McNeil
Sent: Monday, August 22, 2011 4:32 PM
To: Message Sniffer Community
Subject: [sniffer] Re: Bad Matrix errors
On 8/22/2011 4:04 PM, Peer-to-Peer (Support) wrote:
Hello SNF,
I think something broke. I'm seeing a lot of "Bad Matrix!" warnings in
my logs.
Hi everyone,
I've been thinking about the potential risk of IPv6 will have on filtering
spam. I suspect RBL's (real time blacklists) may become obsolete once IPv6
arrives.?.
>From what I've learned, IPv6 has 340 undecillion (1 followed by 36 zeros) IP
addresses. And devices can refresh every 24
ailto:snif...@sortmonster.com]on
Behalf Of Peer-to-Peer (Support)
Sent: Monday, May 10, 2010 9:21 AM
To: Message Sniffer Community
Subject: [sniffer] Volume spike Mon 9AM EST
Just checking to see if anyone else is seeing a massive spike in volume.
Something started occurring around 9AM EST. No
Just checking to see if anyone else is seeing a massive spike in volume.
Something started occurring around 9AM EST. Not yet sure what's happening.
Wondering if this is global attack or simply local on our system?
Anyone seeing unusual activity - high volume?
--Paul R.
Community [mailto:snif...@sortmonster.com]on
Behalf Of Pete McNeil
Sent: Monday, March 22, 2010 6:29 PM
To: Message Sniffer Community
Subject: [sniffer] Re: Rulebase updates increased by 25%!!!
On 3/22/2010 4:59 PM, Peer-to-Peer (Support) wrote:
> Pete,
>
> We're only seeing an about 1 upda
r] Re: Rulebase updates increased by 25%!!!
On 3/22/2010 4:59 PM, Peer-to-Peer (Support) wrote:
> Pete,
>
> We're only seeing an about 1 update every hour (or so) as well.
>
I did some checking and sent you an email off list.
It looks like the UTC clock on your server is about
Pete,
We're only seeing an about 1 update every hour (or so) as well.
Using the GetRuleBase.cmd
Just an FYI
--Paul
-Original Message-
From: Message Sniffer Community [mailto:snif...@sortmonster.com]on
Behalf Of Pete McNeil
Sent: Monday, March 22, 2010 4:53 PM
To: Message Sniffer Com
Our updates stopped around 4:45AM EST this morning (Sun 01-17-10)
We see an error 'unable to connect' (using Curl). Continuing to
investigate.
Anyone else experiencing the same?
--Paul
#
This message is sent to you because you ar
Just an FYI: We just saw the following error:
Wed 2009-07-22 14:11:03: SNF MessageScan:
c:\mdaemon\queues\local\md50083761207.msg, Unexpected Exception!
Wed 2009-07-22 14:11:03: SNF Debug: St9bad_alloc
Wed 2009-07-22 14:11:03: SNF MessageScan:
c:\mdaemon\queues\local\md50083761208.msg, Unexpected
We saw the following error for about one hour this morning (6:30AM - 7:20AM
EST). Assume it was a bad update, and once a new update arrived all corrected
itself.
Could this be a local issue, something that we may have been able to prevent, or
something beyond our control.
Sat 2009-07-18 07:10:1
Not the same as you're describing below, but I can confirm we were slammed
with NDR's last night. Classic joe-job (i.e. millions of messages sent out
to unknown users using your return address).
--Paul
-Original Message-
From: Message Sniffer Community [mailto:[EMAIL PROTECTED]
Behalf O
Just following-up: We've been running the upper limit at 100mb for 3 weeks
now and have not seen any further "St9bad_alloc errors". At 150mb we were
seeing the St9bad_alloc error daily.
Regards,
--Paul
-Original Message-
From: Message Sniffer Community [mailto:[EMAIL PROTECTED]
Behalf
H sorry, just before posting my question last night I lowered the upper
limit to 100MB which is why you're now seeing more normal numbers on your
end. Six servers were at 150MB last night and today the numbers are 1/2 of
the size.
Here's an example from server#1 (LAST NIGHT)
Here's an
Would it be correct to say the higher we can increase the size-trigger
'megabytes' value, the better filtering results (accuracy) we will achieve?
In other words, would it be beneficial for us to purchase more memory on our
server (say an additional 2GB), then increase the 'megabytes' value to 400
Hello,
Is there any common cause for the SNF headers to appear in the body of an
email?
We're running MDaemon.
We have a customer using a webform to receive their sales-orders via email.
