PDA

View Full Version : Mydoom - Update



Samurai
02-02-2004, 12:38 AM
For those who haven't yet heard...

http://us.news2.yimg.com/us.yimg.com/p/nm/20040130/mydoom_virus_graphic.gif

A cyber dragnet aiming to flush out the author of the MyDoom computer worm intensified on January 30, 2004 as the outbreak crippled still more e-mail networks. Investigators and security experts hoped their hunt would get a boost after Microsoft Corp. offered a $250,000 reward for information leading to the arrest and conviction of the creator of one variant, MyDoom.B




To summerise. Thick idiots opening attachments have caused this problem to the point where it is now the worst email worm incident in history. These people are probably the same idiots who 'don't believe in antivirus software' as they're only on 'now and again'.

Can everyone please ensure you only open attachments you know to be safe, or has been confirmed by the sender. Update your virus settings on a REGULAR basis or you'll be one of the lucky few who learn the hard way.

Samurai

Samurai
02-02-2004, 12:55 AM
Bump <_<

NightStalker
02-02-2004, 01:38 AM
Has it attacked the software company yet?

I don&#39;t see how the author&#39;s of malicious code can operate with such a bounty on top of their head, If I knew someone that created a virii and had a bounty for them, I sure as hell would turn him/her in. <_<

muchspl2
02-02-2004, 02:41 AM
well it knocked out sco according to cnet, guess karma works. :D

Samurai
02-02-2004, 08:49 AM
it seems it&#39;s kung fu is strong :lol:

Evil Gemini
02-02-2004, 09:52 AM
http://us.news2.yimg.com/us.yimg.com/p/nm/20040130/mydoom_virus_graphic.gif

Is number 3 true about it slowing down the internet ??

Its so stupid how people download things from sources unknown. Its not that hard.

If its from someone you dont know, dont download it or even if it is someone you know, make sure they have scanned it with an AV before sending to you and vice versa.

Samurai
02-02-2004, 10:19 AM
http://www.theshulers.com/whitepapers/images/ruswp_diag5.gif

I guess if the NSP&#39;s and NAP get infected, then it could well be possible.

All this due to public ignorance <_<

MagicNakor
02-02-2004, 11:07 AM
MyDoom&#39;s pretty cute. He doesn&#39;t evoke the terror of Doom that I thought he would.

Almost could be on a kid show.

:ninja:

tracydani
02-03-2004, 09:25 AM
LOL, I was thinking something pretty similar :lol:

TD

Samurai
02-03-2004, 09:42 AM
I believe the virus may have worked it&#39;s way to Micro&#036;oft.

I can&#39;t seem to access my MSN mail :angry:

muchspl2
02-03-2004, 09:53 AM
Originally posted by MagicNakor@2 February 2004 - 06:07
MyDoom&#39;s pretty cute. He doesn&#39;t evoke the terror of Doom that I thought he would.

Almost could be on a kid show.

:ninja:
ha yea its my AV on another forum

http://members.cox.net/ot_web_space/mydoom.gif

I like him

SeK612
02-03-2004, 01:07 PM
http://sek612.netfirms.com/Virus1.jpg

http://sek612.netfirms.com/Virus2.jpg

I got a few of them in one of my email accounts. Its pretty easy to get infected if you don&#39;t know what your doing (I get loads of crap in that account so I usually just delete anything from anyone I don&#39;t know). The virus is supposed to die on Feb 14th.

Microsoft&#39;s guide for dealing with the virus: http://www.microsoft.com/security/antivirus/mydoom.asp

echidna
02-05-2004, 08:38 AM
The only annoyance i&#39;ve suffered from this worm/virus is having to attend to AV dialog prompts for heaps of emails coming in with the virii attached.
Then today i got one with my address as the sender&#33;
But i&#39;d already cleaned my uninfected system with a full AV scan with the latest definitions&#33;
I searched and found that mydoom has a sneaky trick
It spoofs both the to and from addresses with real and &#39;plausible&#39; addresses,
see;
http://loosewire.typepad.com/blog/2004/01/...m_is_smart.html (http://loosewire.typepad.com/blog/2004/01/mydoom_is_smart.html)

I&#39;m curious to learn of the effects this mass infection has wrought,
if as i have heard it is targeting M&#036; and &#036;CO i don&#39;t particularly care if they and their shareholders suffer.
But all of the millions of ignorant hotmail dependents shouldn&#39;t have to needlessly suffer, and what of the little mentioned trojan/backdoor aspect?
Aside from the DDoS aspect the main horror that is being wrought is clogging up network connections with all of the emails that the thing sends, apart from the backdoor it reads like it is basically benign in a local system (it doesn&#39;t delete your C: drive or all files *.mp*)

Everone knows the myriad way in which M&#036; sux, but FYI &#036;CO corperation is trying to charge a licence fee from linux users, and is pursuing lawsuits to that end.
see;
http://www.economist.com/business/displayS...tory_id=2020889 (http://www.economist.com/business/displayStory.cfm?story_id=2020889)
&
http://sco.com/scosource/linuxlicense.html
(sound familiar to any P2P advocates?)

Putting 2 & 2 together I recon that this worm/virus is some hideously geeky protest/sabotage, has anyone seen anything echoing such an analysis?
if so, is economic/political motivation any more defencible than &#39;ordinary&#39; exploits?
would anyone mind if the RIAA and sharman etc. were such a target?
are these rhetorical questions?
&, has anyone else got an incoming infection from themself?

atiVidia
02-05-2004, 10:41 PM
Originally posted by echidna@5 February 2004 - 03:38
Everone knows the myriad way in which M&#036; sux, but FYI &#036;CO corperation is trying to charge a licence fee from linux users, and is pursuing lawsuits to that end.
see;
http://www.economist.com/business/displayS...tory_id=2020889 (http://www.economist.com/business/displayStory.cfm?story_id=2020889)
&
http://sco.com/scosource/linuxlicense.html
(sound familiar to any P2P advocates?)

Putting 2 & 2 together I recon that this worm/virus is some hideously geeky protest/sabotage, has anyone seen anything echoing such an analysis?
if so, is economic/political motivation any more defencible than &#39;ordinary&#39; exploits?
would anyone mind if the RIAA and sharman etc. were such a target?
are these rhetorical questions?
&, has anyone else got an incoming infection from themself?
SCO is retarded... IBM.com/open

btw, yes, no, no, and yes&#33;

mogadishu
02-07-2004, 07:26 AM
well atleast the virus creater had an arguably noble purpose - to attack a company who apparently is fighitng open source.. I dont know the details, but atleast it has a purpose.. not just to fuck ppls pcs up.