[CW] W32.Klez.e@MM virus
David J Ring Jr
[email protected]
Tue, 23 Apr 2002 09:46:30 -0400
Excellent Jim,
Now if you do get those postmaster messages, follow the directions for manual
removal. This virus has the ability to fool the anti-virus programs, so who knows
they may have out foxed the removal tool.
The postmaster messages are the warning. If you get another give me the whole
message including the header. If you look at the header, you will see that the
mail exchanger at verizon.com will have a received from IP address.
You can check and see if this is your ip.
Here is a place:
http://www.sinc.sunysb.edu/cgi-bin/MyIP
73
DR
On 22 Apr 2002 at 18:29, Jim Reid wrote:
Hi David, you wrote, in part:
> Here is NORTON's removal tool - they tell you to use this first.
> http://securityresponse.symantec.com/avcenter/venc/data/
w32.klez.removal.tool.html
Ok, did ALL as specified via the "removal tool", and as the v-scan
earlier had reported:
"None of W32.Klez.E@mm, W32.Klez.H@mm, W32.Elkern.3587,
W32.Elkern.4926 were
found on your computer."
Above was the log report after doing, as the instructions specified,
running the "tool" two times. Shut down System Restore as
instructed, and remembered to restart after the "tool" did
it's thing. So my computer IS V Free!!
Much peace to my mind now! And, evidently I have never, in
the past weeks, had this thing in the machine.
73, Jim KH7M