Posted on 9/18/2001, 11:22:49 PM by Sabertooth
Description
A new worm called W32.Nimda.A@mm has been discovered and is impacting systems around the world. This new worm takes advantage of vulnerabilities left by the recent Code Red worm and its variant - as well as spreading via e-mail and by visiting infected websites (internet and intranet).
Action Required
PLEASE READ AND FOLLOW THESE INSTRUCTIONS:
1. Search your root folder (usually c:\) for a file called admin.dll that has a "modified date" within the last 24 hours.
a. Legitimate files with the same name may appear in other directories, but only the suspect file will appear in your root folder - and have a modified date within the last 24 hours.)
b. If you find admin.dll in your root folder, and it has been modified within the past 24 hours, immediately disconnect your machine from the corporate network.
2. Do not open any attachments with "readme" in the filename.
b. Use extreme caution when checking any non-corporate e-mail accounts (including Hotmail, Yahoo mail, etc.).
Additional Actions
Limit web browsing to critical business need. Browsing impacted sites may compromise your system.
If I'm mistaken in this you can let me have it with barrels blazing, because I'm new to the Freeper thing.
Regards,
Sabertooth
ps. One other suggestion: Get a Mac, as we're probably immune again.
My dear brother and sister FReepers,
At this, of all times in my lifetime, I would like nothing more than to be able to read these threads and reply to them. I have much I would like to say.
BUT, I cannot!
Why?
Because I am trying hard to raise the finances needed to keep FreeRepublic up and running so that we can continue to share valuable information and respond to it.
I beg you, if you have not yet donated to FreeRepublic this quarter, do so now!
"And if you have donated, God Bless You, please ping your friends, and FReep on..."
I realize you are giving to lots of Relief efforts and I encourage you to do so. But we need to help FR too. Where would we be right now without it?
If you have no money, please come and bump the Fundraiser Thread.
I would really like to reach our goal quickly so that I and the rest of the dedicated FReepers who are working the Fundraiser Threads can participate in what is undeniably the most important time in FreeRepublic's history.
WHERE WOULD YOU GET YOUR NEWS FROM IF FREEREPUBLIC WASN'T HERE? <--click here
Support FreeRepublic! Support the U.S.A. <--click here
I have deleted many virus messages in the past two months alone. Most were the same virus from different addresses: "Please advise." But I had never previously gotten one without a return address, which makes me believe that this was not random.
Context: The previous day, I had written to an American-based PLO website, mediamonitors.net, asking the editor and founder, Muhammad Ali Khan, if he had any response to a hoax that someone had prepetrated at FR in the name of media monitors. The post had claimed that a (bogus) report had shown that Israel's Mossad had prepetrated the 911 attacks. JimRob deleted the post and shut down the poster (TruthBites (mediamonitors.net), but not before I copied it. I never got a signed response from Muhammad Ali Khan, though I did get an immediate response from someone else I'd written, who was implicated by the bogus report, saying it was news to him.
I should have said he found Sir Cam files but of course, using lotus Notes none of them were ever opened, so he wasn't actually infected.
Yemenis Abroad 1157 Entries so far
Name : A.A.A Ali
Currently residing in: america
E-Mail :ysana03@hotmail.com
Homepage :http://www.hackers.com
Describing him/herself and his/her activites A.A.A Ali Says:
hello i am a computer hacker and need another
computer engineer to help me make a virus
get in touch with me as soon as possible i am willing
to pay up to $5,000
Submitted On Saturday, September 08, 2001 at 08:27:11 (CDT) by A.A.A Ali
This morning, on Google, a notification that the area I was in was infected with the BloodhoundHybrid virus.
Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.