English
Deutsh
Russian
PC Knowledge? Earn Cash!
English
Deutsh
Russian

New computer viruses in the Internet

The problem of spreading of the viruses became even worse with the expanding of the Internet, and, unfortunately it will exist in the nearest future. Nowadays you can receive a virus though an email file, through FTP and WWW. It is necessary to supply the testing of the information coming from these sources. The danger is everywhere! Please take this problem seriously, it will help you not to become and Internet attack victim and will preserve your information. Take care wording in the net and update your antivirus programs.

You will find the latest information about new viruses in the Internet at our site!


February 17

The new virus for Microsoft Word is detected

The company Computer Associates (CA) has spread the message on appearance of a new virus received a title Myna.C, which one infects the documents created in a text editor Microsoft Word 97 and its more late versions. And this virus was detected in a wild view, it was sent by one of clients of the company CA. While it is not known, in what country this virus was written. That sample, which one was obtained by the company CA, was shipped from territory of USA, but the remailer could it receive on a E-Mail from any point of a terrestrial globe. Under the message of the specialists CA, the virus Myna.C is conventional virus, it is transmitted with the documents Word, is fast diffused, but to find out to its user rather difficultly, as any messages this virus on a screen of the computer does not inject. At hit on the computer the virus Myna.C infects at first opened documents Word, and then and again created. The virus also decontaminates an option " protection from virus" in Microsoft Word, therefore after detection and deleting of a virus, this option is necessary for reinstalling anew. At first virus checks up files on presence in them of string "MYNAMEISVIRUS". If such string is not present, Myna.C finds out, that the computer is not tainted yet. After that the virus Myna.C patterns itself in object "ThisDocument" of the infected file. CA has published on the site http://www.antivirus.cai.com charge-free updating for the anti-virus software permitting to find out and to remove a virus Myna.C.


February 12

The virus Win32 Haiku.16384 has appeared " Japanese national "

The company Computer Associates International (CA) has spread warning about appearance of a virus-worm Win32 Haiku.16384. The message on this virus the company has received from one of the clients. Under the information CA, the virus Win32 Haiku.16384 falls on computers with the message of a E-Mail, in which one the target is offered to acquaint with "instruction" on writing conventional Japanese poetry haiku. The header of such letter looks like this: " Fw: Compose your own haikus! ", and to the letter the file haiku.exe is attached. The text of the letter starts with a double tag of a smile, then there is a text of translation into the English language of one of haiku classics of this genre Matsuo Basho : " Old pond... / a frog leaps / in water's sound ". The letter is completed by the text: " Attached to this e-mail you will find a copy of a simple haiku generator. It will help you in order to understand the basics of the metric rhyme and subjects which should be used when composing a real haiku... just check it out! it's freeware and you can use and spread it as long as you want! " (" In the affixed file you will discover a copy of the simple generator haiku. It will help you to understand a fundamentals of a metric rhythm and principles of construction poetry haiku... Only try! It is charge-free, and you can use this program as much as long, and also to diffuse it "). Under the message CA, at start of the file Haiku.exe on fulfilment the virus carries out research of the information stored on the computer, and starts to deliver itself to addresses inclusive in files with extensions .doc, .eml, .htm.. html, .rtf and .txt. That is, it takes addresses from the documents, instead of from a directory. Thus, the rate of propagation of such virus can appear much above, than for conventional viruses operating directory of the mail programs. CA also has notified that on its site http://antivirus.cai.com users can load a charge-free anti-virus software permitting to consult with a virus Win32 Haiku.16384.


