[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [RT] A very funny website/virus



PureBytes Links

Trading Reference Links

--- In realtraders@xxxxxxxxxxxxxxx, "Bob" <sampah2002@xxxx> wrote:
> Although many viruses spoof the email sender this one, which gave
> erdely@xxxx as the 'apparent' sender does in fact originate
> from an earthlink account. 

FWIW, there appears to have been two viruses sent out from two 
different addresses:

erdely@xxxx 
http://groups.yahoo.com/group/realtraders/message/20936
http://groups.yahoo.com/group/realtraders/message/20934

AND

bobrabcd <bobrabcd@xxxx
http://groups.yahoo.com/group/realtraders/message/20930

It'd be nice if the moderator would delete these so the unaware on 
the list aren't added to the infected.

BW







First hop is:
> 
> Received: from unknown (HELO swan.mail.pas.earthlink.net)
> (207.217.120.123)
>   by mta2.grp.scd.yahoo.com with SMTP; 24 Jan 2003 14:36:08 -0000
> Received: from pool0393.cvx36-bradley.dialup.earthlink.net
> ([216.244.19.138] helo=Nhoruwg)
>  by swan.mail.pas.earthlink.net with smtp (Exim 3.33 #1)
>  id 18c4vh-00023G-00
>  for realtraders@xxxxxxxxxxxxxxx; Fri, 24 Jan
> 
> A dialup customer using a Los Angeles access point. First two hops 
are
> infact in the Monrovia/LA area.
>  Hope that helps.
> 
>  Bob
> 
> 
> ----- Original Message -----
> From: "profitok" <profitok@xxxx>
> To: <realtraders@xxxxxxxxxxxxxxx>
> Sent: Friday, January 24, 2003 11:39 AM
> Subject: Re: [RT] A very funny website/virus
> 
> 
> > it was from Jeff
> > ----- Original Message -----
> > From: "jeff" <erdely@xxxx>
> > To: <realtraders@xxxxxxxxxxxxxxx>
> > Sent: Friday, January 24, 2003 9:35 AM
> > Subject: [RT] A very funny website
> >
> >
> > > An e-mail delivered to you contained a virus. The virus was
> > > identified by the Optimum Online E-mail Virus Protection system
> > > using Symantec's Norton Anti Virus Technology. Please contact
> > > and advise the sender of the virus-specific information provided
> below.
> > >
> > > class.bat was infected with the malicious virus W32.Klez.H@xx 
and
> has been
> > deleted because the file cannot be cleaned.
> > >
> > >
> >
> >
> > To unsubscribe from this group, send an email to:
> > realtraders-unsubscribe@xxxxxxxxxxxxxxx
> >
> >
> >
> > Your use of Yahoo! Groups is subject to
> http://docs.yahoo.com/info/terms/
> >
> >
> >


To unsubscribe from this group, send an email to:
realtraders-unsubscribe@xxxxxxxxxxxxxxx

 

Your use of Yahoo! Groups is subject to http://docs.yahoo.com/info/terms/