Hi,
I am playing with LDAP profiling for my users, either by domain or by
recipient address. I need to set a domain as virus lover, but can't
seem to be able to do that.
The LDAP entry looks like this:
dn: uid=amavis_as2594,ou=schiavi,ou=prova,o=c.it, c=IT
amavisVirusLover: 1
I got this mail today, which was not recognized by 4 virus-scanners:
http://members.inode.at/pinguin/possiblevirus.txt
Can anyone confirm, that this is a virus?
Al
---
This SF.net email is sponsored by: Splunk Inc. Do you grep through log
Am Mittwoch, 1. Februar 2006 20:55 schrieb Al Bogner:
I got this mail today, which was not recognized by 4 virus-scanners:
http://members.inode.at/pinguin/possiblevirus.txt
Can anyone confirm, that this is a virus?
Who wrote this line:
X-VirusBlockAttach: dangerous extention found, code
I
On Wed, Feb 01, 2006 at 08:55:42PM +0100, Al Bogner wrote:
I got this mail today, which was not recognized by 4 virus-scanners:
http://members.inode.at/pinguin/possiblevirus.txt
Can anyone confirm, that this is a virus?
Al
Use these..
http://virusscan.jotti.org/
Am Mittwoch, 1. Februar 2006 21:37 schrieb Henrik Krohns:
On Wed, Feb 01, 2006 at 08:55:42PM +0100, Al Bogner wrote:
I got this mail today, which was not recognized by 4 virus-scanners:
http://members.inode.at/pinguin/possiblevirus.txt
Can anyone confirm, that this is a virus?
Al
Am Mittwoch, 1. Februar 2006 21:37 schrieb Henrik Krohns:
Use these..
http://www.virustotal.com/
I compared now with my versions, and found that my versions were a few updates
newer than those of virustotal, when I scanned the file.
AntiVir / Linux Version 2.1.5-38 +gui
product version:
Am Mittwoch, 1. Februar 2006 22:52 schrieb Les Ault:
On Wed, 2006-02-01 at 20:55 +0100, Al Bogner wrote:
I got this mail today, which was not recognized by 4 virus-scanners:
http://members.inode.at/pinguin/possiblevirus.txt
Can anyone confirm, that this is a virus?
Al
No, it is a
On Wed, 2006-02-01 at 23:39 +0100, Al Bogner wrote:
How did you decode it?
Al
The body of the message is uuencoded in two parts. The first part is
ATT163765.htm and is composed of the 6 lines starting with begin 666
ATT163765.htm to the first end. I copied those lines to a file called
Al Bogner a écrit :
No, it is a bounce message. Decoded message text follows:
To: [EMAIL PROTECTED]
Message delivery failed to the following address
[EMAIL PROTECTED]
Reason: Mailbox [EMAIL PROTECTED] deactivated
How did you decode it?
man uudecode.