General Discussion
|
Subject: MyDoom e-mail virus
|
|
|
|
From
|
Location
|
Message
|
Date Posted
|
| southern |
Appalachian Mtns.
|
If any of us are getting these e-mails in our mailboxes then it could be from one of us. My Yahoo account used for "Southern" exists for one reason only..pumpkin mail. I get no other mail to it except from growers, and I'm getting 4-5 of these MyDoom virus laden e-mails a day. The virus itself doesn't outwardly harm your computer so if ya' got it, ya' probably don't know it. Here's a link that describes the virus, and with another link to the patch that will take it off your computer. I know at least 1 pumpkin grower out there has it so *please* use the patch, it'll only take a few minutes!
http://www.internet-magazine.com/news/view.asp?id=3917
|
1/28/2004 6:30:18 PM
|
| southern |
Appalachian Mtns.
|
ps...link to the patch at the bottom of the article
|
1/28/2004 6:32:14 PM
|
| Andy W |
Western NY
|
i was going to post about this, but you beat me to it. i got two emails with .zip files attached, one "from" drew papez, and the other "from" greg stucker. i don't think i've ever emailed greg. anyway, drew or greg, if those are legit files, let me know. i ain't touching them.
Andy
|
1/28/2004 6:36:42 PM
|
| huffspumpkins |
canal winchester ohio
|
Why would it be from one of us, folks I work with are getting them ( I've don't even have them in my address book). These things are tricky, I got a email ( with a attachment) that said the email I sent to Dennis Rodman ( LOL) had a virus attached....I ain't sent Dennis nothing & if he got a virus it was probably from Carmen Electra.....
|
1/28/2004 6:42:35 PM
|
| southern |
Appalachian Mtns.
|
Well, I saved the removal program to my computer, accessing it is a pain from the website...they want personal info. E-mail me and I'll send the remover to you, it's 1.4MB so have space in your mailbox. "I" know I'm getting it from "another" grower because my "Southern" e-mail addy is ONLY for pumpkin mail, nothing else.You very well may be getting it from elsewhere Paul, but my Yahoo mail ain't....
|
1/28/2004 6:50:17 PM
|
| southern |
Appalachian Mtns.
|
Again...e-mail me and I'll send you the removal program.
|
1/28/2004 6:51:55 PM
|
| huffspumpkins |
canal winchester ohio
|
I'm not very computer smart, so I use Norton 2003 & everything that has came in so far has been quarantined. I'm probably over protective but I scan everything coming in, everything going out & run a system scan bi-weekly ( I think I'm OCD....LOL )
|
1/28/2004 6:55:19 PM
|
| Poppy |
|
Southern: I believe it would be good & helpful to let us know who has the virus, it's not a reflection on any of us, but some of us less computer wise may be at fault & not know it, I run a virus program but never feel that I am completly safe. If I have it & someone let's me know it, I appreciate it rather than infecting more of my friends without knowing it. Bill
|
1/28/2004 6:55:46 PM
|
| moondog |
Indiana
|
Just because your getting the worm on your pumpkin address doesnt mean that anyone on the list has the worm, it also generates random e-mail addresses to send itself to. I have gotten the worm at least 10 times the past two days from people I know I have never e-mailed. here iswhat mcafee says about it. I have also gotten replys from mailboxes like i sent out the worm but I know damn well I dont have it. Steve W32/Mydoom@MM is a High-Outbreak Risk mass-mailing worm flooding email servers worldwide. When run, the worm steals email addresses from the infected machine and also automatically generates random email addresses for propagation. This email generation engine is similar to technologies spammers use to generate addresses for spam email campaigns. W32/Mydoom@MM generates emails with a spoofed From: field, so incoming messages may appear to be from people you know. Furthermore, the subject line and message body are both randomly generated by the worm.
