Dňa Pi 3. Máj 2002 15:38 CertaintyTech - Ed Henderson napísal:
> > How to get complete name of founded virus correctly ?
> > I used this line in Q-S:
> >
> > if ($DD =~ /\w(.*) infected with (.*)\n/) {
> >
> > With this I only get the first part of name on first line.
> > So I get only 'Wi', which is not good...
> > I don't know how to get the second part from the second line.
> >
> > Please help, I will then send this suport to Q-S distro.
> >
> > Thanks.
> >
> > Matus Hrusovsky
> > [EMAIL PROTECTED]
>
> Try:
>
> $DD =~ s/\n//g;
>
> This should strip out any newlines from $DD.

I make this:

$DD =~ /\w(.*) infected with (.*)\n(.*)/
or
$DD =~ /.*\sinfected\s(.*)\n(.*)\n/
and then $DD=~s/with\s//g; to remove "with" for reason
'with' is also broken to two lines.

Now I get whole description from first founded virus.

Anybody help me to get all descriptions from this example:

--cut--
Loading /usr/local/drweb/drwebase.vdb - Ok, virus records: 27860
/var/spool/qmailscan/DOMAIN10204202184099220/DD18.XLS - Ok
/var/spool/qmailscan/DOMAIN10204202184099220/index - Ok
/var/spool/qmailscan/DOMAIN10204202184099220/DD33.bat infected with Win3
2.HLLM.Klez.2
/var/spool/qmailscan/DOMAIN10204202184099220/JHDIHEJH.EXE infected
with Win98.Vecna.23040
Scan report for "/var/spool/qmailscan/DOMAIN10204202184099220":
--cut--

IMHO Dr.Web(www.sald.com) is good antivir and more stable than HBEDV.

Matus

_______________________________________________________________

Have big pipes? SourceForge.net is looking for download mirrors. We supply
the hardware. You get the recognition. Email Us: [EMAIL PROTECTED]
_______________________________________________
Qmail-scanner-general mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/qmail-scanner-general

Reply via email to