Re: [Declude.Virus] HTML_BOFRA.B not getting caught by Declude Virus

2004-11-27 Thread R. Scott Perry
Scott, attached is the raw source of this BOFRA.B message, it looks like HTML to me. In fact, when I scan the D*.SMD file from the command-line, TrendMicro identifies the file as HTML_BOFRA.B and ClamAV as HTML.Mydoom.email-gen-1. What does the Declude Virus log file show for this E-mail?

Re: [Declude.Virus] HTML_BOFRA.B not getting caught by Declude Virus

2004-11-27 Thread Bill Landry
- Original Message - From: R. Scott Perry [EMAIL PROTECTED] Scott, attached is the raw source of this BOFRA.B message, it looks like HTML to me. In fact, when I scan the D*.SMD file from the command-line, TrendMicro identifies the file as HTML_BOFRA.B and ClamAV as

Re: [Declude.Virus] HTML_BOFRA.B not getting caught by Declude Virus

2004-11-27 Thread R. Scott Perry
Attached is the log output for the message I forwarded to your virustrap address. It looks like everything is working fine. My guess is that the virus scanner will only try to detect the phishing E-mails if it gets the entire E-mail file (including headers), perhaps as a precaution to help