Andrzej Marecki <[EMAIL PROTECTED]> writes: > 1. This is MD that should possibly stop Bagle-Q! > 2. Antivirus software detects (and disinfects) Bagle-Q _only_ when a PC > gets infected via the exploit in Outlook which downloads Bagle. > Antivirus software has literally nothing to do when email "promoting" > Bagle-Q arrives simply because there is no viral code there.
Oh yes there is. Recent bagle variants are properly found by AV software - say, clamav (and others). Proposed solutions 1) Install AV program capable of dealing with bagle. or 2) Filter text/html mail containing (any or only specific) "OBJECT..." tags using, say, procmail. or 3) Block text/html mail altogether. Better yet, block anything but text/plain. Yes, I know, I know. Also, force your users to patch their M$ Outlook programs http://www.microsoft.com/technet/security/bulletin/MS03-040.mspx MJ _______________________________________________ Visit http://www.mimedefang.org and http://www.canit.ca MIMEDefang mailing list [EMAIL PROTECTED] http://lists.roaringpenguin.com/mailman/listinfo/mimedefang

