>I  put  in keyword filters to catch the filename, READ**.EXE, and have
F-Protect  and  McAfee,  but had one go right through all of this this
morning. I don't know if it is using some special encoding but none of
my Declude and Imail filters and scanning stopped this today.

Are you scanning for the MIME vulnerability?

(By NOT having this line: BANCRVIRUSES OFF or having by having BANCRVIRUSES
ON)

>From the manual:

Preventing vulnerabilities from being detected
To prevent vulnerabilities (such as the Outlook Blank Folding and Outlook
MIME Headers exploit) from being detected, you can have a line "BANCRVIRUSES
OFF" in your \IMail\Declude\virus.cfg file. It is not recommended that you
turn the vulnerability detection off, as it will allow some dangerous files
through!

John Tolmachoff MCSE, CSSA
IT Manager, Network Engineer
RelianceSoft, Inc.
La Habra, CA  90631
www.reliancesoft.com



---
[This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)]

---
This E-mail came from the Declude.Virus mailing list.  To
unsubscribe, just send an E-mail to [EMAIL PROTECTED], and
type "unsubscribe Declude.Virus".    The archives can be found
at http://www.mail-archive.com.

Reply via email to