Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » Beware, you may have "Bagel" in your Inbox
Uniqs:
932
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
How 'bad' are spyware cookies?? »
« Supplemental Protection?  

Greg_Z
Premium
join:2001-08-08
Springfield, IL
·Comcast


1 edit

Beware, you may have "Bagel" in your Inbox

I received this via my sbcglobal.net email, which is not a public addy. It contained a file "save.doc.exe", which contained W32.Bag@Emm, which is a Bagel varient.

X-Apparently-To: dddd.dddd@sbcglobal.net via 66.218.79.95; Tue, 02 Nov 2004 16:04:24 -0800
X-YahooFilteredBulk: 209.90.78.19
X-Originating-IP: [209.90.78.19]
Return-Path:
Received: from 207.115.57.66 (EHLO ylpvm35.prodigy.net) (207.115.57.66) by mta815.mail.yahoo.com with SMTP; Tue, 02 Nov 2004 16:04:24 -0800
X-Originating-IP: [209.90.78.19]
Received: from 127.0.0.1 (host-19.pl107798-3.fiber.net [209.90.78.19]) by ylpvm35.prodigy.net (8.12.10 083104/8.12.10) with ESMTP id iA304SVt011534 for dddd.dddd@sbcglobal.net; Tue, 2 Nov 2004 19:04:28 -0500
Message-Id:
Subject: re: please
From: clark8404@yahoo.com
To: xxxx.xxxx@sbcglobal.net
Date: [[ Tue, 02 Nov 2004 5:05:52 PM ]]
MIME-Version: 1.0
Content-Type: multipart/mixed; boundary="--------bound--"
Content-Length: 157484

Hello,
Your email was received.
YOUR REPLY IS URGENT!
Please view the attached text file for instructions.
Regards,
User
--
One man's customer loyalty is another man's miguided arrogance.

BlitzenZeus
Burnt Out Cynic
Premium,MVM
join:2000-01-13
Beaverton, OR

Re: Beware, you may have "Bagel" in your Inbox

Common sense should prevent people from doing anything with the attachment...

Epyon9283
Premium
join:2001-12-26
Dayton, NJ

Re: Beware, you may have "Bagel" in your Inbox

said by BlitzenZeus See Profile:

Common sense should prevent people from doing anything with the attachment...
You'd think so...

antiphishing
Phishing Scam Terminator
Premium
join:2004-06-09
Wilkes Barre, PA

X-Originating-IP: [209.90.78.19]
Received: from 127.0.0.1 (host-19.pl107798-3.fiber.net [209.90.78.19]) by ylpvm35.prodigy.net (8.12.10 083104/8.12.10) with ESMTP id iA304SVt011534 for greg.zoll@sbcglobal.net; Tue, 2 Nov 2004 19:04:28

canonical name host-19.pl107798-3.fiber.net.
aliases
addresses 209.90.78.19

hostmaster@fiber.net
abuse@fiber.net
--
»www.antihotmail.com
Dslreports.com Profile: »profile.antihotmail.com
spammers_are_scumbags@antihotmail.com

Greg_Z
Premium
join:2001-08-08
Springfield, IL

Re: Beware, you may have "Bagel" in your Inbox

Already taken care of, thanks for the posting though. And yes BlitzenZeus, prevention only works as good as the end user.
--
One man's customer loyalty is another man's miguided arrogance.

Mats
Here kitty and the chimp. Smash
Premium
join:2002-03-16
imagine that, getting an attachment sent to you through email that was a virus. who would have thought :o

Greg_Z
Premium
join:2001-08-08
Springfield, IL
·Comcast

Re: Beware, you may have "Bagel" in your Inbox

said by Mats See Profile:

imagine that, getting an attachment sent to you through email that was a virus. who would have thought :o
Okay smartpants. This is a heads up, not "let's point fingers at the idiots"..
--
One man's customer loyalty is another man's miguided arrogance.

BlitzenZeus
Burnt Out Cynic
Premium,MVM
join:2000-01-13
Beaverton, OR
·Verizon FIOS
·Verizon Online DSL

Re: Beware, you may have "Bagel" in your Inbox

Look at the crowd your giving the heads up to, most of us are more than able to protect ourselves for the most part, and its nothing new. Most of the people who this might benefit likely wouldn't even bother reading this forum, and likely only post here after something has happened to their computer.
--
My hourly rates:
$25 per hour.
$35 per hour if you want to watch.
$45 per hour if you want to help.
$75 per hour if you tried to fix it, and failed.
The biggest error is sitting in front of your keyboard.

Mats
Here kitty and the chimp. Smash
Premium
join:2002-03-16

said by Greg_Z See Profile:

This is a heads up
i hope this doesnt become a trend around here.. if it did, the forum would be full of posts where a person received an email with a virus attached.. happens many times a day, no need for a heads up.
ghost16825
Use security metrics
Premium
join:2003-08-26

Re: Beware, you may have "Bagel" in your Inbox

said by Mats See Profile:
said by Greg_Z See Profile:


This is a heads up
i hope this doesnt become a trend around here.. if it did, the forum would be full of posts where a person received an email with a virus attached.. happens many times a day, no need for a heads up.