January 29

The maiden viruses for a software Microsoft Visio

The implementators of an anti-virus software the company Computer Associates (http://www.cai.com) and division McAfee (http://www.mcafeeb2b.com) corporations Network Associates have published warning for the users concerning appearance of the maiden macro - virus striking software Microsoft Visio. Consoles that this macro - virus is rather harmless. But, as the practice demonstrates, behind the maiden "conceptual" viruses for any program there are other much more dangerous viruses, created on their basis. The virus figures in the catalogs of viruses of both companies under a title VIS5/Radiant Angels. There it is underlined, that of risk "to catch" by it is not great, and it does not bear in itself any of the dangerous code. That distinguishes a virus VIS5/Radiant Angels, so it that it will be actuated at closing the contaminated document. Having begun activity, the virus makes simple self-checking. If it finds the not yet contaminated chart Visio, it patterns itself in this file, rewriting thus its maiden code module. As each file with a figure contains a code module by default, the virus infects also those documents, in which one is not contained macroses. After contamination of the documents, the virus creates in the root of the disk the file index.html, which one contains the following text: " A Multitude of Suns Orbit in Empty Space; They Speak with their light to all that is dark. To me they remain silent. Greets to all the VX Community And Radiant Angels its...... Radiant ". The company McAfee has notified also about appearance of version of a virus VIS5/Radiant Angels, received a title V5M/Unstable. A. This virus infects the documents of the program Visio 2000. In Visio 2000 there are standard templates, therefore this environment the virus can be diffused with more high speed. If on the computer there are files, contaminated virus Unstable. A, 31 numbers of each month on a screen of the computer will occur the above mentioned message. In the programs Visio 5 and Visio 2000, as well as in other programs from a package Microsoft Office, there is a function of the prohibition on usage macroses. By default it is switched - off, therefore specialists McAfee I strongly recommend to the users of the indicated programs to include it.


January 21

The company Symantec (http://www.symantec.com) has pronounced that the key know-how of its anti-virus means Striker now is protected by the patent of USA. Under the message Symantec, this know-how of a new generation allows the anti-virus program Striker much faster than conventional anti-virus means to find out composite polymorphic mutating viruses. The software Striker creates on the disc the virtual computer, or so-called sandpit, where the polymorphic viruses "exhibit" themselves. The software Striker clarifies the gear of operating of viruses and kills them, before that as they can somehow damage to the computer of the user.


January 19

On strife with computer viruses in 1999. Was spent 12,1 billions $.

According to the data of the exploratory corporation Computer Economics (www.computereconomics.com), on protection of intelligence systems against virus attacks per 1999 all over the world was spent 12,1 billions $. And, the costs of established anti-virus means of protection, instead of on recovery of computer systems out of service because of viruses enter only in this sum. That is threat of viruses, the creators which one become all strong, spawns the multi-billion market of the applicable products. Now situation with viruses and anti-viruses resembles rapid motion of arms of recent times. Almost each day there are new viruses, and the anti-virus companies let out additions to the anti-virus databases. It is not visible of end, but while nobody has invented anything better, than regular updating of an anti-virus software.

The maiden viruses for Windows 2000, whether are dangerous they?

On past week the messages on detection of the maiden computer virus striking exclusively computers from operating system Windows 2000. This virus was officially called W2K.Installer.1676, but there are also its other titles - Win2000. Install, Win2K.Inta. Certainly, at appearance of a similar virus there is a problem on organization of the protective system in new operating system, the official extension by which one is held on February 17, 2000. However experts who have studied activity of a virus W2K.Installer, have stated, that it will not use any potential hole in protection Windows 2000. It - customary file virus, which one infects systems with Windows 2000 only for that simple reason, that it at first checks up, what operating system works on the computer, and is diffused, only if it Windows 2000. In a wild view this virus did not meet yet. The anti-virus labs have received it by mail, on all visibility, the dispatch was executed by the writer W2K.Installer.1676. Any destructive operatings on the computer the virus does not make, only is diffused further by transfer of contaminated files. And though in the nature of a virus yet did not see, the anti-virus companies have supplemented the programs by means of detection of this virus. Under the application of the director of anti-virus exploratory center of the company Symantec (Symantec Antivirus Research Center, SARC) Vincent Weafer, probably, W2K.Installer.1676 is simplly "conceptual" virus of a firstgeneration. Such viruses form, when their writers only investigate(study) new operating system on presence in it(her) of holes or, when they simplly want to demonstrate to themselves and ambient, that they can write a virus, which one works only on one operating system. Probably, the writer W2K.Installer simplly aimed at laurels of the creator of the maiden virus for Windows 2000. However Weafer considers, that the users Windows 2000 should not lose vigilance, as the majority of viruses infecting Windows 98 and NT, with the same success can infect and new operating system.

