« December 2004 »
S M T W T F S
1 2 3 4
5 6 7 8 9 10 11
12 13 14 15 16 17 18
19 20 21 22 23 24 25
26 27 28 29 30 31
You are not logged in. Log in
JunSamboy's Work Blog
Wednesday, 8 December 2004
Dec. 8
Topic: Viruses
The following e-mail messages were found to have viruses in them:

Sender:
IP Address: 129.250.35.106
Subject: Mail delivery failed: returning message to sender
MessageID: D13211DD325
Report: ClamAV: msg-31461-3.txt contains Worm.Sober.I

Sender: ivylistic@yahoo.com
IP Address: 203.115.189.25
Subject: Re:
MessageID: 694C91DD325
Report: ClamAV: Cat.scr contains Worm.Bagle.AG
MailScanner: Windows Screensavers are often used to hide viruses (Cat.scr)

Posted by Samboy at 12:01 AM WST
Tuesday, 7 December 2004
Dec. 7
Topic: Viruses
The following e-mail messages were found to have viruses in them:

Sender: ivylistic@yahoo.com
IP Address: 203.115.189.25
Subject: Re:
MessageID: 248611DD325
Report: ClamAV: Cat.cpl contains Worm.Bagle.AG
MailScanner: Control panel items are often used to hide viruses (Cat.cpl)

Posted by Samboy at 12:01 AM WST
Dec. 7 meeting
Topic: i-Solv Project
Held a meeting with i-Solv people from around 11am to 1pm.

We were told to finish reviewing the ERD / DFD, etc. ASAP.

Tall order.

Posted by Samboy at 12:01 AM WST
Sunday, 5 December 2004
Dec 5 Viruses
Topic: Viruses
Wow, no viruses for several days! (11/28 to Dec 4)

The following e-mail messages were found to have viruses in them:

Sender: justinian@skyinet.net
IP Address: 202.78.104.25
Subject: Re:
MessageID: 7EE051DD325
Report: ClamAV: Fish.scr contains Worm.Bagle.AG
MailScanner: Windows Screensavers are often used to hide viruses (Fish.scr)

Sender: labaya@tei.ph
IP Address: 202.78.104.25
Subject: Re:
MessageID: 360C01DD325
Report: ClamAV: Doll.scr contains Worm.Bagle.AG
MailScanner: Windows Screensavers are often used to hide viruses (Doll.scr)

Posted by Samboy at 12:01 AM WST
Thursday, 25 November 2004
Nov 25
Topic: Viruses
The following e-mail messages were found to have viruses in them:

Sender:
IP Address: 167.181.33.37
Recipient: auto-mailer@xxx
Subject: Delivery Status Notification (Failure)
MessageID: 4E1951DD325
Report: ClamAV: re_mail_9292.com contains Worm.Sober.I
MailScanner: Executable DOS/Windows programs are dangerous in email (re_mail_9292.com)

Sender: webmaster@edsamail.com.ph
IP Address: 210.23.174.225
Recipient: mr. d, rocks, azil (@xxx)
Subject: Re: Mail Error <3028>
MessageID: 3CA211DD325
Report: ClamAV: mail.xls.scr contains Worm.Sober.I
MailScanner: Windows Screensavers are often used to hide viruses (mail.xls.scr)

Posted by Samboy at 12:01 AM WST
Wednesday, 24 November 2004
Sir Alex
Topic: i-Solv Project
Nov. 23, ~2pm:

Sir Alex is in the hospital. No details on what his sickness/injury is. He told me we will meet next week, but he might send some personnel here this week.

He told me he would inform me if and when those personnel will come.

Posted by Samboy at 9:15 AM WST
Radio Room PC
Topic: work
Nov. 23, ~3:30pm

The PC still can't see the server. I "re-crimped" the plug at the switch end, and voila! Problem solved.

Posted by Samboy at 9:13 AM WST
Nov 24
Topic: Viruses
The following e-mail messages were found to have viruses in them: still the common
Recipient: ate jo

Sender: hostmaster@dti.dti.gov.ph
IP Address: 165.243.0.231
Subject: Registration confirmation
MessageID: 71F191DD325
Report: ClamAV: dti.xls.pif contains Worm.Sober.I
MailScanner: Shortcuts to MS-Dos programs are very dangerous in email (dti.xls.pif)

Sender: auto-mailer@lge.com
IP Address: 165.243.0.231
Recipient: joel@sfelapco.com
Subject: Mail_Delivery_failure
MessageID: CEE821DD325
Report: ClamAV: lge.scr contains Worm.Sober.I
MailScanner: Windows Screensavers are often used to hide viruses (lge.scr)

It's getting unwieldy, so I just blacklisted the 3 address from the 165.243.0.0 block that have sent mails to ate jo. No more SOBER-infected mails! :-P

Posted by Samboy at 12:01 AM WST
Tuesday, 23 November 2004
Radio Room PC
Topic: work
Finished cleaning it THOROUGHLY. I opened up the PSU and unscrewed the board and fan, cleaned out the black dust.

Removed the drives and add-on PCI cards and cleaned them, too.

Opened up the CD-ROM drive and cleaned it out, including the lens.

Couldn't open up the floppy drive, though. No hope for that one. Besides, we don't need it.

Replaced the original Planet NIC, though.

I tested it using DPP's station and it's working. Have to replace it back in the radio room later. I hope there's no more cable problems. :-)

Took me about 2 hours.

Posted by Samboy at 2:31 PM WST
Nov 23
Topic: Viruses
The following e-mail messages were found to have viruses in them:
Each one's Recipient: ate jo

Sender: user_info@dti.dti.gov.ph
IP Address: 165.243.0.226
Subject: Registration confirmation
MessageID: 267911DD325
Report: ClamAV: dti.scr contains Worm.Sober.I
MailScanner: Windows Screensavers are often used to hide viruses (dti.scr)

Sender: new_account@edsamail.com.ph
IP Address: 165.243.0.226
Subject: FwD: Registration confirmation
MessageID: ABC671DD325
Report: ClamAV: edsamail_8942.zip contains Worm.Sober.I

Sender: audred24@yahoo.com
IP Address: 165.243.0.226
Subject: Details
MessageID: CED791DD325
Report: ClamAV: oh_nono4801.bat contains Worm.Sober.I
MailScanner: Batch files are often malicious (oh_nono4801.bat)

Posted by Samboy at 12:01 AM WST

Newer | Latest | Older