I followed the link and ended up downloading a Windows worm to my Linux laptop (Worm:Win32/Cridex.B if you care)
So this isn't spam - it's a malware-run. Totally different rules apply to malware than spam - this sort of thing can only be fought by SA with RBL/SURBLs So the best response here would be to get the links into SURBLs asap, and force users through AV proxies to stop the malware from downloading (hmmm, our AV didn't stop this - owch!) -- Cheers Jason Haar Information Security Manager, Trimble Navigation Ltd. Phone: +1 408 481 8171 PGP Fingerprint: 7A2E 0407 C9A6 CAF6 2B9F 8422 C063 5EBB FE1D 66D1