|
wrabbit -> RE: Flood of "System Administrator" Undeliverable SPAM, please help (4.Apr.2008 4:20:28 AM)
|
quote:
Regarding what wrabbit said about the 2 subjects in the email -- actually the second subject is the one of the embedded email, which, as I said, does not get scanned currently. Hi Alec Thanks for the update. I know it's a side issue to the major one of the NDR spam, but be aware that any e-mail, ie not backscatter, sent with 2 subjects the second subject is not scanned. I can see this being something that spammers will take advantage off in the future as the last subject is the one that Outlook displays. eg Mail from:spammer@spammer.com rcpt to:mypoorusers@helpless.com data Subject: Regarding our meeting next Wednesday Subject: Get your free Rolex watches . The first subject is scanned by GFI, the second isn't - so keyword filtering on the headers will not catch this mail. I realise one of the other checks will probably catch it instead. However if it gets through the user will see Get your free Rolex watches as the subject in Outlook. And I'll get the phone call as to how this obvious spam got through. If someone else could confirm they're seeing the same behaviour.
|
|
|
|