Re: lug-bg: security problem

2002-10-07 Thread Theodor Milkov

> Pogledni da ne si obnowqwal engine-a na virus skenerite
> Ako polzwash script kojto wika antiwirusnite I obrabotwa otgoworite move
> da ne ochakwa tochno tozi wid na texta.
> Pone takyw problem imashe sys mailscanner-a + f-prot v3.12a. Ot f-prot
> smeniha stringa kojto wryshta I mailscanner scripta ne se useshtashe...

Vav niakoia ot versiite na H+BEDV antivir pak promeniha exit codes.
Predi vsichko raboteshe normalno, a sled promianata ako niamash license
key vinagi vrashta exit code 214.

-- 
Theodor Milkov   Administrator IP Networks
Davidov Net  Phone: +359 (2) 730158
PGP: http://www.zimage.del.bg/zimage.asc

A mail-list of Linux Users Group - Bulgaria (bulgarian linuxers).
http://www.linux-bulgaria.org - Hosted by Internet Group Ltd. - Stara Zagora
To unsubscribe: http://www.linux-bulgaria.org/public/mail_list.html




RE: lug-bg: security problem

2002-10-07 Thread Anton Todorov

> -Original Message-
> From: Niki Nick [mailto:[EMAIL PROTECTED]] 
> Sent: Monday, October 07, 2002 2:52 PM
> To: [EMAIL PROTECTED]
> Subject: lug-bg: security problem
> 
> 
> Plzvam amavis.0.2.1 i sophos i dosega ne sam imal podoben 
> problem a saob6tenieto za sweep i dosega si go pokazva6e no 
> ne imalo problems. Sa6tite sa bili nastroikite i predi ne sam 
> gi promenial i predi si e spiral virusite bez problem... dori 
> tochno klez_g
> 
> 
> scanmails (0.2.1) called -f [EMAIL PROTECTED] -Y -a  -d nikig
> FROM: 
> TO: 
> Contents of /var/tmp/scanmails28514/unpacked
> /var/tmp/scanmails28514/unpacked:
> total 94
> drwxr-xr-x3 root root 1024 Oct  7 11:06 .
> drwx--3 root root 1024 Oct  7 11:06 ..
> -rw-r--r--1 root root  319 Oct  7 11:06 
> 1033978014.28538-0.netgate.csoft.bg
> -rw-r--r--1 root root 1056 Oct  7 11:06 
> 1033978014.28538-1.netgate.csoft.bg
> -rw-r--r--1 root root87130 Oct  7 11:06 Mail_8_.exe
> -rw-r--r--1 root root  357 Oct  7 11:06 Mail_8_.htm
> drwxr-xr-x2 root root 1024 Oct  7 11:06 SFX
> 
> /var/tmp/scanmails28514/unpacked/SFX:
> total 2
> drwxr-xr-x2 root root 1024 Oct  7 11:06 .
> drwxr-xr-x3 root root 1024 Oct  7 11:06 ..
> Useful life of SWEEP has been exceeded
> >>> Virus 'W32/Klez-G' found in file 
> >>> /var/tmp/scanmails28514/unpacked/Mail_8_.exe

Pogledni da ne si obnowqwal engine-a na virus skenerite
Ako polzwash script kojto wika antiwirusnite I obrabotwa otgoworite move
da ne ochakwa tochno tozi wid na texta.
Pone takyw problem imashe sys mailscanner-a + f-prot v3.12a. Ot f-prot
smeniha stringa kojto wryshta I mailscanner scripta ne se useshtashe...

Pozdrawi,
Anton Todorov

A mail-list of Linux Users Group - Bulgaria (bulgarian linuxers).
http://www.linux-bulgaria.org - Hosted by Internet Group Ltd. - Stara Zagora
To unsubscribe: http://www.linux-bulgaria.org/public/mail_list.html




lug-bg: security problem

2002-10-07 Thread Niki Nick

Plzvam amavis.0.2.1 i sophos i dosega ne sam imal podoben problem
a saob6tenieto za sweep i dosega si go pokazva6e no ne imalo problems. Sa6tite sa bili 
nastroikite i predi ne sam gi promenial
i predi si e spiral virusite bez problem... dori tochno klez_g


scanmails (0.2.1) called -f [EMAIL PROTECTED] -Y -a  -d nikig
FROM: 
TO: 
Contents of /var/tmp/scanmails28514/unpacked
/var/tmp/scanmails28514/unpacked:
total 94
drwxr-xr-x3 root root 1024 Oct  7 11:06 .
drwx--3 root root 1024 Oct  7 11:06 ..
-rw-r--r--1 root root  319 Oct  7 11:06 
1033978014.28538-0.netgate.csoft.bg
-rw-r--r--1 root root 1056 Oct  7 11:06 
1033978014.28538-1.netgate.csoft.bg
-rw-r--r--1 root root87130 Oct  7 11:06 Mail_8_.exe
-rw-r--r--1 root root  357 Oct  7 11:06 Mail_8_.htm
drwxr-xr-x2 root root 1024 Oct  7 11:06 SFX

