FYI see below.....


Thursday, May 31, 2001, 16:51
SULFNBK Is a Hoax
As Kaspersky Lab reported earlier last week, the virus hoax SULFNBK has been
making the rounds as also witnessed by other anti-virus developers sending
out a warning beacon. It is necessary to convince users that this type of
virus does not actually exist, and we classify this as a VIRUS HOAX.

Warnings about the pseudo-virus began spreading two weeks ago, causing a
real scare amongst users. As indicated in the message�s text concerning the
"virus," it contains a SULFNBK.EXE file that is programmed to activate the
destructive payload on June 1. As is typical when a virus hoax is making the
rounds, it is reported that not one anti-virus program is able to detect
this "virus"; therefore, the only means of ridding a computer of this threat
is to erase the SULFNBK.EXE virus-carrying file.

Contrary to this report, the SULFNBK.EXE file is absolutely safe, and
moreover is a part of the operating system included in the Windows delivery.
The program is a Windows application used for backup files with long file
names. By deleting this file, a user causes a change in the system function
as a whole, causing several operations on the computer to be rendered
inoperable.

In addition to this, as reported by SecurityPortal.com�the popular
information center for problems regarding information safety�its experts
have been able to receive the original SULFNBK.EXE file and establish the
reason for this hoax appearance. It turned out that this file on the user's
computer, who initiated the hoax, was really infected with the Magistr
virus, currently found in the virus list of the most widespread viruses.

Source:

Anti-Virus Software Developer - Kaspersky Labs Int.

Sincerely,

John P. Nicholson
Director ASP Reseller Partner Program
Core Services Corporation
[EMAIL PROTECTED]
[EMAIL PROTECTED]
www.coresys.com
908-337-0272


This message is intended for the use of the intended recipient(s) and may
contain confidential and privileged information. Any unauthorized review,
use, disclosure or distribution is prohibited. If you are not the intended
recipient, please contact the sender by reply e-mail and destroy all copies
of the original message.



-----Original Message-----
From: Michelle Shores [mailto:[EMAIL PROTECTED]]
Sent: Thursday, August 30, 2001 02:19 PM
To: [EMAIL PROTECTED]
Subject: RE: OPTIONS screen, any changes
Importance: High


The virus is the SirCam32.worm@mm.  The best utility to use before you try
to do anything is at www.norton.com.  Look to the right under the virus
name.  There is a utility 1/3 the way down the page that will scan your
system and replace the dll, exe and registry settings.  DO NOT DO ANYTHING
ELSE BEFORE YOU RUN THIS!!!  This virus was detected officially 8/17 and
Norton has the best utility to clean it off.  If you do take any steps
before running this utility it will close down all of your exe files within
your system.  Your provider cannot help.  The virus will attack all dll
associated files and your address book.

Try this....it works!

Michelle Shores
EMSi, Inc.
[EMAIL PROTECTED]

-----Original Message-----
From: Moertel, David M. [mailto:[EMAIL PROTECTED]]
Sent: Thursday, August 30, 2001 12:58 PM
To: '[EMAIL PROTECTED]'
Subject: RE: OPTIONS screen, any changes


Eddie,
Please see the message below and check your system. If necessary, disconnect
from the list server.

Others,
Beware of a possible virus. I would not open these files.

> -----Original Message-----
> From: Eddie Bryant [SMTP:[EMAIL PROTECTED]]
> Sent: Thursday, August 30, 2001 11:37 AM
> To:   [EMAIL PROTECTED]
> Subject:      OPTIONS screen, any changes
>
> WARNING -- A POSSIBLE VIRUS WAS DETECTED IN THIS MAIL MESSAGE
>
> NOT ALL PARTS OF THE MESSAGE WERE SUCCESSFULLY CLEANED
>  << File: ATT248036.txt >>  << File: SULFNBK.EXE >>


**********************************************************************
To be removed from this list, send a message to:
[EMAIL PROTECTED]
Please note that it may take up to 72 hours to process your request.




**********************************************************************
To be removed from this list, send a message to:
[EMAIL PROTECTED]
Please note that it may take up to 72 hours to process your request.
BEGIN:VCARD
VERSION:2.1
N:Nicholson;John;;;(Core Services)
FN:John P. Nicholson (Core Services) (E-mail)
ORG:Core Services Corporation
TITLE:Director of Recruiting
TEL;WORK;VOICE:(407) 497-0781
TEL;WORK;FAX:(520) 832-4432
ADR;WORK:;;50 Mt. Pleasant Ave;West Orange;NJ;07052;United States of America
LABEL;WORK;ENCODING=QUOTED-PRINTABLE:50 Mt. Pleasant Ave=0D=0AWest Orange, NJ 07052=0D=0AUnited States of America
EMAIL;PREF;INTERNET:[EMAIL PROTECTED]
REV:20010327T212207Z
END:VCARD



**********************************************************************
To be removed from this list, send a message to: [EMAIL PROTECTED]
Please note that it may take up to 72 hours to process your request.

Reply via email to