Log in

View Full Version : email virus?


smokinreefer
01-27-2004, 01:37 AM
hey folks,
might be a virus goin around....
within 20 minutes i got 2 emails...
one from a chris.monner@maxpasley.com , which i dont recognize...
and one from newsletter@jlaquatics.com , both with attachements of 22.5kb in size... named body.pif and text.cmd respectively.
oh yeah, they were both sent to my email that i use for reef stuff, boards etc.

anyone else seeing this?

FWIW, the body of the email is all jibberish... and of course i didnt open the attachment, so i cant tell you whats in that!

Chad
01-27-2004, 01:56 AM
I have not gotten any emails from J&L with viruses.. not yet anyways.. I'd give em a call and have them do a virus check.. sounds like they maybe infected?

:confused:

AJ_77
01-27-2004, 01:57 AM
I got 2 tonight for my reefs address as well, one from acryliccity.com, the other from a stranger.

Watch out.

EmilyB
01-27-2004, 02:01 AM
some people have gotten an emai from me, including myself, even thought I do not have their emails on my system. I have full uptodate virus protection, but this virus was just posted today, so I am doing a scan at the moment.

http://us.mcafee.com/virusInfo/default.asp?id=mydoom

kris
01-27-2004, 02:17 AM
i had it come in from two places one was from EmilyB and the other was some one i did not recognize on yahoo. the subject was HI and it was a .Scr file.


Seems to be hitting alot of people globaly

Aquattro
01-27-2004, 02:39 AM
I've had a few trying to forward themselves off of my mail server. I'm checking all my machines now. Such fun....

Scavenger
01-27-2004, 03:36 AM
Yup I got nailed with them from two of my own email accounts and they self opened somehow. The virus is
MIMAIL.R and the subject line was either test, status or Rfdqas. Unfortunatly I had pc cillen disabled at the time :frown: had system resouces freed up for video games. Didn't take long to get rid of them though.

Samw
01-27-2004, 03:41 AM
I use Linux ELM to read mail so I don't ever get viruses. Deb, is your McAfee configure to scan Email in addition to your system? If only set to scan the System, then viruses won't get detected until you open your email. Then its too late.

smokinreefer
01-27-2004, 04:37 AM
hahhah...just got 2 more...one minute after eachother...
test.zip and ppqq.zip subjects...test, error, hi.
again only to my reef related email address.

EmilyB
01-27-2004, 05:25 AM
yes, I've checked with my address book people and they haven't had anything, only reef people. :confused:

Yes Sam, it is set to scan email. :biggrin:

When I opened my email, it had identified the one sent to me.

wayner
01-27-2004, 04:29 PM
I got it too, called shimgapi.dll, I have Mcaffee scans e-mail & system, I did a system virus scan & it deleted 3 but could not delete the one above.

It resides in my C/windows/system 32, how do I get rid of it, it won't allow me to delete it?

Chad
01-27-2004, 04:31 PM
My office here got a couple.. but so far nothing on my home email.

Chad
01-27-2004, 04:32 PM
I got it too, called shimgapi.dll, I have Mcaffee scans e-mail & system, I did a system virus scan & it deleted 3 but could not delete the one above.

It resides in my C/windows/system 32, how do I get rid of it, it won't allow me to delete it?

Follow the instructions in this link

http://securityresponse.symantec.com/avcenter/venc/data/w32.novarg.a@mm.html

Samw
01-28-2004, 12:04 AM
Ah crap. It apears that someone has been able to hijack my Linux mail server and send emails to people and make it appear to be coming from me.

Chad
01-28-2004, 12:09 AM
That sucks.. tho I thought this virus could not infect the linux OS? A different virus?

Samw
01-28-2004, 12:16 AM
Oops. Scratch that. It isn't doing what I thought it was doing. It turns out that I have added some procmail rules on my Linux account to filter Email with program attachments.

:lol:

So whenever someone with an infected computer tries to send me an Email with an attachment, I send a message back telling them that I don't accept program attachments. So no one has hijacked me. :lol: I had thought that because I started getting copies of empty messages with the email address of the person who tried to send me the virus. So I thought someone was hijacking my computer to send outbound Email. Not the case.

But I do know who has the infected computer trying to infect me though.

Aquattro
01-28-2004, 02:00 AM
But I do know who has the infected computer trying to infect me though.

You did notify them, right?

