LL-L "Virus alert" 2003.06.06 (07) [E]

Lowlands-L sassisch at yahoo.com
Fri Jun 6 18:17:36 UTC 2003


======================================================================
L O W L A N D S - L * 06.JUN.2003 (07) * ISSN 189-5582 * LCSN 96-4226
http://www.lowlands-l.net * sassisch at yahoo.com
Rules & Guidelines: http://www.lowlands-l.net/rules.htm
Posting Address: lowlands-l at listserv.linguistlist.org
Server Manual: http://www.lsoft.com/manuals/1.8c/userindex.html
Archives: http://listserv.linguistlist.org/archives/lowlands-l.html
=======================================================================
You have received this because you have been subscribed upon request.
To unsubscribe, please send the command "signoff lowlands-l" as message
text from the same account to listserv at listserv.linguistlist.org or
sign off at http://linguistlist.org/subscribing/sub-lowlands-l.html.
=======================================================================
A=Afrikaans Ap=Appalachian B=Brabantish D=Dutch E=English F=Frisian
L=Limburgish LS=Lowlands Saxon (Low German) N=Northumbrian
S=Scots Sh=Shetlandic V=(West)Flemish Z=Zeelandic (Zeêuws)
=======================================================================

From: "thomas byro" <thbyro at earthlink.net>
Subject: LL-L "Virus alert" 2003.06.06 (05) [E]

My Norton anti-virus caught it and deleted it

Tom Byro

----------

From: Ruud Harmsen <rh at rudhar.com>
Subject: LL-L "Virus alert" 2003.06.06 (06) [E]

R. F. Hahn <sassisch at yahoo.com>:
>Apparently some people have received a message masquerading as coming
>from this account, and apparently it is connected with the Virus
>"Bugbear."  Do not open it!  Just delete it!  I am investigating the
>matter in the meantime.  So far I have not found a virus on my computer
>despite having the latest protective software.  I assume the offending
>message originated from someone I recently wrote to.  Given the subject
>line (Celtic connections), it was someone on the List.

BugBear is known for composing its "from" address from elements
found somewhere in (e-mail or other) files on the infected computer.
As a result, infected messsages usually do not come from the address
mentioned in the "From" header, and that address most often does not
even exist.

It is sometimes possible to find the real sender by looking at other
headers, if someone happens to recognize the computer name, possible
in combination with the content, which is also randomly picked from
existing files. Being completely sure who sent it most often
requires cooperation from the sender's ISP, who can find out who
logged on under a certain IP number in their logfiles. But they
probably don't have the time for that, especially not now, because
BugBear is suddenly very active again.

Some tips about avoiding virus infections here:
http://rudhar.com/sfreview/virsafnl/virsafe.htm
http://rudhar.com/sfreview/virsafen/virsafe.htm
--
Ruud Harmsen  http://rudhar.com/index/whatsnew.htm  3 June 2003

__________

From: R. F. Hahn <sassisch at yahoo.com>
Subject: Virus alert

Thanks, Ruud.

I did a thorough investigation.  I was not able to track down the
"culprit" (though I suspect it is a LL-L member), but I do know that the
infectious message was not sent by me or by any of my programs.  I found
no virus on my drive, and I run my McAfee antivirus program through
daily updates.

Ruud's tips, mentioned above, are well worth noting.

Cheers!
Reinhard/Ron

================================END===================================
* Please submit postings to lowlands-l at listserv.linguistlist.org.
* Postings will be displayed unedited in digest form.
* Please display only the relevant parts of quotes in your replies.
* Commands for automated functions (including "signoff lowlands-l") are
  to be sent to listserv at listserv.linguistlist.org or at
  http://linguistlist.org/subscribing/sub-lowlands-l.html.
=======================================================================



More information about the LOWLANDS-L mailing list