Re: [Declude.Virus] F-Prot letting TROJ_REVOP.F thru
I have just started using Declude with F-Prot as our virus scanner. Was using Trend Viruswall. Have noticed that F-Prot is letting thru viruses that Trend desktop scanners are catching. I have had 11 TROJ_REVOP.F get thru today alone. Is anyone else seeing this? Trying to use ClamAV as a second scanner but need to wait till I can reboot the mail server to get it functioning. That's a trojan horse, which means that it doesn't spread on its own -- so someone has to intentionally send it. Because of that, virus scanners may or may not catch it. -Scott --- Declude JunkMail: The advanced anti-spam solution for IMail mailservers since 2000. Declude Virus: Ultra reliable virus detection and the leader in mailserver vulnerability detection. Find out what you've been missing: Ask for a free 30-day evaluation. --- [This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)] --- This E-mail came from the Declude.Virus mailing list. To unsubscribe, just send an E-mail to [EMAIL PROTECTED], and type unsubscribe Declude.Virus.The archives can be found at http://www.mail-archive.com.
RE: [Declude.Virus] F-Prot letting TROJ_REVOP.F thru
Thanks for the info. Is there a good template on how to setup virus.cfg? I have the basic stuff from the instructions but it would be nice to get a real world version. Mike -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of R. Scott Perry Sent: Friday, June 18, 2004 12:42 PM To: [EMAIL PROTECTED] Subject: Re: [Declude.Virus] F-Prot letting TROJ_REVOP.F thru I have just started using Declude with F-Prot as our virus scanner. Was using Trend Viruswall. Have noticed that F-Prot is letting thru viruses that Trend desktop scanners are catching. I have had 11 TROJ_REVOP.F get thru today alone. Is anyone else seeing this? Trying to use ClamAV as a second scanner but need to wait till I can reboot the mail server to get it functioning. That's a trojan horse, which means that it doesn't spread on its own -- so someone has to intentionally send it. Because of that, virus scanners may or may not catch it. -Scott --- Declude JunkMail: The advanced anti-spam solution for IMail mailservers since 2000. Declude Virus: Ultra reliable virus detection and the leader in mailserver vulnerability detection. Find out what you've been missing: Ask for a free 30-day evaluation. --- [This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)] --- This E-mail came from the Declude.Virus mailing list. To unsubscribe, just send an E-mail to [EMAIL PROTECTED], and type unsubscribe Declude.Virus.The archives can be found at http://www.mail-archive.com. --- [This E-mail scanned for viruses by Declude Virus] --- [This E-mail scanned for viruses by Declude Virus] --- [This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)] --- This E-mail came from the Declude.Virus mailing list. To unsubscribe, just send an E-mail to [EMAIL PROTECTED], and type unsubscribe Declude.Virus.The archives can be found at http://www.mail-archive.com.
RE: [Declude.Virus] F-Prot letting TROJ_REVOP.F thru
Is there a good template on how to setup virus.cfg? I have the basic stuff from the instructions but it would be nice to get a real world version. The real question is what are you looking to do? The default Declude Virus configuration file usually doesn't need to be changed, aside from your activation code and the details about your virus scanner. -Scott --- Declude JunkMail: The advanced anti-spam solution for IMail mailservers since 2000. Declude Virus: Ultra reliable virus detection and the leader in mailserver vulnerability detection. Find out what you've been missing: Ask for a free 30-day evaluation. --- [This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)] --- This E-mail came from the Declude.Virus mailing list. To unsubscribe, just send an E-mail to [EMAIL PROTECTED], and type unsubscribe Declude.Virus.The archives can be found at http://www.mail-archive.com.
RE: [Declude.Virus] F-Prot letting TROJ_REVOP.F thru
Have you sent those caught viruses to the declude or F-prot virus traps? They may be corrupted and not viable viruses any longer. Meaning they are no longer harmful (Possibly). F-prot would surely want to see this. Go to their website and submit the samples. Doug -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of M Pilletere Sent: Friday, June 18, 2004 11:53 AM To: [EMAIL PROTECTED] Subject: [Declude.Virus] F-Prot letting TROJ_REVOP.F thru Hi, I have just started using Declude with F-Prot as our virus scanner. Was using Trend Viruswall. Have noticed that F-Prot is letting thru viruses that Trend desktop scanners are catching. I have had 11 TROJ_REVOP.F get thru today alone. Is anyone else seeing this? Trying to use ClamAV as a second scanner but need to wait till I can reboot the mail server to get it functioning. Thanks Mike RSR Group,Inc. --- [This E-mail scanned for viruses by Declude Virus] --- [This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)] --- This E-mail came from the Declude.Virus mailing list. To unsubscribe, just send an E-mail to [EMAIL PROTECTED], and type unsubscribe Declude.Virus.The archives can be found at http://www.mail-archive.com. --- [This E-mail scanned for viruses by Declude Virus] --- [This E-mail scanned for viruses by Declude Virus] --- [This E-mail was scanned for viruses by Declude Virus (http://www.declude.com)] --- This E-mail came from the Declude.Virus mailing list. To unsubscribe, just send an E-mail to [EMAIL PROTECTED], and type unsubscribe Declude.Virus.The archives can be found at http://www.mail-archive.com.