Author
|
Topic: odd e-mails
|
MLariviere Moderator Posts: 2039 From: Biddeford,Me.USA Registered: May 99
|
posted 11-27-2001 09:00 PM
I have received 7 e-mails in the last couple of days. They are all RE: no subject,from unknown people and all are with a DOC.pif with 28k. I have dumped them all. Anyone else getting these? I'm betting on a virus attack.
IP: Logged |
IIGood Moderator Posts: 1698 From: Arnold, MD, USA Registered: Jun 99
|
posted 11-27-2001 09:13 PM
Strange. I think it is too...I got one the other day from a member on one of my lists. Seems a few other list members received it from him too. One of the members was able to avoid the virus due to their Antivirus software. ------------------ Frank S.----MCA Member 40390 '99 Mustang coupe '77 Ghia--"II Good" '76 Cobra--project
IP: Logged |
Stangfan Gearhead Posts: 350 From: Victoria, British Columbia, Canada Registered: Sep 2000
|
posted 11-27-2001 10:04 PM
If in doubt - DELETE!!!! Better to be safe than sorry these days.------------------ Steve - M&M Member #690 '90 Limited Edition Mustang LX 5.0 Convertible '67 Mustang Coupe Member: Vancouver Island Mustangs Association; 1990 Limited Edition Mustang Registry Steve's 1990 Limited Edition Convertible Website
IP: Logged |
UnbridledFury Gearhead Posts: 1074 From: Tacoma, WA Registered: Jun 99
|
posted 11-27-2001 10:27 PM
New variation of an older virus. If you have a virus protection program (and you really should), keep your virus definitions up to date. Insure it scans every file downloaded from the internet as well as email attachments. If your program does not support these features, time to get your program updated.These new viruses are pretty nasty. Unless you are expecting an attachment, DELETE IT - no matter who it is from. Better to be safe than sorry. ------------------ Motor Safe! George 1975 Mustang II 1994 Ranger XLT 4X4 (175,000+ miles) 2000 Windstar Unbridled Fury Productions http://www.pierce-county-mustang-club.org/ M&M Member #47 September 11, 2001 - A day we shall never forget US Army, Retired
IP: Logged |
Big D Gearhead Posts: 2144 From: WELLS, NEVADA Registered: Nov 2000
|
posted 11-27-2001 10:35 PM
I have Norton Antivirus with my new computer and it seems to works much better than McAvee, which I had on my old computer...I update Norton Weekly... I get a HAHAHA once in a while. Or emails from freinds that make no sense & have a virus attached... Norton has always caught them... I asked my friends about the emaials and they didn't send it the virus did... Their system was infected... ------------------ Don '66 Brilliant Blue Fastback 302 with 5 speed We Will Never Forget Keep The Faith America [This message has been edited by Big D (edited 11-27-2001).]
IP: Logged |
67 Fastback Gearhead Posts: 632 From: Beaverton, Oregon Registered: Aug 99
|
posted 11-27-2001 11:35 PM
Funny you should mention that. I received 4 today... all with RE: no subject. I never receive spam at this addy (well, only or two a month). My software stops the downloading of any attachments until I choose to give permission (I never do). Seems someone either got infested unawaringly on the list or someone else got a list of email addy's. ------------------ Jerry www.67Fastback.com "The danger in communication is the illusion that it has been accomplished." G.B. Shaw
IP: Logged |
T5owner Gearhead Posts: 388 From: Germany Registered: Apr 2000
|
posted 11-28-2001 01:11 AM
It is the .badtrans virus. Check out www.symantec.com for the info on how to remove it.
IP: Logged |
7DMACH1 Gearhead Posts: 654 From: PHILA. PA. Registered: Feb 2001
|
posted 11-28-2001 01:42 AM
I got it. I just got done removing it. What a pain. 130am and I just got done. Even if you don't open it you get it. It comes in via Microsoft outlook. If you don't have the newest version of outlook like i didn't you get it. To get rid of it you must go in to the registry{which you are never supposed to do}. RAY------------------ RAY . FLY THE FLAG, SHOW THE WORLD WE ARE PROUD AMERICANS!70 MACH 1 351C NOW 408 STROKER 4SPD. 86 MERCURY CAPRI 5.0 RUNS 12.86 @107 1.65 60 ft. 2001 LINCOLN LS V8 1997 MUSTANG SHOW THE WORLD, LIGHT A CANDLE. http://www.geocities.com/slariviere/7DMach1.html
IP: Logged |
Fastymz Gearhead Posts: 1515 From: Reno Nv Registered: Apr 2001
|
posted 11-28-2001 01:43 AM
I got one that had a RE: but no address from sender.And no file size posted. I delete all mail I not sure of. SCOOP.------------------ 65 Coupe with a 351w, RPM intake,carter625,shorty 1-5/8 headers,2.5 exhaust,Flowmasters,stock C4,peg leg 8" 2:80,Big Boss 429 hood scoop,Cragers SS,Black Suede finish. MEM#1240 https://mustangsandmore.com/ubb/Fastymz.html
IP: Logged |
Mike65 Gearhead Posts: 1115 From: Columbia,NJ, USA. 65 Fastback, 69 Coupe MCA #-04549 Registered: Dec 2000
|
posted 11-28-2001 11:19 AM
Mike, My wife & I recieved an e-mail from someone we never heard of with a resume attached very strange.------------------ Mike & Robin 65 Mustang Fastback 69 Mustang Coupe 87 LTD CV 96 Ranger Extd Cab PU 99 Explorer Sport M&M #- 890 MCA #- 04549
IP: Logged |
SteveLaRiviere Administrator Posts: 18672 From: Saco, Maine MCA # 47773 Registered: May 99
|
posted 11-28-2001 08:40 PM
Always delete if you have the slightest doubt, and NEVER open .exe, .doc or .txt files!------------------ '70 Mustang Mach 1 M code 351C 4V/FMX/3.25 open '72 Mustang Sprint Coupe 351C 4V/FMX/4.30 Trac Lok '94 F-150 XL 5.8L/E4OD/3.55 Limited Slip '97 Probe GTS 2.5L DOHC My Photo Page Christmas shopping? Why not use the Mustangsandmore.com Bookstore?