Details on a virus W32/Plage2000

On past week the brief message of the company Computer Associates about appearance of a virus Plage2000, striking e-mail systems has appeared. Now company Sophos (http://www.sophos.com) has published more in-depth information on this virus, which one has some titles - W32/P2000, W32/Plage2000 and W32. Plage. Worm. It is necessary to mark, that did not act yet of any messages on appearance of this virus in a "wild" view. The specialists Sophos assort a virus Plage2000 as worm for e-mail systems, which one attempts to deliver itself as the affixed file to the address of the remailers some more not read messages from a mail box of the user. Body of the letter with a virus is contained the text: " P2000 Mail auto-reply: I'll try to reply as soon as possible. Take a look to the attachment and send me your opinion! ". The executable file is adjoined to the letter, the title which one can be one of a following list: PICS.EXE, JOKE.EXE, BILLGT.EXE, IMAGES.EXE, PSPGAME.EXE, NEWS-DOC.EXE, HAMSTER.EXE, TAMAGOTXI.EXE, SEARCHURL.EXE, SETUP.EXE, S3MSONG.EXE, DOCS.EXE, HUMOR.EXE, FUN.EXE. At start of the attached file the virus patterns itself in the catalog Windows and injects into a screen a dialog box with header " WinZip self-Extractor - [filename] ". At click by the mouse till any of push buttons the virus injects into a screen a new dialog box with header " WinZip Self-Extractor " and error message of dearching of the file: " ZIP damaged: file [filename]: Bad CRC number. Possible cause: file transfer error ". The virus also changes the file WIN.INI in such a manner that at each reboot Windows the virus again starts to work. On environments between midnight and two o'clock in the morning the virus - worm Plage2000 injects into a screen animations the map Adolph Hitler, which one shoots from a pistol to itself at a head.


January 13

The virus Marker has taken the maiden place in December

Under the data of the company Sophos (http://www.sophos.com), in December, 1999 the most "popular" computer virus became a macro - virus Marker Word - about a nem is spoken in 21 % of the messages of the users. The known virus Explore. Zip has taken the second place - 14,8 %, third - virus Melissa (10,8 %). After triple of prize-winners go virus Thursday (6,3 %), a virus Pretty and macro - virus Class Word have divided 5 and 6 places (4,5 %), into the seventh stand a virus Ethan (3,4 %). Further in ten most widespread viruses enter a virus of boot sector Form (2,8 %), Word a macro - virus Cap (2,8 %) and Excel a macro - virus Laroux (2,3 %).


January 7

The company Sophos has found out for one day three new viruses

The specialists of the anti-virus company Sophos for last day have found out three new viruses. Maiden of them is called Esmeralda. This virus infects all executable files on the PC from operating system Windows 95/98, intensified when the virus is in a computer memory. It does not act on computers from operating system Windows NT. As communicates, a native land of a virus is Colombia. The second virus has received a title Surround. It concerns to the class macro-viruses MS - Word. Per any day after December 29, 1999 the virus Surround can attempt to eliminate on the computer the file WIN.COM, but actually, it to make will be not possible it because of an error in the code of the virus. Similar, the writer of this virus as follows has not tested activity of the creation. After the virus fails to eliminate the indicated file, on a screen there is a placard " You are now Surrounded!! ". The virus also creates the temporary file C:\\SURROUND.KEY, but, under the message Sophos, it does not introduce hazards. The third virus is called Space or PE_Spaces.1633, it infects executable files on computers with the 32-bit version Windows. It will begin to act on June 1. This day it will copy a head load record on a hard disk and will spoil the partition table. That is the hard disk will cease to boot until the head load record will be retrieved.

" Ring up me in Internet, dear... "

On the exhibition, opened in Las Vegas, of a consumer electronics Consumer Electronics Show (CES) the telephone from Panasonic is shown maiden in a world, which one can be used in a Internet - telephony. This telephone was created Panasonic in cooperation with the known provider of a service of a Internet - telephony by the company Net2Phone. This telephone can work in a customary voice circuit, and can route a call through a service of a Internet - telephony Net2Phone, intended for maintenance of connection between telephones, instead of between computers. It is known, that the call bells through Internet manage to the users much more cheaply than negotiations on conventional analogue dial lines of connection. Be filed in a service Net2Phone the holder of the new telephone special number and should to type, following to the indicatings of the operator, to select version of service. After completion of a procedure of registration ring up through Internet the user should at first to click the push button "Net2Phone" on the telephone, and then to type intertoll or international number of the viewer - will be sonorous automatically is directed through a service Net2Phone.


English
Deutsh
Russian
PC Knowledge? Earn Cash!
English
Deutsh
Russian