Mailscanner vs Spamassassin settings for changing the message headers

Julian Field mailscanner at ecs.soton.ac.uk
Fri Oct 3 19:31:51 IST 2003


At 19:16 03/10/2003, you wrote:
>penis enlargement? :)))))))))))))))))
>
>
>
>
>So what do you guys think, is it doable?

The use of _SCORE_ in the subject line text is in the next version, but not
the content preview.
What do you think should be in the content preview? I could try to parse
the original content and extract the first 40 or 50 characters. But this
would need to be totally dis-armed text as 40 or 50 bytes is plenty to put
in an exploit or attack. The whole point of the attachment method is that
you can guarantee the initial message you see (which does include the
sanitised subject line) is harmless. Including anything from the original
message has to be done *very* carefully.


>
>Vasiliy Boulytchev
>Colorado Information Technologies, Inc.
>http://www.coinfotech.com
>
>
>-----Original Message-----
>From: MailScanner mailing list [mailto:MAILSCANNER at JISCMAIL.AC.UK]On
>Behalf Of Kevin Spicer
>Sent: Friday, October 03, 2003 12:11 PM
>To: MAILSCANNER at JISCMAIL.AC.UK
>Subject: Re: Mailscanner vs Spamassassin settings for changing the
>message headers
>
>
>
>On Fri, 2003-10-03 at 18:48, Boulytchev, Vasiliy wrote:
>
>
> >*******************************************************************
> >Content preview:  Copy Any DVD to CD, Easy - Fast - Convenient! You
>
>Thats a neat feature, I'd certainly find it useful if anyone implemented
>it.  I keep getting calls from users who are frightened to open the
>attachment (because of the warning in the attachment report), but
>frightened to delete the mail (in case its actually relevent).  e.g. One
>recent case one of our people who deals with requests for quotes etc
>received a Spam entitled 'Urgent Business Proposal' and had to call me
>so I could decide whether it was 'safe' to open (go on, guess what it
>was...)
>
>
>
>
>
>BMRB International
>http://www.bmrb.co.uk
>+44 (0)20 8566 5000
>_________________________________________________________________
>This message (and any attachment) is intended only for the
>recipient and may contain confidential and/or privileged
>material.  If you have received this in error, please contact the
>sender and delete this message immediately.  Disclosure, copying
>or other action taken in respect of this email or in
>reliance on it is prohibited.  BMRB International Limited
>accepts no liability in relation to any personal emails, or
>content of any email which does not directly relate to our
>business.

--
Julian Field
www.MailScanner.info
Professional Support Services at www.MailScanner.biz
MailScanner thanks transtec Computers for their support
PGP footprint: EE81 D763 3DB0 0BFD E1DC  7222 11F6 5947 1415 B654



More information about the MailScanner mailing list