Re: [Clamav-users] Clamav Update with Fedora Core

2005-09-21 Thread Brian Morrison
On Tue, 20 Sep 2005 23:53:55 -0700 (PDT) in [EMAIL PROTECTED] doei <[EMAIL PROTECTED]> wrote: > I'm use clamav versi 0.80 with Fedora Core 2, I want > to upgrade my clamav software, where i can found the > documentations clamav upgrade with fedora core 2. I > can't upgrade because i don't wan

Re: [Clamav-users] Clamav Update with Fedora Core

2005-09-21 Thread Nigel Horne
On Wed, 2005-09-21 at 07:53, doei wrote: > I'm use clamav versi 0.80 with Fedora Core 2, I want > to upgrade my clamav software, where i can found the > documentations clamav upgrade with fedora core 2. I > can't upgrade because i don't wanna take a risk my > mail server. You are taking risks by

[Clamav-users] clamdscan doens't recognize virus

2005-09-21 Thread Marco Berizzi
Hello everybody. I'm using clam 0.87 with mimedefang. This moring a virus has been slipped through. This is the output from clamdscan: /tmp/photo.zip: OK --- SCAN SUMMARY --- Infected files: 0 Time: 0.143 sec (0 m 0 s) and this is the output from clamscan: photo.zip: Trojan.W3

[Clamav-users] How to check since when particular worm is detected?

2005-09-21 Thread Michal Kochanowicz
Hi A user forwarded an email with worm to me. This email passed our clamav on 2005.09.20 22:10:41 CEST. When I checked forwarded email with clamscan around 2005.09.21 10:00:00 CEST it correctly detected Worm.Bagle.Gen-5. Between an original email and my test there were two auto updates of DB. Ho

Re: [Clamav-users] clamdscan doens't recognize virus

2005-09-21 Thread Marco Berizzi
Sorry I was forgotting... This is my clamd.conf ## ## Example config file for the Clam AV daemon ## Please read the clamd.conf(5) manual before editing this file. ## # Comment or remove the line below. #Example # Uncomment this option to enable logging. # LogFile must be writable for the user r

Re: [Clamav-users] Clamav Update with Fedora Core

2005-09-21 Thread Stephen J. Smoogen
The best bet would be to get the latest SRPM from fedora extras or dag's repository, and then doing the following on a machine that has a fedora core 2 build environment wget http://fedoraproject.org/extras/3/i386/fedora-rpmdevtools-1.1-1.fc3.noarch.rpm su root rpm -ivh fedora-rpmdevtools-1.1-1.f

[Clamav-users] Compile problems ClamAV on OpenBSD 3.6

2005-09-21 Thread Carol Overes
All, I've tried to install ClamAV-0.87 on a OpenBSD 3.6 system. During compile time, I get these errors: output.o(.text+0x7f): In function `logg_close': /root/source/clamav-0.87/clamscan/../shared/output.c:83: undefined reference to `pthread_mutex_lock' output.o(.text+0xae):/root/source/clamav-0.

Re: [Clamav-users] Compile problems ClamAV on OpenBSD 3.6

2005-09-21 Thread Nigel Horne
On Wed, 2005-09-21 at 14:59, Carol Overes wrote: > All, > > I've tried to install ClamAV-0.87 on a OpenBSD 3.6 system. During > compile time, I get these errors: > > output.o(.text+0x7f): In function `logg_close': > /root/source/clamav-0.87/clamscan/../shared/output.c:83: undefined > reference to

Re: [Clamav-users] Compile problems ClamAV on OpenBSD 3.6

2005-09-21 Thread Carol Overes
Hi Nigel and others, Nigel Horne wrote: > configure --disable-pthreads Thanks for this alternative, but I've tried this option as well. But after a successful installation, the binary 'clamd' was missing on the system. Any idea what caused this problem ? Regards, Carol

Re: [Clamav-users] Compile problems ClamAV on OpenBSD 3.6

2005-09-21 Thread C. Bensend
> Thanks for this alternative, but I've tried this option as well. But > after a successful installation, the binary 'clamd' was missing on the > system. What I normally do with my OpenBSD servers, is manually apply the patches from the official port to the new source. They usually apply cleanly

Re: [Clamav-users] Compile problems ClamAV on OpenBSD 3.6

2005-09-21 Thread Nigel Horne
On Wed, 2005-09-21 at 15:45, Carol Overes wrote: > Hi Nigel and others, > > Nigel Horne wrote: > > configure --disable-pthreads > > Thanks for this alternative, but I've tried this option as well. But > after a successful installation, the binary 'clamd' was missing on the > system. > > Any idea

