PDA

View Full Version : outlook blank folding vulnerability????


yolagp
03-25-2003, 05:58 PM
I've recieved two alerts from a certain postmaster telling me that I may have a virus called OUTLOOK BLANK FOLDING VULNERABILITY. I checked my antivirus software - Norton 2002 - and no mention. So I asked Mr. Google and I found a web site - DECLUDE - that tested my mail and confirmed I have such a thing. Does someone out there know what it is, if it's dangerous, and how can I get rid of it?

Budfred
03-25-2003, 11:01 PM
Was your version of Norton up to date when you checked for the virus? Have you tried an online scan? If it really is a virus, you have a problem, but it could be a spoof too and the search on Google may have just led you to another part of the spoof. That seems unlikely since a web site would allow the virus writer to be traced, but I would double check with an online virus scan. Your current version of Norton AV may be corrupted, so it can't be trusted anymore. Go to mjc's security thread for links to online scans:

http://www.pcguide.com/vb/showthread.php?s=&threadid=15179

Paul Komski
03-28-2003, 10:14 PM
Doesn't sound like a virus but a vulnerability that a virus/worm could exploit.

Declude (http://www.declude.com/tools/mailsend.html) state they can test for a number of such vulnerabilites, which is not the same thing as scanning for a viral infection.

Protecting your network against email threats (http://www.msexchange.org/articles/Protecting_your_network_against_email_threats.html #par2b) gives some misc background info.

If you must use microsoft's mail programs then at least ensure they are kept up to date with all the critical/security updates and configured to minimise the risks along with an up-to-date antivirus running at all times. Better still use a mail client not based on Outlook or OE.

yolagp
03-29-2003, 02:02 PM
Thank you. I clicked on those links, took those tests, and found out I have some vulnerabilities, but my antivirus software takes care of that in the event of recieving a potentially dangerous email. In one of the sites there is a program called GFI Languard system integrity monitor, which scans the system files (or the files you tell it to do so) to check if there is some alteration that could mean an infection or intrusion in your system, and does so every 2 hours if you wish, which I found very useful. Thank you again for your answers, and for those two links.