At the risk of overkill, I wanted to provide a background info that I
hope might be a little enlightening concerning this virus, and the
subject in general:
-- It should be emphasized that the virus in the "Anthony Curtis" email
did not originate with his computer, or any of those at LV Advisor.
-- Any computer when infected with this virus from another source will
generate an email with the attachment, encode the email with a Sender
selected from mail in the inbox (in this case "Curtis"), and send it out
to all the email addresses found in the address book and in other
messages in the inbox.
···
============
-- Given that at least 3 members of the winpoker Yahoo! group have
reported receiving the "Curtis" virus email, it's very likely that one
source is an infected winpoker member who receives individual emails of
the group posts.
-- I expect those who have posted to winpoker (at least recently), or to
any other group from which this person receives individual emailed
posts, are susceptible to receiving this virus email.
============
By the way, for what it's worth, this virus is not one of those that
attempt to corrupt a recipient's PC system itself (e.g. deletion of
system files). Instead, when activated (by opening the email
attachment) between the dates of Feb. 1 and Feb. 12, it will configure
your PC to repeatedly "hit" the Microsoft Corp. and SCO Group websites.
With enough hits by multiple infected computers these websites/servers
will be disrupted. This isn't the first such attack. A similar assault
in December on SCO produced over 600,000 hits on their system.
However, if your computer is affected, those repeated hits by your
computer will severely reduce it's response to any program use or to
internet access.
============
Removal of the virus if infected
--------------------------------
- If infected, a removal tool can be downloaded from the website of
antivirus software providers (even if you don't have their product).
- Users of Windows XP or ME need to take an initial step before use of
the tool.
================================
Extended discussion on removal:
--> You may wish to skip this unless you actually become infected 
If you don't have virus software on your system that scans incoming
emails for virus attachments (and removes the virus before you even see
the email), and you should become infected (note that it's necessary
that you open the attachment to the email to become infected), you can
download a removal tool for the virus from an antivirus website such as
Symantec.com.
However, if you're running Windows XP or Windows ME there's a step that
is critical to take before running the tool.
These two operating systems have a feature called the System Restore
Utility. The purpose of this utility is to backup certain system files
(such as the Registry) anytime there's a modification. This way, if
there's a subsequent problem for any reason, these files can be restored
to their state before the change.
In order to ensure the integrity of the backups, Windows doesn't permit
any external program to modify them. Consequently, if a backup was
performed by System Restore at any point subsequent to the infection,
the backups can't be repaired by the removal tool. If there's a need to
later restore these backups to your system the virus will be reinstated.
For this reason, Windows ME/XP users must turn off the System Restore
Utility before running the virus removal tool (and turn it back on
after). Instructions should be included in those for the removal tool.
Be certain not to skip this step if applicable.
- Harry