Fwd: [Err] Re: Gwd: crypted document

Hex Star hexstar at gmail.com
Fri Aug 3 02:27:55 UTC 2007


---------- Forwarded message ----------
From: postmaster at entum.com <postmaster at entum.com>
Date: Aug 2, 2007 7:26 PM
Subject: [Err] Re: Gwd: crypted document
To: hexstar at gmail.com

Transmit Report:

cjw at yutc.co.kr에게 <cjw at yutc.co.kr%EC%97%90%EA%B2%8C> 메일 발송을 2번 시도했지만 실패하였습니다.
(실패 이유 : 554 Message rejected because it may contain Sober worm virus(

<참고> 실패 이유에 대한 설명
User unknown       :메일을 수신할 사용자가 존재하지 않음
Socket connect fail:수신 메일 서버와 연결 실패
DATA write fail    :수신 메일 서버로 메세지 송신 실패
DATA reponse fail  :수신 메일 서버로부터 메세지 수신 실패

Final-Recipient: rfc822;cjw at yutc.co.kr
Diagnostic-Code: smtp; 554 error - Message rejected because it may contain
Sober worm virus(
Action: failed
Status: 4.0.0

---------- Forwarded message ----------
From: "Hex Star" <hexstar at gmail.com>
To: Cmadams <cmadams at hiwaay.net>, nanog at merit.edu
Date: Thu, 2 Aug 2007 19:16:40 -0700
Subject: Re: Gwd: crypted document

On 8/2/07, Cmadams <cmadams at hiwaay.net> wrote:
> WARNING!!! (from bach.merit.edu)
> The following message attachments were flagged by the antivirus scanner:
> Attachment [2.2] Message.scr, virus infected: W32/Bagle-CF.  Action taken:
> deleted
> Ok. See attach.
> VIRUS WARNING Message (from bach.merit.edu)
> The virus W32/Bagle-CF was detected in email attachment [2.2 ] Message.scr.
>  The infected attachment has been deleted.

Why would someone in the ISP industry try to spread a virus? Ironically I
suppose a ISP admin may have their own computer infected... :P
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.nanog.org/pipermail/nanog/attachments/20070802/49d8996d/attachment.html>

More information about the NANOG mailing list