Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

Bubble Boy Virus

0 views
Skip to first unread message

Steve Horne

unread,
Nov 12, 1999, 3:00:00 AM11/12/99
to

Is there a real threat here or is this blown out of proportion? Usually I
ignore warnings, but then I wonder if a professional news organization would
just lie about it.

This is an article from ABCNews.com (actually from MrShowbiz.com):

Seinfeld 'Bubbleboy' Virus Hits E-mail

Seinfeld, the TV series, lives on in more ways than one. The now-dead NBC
sitcom has received a left-handed homage with a new e-mail virus dubbed
"Bubbleboy" after an episode in which Jerry (Jerry Seinfeld) and George
Costanza (Jason Alexander) accidentally burst the protective plastic bubble
of a boy born without an immune system.

"Unfortunately, this virus is not very funny," says Sal Viveros, a marketing
manager at Network Associates.


Researchers believe this to be the first e-mail-borne computer infection
that doesn't require a user to open an e-mail or e-mail attachment for it to
wreak havoc. The virus is known as a worm because it is self-propagating.
Researchers at antivirus software firm Network Associates Inc. received the
computer infection anonymously Monday night at about 10 p.m. local time,
reports Reuters.

"Historically, as long as you don't open e-mail attachments you're safe from
virus infection, but this changes all that," said Viveros. "We've finally
come to the point where if you're using e-mail, specifically Microsoft
Outlook, you need to have some sort of virus protection or you shouldn't
read e-mail."

Although the Bubbleboy virus that researchers received last night didn't
cause harm such as deleting files or stealing passwords, it won't be long
before variants crop up that are indeed destructive, Viveros says.

"In this case, it's just sending itself all over the place but it could
fairly easily delete files or steal passwords," Viveros says.

Bubbleboy appears as an e-mail with "Bubbleboy is Back!" in the subject line
and includes pictures and sounds from the Seinfeld episode that gave it its
name.

Bubbleboy follows other e-mail-borne viruses that have already swept the
Internet such as the "ExploreZip worm," which can erase files from a user's
computer, and the Melissa virus, which gained notoriety for its ability to
spread quickly but not because it destroyed any data.

Network Associates gave Bubbleboy a "low risk" classification for now
because customers haven't yet notified it that the virus has appeared on
their computers.

What makes this worm particularly nefarious is that if a user is running
Outlook Express and has the preview pane enabled, the worm can infect the
computer without the user even opening the e-mail.

The preview pane in Outlook Express lets users scan e-mails to see their
contents without having to open them first. Other e-mail programs such as
Exchange and Lotus Notes are also vulnerable, Viveros says.

"Now just by reading an e-mail you can be infected, and if you're using
Outlook Express, you don't even need to read it," Viveros says. The worm
will then send itself to everyone listed in that e-mail program's address
book.


Reuters contributed to this story


Tom C. Koch

unread,
Nov 12, 1999, 3:00:00 AM11/12/99
to
The article you quote is typical of how the media distorts a press release
from an anti-virus manufacturer into "fact". The true facts are these:
Bubbleboy has not once been seen in the wild, only in the anti-virus
companies labs. Not one single computer has been infected with Bubbleboy.
Bubbleboy is nothing new; it exploits a security hole for which Microsoft
released a security patch on 31 August, a fact which I notice was not
mentioned in your article. Of course, if it had been mentioned, no one would
be running out to buy Network Associates software, now would they?
http://www.microsoft.com/security/Bulletins/ms99-032.asp

So is the threat real? No, and Yes. Are the anti-virus companies honest in
their press releases? Absolutely not. Is the media responsible in their
reporting of virus threats? Absolutely not. Does this help consumers?
Absolutely not. Should you ignore reports of virus threats in the media? Not
completely, but you need to learn to read between the lines and absolutely
distrust anything coming from the mouths of PR flaks at the anti-virus
houses. Their history is nothing short of disgusting. You can read a lot of
the sordid details here:
http://kumite.com/myths/
The author is a true virus expert, and his credentials are there on his web
site. Here is his reaction to Bubbleboy:
http://kumite.com/myths/opinion/thoughts/#991110

--
Tom Koch (MS MVP)
Awareness is free.


"Steve Horne" <hor...@tomahawks.org> wrote in message
news:ugizVBQL$GA.241@cppssbbsa04...

