listed as "United States Postal" . It's a zip file and when I use winRAR to open it it shows that in the folder is a file called "USP_Document.exe" So I extract it. It looks like a pseudo adobe acrobat icon. Under properties it shows it as an application. So no way in heck I'm opening it but is there a way to detect what language the file is written in and decompile it?
Four answers:
DrDave
2010-10-14 08:18:15 UTC
First off, the USPS does NOT send e mails unless you specifically requested something from their website. Secondly, throw it in the trash. Its most likely spam or a phishing scam
Chip
2010-10-14 08:17:50 UTC
You can decompile it into assembly code, which is complicated to read. Usually it's very hard to decompile binary into the original programming language unless you happen to know what compiler was used to compile it in the first place (and I don't mean just knowing what language its written in; i mean knowing what compiler specifically handled the source code).



It's really no big deal - you don't need to know what it does. You are right in assuming it's a virus, so just delete it and be on your way.
David
2010-10-14 11:03:50 UTC
It was a Virus.

I got the same email today, and i downloaded the attachment,trying to open the adobe file but could not, and then i tried to delete the file.

I tried several times and finally made it.
Manuel G
2010-10-14 08:20:23 UTC
you will kill your system with it. i received that through yahoo mail.(as spam) and had to run a full system scan.

with malwarebytes. it starts showing up error messages and running weird background services which

let me know it was an spyware.


This content was originally posted on Y! Answers, a Q&A website that shut down in 2021.
Loading...