fox: technical difficulties: please stand by. (technical difficulties)
fox ([personal profile] fox) wrote2003-08-20 02:11 pm

question for the techies

I've been getting a lot of e-mails lately with essentially the following message: "Your e-mail to [address (hell, domain) you've never heard of] has been returned/rejected/denied because it had an attachment infected with a virus/that we flagged as malware." The attachment in two cases was document_all.pif, which does not exist on my harddrive; in one case it was wicked_scr.scr, which does not exist on my hard drive. Another message tells me the file movie0045.pif, which does not exist on my hard drive, is infected with I-Worm.Sobig.F; yet another says "Our viruschecker found the W32/Sobig.f@MM virus in your e-mail to [address (domain) you've never heard of] [in fact, e-mail you never sent]." Finally, I have one that says it can't accept e-mail with .pif attachments.

My virus software is up-to-date, and I just ran a scan this morning -- everything here is clean. Additionally, I use webmail, which I understand isn't so vulnerable to this massive spoofy blitz-everyone-in-your-book type behavior. I've certainly never deliberately sent any e-mail to any of the addresses claiming to have bounced any of this crap back at me; and I'm about 80% confident that my e-mail account has never taken it upon itself to send any e-mail to these addresses, either.

Is my thinking correct, that these "we rejected your e-mail, you better check your system" stuff is itself the crap in question, and just delete the hell out of it without opening any attachments (should it have them)? And further, that I should trust my scanny stuff when it tells me my system is clean? In short, that I have nothing to worry about?

[eta: i did get all A's in russian for the summer, despite a rather distressing number of absences. that's for anyone with a particular interest in my academic pursuits. :-)]

[identity profile] bougrelasxiv.livejournal.com 2003-08-20 11:37 am (UTC)(link)
http://www.symantec.com/avcenter/venc/data/w32.sobig.f@mm.html