Ned Hamilton

unread,
Nov 12, 1999, 3:00:00 AM11/12/99
to
Well, to me, the weird thing about Network Associates (McAfee Anti Virus, a
good piece of software I have) maker's Sal Viveros' statement below is that
he says you now must have some sort of antivirus protection for Outlook
Express now that Bubbleboy's out there, but he somehow forgets to mention
that his product, McAfee Anti Virus, can't do anything, I don't think, to
stop Bubbleboy. McAfee Anti Virus can only scan email attachments for
viruses; it can't scan email at the preview pane stage as far as I know,
which Viveros says would be the point of infection for Bubbleboy. So what
the heck is Viveros talking about? You would need the Microsoft patch to
Outlook Express to thwart Bubbleboy, not McAfee Anti Virus. Or did I miss
something? Surely, he's not just taking advantage of all the publicity
about Bubbleboy just to promote his product (which can't even solve the
problem it poses) [sarcasm mode]?

Tom C. Koch <tomko...@hotmail.com> wrote in message
news:OWt2VRQL$GA....@cppssbbsa02.microsoft.com...
[snip]


> Bubbleboy is nothing new; it exploits a security hole for which Microsoft
> released a security patch on 31 August, a fact which I notice was not
> mentioned in your article. Of course, if it had been mentioned, no one
would
> be running out to buy Network Associates software, now would they?
> http://www.microsoft.com/security/Bulletins/ms99-032.asp
>
> So is the threat real? No, and Yes. Are the anti-virus companies honest in
> their press releases? Absolutely not

[snip]

> "Steve Horne" <hor...@tomahawks.org> wrote in message
> news:ugizVBQL$GA.241@cppssbbsa04...

[snip]


> > "Unfortunately, this virus is not very funny," says Sal Viveros, a
> marketing
> > manager at Network Associates.

[snip]

Bruce Chastain

unread,
Nov 12, 1999, 3:00:00 AM11/12/99
to
Tom C. Koch <tomko...@hotmail.com> wrote in message
news:OWt2VRQL$GA....@cppssbbsa02.microsoft.com...
> So is the threat real? No, and Yes. Are the anti-virus companies honest in
> their press releases? Absolutely not. Is the media responsible in their
> reporting of virus threats? Absolutely not. Does this help consumers?
> Absolutely not.

You're right of course. We should always wait until large numbers of people
have lost data to the sadistic and entirely predictable virus writers before
we react. And the press shouldn't "play up" the danger until they can first
document the number of gigabytes already lost.

Bruce.


Tom C. Koch

unread,
Nov 12, 1999, 3:00:00 AM11/12/99
to
Bruce -

> > So is the threat real? No, and Yes. Are the anti-virus companies honest
in
> > their press releases? Absolutely not. Is the media responsible in their
> > reporting of virus threats? Absolutely not. Does this help consumers?
> > Absolutely not.
>
> You're right of course. We should always wait until large numbers of
people
> have lost data to the sadistic and entirely predictable virus writers
before
> we react. And the press shouldn't "play up" the danger until they can
first
> document the number of gigabytes already lost.
>

What a bizarre interpretation of my message. But I notice that you are
unable to refute even one point that I made.

--
Tom Koch
Awareness is free.


Bruce Chastain

unread,
Nov 12, 1999, 3:00:00 AM11/12/99
to
Tom C. Koch <tomko...@hotmail.com> wrote in message
news:eEGKlESL$GA.250@cppssbbsa04...

> What a bizarre interpretation of my message. But I notice that you are
> unable to refute even one point that I made.

What an odd interpretation of my message. In fact I did, on all counts.

Bruce.


John Herbster

unread,
Nov 12, 1999, 3:00:00 AM11/12/99
to
Bruce Chastain wrote
> ...And the press shouldn't "play up" the danger until they can first

> document the number of gigabytes already lost.

Or in this case: The first byte lost. -- John H


A

unread,
Nov 12, 1999, 3:00:00 AM11/12/99
to
bcha...@XNOSPAMXhyperfeed.com (Bruce Chastain) wrote in
<ebGn04RL$GA...@cppssbbsa02.microsoft.com>:

>Tom C. Koch <tomko...@hotmail.com> wrote in message

>news:OWt2VRQL$GA....@cppssbbsa02.microsoft.com...


>> So is the threat real? No, and Yes. Are the anti-virus companies
>> honest in their press releases? Absolutely not. Is the media
>> responsible in their reporting of virus threats? Absolutely not. Does
>> this help consumers? Absolutely not.
>
>You're right of course. We should always wait until large numbers of
>people have lost data to the sadistic and entirely predictable virus

>writers before we react. And the press shouldn't "play up" the danger


>until they can first document the number of gigabytes already lost.

The press could have mentioned that a patch that prevents thisexploit was
released in August, and that the virus hasn't been seen "in the wild" yet.
Of course, a story about a 10 week old patch is much less news-worthy than
a sexy new virus.

