 |
01-02-2006, 11:02 PM
|
#1 (permalink)
|
|
Broken In
Join Date: Jul 2004
Location: Hyderabad
Posts: 104
|
Feb 3rd Virus Warning!!!
There were a couple of Virus warnings released by Major Anti Virus manufacturers regarding the outbreak of Two (or are they the same??) worms.
One is the Black Worm and other is the 'Kama Sutra' virus.......
Quote:
|
It has been observed that the Black Worm also known as W32.Vb.i or W32.Nayem.E has been actively spreading in India since last two weeks now. It’s a mass-mailing worm that also spread using remote shares. After a long gap there has been an outbreak kind of situation as this worm was successful in spreading all over the globe within few hours when it first appeared over the Internet. The reason why the worm was so successful in spreading all over is just because it spreads by creating a mime encoded compressed executable with a different extension (.HQX, .BHX), which didn’t had any kind of header to classify the file. As a result the mail gateway scanners were not able to decode the attachment and scan the infected files. This is why the worm got skipped even though the mail severs have updated anti-virus scan engines. Many of the leading AntiVirus software’s had to do some changes to their scan engine to make the scanners decode the file and scan for the infected attachment
|
Quote:
|
This worm has a dangerous payload, it will delete all the documents, worksheets, presentations, database files and compressed backup files from the system on every 3rd day of the month. This is very serious payload considering that the worm has spread all over India and the first payload day of 3rd February is arriving very soon. We recommend all our users to have their AntiVirus updated, up and running
|
Source
Beware of the 'Kama Sutra' Virus:
Quote:
Microsoft in an e-mail Tuesday warned users to update their antivirus protections against the Kama Sutra worm, the mass-mailing virus slated to begin corrupting files later this week.
In its advisory for the Kama Sutra worm, otherwise known as win32/Mywife.E@mm and Nyxem.E, Microsoft warns users to be wary of opening unknown attachments.
The worm, which infects a user's computer once an attachment is opened, may also spread over writeable network shares if there are blank administrator passwords. Users hit with the worm may find a number of their files permanently corrupted on the third day of every month, beginning this Friday.
Like other worms, the Kama Sutra virus attempts to disable security software that is loaded on users systems, Microsoft warns.
Microsoft is advising users to update their antivirus software, as well as remain cautious when opening unknown attachments and use strong password protection.
Security experts estimate the worm has infected at least 500,000 PCs, often using pornography as its enticement.
|
Source
|
|
|
|
Advertisements. Register and be a member of the community to get rid of them.
|
|
Advertisement
|
|
01-02-2006, 11:20 PM
|
#2 (permalink)
|
|
Wise Old Owl
Join Date: Sep 2005
Location: never land
Posts: 1,284
|
Thanx for there warnings I'll update my Anti Virus Def.
|
|
|
02-02-2006, 12:28 AM
|
#3 (permalink)
|
|
Apprentice
Join Date: Jan 2006
Location: ROM
Posts: 69
|
thanks for the info.I will keep in mind
|
|
|
02-02-2006, 12:59 AM
|
#4 (permalink)
|
|
In The Zone
Join Date: Jul 2005
Location: Hyderabad
Posts: 231
|
I am soo happy that i switched over to linux no janjat atall
__________________
fighting for peace is like ****ing for virginity
|
|
|
02-02-2006, 02:41 AM
|
#5 (permalink)
|
|
In The Zone
Join Date: Jul 2004
Location: mumbai
Posts: 206
|
thanks for sharing info
|
|
|
02-02-2006, 02:51 AM
|
#6 (permalink)
|
|
Broken In
Join Date: Dec 2005
Posts: 151
|
|
|
|
02-02-2006, 10:58 AM
|
#7 (permalink)
|
|
Alpha Geek
Join Date: Feb 2005
Location: Bombay
Posts: 879
|
Yes I read about this in the morning, TOI reported it to me .
I wonder how much damage will take place it people are not vigilent.
@ Hermit thanks for the link.
|
|
|
02-02-2006, 11:23 AM
|
#8 (permalink)
|
|
In The Zone
Join Date: Oct 2005
Posts: 331
|
saw it in newspaper today,thanks for info
|
|
|
03-02-2006, 01:51 PM
|
#9 (permalink)
|
|
Alpha Geek
Join Date: Apr 2004
Location: United States
Posts: 624
|
thank for the links! i'll be dead if this thing gets into my machine!!
__________________
Be not Thou far from me o Lord....o my strength....haste Thee to help me.
|
|
|
03-02-2006, 04:05 PM
|
#10 (permalink)
|
|
Alpha Geek
Join Date: May 2005
Posts: 687
|
Remove Kama Sutra virus(FEB 3 Virus)from ur computer
W32.Beagle.DL@mm is a mass-mailing worm that uses its own SMTP engine to spread to peer-to-peer and file sharing networks. It opens a back door on the compromised computer and attempts to lower security settings. The worm may also download and execute remote files.
