Page 2 of 2

Posted: Wed Jul 25, 2001 6:43 am
by sinner
As most of you have correctly deduced, it is a nasty virus.

The sender has no idea of what is going on on their machine. Yes, the virus has its own mail program, so it does not use Outlook Express or whatsoever. That's why they claim that nothing has been e-mailed from their computer.

The virus takes the e-mail addresses from "contacts" files, "addressbooks" and similar files that the mail prorgams store in your PC. That's why you recognize the names.

The virus, everytime that the PC gets started, "rolls the dice" and you have 1 chance in 33 that it will fill up your entire empty space in your disk with nonsense, making your computer sure to crash for having Zero empty space.

Next, the virus will check to see if the date is October 16. If it is and the Windows operating systems is using a European date format (day/month/year), then it will again generate a random number that has a 1 in 20 chance of triggering the machine to delete all the files on the hard drive.

Finally, it will export a random document form the hard drive and append it to the body of the virus when it propagates itself to other users. This could present a privacy breach if the document is confidential.

Please, ve very carefull. McAffe qualifies it very dangerous.

Check also http://www.zdnet.com/zdnn/stories/news/0,4586,2792260,00.html?chkpt=zdnnp1tp02 for more information on the Virus.