On 8 Apr 2005 at 8:09, Nigel Horne wrote: > On Thursday 07 Apr 2005 19:00, .rp wrote: > > Clamav-milter is running and inspecting the email via sendmail. It > > does seem be catching the phishing emails that get by, but not the > > virii. I manually inspected the mail and had a virus reported. with > > f-prot: /var/spool/mail/fakebox->document_excel.pif Infection: > > W32/[EMAIL PROTECTED] > > > > with clamscan: > > fakebox: Worm.SomeFool.Gen-1 FOUND > > > > Clamav is .83, /etc/sysconfig/clamav-milter is > > CLAMAV_FLAGS="[EMAIL PROTECTED] -HdlfNPn -m 35 -- > > server=localhost local:/var/clamav/clamav-milter.sock" > > I have never heard of this before. Is 0.84RC1 any better? > I don't use RC's for clamav at all. > Any clues in the syslog? > well, there are a few broken pipes and error states. > What if you don't use the -d option? > just turned it off. Where do I check to see what is going with those emails that errored ?
_______________________________________________ http://lurker.clamav.net/list/clamav-users.html