EmilyB
01-28-2004, 02:20 AM
It's not me :lol:

AJ_77
01-28-2004, 02:44 AM
some people have gotten an emai from me, including myself, even thought I do not have their emails on my system.
Apparently someone else had your email address on their system, and now the worm is spoofing your address as the "from".

From the Symantec site:
Attempts to send email messages using its own SMTP engine. The worm looks up the mail server that the recipient uses before sending the email. If it is unsuccessful, it will use the local mail server instead.


The email will have the following characteristics:

From: May be a spoofed from address.
So even though your updated antivirus software may have caught them all, Deb (as mine seems to have), you may still get msgs back from "Mailer-Daemon" and "Mail Subsystem" at other ISPs because they are sending it back to you. Don't sweat it, you're likely fine.

Kind of freaky though... "Hey, I didn't send that! Did I??..."

Aquattro
01-28-2004, 02:46 AM
Right. The from feild is spoofed, therefore it gets sent back to you. I've gotten so many back it isn't funny anymore. The headers indicated the source IP of some, so I did send a PM to that person.
Even though your system is clean, you can still get these non delivery reports.

Bob I
01-28-2004, 02:54 AM
I am getting them regularly. One said it came from dhadford. Deb says her machine is not guilty, and I will of course believe that, simply because we do not exchange emails. Hell we don't even talk :eek: One arrived a half hour ago, and norton simply deletes them, and notifies me.

EmilyB
01-28-2004, 02:57 AM
Well, if it is on my machine, and a scan says it is not....then try not to take it personally..........okay :lol:

Samw
01-28-2004, 03:56 AM
Right. The from feild is spoofed, therefore it gets sent back to you. I've gotten so many back it isn't funny anymore. The headers indicated the source IP of some, so I did send a PM to that person.
Even though your system is clean, you can still get these non delivery reports.


Yup. That was the case here. I thought the Email I got was from you but the IP address revealed where it actually came from which wasn't you.

Aquattro
01-28-2004, 04:02 AM
I think he should be working on this as we speak.

Quinn
01-28-2004, 04:07 AM
It will be interesting to see who the DOS attack will be targetting come the first of next month...

Aquattro
01-28-2004, 04:19 AM
It will be interesting to see who the DOS attack will be targetting come the first of next month...

"Attempts to perform a DoS attack against www.sco.com by creating 64 threads that send GET requests and use a direct connection to port 80."

butters88
01-28-2004, 04:41 AM
Thanks a lot Brad, its finally gone :exclaim:
Hope it didn't infect or affect any of you guys, I had no idea I had it until Brad helped out :biggrin:

EmilyB
01-28-2004, 04:43 AM
Figures it was a SouthPark guy..... :lol: :razz:

Aquattro
01-28-2004, 05:27 AM
Someone in Calgary is still infected. Please check your systems and make sure you have the latest virus definitions. If you think you may have it and aren't sure what to do, PM me for assistance.

Aquattro
01-28-2004, 04:22 PM
OK, can the person with IP 68.144.223.33 please clean the stupid virus off their computer? Thanks!!

Chad
01-28-2004, 04:36 PM
I finaly got this virus in my e-mail at work.. I'm so blessed.. :biggrin: .. still nothing at home tho..

Quinn
01-28-2004, 05:20 PM
Someone on Shaw... that's all I know...

h68-144-223-33.cg.shawcable.net

Nemain
01-28-2004, 05:35 PM
http://whatismyip.com/

Just in case you dont know how to check your IP =)

Aquattro
01-28-2004, 05:45 PM
Someone on Shaw... that's all I know...

h68-144-223-33.cg.shawcable.net

In the Calgary area.

Aquattro
01-28-2004, 05:49 PM
http://whatismyip.com/

Just in case you dont know how to check your IP =)

Thanks.

kris
01-28-2004, 06:53 PM
This is a most anoying virrus. i thought i cleard it out, but it created a back door. stupid stupid me.....

BCOrchidGuy
01-28-2004, 09:10 PM
I read that if you want to protect your mail box from sending out viruses to enter the address aaaaa@aaa.com it will be the first address that is delievered too and it will fail therefore the group email will not go through.... not sure if it really works or not but I've got it and no one's ever gotten a virus from me.

Doug

Chad
01-28-2004, 10:17 PM
I've never heard of that one? Hmm, have to look around on that..