Reporting "threats" without bothering to mention that the immediate fix is
available is irresponsible.

>Bruce.

A

Larry Suddarth

unread,
Nov 12, 1999, 3:00:00 AM11/12/99
to
A,
I spent the better part of the day sorting out the Security Bulletins
from Microsoft. If you follow them in sequence from oldest to newest, I
think that they did a pretty good job with the problem. Some problems do
still exist as Microsoft has indicated. As best I can tell, you should
now disable active scripting and put trusted sites in the "Trusted
Zone." The reason that I feel that Microsoft is right on target, is that
Bugnet gave the web address of Gorgi Guninski, a 27 year old man from
Bulgaria. Microsoft gave him credit for finding several of the security
holes. I ran some tests that Gorogie had on his web page at:
http://www.nat.bg/~joro/index.html I feel like the test support
Microsoft's advice, if you follow the Security Bulletins from oldest to
newest. I would be interested in your comments. You are one of my
favorite people to read due to your knowledge of computers.
Good luck,

Larry Suddarth

A <AM...@hotmail.com> wrote in message
news:36476.831038546B7...@12.78.213.223...

A

unread,
Nov 12, 1999, 3:00:00 AM11/12/99
to
sudd...@hal-pc.org (Larry Suddarth) wrote in
<#2KDoPXL$GA....@cppssbbsa02.microsoft.com>:

>A,
>I spent the better part of the day sorting out the Security Bulletins
>from Microsoft. If you follow them in sequence from oldest to newest, I
>think that they did a pretty good job with the problem. Some problems do
>still exist as Microsoft has indicated. As best I can tell, you should
>now disable active scripting and put trusted sites in the "Trusted
>Zone." The reason that I feel that Microsoft is right on target, is that
>Bugnet gave the web address of Gorgi Guninski, a 27 year old man from
>Bulgaria. Microsoft gave him credit for finding several of the security
>holes. I ran some tests that Gorogie had on his web page at:
>http://www.nat.bg/~joro/index.html I feel like the test support
>Microsoft's advice, if you follow the Security Bulletins from oldest to
>newest. I would be interested in your comments. You are one of my
>favorite people to read due to your knowledge of computers.

Thanks for the compliment, Larry.

I'm afraid I have to admit that I don't set the best example when it comes
to "good digital hygiene". I tend to be lackadaisical about applying
patches and security updates.

I do think that the MS Security site is intimidating, and not as helpful as
it could be. It would be nice if they created a page like the Windows
Update site that would check which patches you have installed, and allow
you the option of installing all critical security updates for your system,
or, if a patch works by disabling some functionality, giving you the choice
of installing it or not.

There are times when I'd rather pretend that I didn't know about sites like
Gorogies :-)

A

Larry Suddarth

unread,
Nov 13, 1999, 3:00:00 AM11/13/99
to
A,
I think you are right. I wrote several of these messages to different
groups yesterday. No response. It reminds me of a County Engineer in
Texas talking until he was blue in the face about a bridge about to
collapse. He finally got some attention when the thing fell in. Here is
another story guaranteed to put everyone to sleep:
http://www.microsoft.com/security/bulletins/MS99-049faq.asp A new patch
released yesterday.
;-)

Larry Suddarth

A <AM...@hotmail.com> wrote in message

news:36476.892432996EE...@12.78.213.223...

Shannon Jacobs

unread,
Nov 13, 1999, 3:00:00 AM11/13/99
to
Unfortunately, I think you are greatly understating the dangers in this
case. For example, you mention that the worm has not yet been seen in the
wild, but apparently the author also released the source code on the net,
and we'll probably see some very nasty derivatives running loose within
days. And fundamentally, this is a much more aggressive approach. It isn't
even a matter of clicking incorrectly when you get a warning--this one
REQUIRES users to take preventative measures. Many users are pretty passive
and rarely even check for software updates. A lot of them are going to get
bitten, and the only question is how badly. That depends on what kind of
payload is added--the proof-of-feasibility version had no payload except for
a relatively harmless registry tweak. But I remind you that tweaking the
registry can be very harmful.

However, I do agree with you that the anti-virus companies stand to gain the
most from Microsoft's mistakes in this case--probably big time if, as I
suspect, we have a series of nasty outbreaks over the next week or two. You
can't buy that kind of publicity. And I wouldn't be surprised if the real
creator of the worm was an employee/stockoptionholder of one of those
companies. And a smart cookie, too, since he released it to several of them
at the same time--if his own company had been visibly the first to have it,
that would be a big pointy finger.

--
.a/ssig
Stupidity isn't a crime, even when it comes to spamnuts. So how about theft
of service, false advertising, chain scams...

