Alexander Kniazev
2003-09-21 09:53:48 UTC
Hi All,
Люди помогите разобраться! В чем причина. Мне начало приходить каждый день на
почту по нескольку мегабайт от microsoft security bulletin, с апдейтами
всякими (.exe) и т.п. :((
Далее заголовки писем. Как от этого избавиться??? Писал на abuse из заголовков
Received, но что-то мне подсказывает что это бесполезно (и пока
подтверждается).
Return-Path: <210879-***@charter.net>
Delivered-To: ***@netlife.ru
Received: (qmail 26131 invoked by uid 89); 20 Sep 2003 12:50:05 -0000
Delivered-To: netlife.ru-***@netlife.ru
Received: (qmail 26129 invoked from network); 20 Sep 2003 12:50:03 -0000
Received: from unknown (HELO remt30.cluster1.charter.net) (209.225.8.40)
by hq.netlife.ru with SMTP; 20 Sep 2003 12:50:03 -0000
Received: from [24.159.60.132] (HELO viko)
by remt30.cluster1.charter.net (CommuniGate Pro SMTP 4.0.6)
with SMTP id 33986427; Sat, 20 Sep 2003 08:41:39 -0400
FROM: "MS Network Security Division" <ijvynijyrcksazo-***@news.microsoft.net>
TO: "MS Customer" < >
SUBJECT: Last Critical Pack
Mime-Version: 1.0
Content-Type: multipart/mixed;
boundary="ltgqtwmilchbqqgss"
Date: Sat, 20 Sep 2003 08:41:39 -0400
Message-ID: <auto-***@remt30.cluster1.charter.net>
Status: R
X-Status: N
Delivered-To: ***@netlife.ru
Received: (qmail 26815 invoked by uid 89); 20 Sep 2003 13:41:42 -0000
Delivered-To: netlife.ru-***@netlife.ru
Received: (qmail 26813 invoked from network); 20 Sep 2003 13:41:40 -0000
Received: from unknown (HELO reiser.fastweb.it) (213.140.2.39)
by hq.netlife.ru with SMTP; 20 Sep 2003 13:41:40 -0000
Received: from grzn (23.255.172.218) by reiser.fastweb.it (6.7.019)
id 3F3A692C002C74E3; Sat, 20 Sep 2003 15:21:38 +0200
Date: Sat, 20 Sep 2003 15:21:38 +0200 (added by ***@fastwebnet.it)
Message-ID: <***@reiser.mail.fw> (added by
***@fastwebnet.it)
FROM: "Security Division" <***@technet.microsoft.com>
TO: "Microsoft User" <***@technet.microsoft.com>
SUBJECT: New Net Update
Mime-Version: 1.0
Content-Type: multipart/mixed;
boundary="ddclwdwpppv"
Status: R
X-Status: N
Delivered-To: ***@netlife.ru
Received: (qmail 27767 invoked by uid 89); 20 Sep 2003 15:00:01 -0000
Delivered-To: netlife.ru-***@netlife.ru
Received: (qmail 27765 invoked from network); 20 Sep 2003 14:59:55 -0000
Received: from unknown (HELO mta01-svc.ntlworld.com) (62.253.162.41)
by hq.netlife.ru with SMTP; 20 Sep 2003 14:59:55 -0000
Received: from rgdi ([80.0.103.87]) by mta01-svc.ntlworld.com
(InterMail vM.4.01.03.37 201-229-121-137-20020806) with SMTP
id <20030920145133.SZKZ12315.mta01-***@rgdi>;
Sat, 20 Sep 2003 15:51:33 +0100
FROM: "Program Security Department" <***@advisor.msdn.net>
TO: "Microsoft Customer" <***@advisor.msdn.net>
SUBJECT: Latest Network Security Patch
Mime-Version: 1.0
Content-Type: multipart/mixed;
boundary="sgqimxsqdwmzg"
Message-Id: <20030920145133.SZKZ12315.mta01-***@rgdi>
Date: Sat, 20 Sep 2003 15:51:44 +0100
Status: R
X-Status: N
Microsoft Customer
this is the latest version of security update, the
"September 2003, Cumulative Patch" update which resolves
all known security vulnerabilities affecting
MS Internet Explorer, MS Outlook and MS Outlook Express
as well as three newly discovered vulnerabilities.
Install now to continue keeping your computer secure
from these vulnerabilities, the most serious of which could
allow an attacker to run executable on your computer.
This update includes the functionality of all previously released patches.
Microsoft Product Support Services and Knowledge Base articles can be found on
the Microsoft Technical Support web site.
http://support.microsoft.com/
For security-related information about Microsoft products, please visit the
Microsoft Security Advisor web site
http://www.microsoft.com/security/
Thank you for using Microsoft products.
Please do not reply to this message.
It was sent from an unmonitored e-mail address and we are unable to respond to
any replies.
----------------------------------------------
The names of the actual companies and products mentioned herein are the
trademarks of their respective owners.
