home hardware prices news articles forums photos user reviews
Go Back   Tech Support Forums - TechIMO.com > PC Hardware and Tech > Security and Privacy Issues
Join TechIMO for Free!
Register Blogs FAQ Members List Calendar Search Today's Posts Mark Forums Read
Reply Get bargains at  »  Dealighted.com
 
Thread Tools
Currently Active Users: 1852
Discussions: 188,470, Posts: 2,244,174, Members: 232,724
Old May 3rd, 2004, 06:11 PM   Digg it!   #1 (permalink)
Member
 
Join Date: Aug 2002
Location: midwest
Posts: 370
Spam??

I've received several emails in the last couple days that I can't really make any sense of. They all have fairly meaningless (to me) titles and are all about 41kb. I usually delete them off of the server but inadvertantly dl'd the first one. It had a compressed attachment that I looked at with winrar but did not open. It was just a bunch of files and being the first one I received I just flushed it.
Here's a view of the latest 2 off of the server:

X-POP3-Size: 42946
X-UIDL: <200405031935.i43JZXeM010786@mxsf05.cluster1.chart er.net>
Return-Path: <carealot@chorus.net>
Received: from mxsf05.cluster1.charter.net ([10.20.201.205])
by mtai02.charter.net
(InterMail vM.6.00.05.02 201-2115-109-103-20031105) with ESMTP
id <20040503193950.ZFNM2318.mtai02.charter.net@mxsf05 .cluster1.charter.net>
for <xxxxxxxxxxxx@charter.net>; Mon, 3 May 2004 15:39:50 -0400
Received: from charter.net (c68.115.1.45.stp.wi.charter.com [68.115.1.45])
by mxsf05.cluster1.charter.net (8.12.11/8.12.11) with ESMTP id i43JZXeM010786
for <xxxxxxxxxxxx@charter.net>; Mon, 3 May 2004 15:35:34 -0400 (EDT)
Message-Id: <200405031935.i43JZXeM010786@mxsf05.cluster1.chart er.net>
From: carealot@chorus.net
To: xxxxxxxxxxxx@charter.net
Subject: Mail Delivery (failure xxxxxxxxxxxx@charter.net)
Date: Mon, 3 May 2004 14:22:57 -0500
MIME-Version: 1.0
Content-Type: multipart/related;
type="multipart/alternative";
boundary="----=_NextPart_000_001B_01C0CA80.6B015D10"
X-Priority: 3
X-MSMail-Priority: Normal
X-PM-PLACEHOLDER: .

__________________________________________________ __

X-POP3-Size: 42370
X-UIDL: <200405031935.i43JZJN9072993@mxsf30.cluster1.chart er.net>
Return-Path: <doompa@hotmail.com>
Received: from mxsf30.cluster1.charter.net ([10.20.201.230])
by mtao02.charter.net
(InterMail vM.6.00.05.02 201-2115-109-103-20031105) with ESMTP
id <20040503194310.ILTQ24230.mtao02.charter.net@mxsf3 0.cluster1.charter.net>
for <xxxxxxxxxxxx@charter.net>; Mon, 3 May 2004 15:43:10 -0400
Received: from charter.net (c68.115.1.45.stp.wi.charter.com [68.115.1.45])
by mxsf30.cluster1.charter.net (8.12.11/8.12.11) with ESMTP id i43JZJN9072993
for <xxxxxxxxxxxx@charter.net>; Mon, 3 May 2004 15:35:20 -0400 (EDT)
Message-Id: <200405031935.i43JZJN9072993@mxsf30.cluster1.chart er.net>
From: doompa@hotmail.com
To: xxxxxxxxxxxx@charter.net
Subject: Re: file
Date: Mon, 3 May 2004 14:22:43 -0500
MIME-Version: 1.0
Content-Type: multipart/mixed;
boundary="----=_NextPart_000_0016----=_NextPart_000_0016"
X-Priority: 3
X-MSMail-Priority: Normal
X-PM-PLACEHOLDER: .

Is there any way to track this down from the above info?

yclyde is offline   Reply With Quote
Old May 3rd, 2004, 06:14 PM     #2 (permalink)
Let's go, Hokies!
 
osprey4's Avatar
 
Join Date: Oct 2001
Location: South Jersey
Posts: 7,638
You could call your ISP and ask for their help. Sounds to me like someone on your mail list has got a virus of some sort.

osprey4 is offline   Reply With Quote
Old May 3rd, 2004, 06:27 PM     #3 (permalink)
Ultimate Member
 
paul9's Avatar
 
Join Date: Aug 2003
Location: Gateshead U.K.
Posts: 8,838
Send a message via MSN to paul9 Send a message via Yahoo to paul9
first one looks like netsky virus, second one is probably netsky, too. the header SHOULD tell you where it came from (i think the first ip in the header) but with virii having their own smtp (email) engines, nowadays, i don't know how much of the header may be forged. almost certainly the sender (carealot) is forged.
__________________
No man's life, liberty, or property are safe while the legislature is in session. --Mark Twain (1866)

paul9 is offline   Reply With Quote
Old May 3rd, 2004, 06:28 PM     #4 (permalink)
Member
 
Join Date: Aug 2002
Location: midwest
Posts: 370
Prbbly good advice osprey4. I really don't get any spam email to speak of; thats why this recurring bs w/attachments got my attention. I'll try charter. The common 41k size & attachment smells like virus.

Last edited by yclyde : May 3rd, 2004 at 06:30 PM.
yclyde is offline   Reply With Quote
Old May 5th, 2004, 07:58 PM     #5 (permalink)
Ultimate Member
 
Starfury_2260's Avatar
 
Join Date: Aug 2003
Location: KY
Posts: 1,463
the mail delivery failure thing is a ploy to get you to open the attachment which has a virus i think.
Starfury_2260 is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may post new threads
You may post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are On
Refbacks are Off

Most Active Discussions
Is It Just Me? (2999)
"mastermind" of London at.. (65)
Intel Pentium 4 531 (7)
Please don't divorce us (40)
AMD Phenom II X4 940 Black Edition (11)
nVidia GTX 295 now available (21)
Replacing integrated video card (5)
Folderchat Weekday thread (458)
building a gaming computer, input p.. (14)
Recent Discussions
canon eos20d problem (1)
I cant sign into msn messenger,.. (8)
nVidia GTX 295 now available (21)
Folderchat Weekday thread (458)
Could I run this set-up (15)
Bought the Visiontek Radeon 387.. (1)
CPU Overheating ?? (18)
Computer will not boot(powers o.. (2)
*TechIMO's Top 30 PCs* (44)
Blackberry Storm, Gears of War .. (2)
Core 2 Quad Q9550 system (3)
COWBOOM Ripoff! Used Laptop w/$.. (4)


All times are GMT -4. The time now is 06:52 AM.
TechIMO Copyright 2008 All Enthusiast, Inc.



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28