Re: [Clamav-users] non reject and clean

2005-09-21 Thread Kevin B
> Kevin B wrote: > >>Hello >>clamav-milter man page says with '-N' I can set >>the milter not to reject an infected email. >>What is the correct syntax to add the option >> and will it still clean the virii?? >> >>I'm not sure where to add the -N amongst the quotes below... >> >>INPUT_MAIL_FILTER(`

Re: [Clamav-users] Compile problems ClamAV on OpenBSD 3.6

2005-09-21 Thread Carol Overes
Hi Nigel and others, Nigel Horne wrote: > I'm confused, you say clamd was missing, but you also say that the > installation was successful. I can imagine :) During compile time and installation of the binaries on the system, there are no errors. There is a Makefile in the source dir 'clamd' of t

Re: [Clamav-users] non reject and clean

2005-09-21 Thread Nigel Horne
On Wed, 2005-09-21 at 15:58, Kevin B wrote: > > Kevin B wrote: > > > >>Hello > >>clamav-milter man page says with '-N' I can set > >>the milter not to reject an infected email. > >>What is the correct syntax to add the option > >> and will it still clean the virii?? > >> > >>I'm not sure where to a

Re: [Clamav-users] Compile problems ClamAV on OpenBSD 3.6

2005-09-21 Thread Nigel Horne
On Wed, 2005-09-21 at 16:07, Carol Overes wrote: > Hi Nigel and others, > > Nigel Horne wrote: > > I'm confused, you say clamd was missing, but you also say that the > > installation was successful. > > I can imagine :) > > During compile time and installation of the binaries on the system, > th

Re: [Clamav-users] Clamav Update with Fedora Core

2005-09-21 Thread KOL Admin
I'm use clamav versi 0.80 with Fedora Core 2, I want to upgrade my clamav software, where i can found the documentations clamav upgrade with fedora core 2. I can't upgrade because i don't wanna take a risk my mail server. Try this way it work for me. go to http://www.clamav.net click on Downloa

Re: [Clamav-users] non reject and clean

2005-09-21 Thread KOL Admin
Kevin B wrote: Hello clamav-milter man page says with '-N' I can set the milter not to reject an infected email. What is the correct syntax to add the option and will it still clean the virii?? I'm not sure where to add the -N amongst the quotes below... INPUT_MAIL_FILTER(`clamav-milter', `S=l

[Clamav-users] zip files and clamav-milter

2005-09-21 Thread Nick Golder
I am consistently seeing zip files with the Worm.Bagle.Gen-* payload getting through the clamav-milter (clamav-0.87). The milter is at least partially working: X-Virus-Scanned: ClamAV version 0.87, clamav-milter version 0.87 on xxx.xxx.xxx X-Virus-Status: Clean Manually scanning the zip archive r

RE: [Clamav-users] zip files and clamav-milter

2005-09-21 Thread Matthew.van.Eerde
Nick Golder wrote: > I am consistently seeing zip files with the Worm.Bagle.Gen-* payload > getting through the clamav-milter (clamav-0.87). The milter is at > least partially working: > X-Virus-Scanned: ClamAV version 0.87, clamav-milter version 0.87 on > xxx.xxx.xxx X-Virus-Status: Clean > Are

Re: [Clamav-users] Compile problems ClamAV on OpenBSD 3.6

2005-09-21 Thread Carol Overes
Hi Nigel, The only warning that have got during 'configure' is: configure: WARNING: resolv.h: present but cannot be compiled configure: WARNING: resolv.h: check for missing prerequisite headers? configure: WARNING: resolv.h: see the Autoconf documentation configure: WARNING: resolv.h: se

Re: [Clamav-users] How to check since when particular worm is detected?

