> -----Original Message----- > From: [EMAIL PROTECTED] [mailto:clamav-users- > [EMAIL PROTECTED] On Behalf Of Xavier Poinsard > Sent: 18. august 2004 09:49 > To: [EMAIL PROTECTED] > Subject: [Clamav-users] Re: False positive or problem with zipped exe > > Tomasz Papszun wrote: > > On Tue, 17 Aug 2004 at 10:44:56 +0200, Xavier Poinsard wrote: > > > >>Today, clamav reported that some old files where just infected with > >>Trojan.Delf.CB-1-enc > >>I suspect a false positive seems the files weren't modified since > >>several months. > >>All the infected files are executables autoextractable. > >>But if I unzip the files and run clamscan on those files I didn't get > >>the trojan. > >>=> May be a bug with internal unzip for executables ? > > > > > > Nobody can answer unless you submit the file. > > > > http://clamav.sourceforge.net/cgi-bin/sendvirus.cgi > > > > The page didn't work : my browser says "Document contains no data" > The other problem is that file size is 2M >
You're welcome to submit the file directly to me. Please send the sample in a password protected zip file. Thanks in advance... Best regards, Diego d'Ambra
smime.p7s
Description: S/MIME cryptographic signature