Virus Outbreak
jdb_educator for CVN
Recently there has been what appears to be a major outbreak in the Cybertown area of the Klez Virus.
"The new version of the Klez worm has been found from various parts of Asia on April 17th, 2002. A week after its discovery Klez.H is still globally spread. This worm, like its previous versions sends e-mail messages with randomly named attachments and subject fields. "(F-Secure/datafellows)
Other than infected posts (118kb graphic) received and quarantined by the CVN Managing Editor, this post was found on one of the message boards:
From SomeStranger's post:from Friday, April 26 th : (edited for grammar/spelling etc.) From: SomeStranger,Subject: KLEZ Warning
"Please all! Check this new virus I have caught. [data fellows virus explanation] I'm very disappointed and had to reinstall the system. don't trust to Microsoft that they solved all the problems!!!!! (I think this is not a personal bothering and under CT constitution :))) I had W2K and IE6 and caught it anyway!! All updates were helpless!! So be careful!!!!!"
Thank you for your attendance, SomeStranger (Events ND)
We found it on the Games show message board, for which CVN thanks SomeStranger for posting. It also shows that everyone needs to be aware of the dangers of this virus series. Now even trusted names are not safe.
Operating systems and browsers are not protected from viruses. Certainly fewer affect Linnux and some other systems at the current time. However, you do have to have virus software protection like Norton, MacAfee, F-Secure etc. One of the scary things for us at CVN, is that one of our e-mail contact groups at yahoo started receiving the Klez virus. We shut down attachments, for that group. A more recent send came from Wovencroft, who tells us:
LOL Yeah klez is on the loose, Yahoogroups getting one or two a day. Lots from others too. I wrote [email protected] about one? He was kind enough to reply. They get (are you ready?) THREE HUNDRED THOUSAND a day of klez! [editor's note: We are glad it isn't our server!]. LOL But they filter em out and trash em. sheeeesh I wish AOL would get their heads out of the sand and do the same!
Thanks for the heads up though!
Wovencroft
F-Secure Virus Descriptions
http://www.datafellows.com/v-descs/klez_h.shtml
Norton
http://www.sarc.com/avcenter/venc/data/[email protected]
A Best practice to think about: Configure your email server to block or remove email that contains file attachments that arecommonly used to spread viruses, such as .vbs, .bat, .exe, .pif and .scr files.
(from Norton)
The following is just a little bit of awareness from data fellows. Norton and other ant-virus sites will have similar information.
NAME: Klez.H
ALIAS: I-Worm.Klez.H, W32/Klez.H, Klez.K (Messagelabs), Klez.G (Trend)
THIS VIRUS IS RANKED AS LEVEL 2 ALERT UNDER
F-SECURE RADAR.
For more information, see:
http://www.F-Secure.com/products/radar/
The Klez.H variant it quite close to Klez.E, F and G worm
variants. The descripions of Klez.E, F and G variants can be
found here:
Click on the following for fsecure's visual of information on the Klez virus.
http://www.europe.f-secure.com/v-descs/klez.shtml
