Uhhh...what???

---------- Forwarded message ----------
From: postmaster@entum.com < postmaster@entum.com>
Date: Aug 2, 2007 7:26 PM
Subject: [Err] Re: Gwd: crypted document
To: hexstar@gmail.com

Transmit Report:

cjw@yutc.co.kr¿¡°Ô ¸ÞÀÏ ¹ß¼ÛÀ» 2¹ø ½ÃµµÇßÁö¸¸ ½ÇÆÐÇÏ¿´½À´Ï´Ù.
(½ÇÆÐ ÀÌÀ¯ : 554 Message rejected because it may contain Sober worm virus( 211.48.62.215))

<Âü°í> ½ÇÆÐ ÀÌÀ¯¿¡ ´ëÇÑ ¼³¸í
User unknown       :¸ÞÀÏÀ» ¼ö½ÅÇÒ »ç¿ëÀÚ°¡ Á¸ÀçÇÏÁö ¾ÊÀ½
Socket connect fail:¼ö½Å ¸ÞÀÏ ¼­¹ö¿Í ¿¬°á ½ÇÆÐ
DATA write fail    :¼ö½Å ¸ÞÀÏ ¼­¹ö·Î ¸Þ¼¼Áö ¼Û½Å ½ÇÆÐ
DATA reponse fail  :¼ö½Å ¸ÞÀÏ ¼­¹ö·ÎºÎÅÍ ¸Þ¼¼Áö ¼ö½Å ½ÇÆÐ

Final-Recipient: rfc822;cjw@ yutc.co.kr
Diagnostic-Code: smtp; 554 error - Message rejected because it may contain Sober worm virus(211.48.62.215 )
Action: failed
Status: 4.0.0


---------- Forwarded message ----------
From: "Hex Star" <hexstar@gmail.com>
To: Cmadams < cmadams@hiwaay.net>, nanog@merit.edu
Date: Thu, 2 Aug 2007 19:16:40 -0700
Subject: Re: Gwd: crypted document


On 8/2/07, Cmadams <cmadams@hiwaay.net> wrote:
WARNING!!! (from bach.merit.edu)

The following message attachments were flagged by the antivirus scanner:

Attachment [2.2] Message.scr, virus infected: W32/Bagle-CF.  Action taken: deleted

Ok. See attach.



VIRUS WARNING Message (from bach.merit.edu)

The virus W32/Bagle-CF was detected in email attachment [2.2 ] Message.scr.  The infected attachment has been deleted.



Why would someone in the ISP industry try to spread a virus? Ironically I suppose a ISP admin may have their own computer infected... :P