Page 1 of 1

EFA allowing attachments through

Posted: 19 May 2015 10:59
by bettajames
Hi there - i'm new to EFA, i've set up and am successfully receiving emails though on a test domain. However i've used this website to send some test emails: http://www.emailsecuritycheck.net
It sends a group of potentially suspect emails which should be blocked by a mail filter. EFA is picking up the ones which have a virus signature however others with attachments that i believe should be blocked by default are getting through. The examples it uses are a .exe attachment and a .bat attachment.

The emails are coming through to my email box stating that they have been checked by EFA and are believed to be clean.

Should EFA be stopping these emails or at least removing the attachments?

Thanks
James WIlson

Re: EFA allowing attachments through

Posted: 19 May 2015 20:53
by shawniverson
www.emailsecuritycheck.net has some silly tests. For example...

"attached.()bat"

"()bat" is not a .bat file. It is a ".()bat" file. There's no rule in MailScanner by default to block a ".()bat" file. Besides, it would need to be .bat before it could do any harm.