South Africa’s biggest forum. Discuss, discover, and connect with thousands of members.
.W32/Jeefo-A infects Windows PE executables with an extension of EXE and a filesize greater than 102,399 bytes, in all folders of all fixed drives C: to Z:.
The virus runs continuously in the background, infecting files at periodic intervals.
When an infected file is run, the virus dropper is extracted to the Windows folder as SVCHOST.EXE and the virus disinfects the host executable, although not all infected files will be successfully returned to their original state.
I'm sure that scilab was absolutely rife with all sorts of viruses including human onesYe that lame virus hitched a ride on my flashdrive from UCT. I think it came from Scilab C in the R.W. James Building. I'm sure I've probably spread it to the MCB building as well.