Hmm, my Norton AV/Win2000 just spit up a warning about the "W32.Badtrans.13312@mm" virus
file being detected in the following mail - as a SETUP.pif attachment.
Given that it quotes a 6-week old NANOG posting of mine, I am almost sure
that I am not the only recipient.
lightreading>agora>thorn copied FYI: you might want to give your user a phone call
about this, in case he doesn't read his email on a regular basis or/and if he is
blissfully unaware of what's transpiring on his machine.
http://www.symantec.com/avcenter/cgi-bin/virauto.cgi?vid=28772 describes this
as a MAPI worm that uses a few more filenames to disguise itself:
I guess Norton/Symantec can change the "wild" level from "low" to "medium" now.