Syafril Hermansyah wrote: >Pak Lukman, PC Anda terkena Virus tuh : > >This message has been scanned by MDaemon/DKAV and was found to contain >infected attachment(s). Please review the list below. > >Attachment Virus name Action taken >---------------------------------------------------------------------- >www.myparty.yahoo.com I-Worm.Myparty Removed > >Utk yg lain, jika ada mail dari Pak Lukman dg subject :new photos from >my party! langsung di delete saja. > Ini tambahan penjelasan dari Antivirus Club. (Saya sempat ketipu juga tuh, saya kira foto keluarganya, dan udah cukup lama nggak ketemu sobat yang satu ini, jadi pingin lihat dan langsung klik...)
Wasalam. ==================================================== Subject: [AntivirusClub] Jangan klik attachment www.myparty.yahoo.com <http://www.myparty.yahoo.com> W32/MyParty.A@mm <mailto:W32/MyParty.A@mm> 28 Januari 2002 Pengguna Outlook Express, Netscape Mail dan Eudora Mail harap anda berhati-hati jika menerima email dengan attachment seperti website link www.myparty.yahoo.com <http://www.myparty.yahoo.com> . www.myparty.yahoo.com <http://www.myparty.yahoo.com> BUKAN link tetapi merupakanfile virus (worm) W32/MyParty.A@mm <mailto:W32/MyParty.A@mm> . Jika anda mengklik link tersebut, worm akan langsung tereksekusi dan menginfeksi komputer anda. Setelah itu, dengan menggunakan setting smtp sendiri worm tersebut akan dapat mengirimkan dirinya sendiri ke seluruh alamat dalam address book anda. Artinya, walaupun anda tidak mengaktifkan Outlook Express komputer anda tetap akan mengirimkan worm tersebut. PENTING !!! Bagi anda pengguna Eudora Mail dan Netscape Mail, harap memperhatikan peringatan ini, karena komputer anda dapat terinfeksi oleh worm ini jika anda mengklik attachment yang disebutkan. Secara lebih detail, worm tersebut datang dengan : Subject: new photos from my party! Body: Hello! My party... It was absolutely amazing! I have attached my web page with new photos! If you can please make color prints of my photos. Thanks! Attachment: www.myparty.yahoo.com <http://www.myparty.yahoo.com> Worm ini tidak merusak tetapi cukup sukses mengelabui pengguna internet untuk mengklik dirinya sehingga dari saat pertama kemunculannya di internet, dalam waktu kurang dari 4 jam sudah langsung menempati peringkat pertama virus yang paling banyak ditemui oleh Message Labs ( www.messagelabs.com <http://www.messagelabs.com> ). Untuk menghindari worm ini : Jangan klik attachment. Update definisi antivirus anda. General characteristics Type: Worm Spreading mechanism: Email Email characteristics: Subject: new photos from my party! Body: Hello! My party... It was absolutely amazing! I have attached my web page with new photos! If you can please make color prints of my photos. Thanks! Attachment: www.myparty.yahoo.com <http://www.myparty.yahoo.com/> Destructivity: None Detected by virus detection files published: 28 Jan 2002 Virus characteristics first published: 28 Jan 2002 09:10 (CET) Virus characteristics latest update: 28 Jan 2002 12:19 (CET) Additional description of malicious program Type This is an email worm that sends itself to addresses in the Windows Address Book. Spreading mechanism The attachment name resembles a web page URL, however the file is really a Win32 executable. The file is compressed with the compression utility UPX. When executed it will copy itself to the RECYCLED folder and attempt to send itself to users found in the Windows Address Book and addresses found in DBX files (mail database files used by f.ex. Outlook Express). -- --[YONSATU - ITB]---------------------------------------------------------- Online archive : <http://yonsatu.mahawarman.net> Moderators : <mailto:[EMAIL PROTECTED]> Unsubscribe : <mailto:[EMAIL PROTECTED]> Vacation : <mailto:[EMAIL PROTECTED]?BODY=vacation%20yonsatu> 1 Mail/day : <mailto:[EMAIL PROTECTED]?BODY=set%20yonsatu%20digest>