Re: w32/MyDoomA

From: Walter Roberson (roberson_at_ibd.nrc-cnrc.gc.ca)
Date: 01/30/04


Date: 30 Jan 2004 04:35:17 GMT

In article <sRkSb.108$6W6.137952@news.uswest.net>,
Linda <linda0203@nospam.net> wrote:
:I have received 2 messages in the last 2 days saying that I sent a virus
:infected email-one identified it as w32/MyDoomA

I've received many more than that, and I don't even use Windows.

If the email messages you received include the message headers,
have a careful look at the IP address of the system that sent the
message that is apparently from you. You will probably find that the
IP address is no-where near yours. The worm is copying or generating
email addresses from somewhere.

-- 
   Beware of bugs in the above code; I have only proved it correct,
   not tried it.                             -- Donald Knuth


Relevant Pages

  • Re: W32/Mydoom.ag@MM - Heads Up!
    ... And as mentioned in Pa Bears post, you must click on the hyperlink to execute the virus, unless I'm mis-interpreting it. ... > Internet Explorer IFRAME Buffer Overflow Vulnerability ... > | spreads by sending email messages to addresses found on the local ...
    (microsoft.public.windowsxp.general)
  • Re: W32/Mydoom.ag@MM - Heads Up!
    ... And as mentioned in Pa Bears post, you must click on the hyperlink to execute the virus, unless I'm mis-interpreting it. ... > Internet Explorer IFRAME Buffer Overflow Vulnerability ... > | spreads by sending email messages to addresses found on the local ...
    (microsoft.public.windows.inetexplorer.ie6.browser)
  • Re: W32/Mydoom.ag@MM - Heads Up!
    ... And as mentioned in Pa Bears post, you must click on the hyperlink to execute the virus, unless I'm mis-interpreting it. ... > Internet Explorer IFRAME Buffer Overflow Vulnerability ... > | spreads by sending email messages to addresses found on the local ...
    (microsoft.public.windows.inetexplorer.ie6_outlookexpress)
  • Re: W32/Mydoom.ag@MM - Heads Up!
    ... And as mentioned in Pa Bears post, you must click on the hyperlink to execute the virus, unless I'm mis-interpreting it. ... > Internet Explorer IFRAME Buffer Overflow Vulnerability ... > | spreads by sending email messages to addresses found on the local ...
    (microsoft.public.security)
  • Re: messages from ISPs
    ... >email messages from ISPs saying that they couldn't deliver ... Most current viruses and worms forge a sending address so the virus ...
    (microsoft.public.security)