Graal Forums  

Go Back   Graal Forums > PlayerWorlds > Bomy Island Main Forum
FAQ Members List Calendar Today's Posts

Reply
 
Thread Tools Search this Thread Display Modes
  #1  
Old 05-28-2002, 03:36 AM
GodSpeed GodSpeed is offline
Registered User
Join Date: May 2002
Location: Toronto
Posts: 221
GodSpeed is on a distinguished road
Exclamation The truth about the Klez Virus

If you are running Outlook Express like %90 of the others in the world (and me) you are vulnerable to the Klez virus/worm.

When you read it it attempts to automatically execute the payload (actual worm)which would send messages to people in your address book with random subjects based on other mail you have in your inbox or other folders... it will also attach a file from your own computer (which could be private if you are really unlucky) to probably convince the person receiving it to open it OR just as a file for the worm/virus to piggyback on.

Norton detects and stops the virus with the latest definition update. So does Mcaffee, however I am unsure if it actually prevents the file from executing.

If you have antivirus software please get the latest update and scan your drive and if you do not even have any antivirus software, shame on you!
__________________
Reply With Quote
  #2  
Old 05-28-2002, 03:39 AM
Metal-Slug Metal-Slug is offline
!_!
Metal-Slug's Avatar
Join Date: Jun 2001
Posts: 2,421
Metal-Slug is on a distinguished road
dont use outlook
__________________

Er1c2 loaded the local ban info of Loriel-2002 RC
Reply With Quote
  #3  
Old 05-28-2002, 03:40 AM
_0AfTeRsHoCk0_ _0AfTeRsHoCk0_ is offline
Banned
_0AfTeRsHoCk0_'s Avatar
Join Date: Jun 2001
Location: Alberta, Canada
Posts: 8,260
_0AfTeRsHoCk0_ is on a distinguished road
Send a message via ICQ to _0AfTeRsHoCk0_
Quote:
Originally posted by Metal-Slug
dont use outlook
But it's the best
Reply With Quote
  #4  
Old 05-28-2002, 03:56 AM
Krakken Krakken is offline
random
Krakken's Avatar
Join Date: Nov 2001
Location: Englishland
Posts: 1,803
Krakken is on a distinguished road
Send a message via ICQ to Krakken Send a message via AIM to Krakken Send a message via MSN to Krakken
McAfee users will be protected from any damage from the file but the file still executes (sends out e-mails) before it is deleted.
__________________

01001000011000010110100001100001
00101100001000000111100101101111
01110101001001110111001001100101
00100000011000010010000001100111
01100101011001010110101100100001
Reply With Quote
  #5  
Old 05-28-2002, 04:02 AM
Krakken Krakken is offline
random
Krakken's Avatar
Join Date: Nov 2001
Location: Englishland
Posts: 1,803
Krakken is on a distinguished road
Send a message via ICQ to Krakken Send a message via AIM to Krakken Send a message via MSN to Krakken
Oh and I advise any McAfee users to visit the update website and download the latest DAT files to ensure MAXIMUM protection.
http://download.mcafee.com/updates/updates.asp

Sorry about not being able to help anyone else, I only use McAfee.
__________________

01001000011000010110100001100001
00101100001000000111100101101111
01110101001001110111001001100101
00100000011000010010000001100111
01100101011001010110101100100001
Reply With Quote
  #6  
Old 05-28-2002, 04:07 AM
Minoc Minoc is offline
Registered User
Minoc's Avatar
Join Date: Sep 2001
Posts: 4,385
Minoc has much to be proud ofMinoc has much to be proud ofMinoc has much to be proud ofMinoc has much to be proud ofMinoc has much to be proud ofMinoc has much to be proud of
Netscape <3
__________________
-
Reply With Quote
  #7  
Old 05-28-2002, 04:41 AM
Admins Admins is offline
Graal Administration
Join Date: Jan 2000
Location: Admins
Posts: 11,693
Admins has much to be proud ofAdmins has much to be proud ofAdmins has much to be proud ofAdmins has much to be proud ofAdmins has much to be proud ofAdmins has much to be proud of
Outlook must be deleted if you want to do serious stuff on your computer, it's a trojan made by MS. There are far better email programs.
Reply With Quote
  #8  
Old 05-28-2002, 04:43 AM
iniquitus iniquitus is offline
Oldbie
Join Date: Dec 2001
Location: Maine
Posts: 606
iniquitus is on a distinguished road
Send a message via AIM to iniquitus
Quote:
Originally posted by Stefan
Outlook must be deleted if you want to do serious stuff on your computer, it's a trojan made by MS. There are far better email programs.


