Paul Murphy wrote:

[Disguise VIRUS.EXE as README.TXT]

> I'd be prepared to wager that 90% plus would allow it through...because
> they have configured their virus scanner to only scan potentially
> damaging files, and they decide that a file is potentially damaging
> based on the user-provided file extension.

Anyone running MIMEDefang shouldn't accept it, because the
virus-integration code tries as hard as possible to convince the
associated virus scanner to scan all files, regardless of extension.

Regards,

David.
_______________________________________________
NOTE: If there is a disclaimer or other legal boilerplate in the above
message, it is NULL AND VOID.  You may ignore it.

Visit http://www.mimedefang.org and http://www.roaringpenguin.com
MIMEDefang mailing list [email protected]
http://lists.roaringpenguin.com/mailman/listinfo/mimedefang

Reply via email to