|
|
Joined: Jun 2000
Posts: 8,069
Member
|
|
Member
Joined: Jun 2000
Posts: 8,069 |
This week-end we had a new strain of the Worm Virus attack our "worldwide" network infrastructure (Intel). Brought it to it's knees.<P>At this time I have no particulars regarding symptoms or anti-virus agents. The only info I have received is you are at risk if you have a PC running Windows 2000 or Windows NT v4.0.<P>Just be aware.<P>I will waterfall info as it is funneled down to me.<P>Jo<P><BR>------------------<BR>"Remain flexible like a reed, as opposed to an oak which can snap in the wind"<p>[This message has been edited by Resilient (edited August 06, 2001).]
|
|
|
|
|
Joined: Jan 1999
Posts: 1,637
Member
|
|
Member
Joined: Jan 1999
Posts: 1,637 |
This "Code Red" worm ONLY affects servers. If you are a home PC user and your PC is not a server running Microsoft Internet Information Server or other server software, you are not at risk.<P>A bigger risk, however, is another virus circulating. This one takes the form of an e-mail with a file attachment. This e-mail will be about 212k in size. You may or may not recognize the sender. The file attachment will have a familiar extension like .xls, .doc, or something like that, BUT it will also have an extra .lnk; so the file name will be something like "spreadsheet.doc.lnk" This is a virus that will propagate through your entire address book. Do NOT open file attachments you are not expecting, or that have additional extensions.
|
|
|
|
|
Joined: Jun 2000
Posts: 46
Member
|
|
Member
Joined: Jun 2000
Posts: 46 |
I recieved this virus about a week ago. It spreads rapidly through your e-mail. But the tricky part is it can come from someone you know that also has it withoiut knowing it. I recieved mine from my sister.
|
|
|
|
|
Joined: Jun 2000
Posts: 8,069
Member
|
|
Member
Joined: Jun 2000
Posts: 8,069 |
Thanks D & C,<P>On Saturday we were initally told it only affected servers or PCs with Microsoft Internet Information Server or other server software/agents.<P>However, the most current Intel info (9:00a PST) states this has changed, and points to all PCs regardless if server software/agents reside on the box or not.<P>I will keep you all updated.<P>Jo
|
|
|
|
|
Joined: Jun 2001
Posts: 1,697
Member
|
|
Member
Joined: Jun 2001
Posts: 1,697 |
We were sent the email attachment ones, my H was not aware of a problem and it was addressed from payroll.<P>He runs norton on the desktop at work and it would not allow him to open the file. <P>Note to self, make sure I update norton often.<BR>
|
|
|
|
|
Joined: Jul 2001
Posts: 695
Member
|
|
Member
Joined: Jul 2001
Posts: 695 |
Is this the one that they are refering to at intel?<P>Code Red v3???<BR> <A HREF="http://www.sarc.com/avcenter/venc/data/codered.v3.html" TARGET=_blank>http://www.sarc.com/avcenter/venc/data/codered.v3.html</A> <P>Also check the Norton Site once a week.. Faithfully do that and you should know what virus' are out there and if there are fixes for them yet.<BR> <A HREF="http://www.sarc.com" TARGET=_blank>http://www.sarc.com</A> <P><BR>------------------<BR>Semper,<P>Husband2You<BR>*****<BR>Don't make me promises <BR>Baby you never did know how to keep them well <BR>I've had the rest of you <BR>Now I want the best of you <BR>It's time for show and tell<P>'All or Nothing' O-Town<p>[This message has been edited by Husband2you (edited August 06, 2001).]
|
|
|
|
|
Joined: May 2001
Posts: 1,137
Member
|
|
Member
Joined: May 2001
Posts: 1,137 |
In addition to the above named file extensions, beware of extensions vbs (Visual Basic Script) and vb (Visual Basic). These can can be "add-ins" to .xls (Excel), .pps (PowerPoint), .doc (MS Word) and .eml (Outlook mail), in addition to Windows-compatible database extensions.<P>If you do not recognize the sender, and a file contains a name such as file.xls.vbs, do not open the file. You may, as pointed out above, forward to <A HREF="http://www.sarc.com" TARGET=_blank>www.sarc.com</A> (Symantec Anti-virus) and they will analyze it. Additionally, there is a ton of information about virii in general.<P>Update your anti-virus software frequently, and do system backups frequently.<P>Godspeed,<BR>STL
|
|
|
|
|
Joined: Jan 1999
Posts: 1,637
Member
|
|
Member
Joined: Jan 1999
Posts: 1,637 |
I think the confusion is that they are two separate viruses. The Code Red virus attacks servers only. The other one is W32.Sircam.Worm, and that one MOST OF US are at risk for, especially if we post on messageboards that have our e-mail addresses.<P>Read about the one that can affect YOU at:<BR> <A HREF="http://www.symantec.com/avcenter/venc/data/w32.sircam.worm@mm.html" TARGET=_blank>http://www.symantec.com/avcenter/venc/data/w32.sircam.worm@mm.html</A>
|
|
|
|
|
Joined: Apr 2001
Posts: 282
Member
|
|
Member
Joined: Apr 2001
Posts: 282 |
Resilient:<P>Like below for site with information...there is a patch to download.<P>Taken from information on Microsoft site:<P><B>Summary:</B> The Code Red Worm and mutations of the worm pose a continued and serious threat to Internet users. Immediate action is required to combat this threat. Users who have deployed software that is vulnerable to the worm (Microsoft IIS Versions 4.0 and 5.0) must install, if they have not done so already, a vital security patch.<P><B>Who Must Act?</B> Every organization or person who has Windows NT or Windows 2000 systems AND the IIS web server software may be vulnerable. IIS is installed automatically for many applications. If you are not certain, follow the instructions to determine whether you are running IIS 4.0 or 5.0. If you are using Windows 95, Windows 98, Windows Me, Windows XP RC1 or later, or Windows .NET Server build 3505 or later, there is no action that you need to take in response to this alert.<P><A HREF="http://microsoft.com/technet/treeview/default.asp?url=/technet/itsolutions/security/topics/codealrt.asp" TARGET=_blank>Microsoft Tech Net Code Red Worm</A><P><p>[This message has been edited by Hurtwife (edited August 07, 2001).]
|
|
|
|
0 members (),
239
guests, and
3
robots. |
|
Key:
Admin,
Global Mod,
Mod
|
|
|
Forums67
Topics133,659
Posts2,323,615
Members72,372
| |
Most Online9,682 May 13th, 2026
|
|
|
|