I wub Stefan

Urizen
__________________
What am I still doing here?
Reply With Quote
  #9  
Old 05-28-2002, 04:43 AM
_0AfTeRsHoCk0_ _0AfTeRsHoCk0_ is offline
Banned
_0AfTeRsHoCk0_'s Avatar
Join Date: Jun 2001
Location: Alberta, Canada
Posts: 8,260
_0AfTeRsHoCk0_ is on a distinguished road
Send a message via ICQ to _0AfTeRsHoCk0_
Quote:
Originally posted by Stefan
Outlook must be deleted if you want to do serious stuff on your computer, it's a trojan made by MS. There are far better email programs.
Lots of ISP's use outlook express. I use my ISP e-mail for Graal, so if I delete outlook express, how do I access the e-mail?
Reply With Quote
  #10  
Old 05-28-2002, 04:45 AM
Discharge Discharge is offline
Role-playing Overseer
Discharge's Avatar
Join Date: Jan 2002
Location: Léon
Posts: 1,464
Discharge is on a distinguished road
Send a message via Yahoo to Discharge
My cable service requires me to use it in order to get mail.
__________________


Discharge : RETIRED
2001-2005
Reply With Quote
  #11  
Old 05-28-2002, 04:47 AM
Python523 Python523 is offline
Banned
Join Date: Aug 2001
Location: Illinois
Posts: 3,498
Python523 is on a distinguished road
I only use outlook because I have a choice between that and website based mail which I think is horrible =(
Reply With Quote
  #12  
Old 05-28-2002, 04:47 AM
Admins Admins is offline
Graal Administration
Join Date: Jan 2000
Location: Admins
Posts: 11,693
Admins has much to be proud ofAdmins has much to be proud ofAdmins has much to be proud ofAdmins has much to be proud ofAdmins has much to be proud ofAdmins has much to be proud of
E-mail server allow connections with pop3 or imap4, you really don't need a special email reader.
Reply With Quote
  #13  
Old 05-28-2002, 05:00 AM
Milkdude99 Milkdude99 is offline
Truckin Up
Milkdude99's Avatar
Join Date: Jun 2001
Location: Central Florida
Posts: 3,390
Milkdude99 is an unknown quantity at this point
Send a message via ICQ to Milkdude99
I use Outlook and OutLook Express , yes I use both of them , I also use Norton System Works professional 2002 which scans all incomming email and stops it cold and quaintines the virus before it is hardly downloaded , I also have it set to scan all outgoing email . This combined with the Norton Internet Sercurity 2002 will not allow an email to be sent out without my knowedge and will block any attempt to.
__________________

Moon God
Graal.net

---------- Home---------

Reply With Quote
  #14  
Old 05-28-2002, 05:18 AM
ZanderX ZanderX is offline
what up
Join Date: Feb 2001
Posts: 18,614
ZanderX is a glorious beacon of lightZanderX is a glorious beacon of lightZanderX is a glorious beacon of light
Outlook is a lot more secure than Outlook Express.
Reply With Quote
  #15  
Old 05-28-2002, 05:20 AM
iniquitus iniquitus is offline
Oldbie
Join Date: Dec 2001
Location: Maine
Posts: 606
iniquitus is on a distinguished road
Send a message via AIM to iniquitus
Quote:
Originally posted by Milkdude99
I use Outlook and OutLook Express , yes I use both of them , I also use Norton System Works professional 2002 which scans all incomming email and stops it cold and quaintines the virus before it is hardly downloaded , I also have it set to scan all outgoing email . This combined with the Norton Internet Sercurity 2002 will not allow an email to be sent out without my knowedge and will block any attempt to.
Thats only if your outgoing mail is sent through Outlook, most Viruses are smarter than that nowadays and use theire own SMTP code. I belive Klez is one of them. (Not sure.) Norton offers a false sence of security.