W32/Mydoom@MM also attempts to open a port on an infected PC, allowing a remote hacker to gain control of the system. (Installing a firewall such as McAfee Personal Firewall Plus can prevent this activity.)
|
1/28/2004 7:06:00 PM
|
| huffspumpkins |
canal winchester ohio
|
The first part of your post Steve was what I was trying to explain the first time, you did a much better job..thanks
|
1/28/2004 7:11:34 PM
|
| Mr. Bumpy |
Kenyon, Mn.
|
So Kyle, I NEVER open any emails from ANYONE, I haven't emailed, now I am not a computer whiz, but, as long as I don't open these(and I have been getting them at my yahoo addy) I am ok,correct?
|
1/28/2004 7:15:09 PM
|
| southern |
Appalachian Mtns.
|
Don't open them Bumpy..... I'm getting them from growers addresses that I have corresponded with so I can't trust any with attachments, unless someone tells me in advance. None of the e-mail addresses I'm getting them from are random generated....the virus has gotten into someone's address book that has mine in it. I'm talking about *my* particular situation, not anyone elses. If my Yahoo e-mail addy is in your address book, please run the removal program.
|
1/28/2004 7:39:20 PM
|
| Alun J |
Liverpool , England
|
I got one in mine last week..it attacked my norton anti-virus. I have reset my PC to factory settings and have no addresses in there at the moment. I'm in the clear..but have had virus riddled emails from growers whom I have never emailed at all.
Alun
|
1/28/2004 8:25:16 PM
|
| Pennsylvania Rock |
[email protected]
|
"Hi", "Hello", Server Report", are just a few of what I recieved today in my 10 emails that were deleted at my main server. The email addys are none that I have ever heard of, and the email itself comes in frommy ISP's main frame computer already cleaned saying it was a virus laiden email that was found and deleted at the main frame of ROadrunner Internet Service.
I also run Macafee, and have noticed the automatic updates which I subscribe to being updated every single day, where last month, I didnt get any updates for a while, so the anti-virus companies are hard at work to get this out.
One of my biggest problems right now (besides these pesky emails) are adware spy programs that also embed and hide trojan viruses. I have run my full computer scan nearly every single day, quarantine the adwares daily, and delete the trojans daily, but they continually come back. It is a constant battle it seems.
Here is a few of the email addys I got these so called virus laiden emails from... If you recognize them, maybe it is coming from your computer..
[email protected] [email protected] [email protected]
Hope it ends soon, for me it is just a delete, the virus doesnt get past the ISP, but for others without this protection, it could be spreading through you.. Take a look..
|
1/28/2004 9:44:12 PM
|
| Azkikn |
Usa
|
I ran it and I have received the virus 2 x and not opened it. I received it from people I never heard of before. I don't have but 4 e-mail addresses in my e-mail so I don't have to worry to much about sending it to too many people.
|
1/29/2004 1:17:47 AM
|
| Skip S. |
|
Trend micro has a "house call" program to use to see if you have the virus/worm. http://www.trendmicro.com/en/home/us/personal.htm I use it. You can also type in www.antivirus.com I would suggest running antivirus software and keeping it up to date. Bait
|
1/29/2004 1:44:33 PM
|
| steelydave |
Webster, NY
|
My daughters computer had 54 virus' and norton could not identify anyone of them. I took the computer to get checked out, and he told me that if using kazaa or some other music downloading software, virus' come in as partial mp3 files and can't be detected by norton. I don't think it has anything to do with the mydoom virus, but it just shows how these things can sneak into computers even with good, updated virus software.You really have to be careful about this stuff.
