That sounds like the Sobig worm. http://www.sarc.com/avcenter/venc/data/w32.sobig.fat_private ----- Original Message ----- From: "Jonathan A. Zdziarski" <jonathanat_private> To: <incidentsat_private> Sent: Tuesday, August 19, 2003 9:27 AM Subject: document_all.pif > What's up with the 20-someodd messages I've received today with > document_all.pif ? Is this some new phase of the windows worm or a new > virus spreading around ? > > > > > -------------------------------------------------------------------------- - > Captus Networks - Integrated Intrusion Prevention and Traffic Shaping > - Instantly Stop DoS/DDoS Attacks, Worms & Port Scans > - Automatically Control P2P, IM and Spam Traffic > - Ensure Reliable Performance of Mission Critical Applications > - Precisely Define and Implement Network Security and Performance Policies > **FREE Vulnerability Assessment Toolkit - WhitePapers - Live Demo > Visit us at: > http://www.securityfocus.com/sponsor/CaptusNetworks_incidents_030814 > -------------------------------------------------------------------------- -- > --------------------------------------------------------------------------- Captus Networks - Integrated Intrusion Prevention and Traffic Shaping - Instantly Stop DoS/DDoS Attacks, Worms & Port Scans - Automatically Control P2P, IM and Spam Traffic - Ensure Reliable Performance of Mission Critical Applications - Precisely Define and Implement Network Security and Performance Policies **FREE Vulnerability Assessment Toolkit - WhitePapers - Live Demo Visit us at: http://www.securityfocus.com/sponsor/CaptusNetworks_incidents_030814 ----------------------------------------------------------------------------
This archive was generated by hypermail 2b30 : Tue Aug 19 2003 - 20:58:07 PDT