virus not scan
tr at riq.qc.ca
Fri Jun 29 16:39:06 IST 2007
We use MS 4.57.6 with sendmail 8.13.8 "clamav" not the "clamavmodule"
0.91rc2(+sanesecurity DB) + f-secure and SA 3.2.1 on a fedora core6.
Everything up to date except MS.
The emails contains the trojan hk url(agent.af or whatever it is call by
others AV) are not always scanned (passthru by MS).
The emails are tagged spam and are forward in a special mbox but not
been pass to clamav.
I can't use mailscanner in debug mode for now, I must let the server in
If I scan the mbox contain, clamav detect it like a charm with the use
of sanesecurity DB with no particular option:
shell>clamscan test (test is the mbox)
test: Email.Spam.Gen635.Sanesecurity.07053007 FOUND
----------- SCAN SUMMARY -----------
Known viruses: 139610
Engine version: 0.91rc2
Scanned directories: 0
Scanned files: 1
Infected files: 1
Data scanned: 0.00 MB
Time: 1.469 sec (0 m 1 s)
I have in my mind that every emails are scan by the AV, are they?
If not, how can I force it?
He're a sample email that is not scan has virus but scan, tag and
forward a spam.
-------------- next part --------------
A non-text attachment was scrubbed...
Size: 1019 bytes
Desc: not available
Url : http://lists.mailscanner.info/pipermail/mailscanner/attachments/20070629/0a2b8112/test.obj
More information about the MailScanner