Towertalk
[Top] [All Lists]

[TowerTalk] HAPPY 99

To: <towertalk@contesting.com>
Subject: [TowerTalk] HAPPY 99
From: n2tk@idsi.net (Tony Kazmakites)
Date: Wed, 17 Feb 1999 15:37:47 -0500
This is a multi-part message in MIME format.

------=_NextPart_000_0001_01BE5A8B.786520C0
Content-Type: text/plain;
        charset="iso-8859-1"
Content-Transfer-Encoding: 7bit

Unfortunately I opened it. I see that I have 3 new files, I think.
C:\WIN98\System\ska.exe
C:\WIN98\System\ska.dll
C:\WIN98\System\wsock32.ska

I deleted these 3 files plus modified the registry to remove
"ska.exe=ska.exe"
Everything seems to work okay.
Checked the web site you listed below, but I use Norton Antivirus, which
isn't listed at the web site. By the way, Norton's did not identify this as
a virus.

Hopefully this takes acre of this
Tony

    -----Original Message-----
    From: owner-towertalk@contesting.com
[mailto:owner-towertalk@contesting.com]On Behalf Of Shana Vinson
    Sent: Wednesday, February 17, 1999 11:35 AM
    To: towertalk@contesting.com
    Subject: [TowerTalk] HAPPY 99



    Just a quick comment on HAPPY99.exe virus.  DO NOT OPEN IT if you are
unlucky enough to recv' it.  Some nice person sent it to us at U S Tower.
If you happen to get infected with this new bug see
    http://beta.nai.com/public/datafiles/valerts/vinfo/w32ska.htm has all
the info you need to get rid of the bug.

    But don't be to hard on whoever sent it to you because the odds are they
didn't know they sent it.  That's the nature of this beast.



------=_NextPart_000_0001_01BE5A8B.786520C0
Content-Type: text/html;
        charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD W3 HTML//EN">
<HTML>
<HEAD>

<META content=3Dtext/html;charset=3Diso-8859-1 =
http-equiv=3DContent-Type>
<META content=3D'"MSHTML 4.72.3612.1700"' name=3DGENERATOR>
</HEAD>
<BODY bgColor=3D#ffffff>
<DIV><SPAN class=3D760093519-17021999><FONT color=3D#0000ff face=3DArial =

size=3D2>Unfortunately I opened it. I see that I have 3 new files, I=20
think.</FONT></SPAN></DIV>
<DIV><SPAN class=3D760093519-17021999><FONT color=3D#0000ff face=3DArial =

size=3D2>C:\WIN98\System\ska.exe</FONT></SPAN></DIV>
<DIV><SPAN class=3D760093519-17021999><FONT color=3D#0000ff face=3DArial =

size=3D2></FONT></SPAN><SPAN class=3D760093519-17021999><FONT =
color=3D#0000ff=20
face=3DArial size=3D2>C:\WIN98\System\ska.dll</FONT></SPAN></DIV>
<DIV><SPAN class=3D760093519-17021999><FONT color=3D#0000ff face=3DArial =

size=3D2></FONT></SPAN><SPAN class=3D760093519-17021999><FONT =
color=3D#0000ff=20
face=3DArial size=3D2>C:\WIN98\System\wsock32.ska</FONT></SPAN></DIV>
<DIV>&nbsp;</DIV>
<DIV><SPAN class=3D760093519-17021999><FONT color=3D#000000 face=3DArial =
size=3D2>I=20
deleted these 3 files plus modified the registry to remove=20
&quot;ska.exe=3Dska.exe&quot;</FONT></SPAN></DIV>
<DIV><SPAN class=3D760093519-17021999><FONT color=3D#000000 face=3DArial =

size=3D2></FONT></SPAN><SPAN class=3D760093519-17021999><FONT =
color=3D#000000=20
face=3DArial size=3D2>Everything seems to work okay.</FONT></SPAN></DIV>
<DIV><SPAN class=3D760093519-17021999><FONT color=3D#000000 face=3DArial =

size=3D2></FONT></SPAN><FONT size=3D2>Checked the we<SPAN=20
class=3D760093519-17021999><FONT color=3D#000000 face=3DArial =
size=3D2>b</FONT></SPAN>=20
site you listed below, but I use Norton Antivirus, which isn't listed at =
the web=20
site. By the way, Norton's did not iden<SPAN =
class=3D760093519-17021999><FONT=20
color=3D#000000 face=3DArial size=3D2>tify this as a =
virus.</FONT></SPAN></FONT></DIV>
<DIV><FONT size=3D2><SPAN class=3D760093519-17021999><FONT =
color=3D#000000 face=3DArial=20
size=3D2></FONT></SPAN></FONT>&nbsp;</DIV>
<DIV><SPAN class=3D760093519-17021999><FONT color=3D#000000 face=3DArial =

size=3D2>Hopefully this takes acre of this</FONT></SPAN></DIV>
<DIV><SPAN class=3D760093519-17021999><FONT color=3D#000000 face=3DArial =

size=3D2></FONT></SPAN><SPAN class=3D760093519-17021999><FONT =
color=3D#000000=20
face=3DArial size=3D2>Tony</FONT></SPAN></DIV>
<DIV><SPAN class=3D760093519-17021999><FONT color=3D#0000ff face=3DArial =

size=3D2></FONT></SPAN>&nbsp;</DIV>
<BLOCKQUOTE>
    <DIV class=3DOutlookMessageHeader><FONT face=3D"Times New Roman"=20
    size=3D2>-----Original Message-----<BR><B>From:</B>=20
    owner-towertalk@contesting.com =
[mailto:owner-towertalk@contesting.com]<B>On=20
    Behalf Of</B> Shana Vinson<BR><B>Sent:</B> Wednesday, February 17, =
1999=20
    11:35 AM<BR><B>To:</B> towertalk@contesting.com<BR><B>Subject:</B>=20
    [TowerTalk] HAPPY 99<BR><BR></FONT></DIV>
    <DIV>&nbsp;</DIV>
    <DIV><FONT color=3D#000080 size=3D2>Just a quick comment on =
HAPPY99.exe=20
    virus.&nbsp; DO NOT OPEN IT if you are unlucky enough to recv' =
it.&nbsp;=20
    Some nice person sent it to us at U S Tower.&nbsp; If you happen to =
get=20
    infected with this new bug see</FONT></DIV>
    <DIV><FONT color=3D#000080 size=3D2><A=20
    =
href=3D"http://beta.nai.com/public/datafiles/valerts/vinfo/w32ska.htm";>ht=
tp://beta.nai.com/public/datafiles/valerts/vinfo/w32ska.htm</A>=20
    has all the info you need to get rid of the bug. </FONT></DIV>
    <DIV><FONT color=3D#000080 size=3D2></FONT>&nbsp;</DIV>
    <DIV><FONT color=3D#000080 size=3D2>But don't be to hard on whoever =
sent it to=20
    you because the odds are they didn't know they sent it.&nbsp; That's =
the=20
    nature of this beast.</FONT></DIV>
    <DIV><FONT color=3D#000080 size=3D2></FONT>&nbsp;</DIV>
    <DIV>&nbsp;</DIV></BLOCKQUOTE></BODY></HTML>

------=_NextPart_000_0001_01BE5A8B.786520C0--


--
FAQ on WWW:               http://www.contesting.com/towertalkfaq.html
Submissions:              towertalk@contesting.com
Administrative requests:  towertalk-REQUEST@contesting.com
Problems:                 owner-towertalk@contesting.com
Search:                   http://www.contesting.com/km9p/search.htm


<Prev in Thread] Current Thread [Next in Thread>