Friends,

I have received the below e-mail HOAX from 3 different people in the last hour.  I am 
sending this to you as a warning not to follow the instructions.

Ray Amos
-
All outgoing e-mail is scanned for viruses.

**********************************************

For more information on this hoax, please see the JDBGMGR.EXE Hoax description in our 
Virus Encyclopedia. (Computer Associates) 

If you have inadvertently deleted this file, please visit 
http://support.microsoft.com/default.aspx?scid=kb;en-us;Q322993 for more information 
and instructions on how to replace it.

As well as portraying all the standard hoax features, (warns of a dire 'danger' then 
suggests that the receiver should send it onto all of their friends to minimize the 
damage that the 'virus' may cause) this E-mail hoax advises the user to delete the 
file JDBGMGR.EXE, which it states is a virus. For greater impact and added realism, 
this hoax even lists detailed instructions on how to remove this file from your 
computer.This hoax is very similar to the infamous SULFNBK.EXE Hoax.

Two things should be noted about the file JDBGMGR.EXE.

First, it is a standard utility program (the Microsoft Debugger Registrar for Java) 
included with some versions of Windows and is normally installed in the 'system32' 
subdirectory of the WINNT directory. It has an icon in the form of a teddy bear that 
may lead users to be suspicious of it.

Second, because of its location and size and being a PE-style EXE, JDBGMGR.EXE has 
been observed included as an attachment in e-mail messages sent by the Win32.Magistr 
virus. Thus, if you receive a copy of JDBGMGR.EXE as an email attachment, that could 
well be an infected copy of the file and an indication that the sender is infected 
with Win32.Magistr.

The text on this page is part of a hoax and is not a legitimate warning or offer. We 
present it here to help you identify any hoax messages that you receive. Please note 
that hoaxes often have several variations in circulation, so you may receive a hoax 
message that is similar, but not identical to the message below. Computer Associates 
Technical Support Teams around the world have received many different versions of this 
hoax. See below for examples of this hoax in English, and another in Spanish (which 
when translated, reads quite differently).

English:
We have just cleaned out a virus on our computers, that is doing the rounds at the 
moment. Quite simple to check to see if you have it and then remove.

The virus is passed on automatically by the Messenger and by the address book. The 
virus is not detected by McAfee or Norton and stays quiet for 14 days before damaging 
the system. The virus can be cleaned before it deletes files from your system.

In order to eliminate it, do the following steps.
1. Go to Start, click "Search"
2. In the "Files or Folders option" write the name jdbgmgr.exe
3. Be sure that you are searching the drive "C"
4. Click "find now"
5. If the virus is there, it has a little bear-like icon with the name ofjdbgmgr.exe.
DO NOT OPEN IT FOR ANY REASON.
6. Right click and delete it. It will go to the recycle bin.
7. Go to the recycle bin and delete it or empty the recycle bin.

IF YOU FIND THE VIRUS IT HAS PROBABLY SENT IT ON TO ALL OF YOUR CONTACTS IN THE 
ADDRESS BOOK.


*
****
*******
***********************************************************
*  For list instructions, including unsubscribe, see:
*    http://www.a1.nl/phomepag/markerink/eos_list.htm
***********************************************************

Reply via email to