On Thu, 02 Sep 2004 at 15:44:52 -0500, Kevin Blackwell wrote:
>I've been having problems with clamav. Every Sunday, clamav dies.
> These are the last messages in the logs every week.
>
> ERROR: Can't unlink the socket file /var/run/clamav/clamd.ctl
> ERROR: Can't unlink the pid file /var/run/
Submit the virus, that way your helping the community.
There is a way to check which names are in the clamav-database, but
the command slipped my mind...
- Original Message -
From: Matjaz Antloga <[EMAIL PROTECTED]>
Date: Fri, 3 Sep 2004 08:33:34 +0200
Subject: [Clamav-users] Virus getti
Virus: 'Troj/WindFind-D' detected in C:\Temp\Temporary Internet
Files\Content.IE5\CCLL3WD8\eros[1].exe
File deleted
Sophos has release an IDE for this trojan around 10 August. But it
slipped through Squid and Dansguardian with ClamAV.
Is it possible that ClamAV is not updated w
ralf bosz wrote:
Submit the virus, that way your helping the community.
There is a way to check which names are in the clamav-database, but
the command slipped my mind...
sigtool -l
OR
http://213.152.53.60/index.php?virus=WindFind&search=contains&Search=Search
(Kevin Spicer's virus alias db, fro
On Friday 03 September 2004 07:50, ralf bosz wrote:
> Are you using the "--mbox" option when manually scanning the mailfiles?
>
No because I dont use mbox format. I cat the email message and pipe it through
clamdscan. It picks up that it has to scan scanning mail messages from
my /etc/clamav.conf
trying to compile the current cvs-version of clamav on a solaris 5.9
SPARC-box, i am getting some error-messages which i can't resolve.
i used
/usr/local/src/clamav-devel# ./configure --sysconfdir=/etc
--enable-milter --disable-clamuko
ans make produces those errors:
Making all in clamscan
/bin/
On Fri, 3 Sep 2004 10:26:49 +0200, Scott Ryan <[EMAIL PROTECTED]> wrote:
> No because I dont use mbox format. I cat the email message and pipe it through
> clamdscan. It picks up that it has to scan scanning mail messages from
> my /etc/clamav.conf
You may want to RTFM:
--mbox Enable scanning of
On Friday 03 September 2004 11:18, Rob MacGregor wrote:
> On Fri, 3 Sep 2004 10:26:49 +0200, Scott Ryan <[EMAIL PROTECTED]>
wrote:
> > No because I dont use mbox format. I cat the email message and pipe it
> > through clamdscan. It picks up that it has to scan scanning mail messages
> > from my /e
That worked! I changed the ratio to 1000 from 300 and the zip file came
right through.
thank you so much for explaining the compression differences -- that's
exactly what I needed.
thanks again!
Laura
- Original Message -
From: "Mitch (WebCob)" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
On Fri, 2004-09-03 at 11:47 +0200, Scott Ryan wrote:
> Maybe you want to read the mail i sent again.
> I use clamdscan not clamscan
>
> # man clamdscan
Then do you have the "ScanMail" option set in the clamav.conf file set?
--
Chris
---
Thi
On Thu, 02 Sep 2004 19:29:26 +0700
"Fajar A. Nugraha" <[EMAIL PROTECTED]> wrote:
> Err ... yeah :)
>
> However, what I really wanted was to not use any file, but to use
> STREAM-like method.
The current development version now detects the EICAR test file using
the old (signature) method so no n
Hi all,
My clamav install has been working very well from what I can tell but it
never seems to catch any Netsky or My.Doom viruses. Is anyone having similar
problems? If so, do you know a way to stop them from getting through
unscathed? Thanks for your time,
Kind regards,
Elvar
-
Elvar wrote:
Hi all,
My clamav install has been working very well from what I can tell but it
never seems to catch any Netsky or My.Doom viruses. Is anyone having similar
problems? If so, do you know a way to stop them from getting through
unscathed? Thanks for your time,
Since Clam made a sign
I'm sorry to have wasted everyones time, but I overlooked my logs and it has
caught many instances of MyDoom. Sorry...
Thanks,
Elvar
On Friday 03 September 2004 04:06 pm, Elvar wrote:
> Hi all,
> My clamav install has been working very well from what I can tell but it
> never seems to cat
I installed clamav a few months ago, then upgraded to version 0.71 soon
after.
I'm curious what happened to %f for send_sms to pass the location of the
file that is infected. Only the %v parameter is passed now. I would rather
know where a virus is than the name of the virus, if I have to choose.
15 matches
Mail list logo