Return to KLUBNL.PL main page

rsgb_lf_group
[Top] [All Lists]

Re: Don't open "Re:LF:Capacity hat puzzle": fen-net

To: [email protected]
Subject: Re: Don't open "Re:LF:Capacity hat puzzle": fen-net
From: [email protected]
Date: Fri, 1 Nov 2002 16:13:46 EST
Reply-to: [email protected]
Sender: <[email protected]>
Hi Stewart and group,

I have just had talked to Walter DJ2LF on the phone. We had in fact reinstalled the OS on his computer in September, and named it "PCVONWALTER" (not "PC"). I crosschecked this with the headers of several private messages Walter has sent to me since, and an hour ago we actually verified that the name of his machine has not been changed.

"hugo.fen-net.de" is the dial-in server of the regional provider "Freenet Erlangen-Nuernberg". So if you are using fen-net and you are on the reflector, please check if your machine's name is "PC" (e.g. Start-Einstellungen-Systemsteuerung-Netzwerk-Identifikation-Computername on a German language Win98).

Greetings
Markus, DF6NM

In einer eMail vom 01.11.02 20:30:04 (MEZ) Mitteleuropäische Zeit schreibt [email protected]:


Hugh is also correct about the fen-net.de origin.  There are three things
about a Bugbear message that are not faked:  The outgoing mail server (here
hugo.fen-net.de aka mail.fen-net.de) is the one normally used by the victim.
The IP address (here dialin-nbg-018.fen-net.de [212.204.116.18]) is the
address the machine had when the virus was sent.  And the machine name
(here 'PC') is also not forged.


<Prev in Thread] Current Thread [Next in Thread>
  • Re: Don't open "Re:LF:Capacity hat puzzle": fen-net, MarkusVester <=