Ford Diesel Forum / Powerstroke Forum Ford Diesel Forum / Powerstroke Forum
Go Back   Diesel Forum - The Diesel Stop.com > General Discussion > News, Comments, and Suggestions
Register Home Forum Active Topics Gallery Search Today's Posts Mark Forums Read

News, Comments, and Suggestions Discussion of TheDieselStop.Com itself. What do you like or don't like, kudos and complaints, comments and suggestions.

       
Reply
 
LinkBack Thread Tools Display Modes
Old 10-08-2002, 10:31 PM   #1 (permalink)
Senior Member
 
Join Date: Feb 2001
Posts: 3,594
iTrader: (0)
My Photos: (0)
W32.Klez.gen@mm virus and me

Just got a polite pm from a member who said he was sent the W32.Klez.gen@mm virus on my behalf. He was very understanding. If anybody else is sent a simliar email, I didn't send the darn thing and no my computer isn't infected with it.
If you get the email from anyone and even if you have virus protection go here http://securityresponse.symantec.com...klez.h@mm.html and run the free program to make sure you don't have it on your computer. This lil rascal can disable your virus protection as well as use your compputer for a mail server.
Thanks and no hate mail please, I'm innocent, I swear!
__________________
<font color="DEB887">
2001 PSD, APX1, AFE, SCMT, dual exhaust
</font>

<font color="CD853F"> Wit is educated insolence </font>
rheaman is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Sponsored Links
Advertisement
 
Old 10-14-2002, 02:10 PM   #2 (permalink)
Senior Member
 
Powerstroke2000's Avatar
 
Join Date: Apr 1999
Location: Surrey, British Columbia, Canada
Posts: 7,541
iTrader: (0)
My Photos: (17)
Re: W32.Klez.gen@mm virus and me

Yeah, my Norton 2000 has caught many of these clever little virus's wanting to invade my space! Thankfully they get quarantined and deleted before they are opened.

Dale...
__________________
IDM mod
TYMAR intake
Amsoil dual by-pass
Precision Ind triple disk Torque Convertor & Pro build tranny
Transgo Tugger shift kit
Ford AIC & full gauges
Mini-Me/SWAMP 250cc Hybrid 530 injectors
17° HPOP
5" custom exhaust
Superduty Intercooler & GTS pipe kit
CCV mod
TS 4 position Flip Chip

<span style="color: blue"> My truck </span> & <span style="color: blue"> Dual Idler Tensioner mod </span> , <span style="color: blue"> Superduty HPOP & Mini-Me ~ Swamp Injectors </span>
Powerstroke2000 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 10-19-2002, 10:15 AM   #3 (permalink)
Member
 
Join Date: Jun 1999
Location: Sweden
Posts: 80
iTrader: (0)
My Photos: (0)
Send a message via ICQ to WillyP
Re: W32.Klez.gen@mm virus and me

I had the same mails.
This severe virus is pickup up your ID, remailing a former E-mail with you as sender, and is even making a fake IP-adress so the Internet Service provider cant trace it.

See the description below. I took that description and made a special signaure for those mails, easy to answer.
Klez-virus


The one I got is worse
UPDATE (2002-10-02 13:30 GMT)

The Anti-virus company F-Secure is upgrading the Bugbear/Tanatos e-mail worm to Level 1 as it continues to spread rapidly. Currently it is the most widespread virus in the world together with Klez.

For more information, see Global Bugbear worm Information Center:

BugBear

For removal instructions, see the bottom of the page.

TECHNICAL DETAILS

Bugbear is a mass-mailing and network worm with keylogging and backdoor capabilties. It appeared in the wild on 30th of September 2002. The worm's file is a PE EXE (portable executable), 50688 bytes long and it is compressed with UPX file compressor.

Infecting a System

When run, the worm copies itself to Windows System directory with a random name (JFMV.EXE for example) and adds a startup key for this file to the Registry:


[HKLM\Software\Microsoft\Windows\CurrentVersion\Run Once]

It also drops a keylogging component as a DLL file with a randomly-generated name (ZLQPUPP.DLL for example) to Windows System folder. The worm also creates 2 more DLL files and stores some encrypted data there. The worm creates 2 randomly named DAT files in root Windows folder too.

E-mail Spreading

Bugbear spreads in e-mail messages as an attachment with randomly-generated names and with one or more extensions. Subjects and bodies of infected e-mails are also different. The mass-mailing routine is quite complex.

The worm has the ability to fake information in e-mail headers, so sometimes the sender's e-mail address gets replaced with another address that the worm finds on an infected system.

The worm's messages can contain IFrame exploit that allows it to run automatically on some computers when an infected e-mail is viewed (for example, with Outlook and IE 5.0 or 5.01). This vulnerability is fixed and a patch for it is available on Microsoft site:

http://www.microsoft.com/windows/ie/...ie/default.asp

WillyP is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 10-20-2002, 10:43 PM   #4 (permalink)
Senior Member
 
Join Date: Oct 2000
Location: Castaic, Ca.
Posts: 1,594
iTrader: (0)
My Photos: (0)
Re: W32.Klez.gen@mm virus and me

I got it, but it wasn't from you -- it was from another member...

Steve.
spepin is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 10-21-2002, 10:47 PM   #5 (permalink)
Senior Member
 
Join Date: Feb 2002
Posts: 137
iTrader: (0)
My Photos: (2)
Re: W32.Klez.gen@mm virus and me

I recieved it about 3 months ago.....and it was too late when Norton detected it so I formatted the computer and started from scratch. (I was waiting to do that anyways) I don't use Outlook express, just too much hassel.
__________________
My truck: 1985 <font color="red">Ford 4x4</font> F-150...currently transplanting a warmed over 351.[img]/ubbthreads/images/graemlins/shocked.gif[/img]
GaBob's trucks: 1999 F-350 Powerstroke dually, Duratrans overdrive controller, 6position TS Performance chip (stock, HI,50,75,100,OMG setting)...Code:NVK3
1986 F-250 6.9 rebuilt head, A/C, auto, AKA Ol' Smokey
AIM username...Wildjon3006
Wildjon300ci is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Sponsored Links
Advertisement
 
Reply

  Diesel Forum - The Diesel Stop.com > General Discussion > News, Comments, and Suggestions



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

» Search Used Trucks
Search for used vehicles by ZIP, please enter Zipcode below:
Google Links

» Log in
User Name:

Password:

Not a member yet?
Register Now!
» Wheel & Tire Center


Sponsors

» Auto Resources
Locate Ford Dealerships to find a new Ford for sale, Ford Mustang and other car models such as the Ford Escape.
» Sponsor Links
»Garage Storage and Cabinets
Powered by vBadvanced CMPS v3.0 RC2

All times are GMT -5. The time now is 04:30 AM.

Powered by vBulletin® Version 3.6.8
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.1.0
  • AutoForums.com
  • Truck
  • European
  • Import
  • Domestic
  • Manufacturer

AutoForums.com is the premier network of enthusiast-owned enthusiast-operated automotive communities.
We operate more than 100 automotive forums where our users consult peers for shopping information and advice, and share experiences and opinions as a community.

Visit AutoForums.com today.

For advertising information, please visit our AutoForums.com website and Contact Us, or send an email message to sales@autoforums.com.