----- Original Message ----- From: "R. Scott Perry" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Wednesday, June 12, 2002 11:39 AM Subject: Re: [Declude.Virus] W32/Frethem-Fam
> > >It seems to also use the MIME header exploit. This is such a > >common virus element, maybe Declude should have an option > >to handle it. > > Let me ask you this: Do you know of any resource that gives enough detail > that Declude could check for such an exploit? > Can't say I've looked very hard, that's what I have you for<g>. Don't take this as any sort of a complaint, just thinking out loud. Some of the others are catching at least some variations as a generic exploit, if you could come up with something, even if not perfect, I'd probably use it. I block most of the usual suspects, but unfortunately have to allow .exe to support a brain dead legacy app. Jerry --- [This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)] This E-mail came from the Declude.Virus mailing list. To unsubscribe, just send an E-mail to [EMAIL PROTECTED], and type "unsubscribe Declude.Virus". You can E-mail [EMAIL PROTECTED] for assistance. You can visit our web site at http://www.declude.com .
