2040
<<
Message Index
>>
2042
Number: 2041
From: "negusm <negusm@y...>" <negusm@y...>
Date: Mon Feb 17, 2003 2:03 am
Subject: Re: [ASC McLaren ] IE 6.0 patch IS A TROJAN - DO NOT RUN IT EITHER
Body:
Well that is the only explanation I can think of...there are only
three people I have talked to through my Yahoo mail account and they
are all from this group.
-Mike
--- In ascmclaren@yahoogroups.com, "MustangMarty" <5liter@g...>
wrote:
> Is it possible that your email address is in someone else's
address book
> and that they are a member of this list (with this list's address
in their
> book)? With Klez, that is the most likely possibility...
>
>
> ----- Original Message -----
> From: <negusm@y...>
> To: <ascmclaren@yahoogroups.com>
> Sent: Sunday, February 16, 2003 3:34 PM
> Subject: Re: [ASC McLaren ] IE 6.0 patch IS A TROJAN - DO NOT RUN
IT EITHER
>
>
> > Well, this is odd...
> >
> > I wake up and see that my name is next to a virus posted
here...but
> > I must say I have no idea how it got on my machine or targetted
> > me....
> >
> > 1. I run antivirus software.
> > 2. I NEVER post to or get messages from these news groups
through
> > EMAIL....therefore...
> > 3. There is and has never been an ascmclaren yahoo groups email
> > address in my address book.
> > 4. I keep my machine up to date every week.
> > 5. I ran the HouseCall scanner that was posted here just to be
sure
> > and there is not a virus to be found on my machine.
> >
> > and most importantly....
> >
> > 6. I never open unknown attachments.
> >
> > Very weird...
> >
> > -Mike
> >
> >
--- In ascmclaren@yahoogroups.com, "MustangMarty" <5liter@g...>
> > wrote:
> > > If it is the Klez virus then only one person may be infected.
Klez
> > will take
> > > an address from the infected computers address book and use as
> > the "From"
> > > and then send the rest of the addresses copies of itself to
try
> > to infect
> > > other computers. It does this to make it harder to track.
> > >
> > > If its does this more than once, then each time the infected
> > computer sends
> > > out a batch, it will use a different addy for the 'From". Klez
> > uses the
> > > same e-mail relays the spammers use so the "From" addy doesn't
> > have to be
> > > legit.
> > >
> > >
> > >
> > > ----- Original Message -----
> > > From: "John" <jgemelli@o...>
> > > To: <ascmclaren@yahoogroups.com>
> > > Sent: Sunday, February 16, 2003 11:02 AM
> > > Subject: Re: [ASC McLaren ] IE 6.0 patch IS A TROJAN - DO NOT
RUN
> > IT EITHER
> > >
> > >
> > > > looks like it's from two different addr's and locations.
now at
> > least 2
> > > > people are infected :(
> > > >
> > > > John
> > > > ----- Original Message -----
> > > > From: "Marquis Grove" <infosyssec@y...>
> > > > To: <ascmclaren@yahoogroups.com>
> > > > Sent: Sunday, February 16, 2003 9:54 AM
> > > > Subject: [ASC McLaren ] IE 6.0 patch IS A TROJAN - DO NOT
RUN IT
> > EITHER
> > > >
> > > >
> > > > > Do not run the patch sent around by negusm@y... It is a
> > TROJAN !
> > > > >
> > > > > It would appear that someone in this group is infected
with a
> > trojan and
> > > > the worm is gathering
> > > > > email addresses from that persons address book to spread
> > itself.
> > > > >
> > > > > Do not run ANY executable programs or screen savers that
may
> > originate
> > > > from this user group. The
> > > > > odds are 99.9% that it is a TROJAN.
> > > > >
> > > > > Everyone should run a virus scan on their home computers to
> > make sure
> > > they
> > > > are not infected.
> > > > >
> > > > > If YOU do not trust your current antivirus scanner ( as
some
> > of them
> > > > become disabled by the worm
> > > > > infection ) then go to the TrendMicro online free virus
scan.
> > It can
> > > > perform a remote anti-virus
> > > > > scan against your computer to make sure that it is 100%
virus
> > free ( and
> > > > it will delete the
> > > > > infected files that it finds ) unlike the Symantec online
test
> > that only
> > > > identifies infections and
> > > > > then tells you to buy their product without fixing the
problem
> > then and
> > > > there.
> > > > >
> > > > > TrendMicro's online antivirus scan is located at :
> > > > >
> > > > > http://housecall.trendmicro.com/housecall/start_corp.asp
> > > > >
> > > > > Marq
> > > > >
> > > > >
> > > > > Marq
> > > > >
> > > > > --- negusm <negusm@y...> wrote:
> > > > >
> > > > > ---------------------------------
> > > > > Hi,This is a IE 6.0 patch
> > > > > I wish you would enjoy it.
> > > > > ADVERTISEMENT
> > > > >
> > > > > To unsubscribe from this group, send an email to:
> > > > >
> > > > >
> > > > >
> > > > >
> > > > > the Yahoo! Terms of
> > Service.
> > > > >
> > > > >
> > > > > __________________________________________________
> > > > > Do you Yahoo!?
> > > > > Yahoo! Shopping - Send Flowers for Valentine's Day
> > > > > http://shopping.yahoo.com
> > > > >
> > > > > To unsubscribe from this group, send an email to:
> > > > >
> > > > >
> > > > >
> > > > >
> > > > >
> > >
> > > > >
> > > > >
> > > >
> > > >
> > > > To unsubscribe from this group, send an email to:
> > > >
> > > >
> > > >
> > > >
> > > >
> >
> > > >
> > > >
> >
> >
> > To unsubscribe from this group, send an email to:
> >
> >
> >
> >
> >
> >
> >