While going through the SPAM hold, I found a message that had a .pif file attached. We are banning .pif files with Declude Virus. Below are the necessary snippets, and I sent the zipped SMD files to the virus email address. Luckily this message got caught by JunkMail.
*******Virus log:******* -------------- Y:\logs\viruslogs\vir0508.log/7168: 05/08/2004 13:02:18 Q1266200a01083fb8 Scanned: Virus Free [MIME: 1 25108] *******Declude -diag output:******* -------------- Declude 1.79i6 (C) Copyright 2000-2004 Computerized Horizons. Diagnostics ON (Declude v1.79i6). Declude JunkMail: Config file found (M:\Imail\Declude\global.CFG). Declude Virus: Config file found (M:\Imail\Declude\Virus.CFG). Declude Hijack: Not installed (no M:\Imail\Declude\Hijack.CFG file). Declude Confirm: Not installed (no M:\Imail\Declude\Confirm.CFG file). 84 spam tests defined: (edited for brevity) IMail reports Official Host Name as: "mail.taisweb.net". IMail's SendName registry seems OK: "m:\imail\Declude.exe". DNS Server: 127.0.0.1 Declude JunkMail Status: PRO version registered. Declude Virus Status: Standard Version Registered. Declude Hijack Status: NOT REGISTERED: No activation code. End of diagnostics. *******Virus.cfg (edited to remove OEM instructional comments):******* -------------- CODE XXXXXXXX LOGFILE logs\viruslogs\vir####.log LOGLEVEL HIGH CONSOLE OFF SCANFILE C:\Progra~1\FSI\F-Prot\fpcmd.exe /TYPE /SILENT /NOMEM /ARCHIVE=3 /NOBOOT /DUMB /REPORT=report.txt VIRUSCODE 3 VIRUSCODE 6 OKCODE 8 REPORT Infection: VIRDIR virus MAXATONCE 0 INCOMING ON OUTGOING ON ONACCESS OFF SCANNERTIMEOUT 60 BANEXT ade BANEXT adp BANEXT asx BANEXT bas BANEXT bat BANEXT chm BANEXT cmd BANEXT com BANEXT cpl BANEXT crt BANEXT exe BANEXT hlp BANEXT hta BANEXT inf BANEXT ins BANEXT isp BANEXT js BANEXT jse BANEXT lnk BANEXT mda BANEXT mdb BANEXT mde BANEXT mdt BANEXT mdw BANEXT mdz BANEXT msc BANEXT msi BANEXT msp BANEXT mst BANEXT ops BANEXT pcd BANEXT pif BANEXT prf BANEXT reg BANEXT scf BANEXT scr BANEXT sct BANEXT shb BANEXT shs BANEXT url BANEXT vb BANEXT vbe BANEXT vbs BANEXT wsc BANEXT wsf BANEXT wsh BANEXT EZIP BANNAME testattach.zip BANNAME text.zip BANNAME test.zip BANNAME data.zip BANNAME document.zip PRESCAN ON BANCLSID ON DELETEVIRUSES OFF DELIVERERRORS ON BANCRVIRUSES ON FORGINGVIRUS Klez FORGINGVIRUS Sobig ------------- Dan Horne Web Services Administrator TAIS Web Wilcox World Travel & Tours [EMAIL PROTECTED] ---------------------------------------------------- CONFIDENTIALITY NOTICE: This email message, including any attachments, is for the sole use of the intended recipient(s) and may contain confidential and privileged information. Any unauthorized review, use, disclosure or distribution is prohibited. If you are not the intended recipient, please contact the sender by reply email and destroy all copies of the original message. SPAM-FREE 1.0(2476) --- [This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)] --- This E-mail came from the Declude.Virus mailing list. To unsubscribe, just send an E-mail to [EMAIL PROTECTED], and type "unsubscribe Declude.Virus". The archives can be found at http://www.mail-archive.com.
