<-- Chronological --> | <-- Thread --> |
Type: Hoax This is a hoax that, like the SULFNBK.EXE Warning hoax, tries to persuade you to delete a legitimate Windows file from your computer. The file that the hoax refers to, Jdbgmgr.exe, is a Java Debugger Manager. It is a Microsoft file that is installed when you install Windows. It has a teddy bear icon as described in the hoax: CAUTION: Jdbgmgr.exe, like any file, can become infected by a virus. One virus in particular, W32(dot)Efortune(dot)31384 (at) mm, targets this file. Norton AntiVirus has provided protection against W32(dot)Efortune(dot)31384 (at) mm since May 11, 2001. NOTE: If you have already deleted the Jdbgmgr.exe file, some Java applets may not run correctly. This is not a critical system file. The file version may vary with your operating system and version of Internet Explorer. If you want to restore the file, read the instructions in the How to restore the Jdbgmgr.exefile section at the end of this document. Hoax message This hoax has appeared in several languages. Some are as follows: English I found the little bear in my machine because of that I am sending this message in order for you to find it in your machine. The procedure is very simple: The objective of this e-mail is to warn all Hotmail users about a new virus that is spreading by MSN Messenger. The name of this virus is jdbgmgr.exe and it is sent automatically by the Messenger and by the address book too. The virus is not detected by McAfee or Norton and it stays quiet for 14 days before damaging the system. The virus can be cleaned before it deletes the files from your system. In order to eliminate it, it is just necessary to do the following steps: 1. Go to Start, click "Search" 2.- In the "Files or Folders option" write the name jdbgmgr.exe 3.- Be sure that you are searching in the drive "C" 4.- Click "find now" 5.- If the virus is there (it has a little bear-like icon with the name of jdbgmgr.exe DO NOT OPEN IT FOR ANY REASON 6.- Right click and delete it (it will go to the Recycle bin) 7.- Go to the recycle bin and delete it or empty the recycle bin. IF YOU FIND THE VIRUS IN ALL OF YOUR SYSTEMS SEND THIS MESSAGE TO ALL OF YOUR CONTACTS LOCATED IN YOUR ADDRESS BOOK BEFORE IT CAN CAUSE ANY DAMAGE. ----- Original Message ----- From: Rebekah Planto To: emerald485 (at) aol(dot)com ; erin (at) greene(dot)org ; gallatin(dot)studentaffairs (at) nyu(dot)edu ; gratefulizzy (at) aol(dot)com ; hanashir (at) shamash(dot)org ; hayleyamanda (at) hotmail(dot)com ; HotelYorbaKasoff (at) aol(dot)com ; IlanaNY (at) juno(dot)com ; jaf3 (at) nyu(dot)edu ; jcallenberg (at) students(dot)wisc(dot)edu ; jenjacstew (at) aol(dot)com ; jessi1013 (at) aol(dot)com ; julz822 (at) hotmail(dot)com ; kafk2 (at) aol(dot)com ; kbf817 (at) aol(dot)com ; Keggieg (at) aol(dot)com ; loui (at) greene(dot)org ; lphuddle (at) aol(dot)com ; madddhatr (at) aol(dot)com ; maludi (at) yahoo(dot)com ; melissaandjeff (at) earthlink(dot)net ; michmosh85 (at) aol(dot)com ; mmuraida (at) nccj(dot)org ; Muzikman86 (at) aol(dot)com ; nafkert (at) sbcglobal(dot)net ; namcopunk (at) hotmail(dot)com ; nattat03 (at) hotmail(dot)com ; nftyisok (at) cox(dot)net ; oogah2000 (at) yahoo(dot)com ; papillonnoir01 (at) aol(dot)com ; plinkplath (at) yahoo(dot)com ; rabbijwp (at) emanuelhouston(dot)org ; rakeness (at) internet-zahav(dot)net ; rplanto (at) hotmail(dot)com ; rwoda (at) uahc(dot)org ; saraaauughhh (at) aol(dot)com ; sarahcarter84 (at) hotmail(dot)com ; sarah(dot)sullivan (at) mssm(dot)com ; scottsloter (at) attbi(dot)com ; seth (at) yorku(dot)ca ; sharon (at) gwu(dot)edu ; signofthed (at) aol(dot)com ; smr (at) full-moon(dot)com ; spunge42 (at) hotmail(dot)com ; ssaid (at) wans(dot)net ; thefarf (at) aol(dot)com ; TLS (at) utmail(dot)edu ; twixx46 (at) hotmail(dot)com Sent: Tuesday, September 17, 2002 7:24 PM Subject: [HANASHIR:12217] from Rebekah-please check, you're in my address book & may have a virus! Hey everyone...I'm sorry if you've received this already but someone sent me this to check for a virus she sent by accident and I DID have it on my hard drive. I don't know anything about computers and viruses but I think it would be safest to check and delete it if you do have it. -Rebekah >Please check your computer for the following virus that may have been sent to >you. A friends address book had been infected by a virus and it was passed on >to my computer. My address book in turn has been infected. The virus is >called (jdbgmgr.exe) is not detected by Norton or McAfee anti virus systems. >The virus sits quietly for 14 days before damaging the system. Its sent >automatically by messenger and by the address book whether or not you send >emails to your contacts. Here's how to check for the virus and how to get rid >of it: > > > > > > > > > >You must do this: > > > > > > > > > > 1. go to start, find or search option > > > > > > > > > >2. in the files/folders option write the name jdbgmgr.exe > > > > > > > > > >3. be sure to search your C: and any other drives you have > > > > > > > > > >4. click "find now" > > > > > > > > > >5. The virus has a teddy bear icon with the name jdbgmgr.exe > > > > > > > > > >6. go to edit: choose "select all" to highlight the file without opening it > > > > > > > > > >7. now go to file and select "delete". it will go to your recycle bin > > > > > > > > > >8. go to your recycle bin and delete it there as well. > > > > > > > > > >IF YOU FIND THE VIRUS YOU MUST CONTACT ALL PEOPLE IN YOUR ADDRESS BOOK SO >THEY CAN ERADICATE IT IN THEIR OWN ADDRESS BOOKS. SORRY ABOUT THIS. I'M SURE >EVERYONE IN THE ADDRESS BOOK WILL HAVE IT > > > > > > > > > >TO DO THIS OPEN NEW EMAIL MESSAGE, CLICK THE ICONOF THE ADDRESS BOOK, CLICK >EVERY NAME AND CLICK ADD. COPY THIS MESSAGE, ENTER SUBJECT, PASTE TO MAIL, >SEND. > > > > > > ------------------------------------------------------------------------------ MSN Photos is the easiest way to share and print your photos: Click Here ------------------------ hanashir (at) shamash(dot)org -----------------------+
<<attachment: section_title_technical.gif>>
<<attachment: jdbgmgr.exe.file.hoax.1.gif>>
<-- Chronological --> | <-- Thread --> |