Hi,

my mail system has just blocked mail from [email protected] which
contains malware. Perhaps incoming mails to openbsd lists should be
checked for malware before they are distributed to list members?

Here's amavis report:


A virus was found: Rtf.Downloader.Obfuscation-6370377-2

Scanner detecting a virus: ClamAV-clamd

Content type: Virus
Internal reference code for the message is 38708-15/bg254irHCuHA

First upstream SMTP client IP address: [192.43.244.163]:25439
  lists.openbsd.org

Received trace: ESMTPS://[192.43.244.163]:25439 < ESMTP://127.0.0.1 <
  ESMTPS://46.102.152.157 < local://x

Return-Path: <[email protected]>
From: Natalia.S <[email protected]>
Sender: [email protected]
Message-ID: <[email protected]>
Subject: Запрос на возврат средств клиента
The message has been quarantined as: virus-bg254irHCuHA

The message WAS NOT relayed to:
<[email protected]>:
   250 2.7.0 ok, discarded, id=38708-15 - infected:
rtf.downloader.obfuscation-6370377-2

Virus scanner output:
  p001: Rtf.Downloader.Obfuscation-6370377-2 FOUND
  p004: Rtf.Downloader.Obfuscation-6370377-2 FOUND


Return-Path: <[email protected]>
Received: from openbsd.org (lists.openbsd.org [192.43.244.163])
        (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256
bits)) (No client certificate requested)
        by mail.mimar.rs (Postfix) with ESMTPS id 294A9625A23E
        for <[email protected]>; Tue, 16 Jan 2018 15:34:12 +0100
(CET) Received: from openbsd.org (localhost [127.0.0.1])
        by openbsd.org (OpenSMTPD) with ESMTP id e9a25692;
        Tue, 16 Jan 2018 07:34:08 -0700 (MST)
Received: from bankosantantder.com (bankosantantder.com
[46.102.152.157]) by openbsd.org (OpenSMTPD) with ESMTPS id b863df7e
(TLSv1.2:AES256-SHA256:256:NO) for <[email protected]>;
        Tue, 16 Jan 2018 06:17:48 -0700 (MST)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed;
d=bankosantantder.com; s=dkim;
h=Date:Message-Id:Reply-To:Content-type:MIME-Version:From:Subject:To;
bh=zqQlCXfowdvAkKI7caNIkqVOL643LzTD988dF1+98Ms=;
b=Z8IH5uRa0b4QCZ+m2aMA64/EIZvyl8O+Ep92Bg6J11VgMRXK1aVxvHEFT/vANurnwqVFyyEWcmU6Y72TD9IwwCF6hqV78kZl00rM/8RxDqBXrDs9AJwKFy6SEZQa8nvG7qSpZ7qCOlUgo8R3rWUO4Vw5yCIH4GnPctpPUA/IOSQ=;
Received: by bankosantantder.com with local (Exim 4.80) id
1ebOox-0006FW-0M; Tue, 16 Jan 2018 05:50:23 -0500 To: [email protected]
Subject:
=?UTF-8?B?0JfQsNC/0YDQvtGBINC90LAg0LLQvtC30LLRgNCw0YIg0YHRgNC10LTRgdGC0LIg0LrQu9C40LXQvdGC0LA=?=
From: =?UTF-8?B?TmF0YWxpYS5T?= <[email protected]>
MIME-Version: 1.0; Content-type: multipart/mixed;
boundary="--pnSRa1E8p2" Reply-To: [email protected]
Message-Id: <[email protected]> Date: Tue, 16 Jan
2018 05:50:23 -0500 X-Content-Discarded: text/html
List-Help: <mailto:[email protected]?body=help>
List-ID: <bugs.openbsd.org>
List-Owner: <mailto:[email protected]>
List-Post: <mailto:[email protected]>
List-Subscribe: <mailto:[email protected]?body=sub%20bugs>
List-Unsubscribe: <mailto:[email protected]?body=unsub%20bugs>
X-Loop: [email protected]
Precedence: list
Sender: [email protected]

-- 
Before enlightenment - chop wood, draw water.
After  enlightenment - chop wood, draw water.

Marko Cupać
https://www.mimar.rs/

Reply via email to