I wanted to take a moment to warn everyone that the Badtrans virus is back.
I've received 4 in the last hour. This time around, it is alittle different
than previously, so you will need to update your anti-viral software.
Name: W32.Badtrans.B
Definition: Worm with back-door trojan
Discovered November 24, 2001
The "From" address will appear with an underscore in front of it. It will
look something like this: _johnsmith(a)abc.com
The virus arrives as an attachment. Possible file names are:
HUMOR
DOCS
S3MSONG
ME_NUDE
CARD
SEARCHURL
YOU_ARE_FAT!
NEWS_DOC
IMAGES
PICS
NEW_NAPSTER_SITE
Possible extensions:
.doc
.mp3
.zip
.pif
.scr
If the download is executed, the worm copies itself as kernel32.exe in the
"windows\system" directory.
You can read more about Badtrans.B at:
http://securityresponse.symantec.com/avcenter/venc/data/w32.badtrans.b@mm...
Please remember that Rootsweb does not allow attachments to pass through
their system. If you receive the contaminated attachment, it has come from
an infected subscriber.
Thank you for your time,
Tracy
CALLAGHAN list admin
NUGENT list & board admin