Jump to content
[[Template core/front/custom/_customHeader is throwing an error. This theme may be out of date. Run the support tool in the AdminCP to restore the default theme.]]

Virus info?


AtomicCEO
 Share

Recommended Posts

I keep getting emails from a friend of mine that contain a virus. They don't affect me on my mac... but I want to help him.

 

It is clearly this virus:

http://www.sophos.com.au/virusinfo/analyses/w32nyxemd.html

 

...and doing an IP lookup on the sending server that the email is coming from reveals that it is coming from a Global Crossing server in Phoenix (my buddy is in Boston).

 

Where can I find more info on this? I assume that he doesn't actually have the virus, but someone else does that has him in the address book. Or, is that not the case with this virus?

Link to comment
Share on other sites

I keep getting emails from a friend of mine that contain a virus.  They don't affect me on my mac... but I want to help him.

 

It is clearly this virus:

http://www.sophos.com.au/virusinfo/analyses/w32nyxemd.html

 

...and doing an IP lookup on the sending server that the email is coming from reveals that it is coming from a Global Crossing server in Phoenix (my buddy is in Boston).

 

Where can I find more info on this?  I assume that he doesn't actually have the virus, but someone else does that has him in the address book.  Or, is that not the case with this virus?

 

1273393[/snapback]

 

 

 

This post slipped through quickly, nearly missed it. As far as I can see, this is yet another of the spoofed sender variety. Someone has him in their addy book and the virus sends itself out as an email purporting to come from him.

 

I hadn't realised this before, but each of the big AV companies has it's own name for some of these viruses. Check out this Symantec page and you'll see Symantec call this one W32.Blackmal.E@mm.

 

It's absolutely brand new (see discovered date, same page). The latest signature file seems to cover it, but the page I linked has full removal instructions (scroll down to Removal Instructions).

Edited by Ursa Majoris
Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

 Share

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...

Important Information