Dave
|
1/29/2004 2:54:54 PM
|
| Skip S. |
|
Steelydave You may have had spyware or adware. Often referred to as a virus. An invasion of your privacy. http://www.lavasoftusa.com Lavasoft has a free utility to download. It quickly scans and will remove> Bait
From lavasoft>>Most people are familiar with freeware, shareware, cookies, media players, interactive content, and file sharing. What they may not realize is that some of the aforementioned may contain code or components that allow the developers of these applications and tools to actually collect and disseminate information about those using them. They can track your surfing habits, abuse your Internet connection by sending this data to a third party, profile your shopping preferences, hijack your browser start page or pages, alter important system files, and can do this without your knowledge or permission. The security and privacy implications of these exploits should be quite obvious and undesirable on any system or network!
|
1/29/2004 4:22:44 PM
|
| moondog |
Indiana
|
The lavasoft software works great and can even speed up your machine. Steve
|
1/29/2004 4:27:41 PM
|
| docgipe |
Montoursville, PA
|
Norton has grabbed a couple. My ISP has grabbed an average of six per day for the last week. The good word is that Norton is better equipped to protect in this instance than my server. I think we are all reasonably well protected if we have one of the major protectors plus our ISP's.
|
1/29/2004 5:10:06 PM
|
| Giant Veggies |
Sask, Canada
|
WARNING:
Lavasoft program works great, actually to great.
I installed an ran the program and it cleared everything that was infected, not realizing certain needed files were changed by spyware/adware I quarantined everything. BIG mistake some files were related to my ISP and I then could not connect to the internet and as well it completely wiped out my e-mail program. I tried to restore the files but it did not work. I was left with having to restore my computer (windows XP) to a previous date. I now have internet access but I could not save any e-mails. (any one that e-mailed me if it was important please e-mail again)
I will retry lavasoft but pay more attention to what files get quarantined.
TTYL Ernie Giant Veggies
|
1/30/2004 10:41:19 AM
|
| steelydave |
Webster, NY
|
Unfortunatly, I am very familiar with spyware also. Her computer was loaded with that also, as well as mine. I clean up mine weekly from the spyware.
|
1/30/2004 10:53:17 AM
|
| overtherainbow |
Oz
|
ad aware is a free drive inspection program
|
1/30/2004 4:00:28 PM
|
| overtherainbow |
Oz
|
steve gibson has a great stealth port utility grs.com
|
1/30/2004 4:01:43 PM
|
| Pennsylvania Rock |
[email protected]
|
I finally have seen an email address I know that is laiden with the doom virus. I got 7 more today, all cleaned at my ISP, one was Chris Andersens email address. This problem is definitely someone in the pumpkin world doing this to all of us. Please go out and update your virus patterns people, update your DAT files, and get your computers scanned and cleaned. This is such a pain in the ass to deal with. My computer is not infected, I repeat not infected, but sadly, some people in this pumpkin world have this virus..
|
1/30/2004 8:17:49 PM
|
| steelydave |
Webster, NY
|
I got one that said it was from Nic Welty today. Erased it right away. I'll be upgrading mine again today and running it later.
|
1/30/2004 8:43:54 PM
|
| Tremor |
[email protected]
|
I got an email from Pumpkin Nook acknowleging my recent high bid in the round 2 of their seed auction. Trouble is I didn't bid in round 2. I checked the auction status to make sure I liked what I was bidding on. LOL....But the auction was over & I hadn't won anything.....Weird.
|
1/31/2004 7:01:21 AM
|
| southern |
Appalachian Mtns.
|
I got 2 already today with the Win Novarg.32.aa virus....
|
1/31/2004 10:31:50 AM
|
| BrianInOregon |
Eugene, OR
|
Kyle, you're not getting any infected emails from me are you? I don't use an address book and I've scanned my computer using the latest virus patter that claims to remove the MyDoom virus and nothing has shown up.
|
1/31/2004 2:03:54 PM
|
| Mr. Bumpy |
Kenyon, Mn.
|
Ernie, I had the same thing happen with the lavasoft program, had to download another utility to retrieve the needed files, I dumped lavasoft.Any other "safe" utilities out there??
|
1/31/2004 7:44:42 PM
|
| Total Posts: 30 |
Current Server Time: 5/2/2026 5:02:36 PM |