| VIRUS ALERT
Virus Name:
W32/Mimail.c@MM, W32/Mimail.e@MM and W32/Mimail.gen@MM
We would like to make all our users aware of a new virus doing the rounds. The virus spreads via email, and fakes the from address of the email. This fake email address is of the form "james@" or "john@". Please note that Webonline
does not make use of the email address james@webonline.co.za, james@webonline.biz, john@webonline.co.za or john@webonline.biz
for any communications with our clients.
Our email virus scanner has so far been effective against this threat and has blocked all of these virusses to our users.
The virus is received as an email attachment with the following characteristics:
Email message used by: W32/Mimail.c@MM
Subject: Re[2]: our private photos (plus additional spaces then random characters)
Attachment: PHOTOS.ZIP (12,958 bytes) which contains PHOTOS.JPG.EXE (12,832 bytes)
Message Body:
Hello Dear!,
Finally, i've found possibility to right u, my lovely girl :)
All our photos which i've made at the beach (even when u're withou ur bh:))
photos are great! This evening i'll come and we'll make the best SEX :)
Right now enjoy the photos.
Kiss, James.
(random characters - the same as those terminating the subject)
The attached .ZIP file contains a file named PHOTOS.JPG.EXE.
Email message used by: W32/Mimail.e@MM
Subject: don't be late! (plus additional spaces then random characters)
Attachment: readnow.zip (10,912 bytes) which contains readnow.doc.scr (10,784 bytes)
Message Body:
Will meet tonight as we agreed, because on Wednesday I don't think I'll make it,
so don't be late. And yes, by the way here is the file you asked for.
It's all written there. See you.
(random characters - the same as those terminating the subject)
The attached .zip file contains a file named readnow.doc.scr.
Reference:
W32/Mimail.c@MM - http://vil.nai.com/vil/content/v_100795.htm
W32/Mimail.e@MM - http://vil.nai.com/vil/content/v_100797.htm
W32/Mimail.gen@MM - http://vil.nai.com/vil/content/v_100796.htm
|