Internet Insider with David Radin
Internet Insider
Listen/Station List
Show Highlights
Guest List
Free Insider Tip Letter
Talk Back
The Insider Team
The WOW
The Stellar List
The Insider Tip
Internet Insider Home

Insider Extras
Insider In-Depth
Insider Tip Letter
Step Up to the Mic
Insider Archives
Insider Guides
The Anti-Virus Page
The Megabyte

Outside the Studio
Our Sponsors
To Sponsor or Advertise
Broadcast the Show
Bookstore
Press Room
Editorial Submissions
Employment
FAQ
Link to Us
Site Map
About Us
Insider Radio Home

Click here to hear great short radio shows, learn helpful computer ideas or subscribe to David's Tip Letter
Insider Radio Network

May 30, 2001

Sulfnbk.exe Hoax

A hoax email is currently circulating, warning computer users that the file sulfnbk.exe is a virus set to trigger on June 1, that it is not detectable by anti-virus software, and that the file should be deleted immediately. The file is not a virus. It is actually a useful utility provided with all installations of Microsoft Windows, and assists in restoring long file names.

If you've deleted the file, you can locate instructions on how to reinstall it at both Symantec's and McAfee's web sites.

The sulfnbk.exe file is typically found in the C:\Windows\Command folder. If the file is located in a different folder on your system, or arrives as an email attachment, it should be scanned immediately with your anti-virus software. A real virus, W32 Magistr.24876, can arrive as an email attachment with the name sulfnbk.exe.

Do not contribute to the hoax by forwarding the message.

Here is an example of what the hoax email looks like:

Do you believe that a friend of mine sent me an alert and the procedure that we have to follow for the possible infection of SULFNBK.EXE. And I had checked, just to make sure. An then... the file was there, hidden even of McAfee and Norton, maybe waiting something to start work.
Well, see bellow the procedure that I followed step by step, and I found the file:

  1. Start/Find Folders. Type the file name: SULFNBK.EXE
  2. If it find, open Windows Explorer, browse into the folder where the file is and delete it. Do not click with left button on the file and do not open it.
  3. Just delete it
  4. Mine was on Windows/Command
  5. The virus from the person who gave the alert was on Windows/Config
Yes, Norton and McAfee do not detect it.
We do not know if it makes some damage on the machine, but I think that anybody will not want to test it to know, will it?
Folks, this is not fun, I deleted it from my computer.
And my definitions are updated.
Do the same, ok?
A new version of this hoax email has also begun circulating, with additional text stating that the virus will trigger on June 1st:

It was brought to my attention yesterday that a virus is in circulation via email. I looked for it and to my surprise I found it on mine. ..
Please follow the directions and remove it from yours TODAY!!!!!!!

No Virus software can detect it.  It will become active on June 1, 2001.
It might be too late by then. It wipes out all files and folders on
the hard drive. This virus travels thru E-mail and migrates to the
'C:\windows\command' folder. 

The bad part is: You need to contact everyone you have sent ANY
E-mail to in the past few months. Many major companies have found this virus on
their computers. Please help your friends !!!!!!!!

DO NOT RELY ON YOUR ANTI-VIRUS SOFTWARE. McAFEE and NORTON CANNOT
DETECT IT BECAUSE IT DOES NOT BECOME A VIRUS UNTIL JUNE 1ST.

WHATEVER YOU DO, DO NOT OPEN THE FILE!!!


Be sure to visit your anti-virus software vendor's web site to update your virus definition files.