<?xml version="1.0" encoding="utf-8" ?>
<?xml-stylesheet type="text/xsl" href="RSS_xslt_style.asp" version="1.0" ?>
<rss version="2.0" xmlns:WebWizForums="http://syndication.webwiz.co.uk/rss_namespace/">
 <channel>
  <title>Spam Filter ISP Forums : DB Quarantine beta 282 problem ?</title>
  <link>https://www.logsat.com/spamfilter/forums/</link>
  <description><![CDATA[This is an XML content feed of; Spam Filter ISP Forums : Spam Filter ISP Support : DB Quarantine beta 282 problem ?]]></description>
  <pubDate>Sun, 12 Jul 2026 11:21:12 +0000</pubDate>
  <lastBuildDate>Mon, 09 Feb 2004 00:35:00 +0000</lastBuildDate>
  <docs>http://blogs.law.harvard.edu/tech/rss</docs>
  <generator>Web Wiz Forums 11.04</generator>
  <ttl>360</ttl>
  <WebWizForums:feedURL>https://www.logsat.com/spamfilter/forums/RSS_post_feed.asp?TID=2864</WebWizForums:feedURL>
  <image>
   <title><![CDATA[Spam Filter ISP Forums]]></title>
   <url>https://www.logsat.com/spamfilter/forums/forum_images/web_wiz_forums.png</url>
   <link>https://www.logsat.com/spamfilter/forums/</link>
  </image>
  <item>
   <title><![CDATA[DB Quarantine beta 282 problem ? : Hey GREAT Idea. Glad someone is...]]></title>
   <link>https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2896&amp;title=db-quarantine-beta-282-problem#2896</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://www.logsat.com/spamfilter/forums/member_profile.asp?PF=11">kspare</a><br /><strong>Subject:</strong> 2864<br /><strong>Posted:</strong> 09 February 2004 at 12:35am<br /><br /><P>Hey GREAT Idea. Glad someone is using their noodle until Roberto gets a chance to update the software! I ran with your idea and created this script.</P><P>It's alot easier to follow, you can copy and paste each line and it will remove by keyword or subject line.</P><P>update tblquarantine set expire=1 where RejectDetails = 'found keywords: &#091;found prohibited attachment&#093;'<BR>update tblquarantine set expire=1 where RejectDetails = 'found keywords: &#091;(Subject:\x20(hi|Hi|HI|hello|Hello|HELLO|error|Error|ERROR|test|Test|TEST))&#093;'<BR>update tblquarantine set expire=1 where RejectDetails = 'found keywords: &#091;(subject:\x20(test$|hi|hello$|error$))&#093;'<BR>update tblquarantine set expire=1 where RejectDetails = 'found keywords: &#091;(Subject:(hi$|hello$|test$|error$))&#093;'<BR>update tblquarantine set expire=1 where RejectDetails = 'found keywords: &#091;Here is my photo, that you asked for yesterday.&#093;'<BR>update tblquarantine set expire=1 where RejectDetails = 'found keywords: &#091;Important information for you. Read it immediately !&#093;'<BR>update tblquarantine set expire=1 where RejectDetails = 'found keywords: &#091;The message cannot be represented in 7-bit ASCII encoding and has been sent as a binary attachment.&#093;'<BR>update tblquarantine set expire=1 where RejectDetails = 'found keywords: &#091;The message contains Unicode characters and has been sent as a binary attachment.&#093;'<BR>update tblquarantine set expire=1 where RejectDetails = 'found keywords: &#091;Mail transaction failed. Partial message is available.&#093;'<BR>update tblquarantine set expire=1 where Subject = 'hi'<BR>update tblquarantine set expire=1 where Subject = ''<BR>update tblquarantine set expire=1 where RejectDetails = 'found keywords: &#091;mydoom&#093;'<BR>update tblquarantine set expire=1 where RejectDetails = 'found keywords: &#091;Novarg&#093;'</P>]]>
   </description>
   <pubDate>Mon, 09 Feb 2004 00:35:00 +0000</pubDate>
   <guid isPermaLink="true">https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2896&amp;title=db-quarantine-beta-282-problem#2896</guid>
  </item> 
  <item>
   <title><![CDATA[DB Quarantine beta 282 problem ? : Indeed good call George. We confirm...]]></title>
   <link>https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2892&amp;title=db-quarantine-beta-282-problem#2892</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://www.logsat.com/spamfilter/forums/member_profile.asp?PF=8">LogSat</a><br /><strong>Subject:</strong> 2864<br /><strong>Posted:</strong> 09 February 2004 at 12:05am<br /><br /><P>Indeed good call George. We confirm the bug you found. We still haven't verified 100%, but so far it seems to be present in all previous builds, including v1.2.x.</P><P>We should have it fixed in the next build.</P><P>Roberto F.<BR>LogSat Software</P>]]>
   </description>
   <pubDate>Mon, 09 Feb 2004 00:05:00 +0000</pubDate>
   <guid isPermaLink="true">https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2892&amp;title=db-quarantine-beta-282-problem#2892</guid>
  </item> 
  <item>
   <title><![CDATA[DB Quarantine beta 282 problem ? : X E LENT idea! Works like a charm....]]></title>
