PDA

View Full Version : Urgent Virus Alert!



Obake
03-15-2001, 02:13
I know that I haven't been active in the forum for quite some time for personal reasons. I felt it imperative to post this immediately though.

(Moderators, I chose this forum due to the volume of traffic as opposed to the Tech support forum. I hope that you'll agree with me and leave this here!)

I have just received notification of a new and potentially serious virus from the US Army Computer Emergency Response Team. This virus is called W32.Magistr.24876@

It is a network aware worm that is particularly brutal. As many of you may not be total tech heads I'll stay superficial, but I can't stress enough the importance of updating your virus protection immediately.

W32.Magistr will overwrite your hard drive, flash your BIOS and erase your CMOS. It will also mail itself to everyone in your Outlook (and Express) address book and also in your "Sent" folder. This virus is very difficult to detect because is uses a program (anti-heuristics for us geeks) that allows it to avoid detection by anti-virus software. It also has the ability to generate a variable subject line which makes it harder to detect (polymorphic) and can carry up to 6 different payloads. The US Army (whom many of you know I work for) has blocked all non-mission critical E-mail attachments until further notice. It has also been suggested that all downloads of .exe files and FTP files transfers be stopped.

For those of you who want more specific information on what this Worm does, here is a link to the virus description from the Symantec site: http://www.symantec.com/avcenter/venc/data/w32.magistr.html

------------------
FearObake http://members.tripod.com/smilecwm/cgi-bin/s/net8/laghost.gif
I am the ghost of your fears.
Got a compliment or concern about a Fearful Ways member? Let us know about it HERE (http://pub24.ezboard.com/bfearfulways)

Shiro
03-15-2001, 03:15
That's real bad. Hate for that to happen to me.

03-15-2001, 03:26
Thanks for the warning Obake!

Contubernalis
03-15-2001, 04:18
Um, superficially speaking, what does one do to defend against this? I am on a network through school, and got that Anna Kournikova (sp.?) virus from it. Just not open e-mail for a while?
Thanks Obake. Why these idiots do these viruses I'll never fathom...

Obake
03-15-2001, 05:12
This is a tough one to defend against Contubernalis because it can show up in so many different forms (ie different subject lines, different payloads, etc.). My suggestion would be to keep your Anti-virus software updated.

Practically speaking, I would not open any attachments you receive as part of an E-mail for at least the next couple of weeks. If your schools administrators have even half a brain, they can set your E-mail servers to automatically strip any attachments coming in from outside of the school as well as from within. I would also avoid doing any kind of program downloads (.exe files) or FTP transfers.

Fortunately this particular virus is not yet that widespread, but it only takes one. Reading E-mail is still fine, just be careful. As long as you are aware of what can happen, you're half way to surviving.

------------------
FearObake http://members.tripod.com/smilecwm/cgi-bin/s/net8/laghost.gif
I am the ghost of your fears.
Got a compliment or concern about a Fearful Ways member? Let us know about it HERE (http://pub24.ezboard.com/bfearfulways)

03-15-2001, 06:06
Thanks Obake, I'll stay on alert.

------------------
Honour to Clan No Fear.

Visit my resource centre at:

http://terazawa.totalwar.org/

Puzz3D
03-15-2001, 06:23
Oh boy. Thanks for thinking of us Obake.

MizuYuuki ~~~
Clan Takiyama ~~~

Contubernalis
03-15-2001, 07:17
Thank ye Obake.

FwSeal
03-15-2001, 08:52
Its great to see you in the area, Okabe - too bad its as the bearer of bad tidings...

candidgamera
03-15-2001, 09:14
Thanks for the warning.

Brown Wolf
03-15-2001, 10:53
So is it not safe to download from websites now?

------------------
"Failure is not an option"

Tenchimuyo
03-15-2001, 20:38
No more new custom maps for now.

------------------
A great warrior never reveal his true skills....

Obake
03-15-2001, 21:33
You're welcome everyone. Seal-san thanks for the warm wishes.

To Wolf and Tenchi in particular, as long as you have an anti-virus program in place that has the current definition files, I wouldn't worry too much about downloading ZIP files from Web sites. All of the major programs will scan zipped files. I would strongly urge everyone to NOT download any type of executable until this thing is under control. Map files Tenchi do not include .exe's and are therefore relatively safe. The smart thing would be for all of the map makers (Tosa, Krae, et al) to hold off putting up any new maps for a couple of weeks in order to ensure the safety of the community as a whole.

I will be out of town all of next week, but if there is an update on this situation and I have the opportunity I will keep you all posted.

------------------
FearObake http://members.tripod.com/smilecwm/cgi-bin/s/net8/laghost.gif
I am the ghost of your fears.
Got a compliment or concern about a Fearful Ways member? Let us know about it HERE (http://pub24.ezboard.com/bfearfulways)