On Fri, 17 Nov 2000 18:23:16 +1000, Merlin wrote:
[...]
>So I'd say a polite message to [helpdesk.giasbm01.vsnl.net.in] giving them
>the IP and name of the offender may do it.
>Others may be able to obtain even more detailed info about the particular
>host....
Wont help much, too many *** with a mouse and Gatesware...
<snip>
I-Worm.Hybris
This is an Internet worm spreading as file attachments to email messages.
The worm works under Win32 systems only. The worm contains components
(plugins) in its code that are executed depending on the worm's needs,
and these components can be upgraded from an Internet Web site. The major
worm versions are encrypted with a semi-polymorphic encryption loop
The worm intercepts Windows functions that establish a network connection,
including Internet. The worm intercepts data that is sent and received,
and scans it for email addresses. When address(es) is/are detected, the
worm waits for some time and then sends infected message to those address(es).
</snip>
Quoting from: http://www.avp.ch/avpve/worms/email/hybris.stm
Roland