   <link>https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2878&amp;title=db-quarantine-beta-282-problem#2878</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://www.logsat.com/spamfilter/forums/member_profile.asp?PF=2">Guests</a><br /><strong>Subject:</strong> 2864<br /><strong>Posted:</strong> 07 February 2004 at 1:08am<br /><br /><P>X E LENT idea!</P><P>Works like a charm. I even added a few more decrips to delete and have them all go at once.</P><P>Thanks,</P><P>&nbsp;</P><P>g</P>]]>
   </description>
   <pubDate>Sat, 07 Feb 2004 01:08:00 +0000</pubDate>
   <guid isPermaLink="true">https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2878&amp;title=db-quarantine-beta-282-problem#2878</guid>
  </item> 
  <item>
   <title><![CDATA[DB Quarantine beta 282 problem ? : Just to throw out another idea... I...]]></title>
   <link>https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2876&amp;title=db-quarantine-beta-282-problem#2876</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://www.logsat.com/spamfilter/forums/member_profile.asp?PF=2">Guests</a><br /><strong>Subject:</strong> 2864<br /><strong>Posted:</strong> 06 February 2004 at 10:31pm<br /><br /><P>Just to throw out another idea...</P><P>I have put a separate (outside of SpamFilter) process in place to purge the MyDoom generated emails (at least most of them) on an hourly basis.&nbsp; The following query will purge viral messages only, reducing the size of your quarantine database dramatically, while leaving "legitimate" quarantined items alone.</P><BLOCKQUOTE dir=ltr style="MARGIN-RIGHT: 0px"><P>update&nbsp;tblquarantine set expire=1 where RejectDetails = 'found keywords: &#091;found prohibited attachment&#093;' and subject in ('hello','hi','test','server report','error','status','mail delivery system','mail transaction failed','w32.elkern&nbsp; removal tools')</P></BLOCKQUOTE><P dir=ltr>(Note: HTML truncates whitespace... there are TWO spaces between the words "elkern" and "removal" above.)</P><P dir=ltr>After running this query, the messages will be deleted from the database the next time SpamFilter runs it's "deleting expired items" cycle.</P><P dir=ltr>This query text is conservative.&nbsp; It doesn't purge ALL of the MyDoom messages, just 95%+ of them, enough to effect&nbsp;a BIG&nbsp;reduction in quarantine size without being too aggressive.&nbsp; It could easily be adjusted to be more aggressive, if you wish.&nbsp; By deleting all of the query text starting with the word "and" you've got an aggressive,&nbsp;take-no-prisoners, "I'm not going to&nbsp;allow ANY attachments to be quarantined on my mail system!"&nbsp;query... that will probably delete some legitimate quarantined messages with attachments if you're not very careful.</P><P dir=ltr>You can manually run this query periodically, or&nbsp;use your favorite method of query scheduling to run it on a routine basis. I run it hourly on our mid-volume mail system, but you high-volume guys routing 10,000 messages an hour will probably need to run it a little more often than this.</P><P dir=ltr>This query works for a default Microsoft SQL Server (case-insensitive) installation.&nbsp; Syntax and methods will differ for other database platforms.</P>]]>
   </description>
   <pubDate>Fri, 06 Feb 2004 22:31:00 +0000</pubDate>
   <guid isPermaLink="true">https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2876&amp;title=db-quarantine-beta-282-problem#2876</guid>
  </item> 
  <item>
   <title><![CDATA[DB Quarantine beta 282 problem ? : Same quarantine problem in 285...]]></title>
   <link>https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2875&amp;title=db-quarantine-beta-282-problem#2875</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://www.logsat.com/spamfilter/forums/member_profile.asp?PF=2">Guests</a><br /><strong>Subject:</strong> 2864<br /><strong>Posted:</strong> 06 February 2004 at 9:31pm<br /><br />Same quarantine problem in 285 too. If I want anything quarantined I have to allow keyword flagged emails to be quarantined other wise nothing gets through. With current email borne worms and virus's going around i'd rather dump all in favor of storing infected emails. It is such a waste of drive space and overall system performance. Once I got a good list of subjects and attachment names I have not have any infected files hit my address and given that my first name is one of the seed names in the mydoom virus I would offer a thumbs up on how well the filter part on the new subject and attachment options. Hopefully SF will get this issue fixed soon.]]>
   </description>
   <pubDate>Fri, 06 Feb 2004 21:31:00 +0000</pubDate>
   <guid isPermaLink="true">https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2875&amp;title=db-quarantine-beta-282-problem#2875</guid>
  </item> 
  <item>
   <title><![CDATA[DB Quarantine beta 282 problem ? : George, Good Call !!!! It looks...]]></title>