When the message arrives in the customers mailbox the SNF headers appear at
the top of the message body, and t
(theory):
We're predicating an up-tick in spam over the coming months due to the
(Global) economy which is dramatically slowing. Small businesses are
feeling the pinch and business owners are beginning to panic (as you would
naturally expect). So to make up for lost revenue they will advertise,
All appears to be working correctly here :-)
--PTP
-Original Message-
From: Message Sniffer Community [mailto:[EMAIL PROTECTED]
Behalf Of Pete McNeil
Sent: Saturday, July 12, 2008 4:34 AM
To: Message Sniffer Community
Subject: [sniffer] Upgraded Rulebase Delivery System
Hello Sniffer Fo
Check to be certain your .snf rulebase is in the Mdaemon\SNF folder
--PTP
-Original Message-
From: Message Sniffer Community [mailto:[EMAIL PROTECTED]
Behalf Of David Pearson
Sent: Thursday, April 24, 2008 2:47 PM
To: Message Sniffer Community
Subject: [sniffer] Re: Source distrib
ORDB.org announced today (12/18/06) they will be shutting down (12/31/06).
The folks at AltN.com (MDaemon) sent out announcements to all their
customers and would like to pass this along to anyone who checks that RBL.
The site will disappear in 13 days.
You can visit ordb.org for details.
--Paul
MDaemon 9.5 hidden warning:
If anyone is using the 'Gateway' features in MDaemon and plan to upgrade to
9.5, be aware you will now be required to purchase a user license equal to
the number of Gateways.
9.5 no longer offers unlimited gateways :(
--Paul R.
#
Hi Sven,
My guess is that the plug-in is actually working but just not being logged
when MD is minimized (or Windows logged-off).
Check the MD Log Settings and enable "Always log to screen".
Setup|Logging|Options - Enable "Always log to screen"
--Paul
-Original Message-
From: Message
Hi _M,
Do you mean like reverse PTR records, or HELO lookups, etc..?
--Paul R.
-Original Message-
From: Message Sniffer Community [mailto:[EMAIL PROTECTED]
Behalf Of Pete McNeil
Sent: Tuesday, June 06, 2006 9:26 AM
To: Message Sniffer Community
Subject: [sniffer]A design question - how
Sorry papa _M
Sorry John T
Just want to see sniffer around in the future and got a little excited.
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] Behalf Of Pete McNeil
Sent: Wednesday, December 28, 2005 9:51 PM
To: sniffer@sortmonster.com
Subject: [sniffer] About Res
e are
all here to help one another.
John
T
eServices For
You
-Original
Message-From:
[EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Peer-to-Peer
(Support)Sent:
Wednesday, December 28,
2005 5:41
PMTo: sniffer@SortMonster.comSubject: RE: R
John
T: Did you just solicit the ENTIRE sniffer community with pricing
that will undermine Pete?
Never
bit the hand that feeds you my friend.
-Original Message-From:
[EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]On
Behalf Of John T (Lists)Sent: Wednesday, December 28, 2005
t: Thursday, November 10, 2005 12:36 PM
To: Peer-to-Peer (Support)
Subject: Re[4]: [sniffer]
On Thursday, November 10, 2005, 11:45:48 AM, Peer-to-Peer wrote:
PtPS> _M,
PtPS> <<_M said>> will create a "default" installation that emits headers
and puts
PtPS> a .cf fi
_M,
<<_M said>> will create a "default" installation that emits headers and puts
a .cf file in place for SA to interpret them.
Not sure if this is relevant to your thought process, but we feel that SA
(SpamAssassin) does more harm than good. Under moderate loads it bogs-down
MDaemon so we always
_M i'll try this one,
Jim, you will keep all of your Content Filter rules the same 'except' you
will disable (or delete) the two Sniffer entries 'Run Message Sniffer' & Add
Headers'. Those two functions will be generated from the plug-in.
Also, if you are using the results codes (in the Content
Tip for MDaemon plug-in users.
Sniffers .cfg file has an option 'not' to scan files larger than 'X'. If
this option is set than no sniffer headers will be placed into the message
(if the message is larger than 'X').
Beware, if you use MD's Content Filter to instruct where to send messages
based
Are you using MDaemon?
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] Behalf Of [EMAIL PROTECTED]
Sent: Thursday, September 16, 2004 10:13 AM
To: [EMAIL PROTECTED]
Subject: [sniffer] rules file?
Has anyone else out there all of the sudden on 9/16 having problems wit
30 matches
Mail list logo