On Thursday 07 Apr 2005 19:00, .rp wrote: > Clamav-milter is running and inspecting the email via sendmail. > It does seem be catching the phishing emails that get by, but not the virii. > I manually inspected the mail and had a virus reported. > with f-prot: > /var/spool/mail/fakebox->document_excel.pif Infection: > W32/[EMAIL PROTECTED] > > with clamscan: > fakebox: Worm.SomeFool.Gen-1 FOUND > > Clamav is .83, /etc/sysconfig/clamav-milter is > CLAMAV_FLAGS="[EMAIL PROTECTED] -HdlfNPn -m 35 -- > server=localhost local:/var/clamav/clamav-milter.sock"
I have never heard of this before. Is 0.84RC1 any better? Any clues in the syslog? What if you don't use the -d option? _______________________________________________ http://lurker.clamav.net/list/clamav-users.html