virus

  • Thread starter Thread starter Kevin Altizer
  • Start date Start date
K

Kevin Altizer

X-McAfeeVS-TimeoutProtection: 0
Return-path: <[email protected]>

Received: from ajuh ([61.117.79.252]) by hfep03.dion.ne.jp with SMTP id
<[email protected]>; Thu, 29 Jan 2004 14:37:36 +0900
Date: Thu, 29 Jan 2004 14:38:32 +0900
From: Microsoft Inet Email System <[email protected]>
Subject: Mail
To: Network Receiver <[email protected]>
Message-id: <[email protected]>
MIME-version: 1.0
Content-type: multipart/alternative; boundary=byuhjhjadpsv
X-Virus-Scanned: Symantec AntiVirus Scan Engine
X-Virus-Scan-Result: Repaired 34162 W32.Swen.A@mm

****************** McAfee VirusScan ************************
******* Alert generated at: Thu, 29 Jan 2004 04:25:08 -0500 *********
*********************************************************************

McAfee VirusScan has detected a potential threat in this e-mail=20
sent by Microsoft Inet Email System <[email protected]>.
The following actions were attempted on each suspicious part.=20
We strongly recommend that you report this virus-related activity=20
to Microsoft Inet Email System <[email protected]>.


The attachment "Unnamed attachment" contains the Potentially Unwanted Pr=
ogram(s):Exploit-MIME.gen.c.=20
This attachment has been quarantined.
 
Kevin Altizer said:
X-McAfeeVS-TimeoutProtection: 0
Return-path: <[email protected]>

Received: from ajuh ([61.117.79.252]) by hfep03.dion.ne.jp with SMTP id
<[email protected]>; Thu, 29 Jan 2004 14:37:36 +0900
Date: Thu, 29 Jan 2004 14:38:32 +0900
From: Microsoft Inet Email System <[email protected]>
Subject: Mail
To: Network Receiver <[email protected]>
Message-id: <[email protected]>
MIME-version: 1.0
Content-type: multipart/alternative; boundary=byuhjhjadpsv
X-Virus-Scanned: Symantec AntiVirus Scan Engine
X-Virus-Scan-Result: Repaired 34162 W32.Swen.A@mm

****************** McAfee VirusScan ************************
******* Alert generated at: Thu, 29 Jan 2004 04:25:08 -0500 *********
*********************************************************************

McAfee VirusScan has detected a potential threat in this e-mail=20
sent by Microsoft Inet Email System <[email protected]>.
The following actions were attempted on each suspicious part.=20
We strongly recommend that you report this virus-related activity=20
to Microsoft Inet Email System <[email protected]>.


The attachment "Unnamed attachment" contains the Potentially Unwanted Pr=
ogram(s):Exploit-MIME.gen.c.=20
This attachment has been quarantined.

It looks to me like Norton neutered the malware (Swen) but sent
the exploit code (Incorrect MIME Type) onward. McAfee then
alerted to the exploit code (which is a *good* thing in my opinion).
 
Back
Top