Under either clamav-devel-20031027 or clamav-0.60, using either
clamdscan or clamscan, if I scan an email containing a virus, the virus
is not seen, but the detatched exe, even zipped, is identified as a
virus. I've tried with ScanMail both enabled and disabled in
clamav.conf. Am I doing this wrong? Is something not configured correctly?
[EMAIL PROTECTED] tmp]# clamscan ./message.zip
./message.zip: Trojan.Dropper.C FOUND
----------- SCAN SUMMARY -----------
Known viruses: 9886
Scanned directories: 0
Scanned files: 1
Infected files: 1
Data scanned: 0.02 MB
I/O buffer size: 131072 bytes
Time: 0.250 sec (0 m 0 s)
[EMAIL PROTECTED] tmp]# clamscan 1067248079.28128.moozak.soccerage.com\:2,
1067248079.28128.moozak.soccerage.com:2,: OK
----------- SCAN SUMMARY -----------
Known viruses: 9886
Scanned directories: 0
Scanned files: 1
Infected files: 0
Data scanned: 0.03 MB
I/O buffer size: 131072 bytes
Time: 0.252 sec (0 m 0 s)
[EMAIL PROTECTED] tmp]# clamscan --mbox 1067248079.28128.moozak.soccerage.com\:2,
1067248079.28128.moozak.soccerage.com:2,: OK
----------- SCAN SUMMARY -----------
Known viruses: 9886
Scanned directories: 0
Scanned files: 1
Infected files: 0
Data scanned: 0.05 MB
I/O buffer size: 131072 bytes
Time: 0.259 sec (0 m 0 s)
-------------------------------------------------------
This SF.net email is sponsored by: The SF.net Donation Program.
Do you like what SourceForge.net is doing for the Open
Source Community? Make a contribution, and help us add new
features and functionality. Click here: http://sourceforge.net/donate/
_______________________________________________
Clamav-users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/clamav-users