RE: AW: [Clamav-users] VMWARE and False positives?

2004-12-15 Thread Scott Moore
The scan results below are false positivesfor Exploit.IFrame.Gen. I ran a Clamav scan inside the Windows 2000 Vmware machine and it came back clean --zero viruses-- whereas the external scan (of the vmdk file) detected the virus! The other Vmware machines (see below) that came back with

Re: AW: [Clamav-users] VMWARE and False positives?

2004-12-13 Thread Troy Ayers
Steffen Heil wrote: Beware, that erased files in the virtual file system will only be overwritten in the vmdk, if other data is stored there. Hence, the vmdk will stay infected, if you delete virii from the virtual file system. (Just as free blocks of a drive will stay infected, if you just delete