How does it do the DNS lookup? Does it use some kind of service that might
have changed?
The other possibility is that on June 2 the sending org changed their DNS
info, so that it is no longer valid. If I do a manual DNS lookup, I get
"sorry, xxx.xxx.xxx.org is not an IP address". It seems unlikely that they
changed anything, though.
----- Original Message -----
From: "Scott Fisher" <[EMAIL PROTECTED]>
To: <[email protected]>
Sent: Wednesday, June 14, 2006 10:07 AM
Subject: Re: [Declude.JunkMail] MAILFROM test
I believe it does a DNS lookup on everything after the @ in the envelope
mailfrom.
It can false positive for me when the mailfrom uses subdomains.
In general I would term it an effective test, though it doesn't trigger on
a lot of spam.
----- Original Message -----
From: "Stan Buck" <[EMAIL PROTECTED]>
To: <[email protected]>
Sent: Wednesday, June 14, 2006 8:39 AM
Subject: [Declude.JunkMail] MAILFROM test
Can anyone tell me more detail about how the MAILFROM test works? It has
suddenly (June 2) started to catch email that it ignored before. I can't
detect any sigificant difference in the headers before and after.
Stan
---
This E-mail came from the Declude.JunkMail mailing list. To
unsubscribe, just send an E-mail to [EMAIL PROTECTED], and
type "unsubscribe Declude.JunkMail". The archives can be found
at http://www.mail-archive.com.
---
This E-mail came from the Declude.JunkMail mailing list. To
unsubscribe, just send an E-mail to [EMAIL PROTECTED], and
type "unsubscribe Declude.JunkMail". The archives can be found
at http://www.mail-archive.com.
---
This E-mail came from the Declude.JunkMail mailing list. To
unsubscribe, just send an E-mail to [EMAIL PROTECTED], and
type "unsubscribe Declude.JunkMail". The archives can be found
at http://www.mail-archive.com.