Friends, I have received the below e-mail HOAX from 3 different people in the last hour. I am sending this to you as a warning not to follow the instructions.
Ray Amos - All outgoing e-mail is scanned for viruses. ********************************************** For more information on this hoax, please see the JDBGMGR.EXE Hoax description in our Virus Encyclopedia. (Computer Associates) If you have inadvertently deleted this file, please visit http://support.microsoft.com/default.aspx?scid=kb;en-us;Q322993 for more information and instructions on how to replace it. As well as portraying all the standard hoax features, (warns of a dire 'danger' then suggests that the receiver should send it onto all of their friends to minimize the damage that the 'virus' may cause) this E-mail hoax advises the user to delete the file JDBGMGR.EXE, which it states is a virus. For greater impact and added realism, this hoax even lists detailed instructions on how to remove this file from your computer.This hoax is very similar to the infamous SULFNBK.EXE Hoax. Two things should be noted about the file JDBGMGR.EXE. First, it is a standard utility program (the Microsoft Debugger Registrar for Java) included with some versions of Windows and is normally installed in the 'system32' subdirectory of the WINNT directory. It has an icon in the form of a teddy bear that may lead users to be suspicious of it. Second, because of its location and size and being a PE-style EXE, JDBGMGR.EXE has been observed included as an attachment in e-mail messages sent by the Win32.Magistr virus. Thus, if you receive a copy of JDBGMGR.EXE as an email attachment, that could well be an infected copy of the file and an indication that the sender is infected with Win32.Magistr. The text on this page is part of a hoax and is not a legitimate warning or offer. We present it here to help you identify any hoax messages that you receive. Please note that hoaxes often have several variations in circulation, so you may receive a hoax message that is similar, but not identical to the message below. Computer Associates Technical Support Teams around the world have received many different versions of this hoax. See below for examples of this hoax in English, and another in Spanish (which when translated, reads quite differently). English: We have just cleaned out a virus on our computers, that is doing the rounds at the moment. Quite simple to check to see if you have it and then remove. The virus is passed on automatically by the Messenger and by the address book. The virus is not detected by McAfee or Norton and stays quiet for 14 days before damaging the system. The virus can be cleaned before it deletes files from your system. In order to eliminate it, do the following steps. 1. Go to Start, click "Search" 2. In the "Files or Folders option" write the name jdbgmgr.exe 3. Be sure that you are searching the drive "C" 4. Click "find now" 5. If the virus is there, it has a little bear-like icon with the name ofjdbgmgr.exe. DO NOT OPEN IT FOR ANY REASON. 6. Right click and delete it. It will go to the recycle bin. 7. Go to the recycle bin and delete it or empty the recycle bin. IF YOU FIND THE VIRUS IT HAS PROBABLY SENT IT ON TO ALL OF YOUR CONTACTS IN THE ADDRESS BOOK. * **** ******* *********************************************************** * For list instructions, including unsubscribe, see: * http://www.a1.nl/phomepag/markerink/eos_list.htm ***********************************************************
