Vulnerability Development mailing list archives

Virus Scan Notices in eMail


From: bk () LOCALHOST CA (Brian Kifiak)
Date: Tue, 27 Jun 2000 14:34:04 -0700


Hi,

Could someone enlighten me as to why many server-side eMail virus
scanners add this information to eMails they scan?

   ****** Message from InterScan E-Mail VirusWall NT ******

   ** No virus found in attached file noname.htm

   *****************     End of message     ***************

Is there something I'm missing, or isn't this actually a BAD thing?
If users get comfort from seeing messages like this, what's to stop
someone from adding this to an eMail containing a virus they want to
spread?  Wouldn't the user be more likely to open it?  (Assuming
your virus slipped through their detection mechanism undetected.)


Current thread: