Thanks for the heads up - adding this line to rules.ima should block it: S~Hi!AND!B~filename=.*\.exe:NUL
--- Joe Wolf <[EMAIL PROTECTED]> wrote: > I'm receiving thousands of copies of the new BAGLE > virus. Most virus > scanners won't catch it yet. > > The subject of the message is "Hi" and the payload > is an .exe file of either > 15.9K or 16K of various names. > > f-prot won't catch it, AVG won't catch it. Symantec > and Trend Micro have > released pattern updates that will catch it, but not > remove it. > > The virus was only discovered today. > > Symantec: > http://securityresponse.symantec.com/avcenter/venc/data/[EMAIL PROTECTED] > > Trend Micro: > http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_BAGLE.A > > > To Unsubscribe: > http://www.ipswitch.com/support/mailing-lists.html > List Archive: > http://www.mail-archive.com/imail_forum%40list.ipswitch.com/ > Knowledge Base/FAQ: http://www.ipswitch.com/support/IMail/ __________________________________ Do you Yahoo!? Yahoo! Hotjobs: Enter the "Signing Bonus" Sweepstakes http://hotjobs.sweepstakes.yahoo.com/signingbonus To Unsubscribe: http://www.ipswitch.com/support/mailing-lists.html List Archive: http://www.mail-archive.com/imail_forum%40list.ipswitch.com/ Knowledge Base/FAQ: http://www.ipswitch.com/support/IMail/
