Here at my work we keep getting infected every month or two with the columbia variation of the VBS.LOVELETTER virus. We are almost positive that we are being infected internally by someone that has archived the virus onto a floppy or CD-R since it is always the same virus. We run NT4.0 and Win2k only. We find the files and delete all the infected ones but someone keeps infecting us. How can I track where the virus is being introduced, can I track one of the VBS files through sever logs? Any help would be greatly appreciated.