Вложение: 1
Вложение: 2
Вложение: 3
Q858292.exe
Люди помогите разобраться! В чем причина. Мне начало приходить каждый день на
почту по нескольку мегабайт от microsoft security bulletin, с апдейтами
всякими (.exe) и т.п. :((
Далее заголовки писем. Как от этого избавиться??? Писал на abuse из заголовков
Received, но что-то мне подсказывает что это бесполезно (и пока
подтверждается).
Return-Path: <210879-***@charter.net>
Delivered-To: ***@netlife.ru
Received: (qmail 26131 invoked by uid 89); 20 Sep 2003 12:50:05 -0000
Delivered-To: netlife.ru-***@netlife.ru
Received: (qmail 26129 invoked from network); 20 Sep 2003 12:50:03 -0000
Received: from unknown (HELO remt30.cluster1.charter.net) (209.225.8.40)
by hq.netlife.ru with SMTP; 20 Sep 2003 12:50:03 -0000
Received: from [24.159.60.132] (HELO viko)
by remt30.cluster1.charter.net (CommuniGate Pro SMTP 4.0.6)
with SMTP id 33986427; Sat, 20 Sep 2003 08:41:39 -0400
FROM: "MS Network Security Division" <ijvynijyrcksazo-***@news.microsoft.net>
TO: "MS Customer" < >
SUBJECT: Last Critical Pack
Mime-Version: 1.0
Content-Type: multipart/mixed;
boundary="ltgqtwmilchbqqgss"
Date: Sat, 20 Sep 2003 08:41:39 -0400
Message-ID: <auto-***@remt30.cluster1.charter.net>
Status: R
X-Status: N
Вот еще пример
Return-Path: <***@fermento.net>Delivered-To: ***@netlife.ru
Received: (qmail 26815 invoked by uid 89); 20 Sep 2003 13:41:42 -0000
Delivered-To: netlife.ru-***@netlife.ru
Received: (qmail 26813 invoked from network); 20 Sep 2003 13:41:40 -0000
Received: from unknown (HELO reiser.fastweb.it) (213.140.2.39)
by hq.netlife.ru with SMTP; 20 Sep 2003 13:41:40 -0000
Received: from grzn (23.255.172.218) by reiser.fastweb.it (6.7.019)
id 3F3A692C002C74E3; Sat, 20 Sep 2003 15:21:38 +0200
Date: Sat, 20 Sep 2003 15:21:38 +0200 (added by ***@fastwebnet.it)
Message-ID: <***@reiser.mail.fw> (added by
***@fastwebnet.it)
FROM: "Security Division" <***@technet.microsoft.com>
TO: "Microsoft User" <***@technet.microsoft.com>
SUBJECT: New Net Update
Mime-Version: 1.0
Content-Type: multipart/mixed;
boundary="ddclwdwpppv"
Status: R
X-Status: N
ну и последний
Return-Path: <***@ntlworld.com>Delivered-To: ***@netlife.ru
Received: (qmail 27767 invoked by uid 89); 20 Sep 2003 15:00:01 -0000
Delivered-To: netlife.ru-***@netlife.ru
Received: (qmail 27765 invoked from network); 20 Sep 2003 14:59:55 -0000
Received: from unknown (HELO mta01-svc.ntlworld.com) (62.253.162.41)
by hq.netlife.ru with SMTP; 20 Sep 2003 14:59:55 -0000
Received: from rgdi ([80.0.103.87]) by mta01-svc.ntlworld.com
(InterMail vM.4.01.03.37 201-229-121-137-20020806) with SMTP
id <20030920145133.SZKZ12315.mta01-***@rgdi>;
Sat, 20 Sep 2003 15:51:33 +0100
FROM: "Program Security Department" <***@advisor.msdn.net>
TO: "Microsoft Customer" <***@advisor.msdn.net>
SUBJECT: Latest Network Security Patch
Mime-Version: 1.0
Content-Type: multipart/mixed;
boundary="sgqimxsqdwmzg"
Message-Id: <20030920145133.SZKZ12315.mta01-***@rgdi>
Date: Sat, 20 Sep 2003 15:51:44 +0100
Status: R
X-Status: N
Microsoft Customer
this is the latest version of security update, the
"September 2003, Cumulative Patch" update which resolves
all known security vulnerabilities affecting
MS Internet Explorer, MS Outlook and MS Outlook Express
as well as three newly discovered vulnerabilities.
Install now to continue keeping your computer secure
from these vulnerabilities, the most serious of which could
allow an attacker to run executable on your computer.
This update includes the functionality of all previously released patches.
Microsoft Product Support Services and Knowledge Base articles can be found on
the Microsoft Technical Support web site.
http://support.microsoft.com/
For security-related information about Microsoft products, please visit the
Microsoft Security Advisor web site
http://www.microsoft.com/security/
Thank you for using Microsoft products.
Please do not reply to this message.
It was sent from an unmonitored e-mail address and we are unable to respond to
any replies.
----------------------------------------------
The names of the actual companies and products mentioned herein are the
trademarks of their respective owners.
Вложение: 1
Вложение: 2
Вложение: 3
Q858292.exe