<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD>
<META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=iso-8859-1">
<META content="MSHTML 6.00.2719.2200" name=GENERATOR>
<STYLE></STYLE>
</HEAD>
<BODY bgColor=#ffffff>
<DIV><FONT face=Arial color=#0000ff size=2><SPAN class=698580112-07112002>Just a
little thought, Im not a big fan of hotmail but I know they use
</SPAN></FONT></DIV>
<DIV><FONT face=Arial color=#0000ff size=2><SPAN class=698580112-07112002>mcafee
to scan for viruses. I dont have a clue if they scan outgoing
mail</SPAN></FONT></DIV>
<DIV><FONT face=Arial color=#0000ff size=2><SPAN class=698580112-07112002>but I
would hope they do</SPAN></FONT></DIV>
<DIV><FONT face=Arial color=#0000ff size=2><SPAN
class=698580112-07112002></SPAN></FONT> </DIV>
<DIV><FONT face=Arial color=#0000ff size=2><SPAN
class=698580112-07112002>/Anders</SPAN></FONT></DIV>
<BLOCKQUOTE dir=ltr
style="PADDING-LEFT: 5px; MARGIN-LEFT: 5px; BORDER-LEFT: #0000ff 2px solid; MARGIN-RIGHT: 0px">
<DIV class=OutlookMessageHeader dir=ltr align=left><FONT face=Tahoma
size=2>-----Ursprungligt meddelande-----<BR><B>Från:</B> Vicente Guerrero M.
[mailto:vguerrero@MINAR.COM]<BR><B>Skickat:</B> den 7 november 2002
00:57<BR><B>Till:</B> MAILSCANNER@JISCMAIL.AC.UK<BR><B>Ämne:</B> F-PROT
problem?<BR><BR></FONT></DIV>
<DIV><FONT face=Courier size=2>I have RedHat 7.1, Sendmail8.9.3, MailScanner
4.04-1 and f-prot 3.12b.</FONT></DIV>
<DIV><FONT face=Courier size=2></FONT> </DIV>
<DIV><FONT face=Courier size=2>Everything its seems to be working ok, but if I
send a message from an external account (hotmail) with a virus attached, I
have no warning about an infected message. I tried the EICAR_test file too,
but nothing happened, I just get these lines in maillog:</FONT></DIV>
<DIV><FONT face=Courier size=2></FONT> </DIV>
<DIV><FONT face=Courier size=2>Nov 6 17:34:11 ns0 sendmail[5914]:
RAA05914: from=<<A href="mailto:user@hotmail.com">user@hotmail.com</A>>,
size=96715, class=0, pri=126715, nrcpts=1, msgid=<<A
href="mailto:OE17Bt3J3JCj2fBUA510000094e@hotmail.com">OE17Bt3J3JCj2fBUA510000094e@hotmail.com</A>>,
proto=ESMTP, relay=oe17.law7.hotmail.com [216.33.236.121]<BR>Nov 6
17:34:11 ns0 MailScanner[5190]: New Batch: Found 2 messages waiting
<BR>Nov 6 17:34:11 ns0 MailScanner[5190]: New Batch: Scanning 1
messages, 97125 bytes <BR>Nov 6 17:34:12 ns0 MailScanner[5190]: Virus
and Content Scanning: Starting <BR>Nov 6 17:34:12 ns0 MailScanner[5190]:
Uninfected: Delivered 1 messages <BR>Nov 6 17:34:12 ns0 sendmail[5919]:
RAA05914: to=<<A
href="mailto:mail_user@minar.com">mail_user@minar.com</A>>, delay=00:00:09,
xdelay=00:00:00, mailer=local, stat=Sent<BR></FONT></DIV>
<DIV><FONT face=Courier size=2>I tested f-prot manually and it says the
infection is there (EICAR_test and an infected file (Magistr). I really
apreciate your help to solve this issue.</DIV></FONT>
<DIV><FONT face=Courier size=2></FONT> </DIV>
<DIV><FONT face=Courier size=2></FONT> </DIV>
<DIV><FONT face=Courier size=2>BTW, I got warned about some infected messages,
but they are the ones with IFrame tags in it. </FONT></DIV>
<DIV><FONT face=Courier size=2></FONT> </DIV>
<DIV><FONT face=Courier size=2></FONT> </DIV>
<DIV><FONT face=Courier size=2>Thanks in advance</FONT></DIV>
<DIV><FONT face=Courier size=2></FONT> </DIV>
<DIV><FONT face=Courier size=2></FONT> </DIV>
<DIV><FONT face=Courier size=2>(Sorry about my poor English)</FONT></DIV>
<DIV><FONT face=Courier size=2></FONT> </DIV>
<DIV><FONT face=Courier size=2></FONT> </DIV>
<DIV><FONT face=Courier size=2>vgm</DIV></BLOCKQUOTE></FONT></BODY></HTML>