Mïcrösöül°V³
03-19-2004, 01:13 AM
it may not be new, but it seems like a few have gotten the same email lately. this is what the one i got looks like:
Dear user of e-mail server "xxxxxxx.net",
Your e-mail account will be disabled because of improper using in next
three days, if you are still wishing to use it, please, resign your
account information.
Advanced details can be found in attached file.
Sincerely,
The xxxxxx.net team www.xxxxxxx.net
turn out its a worm, and symantec says this about it:
The W32.Beagle.M@mm is a polymorphic mass-mailing worm that uses its own SMTP engine to spread through email. Like previous Beagle variants, this worm opens a backdoor (it listens on TCP port 2556) and attempts to spread through file-sharing networks by copying itself to folders that contain "shar" in their names. W32.Beagle.M@mm also infects files with the EXE extension.
but relax, NAV caught it. stupid really. <_<
and the virus file is called "first_part.pf"
Dear user of e-mail server "xxxxxxx.net",
Your e-mail account will be disabled because of improper using in next
three days, if you are still wishing to use it, please, resign your
account information.
Advanced details can be found in attached file.
Sincerely,
The xxxxxx.net team www.xxxxxxx.net
turn out its a worm, and symantec says this about it:
The W32.Beagle.M@mm is a polymorphic mass-mailing worm that uses its own SMTP engine to spread through email. Like previous Beagle variants, this worm opens a backdoor (it listens on TCP port 2556) and attempts to spread through file-sharing networks by copying itself to folders that contain "shar" in their names. W32.Beagle.M@mm also infects files with the EXE extension.
but relax, NAV caught it. stupid really. <_<
and the virus file is called "first_part.pf"