FYI, Declude Virus caught the first one today. (Caught as the Outlook 'MIME Header' Vulnerability. Scott says F-Prot should have caught it and I am looking into that.)
This one does appear to forge the From address. (The one I saw had the From address the same as the To address, although the friendly name was different.) Also interesting to note is it appears to be a resurrection/variant of the Fun Love virus. http://www.sophos.com/virusinfo/analyses/w32braida.html http://securityresponse.symantec.com/avcenter/venc/data/w32.brid.a@;mm.html John Tolmachoff MCSE, CSSA IT Manager, Network Engineer RelianceSoft, Inc. La Habra, CA 90631 www.reliancesoft.com --- [This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)] --- This E-mail came from the Declude.Virus mailing list. To unsubscribe, just send an E-mail to [EMAIL PROTECTED], and type "unsubscribe Declude.Virus". The archives can be found at http://www.mail-archive.com.
