I am getting lots of these, and clamav is detecting them fine, but it clearly is trying to email back the "sender" with a notification.Which wrapper are you using between your MTA and clam? For amavisd-new, the configuration should be like:
As the reply to is spoofed, this makes no sense at all (and i am getting lots of bounces). How do we stop this happening?
Cheers
Brian
$viruses_that_fake_sender_re = new_RE( ........trojan\.dropper|worm\.sco|....
Thomas
------------------------------------------------------- The SF.Net email is sponsored by EclipseCon 2004 Premiere Conference on Open Tools Development and Integration See the breadth of Eclipse activity. February 3-5 in Anaheim, CA. http://www.eclipsecon.org/osdn _______________________________________________ Clamav-users mailing list [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/clamav-users