The virus is not being sent through this list - but, by worms acting on
members' PCs. Only those members using Outlook or Outlook Express will
propagate the virus(worm).
NO virus scanner will work, unless the DAT files &engines are updated
continually. Norton, PCTrend, McAfee - all are useless unless you keep
them up to date. And as long as you're concerned about that, make sure
that your Operating System and Email client are also up to date. NONE of
this would have happened if those using Outlook & Outlook Express would
keep their products up to date (of course, keeping those products up to
date is nearly impossible as a new security hole & fix happen continually.
Just because an email has the BRHS tag does NOT mean it came from the
list. The only thing that means is that the computer you received the
email from DID get a message with that subject line. Remember: Those
"sending" the virus rarely know the virus/worm has been sent. Don't get
mad at them for sending something they didn't know got sent.
You can go here:
http://www.antivirus.com/vinfo
Click on "Scan your PC FREE" and let it run its little scan and clean up
any infected files (for free).
The worm uses a known vulnerability in some versions of Outlook Express 5
to mail itself automatically. Microsoft has issued a patch that prevents
this vulnerability from being exploited. The download address is
http://www.microsoft.com/technet/security/bulletin/MS01-020.asp
BW
At 07:38 PM 12/1/2001 -0600, you wrote:
More on the information below:
This is not a game or a hoax. My ISP has filtering software built
in and and already refused delivery of about 15 messages.
I can go to their site and look at them. It started on LocoNotes
and has spread to this list. I can tell who the senders are.
Mr. Thompson has correctly named one of them.
Yahoo does NOT filter this stuff out because it picks up addresses
from your Inbox and starts sending them messages "RE:" whatever
the current thread is. They might be labeled as "MP3" or "WAV"
files in the attachment box but they are not either. The virus files
have a file extension of ".com.com".
Since I have a rather low credibilty with some people I will not
name names but this does exsist. My ISP described it four or
five days ago and is taking active action against it.
I don't know the solution but it is a real problem.
|