Detecting Crypto Trojans

Ralf Kirmis rk at wizard.de
Fri Feb 19 09:07:45 CET 2016


Hello List,

does someone have an idea how to block those crypto trojans, which come in as office documents with enabled macros?
The patterns from Virus Scanners are actuelly behind the waves that come in.
Is it possible to detect macros in office documents and treat those mails as viruses or banned attachments?

We don't like the idea to block all office documents, wether macros or not.

regards,
Ralf Kirmis
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.amavis.org/pipermail/amavis-users/attachments/20160219/cb9a2656/attachment.html>


More information about the amavis-users mailing list