[Mimedefang] Some viruses slipping through

amadill at hwy16.com amadill at hwy16.com
Wed Dec 5 02:25:26 EST 2001


The following is the log of a message that contained a virus that 
made it through MIMEDefang.  It's catching 90% but seems to 
have a problem with bounced messages to the postmaster that 
contain nested multipart attachments.

Dec  4 21:37:43 router mimedefang[4899]: Error from multiplexor: 
error: <200112050533.fB55XH104878 at router.aspen.bogus.com>: 
Can't open NEWBODY: No such file or directory
.... a bit later ....
Dec  4 21:38:50 router mimedefang-multiplexor: Reap: Idle slave 2 
(pid 3374) exited normally with status 2 (SLAVE DIED U
NEXPECTEDLY)
Dec  4 21:38:51 router sendmail[4908]: fB55cmK04905: 
to=<amadill at aspen.bogus.com>, delay=00:00:03, 
xdelay=00:00:01, mailer=relay, pri=110872, 
relay=parts.aspen.bogus.com. [192.168.1.1], dsn=2.0.0, stat=Sent 
(VAA22573 Message accepted for delivery)
Dec  4 21:43:19 router mimedefang-multiplexor: Starting slave 2 
(pid 4909) (2 running): Activated on timer tick to bring slaves up to 
minSlaves

Not a big problem 'cause as postmaster I'm used to seeing up to 
20 infected files a day.  It is catching all of the viruses that have 
been sent directly to my own address.



More information about the MIMEDefang mailing list