»
 

Go Back   ResellerRatings Store Ratings > ResellerRatings Forums > Tech Support

Reply
 
LinkBack Thread Tools Display Modes
Old 01-27-2004, 03:45 PM   #1 (permalink)
Registered User
 
Bill in SD, CA's Avatar
 
Join Date: Oct 2002
Location: Bottom left of U.S.
Posts: 4,714
Bill in SD, CA is on a distinguished road
Outdoors New Virus Just Showed Up In My Email

Butt-heads!!

Even as I was submitting a news strory on the virus it showed up.

At least I didn't open it.





Bill


Last edited by Bill in SD, CA; 01-31-2004 at 09:20 AM.
Bill in SD, CA is offline   Reply With Quote
Old 01-27-2004, 03:52 PM   #2 (permalink)
Guest
Guest
 
Posts: n/a
You think that's bad? One the spammers forged my primary TechIMO email address (and several of my friends in the online industry) to send part of the original bulk messages that started this nightmare.

Robert Richmond
  Reply With Quote
Old 01-27-2004, 03:54 PM   #3 (permalink)
Registered User
 
Dbest's Avatar
 
Join Date: Oct 2001
Location: Carolina,P.R.
Posts: 367
Dbest is on a distinguished road
Now what are the odds of that happening glad to hear you didn't open it .
Dbest is offline   Reply With Quote
Old 01-27-2004, 06:42 PM   #4 (permalink)
Registered User
 
The Punisher's Avatar
 
Join Date: Feb 2003
Location: Florida
Posts: 547
The Punisher is on a distinguished road
Send a message via AIM to The Punisher
i think the odds are quite common, the virus has been appearing lately
__________________
[url]www.bf1942hq.com[/url]
[url]www.gamingstrategy.net[/url]
The Punisher is offline   Reply With Quote
Old 01-27-2004, 07:06 PM   #5 (permalink)
Registered User
 
Beemer's Avatar
 
Join Date: Oct 2001
Location: Vernon, BC, Canada
Posts: 3,428
Beemer is on a distinguished road
So. Should I open these up to see what I have?....lol



It's tough being popular. This is the second batch today.

Cheers!
Beemer is offline   Reply With Quote
Old 01-27-2004, 07:38 PM   #6 (permalink)
Registered User
 
twiztidtruckie's Avatar
 
Join Date: Aug 2003
Location: Pennsylvania, USA
Posts: 588
twiztidtruckie is on a distinguished road
Send a message via Yahoo to twiztidtruckie
Knock on wood,

But so far my machines have survived any attemts. I think

Good luck to everyone, and if any information arises about this attack, feel free to inform me by PM, not EMAIL please!

Truckie
__________________
! ! ! Support Our Troops ! ! !
twiztidtruckie is offline   Reply With Quote
Old 01-28-2004, 01:23 PM   #7 (permalink)
Guest
Guest
 
Posts: n/a
I did not quarantine it for further analysis, but it looked like one of the variants sent to my mailbox today had been packed with a complex executable compression algorithm in hopes of slipping past anti-virus software.

Robert Richmond
  Reply With Quote
Old 01-28-2004, 01:41 PM   #8 (permalink)
Registered User
 
Bill in SD, CA's Avatar
 
Join Date: Oct 2002
Location: Bottom left of U.S.
Posts: 4,714
Bill in SD, CA is on a distinguished road
I had another variant show up with the "Please Respond" title.



Not to change the subject but I was looking for some animated gifs and on one site I clicked to see the category and a download box popped and the title was "virus download in progress."

Clicked cancel and the box popped up immediately in another part of the screen.

Hit cancel again and same thing.

Pulled the plug on my system immediately as I could not keep up with the random boxes.

Scanned for viruses afterwards and thankfully nothing installed.

This was from results of a google search for animated gifs.

Geez!!!

Bill
Bill in SD, CA is offline   Reply With Quote
Old 01-28-2004, 02:02 PM   #9 (permalink)
Registered User
 
Join Date: Oct 2001
Location: Portland, Or
Posts: 3,110
NeoStarO1 is on a distinguished road
Send a message via ICQ to NeoStarO1 Send a message via AIM to NeoStarO1 Send a message via Yahoo to NeoStarO1
Quote:
Originally posted by RobRich
I did not quarantine it for further analysis, but it looked like one of the variants sent to my mailbox today had been packed with a complex executable compression algorithm in hopes of slipping past anti-virus software.

Robert Richmond
I think you are very well correct on this. I found some last night that were not included in the pathways of the remove directions. I ended up formating last night and just now got finished tightening things up much tighter now. Im locked down pretty damm good now. No more. Got 3 coming in just about 3 minutes ago and NIS caught it right away and did an immediate delete.

Its a nasty one, I think we will be dealing with this quite abit till the 12th unless the new variants have changed that silent date which is all very well possible.
NeoStarO1 is offline   Reply With Quote
Old 01-28-2004, 02:46 PM   #10 (permalink)
Guest
Guest
 
Posts: n/a
At least one variant has introduced a backdoor exploit, thus the code can be directed to initiate a denial of service operation well beyond the initial SCO/MS attacks slated for early Feb.

It also appears the group responsible for this virus is rolling out updates each time a new feature is added, thus the attack dates can be altered with ease. This is a different approach than the usual release and wait strategy employed by most malicious hackers.

Robert Richmond
  Reply With Quote
Reply




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Most Active Discussions

Recent Discussions

All times are GMT -6. The time now is 01:17 PM.