Update Your Virus Program & Scan Your Computer - You have sent us message which contains The W32.Netsky at mm Virus

InterMedia info at intermedia-haiti.com
Thu Apr 15 05:30:27 UTC 2004


:::::::::::::::::::::::::::::::::::::::::::::::::::
W32.Netsky at mm Virus Alert
- You have sent us message which contains The W32.Netsky at mm Virus
- Update Your Virus Program & Scan Your Computer
See: http://vil.nai.com/vil/content/v_101145.htm
See: http://vil.nai.com/vil/stinger/
:::::::::::::::::::::::::::::::::::::::::::::::::::

Good Day,

If you received this e-mail it means a message was received by our servers,
indicating it was sent from your e-mail address, by the Netsky Virus.

If you did send us an e-mail with a virus free attachment, you need to
resend your message to 
attachment-safe at intermediahaiti.com
in order for it to be properly routed.

You may need to review the information below in order to resolve the problem
being created on your e-mail account by the W32.Netsky at mm Virus.

Best Regards,

InterMedia
The Internet Communications Network of Haiti
http://www.intermediahaiti.com
info at intermediahaiti.com

:::::::::::::::::::::::::::::::::::::::::::::::::::
The W32.Netsky at mm Virus and what you can do about it.
In short:
1) Take the actions recommended here
2) Forward this to everyone you know
:::::::::::::::::::::::::::::::::::::::::::::::::::

The W32.Netsky at mm Virus
http://vil.nai.com/vil/content/v_101145.htm
has become so highly prevalent on computers that, at the very least, it is
no doubt taking up a great deal of your time and energy to delete every day.
If your computer is infected you are creating an incredible amount of
trouble for your customary correspondents.

If you are receiving several of these virus messages a day it means people
who have your e-mail address in their address book, or who have received
e-mail from you on their computers, have the virus. 

The only way to hopefully eliminate this virus is to advise all the people
in your e-mail address book of its characteristics and the measures which
need to be taken to remove it from their computers.

The more people you advise, and the more people they advise, the better off
we will all be from this nuisance, and it will eventually be brought under
control. If not, you potentially face months of deleting tens or even
hundreds of messages every day.

There are simple removal tools available for free at:
http://vil.nai.com/vil/stinger/
http://securityresponse.symantec.com/avcenter/FxNetsky.exe

If you do not have an anti-virus program, or a current subscription allowing
you to update your virus definitions, we recommend you repeat this
debugging every week.

Please take a moment to review what is below in order to verify your own
computer, and we recommend you forward this message to everyone you know,
because if you did not send us a message, the probability is high, someone
who has your address on their computer is infected.

Best Regards,

InterMedia

:::::::::::::::::::::::::::::::::::::::::::::::::::
W32.Netsky at mm Removal Tool
:::::::::::::::::::::::::::::::::::::::::::::::::::

Symantec Security Response has developed a removal tool to clean infections
of the following Netsky variants. 
- W32.Netsky.B at mm 
- W32.Netsky.C at mm 
- W32.Netsky.D at mm 
- W32.Netsky.E at mm 
- W32.Netsky.K at mm 
- W32.Netsky.P at mm 
- W32.Netsky.Q at mm

What the tool does?
The W32.Netsky at mm Removal Tool does the following: 
- Terminates the W32.Netsky at mm viral processes 
- Deletes the W32.Netsky at mm files 
- Deletes the registry values that the worm added

----------------------------------------------------------------------------
----
Obtaining and running the tool
----------------------------------------------------------------------------
----
--- Download the FxNetsky.exe file from:
http://securityresponse.symantec.com/avcenter/FxNetsky.exe. 
--- Save the file to a convenient location on your computer. 
--- Close all the running programs before running the tool. 
--- If you are on a network or if you have a full-time connection to the
Internet, disconnect the computer from the network and the Internet. 

Caution: If you are running Windows Me or XP, First *** Disable System
Restore***. If you are running Windows Me/XP, we strongly recommend that you
do not skip this step.
--- Double-click the FxNetsky.exe file to start the removal tool. 
--- Click Start to begin the process, and then allow the tool to run. 
--- Restart the computer. 
--- Run the removal tool again to ensure that the system is clean. 
--- Then re-enable System Restore. 
Note: The removal procedure may not be successful if Windows Me/XP System
Restore is not disabled as previously directed, because Windows prevents
outside programs from modifying System Restore. 

When the tool has finished running, you will see a message indicating
whether W32.Netsky at mm infected the computer. In the case of a removal of the
worm, the program displays the following results: 
--- Total number of scanned files 
--- Number of deleted files 
--- Number of repaired files 
--- Number of terminated viral processes 
--- Number of fixed registry entries

:::::::::::::::::::::::::::::::::::::::::::::::::::



More information about the freebsd-doc mailing list