[parisc-linux] [OT] klez virus

Timothy Ball timball@tux.org
Tue, 3 Sep 2002 17:03:22 -0400


So it seems that a couple of people on this list have been hit w/ this
little stupid windows virus. Not that it's actually possible for anyone
running linux, but the virus is sneaky and likes to forge "From:"
lines...

So here's a little thing I've prepared to help people on list figure out
what they have to do:

--snip--snip--snip--
Both you and I have been targeted by the klez virus, it is a virus that
fakes email "From:" headers to mask the true origin of what computer actually
sent you the virus. I assure you that there is very little way *I* could have
this virus. The virus targets microsoft outlook users and internet explorer 
users, and since I use linux there is very little chance that the virus 
came from me.

Read more about the virus at and how it infects and spreads at (the jmu 
article geared towards students is probably the best): 

http://www.jmu.edu/computing/security/info/klez.shtml
http://www.wired.com/news/technology/0,1282,52174,00.html
http://www.messagelabs.com/viruseye/

The jmu article will explain how to best track down who actually sent 
you a copy of the virus. Once the actual person responsible for infection 
is found they can use the freely available klez virus remover from symantec:

http://securityresponse.symantec.com/avcenter/venc/data/w32.klez.removal.tool.html

It's not me, it's the virus.

--timball
--snip--snip--snip--


-- 
	GPG key available on pgpkeys.mit.edu
pub  1024D/511FBD54 2001-07-23 Timothy Lu Hu Ball <timball@tux.org>
Key fingerprint = B579 29B0 F6C8 C7AA 3840  E053 FE02 BB97 511F BD54