anomy-list

Another newbie HTML problem.. MSWORD commands with no content?

From: Peter Mueller (110007@xyz.molar.is)
Date: Mon 19 Jan 2004 - 19:15:47 GMT

  • Next message: Robinson, Eric: "RE: Newbie HTML/DEFANG question -- how do I stop images from being DE FANGED?"

    Hello list!

    A few users are sporadically complaining about 'junk' in their mails.
    Example attached below. It looks like a bunch of word tags with no content.

    <anomy.conf>
    # Example configuration file for Anomy Sanitizer
    #
    # From http://advosys.ca/papers/postfix-filtering.html
    # Advosys Consulting Inc., Ottawa
    #
    # Works with Anomy Sanitizer revision 1.53

    # Do not log to STDERR:
    feat_log_stderr = 0

    # Don't insert log in the message itself:
    feat_log_inline = 0

    # Advertisement to insert in each mail header:
    header_info = X-Sanitizer: SideStep mail filter
    header_url = 0
    header_rev = 0

    # Enable filename based policy decisions:
    feat_files = 1

    # Protect against buffer overflows and null values:
    feat_lengths = 1

    # Replace MIME boundaries with our own:
    feat_boundaries = 1

    # Fix invalid and ambiguous MIME boundaries, if possible:
    feat_fixmime = 1

    # Trust signed and/or encrypted messages:
    feat_trust_pgp = 1
    msg_pgp_warning = WARNING: Unsanitized content follows.\n

    # Defang shell scripts:
    feat_scripts = 0

    # Defang active HTML:
    feat_html = 1

    # Defang UUEncoded files:
    feat_uuencoded = 1

    # Disable message/partial MIME types:
    feat_no_partial = 1

    # Sanitize forwarded content too:
    feat_forwards = 1

    # Testing? Set to 1 for testing, 0 for production:
    feat_testing = 0

    # # Warn user about unscanned parts, etc.
    feat_verbose = 1

    # Force all parts (except text/html parts) to
    # have file names.
    feat_force_name = 1

    # Disable web bugs:
    feat_webbugs = 0

    # Disable "score" based mail discarding:
    score_panic = 0
    score_bad = 0

    msg_file_drop = \n*****\n
    msg_file_drop += NOTE: An attachment named %FILENAME was deleted from
    msg_file_drop += this message because it contained a windows executable
    msg_file_drop += or other potentially dangerous file type.\n
    msg_file_drop += Contact the system administrator for more information.

    ##
    ## File attachment name mangling rules:
    ##

    # Specify the Anomy temp file and quarantine directory
    file_name_tpl = /var/spool/filter/att-$F-$T.$$

    # Number of rulesets we are defining:
    file_list_rules = 2
    file_default_policy = defang

    # Delete executable, script and unscannable attachments:
    file_list_1 = (?i)(winmail\.dat
    file_list_1 += |\.([23]86|vb[se]|jse|cpl|crt|chm|cpl|in[fsi]
    file_list_1 += |isp|dll|drv|cmd|sc[rt]|sys|bat|pif|lnk|hlp
    file_list_1 += |ms[cip]|reg|asd|sh[bs]|app|ocx|ht[ta]|mht
    file_list_1 += |url|exe|ws[cfh]|ops|com|prx))\s*
    file_list_1_policy = drop
    file_list_1_scanner = 0

    # Allow known "safe" file types and those that will be
    # scanned by the user's desktop virus scanner:
    file_list_2 = (?i)\.
    # Word processor and document formats:
    file_list_2 += (doc|dot|txt|rtf|pdf|sxw|e?ps|htm|[sp]?html?
    # Spreadsheets:
    file_list_2 += |xls|xlw|xlt|csv|sxc|wk[1-4]
    # Presentation applications:
    file_list_2 += |ppt|pps|pot|sxi
    # Bitmap graphic files:
    file_list_2 += |jpe?g|gif|png|tiff?|bmp|psd|pcx
    # Vector graphics and diagramming:
    file_list_2 += |vsd|drw|cdr|swf
    # Multimedia:
    file_list_2 += |mp3|avi|mpe?g|mov|qtw|ram?|ogg
    # Archives:
    file_list_2 += |zip|g?z|rar|tgz|bz2|tar
    # Outlook Calender appointments
    file_list_2 += |ics
    # Source code:
    file_list_2 += |[ch](pp|\+\+)?|s|inc|asm|patch|java|php\d?|jsp|bas)
    file_list_2_policy = accept
    file_list_2_scanner = 0

