Back Forum Reply New

Mass Mailing Worm: myDoom or NORVAG

Don't open any emails with subjects of this nature.

It can confuse us hear especially, since our formum is called Doom9.

If you subscribe to the topics, make sure you actually read the subject line, and don't assume it since it says Doom, it's from here.

Just a friendly heads up to all aware users!!

I'm probably going to get email from replies of this topic.

Cheers!!  

DK64_MASTER

no such problem with webmails

from RAV-AntiVirus:

Depending on the current time, the Win32/Mydoom.A@mm will try to initiate a DoS attack to by sending at regular time intervals from GET requests from up to 63 threads simultaneous. Also, depending on the current system time the worm will not spread any more.

:-)

Anybody who can send this mail to me??

I want to be infected for a change! /me goes to sniff in his bulk mail folder... Crap! Emptied it this morning...

For once in a while a usefull virus

Some are getting more hits than others. I'm hosting nic (amongst others) and so far TODAY he's got 127.476 eMails... My server can still cope with this load but if this continues (or someone else here starts getting the same load) I will have to shut down my mailserver...

Originally posted on timesonline.co.uk
Besides sending out tainted e-mail, the program appears to open up a backdoor so hackers can take over the computer later.

Symantec said the worm appeared to contain a program that logs keystrokes on infected machines. It could collect username and passwords of unsuspecting users and distribute them to strangers.

Guess I won't get infected after all.  dDoSing SCO is fine, but a security hole and keylogger? No thanks .

On a more serious note: I WISH every mailserver-admin would STOP sending a 'You've sent a virus' to the Reply-to-header since that person (at least in 99.99% of the cases) is NOT the one that sent the virus in the first place.

This SIMPLE rule would lower the load of every mailserver in the world at least 95%. Or at least STOP the stupid return of the entire mail as that thing alone increases traffic at least ten times!

(BTW, the amount of eMails recieved is now 137.532)

To be honest,
I've never been infected by email worm virus from the day I was born
until today!!!
Trust me, quot;carefulquot; is the most effective way to avoid this stupid worm!
I can conclude that only stupid people will be infected by stupid worm! LOL!

Trust me, quot;carefulquot; is the most effective way to avoid this stupid worm!
I can conclude that only stupid people will be infected by stupid worm! LOL!

Very much true.. I wish I could be so frank but a large audience also means a lot of people to potentially insult/piss off.

Not even a semi-private address helped this time. I also got a few of those mails at work and that address isn't widely known either.

Originally posted by Doom9
Not even a semi-private address helped this time. I also got a few of those mails at work and that address isn't widely known either.

Heh, I was logged in at my shell the other day and it said quot;You have mailquot;. So I fire up pine, and see like 20 spam mails. Now this is at an address I didn't even know existed (I knew I should have a mailbox on that shell, but didn't know the address, and didn't care either)! Weird things happen. Didn't get a mydoom on there though.

Talking about weird things: as you know, the adress of the sender is faked. Now I have a mailaccount at the german provider GMX. You get two adresses (I'll call them quot;myadress1/2quot;) for one account. Two days ago I got a mail from quot;myadress1quot; to quot;myadress2quot;! How the hell can this happen? How does one know that these two adresses belong to one account?
The other interesting this is that you get failure notices for mails you never sent. Strange world.
Best regards,
JimiK

Originally posted by JimiK
Two days ago I got a mail from quot;myadress1quot; to quot;myadress2quot;! How the hell can this happen? How does one know that these two adresses belong to one account?

Pure coincidence. Your quot;myaddress1quot; is probably sent as sender-address in spam mails to many other email addresses as well.

), try to get a list of users.

Originally posted by Swede
On a more serious note: I WISH every mailserver-admin would STOP sending a 'You've sent a virus' to the Reply-to-header since that person (at least in 99.99% of the cases) is NOT the one that sent the virus in the first place.I totally agree! My public and catchall webmail accounts are packed full of those darn messages along with original emails with the worm ZIP file attachments.  

I can always tell it's the same one, just with a different subject heading, because the entire email is exactly 31KB is size always.

quot;Deletequot; is my friend.  

This link to the stinger removal tool may save a little time for some of the folks reading the thread.
vil/stinger/ as well as this informational one - vil/content/v_100983.htm

I could throw up because of this shit meanwhile. I am moderating 16 mailing lists as of today, i guess you all can imagine what this means for me, since this stupid worm is out  ....

I totally agree! My public and catchall webmail accounts are packed full of those darn messages along with original emails with the worm ZIP file attachments.

Anymore I keep 2 separate junk folders for my various mail filters to deal with.  One is traditional junk mail, in case I need to find a good deal on Viagra, Valium, getting rich quick, or young teens that like farm animals.

But the second and newer one is for the various messages about undeliverable mail, viruses, and helpful warnings from some system administrator overseas.  Recently the crap ratio is more than 5 to 1 in favor of this second folder.  They seriously need to turn this stuff off.

I've been getting 1-2000 messages a day for the past few days.

- Tom

quot;If you subscribe to the topics, make sure you actually read the subject line, and don't assume it since it says Doom, it's from here.quot;

Are you sure? There is no more anti-M$ and anti-corporate than Doom9...   

__________________________

I'm not using junk folder but a junk address/
I have a private adress for job, friends, family etc,

All the junk (internet subscription, forums, pronsites  etc) I let it to Yahoo!-mail to deal with it!
¥
Back Forum Reply New