Ok, I see.  You have to demime the messages.

I have a W32/[EMAIL PROTECTED] which contains a base64 attachment:

  ------=_NextPart_000_0013_0355CB58.97C9409A
  Content-Type: application/octet-stream;
        name="body.zip"
  Content-Transfer-Encoding: base64
  Content-Disposition: attachment;
        filename="body.zip"


So if I demime it and then run Clamscan against body.zip I get this in
a report file:

   c:/mailroot/avfilter/test/body.zip: Worm.SCO.A FOUND

returns 0 for not infected 1 for infected - 40 - 70 are error
messages.

Might be worth working


Terry Fritts

-
To unsubscribe from this list: send the line "unsubscribe xmail" in
the body of a message to [EMAIL PROTECTED]
For general help: send the line "help" in the body of a message to
[EMAIL PROTECTED]

Reply via email to