My problem is that transflt is too quick in blocking. I have (had) a rule that was suppose to block out anything from India. The rule was H, "[HE][EH]LO *.in*", D, "India Banned Country " however this rule then also blocks out anything that has info in the domain or as I am finding out interact. I have tried replacing the final wild card with <cr><lf> but that didn't work. Even the India stuff was getting through again. So went back to the wild card.
What would be a good rule then that will stop anything that is coming from India. So it would be *.in (the country domain) but not blocking stuff like this notification.payments.interac.ca?