Imagine if we were only cautious and on the lookout for malware once a "heads up" for an outbreak appeared in the security forum. If users took no precautions whatsoever and only changed their behaviour once they saw a "heads up" for a new virus variant, they would have an infested and dead machine pretty quickly.

This is especially since most "heads up" posts in this forum occur way, way after the outbreak has occured. However, if we followed the posts in the Malware forum as they occured we would be changing our behaviour just before or perhaps mostly just have the virus outbreak occured.

BlitzenZeus
Burnt Out Cynic
Premium,MVM
join:2000-01-13
Beaverton, OR
·Verizon FIOS
·Verizon Online DSL

Download, and listen to these songs on the link below for a look at the average user
The system admin song.
Welcome to the internet help desk.
»www.ampcast.com/music/22488/artist.php

DownLow
Nope...I Got Nothing
Premium
join:2001-04-25
Long Island

1 edit
**Edit** never mind...not a constructive posting!
kpatz
MY HEAD A SPLODE
Premium
join:2003-06-13
Manchester, NH

Re: Beware, you may have "Bagel" in your Inbox

Actually, this thread gave me a neat idea, maybe we could propose something to WCB, Justin and whoever else.

Instead of a thread where we post "I got Bagle in my email", maybe have an area on the board where people can report viruses they receive, and the board would keep statistics. It could be the BBR Security Forum Virus Statistics board. At a glance one can see what malware is most prevalent over the course of a day, week, month, or whatever.

The trick I guess would be keeping the naming consistent, especially with every AV program reporting the same malware under different names. The board would have to know that "Bagle.Z" as reported by F-Prot is the same as "Beagle.X" as reported by NAV, etc.

Probably more work than it's worth, but it would be a cool thing to have.
--
Robert Tappan Morris, Jr., got six months in jail for crashing 10% of the computers that Bill Gates made $100 million crashing last weekend.

Greg_Z
Premium
join:2001-08-08
Springfield, IL
·Comcast

Re: Beware, you may have "Bagel" in your Inbox

I totally agree with you kpatz. Instead of posting, we should be able to track by statics. We all know where to go for the information (those of us that have been here), but when you try to search for something, what you end up getting is headaches, due to it takes forever to see it.

We find some information great, and other that makes you think why it was posted. I do believe my posting is kind of short, but when you get a new user searching for information, and topics such as this brings to light as to how an infection can happen by just clicking on the attachment without thinking.

There are some web mail portals that do not scan the attachments, and having Yahoo being able to scan it for a virus will defiantly help in possibly stopping an infection that can cause headaches, and loss of work due to the time it takes to clean up said infection.

As I have said before, and will state this again "The user is only as smart as they make thyself to be."
--
One man's customer loyalty is another man's miguided arrogance.
joewho
Premium
join:2004-08-20
Las Vegas, NV

Re: Beware, you may have "Bagel" in your Inbox

Did see the extention on that attachment? Just curious. I got a phony ms update, and it is entirely possible that someone would open a txt. doc. without thinking. (no I didn't).
--
we're all connected

Greg_Z
Premium
join:2001-08-08
Springfield, IL
·Comcast

Re: Beware, you may have "Bagel" in your Inbox

said by joewho See Profile:

Did see the extension on that attachment? Just curious. I got a phony ms update, and it is entirely possible that someone would open a txt. doc. without thinking. (no I didn't).
You are right, due to most people would just click on the file and ignore the fact that the file is actually set up in a way that if you do not have Windows updated with the latest critical updates, or not using some sort of AV software, this stuff can slip through.

BTW, Microsoft sends out emails with MD5 verification
--
One man's customer loyalty is another man's miguided arrogance.

jaykaykay
4 Ever Young
Premium,MVM
join:2000-04-13
Scottsdale, AZ
·Speakeasy

Hey, guys. What's with you people. This person was posting something they thought was important. They didn't come here to be made fun of, to be talked down to or to be replied to sarcastically, or to be just put down. Not everyone that comes to this forum knows as much as you whom have posted and just maybe his post will help someone else not as wise as you all. Lighten up and remember, this is not a forum for "no it alls" or there wouldn't be a need for it!

ironwalker
World Renowned
Premium,MVM
join:2001-08-31
Keansburg, NJ
clubs:
·Optimum Online


1 edit

Re: Beware, you may have "Bagel" in your Inbox

said by jaykaykay See Profile:

Hey, guys. What's with you people. This person was posting something they thought was important. They didn't come here to be made fun of, to be talked down to or to be replied to sarcastically, or to be just put down. Not everyone that comes to this forum knows as much as you whom have posted and just maybe his post will help someone else not as wise as you all. Lighten up and remember, this is not a forum for "no it alls" or there wouldn't be a need for it!
I think they are now eligible for the "other" security forum;)

--
"LIVE FREE OR DIE"

www.Theforumz.com ----

www.ownt.com--

First rule of fiber optics: you do not talk about fiber optics
kpatz
MY HEAD A SPLODE
Premium
join:2003-06-13
Manchester, NH

I think the OP posted the info in case it was another BBR member who is infected, to let them know.

