Thanks for the heads up - adding this line to
rules.ima should block it:

S~Hi!AND!B~filename=.*\.exe:NUL


--- Joe Wolf <[EMAIL PROTECTED]> wrote:
> I'm receiving thousands of copies of the new BAGLE
> virus.  Most virus
> scanners won't catch it yet.
> 
> The subject of the message is "Hi" and the payload
> is an .exe file of either
> 15.9K or 16K of various names.
> 
> f-prot won't catch it, AVG won't catch it.  Symantec
> and Trend Micro have
> released pattern updates that will catch it, but not
> remove it.
> 
> The virus was only discovered today.
> 
> Symantec:
>
http://securityresponse.symantec.com/avcenter/venc/data/[EMAIL PROTECTED]
> 
> Trend Micro:
>
http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_BAGLE.A
> 
> 
> To Unsubscribe:
> http://www.ipswitch.com/support/mailing-lists.html
> List Archive:
>
http://www.mail-archive.com/imail_forum%40list.ipswitch.com/
> Knowledge Base/FAQ:
http://www.ipswitch.com/support/IMail/


__________________________________
Do you Yahoo!?
Yahoo! Hotjobs: Enter the "Signing Bonus" Sweepstakes
http://hotjobs.sweepstakes.yahoo.com/signingbonus

To Unsubscribe: http://www.ipswitch.com/support/mailing-lists.html
List Archive: http://www.mail-archive.com/imail_forum%40list.ipswitch.com/
Knowledge Base/FAQ: http://www.ipswitch.com/support/IMail/

Reply via email to