[ale] E-mail Virus (with header)

sangell at nan.net sangell at nan.net
Mon Dec 17 15:10:59 EST 2001



Trust me guy...it is not me. Not my e-mail program....My home PC is
off.....my DSL connection is off....these e-mails are being generated
somewhere else. I know enough about e-mail to know that no virus can be
sent with the PC turned OFF!

\_\_\_\_\_\_\_\_\_\_\_/_/_/_/_/_/_/_/_/_/_/
\_    Steve Angell,  MCSE, CCNA           _/
\_    MIS Operations Manager               _/
\_    TSYS Total Debt Management  _/
\_    Norcross, GA                                   _/
\_    Phone 770-409-5570                    _/
\_    Fax      770-416-1752                   _/
\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/\/


                                                                                                                   
                    "Greg Sabino                                                                                   
                    Mullane"             To:     ale at ale.org                                                       
                    <greg at turnstep       cc:     sangell at nan.net, sangell at nan.net                                  
                    .com>                Subject:     Re: [ale] E-mail Virus (with header)                         
                                                                                                                   
                    12/17/2001                                                                                     
                    03:07 PM                                                                                       
                                                                                                                   
                                                                                                                   





-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

It's you - you are infected. The aol.com part is a red herring.
The IP the mail actually came from, 66.156.62.200, resolves
to adsl-156-62-200.asm.bellsouth.net, which is you. Your email
program does not need to be "on" for the virus to send email:
it connect directly to port 25 itself to do the dirty deed.
Viruses can also hide themselves very well - get professional
anti-viral help with this. Please disconnect yourself from the
net immediately, gather information and disinfection tools from
another computer, and clean your machine.

FWIW, the leading underscore in the email address is a big
clue that you haev the latest nasty M$ virus.

Greg Sabino Mullane
greg at turnstep.com
PGP Key: 0x14964AC8 200112171503
-----BEGIN PGP SIGNATURE-----
Comment: http://www.turnstep.com/pgp.html

iD8DBQE8HlAqvJuQZxSWSsgRAsOMAJwJkEjtMlTSP3fq2ARyhUrIw8PuPgCeJatS
gfTcz8KDSF9RzzsEwBbBI3o=
=YQJL
-----END PGP SIGNATURE-----








---
This message has been sent through the ALE general discussion list.
See http://www.ale.org/mailing-lists.shtml for more info. Problems should be 
sent to listmaster at ale dot org.






More information about the Ale mailing list