----- Original Message -----
From: "R. Scott Perry" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Wednesday, June 12, 2002 11:39 AM
Subject: Re: [Declude.Virus] W32/Frethem-Fam

>
> >It seems to also use the MIME header exploit.  This is such a
> >common virus element, maybe Declude should have an option
> >to handle it.
>
> Let me ask you this:  Do you know of any resource that gives enough detail
> that Declude could check for such an exploit?
>

Can't say I've looked very hard, that's what I have you for<g>.

Don't take this as any sort of a complaint, just thinking out loud.  Some of
the others are catching at least some variations as a generic exploit, if
you could come up with something, even if not perfect, I'd probably use it.

I block most of the usual suspects, but unfortunately have to allow .exe to
support a brain dead legacy app.

Jerry

---
[This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)]

This E-mail came from the Declude.Virus mailing list.  To
unsubscribe, just send an E-mail to [EMAIL PROTECTED], and
type "unsubscribe Declude.Virus".  You can E-mail
[EMAIL PROTECTED] for assistance.  You can visit our web
site at http://www.declude.com .

Reply via email to