Benjamin J. Weiss pravi:
I have been adding rules to sendmail all day yesterday and today
blocking the spam...
I'm still trying to find the time to figured out why neither f-prot nor
MailScanner is catching these. They've caught other stuff but not this
one. The attachement has a .exe extension which I block by default, and
not even the attachment is getting stripped.
Is anybody/everybody else seeing this make it through
MailScanner/f-prot?
I have like this since Sept. 19 th - avg. 400 per day. I have also add
attachment filtering with rule to block application/x-msdownload and
this stop like these messages because they have an exe attachment which
my 4 AV programs missed (F-prot, Antivir, Clamav, Nod32).
Are you guys updating your f-prot virus signatures? My f-prot is catching
all of this stuff. My dates are:
[EMAIL PROTECTED] log]# f-prot -verno
F-PROT ANTIVIRUS
Program version: 4.2.1
Engine version: 3.13.4
VIRUS SIGNATURE FILES
SIGN.DEF created 18 September 2003
SIGN2.DEF created 18 September 2003
MACRO.DEF created 22 September 2003
Ben
I have updater running every hour...you are lucky, you still didn't
receive these strange messages which are not detected by any av program.
--
redhat-list mailing list
unsubscribe mailto:[EMAIL PROTECTED]
https://www.redhat.com/mailman/listinfo/redhat-list