Jump to content

sheberle

Members
  • Posts

    1
  • Joined

  • Last visited

Posts posted by sheberle

  1. Hello Every body

     

    1st, excuse for my bad English.

     

    So i have a problem with Eset mail security alert. I receive every 20-30 minutes this mail from server SBS 2011 : 

     

    10/9/2014 14:48:28 PM - Module Filtre du serveur de mail - Alerte declenchee sur l'ordinateur SERVER :  de : admin@advertise-bz.cn a : [EX:/O=FIRST ORGANIZATION/OU=EXCHANGE ADMINISTRATIVE GROUP (FYDIBOHF23SPDLT)/CN=RECIPIENTS/CN=Info] objet ***BULK*** 2 - M i l l i o n - S i t e s - l i n k i n g - t o - y o u r - A d date 3/19/2012  contient HTML/Refresh.BC cheval de troie.
    10/9/2014 14:48:28 PM - Module Filtre du serveur de mail - Alerte declenchee sur l'ordinateur SERVER :  de : admin@advertise-bz.cn a : [EX:/O=FIRST ORGANIZATION/OU=EXCHANGE ADMINISTRATIVE GROUP (FYDIBOHF23SPDLT)/CN=RECIPIENTS/CN=Info] objet ***BULK*** 2 - M i l l i o n - S i t e s - l i n k i n g - t o - y o u r - A d date 3/7/2012  contient HTML/Refresh.BC cheval de troie.
    10/9/2014 14:48:28 PM - Module Filtre du serveur de mail - Alerte declenchee sur l'ordinateur SERVER :  de : admin@advertise-bz.cn a : [EX:/O=FIRST ORGANIZATION/OU=EXCHANGE ADMINISTRATIVE GROUP (FYDIBOHF23SPDLT)/CN=RECIPIENTS/CN=Info] objet Post your ads where people read them! date 2/21/2012  contient HTML/Refresh.BC cheval de troie.
    10/9/2014 14:48:28 PM - Module Filtre du serveur de mail - Alerte declenchee sur l'ordinateur SERVER :  de : admin@advertise-bz.cn a : [EX:/O=FIRST ORGANIZATION/OU=EXCHANGE ADMINISTRATIVE GROUP (FYDIBOHF23SPDLT)/CN=RECIPIENTS/CN=Info] objet ***BULK*** Advertise on Blogs to build inbound links to your website date 1/23/2012  contient HTML/Refresh.BC cheval de troie
     
    If I check the logs in Eset Mail security I see : 
     
    de : admin@advertise-bz.cn à : [EX:/O=FIRST ORGANIZATION/OU=EXCHANGE ADMINISTRATIVE GROUP (FYDIBOHF23SPDLT)/CN=RECIPIENTS/CN=Info] objet ***BULK*** Advertise on Blogs to build inbound links to your website date 1/23/2012 HTML/Refresh.BC cheval de troie contenait des fichiers infectés
    de : admin@advertise-bz.cn à : [EX:/O=FIRST ORGANIZATION/OU=EXCHANGE ADMINISTRATIVE GROUP (FYDIBOHF23SPDLT)/CN=RECIPIENTS/CN=Info] objet ***BULK*** Advertise on Blogs to build inbound links to your website date 1/23/2012  = MIME = BlogBlaster.htm HTML/Refresh.BC cheval de troie supprimé
     
    It's indicates it's deleted "supprimé" but I receive email every 20-30 minutes, so I don't understand where is the problem.
     
    Can you help me please ?
     
     

     

×
×
  • Create New...