|
#1
|
|||
|
|||
|
OK.. here's the problem... someone who has gotten the posts from this NG in the last 36 hours has
their computer infected with the W32.Swen.A@mm virus... I am certain...!!! This is how I know... I run my own domains and servers... I had been using a NG email address of news1@centauri.com... several days ago it started getting hit with this virus several times a day... so yesterday I changed this email address to news2@centauri.com (a brand new address that never existed before)... well the ONLY place that the email address has ever appeared is right here inside this NG... and this evening the new news2 email address is getting hit with this virus... This virus has several email personalities in one it emails a page that looks like an official Microsoft page, instructing you to install the attached update... if you do that you actually install the virus... it then sends itself (in one of several formats) to ANY email address it finds on your machine, not just your address book, it looks all over the place... by just reading the posts of this NG the email addresses of the posters are stored in the files on your machine... Here is the link to the info about this virus at Symantec... http://securityresponse.symantec.com...swen.a@mm.html It will explain everything about this "worm"... Symantec also provides a FREE removal tool... you should all run this removal tool... it won't hurt your machine in any way, and if you are not infected it will just tell you so... here is the link to the removal tool... http://securityresponse.symantec.com...oval.tool.html If you have one, you can use a virus checking tool, either Norton or McAfee... make sure you have the latest "virus definitions" file... I do not want to seem to be talking down to anyone here by not being more technical, (I could give a lot more detail, but it would not help the situation)... I just want everyone to understand what is happening, and check their machines... There is the possibility that there is an infected news-server in the system, but this is very unlikely... Please let me know who finds the virus... |
|
#2
|
|||
|
|||
|
"The Mr. Bill Show" <news2@centauri.com> wrote in message
news:LzEub.53112$Eq1.15737@twister.rdc-kc.rr.com...> > here is the link to the removal tool... > http://securityresponse.symantec.com...en.a@mm.remova l.tool.html > Than |
|
#3
|
|||
|
|||
|
"The Mr. Bill Show" <news2@centauri.com> wrote in message news:LzEub.53112$Eq1.15737@twister.rdc-kc.rr.com... here is the link to the removal tool... > http://securityresponse.symantec.com...en.a@mm.remova l.tool.html > Thanks for the link, MB. Everyone should run this. It just takes a few seconds to install. It takes about ten minutes to run, but can run in the background while you are doing other things. I was a bit concerned that it might be me for a second. I downloaded IRC the other day and spent all day in a chat room for my online contest. There have been some odd things going on with OE, running video files and just with my keyboard in general. Must just be that this machine is five years old, though, because I came up clean. --K ATAI Faces Page: http://karrde.topcities.com/ataifaces.htm Submit pictures to: sdallape@comcast.net |
|
#4
|
|||
|
|||
|
"Karrde" <karrde@smugglersalliance.com> wrote in message news:bpf7bv$1nvmvk$1@ID-189203.news.uni-berlin.de... > > "The Mr. Bill Show" <news2@centauri.com> wrote in message > news:LzEub.53112$Eq1.15737@twister.rdc-kc.rr.com... > here is the link to the removal tool... > > > http://securityresponse.symantec.com...en.a@mm.remova > l.tool.html > > > > Thanks for the link, MB. Everyone should run this. It just takes a few > seconds to install. It takes about ten minutes to run, but can run in the > background while you are doing other things. I was a bit concerned that it > might be me for a second. I downloaded IRC the other day and spent all day > in a chat room for my online contest. There have been some odd things going > on with OE, running video files and just with my keyboard in general. Must > just be that this machine is five years old, though, because I came up > clean. > > > --K > Good to hear your clean... It's here somewhere... > ATAI Faces Page: http://karrde.topcities.com/ataifaces.htm > > Submit pictures to: sdallape@comcast.net > > |
|
#5
|
|||
|
|||
|