MORE INFR:
Code:
http://securityresponse.symantec.com/avcenter/venc/data/w32.beagle.dl@mm.html
__________________
Any use of the collective descriptions and shared knowledge from any of my posts are at the sole discretion of the reader.I am not responsible for what you do with it.
|
|
|
03-02-2006, 04:49 PM
|
#11 (permalink)
|
|
In The Zone
Join Date: Oct 2005
Posts: 331
|
dude add it to the already posted topic feb3..its been posted already.
your link is useful and will serve more purpose there
|
|
|
03-02-2006, 05:14 PM
|
#12 (permalink)
|
|
Wise Old Owl
Join Date: Dec 2004
Location: New Delhi/Bangalore
Posts: 1,087
|
|
|
|
03-02-2006, 06:01 PM
|
#13 (permalink)
|
|
Alpha Geek
Join Date: May 2005
Posts: 687
|
Quote:
|
Originally Posted by shwetanshu
http://www.thinkdigit.com/forum/viewtopic.php?t=37070
|
I know.... look up for further information.......
__________________
Any use of the collective descriptions and shared knowledge from any of my posts are at the sole discretion of the reader.I am not responsible for what you do with it.
|
|
|
03-02-2006, 08:50 PM
|
#14 (permalink)
|
|
Tech'ing life seriously!!
Join Date: Sep 2005
Location: Tech City - Bengaluru
Posts: 395
|
ok fine.
i wud have seen this post once..
-SUDE
|
|
|
05-02-2006, 11:25 AM
|
#15 (permalink)
|
|
Rebooting
Join Date: Aug 2004
Location: 220.225.82.33
Posts: 6,266
|
hmm... so far so good... i am tension free!! trusting my KAV which never took me down... 20 system in our cafe!! 18 of them on KAV... 2 runs Symantec CE 10... those which was running Server 2k3 with Symantec CE cought up that W32.Nayem.E... result?? no AVS website was opening (any browser) stoped network scanner / printer access gave pretty much trouble with CafeZee... had switch to secondary OS winXP to install KAV (our version of kav dont get install on server) & scaned it... what i get?? see this report...
up2date Symantec CE 10 was failed to stop it / even detect it.... but all system running KAV PerPro 5.0 stoped it even getting in to our system... so i am very happy with its performance...
______________________________________________
Thanks to ImageShack for Free Image Hosting
|
|
|
05-02-2006, 12:42 PM
|
#16 (permalink)
|
|
I am Optimus Prime
Join Date: Feb 2005
Location: Delhi, India
Posts: 1,919
|
Even I was attacked by this virus! Thanks to Yahoo! (uses Norton AV) and McAfee 2006 on my system that the virus has not been able to penetrate in my PC but has given be a bigger problem to worry about!
It got the contact of a Yahoo! grop of which I am a moderator - its for our college! Now it post obscene messages with virus attachement everyday and now I have to manally moderate all the messages and this is giving me a headache! I have not found a solution still for it!
|
|
|
05-02-2006, 02:05 PM
|
#17 (permalink)
|
|
Alpha Geek
Join Date: Jul 2004
Location: West Bengal
Posts: 625
|
I have also been attacked by this worm in my yahoo account..but Yahoo caught it before i can download it....
When I used pop to download mails my AVG pro caught it... I am tension free now...It cant harm me
__________________
Bombina rocks
|
|
|
07-02-2006, 04:20 AM
|
#18 (permalink)
|
|
Broken In
Join Date: Dec 2005
Posts: 151
|
BitDefender definations r good ,as i first cought virus scanning through this where as Mcafee 8i detected it after 3 days later(i update every day )
but these virus re writes regestry on 3 ed of every month so its better to run san from 1 st of every month
|
|
|
07-02-2006, 06:25 PM
|
#19 (permalink)
|
|
In The Zone
Join Date: Jan 2004
Location: www.solinweb.net
Posts: 333
|
I am not such a fool that I would click on attchments which have attractive words.
__________________
www.Solinweb.net - Webhosting was never so cheap in India!
www.cyclone2k.net - More than wrestling....
www.myspacery.com - Myspace Layouts, Myspace Codes, Myspace Generators, Myspace Tweaks
|
|
|
09-02-2006, 08:25 AM
|
#20 (permalink)
|
|
left this forum longback
Join Date: Sep 2005
Location: -
Posts: 7,536
|
Another Reason for U to switch to GNU/Linux or BSD OS's.
__________________
left this forum long back.Admin Can Delete this Account and posts Permanantly.Thank You
Get GNU/Linux - http://getgnulinux.org
|
|
|
| Thread Tools |
|
|
| Display Modes |
Linear Mode
|
Posting Rules
|
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
HTML code is Off
|
|
|
|
|
|