Subscribe to Windows IT Pro

 

Get Newsletters

  • Get the Latest News
  • Product Updates
  • Helpful Tricks
  • Productivity Tips

Subscribe Now!

May 19, 2000 12:00 AM

Most Dangerous Variant of VBS/Loveletter Yet

Windows IT Pro
InstantDoc ID #8798
Rating: (0)

[From Exchange Messaging Outlook, an occasional newsletter about Microsoft Exchange and Microsoft Outlook.] A new variant of the VBS/Loveletter virus is loose today. Officially dubbed VBS.NewLove.A or VBS.Loveletter.FW.A, this virus disables Windows systems by replacing all files not in use. Like Loveletter, it propagates through Microsoft Outlook, but only if an unwitting user runs the VBScript .vbs file payload. It uses randomly chosen attachment names and subject lines to try to disguise itself in the e-mail messages it sends. These pages from antivirus tool vendors have more information: Symantec's Web site
Trend Micro's Web site Antivirus tool vendors should have updates available. You might also want to review the Outlook antivirus protection recommendations at Slipstick.com.

Outlook Email Security Update
Microsoft plans to release a patch for Outlook 98 and Outlook 2000 (with the Office Service Release 1 update) next week that will disable many of the features that allowed the VBS/Loveletter (aka ILOVEYOU) virus to spread so quickly. The new patch will make it impossible to open program files in Outlook--including executable .exe files and VBScript .vbs files like those that spread Loveletter.

The optional patch is also aimed at making it more difficult for a virus to use Outlook to transmit itself via email. However, this "Object Model Guard" feature, as described on Microsoft's Web pages, will break some Outlook functions. In other cases, a user will need to authorize access by outside programs, including tools for synchronizing with PDAs such as the Palm or Windows CE devices. Microsoft has posted extensive information on this patch for users, administrators, and developers, starting at its Office Update Web site. Slipstick.com's own page on the patch offers additional information and will include details on what utilities are affected by the patch.

Related Content:

ARTICLE TOOLS

Comments
  • Vikki
    10 years ago
    Oct 02, 2002

    Does anyone know how to recover jpeg's lost to this virus?

You must log on before posting a comment.

Are you a new visitor? Register Here

advertisement

advertisement

White Papers

Get your Windows 7 deployment off to the right start by implementing PC lockdown. A locked-down environment is easier and cheaper to support since users are less likely to make unnecessary changes to the core system configuration - read more here!

Essential Guides

Is your iSCSI "lossy"? The reality is that most off-the-shelf Ethernet hardware deployed for iSCSI can lose packets, resulting in slow performance or application downtime. Learn how to assess your current iSCSI infrastructure and engineer an advanced iSCSI SAN infrastructure.

Web Seminars

What's the best way to keep your network safe from malware? In this web seminar, security expert Greg Shields suggests an alternative method to the traditional blacklisting approach that is common with anti-virus and anti-malware solutions.

eLearning Series

We bring the experts direct to you to share their real-world perspective and expertise. During each event, three sessions stream in real time, so you can learn, ask questions, and get solutions.
Upcoming event: Getting the Most with Exchange 2010 with Paul Robichaux

Subscribe to Windows IT Pro!

Windows is a trademark of the Microsoft group of companies. Windows IT Pro is used by Penton Media Inc. under license from owner.