Aquattro
01-28-2004, 10:31 PM
This is a most anoying virrus. i thought i cleard it out, but it created a back door. stupid stupid me.....


Just got an email from joe@whitefuzzymonkey.com (among dozens of others) :razz:

Chad
01-28-2004, 11:03 PM
This is a most anoying virrus. i thought i cleard it out, but it created a back door. stupid stupid me.....


Just got an email from joe@whitefuzzymonkey.com (among dozens of others) :razz:

Hey Kris, is that your website? wicked stuff :cool:

kris
01-29-2004, 03:24 AM
haa haa who is joe.. i donot knwo joe... no joe here.. must not have come through me lol.... im re scanning brad seems fine.


Yeah Chad that is my work. Thanks for the complements. ( and there should be new stuff soon.



Cheers

PS i want to break the knee caps of the person that creat this virrus. :lol:

Aquattro
01-29-2004, 03:27 AM
Kris, I know it wasn't really from you. In fact, I got an email from me, and I know I didn't send it. I did locate another member who is infected, and sent him a PM and email. Hopefully he gets it fixed soon.

kris
01-29-2004, 07:06 AM
im getting less and less e-mails now so i think its getting cleard out of the systems.

i know you where not point fingers at me brad.. whell at least this time :biggrin:

whaase
01-31-2004, 03:27 PM
One more reason why I love running linux :cool:

Walter

Aquattro
01-31-2004, 03:51 PM
One more reason why I love running linux :cool:

Walter
Unfortunately the problem here was that I was getting emails returned to me that I never sent because someone that was infected had me in their address book. So unless your install of Linux doesn't have email, you are as vulnerable as my XP box for this problem.

BTW, the other person infected has been notified and cleaned their machine. The emails have stopped!!

StirCrazy
01-31-2004, 04:58 PM
One more reason why I love running linux :cool:

Walter

the other reason must be because you love having to write all your own drivers and updates :mrgreen:

Steve

Aquattro
01-31-2004, 05:24 PM
Steve, Linux has great hardware support and it also has the ability to do automatic updates(Red Hat, anyways). I have never had it not detect and install drivers for any hardware I've had.

StirCrazy
01-31-2004, 05:37 PM
Steve, Linux has great hardware support and it also has the ability to do automatic updates(Red Hat, anyways). I have never had it not detect and install drivers for any hardware I've had.

I tried mandrake, redhat and the other big one and all of them had problems with my scanner printer, soundcard and others stuff, but that was 5 years ago now.. maybe they have progressed.

on another topic what happened to BeOS? I was playing with ver 5 and it was neet.

Steve

Aquattro
01-31-2004, 06:22 PM
Steve, 5 years ago you could put linux on a floppy (still could, I suppose) but today it's plug and play, has support for most everything, a decent GUI and it needs a much larger hard drive :razz:

LostMind
01-31-2004, 06:26 PM
Yup!

Linux is fun and easy.

Just, if you are a gamer, you need to get wine running to play video games as very few games are released for the linux platform. And, sadly, wine sucks...

try out fedora or suse now that redhat is discontinuing support...

Samw
01-31-2004, 06:28 PM
I've have a mini-ISP setup on my Linux server for about 10 years. I hooked up 6 I-Modems to it for people to dial-in at 56K and use it as their gateway. I set up a webserver, a mail server, and a DNS server on it all for free. To do the same thing on Windows would cost several thousand dollars.

whaase
01-31-2004, 06:42 PM
One more reason why I love running linux :cool:

Walter

the other reason must be because you love having to write all your own drivers and updates :mrgreen:

Steve

I've never had to write one driver... Check out Gentoo! You compile the whole operating system for your machine. Took about 5 days on a Duron 750, but it is one fast machine! :) Updates are easy as 'emerge world', installing a proram is as easy as 'emerge PROGRAM' it grabs all dependances as well. Has over 70000 software titles in its database. I've run it for about 1.5 years and never looked back. You can also use crossover office if you really want and install MS office on your linux box. (Not sure why though) :) Anyways, didn't mean to hijack the thread!


Walter

Bob I
01-31-2004, 08:16 PM
[quote=whaase]One more reason why I love running linux :cool:

Walter

the other reason must be because you love having to write all your own drivers and updates :mrgreen:

Steve

I've never had to write one driver... Check out Gentoo!