"The Mr. Bill Show" <news2@centauri.com> wrote in message news:LzEub.53112$Eq1.15737@twister.rdc-kc.rr.com... > OK.. here's the problem... someone who has gotten the posts from this NG in the last 36 hours has > their computer infected with the W32.Swen.A@mm virus... I am certain...!!! > > This is how I know... I run my own domains and servers... I had been using a NG email address of > news1@centauri.com... several days ago it started getting hit with this virus several times a > day... so yesterday I changed this email address to news2@centauri.com (a brand new address that > never existed before)... well the ONLY place that the email address has ever appeared is right here > inside this NG... and this evening the new news2 email address is getting hit with this virus... > > This virus has several email personalities in one it emails a page that looks like an official > Microsoft page, instructing you to install the attached update... if you do that you actually > install the virus... it then sends itself (in one of several formats) to ANY email address it finds > on your machine, not just your address book, it looks all over the place... by just reading the > posts of this NG the email addresses of the posters are stored in the files on your machine... > > Here is the link to the info about this virus at Symantec... > http://securityresponse.symantec.com...swen.a@mm.html > > It will explain everything about this "worm"... Symantec also provides a FREE removal tool... you > should all run this removal tool... it won't hurt your machine in any way, and if you are not > infected it will just tell you so... here is the link to the removal tool... > http://securityresponse.symantec.com...en.a@mm.remova l.tool.html > > If you have one, you can use a virus checking tool, either Norton or McAfee... make sure you have > the latest "virus definitions" file... > > I do not want to seem to be talking down to anyone here by not being more technical, (I could give a > lot more detail, but it would not help the situation)... I just want everyone to understand what is > happening, and check their machines... > > There is the possibility that there is an infected news-server in the system, but this is very > unlikely... > > Please let me know who finds the virus... It's not me. I just ran the tool, I even changed it to the cmd file extension they suggested. I was sure it was me. I have been hit with those pesky E-mails forever, it seems. I'm getting tired of it. I only post to one other group, and I just posted the information there. I'm not too saavy on how this stuff works, but I have a feeling someone in this NG has it as well. |
|
#6
|
|||
|
|||
|
On Wed, 19 Nov 2003 09:45:16 -0500, "Patrick Null"
<patnull@earthlink.net> wrote: >I'm not too saavy on how this stuff works, but I have a feeling someone in >this NG has it as well. Someone who uses Outlook Express, to be more specific. You can bet the farm that it isn't one of the Forte Agent users. |
|
#7
|
|||
|
|||
|
On Wed, 19 Nov 2003 09:31:41 -0600, Itoshi <itoshi@no.spam.com> wrote:
>On Wed, 19 Nov 2003 09:45:16 -0500, "Patrick Null" ><patnull@earthlink.net> wrote: > >>I'm not too saavy on how this stuff works, but I have a feeling someone in >>this NG has it as well. > >Someone who uses Outlook Express, to be more specific. You can bet >the farm that it isn't one of the Forte Agent users. nod i also don't have it. |
|
#8
|
|||
|
|||
|
* Itoshi Wrote in alt.tv.american-idol, on Wed, 19 Nov 2003 09:31:41 -0600:
> On Wed, 19 Nov 2003 09:45:16 -0500, "Patrick Null" > <patnull@earthlink.net> wrote: >>I'm not too saavy on how this stuff works, but I have a feeling someone in >>this NG has it as well. > Someone who uses Outlook Express, to be more specific. You can bet > the farm that it isn't one of the Forte Agent users. Or slrn users ![]() -- David | AGM Favorite Games - http://tinyurl.com/loec F u cn rd ths u cnt spl wrth a dm! |
|
#9
|
|||
|
|||
|
"The Mr. Bill Show" <news2@centauri.com> wrote in message
news:LzEub.53112$Eq1.15737@twister.rdc-kc.rr.com... > OK.. here's the problem... someone who has gotten the posts from this NG in the last 36 hours has > their computer infected with the W32.Swen.A@mm virus... I am certain...!!! > > This is how I know... I run my own domains and servers... I had been using a NG email address of > news1@centauri.com... several days ago it started getting hit with this virus several times a > day... so yesterday I changed this email address to news2@centauri.com (a brand new address that > never existed before)... well the ONLY place that the email address has ever appeared is right here > inside this NG... and this evening the new news2 email address is getting hit with this virus... > > This virus has