Bagel.H

Spicer, Kevin Kevin.Spicer at BMRB.CO.UK
Wed Mar 3 15:57:23 GMT 2004


Vinayakam Murugan wrote:
> Hi
> 
> Some machine on our network has been infected by Worm.Bagel.J and
> other variants. This is spawning a whole lot of mails with password
> encrypted zip files which contain infected executables.
> 
> We are using MailScanner-4.21 along with clamav-0.67-1.
> 
> Anybody face a similar problem? Any pointers would be great.

Find its IP, deny access to SMTP port via iptables.



BMRB International 
http://www.bmrb.co.uk
+44 (0)20 8566 5000
_________________________________________________________________
This message (and any attachment) is intended only for the 
recipient and may contain confidential and/or privileged 
material.  If you have received this in error, please contact the 
sender and delete this message immediately.  Disclosure, copying 
or other action taken in respect of this email or in 
reliance on it is prohibited.  BMRB International Limited 
accepts no liability in relation to any personal emails, or 
content of any email which does not directly relate to our 
business.




More information about the MailScanner mailing list