Just a little Pat trivia (the group now has 150+ members).
Has Pat started in the new Dr. series yet ?
The Spammer is gone.
I haven't used outlook for years, but I do recall that it does things it
shouldn't do without asking 1st. Executing the wrong programs b4 checking for
virus is one. Trend has made an alert on just such an item below. If you use
outlook or any other mail program that auto opens files ie: Html, shtml, java,
exe, zip etc.. you might check out the note below or configure your program to
let you do the thinking on whats safe whats not.
1. Trend Micro Updates - Pattern File and Scan Engine Updates
2. It's Not Your Password - WORM_FRETHEM.E (Medium Risk)
3. "World Cup" Worm Withered - VBS_CHICK.F (Low Risk)
4. 10 Most Prevalent In-the-Wild Malware Surveyed by Trend Micro US
5. Trend Micro PC-cillin 2002 Now Available
NOTE: Long URLs may break into two lines in some mail readers.
Should this occur, please cut and paste the URL in your browser.
************************************************************************
1. Trend Micro Updates - Pattern File and Scan Engine Updates
------------------------------------------------------------------------
PATTERN FILE: 299 http://www.antivirus.com/download/pattern.asp
SCAN ENGINE: 6.150 http://www.antivirus.com/download/engines/
2. It's Not Your Password - WORM_FRETHEM.E (Medium Risk)
------------------------------------------------------------------------
This non-destructive, memory-resident worm propagates via Microsoft Outlook by
sending email to all addresses listed in the infected user's Windows Address
Book, and in .DBX files where Microsoft Outlook Express archives emails. It
arrives as an attachment to an email message with the following:
Subject: Re: Your password!
Message Body: ATTENTION!
You can access very important information by this password
DO NOT SAVE password to disk
use your mind
now press cancel
Attachments: Decrypt-password.exe
password.txt
This worm exploits the incorrect MIME (Multipurpose Internet Mail Extensions)
header vulnerability and IFRAME security hole that automatically runs the
attachment of an HTML email when a user reads or previews the email. This
vulnerability allows the worm to install itself in the system without the user
double clicking or opening the attachment.
If you would like to scan your computer for WORM_FRETHEM.E or thousands of other
worms, viruses, Trojans and malicious code, visit HouseCall, Trend Micro's free
online virus scanner at: http://housecall.antivirus.com/
WORM_FRETHEM.E is detected and cleaned by Trend Micro pattern file #298 and
above.
For additional information about WORM_FRETHEM.E please visit:
http://www.antivirus.com/vinfo/virusencyclo/default5.asp?VName=WORM_FRETHEM.E