Bad-Trans B VIRUS

Message Bookmarked
Bookmark Removed
You may have heard of an absolute bastard of a computer virus that's been tracked down called BadTrans-B. Well, despite having the latest virus shields etc I caught the bug on Tuesday + appear to have unwittingly spread it around, possibly to some here.

Then my partner got it sent today from a completely different source. Thus a thousand apologies to anyone I may have sent it to + be extra careful opening attachments.

stevo, Thursday, 29 November 2001 01:00 (twenty-four years ago)

Wot does it do?

DG, Thursday, 29 November 2001 01:00 (twenty-four years ago)

I delete everything with an attachment anyway unless I know it's coming.

Mind you I barely ever reply to e-mail so it's not so's anyone here would know.

Tom, Thursday, 29 November 2001 01:00 (twenty-four years ago)

Just recieved the following:

Please be advised that there is a high risk virus "W32/Badtrans@mm" circulating via email, this virus has infected multiple home and business PC's outside of Bombardier Aerospace. The infected PC's will attempt to send an email containing the virus to all email addresses listed within its address book. The email will contain an attachment which contains the virus. The virus cannot be activated unless you either launch, view or detach the attachment. The attachment will have an extension of either .pif .scr; a suspect attachment will appear with the following type of name. [title].doc.pif [title].MP3.scr [title].ZIP.pif Other variations of the above may also be used as the virus develops.

The virus also contains a second payload which will log all keystrokes on an infected PC, this will allow it to record any passwords or credit card details, the infected PC will attempt to mail the IP address of an infected system to the virus author. The author may then be able to connect to the infected PC and retrieve any information logged by the virus.

stevo, Thursday, 29 November 2001 01:00 (twenty-four years ago)

Even if you never open attachments, it can still infect you. Because outlook express is such a joke security-wise, even clicking on the email in order to delete it can run the virus and infect your computer! That's what happened with me. More details are at:

http://securityresponse.symantec.com/avcenter/venc/dat a/[email protected]

Steve.n., Thursday, 29 November 2001 01:00 (twenty-four years ago)

If you've got 'kernel32.dll' on your windows/system/, does that mean you've got this thing? or would it be there anyway? 'Cause I haven't opened any dodgy spam recently, or anything with an attachment... or anything at all in the last five or six days...

Al, Thursday, 29 November 2001 01:00 (twenty-four years ago)

This is why Macs are so brilliant.

suzy, Friday, 30 November 2001 01:00 (twenty-four years ago)

aha, Colin Blakey and Frantristram? yeah i got em, who knows, maybe i infected my work computer, or the one in the internet cafe!

gareth, Friday, 30 November 2001 01:00 (twenty-four years ago)

Why have you got an email from my mother? Cor.

emil.y, Friday, 30 November 2001 01:00 (twenty-four years ago)

Farnistram (??) one? I opened it on my WAP phone. Later my phone read CARD ERROR but then again I had also dropped it on the bathroom floor chiz.

Sarah, Friday, 30 November 2001 01:00 (twenty-four years ago)

I got a 'Frantristram' mail and deleted it without opening the attachment. Apparently, according to an internal BT newsletter (wot I pinched off my dad) the BT Internet tech people have inadvertently infected dozens of customers, cheers cheers.

DG, Friday, 30 November 2001 01:00 (twenty-four years ago)


You must be logged in to post. Please either login here, or if you are not registered, you may register here.