SpamSentinel Version 8.5
STILL
 the best anti-spam and anti-virus solution for Domino!


Release Date: January 2016

We continue to update our SpamSentinel and Manage By Example products to give you the best IBM Notes/Domino anti-spam package for minimal administration and ease of use - please see below for a full list. Also, be sure to check out our popular Sidebar Applications - Canned Replies, Agenda and more!

As always, please feel free to contact us at support@maysoft.com if you have any questions or require support - we would also be happy to hear of any improvements or new features that you would like to be added.

SpamSentinel 8.5 runs on Lotus Domino versions 6 and higher, 32-bit and 64-bit.


Version Highlights:

Version 8.5 is mostly about improving virus protection from email viruses contained in Microsoft Office documents as malicious macros.

In this version we have really worked hard to stop these viruses. We have many blog postings about the bad effects of these viruses at Frank's Blog

Many of our customers want to better understand our approach to blocking viruses in SpamSentinel Version 8.5 - please see the chart at the end of this page that explains it in detail.

SpamSentinel Version 8.5.2.2 Improvements


SpamSentinel Interceptor 2.6.5.9
  • Added new fields to show the direction of a mail message (Inbound/Outbound)
  • Added code to work with the scanner 'Scan Delay' setting.

SpamSentinel Duo Engines 4.0.1.6 
  • Updated with Authentium 5.4.25.7 SDK
  • Updated with Commtouch 8.00.0122 SDK
  • Fixed a bug that led to classification abort for certain mails.
  • Fixed crash on windows platforms.
  • Fixed a bug that prevented startup without internet connection.
  • Fixed crash when handling corrupt ZIP files.
  • Fixed crash on rule download errors.
  • Fixed a bug that prevented startup in DHCP environments.
  • Correctly cleanup temporary files on windows machines.
  • Updated with Cloudmark 1.10.0.4 SDK

SpamSentinel Router 2.6.3.1
  • Allowed disabling of rotation for Perimeter Quarantines (Set 'MaxQuarantineSize' to zero).

SpamSentinel Scanner 8.5.2.2
  • Added features to protect against malicious Microsoft Office macros.
  • Added ability to analyze in-line file attachments in additional MIME formats.
  • Added formulas for outbound processing.
  • Removed message scan delay for outbound mail.
  • Fixed 'inline' attachment scanning.
  • Fixed scenario where restricted attachments are delivered to users if they have JunkMail folder set.
  • Fixed bogus FileTypes missed as restricted attachments.
  • Allowed exclusion of certain filenames from restricted attachments.
  • Fixed 'Note item Not Found' error.
  • File names with Unicode characters now encoded in Base-64.
  • Fixed crash when converting filenames to LMBCS.
  • New fields added to keep MIME part in sync with Notes document.

SpamSentinel Reporter 2.0.3.5
  • No changes have been made to the SpamSentinel Reporter

SpamSentinel Administration Database
  • Added UI options to support new features

SpamSentinel Manager 2.6.2.8 
  • No changes have been made to the SpamSentinel Manager.

SpamSentinel Monitor 3.0.0.4
  • No changes have been made to the SpamSentinel Monitor.

Non-Windows/Checking Machine Installations (AS400/Linux/Solaris)
  • Engine, Scanner and database updates have been made as above.

We would also like to remind you that our popular Manage By Example (MBE) tool is now included in the SpamSentinel package. "SpamSentinel MBE", unlike earlier versions, does not require any changes to the mail template and runs as an add-in on the servers hosting your mail files. It replaces the daily report as the most up-to-date way to manage suspect messages. We also include the MBE installer to allow you to easily install onto mail servers that do not necessarily run SpamSentinel.

Manage by Example is a critical component of SpamSentinel. MBE gives your users complete control over the grey area of Spam-B and Newsletters, freeing up your administrators and help-desk staff. MBE ensure zero false positives by providing end user verification of suspect/Spam B messages. The Junk Mail folder is used for delivery of 'suspect' mail (Spam-B). For most customers, this completely replaces the daily report.


Please be aware that the new SpamSentinel MBE tool will only be installed on servers that run Windows or Linux. Servers running AS/400 or Solaris should use MBE version 3.

Be sure to check out our popular Sidebar Applications at http://www.maysoft.com/web3.nsf/page/Products-Sidebar-Apps - Canned Replies, Agenda and more!

Click here to learn more about our previous release: Improvements in 8.0.2.6

5 Layer Approach to Effective Virus Blocking using SpamSentinel

Layer 1:
Spam Blocking

Blocks most viruses as "spam" that should be deleted.

39% of viruses are stopped this way.
Most viruses are generated and sent out in large waves of emails, so they exactly resemble spam.

The messages are classified at our highest level of spam, as Spam-D and immediately deleted or quarantined.
Layer 2:
Zero Hour Pattern Detection

Identifies viruses in the wild before they are
"named".

42% of viruses are stopped this way.

The Zero Hour approach does not rely on file scanning but provided malware detection based on identifiable patterns such as:
  • Sender IP addresses
  • Malicious code in attached malware
  • Combinations of characters from the subject and body of the email
  • Email distribution patterns – such as senders (how many, location) and the volume of the emails sent over a period of time.
  • Structure patterns – in the email messages and attachments.
Layer 3:
Traditional Anti-Virus Scanning

Identifies viruses based on known signatures.

15% of viruses are stopped this way.
SpamSentinel Antivirus looks specifically at the file attachments to accurately detect:
  • Malware hidden in PDF files, HTML and Java scripts, and archive files
  • Full anti-malware detection of worms, Trojans, spyware, adware and other potentially unwanted applications types

Malware detection is based on:
  • Heuristics – basic and emulator-based.
  • Algorithmic scanning methods – using an internal detection language.
  • Signature-based scanning – for exact malware file identification.
  • Emulation – for encrypted and polymorphic virus detection.
  • Full support for all types of ZIP, Bzip2, RAR, 7zip, NSIS and CAB compression techniques
Layer 4:
Restricted Attachments

Stops missed viruses by stopping and quarantining executable files.

4% of viruses are stopped this way.
Most viruses exploit the ability to launch right from the email message. That means they prefer to be executable files (EXE files). New variations are sent every day. Restricting EXE and other attachments is the last layer preventing viruses from entering your organization.
Layer 5:
Scan Microsoft Office documents for macros.
Malicious macros can download and execute malware/viruses in the background without the user's knowledge. SpamSentinel now creates safe copies of these documents for viewing and password protects the original file to prevent accidental opening.