On Wednesday, September 15, 2004, 1:38:30 AM, Julian Field wrote: > I have checked the archives, can't find anything directly related to this.
> In most phishing scams, the real address of a URL is unrelated to the link > text that appears in the mail client. Is it possible to detect where > <A HREF="foo">bar</A> > and foo and bar are unrelated domains? > Thanks folks. That could be a good idea for a rule. It would be nice if it could be determined canonically, without actually resolving either location. Jeff C. -- Jeff Chan mailto:[EMAIL PROTECTED] http://www.surbl.org/