Re: [Exim] Blocking fake virus generated "bounces" not caugh…

Top Page
Delete this message
Reply to this message
Author: Tom Kistner
Date:  
To: patrick-d-1054320284.ecf2f5, exim-users
Subject: Re: [Exim] Blocking fake virus generated "bounces" not caught by Exiscan
Patrick Starrenburg wrote:

> We have a situation with one of the latest viruses where they are sending
> fake "bounces" to our system. We are using Exim 4.20 + Exiscan (ACL mode) to
> block emails with the usual dangerous attachments but with the "bounces", i.e.
> from = <>, Exisan is not scanning and therefore *not* blocking the emails.


It should scan and block them, if everything is set up correctly. The
headers look genuine, and even the host is genuine AOL. Are you sure
there are viruses in there? If yes, can you send me a sample message? I
could then test things here.

regards,

/tom