Most interested in the Journal file. Could someone have a look? On May 10, 2016 3:53 AM, "John Young" <[1]jya@pipeline.com> wrote: At 02:13 AM 5/10/2016, Greg Moss imposter phished: [2]http://219.234.6.206:8080/ Which produces: Web attack: Microsoft OleAut32 RCE CVE-2014-6332 References 1. mailto:jya@pipeline.com 2. http://219.234.6.206:8080/