> Most hoaxes have a well-known name that could be grep(1)ed,
> is typically sent to many recipients, and is almost always
> forwarded many times.
> Could that be a reasonable extension to a e-mail sanitizer?
> It could kill or quarantine such a message and inform the
> sender it did so (maybe a information to postmaster could
> also serve educating the sender)

No, I would say that it is beyond the scope of the sanitizer.

However, if yhou think it's a good idea for your site, then you can
implement some fairly simple rules to trap such things since you're
already running procmail.

