VIRUS (BC.Exploit.CVE_2011_3412) in mail FROM [194.186.209.78]

This is a multipart message in MIME format.

——=_NextPart_000_DA07_01CEBD2A.11C8EE20
Content-Type: text/plain;
boundary=»———-=_1328525985-20892-0″;
charset=»iso-8859-1″
Content-Transfer-Encoding: 7bit

A virus was found: BC.Exploit.CVE_2011_3412

Scanner detecting a virus: ClamAV-clamd

Content type: Virus
Internal reference code for the message is 20892-08/HzveAxzzAal7

First upstream SMTP client IP address: [194.186.209.78]
According to a ‘Received:’ trace, the message apparently originated at:
[194.186.209.78], main.mcity.local unknown [194.186.209.78]

Return-Path:
From: superviser@vtls.ru
Message-ID:
Subject: =?windows-1251?B?4/Dg9Ojq?=
The message has been quarantined as: antivirus@sphera-net.ru

Notification to sender will not be mailed.

The message WAS NOT relayed to:
:
250 2.7.0 Ok, discarded, id=20892-08 — INFECTED:
BC.Exploit.CVE_2011_3412

Virus scanner output:
p002: BC.Exploit.CVE_2011_3412 FOUND

——=_NextPart_000_DA07_01CEBD2A.11C8EE20
Content-Type: text/rfc822-headers;
name=»header.txt»
Content-Transfer-Encoding: 7bit
Content-Disposition: attachment;
filename=»header.txt»

Return-Path:
Received: from main.mcity.local (unknown [194.186.209.78])
by mail.sphera-net.ru (Postfix) with ESMTPA id 0CAACDEFB7
for ; Mon, 6 Feb 2012 14:59:38 +0400 (MSK)
Date: Mon, 6 Feb 2012 17:58:09 +0700
From: superviser@vtls.ru
Organization: superviser@vtls.ru
X-Priority: 3 (Normal)
Message-ID:
To: Svidinskii_AA@vtls.ru
Subject: =?windows-1251?B?4/Dg9Ojq?=
MIME-Version: 1.0
Content-Type: multipart/mixed;
boundary=»———-21B520B3EBE8F84″

——=_NextPart_000_DA07_01CEBD2A.11C8EE20—

Добавить комментарий