New Virus Alert Reminder. variant

  JIM 07:46 20 Aug 2003

Virus: W32.Welchia.Worm

A w32.Blaster worm virus variant was spotted for the first time early this morning (19/08/03).

This virus uses the same vulnerability (see second link below) as the Blaster worm but also contains code to exploit an earlier vulnerability (see third link below).

A user who has installed all of the Microsoft Critical updates in line with the 2003 security bulletins will not be affected by the Virus

If either of the updates has not been applied they must both be installed.

Please follow the advise on Microsoft's web site to ensure these files are present on the PC.

If your computer becomes infected with the virus Please follow the steps below: (Even if you don't have the virus, follow the links to the Microsoft Patches and apply them to secure against future infection)

1. Start PC and log on to Internet

2. If you get the message "Windows Will be Shutdown in 60 seconds"

Click START then click RUN and then type in the RUN box "shutdown -a" (without the quotes) and click OK

This should stop the countdown.

Next you need to remove the virus - See Link below

The important thing is to get the patch from Microsoft or you will keep on getting the virus. - See the links below:

Click herefor the Symantec removal tool

Click here For the Microsoft patch (Bulletin MS03-026)

Click here For The Microsoft patch (Bulletin MS03-007)

  JIM 15:43 20 Aug 2003

Virus: [email protected]

[email protected] is a mass-mailing, network-aware worm that sends itself to all the email addresses it finds in the files with the following extensions:

.dbx-.eml--.hlp -.htm --.html --.mht --.wab -.txt

The worm uses its own SMTP email engine to propagate and will attempt to create a copy of itself on accessible network shares if your computer is on a network.

The email message has the following characteristics:

From: Spoofed address (which means that the sender in the "From" field is most likely not the real sender).
The worm may use the address [email protected] as the sender.

Subject: Re: Details -Re: Approved --Re: Re: My details

Re: Thank you! --Re: That movie ---Re: Wicked screensaver ---Re: Your application --Thank you!

Your details


See the attached file for details
Please see the attached file for details.
- If you receive this mail delete it immediately.

We recommend that you always update your Virus scanner regularly.

For more info click the link below:-

Click here for more information.

  Sir Radfordin 16:02 20 Aug 2003

Messagelabs believe 1 in every 67 emails was infected!!!

click here

This thread is now locked and can not be replied to.

Elsewhere on IDG sites

HTC U12 Plus review: Hands-on

Best Android emulators for Mac

TV & Streaming : comment regarder Roland Garros ?