PCTips

greenspun.com : LUSENET : Current News : One Thread

1. TREND MICRO UPDATES: Pattern File and Scan Engine Updates ------------------------------------------------------------------------ PATTERN FILE: 935 http://www.antivirus.com/download/pattern.asp SCAN ENGINE: 5.450 http://www.antivirus.com/download/engines/

2. TROJ_APOST.A - TROJ_APOST.A (Medium Risk) ------------------------------------------------------------------------ This worm propagates via Microsoft Outlook by emailing itself as an attachment to all addresses listed in the infected user's address book. It sends email four times to each address and copies itself to all local drives of an infected system.

It arrives in an email with the subject line: "As per your request!" with the attachment "README.EXE".

This worm has been classified as medium risk.

For additional information about TROJ_APOST.A, please visit Trend Micro at: http://www.antivirus.com/vinfo/virusencyclo/default5.asp?VName=TROJ_APOST.A

TROJ_APOST.A is detected and cleaned by Trend Micro pattern file #933.

3. MAGISTR Strikes Again - PE_MAGISTR.B (Medium Risk) ------------------------------------------------------------------------ PE_MAGISTR.B is a per-process, memory-resident, and polymorphic virus that installs itself in memory via the EXPLORER.EXE process. It uses SMTP commands to send emails to addresses it obtains from *.WAB, *.DBX, and *.MBX files found in the infected system's disk. It uses its infected files and other non-viral files as attachment to the emails it sends out. The non-viral file types include image files (.GIF), documents (.DOC), and text files (.TXT).

This variant uses text found in documents and text files of the infected system for the subject and body of its email. The attachments may have COM, .BAT, and .PIF extension names, and because the worm uses the Blind Carbon Copy field when sending email (or "BCC:"), its emails have an empty "To:" field.

This virus is capable of searching for all local drives, mapped network drives, and shared directories that have full-access privileges, therefore it can infect an entire local network. It searches for the occurrence of certain directories and infects .EXE and .SCR files contained within.

When the virus payload activates, the virus attempts to find the NTLDR file on the root drive, and WIN.COM file in the Windows directory, and overwrites them with a small Trojan program that trashes the hard drive using direct manipulation of the primary hard disk controller.

This file-infecting virus has been upgraded from low risk to medium risk due to an increasing number of infections.

For additional information about PE_MAGISTR.B, please visit Trend Micro at: http://www.antivirus.com/vinfo/virusencyclo/default5.asp?VName=PE_MAGISTR.B

PE_MAGISTR.B is detected and cleaned by Trend Micro pattern file #935.

4. 10 Most Prevalent In-The-Wild Malware Surveyed by Trend Micro US (week of: August 27, 2001 to September 2, 2001) ------------------------------------------------------------------------ 1. TROJ_SIRCAM.A 2. PE_MAGISTR.DAM 3. TROJ_HAI.A 4. TROJ_BLKSTONE.A 5. VBS_HAPTIME.A 6. PE_MAGISTR.A 7. TROJ_BADTRANS.A 8. TROJ_NEWPIC.A 9. VBS_LOVELETTR.AS 10.TROJ_BYMER

SPECIAL OFFER: Webmasters, add free virus information updates to your Web site with our Virus Info Feed. Simply copy and paste a small piece of code to give your visitors a real-time top 10 list and the latest virus advisories. Setup takes approximately 10 minutes and requires no server-side code on your Web site. All content is updated automatically from Trend Micro's Web site. http://www.antivirus.com/syndication/vinfo/default.asp?ref=nwsltr

5. Top 10 Viruses Trend Micro's US Customers are Most Concerned About (where systems were not infected) ------------------------------------------------------------------------ 1. TROJ_SIRCAM.A 2. TROJ_RULES.A 3. TROJ_SPYBOY.B 4. VBS_HAPTIME.A 5. PE_CIH 6. JS_KAKWORM.A 7. TROJ_NEWPIC.A 8. TROJ_FUNSO.A 9. TROJ_HAI.A 10.PE_FUNLOVE.DAM

6. Test Your Virus Knowledge & Scan Your Computer FREE! ------------------------------------------------------------------------ Do you think you know enough about viruses? Try our new HouseCall quiz as you scan your computer, FREE, for viruses and other malicious code. At the end of the quiz you may be lucky and win 10%, 15%, or even 20% OFF Trend Micro PC-cillin 2000!!

SCAN NOW: http://www.antivirus.com/banners/tracking.asp?si=63&bi=154&ul=http://housecall.antivirus.com



-- Anonymous, September 10, 2001

Answers

PICTURE PERFECT Improve any digital image with these three simple steps. http://www.techtv.com/callforhelp/projects/story/0,23008,3346340,00.ht ml

DITCH YOUR ORGANIZER Free online tools help you keep track of important dates, events, errands, and more. http://www.techtv.com/callforhelp/projects/story/0,23008,2583219,00.ht ml

DIALUP DEMON Speed up your 56K connection times. http://www.techtv.com/callforhelp/answerstips/story/0,23008,3004254,00 .htl

ESCAPE SLOW SITES Don't waste your time waiting for slow-loading sites. Try this trick instead. http://www.techtv.com/callforhelp/answerstips/story/0,23008,3346135,00 .html

DOCK YOUR FOLDERS Brett Larson's shareware pick lets you access Mac folders fast. http://www.techtv.com/callforhelp/answerstips/story/0,23008,3346037,00 .html

ALL THE LINKS FOR TODAY'S SHOW http://www.techtv.com/callforhelp/shownotes/story/0,23008,3346399,00.h tml -+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+

II. TODAY'S TECH LIVE HEADLINES

COVER STORY: WEB SEARCHES FOR SALE Consumer groups allege that some search engines mislead users by presenting purchased listings as objective results. http://www.techtv.com/news/internet/story/0,24195,3346401,00.html

POLL: PUT UP WITH PAYOLA? Would you switch search engines to avoid paid placements? Vote in our poll and let us know! http://www.techlive.com

BOEING SHOWS OFF HIGH-TECH FIGHTER Company hopes its X-32B plane will be Defense Department's choice for next-generation fighter jets. http://www.techtv.com/news/computing/story/0,24195,3346445,00.html

REVIEW: BLOG 4.0 Post your thoughts to the Web whenever the urge strikes with this handy application. http://www.techtv.com/news/story/0,24195,3346341,00.html

REVIEW: CANON POWERSHOT G2 All the best of Canon's G1 finds its way to the new PowerShot G2. http://www.techtv.com/news/story/0,24195,3346119,00.html

RAM PRICES LEVEL OUT AS XP NEARS Memory prices halt three-month fall, but they could drop again before XP launches. http://www.techtv.com/news/computing/story/0,24195,3346278,00.html

TECH PRIME PREVIEW: CAN BUSH HELP TECH? How long will president wait before unveiling a tech agenda? http://www.techtv.com/siliconspin/features/story/0,23008,3346315,00.ht ml

-- Anonymous, September 10, 2001


Moderation questions? read the FAQ