Ok, I see. You have to demime the messages.
I have a W32/[EMAIL PROTECTED] which contains a base64 attachment:
------=_NextPart_000_0013_0355CB58.97C9409A
Content-Type: application/octet-stream;
name="body.zip"
Content-Transfer-Encoding: base64
Content-Disposition: attachment;
filename="body.zip"
So if I demime it and then run Clamscan against body.zip I get this in
a report file:
c:/mailroot/avfilter/test/body.zip: Worm.SCO.A FOUND
returns 0 for not infected 1 for infected - 40 - 70 are error
messages.
Might be worth working
Terry Fritts
-
To unsubscribe from this list: send the line "unsubscribe xmail" in
the body of a message to [EMAIL PROTECTED]
For general help: send the line "help" in the body of a message to
[EMAIL PROTECTED]