Cannot help with the tracking bit but for all who have been caught see the following:
Please be on the defense when opening your GroupWise or home email. There is a new virus that is very difficult to pin-point how it will look in your inbox. (Attachment: (varies [.exe, .pif, .cmd, .scr] - often arrives in a ZIP archive) (22,528 bytes)) If you do not know the sender or were not expecting an email with an attachment, please delete it.
Further Virus Information:
Please be aware that the recently announced W32/Mydoom@MM virus has been detected within the networks. We are continuing to work to secure and deploy the latest DATs to protect against this virus. More information on this virus is available via the links below:
>>> <
[email protected]> 01/26/04 03:17PM >>>
Alert
This is a High-Outbreak Threat Alert for W32/Mydoom@MM.
Justification
W32/Mydoom@MM has been deemed High-Outbreak due to prevalence.
Read About It
Information about W32/Mydoom@MM is located on VIL at:
http://vil.nai.com/vil/content/v_100983.htm
Detection
W32/Mydoom@MM was first discovered on 01/26/2004 and detection will be
added to the 4319 dat files (Release Date: 1/26/2004). The EXTRA.DAT
is available.
If you suspect you have W32/Mydoom@MM, please submit a sample to
http://www.webimmune.net.
Risk Assessment Definition
For further information on the Risk Assessment and AVERT Recommended
Actions please see:
http://www.networkassociates.com/us/...assessment.htm
Hope it helps someone?
YYZ