If you use outlook, and especialy if you have an addressbook in outlook, your doomed...

Urizen
__________________
What am I still doing here?
Reply With Quote
  #16  
Old 05-28-2002, 05:50 AM
Neonight Neonight is offline
where da wmdz at
Neonight's Avatar
Join Date: Jun 2001
Location: Windsor, Illinois
Posts: 3,665
Neonight is on a distinguished road
Send a message via AIM to Neonight
Re: The truth about the Klez Virus

Quote:
Originally posted by GodSpeed
If you are running Outlook Express like %90 of the others in the world (and me) you are vulnerable to the Klez virus/worm.

When you read it it attempts to automatically execute the payload (actual worm)which would send messages to people in your address book with random subjects based on other mail you have in your inbox or other folders... it will also attach a file from your own computer (which could be private if you are really unlucky) to probably convince the person receiving it to open it OR just as a file for the worm/virus to piggyback on.

Norton detects and stops the virus with the latest definition update. So does Mcaffee, however I am unsure if it actually prevents the file from executing.

If you have antivirus software please get the latest update and scan your drive and if you do not even have any antivirus software, shame on you!
So you're saying [email protected] has Klez? I've gotten 3 emails about "XP Patches" that were the Klez virus from that email. Actually, the return email is much different... But it's either that or someone's posing as Graal.
Reply With Quote
  #17  
Old 05-28-2002, 05:56 AM
Shiftk03- Shiftk03- is offline
I am the trap
Shiftk03-'s Avatar
Join Date: Nov 2001
Location: Dirty South
Posts: 1,688
Shiftk03- will become famous soon enough
There is a program called "Fix Klez" that Symantic (the makers of Nortan Antivirus) released. I'm not sure the URL to the website to get it but I'm sure a good search would help you find it.. If you fear you may have it, well I suggest you find that file.
__________________
Reply With Quote
  #18  
Old 05-28-2002, 06:02 AM
Neonight Neonight is offline
where da wmdz at
Neonight's Avatar
Join Date: Jun 2001
Location: Windsor, Illinois
Posts: 3,665
Neonight is on a distinguished road
Send a message via AIM to Neonight
Quote:
Originally posted by Shiftk03-
There is a program called "Fix Klez" that Symantic (the makers of Nortan Antivirus) released. I'm not sure the URL to the website to get it but I'm sure a good search would help you find it.. If you fear you may have it, well I suggest you find that file.

Look at Krakken's thread. I already attached that program in a zip file
Reply With Quote
  #19  
Old 05-28-2002, 07:56 AM
Falcor Falcor is offline
Darth Cucumber
Falcor's Avatar
Join Date: Mar 2001
Location: At School
Posts: 2,874
Falcor is on a distinguished road
Send a message via ICQ to Falcor Send a message via AIM to Falcor Send a message via MSN to Falcor Send a message via Yahoo to Falcor
Bleh, i don't keep an address book. I write my E-mail addressed down :o
__________________

subliminal message: 1+1=3
Reply With Quote
  #20  
Old 05-28-2002, 11:18 AM
Minoc Minoc is offline
Registered User
Minoc's Avatar
Join Date: Sep 2001
Posts: 4,385
Minoc has much to be proud ofMinoc has much to be proud ofMinoc has much to be proud ofMinoc has much to be proud ofMinoc has much to be proud ofMinoc has much to be proud of
Quote:
Originally posted by _0AfTeRsHoCk0_

Lots of ISP's use outlook express. I use my ISP e-mail for Graal, so if I delete outlook express, how do I access the e-mail?
Netscape is better
__________________
-
Reply With Quote
  #21  
Old 05-28-2002, 12:43 PM
nyghtGT nyghtGT is offline
Banned
nyghtGT's Avatar
Join Date: Jun 2001
Posts: 3,993
nyghtGT is on a distinguished road
Send a message via AIM to nyghtGT
Quote:
Originally posted by _0AfTeRsHoCk0_

