J
John L
Hi all,
I would appreciate any input on this email that
I received today. I don't know how to interpret
this "returned mail" message, but that's not my
primary concern.
1.
I never emailed the recipient.
2.
I've never seen the recipient's address before - I
don't know them.
3.
I'm using the evaluation version of bitdefender
8 Standard, and the scans are clean.
4.
I just re-formatted my HDD and re-installed Win2K a
week ago, after it was trashed by CoolWebSearch.
Before re-connecting to the net I installed SpywareBlaster,
Ad-Aware, Spybot Search & Destroy. I have never opened IE or
Outlook - I use Mozilla and Eudora instead. I'm on the learning
curve re online security...CWW was a nightmare.
I'm confused. According to bitdefender, my system is
completely clean, and yet it seems that my PC attempted
to email someone - with that virus attached.
What is the reference to Symantic's detection of w32.Beagle@mm!zip ?
Did the recipient's PC receive the email and send it back ?
I've copied the text from the returned mail below - I've edited
sender and recipient addys with asterisks preserve anonymity.
Any and all ideas appreciated !
thanks,
John.
******************
Date: Wed, 15 Dec 2004 11:53:36 -0500 (EST)
From: Mail Delivery Subsystem <[email protected]>
To: <pc****@erols.com>
Subject: Returned mail: see transcript for details
Auto-Submitted: auto-generated (failure)
The original message was received at Wed, 15 Dec 2004 11:53:32 -0500
(EST)
from pool-68-239-225-80.nwrk.east.verizon.net [68.239.225.80]
----- The following addresses had permanent fatal errors -----
<r****@twcny.rr.com>
(reason: 550 5.1.6 Recipient no longer on server:
(e-mail address removed))
----- Transcript of session follows -----
.... while talking to ms-mta-02-fn.nyroc.rr.com.:<<< 550 5.1.6 Recipient no longer on server: r****@twcny.rr.com
550 5.1.1 <r****@twcny.rr.com>... User unknown
<<< 554 5.5.0 No recipients have been specified.
Reporting-MTA: dns; nymx02.mgw.rr.com
Received-From-MTA: DNS; pool-68-239-225-80.nwrk.east.verizon.net
Arrival-Date: Wed, 15 Dec 2004 11:53:32 -0500 (EST)
Final-Recipient: RFC822; r****@twcny.rr.com
Action: failed
Status: 5.1.6
Remote-MTA: DNS; ms-mta-02-fn.nyroc.rr.com
Diagnostic-Code: SMTP; 550 5.1.6 Recipient no longer on server:
(e-mail address removed)
Last-Attempt-Date: Wed, 15 Dec 2004 11:53:36 -0500 (EST)
Received: from SYSTEM.net (pool-68-239-225-80.nwrk.east.verizon.net
[68.239.225.80])
by nymx02.mgw.rr.com (8.12.10/8.12.8) with SMTP id
iBFGrVmE021283
for <r****@twcny.rr.com>; Wed, 15 Dec 2004 11:53:32 -0500 (EST)
Date: Wed, 15 Dec 2004 11:53:29 -0500
To: "Rd" <r****@twcny.rr.com>
From: "Pc" <pc****@erols.com>
Subject: RE: Message Notify
Message-ID: <*************@twcny.rr.com>
MIME-Version: 1.0
Content-Type: multipart/mixed;
boundary="--------kkwmshtzcqqehtpkiqoy"
X-Virus-Scanned: Symantec AntiVirus Scan Engine
X-Virus-Scan-Result: Repaired 23577 W32.Beagle@mm!zip
I would appreciate any input on this email that
I received today. I don't know how to interpret
this "returned mail" message, but that's not my
primary concern.
1.
I never emailed the recipient.
2.
I've never seen the recipient's address before - I
don't know them.
3.
I'm using the evaluation version of bitdefender
8 Standard, and the scans are clean.
4.
I just re-formatted my HDD and re-installed Win2K a
week ago, after it was trashed by CoolWebSearch.
Before re-connecting to the net I installed SpywareBlaster,
Ad-Aware, Spybot Search & Destroy. I have never opened IE or
Outlook - I use Mozilla and Eudora instead. I'm on the learning
curve re online security...CWW was a nightmare.
I'm confused. According to bitdefender, my system is
completely clean, and yet it seems that my PC attempted
to email someone - with that virus attached.
What is the reference to Symantic's detection of w32.Beagle@mm!zip ?
Did the recipient's PC receive the email and send it back ?
I've copied the text from the returned mail below - I've edited
sender and recipient addys with asterisks preserve anonymity.
Any and all ideas appreciated !
thanks,
John.
******************
Date: Wed, 15 Dec 2004 11:53:36 -0500 (EST)
From: Mail Delivery Subsystem <[email protected]>
To: <pc****@erols.com>
Subject: Returned mail: see transcript for details
Auto-Submitted: auto-generated (failure)
The original message was received at Wed, 15 Dec 2004 11:53:32 -0500
(EST)
from pool-68-239-225-80.nwrk.east.verizon.net [68.239.225.80]
----- The following addresses had permanent fatal errors -----
<r****@twcny.rr.com>
(reason: 550 5.1.6 Recipient no longer on server:
(e-mail address removed))
----- Transcript of session follows -----
.... while talking to ms-mta-02-fn.nyroc.rr.com.:<<< 550 5.1.6 Recipient no longer on server: r****@twcny.rr.com
550 5.1.1 <r****@twcny.rr.com>... User unknown
<<< 554 5.5.0 No recipients have been specified.
Reporting-MTA: dns; nymx02.mgw.rr.com
Received-From-MTA: DNS; pool-68-239-225-80.nwrk.east.verizon.net
Arrival-Date: Wed, 15 Dec 2004 11:53:32 -0500 (EST)
Final-Recipient: RFC822; r****@twcny.rr.com
Action: failed
Status: 5.1.6
Remote-MTA: DNS; ms-mta-02-fn.nyroc.rr.com
Diagnostic-Code: SMTP; 550 5.1.6 Recipient no longer on server:
(e-mail address removed)
Last-Attempt-Date: Wed, 15 Dec 2004 11:53:36 -0500 (EST)
Received: from SYSTEM.net (pool-68-239-225-80.nwrk.east.verizon.net
[68.239.225.80])
by nymx02.mgw.rr.com (8.12.10/8.12.8) with SMTP id
iBFGrVmE021283
for <r****@twcny.rr.com>; Wed, 15 Dec 2004 11:53:32 -0500 (EST)
Date: Wed, 15 Dec 2004 11:53:29 -0500
To: "Rd" <r****@twcny.rr.com>
From: "Pc" <pc****@erols.com>
Subject: RE: Message Notify
Message-ID: <*************@twcny.rr.com>
MIME-Version: 1.0
Content-Type: multipart/mixed;
boundary="--------kkwmshtzcqqehtpkiqoy"
X-Virus-Scanned: Symantec AntiVirus Scan Engine
X-Virus-Scan-Result: Repaired 23577 W32.Beagle@mm!zip