Good news ! Even though I don't know why, my combination of MailFilter ( http://members.chello.at/goesta.smekal/code/ ) and Sophos ( http://www.sophos.com ) got one yesterday.
Following the long thread on securityfocus's list I can hardly imagine how, but it seems to work. .... finally found the clue: Sophos detects all encrypted versions of Bagle as 'Win32/Bagle.zip' ... don't ask me how they do it, but your favourite AV vendor will certainly do the same soon. Goesta On Thu, Mar 04, 2004 at 09:13:00AM +0100, Roman Dusek wrote: > Hi all, > > has anyone any XMail antivirus filter that is able to catch W32/[EMAIL PROTECTED] > virus (spreading since yesterday)? As virus .exe file is inside > password-protected zip, my f-prot for dos isn't able to detect it. > > Roman > > - > To unsubscribe from this list: send the line "unsubscribe xmail" in > the body of a message to [EMAIL PROTECTED] > For general help: send the line "help" in the body of a message to > [EMAIL PROTECTED] -- Wiener Hilfswerk - EDV 1072 Wien, Schottenfeldgasse 29 Tel: 512 36 61 DW 407 / Fax 512 36 61 33 - To unsubscribe from this list: send the line "unsubscribe xmail" in the body of a message to [EMAIL PROTECTED] For general help: send the line "help" in the body of a message to [EMAIL PROTECTED]