But it's the best
There is some new one that has built in Virus Detection stuffs i'll get the link and post it here...
Reply With Quote
  #22  
Old 05-28-2002, 01:55 PM
Hilton Hilton is offline
Registered User
Join Date: Jan 2002
Location: TV
Posts: 496
Hilton is on a distinguished road
AOL is my security blanket of sorts
__________________
What, me worry?
Reply With Quote
  #23  
Old 05-28-2002, 02:05 PM
Wing Wing is offline
Registered User
Wing's Avatar
Join Date: Sep 2001
Posts: 727
Wing is on a distinguished road
Send a message via ICQ to Wing Send a message via AIM to Wing
Quote:
Originally posted by Stefan
Outlook must be deleted if you want to do serious stuff on your computer, it's a trojan made by MS. There are far better email programs.
Windows is a trojan! (psst, make a Linux version!)
Reply With Quote
  #24  
Old 05-28-2002, 02:09 PM
nyghtGT nyghtGT is offline
Banned
nyghtGT's Avatar
Join Date: Jun 2001
Posts: 3,993
nyghtGT is on a distinguished road
Send a message via AIM to nyghtGT
http://www.eudora.com
Reply With Quote
  #25  
Old 05-28-2002, 03:45 PM
Juron Pilo Juron Pilo is offline
Registered User
Juron Pilo's Avatar
Join Date: Apr 2001
Posts: 1,095
Juron Pilo is on a distinguished road
*rolls eyes* Eh calling it a trojan is going too far... maybe calling it a gateway for other trojans to with which enter would be more appropriate. I'm ashamed of you Stefan for even saying such a thing... you people are too parinoid about viruses... *shrugs*
__________________

(best I could do on short talent)

If you can't beat em, call a truce and try beating them at the negotiating table

--Me
Reply With Quote
  #26  
Old 05-28-2002, 09:06 PM
Shorty2Dope Shorty2Dope is offline
Psychopathic
Shorty2Dope's Avatar
Join Date: Oct 2001
Location: Insane Asylum
Posts: 3,290
Shorty2Dope is on a distinguished road
Send a message via AIM to Shorty2Dope Send a message via Yahoo to Shorty2Dope
Quote:
Originally posted by Stefan
Outlook must be deleted if you want to do serious stuff on your computer, it's a trojan made by MS. There are far better email programs.
Yea that is why I do not use them. It is so easy to get a virus and have many other problems using outlook. I rather stick with hotmail who checks my mail for a virus and when I open mail it does not go sending viruses to my friends. IF i ever use a mail program to get my mail it would probably be Eudora
__________________
blah
Reply With Quote
  #27  
Old 05-28-2002, 09:44 PM
Crono Illusion Crono Illusion is offline
no. just no.
Crono Illusion's Avatar
Join Date: Mar 2001
Posts: 3,088
Crono Illusion will become famous soon enough
there's an even easier solution to Klez.
DON'T OPEN ATTACHMENTS YOU KNOW NOTHING ABOUT.

It's how I've managed to infect myself with a total of zero viruses in the past seven years and never run an antivirus program to actually delete a virus.
Reply With Quote
  #28  
Old 05-28-2002, 09:54 PM
Shorty2Dope Shorty2Dope is offline
Psychopathic
Shorty2Dope's Avatar
Join Date: Oct 2001
Location: Insane Asylum
Posts: 3,290
Shorty2Dope is on a distinguished road
Send a message via AIM to Shorty2Dope Send a message via Yahoo to Shorty2Dope
Quote:
Originally posted by Crono Illusion
there's an even easier solution to Klez.
DON'T OPEN ATTACHMENTS YOU KNOW NOTHING ABOUT.

