Viruses picked up by Clam and not Sophos

Steve Freegard steve.freegard at LBSLTD.CO.UK
Mon Mar 1 12:10:30 GMT 2004


Thanks for all the replies...

It looks like Sophos released an IDE for Netsky-D during the last hour which
was just picked up by update_virus_scanners, as it now seems to be catching
this:

SophosSAVI: document_word.pif was infected by W32/Netsky-D
ClamAV Module: document_word.pif was infected: Worm.SomeFool.B-petite

Cheers,
Steve.

> -----Original Message-----
> From: Randal, Phil [mailto:prandal at HEREFORDSHIRE.GOV.UK]
> Sent: 01 March 2004 11:57
> To: MAILSCANNER at JISCMAIL.AC.UK
> Subject: Re: Viruses picked up by Clam and not Sophos
>
>
> McAfee detects it as W32/Netsky.c at MM.
>
> Cheers,
>
> Phil
>
> ---------------------------------------------
> Phil Randal
> Network Engineer
> Herefordshire Council
> Hereford, UK
>
> > -----Original Message-----
> > From: MailScanner mailing list [mailto:MAILSCANNER at JISCMAIL.AC.UK]On
> > Behalf Of Steve Freegard
> > Sent: 01 March 2004 11:52
> > To: MAILSCANNER at JISCMAIL.AC.UK
> > Subject: Viruses picked up by Clam and not Sophos
> >
> >
> > Hi List,
> >
> > I've just noticed that Clam is catching these:
> >
> > ClamAV Module: document.pif was infected: Worm.SomeFool.B-petite
> >
> > but Sophos isn't picking them up at all.
> >
> > Is anyone else seeing these?? - looks like another example
> of the Clam
> > guys beating Sophos with their definitions...
> >
> > Regards,
> > Steve.
> >
> > --
> > This email and any files transmitted with it are confidential and
> > intended solely for the use of the individual or entity to
> whom they
> > are addressed. If you have received this email in error
> please notify
> > the sender and delete the message from your mailbox.
> >
> > This footnote also confirms that this email message has
> been swept by
> > MailScanner (www.mailscanner.info) for the presence of computer
> > viruses.
> >
>

--
This email and any files transmitted with it are confidential and
intended solely for the use of the individual or entity to whom they
are addressed. If you have received this email in error please notify
the sender and delete the message from your mailbox.

This footnote also confirms that this email message has been swept by
MailScanner (www.mailscanner.info) for the presence of computer viruses.



More information about the MailScanner mailing list