Democratic Underground Latest Greatest Lobby Journals Search Options Help Login
Google

New Virus -- anyone know anything about it yet?

Printer-friendly format Printer-friendly format
Printer-friendly format Email this thread to a friend
Printer-friendly format Bookmark this thread
This topic is archived.
Home » Discuss » The DU Lounge Donate to DU
 
Bertha Venation Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Mar-03-04 10:36 AM
Original message
New Virus -- anyone know anything about it yet?
Just rec'd from our IT people:

"There is a new virus that has been password protected and therefore cannot be scanned in the traditional way. We have been able to isolate the virus thru our system, however, that may not be the case externally.

"UNTIL FURTHER NOTICE, PLEASE DO NOT DOWNLOAD ANY TYPE OF MAIL FROM ANY OUTSIDE SOURCES (Yahoo, Hotmail, MSN, etc.)"
Printer Friendly | Permalink |  | Top
kiahzero Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Mar-03-04 10:38 AM
Response to Original message
1. Here's the virus specs
Printer Friendly | Permalink |  | Top
 
Bertha Venation Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Mar-03-04 10:44 AM
Response to Reply #1
2. thank you very much eom
Printer Friendly | Permalink |  | Top
 
denverbill Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Mar-03-04 11:17 AM
Response to Original message
3. I don't get it. If the zip file is password protected,
how can you open it to get infected??
Printer Friendly | Permalink |  | Top
 
kiahzero Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Mar-03-04 04:03 PM
Response to Reply #3
6. The password is sent along
It's password protected to prevent antivirus tools from searching it.
Printer Friendly | Permalink |  | Top
 
sybylla Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Mar-03-04 11:18 AM
Response to Original message
4. Just got it this morning myself
This is what it looked like:

***
From: support@xxxxxxx.net
Subject: Important notify about your e-mail account
Dear user, the management of xxxxxxx.net mailing system wants to let you know that,

Your e-mail account has been temporary disabled because of unauthorized access.

Pay attention on attached file.

For security purposes the attached file is password protected. Password is "74300".

Best wishes,
The xxxxxxx.net team http://www.xxxxxxx.net
*****


It had an attached zip file which I presumed included instructions on how to install the executable. I knew it was a virus as I own my domain. Apparently one of my aunt's friends didn't have the same fortune. Her e-mail address appeared in the "return path" of the header so I let her know I received it and sent her the norton link.

This is a sneaky one because the average home surfer will not recognize that this is a virus and will do what ever the zip tells them to. I've warned all my family and friends. Hopefully it will be the last one I receive.
Printer Friendly | Permalink |  | Top
 
CO Liberal Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Mar-03-04 11:24 AM
Response to Original message
5. It Hit My Office Last Week
I wirk for a major defense contractor, and last week I got several e-mails from people I didn't recognize, with ZIP files attached. Our IT folks told us to delete any suspicious e-mails like this without opening the ZIP files, and then emptying our recycle bins to remove them completely from the system.

We also got similar e-mails from people with military e-mail accounts, so it looks like our government customers were also infected.
Printer Friendly | Permalink |  | Top
 
LTR Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Mar-03-04 04:23 PM
Response to Original message
7. I've been getting these stupid things all week
And always with a .php or .zip extension.

I delete that crap immediately.
Printer Friendly | Permalink |  | Top
 
geniph Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Mar-03-04 04:25 PM
Response to Original message
8. That's why I block zip files on our external email servers
I try to keep that kind of crap out of our internal system! Users who open external email have been cautioned that if they open their outside email without verifying their antivirus settings are current are on our permanent shit list.
Printer Friendly | Permalink |  | Top
 
greeneyedpookie Donating Member (445 posts) Send PM | Profile | Ignore Wed Mar-03-04 04:25 PM
Response to Original message
9. Hit me after lunch
But the good ole virus catcher caught it when I right-clicked it to delete, didn't reconize the sender. Alerted IT about it and they are jus now updating the e-mail server.

GEP

:bounce:
Printer Friendly | Permalink |  | Top
 
DU AdBot (1000+ posts) Click to send private message to this author Click to view 
this author's profile Click to add 
this author to your buddy list Click to add 
this author to your Ignore list Mon Apr 29th 2024, 01:00 PM
Response to Original message
Advertisements [?]
 Top

Home » Discuss » The DU Lounge Donate to DU

Powered by DCForum+ Version 1.1 Copyright 1997-2002 DCScripts.com
Software has been extensively modified by the DU administrators


Important Notices: By participating on this discussion board, visitors agree to abide by the rules outlined on our Rules page. Messages posted on the Democratic Underground Discussion Forums are the opinions of the individuals who post them, and do not necessarily represent the opinions of Democratic Underground, LLC.

Home  |  Discussion Forums  |  Journals |  Store  |  Donate

About DU  |  Contact Us  |  Privacy Policy

Got a message for Democratic Underground? Click here to send us a message.

© 2001 - 2011 Democratic Underground, LLC