2 questions:

1) I've been doing some ClamAV testing.  It mostly works, but I've also
seen:
[VIRUS][scoring] 149.202.232.193 <securitych...@emailsecuritycheck.net> to:
virust...@ourdomain.org 'Eicar-Test-Signature' passing the virus check
because of only suspicious virus 'Eicar'

Is there a way to tell ClamAV or ASSP to reject even suspicious files?


2) I've got Level 1 blocking set using
exe-bin|url|ade|adp|asx|bas|bat|dot|dotx|xlt|xlts|bin|chm|cmd|com|cpl|crt|dbx|dll|exe|hlp|hta|htb|inf|ifs|isp|js|jse|lnk|mda|mdb|mde|mdz|mht|msc|msi|msp|mst|nch|pcd|pif|prf|ps1|reg|scf|scr|sct|shb|shs|vb|vbe|vbs|vba|wms|wsc|wsh

Everything I've tested is blocked with the exception of DLL files and I
can't for the life of me figure out why.  Any ideas?

Thanks
Ken
------------------------------------------------------------------------------
Transform Data into Opportunity.
Accelerate data analysis in your applications with
Intel Data Analytics Acceleration Library.
Click to learn more.
http://pubads.g.doubleclick.net/gampad/clk?id=278785111&iu=/4140
_______________________________________________
Assp-test mailing list
Assp-test@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/assp-test

Reply via email to