|
McAfee just release BRIEF info on it, dated today. http://vil.nai.com/vil/content/v_127464.htm Covered by the just released 4385 DATs. Only 3 here so far. All three different IPs. The VBS version is a year old trojan, it would have been very unusual for that to waking up. An odd file name. All my "froms" are random names also, so forging is likely. Greg Little Declude Virus Ver. 1.79 caught the the JS/Zerolin trojan !!! virus in [Unknown: Err] from [EMAIL PROTECTED] to: [EMAIL PROTECTED], [EMAIL PROTECTED]. from [EMAIL PROTECTED] to: from [EMAIL PROTECTED] to: PS Reported on another list also. Markus Gufler wrote:
--- [This E-mail scanned for viruses by Findlay Internet] --- [This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)] --- This E-mail came from the Declude.Virus mailing list. To unsubscribe, just send an E-mail to [EMAIL PROTECTED], and type "unsubscribe Declude.Virus". The archives can be found at http://www.mail-archive.com. |
- [Declude.Virus] JS/Zerolin Markus Gufler
- Re: [Declude.Virus] JS/Zerolin R. Scott Perry
- Re: [Declude.Virus] JS/Zerolin Greg Little
- RE: [Declude.Virus] JS/Zerolin John Tolmachoff \(Lists\)
- [Declude.Virus] JS/Zerolin Greg Little
- [Declude.Virus] JS/Zerolin Goran Jovanovic
- Re: [Declude.Virus] JS/Zerolin Scott Fisher
- RE: [Declude.Virus] JS/Zerolin Goran Jovanovic