    # Any file type not listed above gets renamed to prevent
    # ms outlook from auto-executing it.

    <junk>
    @font-face { font-family: Verdana; } @font-face { font-family: Tahoma; }
    @page Section1 {size: 8.5in 11.0in; margin: 1.0in 1.25in 1.0in 1.25in; }
    P.MsoNormal { FONT-SIZE: 12pt; MARGIN: 0in 0in 0pt; FONT-FAMILY: "Times New
    Roman" } LI.MsoNormal { FONT-SIZE: 12pt; MARGIN: 0in 0in 0pt; FONT-FAMILY:
    "Times New Roman" } DIV.MsoNormal { FONT-SIZE: 12pt; MARGIN: 0in 0in 0pt;
    FONT-FAMILY: "Times New Roman" } H1 { FONT-WEIGHT: bold; FONT-SIZE: 16pt;
    MARGIN: 12pt 0in 3pt; FONT-FAMILY: Arial } H2 { FONT-WEIGHT: bold;
    FONT-SIZE: 11pt; MARGIN: 0in 0in 12pt; LINE-HEIGHT: 12pt; FONT-FAMILY:
    Verdana; LETTER-SPACING: -0.75pt } P.MsoTitle { BORDER-RIGHT: medium none;
    PADDING-RIGHT: 0in; BORDER-TOP: medium none; PADDING-LEFT: 0in; FONT-WEIGHT:
    bold; FONT-SIZE: 18pt; PADDING-BOTTOM: 0in; MARGIN: 11pt 0in 3pt;
    BORDER-LEFT: medium none; PADDING-TOP: 0in; BORDER-BOTTOM: medium none;
    FONT-FAMILY: Verdana; LETTER-SPACING: -1.5pt } LI.MsoTitle { BORDER-RIGHT:
    medium none; PADDING-RIGHT: 0in; BORDER-TOP: medium none; PADDING-LEFT: 0in;
    FONT-WEIGHT: bold; FONT-SIZE: 18pt; PADDING-BOTTOM: 0in; MARGIN: 11pt 0in
    3pt; BORDER-LEFT: medium none; PADDING-TOP: 0in; BORDER-BOTTOM: medium none;
    FONT-FAMILY: Verdana; LETTER-SPACING: -1.5pt } DIV.MsoTitle { BORDER-RIGHT:
    medium none; PADDING-RIGHT: 0in; BORDER-TOP: medium none; PADDING-LEFT: 0in;
    FONT-WEIGHT: bold; FONT-SIZE: 18pt; PADDING-BOTTOM: 0in; MARGIN: 11pt 0in
    3pt; BORDER-LEFT: medium none; PADDING-TOP: 0in; BORDER-BOTTOM: medium none;
    FONT-FAMILY: Verdana; LETTER-SPACING: -1.5pt } P.MsoBodyText { FONT-SIZE:
    12pt; MARGIN: 0in 0in 6pt; FONT-FAMILY: "Times New Roman" } LI.MsoBodyText {
    FONT-SIZE: 12pt; MARGIN: 0in 0in 6pt; FONT-FAMILY: "Times New Roman" }
    DIV.MsoBodyText { FONT-SIZE: 12pt; MARGIN: 0in 0in 6pt; FONT-FAMILY: "Times
    New Roman" } P.MsoSubtitle { FONT-SIZE: 12pt; MARGIN: 0in 0in 3pt;
    FONT-FAMILY: Arial; TEXT-ALIGN: center } LI.MsoSubtitle { FONT-SIZE: 12pt;
    MARGIN: 0in 0in 3pt; FONT-FAMILY: Arial; TEXT-ALIGN: center }
    DIV.MsoSubtitle { FONT-SIZE: 12pt; MARGIN: 0in 0in 3pt; FONT-FAMILY: Arial;
    TEXT-ALIGN: center } A:link { COLOR: blue; TEXT-DECORATION: underline }
    SPAN.MsoHyperlink { COLOR: blue; TEXT-DECORATION: underline } A:visited {
    COLOR: purple; TEXT-DECORATION: underline } SPAN.MsoHyperlinkFollowed {
