SMTP File check
Sometimes happen to receive an attachment with a virus that is not detected, could be useful for all files that arrive, get the hash, and if the file is infected, move it in quarantine and block all the new incoming file.
Thank you for sharing your idea with us. What would we use to determine if the hash is for an infected file?
Please provide additional details.
This is an interesting idea. Can you help me to understand why this is better than being able to block a file based on the name of the file?
I understand that the name of a file can change an the hash will remain the same, but if something as simple as a space is added to the file the hash changes.
For example, if i received an attachment with a virus, could be useful move the attachment in a place like quarantine, check the hash and if arrive another email with the same attachment you can make an action (remove, move in quarantine or other).