The Innoculan message is a false alarm according to the below. Regards, Jim Kenzig http://thethin.net -----Original Message----- From: Peter Ghostine [mailto:pghostine@xxxxxxxxxx] Sent: Wednesday, February 19, 2003 6:54 PM To: jimkenz@xxxxxxxxxxxxxx Subject: RE: [THIN] Warning: Actual Citrix ICA Clients on www.citrix/download are Virus infected It's a false alarm. See below and inform the list. **************************************************************************** *************************************************** Correct. The Antivirus program the customer was using was falsely reporting that it found a virus on the client's machine. Jay Sierra Emergent Online 11260 Roger Bacon Drive Suite 105 Reston, VA 20190 -----Original Message----- From: Peter Ghostine Sent: Wednesday, February 19, 2003 4:05 PM To: EOL Engineers Subject: RE: Citrix virus update..FW: CA Startrak Issue 12523398;01 - WIN32/BAGIF So this is a false alarm? -----Original Message----- From: Jay Sierra Sent: Wednesday, February 19, 2003 1:46 PM To: EOL Engineers Subject: Citrix virus update..FW: CA Startrak Issue 12523398;01 - WIN32/BAGIF Importance: High -----Original Message----- From: pcs@xxxxxx [mailto:pcs@xxxxxx] Sent: Wednesday, February 19, 2003 1:24 PM To: Jay Sierra Subject: CA Startrak Issue 12523398;01 - WIN32/BAGIF CLI: JAY SIERRA; ;ISLANDIA TECH: MICHELE MERLINO CCN: 12523398 ISS: 1 PROD: ETRAV e-Trust AntiVirus DESC: WIN32/BAGIF Jay, I am contacting you from InoculateIT Technical Support at Computer Associates . Your name was forwarded to me by Citrix in regards to detection of Win32/ba gif virus. This is a false detection on your Citrix files. Signature files to resolve this issue will be posted at approximately 2:00pm EST. If you re quire immediate assistance, I can send you a beta version of the signature fi les (this version has not completed the full QA cycle, but will resolve your issue). If you wish this version, please let me know and I will forward it t o you. Thank you. Michele Merlino Technical Specialist **************************************************************************** +++ Subscribe Now To CA's E-News Technical Newsletter +++ For Information Visit Us At: http://eSupport.ca.com ==> Come Visit CA's Open Forum at: http://forums.ca.com <== **************************************************************************** Computer Associates Inoculan/InoculateIT/ControlIT Enterprise Support We encourage you to visit our support site at esupport.ca.com to assist you in solving your technical issues. ***** StarTCC ON THE WORLD WIDE WEB ***** Computer Associates Technical Support invites you to visit the CA support website at esupport.ca.com for access to technical information about CA products and access to StarTCC, CA's client support database. END OF STARTRAK MESSAGE Hi I'm posting this also under this subject that everybody is reading this message. Citrix infected their actual client download files with the W32.Bagif Virus. >From Citrix Support Forum: ~~~~~~snip~~~~~~ 6.31.1051 virusinfected ?! Citrix answer !!! I downloaded the new webclient 6.31.1051 from citrix and started to install it on my NT4 workstation thru autodetection and installation with NFuse 1.61. After about 300 installations my users start to call me and said that they couldn´t start any applications thru NFuse and that the virusprogram alarmed. It had found a virus called W32.Bagif in one of the files, I think it was WFICA32.EXE . The file were renamed and you couldn´t start any application. Our antivirusprogram is e-trust 6.0 with engine 236000. When I tried to mail the cabfile our TFS also warned about a virus and that virusprogram is McAffe Netshield. On Symatec they talk about this W32.Bagif. Could it be that the .cab file from Citrix is infected ? Citrix Answer: 6.31.1051 virusinfected ?! Citrix answer !!! Yes, at this point, this is a known issue. The Win32 ICA clients for English and German client versions are infected and downloads of these clients are currently unavailable. Thank you. ~~~~~~snip~~~~~~ Link: http://ctxex10.citrix.com/icaforum.nsf/8178b1c14b1e9b6b8525624f0062fe9f/672b dbdcdaac618085256cd20050049f?OpenDocument (link may wrap) So be carefully. Perhaps it's fixed now and the client files are cured. regards sebi ********************************************************* This Week's Sponsor - Neoware Now through March 31, 2003 Neoware is offering a Capio 500/Eon Proven 2100 for $299! Click the link below: http://www.neoware.com/promocp4a/thinnetban.html ********************************************************** For Archives, to Unsubscribe, Subscribe or set Digest or Vacation mode use the below link: http://thethin.net/citrixlist.cfm ********************************************************* This Week's Sponsor - Neoware Now through March 31, 2003 Neoware is offering a Capio 500/Eon Proven 2100 for $299! Click the link below: http://www.neoware.com/promocp4a/thinnetban.html ********************************************************** For Archives, to Unsubscribe, Subscribe or set Digest or Vacation mode use the below link: http://thethin.net/citrixlist.cfm