Hi all,

Hope some guys in grp are NOT fed up from my mails :(( If so i'm apolozise.

Yday i had a problem of Clam-AV not detecting viruses sent from http://www.testvirus.org/

===============================================================================
Problem was with /etc/clam.conf
#ClamukoIncludePath /home
The above line was UN-commented out.Re-reading a clamdoc.pdf again (with patiece) help :)))) Its says:
---
Never protect a directory your mail-scanner software uses for attachment unpacking.
Access to all infected files will be automagically blocked and the scanner
(even clamd) wonât be able to detect a virus. The infected mail will be delivered.
---
===============================================================================


Lastly follwoing viruses were not detected !!

*Eicar virus sent using BinHex encoding
*Eicar virus sent using BinHex encoding within a MIME segment
*Outlook 'Blank Folding' Vulnerability (does not include Eicar virus, but your mail server still must catch this)
*Outlook 'Boundary Space Gap' Vulnerability (does not include Eicar virus, but your mail server still must catch this)
*Outlook 'Long Boundary' Vulnerability (does not include Eicar virus, but your mail server still must catch this)
*A file with a CLSID extension which may hide the real file extension (does not include Eicar virus, but your mail server still must catch this)


Is this common with Clam-AV or am i need take care of some things in Clam-AV ?

Kindly Guide...

Thanks
-Dilip.M



-------------------------------------------------------
This SF.net email is sponsored by: Perforce Software.
Perforce is the Fast Software Configuration Management System offering
advanced branching capabilities and atomic changes on 50+ platforms.
Free Eval! http://www.perforce.com/perforce/loadprog.html
_______________________________________________
Clamav-users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/clamav-users

Reply via email to