![]() |
€uromeinke, FEJ. and Ghoulish Delight RULE!!! NA abides. |
|
![]() |
#1 |
thankfully grateful
Join Date: Jan 2005
Location: shangrila
Posts: 1,388
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
VIRUS warning- critical
ZOTOB worm spreading quickly across the nation this hour. seems to be exploiting Windows 2000 95 98 ME and XP.
__________________
|
![]() |
Submit to Quotes
![]() |
![]() |
#2 |
thankfully grateful
Join Date: Jan 2005
Location: shangrila
Posts: 1,388
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Zotob.A is a worm targeting Windows 2000–based systems which takes advantage of a security issue that was addressed by Microsoft Security Bulletin MS05-039. This worm installs malicious software, and then looks for other computers to infect.
Important If you have installed the update released with Security Bulletin MS05-039, you are already protected from Zotob.A. If you are using any supported version of Windows other than Windows 2000, you are not at risk from Zotob.A. As part of our Software Security Incident Response Process, our investigation has determined that only a small number of customers have been affected, and Microsoft security professionals are working directly with them. We have seen no indication of widespread impact to the Internet. Customers who believe they have been attacked should contact their local FBI office or post their complaint on the Internet Fraud Complaint Center Web site. Customers outside of the United States should contact the national law enforcement agency in their country. ![]() ![]() When Zotob.A infects a computer, it attempts to deliver a malicious file named Botzor.exe. If your computer is infected, this file will be present and your registry will show changes. Use any of the following methods to check for infection. (If you find the file, you do not need to check the registry, and vice versa.) Search your computer for the Botzor.exe file 1. Click Start, point to Search, and then click For Files and Folders. 2. Click Use Advanced Search Options. Under Search by any or all of the criteria below, enter the following information: A. Under All or part of the file name: enter Botzor.exe. B. Under Look in: click Local Hard Drives. C. Under More Advanced Options, select Search system folders and Search hidden files and folders. 3. Click Search. Look for new keys added to the registry •In registry key HKLM\Software\Microsoft\Windows\ CurrentVersion\Run added value WINDOWS SYSTEM with data of botzor.exe •In registry key HKLM\Software\Microsoft\Windows\ CurrentVersion\RunServices added value WINDOWS SYSTEM with data botzor.exe ![]() Help protect your computer against Zotob.A by installing Security Update 899588. Find the download link for your version of Windows in Microsoft Security Bulletin MS05-039. If Your Computer Is Infected Follow the Zotob.A recovery steps in the Microsoft Antivirus Encyclopedia.
__________________
|
![]() |
Submit to Quotes
![]() |
![]() |
#3 |
Nevermind
|
Thanks, Mickey!
|
![]() |
Submit to Quotes
![]() |
![]() |
#4 |
Cruiser of Motorboats
|
Yeah, thanks for the heads up, ML.
![]() |
![]() |
Submit to Quotes
![]() |
![]() |
#5 |
thankfully grateful
Join Date: Jan 2005
Location: shangrila
Posts: 1,388
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
both WDW and DLR computers were hit today. "the office" was down for several hours this morning. though, i do NOT know if it was related to this virus.
__________________
|
![]() |
Submit to Quotes
![]() |
![]() |
#6 |
Title
Join Date: Jan 2005
Location: here
Posts: 779
![]() ![]() ![]() ![]() |
In some reports I have read on this
__________________
Signature
![]() |
![]() |
Submit to Quotes
![]() |
![]() |
#7 | |
Chowder Head
Join Date: Jan 2005
Location: Yes
Posts: 18,500
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
Quote:
Not to rub it in or anything
__________________
The thing about quotes on the internet is that you cannot verify their validity.
- Abraham Lincoln |
|
![]() |
Submit to Quotes
![]() |
![]() |
#8 | |
Arrrrrrrrrrrrrrrrrrr
|
Quote:
|
|
![]() |
Submit to Quotes
![]() |
![]() |
#9 |
thankfully grateful
Join Date: Jan 2005
Location: shangrila
Posts: 1,388
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
this worm (thanks Name) hit both Anaheim and Orlando resorts in a big way!
__________________
|
![]() |
Submit to Quotes
![]() |
![]() |
#10 |
thankfully grateful
Join Date: Jan 2005
Location: shangrila
Posts: 1,388
![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() |
let me add to the above post that only Networked office computers have been affected at the resorts by the worm.
__________________
|
![]() |
Submit to Quotes
![]() |