
Posted by Scott Deadilus on 1/27/2004, 2:55 pm Please be aware that there are (as ever) a number of viruses doing the rounds. However, one of these (I-Worm/Mydoom) has recently found its way to the universal post bin and to at least one member of SOUL. The email in question appears to be sent from posts2003@soultrek.net (this may or may not be true), and contains a 22,528 byte (~23kb) zip file, which itself contains either a .pif, .scr or .cmd file (to name a few). A good (and free) piece of antivirus software is available from: http://www.grisoft.com/us/us_dwnl_free.php http://us.mcafee.com/virusInfo/default.asp?id=description&virus_k=100983 W32/Mydoom@MM is a High-Outbreak Risk mass-mailing worm flooding email servers worldwide. When run, the worm steals email addresses from the infected machine and also automatically generates random email addresses for propagation. This email generation engine is similar to technologies spammers use to generate addresses for spam email campaigns. Should you worry that you have opened this file and been infected, visit the link above for some advice. Updated antivirus patches will be required for every piece of antivirus software on the market. As a last word (and sorry for teaching some of you to suck eggs), remember never to open attachments you are even slightly suspicious about without verifying who/where they came from (even if you know the sender - addresses can be extracted, such as how this one works). In particular, be wary of .scr, .exe, .pif and .cmd extensions. (The email in question has been removed by myself to avoid further propogation)
80.7.233.22
Dear all,
For further info, visit:
A small extract (for those interested) can be found below:
W32/Mydoom@MM generates emails with a spoofed From: field, so incoming messages may appear to be from people you know. Furthermore, the subject line and message body are both randomly generated by the worm.
Kind regards,
Scotty D
![]() |
|
Message Thread:
|