:0
* ^From:(_dot_)*(_at_)sexyfun\(_dot_)net
/dev/null
Of course some would recommend not throwing it away, but putting it in
a sep. mailbox
:0:
* ^From:(_dot_)*(_at_)sexyfun\(_dot_)net
virus
Personally, I think it's preferable to take all sorts of different
possible virus bearing files and stick them in a sep. mailbox on my
Unix server.... I got these recipes off the list just awhile ago
# First, check to see in the entire message is the virus/worm/etc
:0w:
* ^Content-[-a-z0-9_]+:.*=[ ]*"?[^"]*\.(vb[se]|ws[fhe]
|hta|shs|exe|pif|dll|scr)
virus
# If the message is multipart, check the body
:0w:
* ^Content-Type:.*multipart
* B ?? ^Content-[-a-z0-9_]+:.*($[ ].*)*=[ ]*($[ ]+)*"?\
[^"]*\.(vb[se]|ws[fhe]|hta|shs|exe|pif|dll|scr)
virus
_______________________________________________
procmail mailing list
procmail(_at_)lists(_dot_)RWTH-Aachen(_dot_)DE
http://MailMan.RWTH-Aachen.DE/mailman/listinfo/procmail