OK here is the situation.

I have clamav-daemon which is run before trend micro's vscan.

The majority of viruses are found by clamav with no problems. One or two
slip past and are picked up by trend.

I altered my setup so the ones detected by trend get quarantined so I
could look further.

Change to the qdir and run clamdscan ENTIRE_MESSAGE and the virus is
found.

The viruses that are at issue are:

HTML_Netsky.P, when vscan decompresses the attached file is detects it
as WORM_NETSKY.P.

For clamav it is Worm.SomeFool.P

WORM_NETSKY.Q and Worm.SomeFool.Q also seem to be having this issue.

So doing it by hand the clamav finds these viruses, but through
mimedefang they are being missed.

I am at a loss where to go from here. clamav can detect them, but clamav
+mimedefang is missing them.

Any thoughts or tips?

Stewart


_______________________________________________
Visit http://www.mimedefang.org and http://www.canit.ca
MIMEDefang mailing list
[EMAIL PROTECTED]
http://lists.roaringpenguin.com/mailman/listinfo/mimedefang

Reply via email to