Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Westi on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

The action was to report only....

Status
Not open for further replies.

wirk

MIS
Jan 20, 2003
40
US
Hallo,

Exchange 5.5 SP4 on NT4 SP6a
Etrust Antivirus v7

I have all options (Local Scan/Mail/Realmon) set to Delete, and it works.
But I get: “The action was to report only” with file Yaha.P.worm

I can not find any extra Info. Or extra settings, maybe some one can help.
Thanks in advance.

Event Type: Warning
Event Source: eTrust Antivirus Option for Microsoft Exchange
Event Category: None
Event ID: 2
Date: 19.08.2003
Time: 07:32:12
User: N/A
Computer: MAIL SERVER
Description:
The [Win32/Yaha.P.Worm] virus found in [make_scr.zip.ZIP] was left alone. The action was to report only.


 
Reply from other Forum:

None of the CA antiviruses cleans a compressed file.
They only report the error.
When the file is extracted from the archive (the zip file in this case), it will be handled by the antivirus.
They will not remove it from the compressed file.

You can ask for an enhancement so that when a virus is found in an archive, the complete archive will be removed (like an uncleanable file).
This is the only solution they can offer for all archive files because cleaning means rebuilding the archive file.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top