    COLOR: purple; TEXT-DECORATION: underline } P { FONT-SIZE: 12pt;
    MARGIN-LEFT: 0in; MARGIN-RIGHT: 0in; FONT-FAMILY: "Times New Roman" }
    P.MattTitle { BORDER-RIGHT: medium none; PADDING-RIGHT: 0in; BORDER-TOP:
    medium none; PADDING-LEFT: 0in; FONT-WEIGHT: bold; FONT-SIZE: 18pt;
    PADDING-BOTTOM: 0in; MARGIN: 11pt 0in 3pt; BORDER-LEFT: medium none;
    PADDING-TOP: 0in; BORDER-BOTTOM: medium none; FONT-FAMILY: Verdana;
    LETTER-SPACING: -1.5pt } LI.MattTitle { BORDER-RIGHT: medium none;
    PADDING-RIGHT: 0in; BORDER-TOP: medium none; PADDING-LEFT: 0in; FONT-WEIGHT:
    bold; FONT-SIZE: 18pt; PADDING-BOTTOM: 0in; MARGIN: 11pt 0in 3pt;
    BORDER-LEFT: medium none; PADDING-TOP: 0in; BORDER-BOTTOM: medium none;
    FONT-FAMILY: Verdana; LETTER-SPACING: -1.5pt } DIV.MattTitle { BORDER-RIGHT:
    medium none; PADDING-RIGHT: 0in; BORDER-TOP: medium none; PADDING-LEFT: 0in;
    FONT-WEIGHT: bold; FONT-SIZE: 18pt; PADDING-BOTTOM: 0in; MARGIN: 11pt 0in
    3pt; BORDER-LEFT: medium none; PADDING-TOP: 0in; BORDER-BOTTOM: medium none;
    FONT-FAMILY: Verdana; LETTER-SPACING: -1.5pt } P.MattHeading { BORDER-RIGHT:
    medium none; PADDING-RIGHT: 0in; BORDER-TOP: medium none; PADDING-LEFT: 0in;
    FONT-WEIGHT: bold; FONT-SIZE: 12pt; BACKGROUND: black; PADDING-BOTTOM: 0in;
    MARGIN: 0in 0in 12pt 6pt; BORDER-LEFT: medium none; COLOR: white;
    LINE-HEIGHT: 12pt; PADDING-TOP: 0in; BORDER-BOTTOM: medium none;
    FONT-FAMILY: Verdana; LETTER-SPACING: -0.5pt; TEXT-ALIGN: justify }
    LI.MattHeading { BORDER-RIGHT: medium none; PADDING-RIGHT: 0in; BORDER-TOP:
    medium none; PADDING-LEFT: 0in; FONT-WEIGHT: bold; FONT-SIZE: 12pt;
    BACKGROUND: black; PADDING-BOTTOM: 0in; MARGIN: 0in 0in 12pt 6pt;
    BORDER-LEFT: medium none; COLOR: white; LINE-HEIGHT: 12pt; PADDING-TOP: 0in;
    BORDER-BOTTOM: medium none; FONT-FAMILY: Verdana; LETTER-SPACING: -0.5pt;
    TEXT-ALIGN: justify } DIV.MattHeading { BORDER-RIGHT: medium none;
    PADDING-RIGHT: 0in; BORDER-TOP: medium none; PADDING-LEFT: 0in; FONT-WEIGHT:
    bold; FONT-SIZE: 12pt; BACKGROUND: black; PADDING-BOTTOM: 0in; MARGIN: 0in
    0in 12pt 6pt; BORDER-LEFT: medium none; COLOR: white; LINE-HEIGHT: 12pt;
    PADDING-TOP: 0in; BORDER-BOTTOM: medium none; FONT-FAMILY: Verdana;
    LETTER-SPACING: -0.5pt; TEXT-ALIGN: justify } SPAN.EmailStyle24 { COLOR:
    navy; FONT-FAMILY: Arial } DIV.Section1 { page: Section1 }

    ---
    

    Checked by AVG anti-virus system (http://www.grisoft.com). Version: 6.0.563 / Virus Database: 355 - Release Date: 1/17/2004



    hosted by molar.is