I find the odds of tracking down the sender of these things is slim to none. 95% of the viruses I get in my inboxes come from ISPs and locations that I don't know anyone on.

BTW, my wife had a Bagle in her inbox this morning. Nothing new or exciting. I see them (and Netskys) all the time.
--
Robert Tappan Morris, Jr., got six months in jail for crashing 10% of the computers that Bill Gates made $100 million crashing last weekend.

Bubba
GIT-R-DONE
Premium,MVM
join:2002-08-19
Around, Us
·Comcast

Very much agree JKK....this Forum and many of it's threads have always been Viewed by way more than the amount of posts that are made. If and when threads can not be made in the interest of all without being scrutinized by those that always feel that threads should only appeal to the choir....it will be a sad day for this Forum. In fact....if some in the choir would sometimes be the viewers and not the posters....we might have a higher % of posters.

Case in point:
»Is Wildtangent Ad/Spyware? 43/639

»WhenU Enters the Anti-Spyware Market 51/500

»Information security: How liable should vendors be 52/234
Patruk

join:2001-10-25
Stockton, CA

said by jaykaykay See Profile:
Hey, guys. What's with you people. This person was posting something they thought was important. They didn't come here to be made fun of, to be talked down to or to be replied to sarcastically, or to be just put down. Not everyone that comes to this forum knows as much as you whom have posted and just maybe his post will help someone else not as wise as you all. Lighten up and remember, this is not a forum for "no it alls" or there wouldn't be a need for it!

I agree. I don't post here much, but I read a lot of the threads, and there are a few people who have a tendency to put people down instead of offering help.

ironwalker
World Renowned
Premium,MVM
join:2001-08-31
Keansburg, NJ
clubs:
·Optimum Online

Its a shame that all the readers who want to post but are afraid just get more shy with posts like these.

I was always told...read,try,ask......it worked for me.

To those that get responses as above...ignore them....take what advice ya can use and leave the rest.
--
"LIVE FREE OR DIE"www.Theforumz.com ---- www.ownt.com--First rule of fiber optics: you do not talk about fiber optics

Mats
Here kitty and the chimp. Smash
Premium
join:2002-03-16

give me a break.. i hear what you guys are saying but it doesnt apply in this case.. imagine what this forum would look like if everyone posted an email that they received that had a virus attached to it. it would be a mess.

if its something that you guys want, then hopefully a special sticky thread can be made for it. then everyone that gets a virus through email can post directly to that thread..

ironwalker
World Renowned
Premium,MVM
join:2001-08-31
Keansburg, NJ
clubs:
·Optimum Online

Re: Beware, you may have "Bagel" in your Inbox

said by Mats See Profile:

give me a break.. i hear what you guys are saying but it doesnt apply in this case.. imagine what this forum would look like if everyone posted an email that they received that had a virus attached to it. it would be a mess.

if its something that you guys want, then hopefully a special sticky thread can be made for it. then everyone that gets a virus through email can post directly to that thread..
True indeed....but your reply was insensitive.
--
"LIVE FREE OR DIE"www.Theforumz.com ---- www.ownt.com--First rule of fiber optics: you do not talk about fiber optics

PeeWee
Premium
join:2001-10-21
Clovis, CA
clubs:
·Pacific Bell - SBC
·Comcast

A heads up on something like this serves as an advisory and/or reminder for those that do need it. and a reminder of the importance of reiterating said advice to customers and clients.
--
Nemo me impune lacessit. [No one provokes me with impunity] -- Motto of the Crown of Scotland

firebrix

@net.nz
O but we DO read this forum so that we don't have to bother you experts all the time. We read and learn, even if we don't say much.
I've learned so much here!!!!
Thanks to you all
firebrix
Forums » Up and Running » Security » SecurityHow 'bad' are spyware cookies?? »
« Supplemental Protection?  


Thursday, 10-Dec 20:44:00 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [200] Sprint Sued For Distracted Driving Death
· [135] AT&T Launching New 24 Mbps U-Verse Tier
· [87] AT&T Hints At Usage-Based iPhone Data Pricing
· [82] 3G Network Test Says AT&T Is Tops
· [73] WPA Cracker: Test WPA-PSK Networks In 20 Minutes
· [72] Mediacom Unveils 105 Mbps Pricing
· [66] Sprint Poised For A Turnaround?
· [54] Average American Consumes 34 Gigabytes Daily
· [51] The Future Of Wi-Fi Is Bright
· [50] Sprint, T-Mobile Merger Rumor Lives
Most people now reading
· New Mediacom Email [Mediacom]
· malware has been found hidden inside an Ubuntu screensaver [Security]
· [WIN7] Well, I was dumb, but do I have recourse? [Microsoft Help]
· IMG 1.7 (IMG Updates and Discussion) [Verizon FIOS TV]
· Windows 7 boot manager editing questions [Microsoft Help]
· [How to] Install Asterisk on an Asus WL-520GU router [VOIP Tech Chat]
· Lawyers Claim Palin Hack Suspect's PC Had Spyware [Security]
· Connecting to Google Voice Via SIP [VOIP Tech Chat]
· Cross Server Dungeon Experience [World of Warcraft]