[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [RT] VIRUS ALERT!!!



PureBytes Links

Trading Reference Links

Kent Rollins asked:

> Was it an ActiveX control or what?

Not a clue, as that sort of thing is well beyond my competence.
A Net search found that Symantic had this to say about it as of 4/22:

> Due to an increased rate of submissions, Symantec Security Response
> is upgrading the threat level for W32.Klez.E@xx from level 2 to level 3
> as of March 6, 2002.

> W32.Klez.E@xx is similar to W32.Klez.A@xxx It is a mass-mailing
> email worm that also attempts to copy itself to network shares. The worm
> uses random subject lines, message bodies, and attachment file names.

> The worm exploits a vulnerability in Microsoft Outlook and Outlook Express
> in an attempt to execute itself when you open or even preview the message
> in which it is contained. Information and a patch for the vulnerability
are
> available at
http://www.microsoft.com/technet/security/bulletin/MS01-020.asp.

> The worm overwrites files and creates hidden copies of the originals. In
addition,
> the worm drops the virus W32.Elkern.3587, which is similar to
W32.ElKern.3326.

> The worm attempts to disable some common antivirus products and has a
> payload which fills files with all zeroes.

Owen Davies


------------------------ Yahoo! Groups Sponsor ---------------------~-->
Buy Stock for $4
and no minimums.
FREE Money 2002.
http://us.click.yahoo.com/k6cvND/n97DAA/ySSFAA/zMEolB/TM
---------------------------------------------------------------------~->

To unsubscribe from this group, send an email to:
realtraders-unsubscribe@xxxxxxxxxxxxxxx

 

Your use of Yahoo! Groups is subject to http://docs.yahoo.com/info/terms/