On Tuesday 26 March 2002 10:06 am, Michael Moncur wrote: > I just received an <iframe> message and noticed something - the new > RELAYING_FRAME rule catches it, but it's still not enough to mark this > message as spam: > > <HTML><HEAD></HEAD><BODY> > iframe src=cid:A6ed42Wd7M65W7171 height=0 width=0> > /iframe> > <FONT></FONT></BODY></HTML>
Almost certainly a virus. "src=cid:whatever" references an attachment in the same message. Since an <iframe> creates a single frame, if this wasn't a virus, it would just be like putting the attachment into the main part of the message; in other words, identical to doing things the normal way. -- Visit http://dmoz.org, the world's | Give a man a match, and he'll be warm largest human edited web directory. | for a minute, but set him on fire, and | he'll be warm for the rest of his life. [EMAIL PROTECTED] ICQ: 132152059 | _______________________________________________ Spamassassin-talk mailing list [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/spamassassin-talk