Re: New Virus?

From: cc (cc_at_belfordhk.com)
Date: 06/29/05

  • Next message: Alan Apperson: "Re: New Virus?"
    Date: Wed, 29 Jun 2005 09:05:33 +0800
    To: security-basics@securityfocus.com
    
    

    Hamish Stanaway sighed and wrote::
    > Hey there everyone,
    >
    > I recieved a mysterious email this morning at 1728 GMT which had headers
    > as follows:
    >

    Regardless of it being a virus, there are a few issues I have
    with this email, least of all having a zip attachment.

    1) Header's forged. (afaik, david.org <> 217.125.252.60)

    2) Zip Attachment with an unknown EXE file. (This has got to
       ring some alarm bells already.)

    3) Your girlfriend uncompressing the ZIP file and running
      the program. Not exactly the smartest thing to do, especially
      in this age of Nimdas, Sobigs, etc.

     Unless you are waiting for a zip file from someone, particularly
    this "hamish1@voyager.co.nz" (doubtful, but still possible), then
    I suggest you delete the email and forget about it. With the
    proper tools, you'd probably be able to disect the EXE file.
    AFAIK, it's one of these Netsky variants. (No, don't send it
    to me. :))

    Of course, that's just my $0.02. Perhaps someone else with
    more experience have something to say.

    Edmund


  • Next message: Alan Apperson: "Re: New Virus?"

    Relevant Pages

    • .exe file not opening in DOS
      ... Hey all, I am trying to run a program that worked perfectly until today...now ... whenever I run the .exe file for it I am told: ... Choose 'Close' to terminate the ... It seems to happen whenever I run a DOS file...this one is just an example. ...
      (microsoft.public.windowsxp.general)
    • Re: *!HELP!*C:windowssystem32autoexec.nt
      ... Rt click on the exe file that starts the game and select ... > hey all, ... > im trying to install the sims on my computer. ... running MS-DOS and Microsoft Windows Applications. ...
      (microsoft.public.windowsxp.general)
    • Standalone .exe file independent of Matlab
      ... Hey, ... I have tried using mcc comand, ... matlab dependent .exe file. ...
      (comp.soft-sys.matlab)
    • Computer help
      ... AVG caught it, although I can't say for sure ... whether she ran the .exe file. ... I believe the virus was called ... When I try to load a browser, ...
      (sci.med.transcription)
    • Re: Computer help
      ... AVG caught it, although I can't say for sure ... >> whether she ran the .exe file. ... I believe the virus was called ...
      (sci.med.transcription)