Hello

   This  message  is  for all the polish users, and for all of you that are
   reading my email.

   PLEASE  REMOVE  MY  ADDRESS FROM YOUR ADDRESS BOOK (if it is there), and
   CHECK YOUR COMPUTER FOR VIRUSES.

   Please   also   set  Outlook  Express  in  order  that  it  doesn't  put
   automatically all email addresses in its address book.

   Here comes the explaination for that I'm asking.

   First of all I'm sorry for bothering you, but there's a BIG problem that
   affects one of the polish subscribers to this list.

   The  problem  is  that the computer is seriously compromised by a Virus:
   that's the Bagle.AH virus.

   This  virus exploits a bug from Outlook Express to spread itself through
   email. It actually sends hundreds of emails with itself as attachment.

   There's also another problem: it uses a FAKE email address in the "from"
   field, so it seems that the sender is someone else.

   Maybe now you're wondering whay is MY problem...

   Actually  MY  problem  is  that this virus is using MY OWN email address
   ([EMAIL PROTECTED])  to  spread  through  email, and I'm getting complaints
   about that from dozens of ESN sections from all the Europe.

   As I told before, the virus comes from a polish user of our list.
   The originating IP address is: 62.179.55.245
   The  "infected"  user  connects  from  Warszawa, and its provider is UPC
   Telewizja Kablowa (Chello Poland).

   Here there are some details about that virus:

   Bagle.AH  is  a  worm  that  affects  Windows XP/2000/NT computers only.
   Bagle.AH   opens   and  listens  to  a  TCP  port,  waiting  for  remote
   connections.  By doing so, it allows hackers to gain remote control over
   the affected computer in order to carry out malicious actions that would
   compromise user's confidentiality or impede normal work.

   Bagle.AH  ends  processes belonging to antivirus programs and firewalls,
   among others. This leaves the affected computer vulnerable to the attack
   of other malware.

   Additionally, this worm connects to several web pages that contain a PHP
   script.

   It  also  eliminates  the  entries  in the Windows Registry belonging to
   several variants of the worm Netsky.

   Bagle.AH  spreads  via e-mail in a message with variable characteristics
   and through peer-to-peer file sharing programs (P2P).

Greetings,
Paolo


_______________________________________________
Esn-sections mailing list
[email protected]
https://list.esn.dk/mailman/listinfo/esn-sections
**************************************************************************
* [email protected] on Suomen ESN-jaostojen yhteinen postituslista.     *
*                                                                        *
* Listoille liittymisest� ja poistumisesta huolehtii [EMAIL PROTECTED]
* L�het� yll� mainittuun osoitteeseen s�hk�posti, jonka TEKSTIKENTT��N   *
* kirjoitat jonkin alla olevista komennoista:                            *
*                                                                        *
*      subscribe esn-sf [EMAIL PROTECTED]                            *
*      unsubscribe esn-sf [EMAIL PROTECTED]                          *
*                                                                        *
* Jos et saa tolkkua ohjeista, ota yhteytt� [EMAIL PROTECTED]     *
*                                                                        *
* Arkisto: www.mail-archive.com/[email protected]/maillist.html         *
**************************************************************************

Reply via email to