   <link>https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2874&amp;title=db-quarantine-beta-282-problem#2874</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://www.logsat.com/spamfilter/forums/member_profile.asp?PF=36">Lee</a><br /><strong>Subject:</strong> 2864<br /><strong>Posted:</strong> 06 February 2004 at 9:08pm<br /><br /><P>George,</P><P>Good Call !!!!&nbsp; It looks like the same problem in .282. As soon as I unchecked "Do not quarantine..." in the keyword filter section, boom the quarantine started working.</P><P>I am very impressed with the 282 beta. I am sure I have not run into all the bugs but I can't believe how much spam and viruses it catching. In fact my virus server has not seen a single virus because spamfilter is catching all of the attachments.</P><P>Lee</P>]]>
   </description>
   <pubDate>Fri, 06 Feb 2004 21:08:00 +0000</pubDate>
   <guid isPermaLink="true">https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2874&amp;title=db-quarantine-beta-282-problem#2874</guid>
  </item> 
  <item>
   <title><![CDATA[DB Quarantine beta 282 problem ? : Well I have found a bug I think....]]></title>
   <link>https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2873&amp;title=db-quarantine-beta-282-problem#2873</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://www.logsat.com/spamfilter/forums/member_profile.asp?PF=2">Guests</a><br /><strong>Subject:</strong> 2864<br /><strong>Posted:</strong> 06 February 2004 at 8:56pm<br /><br /><P>Well I have found a bug I think. In 281 if you select do not quaratine keyword rejections then noting get quaratined but if you uncheck it then quarantined emails go to the database. I found this after reinstalling SF when I discovered that no emails were getting sent to the DB server. I would say this is strange but given how things have been going all week due to Mydoom I am not surprised.</P><P>&nbsp;</P><P>Murphy's law and all.</P><P>&nbsp;</P>]]>
   </description>
   <pubDate>Fri, 06 Feb 2004 20:56:00 +0000</pubDate>
   <guid isPermaLink="true">https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2873&amp;title=db-quarantine-beta-282-problem#2873</guid>
  </item> 
  <item>
   <title><![CDATA[DB Quarantine beta 282 problem ? : Guys, When I was running the...]]></title>
   <link>https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2868&amp;title=db-quarantine-beta-282-problem#2868</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://www.logsat.com/spamfilter/forums/member_profile.asp?PF=22">Desperado</a><br /><strong>Subject:</strong> 2864<br /><strong>Posted:</strong> 06 February 2004 at 7:41pm<br /><br /><P>Guys,</P><P>When I was running the 282, I did not have the same issue you are having.&nbsp; However, you may want to try the 285.</P><P>Dan S.</P><P>&nbsp;</P>]]>
   </description>
   <pubDate>Fri, 06 Feb 2004 19:41:00 +0000</pubDate>
   <guid isPermaLink="true">https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2868&amp;title=db-quarantine-beta-282-problem#2868</guid>
  </item> 
  <item>
   <title><![CDATA[DB Quarantine beta 282 problem ? : Well, I ended up dumping the database...]]></title>
   <link>https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2867&amp;title=db-quarantine-beta-282-problem#2867</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://www.logsat.com/spamfilter/forums/member_profile.asp?PF=2">Guests</a><br /><strong>Subject:</strong> 2864<br /><strong>Posted:</strong> 06 February 2004 at 7:07pm<br /><br /><P>Well, I ended up dumping the database on the server and went back to 281. Now everything is working again. If someone plans on dumping the quarantine database make sure you backup the login names to an access table so you can restore it after you have everything working again. I didn't bother with the emails since most of them were either junk or Mydoom attachments. Too bad we can't drop attachments and keep keyword blocked emails.</P><P>I also wish that I didn't have quaratine max recipient blocked emails. (wish list item "Do not quarantine" option to go with existing setting section. </P><P>g</P><P>&nbsp;</P>]]>
   </description>
   <pubDate>Fri, 06 Feb 2004 19:07:00 +0000</pubDate>
   <guid isPermaLink="true">https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2867&amp;title=db-quarantine-beta-282-problem#2867</guid>
  </item> 
  <item>
   <title><![CDATA[DB Quarantine beta 282 problem ? : The problem is worst then I thought...]]></title>
   <link>https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2866&amp;title=db-quarantine-beta-282-problem#2866</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://www.logsat.com/spamfilter/forums/member_profile.asp?PF=2">Guests</a><br /><strong>Subject:</strong> 2864<br /><strong>Posted:</strong> 06 February 2004 at 6:04pm<br /><br /><P>The problem is worst then I thought at first. Come to find out, now no email is quarantine. I have rebuilt the database and still no email goes to the database.</P><P>Roberto, help!!!</P>]]>
   </description>
   <pubDate>Fri, 06 Feb 2004 18:04:00 +0000</pubDate>
   <guid isPermaLink="true">https://www.logsat.com/spamfilter/forums/forum_posts.asp?TID=2864&amp;PID=2866&amp;title=db-quarantine-beta-282-problem#2866</guid>
  </item> 
 </channel>
</rss>