Doing some testing with the eciar virus gave me inconsistant resutlts. It would always catch the .exe, .zip and .com, but failed several times to catch eicar.com.txt.
I am using dual AV
Transparent Proxy
IE6
Could this be why?
HTTP Content Filter live log attached.
C68