Tom C. Koch

unread,
Nov 13, 1999, 3:00:00 AM11/13/99
to
Shannon -

Please don't misunderstand me. There is a threat from this type of worm,
though not from BubbleBoy itself, just like there are real threats from real
viruses out there. What I object to very strongly is the media hype
surrounding the entire area of security. This latest was obviously nothing
more than a press release from an AV company masquerading as news. An
article about a scripting issue for which a patch was released 10 weeks ago
just would not be newsworthy, and would not result in frightened users
rushing out to buy more AV software.

I would again urge all those concerned about the security of their computer
to read this web site. There is a huge amount of information there that you
will *not* find at the AV web sites. And the author is a recognized expert
in the field, not a PR flak for McAfee or Norton pretending to know
something.


--
Tom Koch
Awareness is free.


"Shannon Jacobs" <sha...@my-dejanews.com> wrote in message
news:exOsaEeL$GA....@cppssbbsa02.microsoft.com...

Spaceman

unread,
Nov 13, 1999, 3:00:00 AM11/13/99
to
Hmm?
 
I wonder,
Since phone company's allow call scamming..
do they blame it on technology also...
 
No they blame it on the people who are misusing the technology....
 
that is all that is happening here except people are blaming MS and that is wrong......
 
there are people fighting the technology with technology...
it's just sad....
 
 
 

Shannon Jacobs

unread,
Nov 14, 1999, 3:00:00 AM11/14/99
to
Well, I probably should get more information from other sources. Then again
up to now, my primary source of information about this problem is the
material published from Microsoft's own www.microsoft.com/security website,
and obviously they don't want to paint it in any blacker colors than they
have to. The impression I got there was rather more complicated. There seem
to be two files involved, only one of which was related to the scripting
vulnerability you mentioned as having been addressed some weeks ago. You'd
think these things should be more clear, or perhaps it mostly reflects my
lack of expertise (and interest) in the general topic. However, the
impression I came away with was that Bubbleboy actually involved a new
vulnerability that could exploit either the scripting file problem or the
newer one (whose filename/generic-description I've already forgotten).

I concur that the Microsoft security people seem to have recognized the
significance of the problem and addressed it very promptly. However, this
patch badly NEEDS to be on the Windows Update page, and as of my last check,
it still wasn't. In fact, I think this one is so serious it almost calls for
an email campaign to all of the registered users of Windows 98/OE5--but
Microsoft is VERY unlikely to do that. Bad publicity. They'd rather keep
their fingers crossed--and it isn't their data at risk, anyway.

Then again, in the worst case I can imagine--and unfortunately I have a very
vivid imagination--we are about to see a lot of people get hit very hard,
and that may give Microsoft even more bad publicity than if they came out
and sent the email showing just how closely they track us... Imagine some
diabolical moron using the available source code of this thing, adding a
really nasty payload, and then using a spambot to do the initial
distribution before enough of the SMTP hosts are protected. This could be a
very ugly week.

--
.a/ssig
Perhaps my punishment by evil spam email is due to evil karma from a past
life? But there sure seems to be a sudden large increase in my karmic
debts.

gel

unread,
Nov 14, 1999, 3:00:00 AM11/14/99
to
Tom you should perhaps amend your sign off line to:
"Awareness is free~ and so are viruses!"

--


Gerald Jones
Thames Valley, England:
(remove No in e mail address)


Tom C. Koch <tomko...@hotmail.com> wrote in message

news:eEGKlESL$GA.250@cppssbbsa04...
> Bruce -


>
> > > So is the threat real? No, and Yes. Are the anti-virus companies
honest
> in
> > > their press releases? Absolutely not. Is the media responsible in
their
> > > reporting of virus threats? Absolutely not. Does this help consumers?
> > > Absolutely not.
> >
> > You're right of course. We should always wait until large numbers of
> people
> > have lost data to the sadistic and entirely predictable virus writers
> before
> > we react. And the press shouldn't "play up" the danger until they can
> first
> > document the number of gigabytes already lost.
> >
>

> What a bizarre interpretation of my message. But I notice that you are
> unable to refute even one point that I made.
>

Francesco Tessari

unread,
Nov 14, 1999, 3:00:00 AM11/14/99
to

Tom C. Koch <tomko...@hotmail.com> scrive nel post:
#FovBweL$GA....@cppssbbsa02.microsoft.com...