several email personalities in one it emails a page that looks like an official > Microsoft page, instructing you to install the attached update... if you do that you actually > install the virus... it then sends itself (in one of several formats) to ANY email address it finds > on your machine, not just your address book, it looks all over the place... by just reading the > posts of this NG the email addresses of the posters are stored in the files on your machine... > > Here is the link to the info about this virus at Symantec... > http://securityresponse.symantec.com...swen.a@mm.html > > It will explain everything about this "worm"... Symantec also provides a FREE removal tool... you > should all run this removal tool... it won't hurt your machine in any way, and if you are not > infected it will just tell you so... here is the link to the removal tool... > http://securityresponse.symantec.com...en.a@mm.remova l.tool.html > > If you have one, you can use a virus checking tool, either Norton or McAfee... make sure you have > the latest "virus definitions" file... > > I do not want to seem to be talking down to anyone here by not being more technical, (I could give a > lot more detail, but it would not help the situation)... I just want everyone to understand what is > happening, and check their machines... > > There is the possibility that there is an infected news-server in the system, but this is very > unlikely... > > Please let me know who finds the virus... I just ran that tool on my computer and got the "...has not been found on your system." message. Soooo, I guess it isn't me either... |
|
#10
|
|||
|
|||
|
"Deanna Brock" <dmb23@sbcglobal.net> wrote in message news:0XNub.29$wi3.11097124@newssvr11.news.prodigy. com... > "The Mr. Bill Show" <news2@centauri.com> wrote in message > news:LzEub.53112$Eq1.15737@twister.rdc-kc.rr.com... > > OK.. here's the problem... someone who has gotten the posts from this NG > in the last 36 hours has > > their computer infected with the W32.Swen.A@mm virus... I am certain...!!! > > > > This is how I know... I run my own domains and servers... I had been using > a NG email address of > > news1@centauri.com... several days ago it started getting hit with this > virus several times a > > day... so yesterday I changed this email address to news2@centauri.com (a > brand new address that > > never existed before)... well the ONLY place that the email address has > ever appeared is right here > > inside this NG... and this evening the new news2 email address is getting > hit with this virus... > > > > This virus has several email personalities in one it emails a page that > looks like an official > > Microsoft page, instructing you to install the attached update... if you > do that you actually > > install the virus... it then sends itself (in one of several formats) to > ANY email address it finds > > on your machine, not just your address book, it looks all over the > place... by just reading the > > posts of this NG the email addresses of the posters are stored in the > files on your machine... > > > > Here is the link to the info about this virus at Symantec... > > http://securityresponse.symantec.com...swen.a@mm.html > > > > It will explain everything about this "worm"... Symantec also provides a > FREE removal tool... you > > should all run this removal tool... it won't hurt your machine in any way, > and if you are not > > infected it will just tell you so... here is the link to the removal > tool... > > > http://securityresponse.symantec.com...en.a@mm.remova > l.tool.html > > > > If you have one, you can use a virus checking tool, either Norton or > McAfee... make sure you have > > the latest "virus definitions" file... > > > > I do not want to seem to be talking down to anyone here by not being more > technical, (I could give a > > lot more detail, but it would not help the situation)... I just want > everyone to understand what is > > happening, and check their machines... > > > > There is the possibility that there is an infected news-server in the > system, but this is very > > unlikely... > > > > Please let me know who finds the virus... > > I just ran that tool on my computer and got the "...has not been found on > your system." message. Soooo, I guess it isn't me either... No Sv@*?$$% virus here! Thanks for the info. - Harrison. -----= Posted via Newsfeeds.Com, Uncensored Usenet News =----- http://www.newsfeeds.com - The #1 Newsgroup Service in the World! -----== Over 100,000 Newsgroups - 19 Different Servers! =----- |