PDA

View Full Version : Virus out of control. Check your machines



schibo
April 30th, 2002, 10:32
April 30, 2002

http://story.news.yahoo.com/news?tmpl=story&cid=70&ncid=738&e=6&u=/cn/20020430/tc_cn/survey__klez_worm_tops_sircam__nimda

I get this virus in email at least 10 times a day now. Although I haven't been infected personally (I think), it is perhaps the most clever virus I have ever seen in terms of its ability to spread.

Go to the bottom of the yahoo page linked above for the symantec removal tool, and check your machines.

Here's a brief summary of the worst that the Klez virus, its variants, (and the Elkern virus that it also propagates) can do:

Klez.E has been activated on the 10 year anniversary of the Michaelangelo virus, March 6, and will corrupt files on every 6th day of every odd month. The next threat is May 6. Klez is very clever in that it spoofs email headers so that it can pretend to be coming from someone you know, when it indeed isn't. It checks the ICQ database, Outlook contacts, and random files on your box for email addresses to send to. It also uses its own built-in smtp, so it can send without the need of a separate mail program. You only need to be infected and on the net, and it will send. It also uses very clever subject lines in email that it can get from text documents on your computer.

Also, if you have Internet Explorer 5 or 5.5, you will need to go here: http://www.microsoft.com/technet/security/bulletin/MS01-020.asp.

http://www.norton.com and http://www.mcafee.com have additional information on their home pages. Spread the word, not the virus.

schibo
April 30th, 2002, 11:09
Free common sense tips from Tabby the Cat:

* Always update your antivirus software with the latest virus definitions.

* If you are reading this right now on emutalk and you aren't using antivirus software, Tabby will know it, and you don't want that. Get off the internet right now, and stay off until you get antivirus software with the latest definitions. Viruses can also propagate across your LAN. Disconnect your box from the network then scan it completely.

* Unless you are expecting something, never open emails with attachments from someone, even if it says "Free porn pics". Make sure it is scanned before it is opened.

* Download Ad-Aware and use it. Get rid of adware. Adware will be the death of the internet as we know it if it is not regulated. Get it here: http://download.com.com/3000-2094-9643459.html?tag=lst-0-1

* Don't run java progs from websites you don't know. Ideally, don't run any at all unless you know what it is going to do.

* Delete cookies. Only enable them when you need to.

* Use free virus removal tools from norton.com as they are released.

crhylove
April 30th, 2002, 11:30
i got the nimda one time. that thing was a b#tch!

rhy

Eddy
May 1st, 2002, 05:06
i never caught a virus, tabby the cat kicks ass!

Remote
May 1st, 2002, 18:18
They catch you instead...:P

Epic64
May 1st, 2002, 19:54
Also if you use or are gonna use irc make sure autoget is turned off! Anything in your download directory you're not sure what it is don't open it or run it chances are someone's sent you a trojan. These are very prevalent on irc (Must be something to do with the type of people who use it!) j/k

Slougi
May 1st, 2002, 20:25
/me slaps Epic64
If you have a good virus scanner having auto-accept on is no security risk.

Davemc
May 1st, 2002, 21:24
Originally posted by Slougi
/me slaps Epic64
If you have a good virus scanner having auto-accept on is no security risk.

why didnt you dropkick him?

Malcolm
May 2nd, 2002, 00:36
i agree with Slougi. I always have auto accept on and never have I been infected by a computer virus, though I do get quite a few of them

Epic64
May 2nd, 2002, 14:07
Let's hope they never bring out a virus or trojan your AV software doesn't know of the Slougs!

/me dcc's a little vb routine I made earlier ;)

Slougi
May 2nd, 2002, 14:13
Hehe. We will see ;)
Anyway I know most of the stuff that I get dcc'ed :)

Olger901
May 2nd, 2002, 14:49
I don't have a Anti Virus Program I hate them they only slow down my games and programs. I never open E-Mail only if it is from a trusted one. 2nd I NEVER open an attachement that is the most stupid thing you can do. And sometimes I do an online Scam and I have never been infected :P

Gent
May 2nd, 2002, 15:08
Originally posted by Olger901
I don't have a Anti Virus Program I hate them they only slow down my games and programs. I never open E-Mail only if it is from a trusted one. 2nd I NEVER open an attachement that is the most stupid thing you can do. And sometimes I do an online Scam and I have never been infected :P

YET, & Its just a matter of time.

I have had a hell of a lot thrown my way this last 2 weeks.
Including that Bar-Steward Worm that Attacks exe's.

so

I don't have a Anti Virus Program I hate them they only slow down my games and programs.

A slow Computer is better then a dead one ;)

Slougi
May 2nd, 2002, 18:15
Originally posted by Olger901
I never open E-Mail only if it is from a trusted one
:stupid: And what if that trusted person gets a virus?

Epic64
May 2nd, 2002, 18:56
Originally posted by Olger901
And sometimes I do an online Scam and I have never been infected :P

lol if you're doing online scams you deserve to get a virus :)

Quvack
May 5th, 2002, 08:30
Your not wrong there, online scams are evil, dont risk it! ;)

crhylove
May 6th, 2002, 13:13
i as of right now have some freaky virus that runs a variable executable that has 3 letters a number a letter and then another number as it's name in the alt ctrl del window. and the pc sent out a bunch of email... as of right now that machine is still no joy.

crazy!

Eagle
May 11th, 2002, 02:06
So, if you can't clean it, why don't you format the harddrive and be done with it. Almost any virus (except boot sector viruses) can be eliminated by a simple format and reinstall. AV programs are nice for cleaning it but if they can't clean it, format it.

crhylove
May 11th, 2002, 14:37
i hadn't tried all my options yet. i got it now ;)

/me is no n00b, yo!

EddyB43
May 11th, 2002, 15:11
If you just don't like the idea of a permanently resident AV program, you can use some normal AV program like F-Prot (free for home use) to manually scan. It's still decently updated, and nice to use for generic scanning.

PS. Yes, I know I've got plenty enough power to run some current resident AV program, but with Win9x's iffyness and so forth I'd rather have no resident apps at all.

PPS. And anyone who's silly enough to run "LOVE-STORY-FOR-YOU.DOC.VBS" from an auto-accepted DCC deserves what they get. :happy: