New Virus Alert Reminder.

  JIM 07:41 20 Aug 2003

Virus: W32.Welchia.Worm

A w32.Blaster worm virus variant was spotted for the first time early this morning (19/08/03).

This virus uses the same vulnerability (see second link below) as the Blaster worm but also contains code to exploit an earlier vulnerability (see third link below).

A user who has installed all of the Microsoft Critical updates in line with the 2003 security bulletins will not be affected by the Virus

If either of the updates has not been applied they must both be installed.

Please follow the advise on Microsoft's web site to ensure these files are present on the PC.

If your computer becomes infected with the virus Please follow the steps below: (Even if you don't have the virus, follow the links to the Microsoft Patches and apply them to secure against future infection)

1. Start PC and log on to Internet

2. If you get the message "Windows Will be Shutdown in 60 seconds"

Click START then click RUN and then type in the RUN box "shutdown -a" (without the quotes) and click OK

This should stop the countdown.

Next you need to remove the virus - See Link below

The important thing is to get the patch from Microsoft or you will keep on getting the virus. - See the links below:

Click herefor the Symantec removal tool

Click here For the Microsoft patch (Bulletin MS03-026)

Click here For The Microsoft patch (Bulletin MS03-007)

  Jester2K II 08:20 20 Aug 2003

Ironically this one tries to install the patch for you!

click here

click here

Still no such thing as a good virus...

  JIM 08:58 20 Aug 2003


  mammak 11:13 20 Aug 2003

Thank,s for that patche,s installed these virus,s are doing there rounds lately eh!! thanks again Mammak.

  JIM 15:40 20 Aug 2003

Virus: [email protected]

[email protected] is a mass-mailing, network-aware worm that sends itself to all the email addresses it finds in the files with the following extensions:









The worm uses its own SMTP email engine to propagate and will attempt to create a copy of itself on accessible network shares if your computer is on a network.

The email message has the following characteristics:

From: Spoofed address (which means that the sender in the "From" field is most likely not the real sender).
The worm may use the address [email protected] as the sender.


Re: Details

Re: Approved

Re: Re: My details

Re: Thank you!

Re: That movie

Re: Wicked screensaver

Re: Your application

Thank you!

Your details


See the attached file for details
Please see the attached file for details.
- If you receive this mail delete it immediately.

We recommend that you always update your Virus scanner regularly.

For more info click the link below:-

Click here for more information.

  suzie005 15:45 20 Aug 2003

the last one is a real pain.i got the mail last nite and thought it was from sumbody.DIDN'T open the attachment but getting constant emails from various people with the same heading.just says to read the attachment even tho i only got one with the original mail.i've resorted to webmail cos i've had around 20 already today.

  JIM 18:16 20 Aug 2003


  JIM 20:22 20 Aug 2003

UP'S again.

This thread is now locked and can not be replied to.

Elsewhere on IDG sites

Samsung Galaxy S9 review

ManvsMachine and other artists put Apple's iMac Pro to the test using powerful rendering tools

What to expect at Apple's 27 March education event

Comment filmer l’écran d’un iPhone ?