Scott, attached is the raw source of this BOFRA.B message, it looks like
HTML to me.  In fact, when I scan the D*.SMD file from the command-line,
TrendMicro identifies the file as "HTML_BOFRA.B" and ClamAV as
"HTML.Mydoom.email-gen-1".

What does the Declude Virus log file show for this E-mail?

Declude Virus definitely should have sent the HTML segment to the virus scanner (except if PRESCAN ON is being used).

-Scott
---
Declude JunkMail: The advanced anti-spam solution for IMail mailservers since 2000.
Declude Virus: Ultra reliable virus detection and the leader in mailserver vulnerability detection.
Find out what you've been missing: Ask for a free 30-day evaluation.



---- This outgoing message is guaranteed to be authentic by Message Level users. Guarantee the authenticity of your email @ http://www.messagelevel.com. --- [This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)]

---
This E-mail came from the Declude.Virus mailing list.  To
unsubscribe, just send an E-mail to [EMAIL PROTECTED], and
type "unsubscribe Declude.Virus".    The archives can be found
at http://www.mail-archive.com.

Reply via email to