It's how I've managed to infect myself with a total of zero viruses in the past seven years and never run an antivirus program to actually delete a virus.
Same here. When i used Eudora before and even now with hotmail, the only time i open an attachment is if me and a friend discussed it in IM or on the phone. If I am expecting a file I will get the file, If I am not, then it goes in the trash.
__________________
blah
Reply With Quote
  #29  
Old 05-29-2002, 05:29 PM
AlexH AlexH is offline
Have A Drink On Me
AlexH's Avatar
Join Date: Jun 2001
Location: Somewhere In Time
Posts: 7,442
AlexH is on a distinguished road
Send a message via AIM to AlexH Send a message via MSN to AlexH
What exactly does the virus do to your com?
__________________
QUICK LOOK BUSY JESUS IS COMING!
Reply With Quote
  #30  
Old 05-29-2002, 06:37 PM
iniquitus iniquitus is offline
Oldbie
Join Date: Dec 2001
Location: Maine
Posts: 606
iniquitus is on a distinguished road
Send a message via AIM to iniquitus
Quote:
Originally posted by Crono Illusion
there's an even easier solution to Klez.
DON'T OPEN ATTACHMENTS YOU KNOW NOTHING ABOUT.

It's how I've managed to infect myself with a total of zero viruses in the past seven years and never run an antivirus program to actually delete a virus.
Also make sure that Outlook is set not to display the preview plane, in other words, make sure you need to open the message in a new window to read it-- nowadays viruses can run just by you reading the message.

Urizen
__________________
What am I still doing here?
Reply With Quote
  #31  
Old 05-30-2002, 01:19 AM
konidias konidias is offline
Old Bee
konidias's Avatar
Join Date: Jul 2001
Location: Orlando, FL
Posts: 7,222
konidias will become famous soon enough
Send a message via AIM to konidias
I use Netaddress.. I never used Outlook because #1, you're susceptable to tons of viruses, and #2 because every computer doesn't have outlook, so if you're not at home and at place that has internet, how are you supposed to check your mail?

Heck if I'm going to use an email program on a computer that isn't mine.. that's like using aim or something and saving your pass to the list, you're just like an open book.
__________________

Put this image in your sig if you support Bomy Island! (g2k1 revision)
play bomberman while you wait!


Reply With Quote
  #32  
Old 05-30-2002, 01:50 AM
Milkdude99 Milkdude99 is offline
Truckin Up
Milkdude99's Avatar
Join Date: Jun 2001
Location: Central Florida
Posts: 3,390
Milkdude99 is an unknown quantity at this point
Send a message via ICQ to Milkdude99
Quote:
Originally posted by Shiftk03-
There is a program called "Fix Klez" that Symantic (the makers of Nortan Antivirus) released. I'm not sure the URL to the website to get it but I'm sure a good search would help you find it.. If you fear you may have it, well I suggest you find that file.
Here is that link:

http://[email protected]

and by the way it has removed 30 of this virus from my email in the last 5 days.... and I have run this tool for this virus and it is not present on my comp.....
__________________

Moon God
Graal.net

---------- Home---------

Reply With Quote
  #33  
Old 05-30-2002, 01:52 AM
Milkdude99 Milkdude99 is offline
Truckin Up
Milkdude99's Avatar
Join Date: Jun 2001
Location: Central Florida
Posts: 3,390
Milkdude99 is an unknown quantity at this point
Send a message via ICQ to Milkdude99
Quote:
Originally posted by iniquitus


Also make sure that Outlook is set not to display the preview plane, in other words, make sure you need to open the message in a new window to read it-- nowadays viruses can run just by you reading the message.

Urizen
That is because if you use the preview pane , it automaticly downloads the email message..
__________________

Moon God
Graal.net

---------- Home---------

Reply With Quote
  #34  
Old 05-30-2002, 01:54 AM
Milkdude99 Milkdude99 is offline
Truckin Up
Milkdude99's Avatar
Join Date: Jun 2001
Location: Central Florida
Posts: 3,390
Milkdude99 is an unknown quantity at this point
Send a message via ICQ to Milkdude99
Quote:
Originally posted by AlexH
What exactly does the virus do to your com?
go to the link I posted and it will tell you all you want to know about it and what it does
__________________

Moon God
Graal.net

---------- Home---------

Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT +2. The time now is 09:21 AM.


Powered by vBulletin® Version 3.8.11
Copyright ©2000 - 2026, vBulletin Solutions Inc.
Copyright (C) 1998-2019 Toonslab All Rights Reserved.