> Please don't misunderstand me. There is a threat from this type of
worm,
> though not from BubbleBoy itself, just like there are real threats
from real
> viruses out there. What I object to very strongly is the media hype
> surrounding the entire area of security. This latest was obviously
nothing
> more than a press release from an AV company masquerading as news.
An
> article about a scripting issue for which a patch was released 10
weeks ago
> just would not be newsworthy, and would not result in frightened
users
> rushing out to buy more AV software.

It's worth to point out that this worm, like many others, can be
avoided just having a %windir% name different than the default. It
looks strange to me that nobody even suggests this easy, harmless,
useful security measure.

+++

This changes nothing in Microsoft's responsability, in my opinion.
I'm not a programmer, but I could easily figure that allowing active
content as _default_ setting, with no info to the costumer
about the implicit risk of that choice, it's shamely unresponsable.
An exploit about how to format a drive with a vbscript was available
on bugtraq before the patch was released. Please think how
many times you needed to run ActiveX in e-mail (I never did, in 1353
mail + ~50000 news messages), then compare cost vs. benefits.

--
Bye,
Francesco
Remove Bindi to reply in e-mail

Bruce Chastain

unread,
Nov 15, 1999, 3:00:00 AM11/15/99
to
A <AM...@hotmail.com> wrote in message
news:36476.831038546B7...@12.78.213.223...

> Reporting "threats" without bothering to mention that the immediate fix is
> available is irresponsible.

Yep, they should always wait for users to loose data.

Bruce.


Tom C. Koch

unread,
Nov 15, 1999, 3:00:00 AM11/15/99
to
Francesco -

> It's worth to point out that this worm, like many others, can be
> avoided just having a %windir% name different than the default. It
> looks strange to me that nobody even suggests this easy, harmless,
> useful security measure.
>

That is not easy unless you want to re-install Windows and all applications.
Also, a script could simply reference the variable name, %windir%, even
though this particular script may not do that.

A

unread,
Nov 15, 1999, 3:00:00 AM11/15/99
to
bcha...@XNOSPAMXhyperfeed.com (Bruce Chastain) wrote in
<#X91yO3L$GA....@cppssbbsa02.microsoft.com>:

The fix was posted in August, Bruce.

I didn't say they shouldn't report virus threats. I said that reporting
them without telling people that there was a fix already available is
irresponsible.

You're not a journalist, by any chance?

>Bruce.

A

Spaceman

unread,
Nov 15, 1999, 3:00:00 AM11/15/99
to
No,
 
He means they should post the fix along with the threat since ,
It was fixed before it was found....
It's bad reporting that makes it so much of a big deal
when it's not....
 
 
A <AM...@hotmail.com> wrote in message
news:36476.831038546B7...@12.78.213.223...
> Reporting "threats" without bothering to mention that the immediate fix is
> available is irresponsible.

Yep, they should always wait for users to loose data.

Bruce.


Bruce Chastain

unread,
Nov 15, 1999, 3:00:00 AM11/15/99
to
Spaceman <spac...@realspaceman.com> wrote in message
news:u1SQWn3L$GA....@cppssbbsa02.microsoft.com...

"It's bad reporting that makes it so much of a big deal when it's not."

Since virus writers are pathologically compelled to exploit each and every
weakness in the system, and as such are entirely predicable, there's no such
thing as a virus or potential virus that's not a big deal. It's not a
matter of whether customer data will be destroyed, but when. Since it takes
time for the news to disseminate, the sooner they get started, the better.

I hope the journalists will continue to responsibly inform us of both
present threats and the entirely predictable future threats, whether they
have knowledge of a fix at the time of writing or not.

I agree that informing us of a fix is also important, but silence will never
be an acceptable alternative when they aren't yet aware a fix. If they are
unable to quickly find information about a fix, then I say run the story as
is. I'd rather get the story in bits and pieces instead of a reported
censoring themselves because of the inability to find details which may not
even exist yet.

I found the reporting of Bubble Boy to be entirely appropriate and timely.
Not every report included every possible detail, but that's perfectly
acceptable since it helps alerts us even sooner. The possibility of a virus
that could infect without even launching an attached file is a really big
story, and deserved as much coverage as it could get. Even if no one has
been injured by it yet, the timely coverage will help reduce future
injuries, and will help bring pressure on MS to stop producing such
outrageous security holes in their programs.

Bruce.


Bruce Chastain

unread,
Nov 15, 1999, 3:00:00 AM11/15/99
to
A <AM...@hotmail.com> wrote in message
news:8E7F663A3AML...@207.46.180.23...

> The fix was posted in August, Bruce.

I know, but apparently not everyone else did. That's unfortunate, but
entirely expected.

> You're not a journalist, by any chance?

Nope, just a virus target.

Bruce.


