• Please be aware: Kaspersky Anti-Virus has been deprecated
    With the upgrade to Plesk Obsidian 18.0.64, "Kaspersky Anti-Virus for Servers" will be automatically removed from the servers it is installed on. We recommend that you migrate to Sophos Anti-Virus for Servers.
  • The Horde webmail has been deprecated. Its complete removal is scheduled for April 2025. For details and recommended actions, see the Feature and Deprecation Plan.
  • We’re working on enhancing the Monitoring feature in Plesk, and we could really use your expertise! If you’re open to sharing your experiences with server and website monitoring or providing feedback, we’d love to have a one-hour online meeting with you.

Issue spamassassin almost does not detect spam

Jesús

New Pleskian
Hi.

PRODUCT, VERSION, VERSION OF MICROUPDATE, OPERATING SYSTEM, ARCHITECTURE

Microsoft Windows Server 2008 R2 Service Pack 1
Versión del panel 11.0.9 Actualizar #64
MailEnable 7.06


PROBLEM DESCRIPTION
Plesk panel does not update the pickup event section at the mta config in mailenable.
Spamassassin do not detect spam mails or only a few of then.

STEPS TO REPRODUCE
I put 3 dns blacklist servers at the mail config section.
I check the "check incoming mail" option and the "Activate antispam protection based on dnsbl..."
I put the value 4 at the hits the server must detect to take an email as spam.
The email account has also de 4 value at its individual config and the spam filter is activated.

I go to the mailenable mtc config and see the "Enable pick up event" not checked.
I check it and put this at the Program to execute: "C::\Program Files (x86)\Parallels\Plesk\admin\bin\memailfilter.exe" as I saw in a old post here that this should be the one to use.
At smtp config I deactivate the dnsblacklist protection for letting spamassassin do the work instead.

ACTUAL RESULT
I've just received 6 spam mails. Only 2 have the subject edited with "***SPAM***" added (and I think its many as I've seen these last days) . Mailenable detects 100% spam with the same dns blacklist servers without using pickup event.
These days I've been receiving LOTS of spam. MailEnabel always saw the 100% of them using its own control with dns blacklist activated, maybe 1 or 2 emails not detected. Spamassassin only get a few of them, maybe 3 or 4 of 70 more or less.

EXPECTED RESULT
Should't plesk configure mailenable pickup event itself?
Why are most of emails not marked with "***SPAM***"?

ANY ADDITIONAL INFORMATION

Is the memailfilter.exe the file to use?

I've indicated at plesk that users can config their spam options too and I saw a file with the name memailfilter_user.exe. I'm wondering if it would be the file to use then.

------------
Thanks. And excuse my english. I'm spanish :)
 
Sorry, I meant that I put at mailenalbe this "C:\Program Files (x86)\Paral...."
Only one ":"
It was a typing error here in the post.
 
Last edited:
This is an example. I've stablished a limit of 0 hits in the plesk panel.

I paste here the raw header with the result. MailEnable did marked it as spam as it was detected in barracuda black list. Spamassassin not. Both using the same dns blacklist servers. Isn't spamassasin using that servers? What's going on?


X-Spam-Checker-Version: SpamAssassin 3.3.1 (2010-03-16) on WIN-OJPG9CD720T
X-Spam-Flag: YES
X-Spam-Level:
X-Spam-Status: Yes, score=0.0 required=0.0 tests=HTML_MESSAGE,
MIME_QP_LONG_LINE,MISSING_MIME_HB_SEP,UNPARSEABLE_RELAY autolearn=no
version=3.3.1
X-Spam-Report:
* 0.0 UNPARSEABLE_RELAY Informational: message has unparseable relay lines
* 0.0 HTML_MESSAGE BODY: HTML included in message
* 0.0 MISSING_MIME_HB_SEP BODY: Missing blank line between MIME header and
* body
* 0.0 MIME_QP_LONG_LINE RAW: Quoted-printable line longer than 76 chars
DomainKey-Status: no signature
DomainKey-Status: no signature
Received: from ([127.0.0.1]) with MailEnable ESMTP; Thu, 8 Jun 2017 14:25:04 +0200
Message-ID: <[email protected]>
From: "Randi Harris" <[email protected]>
Subject: ***SPAM*** Lexapro. Impeccable sense of peace and tranquility perfect.
To: [[[MY EMAIL DELETED HERE]]]
Date: Thu, 08 Jun 2017 16:21:12 +0300
Mime-Version: 1.0
Content-Type: multipart/alternative; boundary="_av-3811723626094492"
X-RBL-Result: Generic, Fail
X-ME-Content: Deliver-To=Junk
Return-Path: <[email protected]>
X-Spam-Prev-Subject: Lexapro. Impeccable sense of peace and tranquility perfect.

--_av-3811723626094492
Content-Type: text/plain; charset=utf-8
Content-Transfer-Encoding: quoted-printable
Lexapro. Impeccable sense of peace and tranquility perfect.<br>Leave depression to Lexapro. Just order it now and never be sad again!<br>Want a Discount? Click here!<br>http://hop.kz/5d9u
--_av-3811723626094492
Content-Type: text/html; charset=utf-8
Content-Transfer-Encoding: 7bit
...
 
well, I realized that I did set up the file local.cf for using mysql.

but I didn't put in that config file any reference to the dns blacklist servers

is it the matter? if it is, would anyone please tell me how to set it up?

thanks
 
Hi again. Anyone there?

My dude: Why plesk does not setup the dnsbl in spamassassin? Or how should I set this up?
 
Last edited:
Back
Top