>  I can't decide if this is just random mischief, something else, or 
>someone really hoping to bring us down but who thinks we use Windows 
>computers (as if!! :)  

It is a spam/trojan horse email (and not a well done one at that, as 
almost every time I have seen it, it fails to decode and just shows as 
the base64 encoded text).

I don't think it is propigated from a virus (ie: someone else got hit and 
is now spreading it), but rather I think it might be pseduo targeted spam 
(coming from a single source that is hoping to nail a few suckers). I 
base this off the fact that all the ones I have recieved to date come in 
to addresses that would not logically be in anyone's address book, but 
are logical spam targets (webmaster, postmaster, domain contact 
addresses, or form addresses like you say it has hit, etc.). Viri 
normally propigate by sending copies to addresses found in someone's 
email client (either address book, or saved emails). But the ones I see 
hit wouldn't/shouldn't be in there, where as ones that WOULD be stored in 
an email client are not hit.

Having never bothered to decode the file (I have gotten many of these), 
and analyse what it is trying to do, I can't tell you the intent behind 
it. My guess would be some kind of background tool for gaining control of 
your machine (maybe to zombify it, or for later searching for anythign of 
value).



-chris

<http://www.mythtech.net>

___________________________________________________________________________
To unsubscribe send a mail message with a SUBJECT line of "unsubscribe" to
<[EMAIL PROTECTED]>  or  <[EMAIL PROTECTED]>

Reply via email to