W32/Sobig.F virus header

Spicer, Kevin Kevin.Spicer at BMRB.CO.UK
Thu Aug 21 12:54:04 IST 2003


Rabellino Sergio wrote:
>   these are lines from the NAI website
> 
>> The attachment must be run manually to infect the local
> system.  Additionally, messages sent by the virus contain the
> following fields
>> 
>>     * X-MailScanner: Found to be clean
>>     * X-Mailer: Microsoft Outlook Express 6.00.2600.0000
>> 

Seriously, have any NAI customers on the list asked them to amend this statement to make it clear that these headers also appear in genuine mail, as people [who should know better] seem to be getting confused.



BMRB International 
http://www.bmrb.co.uk
+44 (0)20 8566 5000
_________________________________________________________________
This message (and any attachment) is intended only for the 
recipient and may contain confidential and/or privileged 
material.  If you have received this in error, please contact the 
sender and delete this message immediately.  Disclosure, copying 
or other action taken in respect of this email or in 
reliance on it is prohibited.  BMRB International Limited 
accepts no liability in relation to any personal emails, or 
content of any email which does not directly relate to our 
business.




More information about the MailScanner mailing list