IP: Logged |
MLariviere Moderator Posts: 2039 From: Biddeford,Me.USA Registered: May 99
|
posted 11-28-2001 09:07 PM
I just got another from Shanghi. Same MO.
IP: Logged |
MLariviere Moderator Posts: 2039 From: Biddeford,Me.USA Registered: May 99
|
posted 11-28-2001 10:19 PM
Thanks for the info T5owner. I went and checked it out,and that is what it is. They come with titles like New-Napster-Site,News.doc and scr. I went into safemode like they said and ran my antivirus but found nothing. I also looked in the registry and didn't see anything for a value set except my default. You have to look for a Kernel32 or kernel32.exe. I think{hope} I am clean. I never opened these emails up. Am I still infected with them?
IP: Logged |
T5owner Gearhead Posts: 388 From: Germany Registered: Apr 2000
|
posted 11-29-2001 12:53 AM
Yes, seems it really enters Outlook as mentioned above. Got it as well. My Norton caught 2 infected temporary files, but upon downloading new mail with a preview it starts working. Close your preview window for the moment, reduce download capacity to 30kB. Most of mails with attachmenta re 41kb. Apparently it sends out your mail address to any service company as well, which subscribes you to a lot of services. Solution is apparently indeed to get the latest Outlook version, if you are using it. A friend uses Zone Alarm as well, and it caught more than his NAV2001. Zone Alarm is usually free.
IP: Logged |
Greenstang Gearhead Posts: 752 From: its all a fog.. Registered: May 2001
|
posted 11-29-2001 01:34 PM
It's a good reason to use netscape's mail client instead of outlook fwiw, it hit 5 of the 8 email lists I am on...------------------ Marcus? Beating the competition is where the thrill is and that pride you get. It's an ego stroke ? to make no mistake." -Mark Martin
IP: Logged |
mustangs68 Moderator Posts: 12868 From: Hampton,Virginia,USA 1968 Fastback & 1995 Vert MCA#39406 M&M #12 Registered: May 99
|
posted 11-29-2001 06:31 PM
I have gotten a bunch of those RE: e-mails myself.I never use OutLook cause its a spawing ground for virus.sam
IP: Logged |
SteveLaRiviere Administrator Posts: 18672 From: Saco, Maine MCA # 47773 Registered: May 99
|
posted 11-29-2001 07:30 PM
I've been getting them, too.I don't use Outlook, either. Outlook = Look Out! ------------------ '70 Mustang Mach 1 M code 351C 4V/FMX/3.25 open '72 Mustang Sprint Coupe 351C 4V/FMX/4.30 Trac Lok '94 F-150 XL 5.8L/E4OD/3.55 Limited Slip '97 Probe GTS 2.5L DOHC My Photo Page Christmas shopping? Why not use the Mustangsandmore.com Bookstore?
IP: Logged |
MLariviere Moderator Posts: 2039 From: Biddeford,Me.USA Registered: May 99
|
posted 11-29-2001 09:32 PM
I never use outlook either. I went into the registry and didn't find the kernel.exe it installs. What gives?
IP: Logged |
67 Fastback Gearhead Posts: 632 From: Beaverton, Oregon Registered: Aug 99
|
posted 11-29-2001 11:22 PM
Mike, Whether you opened them or not (and resultant infection) depends on what email client you use and the settings you use as well. For all: http://zonealarm.com/ This free software is fully recommended and has saved a HUGE set of hassles for me in many circumstances. I heartily recommend it. ------------------ Jerry www.67Fastback.com "The danger in communication is the illusion that it has been accomplished." G.B. Shaw
IP: Logged |
MLariviere Moderator Posts: 2039 From: Biddeford,Me.USA Registered: May 99
|
posted 11-30-2001 07:58 AM
Thanks,Jerry! I'll go and get it. Will it show me if I have it?
IP: Logged |
Greenstang Gearhead Posts: 752 From: its all a fog.. Registered: May 2001
|
posted 11-30-2001 11:36 AM
Zonealarm works too well for me I used it for a year before I set up the firewall @ my apartment. It is a must for anyone with a broadband connection without a firewall. It will save your butt more times than you will ever imagine. just my 2 cents,------------------ Marcus? Beating the competition is where the thrill is and that pride you get. It's an ego stroke ? to make no mistake." -Mark Martin
IP: Logged |