AVG or ClamAV or any other antivirus couldn't delete all these attached
viruses; VirusTotal says.

My mail server checks blacklists & SURBL servers.
Anyway we might receive mails from unlisted IPs like zombie PCs.

In the message with Zip attachment includes javascipt files contains no url
in the body, so SURBL check is useless.
The Spamassassin score of these messages may vary, from 0.8 to 2.6.

Here is one of the latest message: http://pastebin.com/94njV9fF

I've installed fresh new SpamAssassin for Windows v3.4.1 and trained for a
week
and cut many of the spam messages we receive. Except these zipped js
attachments.

My local.cf is: http://pastebin.com/VG3fhFBg

My commandline is:  spamd.exe -A 127.0.0.1,192.168.35.0/24 -i
--max-spare=16







On Mon, May 23, 2016 at 11:05 AM, Paul Stead <paul.st...@zeninternet.co.uk>
wrote:

>
> On 22/05/16 02:10, @lbutlr wrote:
>
>
> Sure, there are 4 foxhole ones, but there are dozens on the main page
> there.
>
> The following code allows for easy config and download of the signatures
> you want.
>
> https://github.com/extremeshok/clamav-unofficial-sigs
>
> By default this will download and test the low risk signatures - do take
> some time to read through the different rule types though.
>
> Paul
>
> --
> *Paul Stead*
> Systems Engineer
> *Zen Internet*
>

Reply via email to