[Esa-l] *.exe has been added to the recommended poison list

John Hardin jhardin at impsec.org
Tue May 7 11:57:01 PDT 2002


Okay, this tears it:

    http://news.com.com/2100-1001-900050.html

Due to the fact that Klez is being parasitized by other viruses, and
that so many worms now use randomly-named .EXE file attachments, I have
added *.EXE to the recommended default poison list file. This is in
keeping with my default-secure (some may say "default-paranoid") stance
for the sanitizer as a whole.

If you wish to continue using the recommended poison list without *.EXE,
you will have to script removing that filespec as part of your download
process.

This change is effective immediately.

--
 John Hardin KA7OHZ    ICQ#15735746    http://www.impsec.org/~jhardin/
 jhardin at impsec.org                        pgpk -a jhardin at impsec.org
  768: 0x41EA94F5 - A3 0C 5B C2 EF 0D 2C E5  E9 BF C8 33 A7 A9 CE 76
 1024: 0xB8732E79 - 2D8C 34F4 6411 F507 136C  AF76 D822 E6E6 B873 2E79
-----------------------------------------------------------------------
 "To disable the Internet to save EMI and Disney is the moral
  equivalent of burning down the library of Alexandria to ensure the
  livelihood of monastic scribes."
                                    -- John Ippolito of the Guggenheim
-----------------------------------------------------------------------
   910 days until the Presidential Election

[demime 0.98e removed an attachment of type application/pgp-signature which had a name of signature.asc]



More information about the esa-l mailing list