Starting using the application
33
4.6. Mail server protection without
additional configuration
Exchange server protection against malware and SPAM starts operating
immediately after the Security Server component is installed. The default
operation mode of the application provides for the following:
•
The application will scan objects for the presence of currently known
malicious software (with the standard anti-virus protection level applied);
•
the body of the message and attached objects of any format will
be scanned, except for container objects with the level of
nesting above 32;
•
the maximum time for scanning 1 object is 180 seconds;
•
when an infected object is detected, the application saves a
copy of this object (attachment or the body of the message) in
the backup storage, then attempts to disinfect the object and, if
disinfection is impossible, the application deletes the object and
replaces it with a text file containing a notification in the
following format:
Malicious object %VIRUS_NAME% has been
detected. File (%OBJECT_NAME%) was deleted by
Kaspersky Security 5.5 for Microsoft Exchange
Server 2003.
If an object that cannot be disinfected is detected in the body of
the message, the body of the message will be replaced with a
similar text notification.
•
when a suspicious object is detected, the application will save
its copy (attachment or the body of the message) in the backup
storage.
Suspicious objects detected in message body are replaced with
a notification of the following format:
A suspicious object (possibly %VIRUS_NAME%) has
been detected. File (%OBJECT_NAME%) was deleted
by Kaspersky Security 5.5 for Microsoft
Exchange Server 2003.
If a suspicious object is detected in the attached file, the
application will change filename and extension of attached
objects. Renamed objects will have
txt
extension.