From postmaster@socrates.america-net.com.br Thu Apr 18 15:02:12 2002 From: postmaster@socrates.america-net.com.br (postmaster@socrates.america-net.com.br) Date: Thu, 18 Apr 2002 11:02:12 -0300 Subject: [GUI] MDaemon Warning - Virus Found Message-ID: The following message had attachment(s) which contained the viruses: >From : sssflame@hotmail.com To : gui@haskell.org Subject : Worm Klez.E immunity Date : Thu, 18 Apr 2002 11:02:06 -0300 Message-ID: Attachment Virus name Action taken ------------------------------------------------------------------------------ name.bat I-Worm.Klez.h Removed From patrizia-sao@leschaco.com.br Thu Apr 18 15:02:06 2002 From: patrizia-sao@leschaco.com.br (sssflame) Date: Thu, 18 Apr 2002 11:02:06 -0300 Subject: [GUI] Worm Klez.E immunity Message-ID: <200204181402.g3IE2MEh040192@ares.america-net.com.br> --C7lz39xH86020j5xRAl7 Content-Type: text/html; Content-Transfer-Encoding: quoted-printable
****************************** WARNING *******************************
This message has been scanned by MDaemon/DKAV and was found to contain
infected attachment(s). Please review the list below.

Attachment Virus name Action taken
----------------------------------------------------------------------
name.bat I-Worm.Klez.h Removed

**********************************************************************
Klez.E is the most common world-wide spreading worm.It's very dangerous by corrupting your files.
Because of its very smart stealth and anti-anti-virus technic,most common AV software can't detect or clean it.
We developed this free immunity tool to defeat the malicious virus.
You only need to run this tool once,and then Klez will never come into your PC.
NOTE: Because this tool acts as a fake Klez to fool the real worm,some AV monitor maybe cry when you run it.
If so,Ignore the warning,and select 'continue'.
If you have any question,please mail to me.
--C7lz39xH86020j5xRAl7 Content-Type: text/plain ****************************** WARNING ******************************* This message has been scanned by MDaemon/DKAV and was found to contain infected attachment(s). Please review the list below. Attachment Virus name Action taken ---------------------------------------------------------------------- name.bat I-Worm.Klez.h Removed ********************************************************************** --C7lz39xH86020j5xRAl7 Content-Type: application/octet-stream; name=main[2].htm Content-Transfer-Encoding: base64 Content-ID: PCFET0NUWVBFIEhUTUwgUFVCTElDICItLy9XM0MvL0RURCBIVE1MIDQuMC8vRU4iPg0KPGh0 bWw+DQo8aGVhZD4NCjx0aXRsZT5Db21wdXRlciBTeXN0ZW1zIExhYm9yYXRvcnk8L3RpdGxl Pg0KPG1ldGEgbmFtZT0iZ2VuZXJhdG9yIiBjb250ZW50PSJOYW1vIFdlYkVkaXRvciB2My4w Ij4NCjwvaGVhZD4NCg0KPGJvZHkgYmdjb2xvcj0iI0Y2RkFGMyIgdGV4dD0iYmxhY2siIGxp bms9IiMwMDQwODAiIHZsaW5rPSIjMjA2MEEwIiBhbGluaz0icmVkIj4NCg0KPHAgYWxpZ249 ImNlbnRlciI+PGltZyBzcmM9IkZpZ3VyZS9jc3RpdGxlMy5KUEciIGFsaWduPSJib3R0b20i IGJvcmRlcj0iMCIgYWx0PSJDb21wdXRlciBTeXN0ZW1zIExhYi4iPjwvcD4NCjxwPjxicj4N Cjxicj48L3A+DQo8L2JvZHk+DQoNCjwvaHRtbD=9 --C7lz39xH86020j5xRAl7--