You are viewing a plain text version of this content. The canonical link for it is here.
Posted to commits@spamassassin.apache.org by jh...@apache.org on 2014/11/03 16:57:31 UTC

svn commit: r1636378 - /spamassassin/trunk/rulesrc/sandbox/jhardin/20_misc_testing.cf

Author: jhardin
Date: Mon Nov  3 15:57:31 2014
New Revision: 1636378

URL: http://svn.apache.org/r1636378
Log:
add testing rule

Modified:
    spamassassin/trunk/rulesrc/sandbox/jhardin/20_misc_testing.cf

Modified: spamassassin/trunk/rulesrc/sandbox/jhardin/20_misc_testing.cf
URL: http://svn.apache.org/viewvc/spamassassin/trunk/rulesrc/sandbox/jhardin/20_misc_testing.cf?rev=1636378&r1=1636377&r2=1636378&view=diff
==============================================================================
--- spamassassin/trunk/rulesrc/sandbox/jhardin/20_misc_testing.cf (original)
+++ spamassassin/trunk/rulesrc/sandbox/jhardin/20_misc_testing.cf Mon Nov  3 15:57:31 2014
@@ -1879,3 +1879,10 @@ meta      SINGLETS_LOW_CONTRAST         
 describe  SINGLETS_LOW_CONTRAST         Single-letter formatted HTML + hidden text
 tflags    SINGLETS_LOW_CONTRAST         publish
 
+# per users list, 10-11 2014
+uri       MALWARE_HACKED_URI            m;/(?:dropbox|googlebox|banking)/(?:doc(?:ument)?|invoice)\.php;i
+describe  MALWARE_HACKED_URI            Malware or phishing hosted-file URI at hacked webserver
+
+
+
+