home hardware prices news articles forums photos user reviews
Go Back   Tech Support Forums - TechIMO.com > PC Hardware and Tech > General Tech Discussion
Ask a Tech Support Question (free)!

NASTY VIRUS TODAY - W32.Klez.E@mm

Reply
Get bargains at  »  Dealighted.com
 
Thread Tools Search this Thread
Currently Active Users: 1381
Discussions: 200,507, Posts: 2,374,395, Members: 245,831
Old March 15th, 2002, 12:14 PM   Digg it!   #1 (permalink)
The Nebish Jurist
 
Brangwen's Avatar
 
Join Date: Oct 2001
Location: "Now?"
Posts: 3,215
NASTY VIRUS TODAY - W32.Klez.E@mm

Dear All:

This morning while down loading my email, my Norton Anti-Virus Alarm picked up a virus called: W32.Klez.E @ mm.

This is only the second time in 14 years I've caught a virus. I found this virus at: http://securityresponse.symantec.com...klez.e@mm.html

Apparently, the virus may have been dormant for awhile, and is programmed to open or execute on odd numbered months, e.g., March.

If you click on the link, instructions are provided for removing this virus from computers with varying operating systems, e.g., Windows 98, WinME, Win2000, etc.

It's a lengthy process ... but the damage can be nasty, though Symantec Security (Norton Anti-Virus) lists it as "moderate." This virus has been upgraded from a level 2 to a level 3 during January or March of this year. All the information is at the end of the above link.

Most importantly, do not open emails with untrustworthy attachments at least until you've read the above "How to Remove" article.

Good luck.

Brangwen
Brangwen is offline   Reply With Quote
Old March 15th, 2002, 12:31 PM     #2 (permalink)
Ultimate Member
 
osprey4's Avatar
 
Join Date: Oct 2001
Location: South Jersey
Posts: 8,677
Quote:
Most importantly, do not open emails with untrustworthy attachments...

I thought this was the prime directive for avoiding viruses. What were you doing that permitted this virus to get onto your system?

John
osprey4 is offline   Reply With Quote
Old March 15th, 2002, 01:05 PM     #3 (permalink)
Canuck
 
FreakyOCR's Avatar
 
Join Date: Oct 2001
Location: Langley, BC, Canada
Posts: 3,603
Send a message via ICQ to FreakyOCR Send a message via MSN to FreakyOCR
The prime directive?? It seems everybody is wayy to curious about what the attachment is that they wave the risk factor... and boy do they regret it after the damage is done.

Myb rother thought somebody sent him a love letter... yep... Trashed his entire computer....
__________________
- Freaky
FreakyOCR is offline   Reply With Quote
Old March 15th, 2002, 01:18 PM     #4 (permalink)
The Nebish Jurist
 
Brangwen's Avatar
 
Join Date: Oct 2001
Location: "Now?"
Posts: 3,215
John & FreakyOCR:

John wrote:
Quote:
I thought this was the prime directive for avoiding viruses. What were you doing that permitted this virus to get onto your system?

John

I did not click on anything to open an attachment ... As the email was downloading, I scrolled up to begin reading the first arrival and as the email containing the virus was passed over the virus alert activated.

FreakyOCR wrote:
Quote:
The prime directive?? It seems everybody is wayy to curious about what the attachment is that they wave the risk factor... and boy do they regret it after the damage is done.

Good point, FreakyOCR. A rule I follow is not to open something I have no good reason to trust. But as you can plainly read in my response above to John, I did not break my rule.

/Brangwen
__________________
ASUS A7N8X-E Deluxe, Athlon XP 3200+, 1.5 GB Samsung [400 MHz] DDR, Matrox Parhelia 128 Graphics, Dual LG FLATRON Displays, WinXP Pro SP3
Brangwen is offline   Reply With Quote
Old March 15th, 2002, 01:47 PM     #5 (permalink)
The Mad Redhatter
 
storm2k's Avatar
 
Join Date: Oct 2001
Location: NJ
Posts: 3,552
Send a message via ICQ to storm2k Send a message via AIM to storm2k Send a message via MSN to storm2k Send a message via Yahoo to storm2k
well the good thing is that his virus scanner caught it and cleaned it. this is why i run both zone alarm pro and norton's with email scanning on, aside from being a cautious email opener.
storm2k is offline   Reply With Quote
Old March 15th, 2002, 02:09 PM     #6 (permalink)
Senior Member
 
MDdan's Avatar
 
Join Date: Dec 2001
Posts: 857
I just cleaned that virus off my neighbor's computer. If you read the writeup on it, it actually infects your computer WITHOUT clicking on the attachment.

