Has anyone had a situation where an infected machine sends so many virus alert emails that is brings down your mail server? I don’t really want to turn the alerts off all together but am not sure what to do. Any information or opinions greatly appreciated. Thanks in advance.
Has anyone had a situation where an[b] infected machine[/b] sends so many virus alert emails that is brings down your mail server?disconnect and clean the infected machine
I understand that. But we cannot necessarily get to a machine quickly enough to prevent the alerts from bringing the mail server down. I’m talking in the range of 50,000 alerts. Dropping everything and scrambling to find/disconnect/clean the infected machine before the mail server goes down is not an efficient means of operating. Any suggestions from users who have handled this would be appreciated. Thanks in advance.
I'm talking in the range of 50,000 alerts.sounds like a machine with a fileinfector.....
I would assess a file infector or a very virulent spam bot How many computers are affected
There have only been two occurrences of the excessive email alert blasts in the last 3 months. The most recent had the following infection alert:
“File “C:\WINDOWS\system32\install\server.exe” is infected by “Win32:Trojan-gen” virus. “File System Shield” task used”
I just need to prevent the mail server from being brought to a halt by the virus alert and am not sure I can.
THANKS
My guess is you have a FIle Infector. I would attach an OTL log so Essex can see whayt’s alerting and bringing your mail server(s) offline. 50,000 alerts is a lot of alerts. And is definitely not normal.