Looks like varying attachment names. I got one thats excel_table.zip
- Original Message -
From: David Dodell [EMAIL PROTECTED]
To: John T (Lists) Declude.Virus@declude.com
Sent: Tuesday, November 15, 2005 6:50 AM
Subject: Re: [Declude.Virus] New Sober to be released, possible
Alright, due to "management decisions" they want me to test a
product from sprint for spam and virus protection.
It is setup a pre-cursor to our imail and declude setup, but
is only set to add a x-header into the email.
Since I've done this, more spam seems to be coming through. Do
I need
Below is the information. It shows that that it's coming from
a local host, yet it's not. Mail server has been scanned for viruses/trogans and
found none.
Anyone got an idea what's going, what I'm not seeing, virus or
if it's a program bug?
Also note...the header infois after the
: Re: [Declude.Virus] Declude virus bug?
On 5 May 2005 at 11:39, Doug Anderson wrote:
Below is the information. It shows that that it's coming from a local
host, yet it's not. Mail server has been scanned for viruses/trogans
and found none. Anyone got an idea what's going, what I'm
Has anyone seen any emails floating around per Microsoft Security Bulletin
MS02-048
Flaw in Certificate Enrollment Control Could Allow Deletion of Digital
Certificates (Q323172)
I have some users who's root certificates are disappearing and I'm trying to
figure out why. W2k 98 - doesn't matter.
First, can you bind a VPS session to a specific nic considering that you
have 5 dual nics?
Secondly, can you assign a different mac in each VPS session.
If I remember correctly from my work with VPC, the Mac is the same for each
instance even though there are multiple instances. You use either
The autoforge option in declude virus, what port does it
comunicate on? Need to make sure it's open.
Also, our to declude programmer guys...I don't know about the
feasibility, how about an idea for the future?
Phishing. Have some sort of online db. Many on this list
report phishing to the
Ok, maybe it's just me but something seems funky. Given that 99% of the
jpg's will go through no problem and the other 1% will be caught, that means
the 1% are unique in some way, shape or form. They are detectable which
declude virus does and other virus packages do if you scan all files.
In
Could someone please explain what this Microsoft GDIPlus.DLL JPEG
Vulnerability is?
Are all JPEG's vulnerable or just some with a bad format?
The company I work for does a lot of graphics work and people email jpegs
around. A few have been caught and I'm trying to understand why. I'm
assuming
Ok...
Declude virus does the detection.
If a jpeg is attached/embedded in the email, the email will be flagged as
having the vulnerability whether it's actually infected or not.
Correct?
If the sending pc, it's dll's, and software are updated with Microsoft's
patch will the embedded jpg still
stinger 2.3.5
http://vil.mcafeesecurity.com/vil/averttools.asp#stinger
- Original Message -
From: Jim Matuska [EMAIL PROTECTED]
To: [EMAIL PROTECTED]
Sent: Monday, July 26, 2004 1:17 PM
Subject: [Declude.Virus] New Mydoom.O Virus
Does anyone know where I can get a removal tool for the
We have the same problem.
DO NOT USE the email map link on the page
Copy and paste the link/url into an email or email link directly from the
browser to the user. The url contains all the info for creating the map.
- Original Message -
From: R. Scott Perry [EMAIL PROTECTED]
To: [EMAIL
This isn't someone we know. I looked them up based on the admin messages we
were getting from declude.virus+mcaffee and they're a technology consulting
firm - which could explain the arrogance. I responded back to his (director
of operations) email. He claimed that they might of been ip spoofed,
given the following message:
Declude Virus v1.79 caught the the W32/[EMAIL PROTECTED] virus in message.scr
from [Forged] to: [EMAIL PROTECTED]
Date: 06/16/2004 00:36:46
Subject:Mail Delivery (failure [EMAIL PROTECTED])
Spool File: Ddc53428f00fc4933.SMD
Remote IP: 24.199.28.90
] [mailto:Declude.Virus-
[EMAIL PROTECTED] On Behalf Of Doug Anderson
Sent: Thursday, April 29, 2004 4:55 PM
To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
Subject: [Declude.Virus] What is it?
Anyone deal with a file called AkAAMON.DLL or AkAAMON.CPY.DLL
Adaware found it but couldn't remove it on one of our
I've been looking through the "per user" settings for declude
virus. Is it possible to have a default config file with a footer and selected
users not have the footer? We still want them to scan for viruses, just not have
a footer.
Can I put it in for a future request
Request : Any configuration possible in virus.cfg can be modified for
specific users and/or domain.
This would include footers, banext, skipext, incoming, and outgoing.
- Original Message -
From: R. Scott Perry [EMAIL PROTECTED]
To: [EMAIL
17 matches
Mail list logo