+ Responder ao Tópico



  1. #1
    marcosgw
    Visitante

    Padrão Spam no postfix

    Ai Galera,

    Estou com um problemão no meu postfix.
    Não paro de receber Spam com o seguinte assunto: Re [13]:

    Esse daqui é o meu "header_checks"

    O que mais devo acrescentar ? Estou com medo de sem querer bloquear todo o e-mail que tenha como resposta o assunto "Re".


    #/^Subject:.*(v.rus(es)? +alert)|(alerta +de +v.rus)/ REJECT
    #/^Subject:.*(((returned|retornado)|blo(cked|queado)) +d(evido|ue) +(a|to)? +v.rus)/ REJECT
    #/^Subject:.*(detectado|detected) +v.rus(es)?/ REJECT
    #/^Subject: VIRUS \(.*\) FROM <.*>/ REJECT

    /^Message-ID: <[a-z]{19}@/i DISCARD Bagle Virus

    /.*(command.com|tableforsix)/ DISCARD

    /^(to|cc):.*(friend\@public\.com|cdj-news-list|futuro\.usp\.br|hhrpuffnstuff)/ REJECT

    /^from:.*(Prima +[0-9]|Brasilsite\.net|O mais vendido|listh|ClicEmpresas|bigbrotherbrasil|jeanchristian|calculo|spnegocios|nao\.perca\.esta|mma.e-wideweb|Global Speedy|juridico.\administrador\.mailbr|dry-up|sea-river-news|File +Recovery|Hahaha|Link +Quality|Altbox|DIVULGA|Larius +do +Brasil|Tar +Gard|American +Explorer|FastTraining|Tecnomidia|Tiegui|dinheiro|responda|nao.?responda|gama\@bhlink|douglaslascasas|megabolao|Hyperhosting|grupovrm|YOJIMBO|mag-luiza|MEPPS|big\@boss\.com|workmcv|vejaabaixo|Manualrep|Caminho de Santiago|O Mestre|Baixaki|Detekta|CD Emails|eunaoquero.com.br|www\.carros)/ REJECT

    /^Received:.*(from chat\.ru|Ibratele\.com\.br|devassa\.net|tsimonton|MOTOPRESSMASTER)/ REJECT

    /^X-SMTPExp-Version:/ REJECT

    #/^X-EM-Version:/ REJECT

    /^X-(Advertisement|\d|UltraMail|Bulkmail):/ REJECT

    # Programas específicos para fazer SPAM:
    /^(Received|Message-Id|X-(Mailer|Sender)):.*(AutoMail|E-Broadcaster|Emailer Platinum|eMarksman|Extractor|MBM v2.7-US|e-Merge|stqealth|Global Messenger|GroupMaster|Mailcast|MailKing|Match10|MassE-Mail|massmail\.pl|News Breaker|Powermailer|Quick Shot|Ready Aim Fire|WindoZ|WorldMerge|Yourdora|Aristotle|Avalanche|Blaster|Bomber|DejaVu|eMerge|Extractor|UltraMail|Sonic$|Floodgate|GeoList|Mach10|MegaPro|Aureate|MultiMailer|Bluecom|Achi-Kochi Mail|Direct Email|Andrew's SuperCool Blastoise|MailerGear|Advanced Mass Sender|WC Mail|Email Sender|MailXCollector|from.*TmpStr|Mindcast.*Mailer.*Pro|from nao-importa|from.EmailProspector|xxxxxxxxxxxxxxxx*|ECONOSHOP|robytel\.com\.br|rod\@bol\.com\.br|ciamarketing|-o-o-)/ REJECT

    /^X-Server: Advanced Direct Remailer/ REJECT

    /^X-AD2000-(Serial|Register):/ REJECT

    /^X-Unsent: 1/ REJECT

    /^Reply-To:.*(listarock\@grupos.com.br|gutivat\@osabakret.com)/ REJECT

    /^Subject:.*(Br Divulga..o|MEPPS|MEEPS|RENDA +EXTRA|Ganh.* dinheiro|.None|Baixaki|Escola_do_Futuro|Testador de Cabos|([A-Za-z]+{3,})/ REJECT

    /^Sender:.*APLICATIVO DE SEGURANÇA/ REJECT

    /name=[^>]*\.(ade|adp|bas|bat|chm|cmd|com|cpl|crt|exe|hlp|hta|inf|ins|isp|js|jse|lnk|mdb|mde|msc|msi|msp|mst|pcd|pif|reg|scr|sct|shs|url|vb|vbe|vbs|wsc|wsf|wsh)[\'\"]/
    REJECT ACL mime_banned_file

  2. #2
    karfax
    Visitante

    Padrão Spam no postfix

    Tente:

    unknown_local_recipient_reject_code = 550
    relay_domains = $mydestination
    maps_rbl_domains = blackholes.mail-abuse.org relays.mail-abuse.org bl.spamcop.net relays.ordb.org or.orbl.org
    smtpd_recipient_restrictions =
    permit_mynetworks,
    reject_unauth_destination,
    reject_rbl_client relays.ordb.org,
    reject_rbl_client bl.spamcop.net,
    reject_rbl_client sbl.spamhaus.org


    Sds,