/var/tmp/scanmails28514/unpacked/SFX:
total 2
drwxr-xr-x2 root root 1024 Oct  7 11:06 .
drwxr-xr-x3 root root 1024 Oct  7 11:06 ..
Useful life of SWEEP has been exceeded
>>> Virus 'W32/Klez-G' found in file /var/tmp/scanmails28514/unpacked/Mail_8_.exe
H+BEDV AntiVir scanstatus0 is: 0
Mcafee scanstatus1 is: 0
Dr. Solomon (old) scanstatus2 is: 0
Dr. Solomon (new) scanstatus3 is: 0
Sophos Sweep scanstatus4 is: 3
NAI Virus Scan 4.x scanstatus5 is: 0
KasperskyLab AVP scanstatus6 is: 0
KasperskyLab AVPDaemonClient scantatus7 is: 0
F-Secure Antivirus scanstatus8 is: 0
Trend Micro FileScanner scanstatus9 is: 0
CyberSoft vfind scanstatus10 is: 0
CAI InoculateIT (inocucmd) scanstatus11 is: 0

No virus found - good

-
http://www.pari.bg/abonamenti - Ñòàâà âúïðîñ çà ÏÀÐÈ. Çà ìíîãî ÏÀÐÈ. 365 äíè â 
ãîäèíàòà.

A mail-list of Linux Users Group - Bulgaria (bulgarian linuxers).
http://www.linux-bulgaria.org - Hosted by Internet Group Ltd. - Stara Zagora
To unsubscribe: http://www.linux-bulgaria.org/public/mail_list.html




Re: lug-bg: security problem

2002-10-07 Thread Andrei Boyanov

En réponse à Niki Nick <[EMAIL PROTECTED]>:

> Zdraveite  imam problem koto ne moga da razbera za6to stava taka
>  pri uslovie vsichko e rabotilo do sega. Antivirusnata mi za6tita se
> dani i propuska maila ... pri uslovie che otkriva virusa ... Ako niakoi
> ima ideia kakva e prichinata .. She sam mu blagodaren.
> 
> 
> -rw-r--r--1 root root87130 Oct  7 11:06 Mail_8_.exe
> -rw-r--r--1 root root  357 Oct  7 11:06 Mail_8_.htm
> drwxr-xr-x2 root root 1024 Oct  7 11:06 SFX
> 
> /var/tmp/scanmails28514/unpacked/SFX:
> total 2
> drwxr-xr-x2 root root 1024 Oct  7 11:06 .
> drwxr-xr-x3 root root 1024 Oct  7 11:06 ..
> Useful life of SWEEP has been exceeded
> >>> Virus 'W32/Klez-G' found in file
> /var/tmp/scanmails28514/unpacked/Mail_8_.exe
> H+BEDV AntiVir scanstatus0 is: 0
> Mcafee scanstatus1 is: 0
> Dr. Solomon (old) scanstatus2 is: 0
> Dr. Solomon (new) scanstatus3 is: 0
> Sophos Sweep scanstatus4 is: 3
> NAI Virus Scan 4.x scanstatus5 is: 0
> KasperskyLab AVP scanstatus6 is: 0
> KasperskyLab AVPDaemonClient scantatus7 is: 0
> F-Secure Antivirus scanstatus8 is: 0
> Trend Micro FileScanner scanstatus9 is: 0
> CyberSoft vfind scanstatus10 is: 0
> CAI InoculateIT (inocucmd) scanstatus11 is: 0
> 


Ne znam kak tochno gi chistish, no ochevidno preglejdash fajlovete s niakolko
antivirusni programi. Spored mene problema moje da idva ottam, che samo Sophos
Sweep hvashta virusa, no pyk na nego izglejda mu e iztekyl perioda, prez kojto
mojesh da go polzvash... ('Useful life of SWEEP has been exceeded')


rgds,

Andrei

A mail-list of Linux Users Group - Bulgaria (bulgarian linuxers).
http://www.linux-bulgaria.org - Hosted by Internet Group Ltd. - Stara Zagora
To unsubscribe: http://www.linux-bulgaria.org/public/mail_list.html




Re: lug-bg: security problem

2002-10-07 Thread Theodor Milkov

Ne spomenavash kakvo polzvash... amavis li e tova, shto li?

