From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Sharyn
SchmidtSent: Tuesday, April 04, 2006 9:01 AMTo:
Declude.Virus@declude.comSubject: [Declude.Virus] Possible
virus?
Anyone seen or heard of a virus that is sending out
random power point attachments?
One of
Title: Possible virus?
Anyone seen or heard of a virus that is sending out random power point attachments?
One of the attachments is called House_of_Golf.pps
Thanks,
Sharyn
: Declude.Virus@declude.com
Subject: [Declude.Virus] Possible
BANnotify.EML problem with Declude 1.82
Just ran across a possible problem with the BANnotify.EML in
Declude Virus 1.82. If a SKIPIFFORGING line is in it, it doesn't send the
notification.
Is this an inappropriate setting? i.
Just ran across a possible problem with the
BANnotify.EML in Declude Virus 1.82. If a SKIPIFFORGING line is in it, it
doesn't send the notification.
Is this an inappropriate setting? i.e. If virus checking is done
first then SKIPIFFORGING would not apply.Darin.
: [Declude.Virus] Possible new virus
We're seeing a lot of emails with pword_change.zip
attached. May want to block it in your virus.cfg.
Subject is "Your new Password" All so
far were routed through gmx.net or web.de just before delivery, but are
originating from a variety of dial-
integration, MRTG Integration, and Log
Parsers.
- Original Message -
From: Darin Cox
To: Declude.Virus@declude.com
Sent: Wednesday,
October 05, 2005 10:33 PM
Subject: [Declude.Virus]
Possible new virus
We're seeing a lot of emails
@declude.com
Sent: Wednesday, October 05, 2005 10:46
PM
Subject: Re: [Declude.Virus] Possible new
virus
Alot got through today with that one, but its
being caught by F-Prot now.
10/05/2005 22:06:18 Q86937B8E01F27E50 MIME file:
pword_change.zip [base64; Length=113709 Checksum
My first hit was right around that time as
well. That's a quick catch by FProt.
Darin.
- Original Message -
From: Darrell
([EMAIL PROTECTED])
To: Declude.Virus@declude.com
Sent: Wednesday, October 05, 2005 10:46 PM
Subject: Re: [Declude.Virus] Possible new virus
Alo
This is scary. I verified the same pattern of the messages all being
relayed through one of those two servers. The headers of the messages
also show randomization in both the types of headers as well as the
basic construct of things like message boundaries. This is very
spammy, and it is a c
.
- Original Message -
From:
Darin Cox
To: Declude.Virus@declude.com
Sent: Wednesday, October 05, 2005 10:33
PM
Subject: [Declude.Virus] Possible new
virus
We're seeing a lot of emails with
pword_change.zip attached. May want to block it in your
viru
We're seeing a lot of emails with pword_change.zip
attached. May want to block it in your virus.cfg.
Subject is "Your new Password" All so
far were routed through gmx.net or web.de just before delivery, but are
originating from a variety of dial-up or broadband ISP
accounts.
Darin.
I had some today that fit this description.
Mcafee found them as: the W32/[EMAIL PROTECTED]
- Original Message -
From: "John Tolmachoff (Lists)" <[EMAIL PROTECTED]>
To:
Sent: Thursday, April 14, 2005 4:19 PM
Subject: [Declude.Virus] Possible new virus?
I have seen in
I have seen in the last hour 4 e-mails blocked for [RAR-EXE] and each one
had a blank subject line.
Each one also had the recipients user part of the e-mail address as the
sender's user part of the e-mail address.
John T
eServices For You
---
This E-mail came from the Declude.Virus mailing lis
E-Mail: [EMAIL PROTECTED]
From:
[EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Sharyn Schmidt
Sent: Friday, March 18, 2005 8:39
AM
To: Declude.JunkMail@declude.com
Cc: Declude.Virus@declude.com
Subject: [Declude.Virus] Possible
official host name change
Declude
Title: Possible official host name change
Declude folks…
If I change the official host name on my mailserver, I am going to need a new activation key for junkmail and virus (I'm assuming).
How do I go about getting this?
Thanks,
Sharyn
I am seeing e-mail being caught with the Space Gap vulnerability.
A user requested the file and upon investigating, it includes a scr or pif
file.
Declude Virus log is showing a jpg or gif image.
The first line of the body is a link to the ad site yimg.com to gif or jpg
images on that site.
Th
I just received two e-mails from Symantec which appear in every right to be
legit.
However, it contained 13 gif files and a zip file.
Any one else seeing this?
I did send one to virustrap.
This is very odd. The E-mail definitely did come from Symantec. It did
not, however, contain a virus. The
I just received two e-mails from Symantec which appear in every right to be
legit.
However, it contained 13 gif files and a zip file.
Any one else seeing this?
I did send one to virustrap.
John Tolmachoff
Engineer/Consultant/Owner
eServices For You
---
[This E-mail was scanned for viruses by
Can I put it in for a future request
It's already there. :)
-Scott
---
Declude JunkMail: The advanced anti-spam solution for IMail mailservers
since 2000.
Declude Virus: Ultra reliable virus detection and the leader in mailserver
vulnerabi
>
To: <[EMAIL PROTECTED]>
Sent: Wednesday, April 14, 2004 11:15 AM
Subject: Re: [Declude.Virus] Possible?
>
> >I've been looking through the "per user" settings for declude virus. Is
it
> >possible to have a default config file with a footer and selected user
I've been looking through the "per user" settings for declude virus. Is it
possible to have a default config file with a footer and selected users
not have the footer? We still want them to scan for viruses, just not have
a footer.
That is not currently possible. The per-user settings only all
I've been looking through the "per user" settings for declude
virus. Is it possible to have a default config file with a footer and selected
users not have the footer? We still want them to scan for viruses, just not have
a footer.
>Would there be someway I could get a report on how many viruses were caught
>(incoming and outgoing) on a per domain basis and possibly on a per user
>basis? Similar to the Imail log files that tell me how many e-mails a
>domain and user sends and receives in a day.
>
>The log files only repor
Scott, as the Imail system administrator for over 80 domains we host for our
customers, I'm looking for some additional reporting tools.
Would there be someway I could get a report on how many viruses were caught
(incoming and outgoing) on a per domain basis and possibly on a per user
basis? Si
24 matches
Mail list logo