[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

ALERT: Message from best-forestry was cleaned; File BANG BANG YOU'RE DEAD.xls.batinfected with Win32.Yaha.E (aka Win32/Yaha.E.Worm, W32/Yaha.g@MM, Yaha.E@m, W32/Yaha-E) virus



Please refer to the Antigen Quarantine Area for more details.

 INCIDENT
------------------------------------------------------------------------------------------------------------------------

 Scan Time:       12/28/2002 03:21:18 PM
 Detection:       File BANG BANG YOU'RE DEAD.xls.bat infected with
Win32.Yaha.E (aka Win32/Yaha.E.Worm, W32/Yaha.g@MM, Yaha.E@m, W32/Yaha-E)
virus
 Disposition:     Note has been cleaned
 Quarantined:     (Document link: Quarantine Area document)
CN=fire-smtp04.fire.fordham.edu/O=FIRE!!D:\Lotus\Domino\Data\A6QArea.NSF
 Version:         Antigen 6.0 SR3 (Build 607)


 MESSAGE
------------------------------------------------------------------------------------------------------------------------

 Message ID:      006FCF99
 Sender:          best-forestry<best-forestry@ths.kth.se>
 Subject:         Fw: BANG BANG YOU'RE DEAD
 Recipients:      halsall@fordham.edu
 Routing:


 SYNOPSIS
------------------------------------------------------------------------------------------------------------------------

HTML Message Body
(strikethrough: (superscript:    << Normal >>))
      Status:       OK

FILE ATTACHMENT 'BANG BANG YOU'RE DEAD.xls.bat'
      << Win32.Yaha.E (aka Win32/Yaha.E.Worm, W32/Yaha.g@MM, Yaha.E@m, W32/Yaha-E) >>
      File size:    28402 bytes
      Host type:    STREAM
      Content type:              Exe.Win32
      Compression:  OFF
      Attributes:   PUBLIC READ-WRITE
      File flags:   2
      Created:      12/28/2002 03:21:16 PM
      Modified:     12/28/2002 03:21:16 PM
      Status:       Displaced
      << BANG BANG YOU'RE DEAD.xls.bat >>
      Scanner:      CA(Vet) 10.55.1 [10.55.4319] Win32.Yaha.E
      Scanner:      CA(InoculateIT) 23.59.1 [23.59.6] Win32/Yaha.E.Worm
      Scanner:      NAI 4.1.60 [4.2.39] W32/Yaha.g@MM
      Scanner:      Norman 5.0.0 [5.0.0] Yaha.E@m
      Scanner:      Sophos 2.13.0 [3.64.0] W32/Yaha-E