• Anything ‘published’ on the web is viewed as intellectual property and, regardless of whether it displays a copyright symbol or not, is therefore copyrighted by the originator. The only exception to this is if there is a “free and unrestricted reuse” statement associated with the work.

    In order to protect our members and TFL from possible litigation, all members must abide by the following new rules:

    1. Copying and pasting entire articles from another site to TFL is strictly prohibited. The same applies to articles from print or other media, and to posting photographs taken of copyrighted pages or other media.

    2. Copyright law provides for “fair use” of portions of a copyrighted work. You can copy no more than a SINGLE paragraph from the article to your post (3 or 4 sentences at most).

    3. You must provide a link to the article along with the name of website. For example: ww.xxx.yyy/zzz (The Lower Thumbsuck Daily News).

    4. You must provide, in your own words, a brief summary of the article AND your reasons for believing it will be of interest to TFL members. Failure to do so may result in the thread being closed or your post being deleted as a “cut and paste drive by.”

    5. Photographs and other images are also copyrighted. "Hotlinking" of images (so that it appears in your message) from other sites is also prohibited unless you own rights to the image. If you wish to share an image, provide a clickable link to it.

    Posts that do not follow these new guidelines will be altered or deleted by staff. Members who continue to violate this policy may lose their posting privileges at TFL.

    Thank you for your cooperation and your participation in TFL, the leading online forum for firearms enthusiasts.

Virus/Trojan/WORM- with TFL return address

Hal

New member
From :
webmaster <webmaster@thefiringline.com>

To :
grn_lantern@hotmail.com

Date :
Fri, 10 May 2002 03:58:15 -0700

MIME-Version: 1.0
Received: from [] by hotmail.com (3.2) with ESMTP id MHotMailBEA4F2CC007340043762CFD9787BCF340; Fri, 10 May 2002 03:58:21 -0700
Received: from user-2ivf486.dsl.mindspring.com ([165.247.145.6] helo=Ozwi)by swan.prod.itd.earthlink.net with smtp (Exim 3.33 #2)id 17686I-0006U3-00for grn_lantern@hotmail.com; Fri, 10 May 2002 03:58:15 -0700
From captkirk3@earthlink.net Fri, 10 May 2002 03:58:36 -0700
Message-Id: <E17686I-0006U3-00@swan.prod.itd.earthlink.net>


The size of the mail was 149KB and it contains a destructive .pif.

This seems to be the new one going around. From the return address it appears to be from TFL. It isn't. I repeat, it isn't coming from TFL What this one seems to do is search the address book of the infected user and use random legitimate email addresses as the return address so that it apperas the mail was sent from that person.
 
We're getting tons of these as well, Rich - 1SKS and BladeForums.com both.

I've got Nortons on every computer that has either domain name access, and no Klez's are detected... must be someone else with our names as a mask.

Kevin
 
Back
Top