DSM: Virus can enter without attachments!!!

From: Liz Reid&Errol Strelnikoff (lizanderrol@home.com)
Date: Thu Nov 29 2001 - 02:25:33 EST


I have copied this post I received from another list. This worm can
infect your computer without opening an attachment if you are using
Outlook or Outlook Express. Details on how to get rid of it are below.
Liz

> The latest threat -- not a virus but a worm called W32Badtrans-B --
does
> not come as an attachment which must be clicked, but is more stealthy,
> which is why many people received it and passed it on, and may still
be
> infected, without knowing it.
>
> If the recipient is a user of Microsoft Outlook or Outlook Express,
simply
> allowing the message to display in the preview pane will activate the
worm
> and install it on your computer.
>
> This worm goes beyond the previously believed safe-computing dictum
that
> ordinary email cannot contain viruses, trojans or worms. It now can,
and
> Microsoft if to blame because of the huge security holes in its
operating
> systems and software.
>
> Here (see below) is a Web link to some information direct from a good
> source on the Web. This tells you how to remove the worm without using
> anti-virus software.
>
> In addition, standard anti-virus programmes like Norton's and
McAffee's,
> properly updated with the latest virus definitions, can stop and
remove
> Badtrans. (I've already cleared a couple of clients' computers.)
>
> Anyone who WAS infected for a period of time before they removed the
> Badtrans worm may want to consider their data compromised. Badtrans
was not
> a destructive agent, but a spy: it sets up a keystroke logger that
> periodically sends all your keystrokes to some other location. This
means
> that your passwords and any financial transactions that involve
account
> numbers or PINs may be compromised. The worm starts sending logged
> keystrokes immediately and regularly, without your knowing it or being
able
> to easily detect it. You should consider changing any of these which
you
> consider critical.
>
> There are also several other new viruses out in the last few days,
which
> are more destructive of data on your computer.
>
> If your computer is behind a firewall, the firewall will stop most
viruses,
> but trojans like the W32Badtrans may slip through.
>
> Always practice safe Internetting by either using a firewall or an
> anti-virus programme. (Even if you use a Mac!)
>

===========

If you wish to be removed from this mailing list, please send an email TO
majordomo@sudval.org (do NOT reply to the mailing list) with the following
phrase in the BODY (not the subject) of the message, replacing
"email@host.dom" with the email address that you subscribed under:

unsubscribe discuss-sudbury-model email@host.dom

If you are interested in the subject, but the volume of mail sent is too much,
you may wish to consider unsubscribing from this list and subscribing to
"dsm-digest"

This mailing list is archived at http://www.sudval.org/~sdg/archives



This archive was generated by hypermail 2.0.0 : Wed Mar 27 2002 - 19:39:48 EST