Use the following in the .eml templates:
SKIPIFVIRUSNAMEHAS Sobig
Or have this in the virus.cfg;
FORGINGVIRUSSobig
and then have the following in the .eml templates:
SKIPIFVIRUSNAMEHAS forged
John Tolmachoff MCSE, CSSA
IT Manager, Network Engineer
RelianceSoft, Inc.
Fullerton, CA 92835
w
Hi;
The virus appears to always come from: [EMAIL PROTECTED]
So simply add that to the kill list in Imail. That way any email comes with
that return address the server would not accept it.
This is what Symantec says about this:
The W32.Sobig.A@mm worm s
> If the eMail [EMAIL PROTECTED] is blocked at the Imail SMTP KILL list - will
> Declude ever see the eMail?
No, Imail will reject it.
John Tolmachoff MCSE, CSSA
IT Manager, Network Engineer
RelianceSoft, Inc.
Fullerton, CA 92835
www.reliancesoft.com
---
[This E-mail was scanned for viruses b
If the eMail [EMAIL PROTECTED] is blocked at the Imail SMTP KILL list - will
Declude ever see the eMail?
No, Declude will not see the E-mail if you add [EMAIL PROTECTED] to the IMail
Kill List. That will block the E-mail before it is even sent.
-Scott
---
[This E-mail
Just a note regarding my earlier posting...
Per eWeek newsletter:
"Not much is known about the virus at this point, but it seems to be a
mass-mailing worm that behaves much like the Lirva worm that began spreading
last week. It arrives via e-mail, always in a message from the address
[EMAIL PROTE