Roger I was hit with that as well before I had the latest virus def's but didn't get infected. You must have opened the attachment?
TrendMicro had THREE updates in 12 hours that day! I updated before I left for the day (2nd time that day), came back less than 12hrs later and saw these bogus MS emails. I could tell they were a vir-us of some kind and went to update my AV software and there was yet another update that then identified them. The wo-rm I got though was SWEN, not what you mentioned. http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_SWEN.A -Clint God Bless Us All Clint Hamilton, Owner http://OrpheusComputing.com ) ----- Original Message ----- From: "Roger" <[EMAIL PROTECTED]> Hi all, Unfortunately I got hit with a Worm, the latest pandemic was a massive attack yesterday (9/20/03) with multiple email messages, all with attachments carrying a Trojan identified by Norton AV as "W o r m . A u t o m a t . A H B" (the name is deliberately spaced out) If you get any "Official-looking" HTML or other emails purportedly from Microsoft, DO NOT OPEN or RUN THE ATTACHED FILE!!! Examine the FULL HEADER and you will find the email did NOT come from any official website. Microsoft does NOT sent out email of this sort. This latest attack received was very elaborate HTML and had many illegally-used trademarks and copyrighted items to make it look legitimate. It even had the "Truste" link. Unfortunately it got to me just before I updated my AV database, so 1 minute later and I would have had it. I managed to curtail it, but only after the barn door was open and judging from the bounced email I got (about 200 so far), the cyber idiot got a bunch of folks. My AV found and deleted 39 infected files and my spyware checkers found one that even the AV missed. What a hassle! If you got any infected message from you that sneaked by your AV, I apologize. I guess no defense is foolproof. Roger ============= PCWorks Mailing List ================= Don't see your post? Check our posting guidelines & make sure you've followed proper posting procedures, http://pcworkers.com/rules.htm Contact list owner <[EMAIL PROTECTED]> Unsubscribing and other changes: http://pcworkers.com =====================================================