What is a Gentoo :question: :rolleyes:

whaase
01-31-2004, 08:19 PM
[quote=whaase]One more reason why I love running linux :cool:

Walter

the other reason must be because you love having to write all your own drivers and updates :mrgreen:

Steve

I've never had to write one driver... Check out Gentoo!

What is a Gentoo :question: :rolleyes:

Gentoo is a distribution of linux. Just like Mandrake, Redhat, Slackware, Debian... etc...

www.gentoo.org

Walter

StirCrazy
01-31-2004, 11:40 PM
Steve, 5 years ago you could put linux on a floppy (still could, I suppose) but today it's plug and play, has support for most everything, a decent GUI and it needs a much larger hard drive :razz:

funny a full install of mandrake with the GUI xwindows was 2.4 gig, win 98 was only 600 meg..

Steve

whaase
01-31-2004, 11:59 PM
Steve, 5 years ago you could put linux on a floppy (still could, I suppose) but today it's plug and play, has support for most everything, a decent GUI and it needs a much larger hard drive :razz:

funny a full install of mandrake with the GUI xwindows was 2.4 gig, win 98 was only 600 meg..

Steve

Just remember, you are getting 10x the operating system! :) I'd never waist 600 megs on Windows :) Harddrives are cheap. I have a FULL install of Gentoo, that has several gui's (KDE, Gnome, XFCE4, and a few smaller ones), full e-mail server, file server, web server, and it only takes 2 gig. And the last time I rebooted that machine was 11 months ago... :lol: I'm not anti Windows, I just think there is much better out there for free!

Walter

Walter

Bob I
02-01-2004, 12:12 AM
Steve, 5 years ago you could put linux on a floppy (still could, I suppose) but today it's plug and play, has support for most everything, a decent GUI and it needs a much larger hard drive :razz:

funny a full install of mandrake with the GUI xwindows was 2.4 gig, win 98 was only 600 meg..

Steve

Just remember, you are getting 10x the operating system! :) I'd never waist 600 megs on Windows :) Harddrives are cheap. I have a FULL install of Gentoo, that has several gui's (KDE, Gnome, XFCE4, and a few smaller ones), full e-mail server, file server, web server, and it only takes 2 gig. And the last time I rebooted that machine was 11 months ago... :lol: I'm not anti Windows, I just think there is much better out there for free!

Walter

Walter

I run XP because I am just a user not a computer geek. I am, however, getting tired of paying uncle Bill more than $100.00 every time I upgrade machines. My question is this; Is there something out there I could look at that is not as costly, and would work well with my Duron one gig machine :question: Preferably with a good gui. Also something I don't have to pay a fortune to keep viruses out :question: BTW I only use less than half of my 20 gig hard drive.

whaase
02-01-2004, 12:36 AM
Bob, if you are just a "user" I'd stay with Windows. Don't upgrade if you don't have to. I know a few people that still use Windows 98. They have everything they need and MS is not supporting Win98 anymore. I've always hated XP from the start. I went to a open unvailing they had the the Maxbell and got a free XP Pro. I used it for about a month and went back to Windows 2000. I use 2000 on my laptop, but I run linux on my main machine and on another downstairs. Go to www.gentoo.org , scoll down about 1/2 way and on the left side it will have "screen shots" Take a look what you can do if you want :) There is also Live versions too. They run off the CD. It'll give you a good idea what it is all about. Enough of my ramblings! If I could get rid of Windows I would! But my wife still won't change :)

Walter

StirCrazy
02-01-2004, 12:55 AM
Just remember, you are getting 10x the operating system! :) I'd never waist 600 megs on Windows :) Harddrives are cheap. I have a FULL install of Gentoo, that has several gui's (KDE, Gnome, XFCE4, and a few smaller ones), full e-mail server, file server, web server, and it only takes 2 gig. And the last time I rebooted that machine was 11 months ago... :lol: I'm not anti Windows, I just think there is much better out there for free!

Walter

Walter

no your not, I do have linux and unix experiance from the servers we used to run on a local BBS. had 56 phone lines running through galacitica boxes and 5 servers. it was a total pain in the A$$.

I did get all 3 flavors of linux running good enuf to evaluate it, hence the reason I am running XP now. I decided linux is for tinkerers and kiddy hackers. I went two years on my install of XP untill a hard drive crash and ram burnout (colatterial dammage from a power supply failure :rolleyes: ) forced me to reload a new drive. my server has been running win 2000 server for over a year with the only reboot when I moved and 2 power outages..

