Forum Home
Press F1
 
Thread ID: 22282 2002-07-16 06:21:00 The irony of Anti-Virus Erin Salmon (626) Press F1
Post ID Timestamp Content User
63004 2002-07-16 06:21:00 Hi all,

I got the W32.Frethrem.K@mm worm this afternoon... Having updated my virus definitions 7 hours prior to recieving it I though I was safe... Not so!

To make the matter more embarrassing, Norton Antivirus was scanning and sending out copies of this virus to the addresses in my address book.... For something which is costing $50 a year to protect me from viruses, you think it'd be a little bit careful about distributing them at free will... Fortunately I realised what was going on before Norton did, and unplugged myself :)

For those not yet affected, avoid anything with "Re: your password" in the subject line.

:)

Erin
Erin Salmon (626)
63005 2002-07-16 06:39:00 If Microsoft can do it, why can't Symantec? Graham L (2)
63006 2002-07-16 07:00:00 Here are some generic questions for everyone (on top of having an anti-virus software)... (this is not specifically asked to address the W32.Frethem.K@mm virus because it would have activated when you double click to open the email. But at least it would have provided a couple of defense lines before it happened).

1. Did you have preview on? If yes turn it OFF! I don't know how many times I have to tell people this but they keep insisting on using the F*#^@%%@&#^#&^#*& Outlook feature (assuming you are using Outlook of course... ignore my ranting if you're a good boy or girl).

2. If you did not have preview on, did you double click on the attachment? If so, then bend over and spank yeself. You know you've been a baaaaaaaad boy (or girl)...

Now, re the W32.Frethem.K@mm virus. Did you patch your Outlook program? Failing to patch these pesky program is like flying a plane with a known defect. Sooner or later it will get ya, so keep your email and browser updated (especially if you are using MS products).

According to Microsoft Security Bulletin (MS01-020) ,

"Incorrect MIME Header Can Cause IE to Execute E-mail Attachment
Originally posted: March 29, 2001"

Internet Explorer 5 service pack 2 was supposed to have addressed this problem.


I know most of us have anti-virus running but to use a really bad analogy... just because you're using condoms doesn't mean you won't catch STD.... You still need to practise sensible and safe sex.

<puff puff puff puff... ranting over...>
nzStan (440)
63007 2002-07-16 08:34:00 Well said Stan,

With the very tricky viruses out there (which some incidently disable virus scanners) I practice "Safe Email Practice" - that is, if I don't know who the sender is of the email, it gets dispatched to the rubbish. NO EXCEPTIONS - and if the subject line looks weird, it goes as well
Baldy (26)
63008 2002-07-16 08:34:00 Makes me damn glad I don't use IE or OE... or Nortons for that matter..

ducks down for the flame war
Elwin Way (229)
63009 2002-07-16 08:38:00 How do you "patch" Outlook Express? Linda H (468)
63010 2002-07-16 09:00:00 OE is patched when you download and run lots of little programs from Microsoft called 'Critical updates'.

The updates are supposed to plug holes that come free with OE, but in a lot of cases, end up creating new ones.

The best patch you can get for Outlook Express is one found on the PCWorld magazine called 'Eudora'.

:D
Elwin Way (229)
63011 2002-07-16 09:27:00 Hi,

I do not use preview - I'm not a complete novice!
I did open the email, but I did not open the attachment. In fact, I opened it without hesitation because the subject actually made sense with regard to the originator of the message.

I haven't patched OE recently, I get sick of M$ not doing the job properly the first time round and use Linux wherever I can...

Graham, what do you mean "Microsoft can do it"? Have they achieved something with reference to secutiry??? Let's hear about it!

I find it apalling that there are so many people out there dedicated to wreaking havoc on the world of innocent computer users that you are not safe for more than an hour after downloading the bloody virus updates! What kind of retards constitute the human race? I'm considering installing a Linux based webserver/Mailserver to complement a Linux based PC. I was also thinking of getting a bit of juice out of a few old 486 33-100mhz machines using LTSP... Has anyone ever used this before? I'll create another thread! :)

And don't get me started on spam!

GRRR

Erin
Erin Salmon (626)
63012 2002-07-16 09:40:00 >I find it apalling that there are so many people out there dedicated
>to wreaking havoc on the world of innocent computer users that you
>are not safe for more than an hour after downloading the bloody virus
>updates! What kind of retards constitute the human race?

The same retards that allow this to happen? Let's face it, its good news. 98% of virusii are targeted at Microsoft products. There are far better products out there. You are amoungst a group of people who are sick and tired of having to put up with this sort of thing, so are leaning torwards alternative software and even GPL operating systems.

The result is that more people using alternative software means better (and more availability of) software.

The end is nigh! (well for M$ anyway)
Elwin Way (229)
63013 2002-07-16 09:59:00 Symantec has an email advisory which you can subscribe to that goes out when new viruses appear.
I received the alert at work today and ran live update which updated me to 15 July definitions. These defintions were not available last night (when most business servers update).
Live update is updated weekly, unless a new category 3 virus comes out.
You can use intelligent updater, if you are aware of a new virus and the definitions are not available via live update.
Marty2001 (421)
1 2 3