A

unread,
Nov 15, 1999, 3:00:00 AM11/15/99
to
bcha...@XNOSPAMXhyperfeed.com (Bruce Chastain) wrote in
<unrK7B8L$GA.241@cppssbbsa04>:

>A <AM...@hotmail.com> wrote in message
>news:8E7F663A3AML...@207.46.180.23...
>> The fix was posted in August, Bruce.
>
>I know, but apparently not everyone else did.

Because the "responsible" media didn't bother to tell them. I don't recall
hearing any mention of a fix in the mainstream media, yet I heard many
reports of a threat that was not yet known "in the wild" (they didn't
mention that little nugget either).

If the mainstream media had said - "Don't even open your e-mail package
until we broadcast details of the fix", they would at least have been part
of the solution, instead of being part of the problem

A

Bruce Chastain

unread,
Nov 16, 1999, 3:00:00 AM11/16/99
to
A <AM...@hotmail.com> wrote in message
news:8E7FDB306AML...@207.46.180.23...

> bcha...@XNOSPAMXhyperfeed.com (Bruce Chastain) wrote in
> If the mainstream media had said - "Don't even open your e-mail package
> until we broadcast details of the fix", they would at least have been part
> of the solution, instead of being part of the problem

Since it isn't in the wild yet, there isn't any problem for them to be part
of. All they did was raise awareness as early as possible which I view as a
good, beneficial, and responsible act.

Bruce.


Tom C. Koch

unread,
Nov 16, 1999, 3:00:00 AM11/16/99
to
And as I stated, they failed to mention that the patch for this problem was
released in August. That is nothing but irresponsible reporting.

--
Tom Koch (MS MVP)
Awareness is free.

"Bruce Chastain" <bcha...@XNOSPAMXhyperfeed.com> wrote in message

news:u4CDmIFM$GA.241@cppssbbsa04...

Bruce Chastain

unread,
Nov 16, 1999, 3:00:00 AM11/16/99
to
Tom C. Koch <tomko...@hotmail.com> wrote in message
news:#nL9JNFM$GA.251@cppssbbsa05...

> And as I stated, they failed to mention that the patch for this problem
was
> released in August. That is nothing but irresponsible reporting.

If they knew about it and failed to report it, yes. Otherwise no.

Bruce.


Spaceman

unread,
Nov 16, 1999, 3:00:00 AM11/16/99
to
If they were real reporters of Interent news
they would have known...
 
I knew and I only use MS software for fun mostly....<g>
...
 

Bruce Chastain

unread,
Nov 16, 1999, 3:00:00 AM11/16/99
to
Spaceman <spac...@realspaceman.com> wrote in message
news:eqh8ZWFM$GA....@cppssbbsa02.microsoft.com...

"If they were real reporters of Interent news they would have known.."

It's safe to say that 99% of reporters are not "real reporters of Internet
news", so what does that leave us with? Virtually no Internet news at all?
Can non-farmers report farming news? Can non-auto workers report stories on
cars? Does the source of each news story have to talk with EVERY reporter
at EVERY paper in EVERY country just to make sure everyone has the right
information, and first hand?

The situation you suggest is totally unworkable. In order for us to get
news on a zillion different topics, it's guaranteed that 99% of the time the
reporter really doesn't know the topic very well and must trust the text
they get from other news services. No doubt they try to verify the details
for the stories they can grasp the details of, but as I noted above, that's
almost always impossible.

Just as it's virtually impossible for the reporter to be an expert in every
field they report on, especially in the computer industry.

While I agree with your goals and ideals, they aren't realizable in this
world.

Bruce.


Spaceman

unread,
Nov 16, 1999, 3:00:00 AM11/16/99
to
Right,
 
so listen to MS about MS software....
 
and listen to others about other software...
 
and listen to the virus writers about viruses ???<g>
 
 

Bruce Chastain

unread,
Nov 17, 1999, 3:00:00 AM11/17/99
to
Sorry, but I can't figure out how you got that from what I said.

Bruce.

Spaceman <spac...@realspaceman.com> wrote in message

news:eT4JxqJM$GA.275@cppssbbsa04...

Spaceman

unread,
Nov 17, 1999, 3:00:00 AM11/17/99
to
simple...
 
don't listen to internet reporters unless you want news on internet reporters....
and not actual Internet news...
since any person that really did any investigation ....(part of reporting.....)
would have been considered a real reporter and not an Internet reporter...
 
and would have found out a patch existed and reported it also with the other info...
 
 
 

Bruce Chastain

unread,
Nov 17, 1999, 3:00:00 AM11/17/99
to
Spaceman <spac...@realspaceman.com> wrote in message
news:#MOOJ#RM$GA....@cppssbbsa02.microsoft.com...