*whoa* just blew away a set in stone rule there right?

Well, sorta. The problem is that Outlook is so helpful that it "clicks" on it for ya. All you have to do is preview the message, or pull up the text. Outlook executes a script in the email that then launches the virus.

Summary: All you have to do is use outlook to get nailed, you don't have to click on the attachment.

Now, if we want to blame Brangwen for infecting his computer, here's how we can do it.

There has been a patch out for over a year that fixed this vulnerability in IE and Outlook.

Sorry Brangwen, couldn't get you off the hook altogether.

Moral of the story: Don't use Outlook, or at least keep it patched if you do.
MDdan is offline   Reply With Quote
Old March 15th, 2002, 02:19 PM     #7 (permalink)
The Nebish Jurist
 
Brangwen's Avatar
 
Join Date: Oct 2001
Location: "Now?"
Posts: 3,215
MDdan:

Good point!

I thought I had downloaded & installed those patches awhile ago.

I will certainly double check or just duplicate the DL / Install.

Thx.

Brangwen
Brangwen is offline   Reply With Quote
Old March 15th, 2002, 02:27 PM     #8 (permalink)
Senior Member
 
MDdan's Avatar
 
Join Date: Dec 2001
Posts: 857
Here is the safest way to patch outlook:

Go to control panel
Choose "Add/remove Software"
Unistall Outlook

Go to www.netscape.com and download netscape.

Configure Netscape Mail.



If you take a look at all the grief that Outlook has caused, it's amazing it's still so popular.

Of course, I use it from time to time too.
MDdan is offline   Reply With Quote
Old March 15th, 2002, 02:30 PM     #9 (permalink)
Ultimate Member
 
osprey4's Avatar
 
Join Date: Oct 2001
Location: South Jersey
Posts: 8,677
Brangwen, thanks for your story. Guess I can't plead ignorant any more.

I try to keep up with security updates but the bad guys always seem to be one step ahead. MDDan's point well taken.

John
osprey4 is offline   Reply With Quote
Old March 15th, 2002, 02:39 PM     #10 (permalink)
Ultimate Member
 
Emc2's Avatar
 
Join Date: Oct 2001
Location: Savannah, GA
Posts: 1,752
Send a message via AIM to Emc2
I've never used Outlook as my mailing program and never will. It wass very unimpressive to me when I was looking for a mail program a few years back. 90% of the viruses that teachers get here on campus are written for IE's and Outlook's vulnerabilities. We've recently gone to Eudora and IE6, and alot of our problems see to have become aleviated.
Emc2 is offline   Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Most Active Discussions
Is It Just Me? (1635)
FT HOOD attack: 7 killed 12 injured (66)
Review My Build (5)
HELP!!! What do you think of this s.. (16)
Looking for a graphic card that wil.. (30)
Assosiations (21496)
My 1st pc build (40)
Aero in Vista (7)
PC Modern Warfare 2: it's much wors.. (12)
core i7 extreme 975, nvidia 9400gt (9)
How to Ship a PC (16)
Building my first computer (13)
slaving laptop drive (7)
[F@H SPAM 11/1/09]New month . . . n.. (33)
Recent Discussions
how to convert mod to wmv/avi/mp4/mov.. (0)
FAT32 to NTFS file system in Win2kpro (3)
Motherboards and my curse... (25)
Review My Build (5)
HELP!!! What do you think of this sys.. (16)
New Processor, Monitor will not turn .. (2)
2009 Build (4)
Internet very slow since updating AVG.. (7)
My 1st pc build (40)
Freezing During Music/Movies (1)
Windows Experience Index is screwed u.. (2)
ext. sound card laptop to stereo syst.. (2)
Remote Desktop via SSH and error mess.. (2)
Help and Support disappeared from my .. (0)
[F@H SPAM 11/1/09]New month . . . new.. (33)
Basic applications needed for "r.. (1)
core i7 extreme 975, nvidia 9400gt (9)
hard drive problem (2)
Win7 TrustedInstaller Permissions (2)
Speed up Win 7 boot time a bit (1)
Hard Drive test program (2)
wireless westell versalink model 327w (1)
New build 10 second reboot cycle! Won.. (3)
New Linksys Routers (2)
sometime power/Amber light (0)


All times are GMT -4. The time now is 04:28 AM.
TechIMO Copyright 2008 All Enthusiast, Inc.



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28