Linux was popular with the bill haters and the people who were against paying for software back in the day. Now you have to pay for flavors of it, but you get the source code so you can modify it. if windows gave the source code out and only charged 1/2 the amount it would be pretty close to the same idea.

BeOS was going to be the OS to rule them all but bad markiting caused it failure to catch on in the same fasion as OS2 and Beta. I think I still have a copy of BeOS5 and it is amazing, fast, stable and a multimedia lovers wet dream. to bad it didn't pick up enuf to be a main stream OS.

Steve

kris
02-01-2004, 01:53 AM
Hey steve, i was looking at BeOS 5 to run my multimedia software. From what i heard its being devloped under a new name and company... not sure though.

StirCrazy
02-01-2004, 01:56 AM
I just descovered they sold to a subciduary of PALM for 11 million, plus they got 23 mil off a settlement from microsoft so they are paying out the sharholders and desolving BE. so i wander what palm is going to do with it.. new palm OS that is totaly seamless with the desktop.. hmmm

Steve

whaase
02-01-2004, 02:31 AM
Just remember, you are getting 10x the operating system! :) I'd never waist 600 megs on Windows :) Harddrives are cheap. I have a FULL install of Gentoo, that has several gui's (KDE, Gnome, XFCE4, and a few smaller ones), full e-mail server, file server, web server, and it only takes 2 gig. And the last time I rebooted that machine was 11 months ago... :lol: I'm not anti Windows, I just think there is much better out there for free!



Walter

no your not, I do have linux and unix experiance from the servers we used to run on a local BBS. had 56 phone lines running through galacitica boxes and 5 servers. it was a total pain in the A$$.

I did get all 3 flavors of linux running good enuf to evaluate it, hence the reason I am running XP now. I decided linux is for tinkerers and kiddy hackers. I went two years on my install of XP untill a hard drive crash and ram burnout (colatterial dammage from a power supply failure :rolleyes: ) forced me to reload a new drive. my server has been running win 2000 server for over a year with the only reboot when I moved and 2 power outages..

Linux was popular with the bill haters and the people who were against paying for software back in the day. Now you have to pay for flavors of it, but you get the source code so you can modify it. if windows gave the source code out and only charged 1/2 the amount it would be pretty close to the same idea.

BeOS was going to be the OS to rule them all but bad markiting caused it failure to catch on in the same fasion as OS2 and Beta. I think I still have a copy of BeOS5 and it is amazing, fast, stable and a multimedia lovers wet dream. to bad it didn't pick up enuf to be a main stream OS.

Steve

I agree you have to want to tinker with it. But, here is why I like it. Lets say you wanted a powerfull webserver/fileserver or even a DNS server. I can download any version of linux and set these up - no charge. To do the same with windows? How much? And the thing I really hate about Microsoft is always charging more. When you buy Windows, yoor not ever done if you want to stay up to date. Linux I can simply enter a command and my whole system (including core) is updated. Like I said don't get me wrong, Windows will always be the dominate OS and will always have it's place in the market (and most of it) I still run 2000 on a machine. Power by the numbers. But for me, I found something I believe is better. and one day will be "the" alternative. Look at all the governments around the world changing over to linux. They are tired of haing to pay, and pay, and pay again for the same software.

Walter

StirCrazy
02-01-2004, 02:41 AM
To do the same with windows? How much? And the thing I really hate about Microsoft is always charging more. When you buy Windows, yoor not ever done if you want to stay up to date. Linux I can simply enter a command and my whole system (including core) is updated.

Walter

I just looked, the redhat enterprise is 2500.00 US to buy so much for the free stuff like it used to be. :rolleyes:

Steve

Aquattro
02-01-2004, 02:47 AM
To do the same with windows? How much? And the thing I really hate about Microsoft is always charging more. When you buy Windows, yoor not ever done if you want to stay up to date. Linux I can simply enter a command and my whole system (including core) is updated.

Walter

I just looked, the redhat enterprise is 2500.00 US to buy so much for the free stuff like it used to be. :rolleyes:

Steve

Steve, the OS is free. That price is with support from Red Hat. You can download it from their FTP for free. You can also download windows, but we won't go there!! :razz: