From: Jon A. <jo...@sq...> - 2003-06-28 04:34:34
|
Hi All, Recently the lists been hit with a large number of viruses, that have been bounced because they were posted form non-subscribed users. I'm guessing that a member of both the devel and users list is infected with the Sobig virus [1]. As this is a list, there are a large number of users, so I suggest you all run a scan of the system you're using to check for infection. [1] http://www.sophos.com/virusinfo/analyses/w32sobige.html Now I'll return you to your scheduled broadcasts :) -- Jonathan Angliss (jo...@sq...) |
From: Jimmy C. <ji...@ad...> - 2003-06-28 04:47:15
|
Just to note (small plug), that the block attachments plugin detects and disables downloading of attachments that contain the Sobig virus (including the newest one, Sobig.e), along with many of the other mass mailing worms. All php, no other files/programs necessary :) Jimmy > Hi All, > > Recently the lists been hit with a large number of viruses, that > have been bounced because they were posted form non-subscribed > users. I'm guessing that a member of both the devel and users list > is infected with the Sobig virus [1]. As this is a list, there are a > large number of users, so I suggest you all run a scan of the system > you're using to check for infection. > > [1] http://www.sophos.com/virusinfo/analyses/w32sobige.html > > Now I'll return you to your scheduled broadcasts :) > > -- > Jonathan Angliss > (jo...@sq...) |
From: Jonathan A. <jo...@sq...> - 2003-07-04 13:40:36
|
Hello Jon, On Friday, June 27, 2003, Jon Angliss wrote... > http://www.sophos.com/virusinfo/analyses/w32sobige.html If anybody recognizes the following information, I STRONGLY suggest a virus scan of your computer. +-----------------+-----------------+--------------------------------+ |IP | ISP | E-Mail Posted From (Fake) | +-----------------+-----------------+--------------------------------+ |81.50.224.17 | wanadoo.fr | morlon [at] journaldunet.com | |194.27.5.182 | | webmaster [at] eng.boun.edu.tr | |198.186.202.147 | vasoftware.com | rtd1 [at] cornell.edu | |198.186.202.147 | vasoftware.com | gurgen [at] boun.edu.tr | |194.27.5.182 | | cgrasso [at] cam.cornell.edu | |198.186.202.147 | vasoftware.com | info [at] eng.boun.edu.tr | +-----------------+-----------------+--------------------------------+ The from addresses have been spoofed to make the mails appear from somebody else, so if you have any of the above mentioned are listed anywhere in address books, or websites you've looked at recently, PLEASE check your system for viruses. -- Jonathan Angliss (jo...@sq...) |