Author: Tom Kistner Date: To: patrick-d-1054320284.ecf2f5, exim-users Subject: Re: [Exim] Blocking fake virus generated "bounces" not caught by
Exiscan
Patrick Starrenburg wrote:
> We have a situation with one of the latest viruses where they are sending
> fake "bounces" to our system. We are using Exim 4.20 + Exiscan (ACL mode) to
> block emails with the usual dangerous attachments but with the "bounces", i.e.
> from = <>, Exisan is not scanning and therefore *not* blocking the emails.
It should scan and block them, if everything is set up correctly. The
headers look genuine, and even the host is genuine AOL. Are you sure
there are viruses in there? If yes, can you send me a sample message? I
could then test things here.