How many times does f-secure scan messages? {Virus Scanned}

Christo Bezuidenhout christo at IT4AFRICA.CO.ZA
Thu Mar 11 09:49:41 GMT 2004


F-Secure uses three different scan engines to scan for virusses. That is
why you should see two to three lines in log file.

Fsav --version on my box show the following.

Scanner Engine versions:
        F-Secure Corporation Libra engine version 2.1 build 7
        F-Secure Corporation Libra database version 2004-03-09

        F-Secure Corporation Orion engine version 1.2 build 28
        F-Secure Corporation Orion database version 2004-03-11

        Kaspersky Labs. AVP FPI Engine engine version 4.0 build 164
        Kaspersky Labs. AVP FPI Engine database version 2004-03-10


> -----Original Message-----
> From: MailScanner mailing list
> [mailto:MAILSCANNER at JISCMAIL.AC.UK] On Behalf Of Michael Freeman
> Sent: 11 March 2004 05:03 AM
> To: MAILSCANNER at JISCMAIL.AC.UK
> Subject: How many times does f-secure scan messages? {Virus Scanned}
>
>
> We are seeing double and even tripple virus content
> information within the body of some of our messages.
>
>  Sender:
> IP Address: 212.118.13.90
>  Recipient: bob at domain.com
>    Subject:  Undelivered Mail Returned to Sender
>  MessageID: 1B1GLG-0003FQ-Hv
>     Report: F-Secure: ./1B1GLG-0003FQ-Hv/document.pif:
> Infected: W32/Mydoom.A at mm [Orion]
>             F-Secure: ./1B1GLG-0003FQ-Hv/document.pif:
> Infected: I- Worm.Mydoom.a [AVP]
>             MailScanner: Shortcuts to MS-Dos programs are
> very dangerous in email (document.pif)
>             No programs allowed (document.pif)
>     Report: F-Secure: [./1B1GLG-0003FQ-Hv/document.zip] document.pif:
> Infected: W32/Mydoom.A at mm [Orion]
>             F-Secure: [./1B1GLG-0003FQ-Hv/document.zip] document.pif:
> Infected: I-Worm.Mydoom.a [AVP]
>             F-Secure: ./1B1GLG-0003FQ-Hv/document.pif:
> Infected: W32/Mydoom.A at mm [Orion]
>             F-Secure: ./1B1GLG-0003FQ-Hv/document.pif:
> Infected: I- Worm.Mydoom.a [AVP]
>             MailScanner: Shortcuts to MS-Dos programs are
> very dangerous in email (document.pif)
>             No programs allowed (document.pif)
>
> Full headers are:
>
> Is there a way to fix this issue?
>
> --
> This message has been scanned for viruses and
> dangerous content by MailScanner, and is
> believed to be clean.
> Mailscanner thanks IT For Africa for their support.
>



More information about the MailScanner mailing list