On Mon, Oct 07, 2002 at 11:43:34AM +0300, Niki Nick wrote:
> Zdraveite  imam problem koto ne moga da razbera za6to stava taka  pri 
>uslovie vsichko e rabotilo do sega. Antivirusnata mi za6tita se dani i propuska maila 
>... pri uslovie che otkriva virusa ... Ako niakoi ima ideia kakva e prichinata .. She 
>sam mu blagodaren.
> 
> 
> -rw-r--r--1 root root87130 Oct  7 11:06 Mail_8_.exe
> -rw-r--r--1 root root  357 Oct  7 11:06 Mail_8_.htm
> drwxr-xr-x2 root root 1024 Oct  7 11:06 SFX
> 
> /var/tmp/scanmails28514/unpacked/SFX:
> total 2
> drwxr-xr-x2 root root 1024 Oct  7 11:06 .
> drwxr-xr-x3 root root 1024 Oct  7 11:06 ..
> Useful life of SWEEP has been exceeded
> >>> Virus 'W32/Klez-G' found in file /var/tmp/scanmails28514/unpacked/Mail_8_.exe
> H+BEDV AntiVir scanstatus0 is: 0
> Mcafee scanstatus1 is: 0
> Dr. Solomon (old) scanstatus2 is: 0
> Dr. Solomon (new) scanstatus3 is: 0
> Sophos Sweep scanstatus4 is: 3
> NAI Virus Scan 4.x scanstatus5 is: 0
> KasperskyLab AVP scanstatus6 is: 0
> KasperskyLab AVPDaemonClient scantatus7 is: 0
> F-Secure Antivirus scanstatus8 is: 0
> Trend Micro FileScanner scanstatus9 is: 0
> CyberSoft vfind scanstatus10 is: 0
> CAI InoculateIT (inocucmd) scanstatus11 is: 0
> 
> No virus found - good
> 
> 
> -
> http://www.pari.bg/abonamenti - Ñòàâà âúïðîñ çà ÏÀÐÈ. Çà ìíîãî ÏÀÐÈ. 365 äíè â 
>ãîäèíàòà.
> 
> A mail-list of Linux Users Group - Bulgaria (bulgarian linuxers).
> http://www.linux-bulgaria.org - Hosted by Internet Group Ltd. - Stara Zagora
> To unsubscribe: http://www.linux-bulgaria.org/public/mail_list.html
> 

-- 
Theodor Milkov   Administrator IP Networks
Davidov Net  Phone: +359 (2) 730158
PGP: http://www.zimage.del.bg/zimage.asc

A mail-list of Linux Users Group - Bulgaria (bulgarian linuxers).
http://www.linux-bulgaria.org - Hosted by Internet Group Ltd. - Stara Zagora
To unsubscribe: http://www.linux-bulgaria.org/public/mail_list.html




lug-bg: security problem

2002-10-07 Thread Niki Nick

Zdraveite  imam problem koto ne moga da razbera za6to stava taka  pri uslovie 
vsichko e rabotilo do sega. Antivirusnata mi za6tita se dani i propuska maila ... pri 
uslovie che otkriva virusa ... Ako niakoi ima ideia kakva e prichinata .. She sam mu 
blagodaren.


-rw-r--r--1 root root87130 Oct  7 11:06 Mail_8_.exe
-rw-r--r--1 root root  357 Oct  7 11:06 Mail_8_.htm
drwxr-xr-x2 root root 1024 Oct  7 11:06 SFX

/var/tmp/scanmails28514/unpacked/SFX:
total 2
drwxr-xr-x2 root root 1024 Oct  7 11:06 .
drwxr-xr-x3 root root 1024 Oct  7 11:06 ..
Useful life of SWEEP has been exceeded
>>> Virus 'W32/Klez-G' found in file /var/tmp/scanmails28514/unpacked/Mail_8_.exe
H+BEDV AntiVir scanstatus0 is: 0
Mcafee scanstatus1 is: 0
Dr. Solomon (old) scanstatus2 is: 0
Dr. Solomon (new) scanstatus3 is: 0
Sophos Sweep scanstatus4 is: 3
NAI Virus Scan 4.x scanstatus5 is: 0
KasperskyLab AVP scanstatus6 is: 0
KasperskyLab AVPDaemonClient scantatus7 is: 0
F-Secure Antivirus scanstatus8 is: 0
Trend Micro FileScanner scanstatus9 is: 0
CyberSoft vfind scanstatus10 is: 0
CAI InoculateIT (inocucmd) scanstatus11 is: 0

No virus found - good


-
http://www.pari.bg/abonamenti - Ñòàâà âúïðîñ çà ÏÀÐÈ. Çà ìíîãî ÏÀÐÈ. 365 äíè â 
ãîäèíàòà.

A mail-list of Linux Users Group - Bulgaria (bulgarian linuxers).
http://www.linux-bulgaria.org - Hosted by Internet Group Ltd. - Stara Zagora
To unsubscribe: http://www.linux-bulgaria.org/public/mail_list.html