>don't listen to internet reporters unless you want news on internet
reporters....
>and not actual Internet news...
>since any person that really did any investigation ....(part of
reporting.....)
>would have been considered a real reporter and not an Internet reporter...

Sorry, but there's 4 gazillion topics out there and just a relatively few
reporters and sources of news. Your "solution" may work in an extremely
limited case, but it totally impractical for 99% of the news out there.

And as I pointed out earlier, the sources of the news story can't possibly
handle ALL the reporters in the world and their efforts to verity stories,
so reporters MUST take a large portion of what they report from other
reports.

And even if you limited yourself to just the very rare knowledgeable
reporter, I find it amazing how often the supposed "experts" get it wrong
too. So they can't really be trusted either.

Nope. Your suggestion is totally unworkable.

Bruce.


Frederic Miller

unread,
Nov 17, 1999, 3:00:00 AM11/17/99
to
Bruce,
In general terms, reporters are brain sucking gas bags unwilling or too lazy
to do their homework!

Spaceman

unread,
Nov 17, 1999, 3:00:00 AM11/17/99
to
I think you don't understand the difference between a real reporter
and a website writer (I'm one <LOL>)

Tom C. Koch

unread,
Nov 18, 1999, 3:00:00 AM11/18/99
to
Oh please, give me a break. The story was about a vulnerability in Microsoft
software, and these so-called reporters didn't even attempt to get
information about it from Microsoft, or they would have reported that the
patch had already existed for 10 weeks. But that would have made the story
non-news.

--
Tom Koch (MS MVP)
Awareness is free.

"Bruce Chastain" <bcha...@XNOSPAMXhyperfeed.com> wrote in message
news:#bgN55UM$GA....@cppssbbsa02.microsoft.com...

> Spaceman <spac...@realspaceman.com> wrote in message
> news:#MOOJ#RM$GA....@cppssbbsa02.microsoft.com...
> >don't listen to internet reporters unless you want news on internet
> reporters....
> >and not actual Internet news...
> >since any person that really did any investigation ....(part of
> reporting.....)
> >would have been considered a real reporter and not an Internet
reporter...
>

Majik

unread,
Nov 18, 1999, 3:00:00 AM11/18/99
to
Why Tom, they went to Lockheed to get the info on one report. When did MS
buy Lockheed?

So maybe it's only if you're flying, hence the "bubble", they do float, that
you could possbily get the virus.

I'm still trying to fiigure what the hey Lockheed was a reliable source for.

These so called reporters can't make up their minds what they want to do
except cause a panic situation then put a retraction about it way way way in
the back in small print that 99.99999999999999999% of the times overlooked
and then only those that do see it didn't see the story to begin with and
have no clue as to what the retraction was about.

These reporters are getting to be like AOL, a joke.

Majik


"Tom C. Koch" <tomko...@hotmail.com> wrote in message

news:#RlRAWVM$GA.204@cppssbbsa05...

Majik

unread,
Nov 18, 1999, 3:00:00 AM11/18/99
to

"Bruce Chastain" <bcha...@XNOSPAMXhyperfeed.com> wrote in message
news:e6PqywHM$GA....@cppssbbsa02.microsoft.com...

Spaceman <spac...@realspaceman.com> wrote in message
news:eqh8ZWFM$GA....@cppssbbsa02.microsoft.com...
"If they were real reporters of Interent news they would have known.."

>It's safe to say that 99% of reporters are not "real reporters of Internet


news", so what does that leave us with? Virtually no Internet news at all?
Can non-farmers report farming news? Can non-auto workers report stories on
cars? Does the source of each news story have to talk with EVERY reporter
at EVERY paper in EVERY country just to make sure everyone has the right
information, and first hand?

Non-farmers do farming news all the time. Wake up early enough and get the
farm report and you'll see women (not running down the gender mind you)
doing the reporting and hell, I know they don't do any farming. I've seen
some that didn't know the different between a hay baler and combine. They
learned, but it took a while. I'm not knocking them for not knowing, I'm
saying they're non-famers reporting farm news. You'll find better farm info
at the local co-op.

Non-auto-workers reporting auto news. Sure maybe they can work on one a
little, but the possiblity of them being able to build or rebuild a car from
the ground up in very very low.

The reporter(s) should talk to reliable sources. They teach that part, I
know fo a fact. You have to have a reliable source within the industry or
whatever the story is about. You can't go over there and get Spaceman and
have him be a source on land reclamation from the coal industry.

One of the reports I read had as their source someone from Lockheed. The
last time I checked, Lockheed was making planes, not e-mail software or
operating systems for the personal computer. They may write software for
their planes, but when was the last time you ran any of it on your home
computer?


