Jonathan Angliss <[EMAIL PROTECTED]> wrote on 22.08.2003, 05:34:32:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> On Thursday, August 21, 2003, Nick OHare wrote...
> 
> > Hi All,
> 
> > Just today got over 10 megs of the lastest and greatest.
> 
> > I tried to set up a filter to delete the following message
> > from the server directly:
> 
> > Under strings I have "^Your details$" with location "Subject"
> > Presence is set to "Yes"
> > I have regular expressions turned on under "Options"
> > I have "Delete the message from server" turned on under "Actions"
> > The rule is set to "Active"
> 
> Are you setting this up as a "selective download" filter? Or just a
> general filter? As a note, there are a whole bunch of other subjects
> too.
> 
> http://www.sophos.com/virusinfo/analyses/w32sobigf.html
> 
> There is a little more info.
> 
> You might be able to cheat, add the subjects to a text file, create a
> new filter in the "Selective Download" section, and under the advanced
> tab choose the "load from file" option. Then make sure kill is
> selected.

May be easier to scan for
 X-MailScanner: Found to be clean 
 
Which the virus puts into every email it sends.

Thanks

Michael.

________________________________________________
Current version is 1.62r | "Using TBUDL" information:
http://www.silverstones.com/thebat/TBUDLInfo.html

Reply via email to