Page 1 of 2

Attn Joe King

Posted: Mon Nov 26, 2001 4:11 pm
by Shaun
In reply to an earlier posting you said you don't run any anti-virus software, well you ought to as a poster to this forum is infected with a virus that my AVG software picked up, I'd only updated the software last night. If you're in his address book then be very wary.

Re: Attn Joe King

Posted: Mon Nov 26, 2001 4:26 pm
by joe king
I've got windows me - rollback functionality can bring system back to before the stupidy hit.

I've got zone alarm firewall software.
I don't execute sus files (.exe,.com,.pif,.vbs) (anything I've missed?) Sus files are sent to hotmail.com account
(they have virus software - it has detected ~$mosSenhores.doc.com - W32/SirCam@MM Virus Found
HRAKLIO.doc.pif W32/SirCam@MM Virus Found
GDAIJGGD.EXE
LNEBCLLN.EXE W32/Hybris.gen@MM Virus Found
)

I base my presumption on an article in doors magazine (in sunday times)
Other viruses infected some microsoft web server software(I ain't got that)

Thanks for the concern ;-)

Next question - how did the person get the virus?

Re: Attn Joe King

Posted: Mon Nov 26, 2001 4:49 pm
by Shaun
I don't about transmission but those of you who are not as up-to-date, then get an update from your anti-virus software after reading this message. I had a message warning me last night and thus updated my software and have had two messages so far, one from an Ebay contact and another from Lancing, West Sussex.
Ffi c&p the link below:
http://sophos.com/virusinfo/analyses/w32badtransb.html

Re: Attn Joe King

Posted: Mon Nov 26, 2001 4:56 pm
by joe king
you have to run that virus, .scr,.doc,. - have you disabled word so it doesn't run macros?
This virus exploits outlook express- just download patch. Altough I thought they had a patch that warned if you ran a sus file.

Re: Attn Joe King

Posted: Mon Nov 26, 2001 4:58 pm
by joe king
IE 5.5 doesn't need this patch - are you panicking Shaun?

Re: Attn Joe King

Posted: Mon Nov 26, 2001 5:31 pm
by Shaun
I've got OE6 so thats poss where the problem lies.

Re: Attn Joe King

Posted: Mon Nov 26, 2001 5:44 pm
by Shaun
The Sophos link gives a link to MS site with a patch for OE 5.01 & OE 5.5.

Re: Attn Joe King

Posted: Mon Nov 26, 2001 6:09 pm
by joe king
'V1.2 (September 21, 2001): Bulletin updated to discuss need to perform a Full or Typical Install when eliminating this vulnerability via an IE 6 upgrade. '

did you upgrade(to v6) or install from new?

Re: Attn Joe King

Posted: Mon Nov 26, 2001 6:13 pm
by joe king
I had v5.5 and installed patch q269368 and the update q290108.exe is not need on 5.5(after q269368)

Re: Attn Joe King

Posted: Mon Nov 26, 2001 6:42 pm
by Shaun
I installed IE6 from a cover disc.