>The situation you suggest is totally unworkable. In order for us to get
news on a zillion different topics, it's guaranteed that 99% of the time the
reporter really doesn't know the topic very well and must trust the text
they get from other news services. No doubt they try to verify the details
for the stories they can grasp the details of, but as I noted above, that's
almost always impossible.

We agree upon somethign here, but their choice of a reliable source is what
will make or break the story and when it's broke, it's irresponsible
reporting.

>Just as it's virtually impossible for the reporter to be an expert in every
field they report on, especially in the computer industry.

>While I agree with your goals and ideals, they aren't realizable in this
world.

No, they never will work because people try to take shortcuts instead of
getting the real facts and using them.

Majik


Bruce.

Francesco Tessari

unread,
Nov 19, 1999, 3:00:00 AM11/19/99
to

Bruce Chastain <bcha...@XNOSPAMXhyperfeed.com> scrive nel post:
e6PqywHM$GA....@cppssbbsa02.microsoft.com...

> Just as it's virtually impossible for the reporter to be an expert
in every
> field they report on, especially in the computer industry.

It's a simple rule: to listen to both sides.
Got an information about a security problem in a MS program? Well,
contact Microsoft, _before_ printing the article. If this looks too
heavy to you (you=the reporter), then get another job.
Don't you think so?
If they did, they 'd have reported the correct story (a pity MS bug,
depending IMO on the original mistake to allow active content to run
by default). But they'd also said "A fix is available at the url: ..."

> While I agree with your goals and ideals, they aren't realizable in
this
> world.

Fortunately not all reporters think that check cross-check their
information is "not realizable in his world"

Francesco Tessari

unread,
Nov 20, 1999, 3:00:00 AM11/20/99
to

Tom,
That was not supposed to be an ultimate solution, of course.
It just adds a tad of security, at no cost, if done at first install.
Referencing to %windir% requires a further step of tecnical knowledge
to the script-writer (which is not so obvious he have) and mostly that
he thinks about this possibility.
As I told, my only reasonable solution is to disable active content in
e-mail, and that's exactly what I did long before the worm alert.

DaffyD

unread,
Nov 22, 1999, 3:00:00 AM11/22/99
to
How do you disable active content in e-mail?

--
a( :[]={ DaffyD®

Life is a joke but we must all write our own punchline.


"Francesco Tessari" <texfr...@tiscalinet.it> wrote in message
news:814umm$1fm74$3...@fu-berlin.de...

Tom C. Koch

unread,
Nov 22, 1999, 3:00:00 AM11/22/99
to
> How do you disable active content in e-mail?

In OE, click Tools|Options|Security and set OE to run in the Restricted
Sites Zone. Then in IE, click Tools|Options|Security, select Restricted
Sites, click Custom Level, and near the bottom under Scripting, disable (or
set to prompt) Active scripting, Allow paste operations via script, and
Scripting of Java applets. The combination of those 2 steps will cause any
scripting in HTML mail to fail.

Larry Suddarth

unread,
Nov 22, 1999, 3:00:00 AM11/22/99
to
I know that this off the subject, but I like your signature (Life is a
joke...........)

Larry Suddarth

DaffyD <daf...@woohoo.com> wrote in message
news:#JHfX3NN$GA.252@cppssbbsa05...


> How do you disable active content in e-mail?
>

DaffyD

unread,
Nov 22, 1999, 3:00:00 AM11/22/99
to
Thanks, Tom.
DD
"Tom C. Koch" <tomko...@hotmail.com> wrote in message
news:ePOPB7ON$GA....@cppssbbsa02.microsoft.com...

> > How do you disable active content in e-mail?
>

DaffyD

unread,
Nov 22, 1999, 3:00:00 AM11/22/99
to
Thanks--you're the first one to say so. I made it up.
DD

"Larry Suddarth" <sudd...@hal-pc.org> wrote in message
news:eGLH#YTN$GA.248@cppssbbsa05...


> I know that this off the subject, but I like your signature (Life is a
> joke...........)
>
> Larry Suddarth
>
> DaffyD <daf...@woohoo.com> wrote in message
> news:#JHfX3NN$GA.252@cppssbbsa05...

> > How do you disable active content in e-mail?
> >

Robert Patten

unread,
Nov 29, 1999, 3:00:00 AM11/29/99
to
DaffyD wrote...
> Thanks, Tom.

Ditto.

Prevention is always better than cure! :-)

--
Robert.

Please keep replies within the newsgroup!
Roro's Download Palace: www.patten1.freeserve.co.uk

0 new messages