WTF Is this?
I have gotten a total of about 10 e-mails from one of my hotmail account saying that an E-mail was sent back to me or was failed to be delivered. Then I found this one today and guess what this is:
-----------
Recipient of the infected attachment: CHOW, KIN\Inbox
Subject of the message: Re: Approved
One or more attachments were deleted
Attachment document_9446.pif was Deleted for the following reasons:
Virus W32.Sobig.F@mm was found.
-----------
That was included with 5 similar to this in my mailbox this morning:
--------------
This message was created automatically by mail delivery software.
A message that you sent could not be delivered to one or more of its
recipients. This is a permanent error. The following address(es) failed:
tech@oe2000.com
This message has been rejected because it has
a potentially executable attachment "document_9446.pif"
This form of attachment has been used by
recent viruses or other malware.
If you meant to send this file then please
package it up as a zip file and resend it.
------ This is a copy of the message, including all the headers. ------
Return-path: <namxirtamitlu@hotmail.com>
Received: from [198.86.105.42] (helo=838-117659)
by host15.imagelinkusa.net with esmtp (Exim 4.20)
id 19pGnd-0001kA-66
for
tech@oe2000.com; Tue, 19 Aug 2003 20:26:05 -0400
From: <namxirtamitlu@hotmail.com>
To: <tech@oe2000.com>
Subject: Re: Re: My details
Date: Tue, 19 Aug 2003 20:16:05 --0400
X-MailScanner: Found to be clean
Importance: Normal
X-Mailer: Microsoft Outlook Express 6.00.2600.0000
X-MSMail-Priority: Normal
X-Priority: 3 (Normal)
MIME-Version: 1.0
Content-Type: multipart/mixed;
boundary="_NextPart_000_02C75050"
Message-Id: <E19pGnd-0001kA-66@host15.imagelinkusa.net>
This is a multipart message in MIME format
--_NextPart_000_02C75050
Content-Type: text/plain;
charset="iso-8859-1"
Content-Transfer-Encoding: 7bit
Please see the attached file for details.
--_NextPart_000_02C75050
Content-Type: application/octet-stream;
name="document_9446.pif"
Content-Transfer-Encoding: base64
Content-Disposition: attachment;
filename="document_9446.pif"
TVqQAAMAAAAEAAAA//8AALgAAAAAAAAAQAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAA
AAAA4AAAAA4fug4AtAnNIbgBTM0hVGhpcyBwcm9ncmFtIGNhbm 5vdCBiZSBydW4gaW4gRE9TIG1v
ZGUuDQ0KJAAAAAAAAADToEjPl8EmnJfBJpyXwSacFN0onI3BJp x/3iyc7cEmnMHeNZyawSacl8Em
nJTBJpyXwSecBsEmnPXeNZyawSacf94tnI3BJpxSaWNol8EmnA AAAAAAAAAAAAAAAAAAAABQRQAA
TAEEAF2zPz8AAAAAAAAAAOAADwELAQYAAAAAAABwAAAAAAAA1u sBAAAQAAAAYAEAAABAAAAQAAAA
AgAABAAAAAAAAAAEAAAAAAAAAAAAAgAAEAAAF/EBAAIAAAAAABAAABAAAAAAEAAAEAAAAAAAABAA
AAAAAAAAAAAAAOLrAQCcAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAfuwBAAgAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAgAC5zaHJpbmsAAFABAAAQAAAAxAAAAB AAAAAAAAAAAAAAAAAAAEAAAMAu
c2hyaW5rAAAwAAAAYAEAABIAAADUAAAAAAAAAAAAAAAAAABAAA DALnNocmluawAAQAAAAJABAAAS
AAAA5gAAAAAAAAAAAAAAAAAAQAAAwC5zaHJpbmsAADAAAADQAQ AAIgAAAPgAAAAAAAAAAAAAAAAA
(with a bunch of jibberish like that continuing for a very long time)
--------------------
And this one which is a new type (it was in spanish but I hit a translator online):
-------------------
The original message was received at Tue, 19 Aug 2003 18:39:45 -0400 from rs26s6.ric.cantv.net [10.128.131.133]
************************************************** ***************************
THIS INFORMACION CAN BE OF UTILITY TO UNDERSTAND THE ERROR OR PROBLEM
************************************************** *****************************
This it is a message of error generated in automatic form by the Cantv net e-mail platform. Further on you
will find information that can result of utility for the diagnosis and solution of the problem that originated
this message. This information can seem difficult to understand. If in effect is thus, please before
contacting to ours Central of Attention al Client, verifies the following thing:
* That the directions of the recipients of your message be the correct.
* Many systems of mail have limitations in the long maximum of the message. In the case of Cantv net, the
limit is of 10 Mbytes to avoid objections to the majority of the users, related to the download time of the
message.
* Some servants of mail do not have a connection dedicated 24 hours al day to Internet or can experience you
fail temporary, for which this message would be able to be only a notice that the mail has not been able to be
delivered immediate. The system of e-mail will treat during several days to cause to arrive the message to
its destiny.
Al final of this text the message of error is found that contains the necessary information to identify
because himself could not be completed the delivery of the message. The most common errors are the following:
1) addressee unknown: the direction of the recipient is incorrect or said user does not exist. 2) permission denied: the message could not be
delivered therefore could not be obtained permission of scripture on the mailbox; this message of error occurs when the size of the sent message is
upper al so great of the mailbox of the recipient. 3) temp failure; user is invited to retry: the message could not be delivered due to a temporary
condition; this message of error is reported when the mailbox of the recipient does not have available space to lodge the message.
If you cannot resolve the problem or do not understand it, we suggest to pass a copy of this message to your
administrator of systems or local department of backup. If this it was not possible, or if you are a user of
Cantv net, can contact to ours Central of Backup through the following media:
E-mail:
soporte@cantv.net Telephone: 0500-SOPORTE
For a diagnostic adequate one of the problem, we require a copy of this message. In the event that the
message contain private or sensitive information, you can eliminate the text of the same one, but should not
alter the headlines (headers) that appear more down.
------------------------------------------------------------------------------- . The message of error begins but down. -----------------------------------------------------------------------------
----- The following addresses had permanent fatal errors -----
\cibernetica01
(reason: Deferred)
(expanded from: <cibernetica01@cantv.net>)
----- Transcript of session follows -----
\cibernetica01... Deferred: local mailer (/usr/local/bin/mlocalclient) exited with EX_TEMPFAIL
Message could not be delivered for 4 hours
Message will be deleted from queue
============================================
=============================================
OK NOW IS THAT JUST STRANGE TO YOU OR IS IT JUST ME?
I find it very odd because it keeps saying that I sent those viruses although I know I did not or something of the like. IT keeps saying it originated from me. I even went in and changed my pword after the first 6 of them yesterday. But it seems there is soemthing wrong with my e-mail address.
Any Comments or Suggestions?