2005-09-21 Thread Todd Lyons
Michal Kochanowicz wanted us to know: >A user forwarded an email with worm to me. This email passed our >clamav on 2005.09.20 22:10:41 CEST. When I checked forwarded email with >clamscan around 2005.09.21 10:00:00 CEST it correctly detected >Worm.Bagle.Gen-5. >Between an original email and my test

Re: [Clamav-users] Compile problems ClamAV on OpenBSD 3.6

2005-09-21 Thread Andy Fiddaman
On Wed, 21 Sep 2005, Nigel Horne wrote: ; On Wed, 2005-09-21 at 16:07, Carol Overes wrote: ; > Hi Nigel and others, ; > ; > Nigel Horne wrote: ; > > I'm confused, you say clamd was missing, but you also say that the ; > > installation was successful. ; > ; > I can imagine :) ; > ; > During compile

Re: [Clamav-users] zip files and clamav-milter

2005-09-21 Thread Nick Golder
On 2005-09-21 09:51 -0700, [EMAIL PROTECTED] wrote: > Are you using --external? Currenlty I am using LocalSocket. Using --external didn't make a difference. > > How does clamav-milter know when new virus definitions are available? > I assume freshclam doesn't notify clamav-milter threads. Is c

RE: [Clamav-users] zip files and clamav-milter

2005-09-21 Thread Matthew.van.Eerde
Nick Golder wrote: > On 2005-09-21 09:51 -0700, [EMAIL PROTECTED] wrote: >> Are you using --external? > > Currenlty I am using LocalSocket. Using --external didn't make a > difference. Did you manually scan with clamscan or clamdscan? Try both ways. > Is clamd, via LocalSocket, being used by c

Re: [Clamav-users] clamdscan doens't recognize virus

2005-09-21 Thread David Filion
Marco Berizzi wrote: Hello everybody. I'm using clam 0.87 with mimedefang. This moring a virus has been slipped through. This is the output from clamdscan: /tmp/photo.zip: OK --- SCAN SUMMARY --- Infected files: 0 Time: 0.143 sec (0 m 0 s) and this is the output from clamsca

Re: [Clamav-users] Compile problems ClamAV on OpenBSD 3.6

2005-09-21 Thread Nigel Horne
Carol Overes wrote: Hi Nigel, The only warning that have got during 'configure' is: configure: WARNING: resolv.h: present but cannot be compiled configure: WARNING: resolv.h: check for missing prerequisite headers? configure: WARNING: resolv.h: see the Autoconf documentation configure: WAR

[Clamav-users] Clamav Upgrade with Fedora Core

2005-09-21 Thread doei
This My clamav on my server [EMAIL PROTECTED] clamav]# rpm -qa |grep clamav clamav-devel-0.80-1 clamav-0.80-1 I'm download clamav update from http://crash.fce.vutbr.cz/crash-hat/2/clamav/ when i wanna upgrade my clamav this error open : [EMAIL PROTECTED] clamav]# rpm -Uhv clamav-0.87-1.i386.rpm

[Clamav-users] how to upgrade clamav with fedora core

2005-09-21 Thread doei
My Server Spec: - Fedora Core 2 - qmail+qmailscanner - zlib-1.2.1.1-2.1 This My clamav on my server [EMAIL PROTECTED] clamav]# rpm -qa |grep clamav clamav-devel-0.80-1 clamav-0.80-1 I'm download clamav update from http://crash.fce.vutbr.cz/crash-hat/2/clamav/ when i wanna upgrade my clamav this

Re: [Clamav-users] how to upgrade clamav with fedora core

2005-09-21 Thread KOL Admin
My Server Spec: - Fedora Core 2 - qmail+qmailscanner - zlib-1.2.1.1-2.1 This My clamav on my server [EMAIL PROTECTED] clamav]# rpm -qa |grep clamav clamav-devel-0.80-1 clamav-0.80-1 I'm download clamav update from http://crash.fce.vutbr.cz/crash-hat/2/clamav/ when i wanna upgrade my clamav thi

[Clamav-users] howto upgrade clamav with fedora core

2005-09-21 Thread doei
My Server Spec: - Fedora Core 2 - qmail+qmailscanner - zlib-devel-1.2.1.2-0.fc2 - zlib-1.2.1.2-0.fc2 This My clamav on my server [EMAIL PROTECTED] clamav]# rpm -qa |grep clamav clamav-devel-0.80-1 clamav-0.80-1 I'm download clamav update from: http://crash.fce.vutbr.cz/crash-hat/2/clamav/ I'm u

Re: [Clamav-users] clamav oddity w.r.t Worm.Bagle.Gen-3?

2005-09-21 Thread Diego d'Ambra
Fernando Durango wrote: Hello all, Just wondering if anyone else noticed something strange recently with Worm.Bagle.Gen-3 viruses. Using exim+exiscan-acl+clamav, we have been seeing several of these viruses sneak thru. Decided to test out 0.87 (upgrading from 0.86.2) on one of the servers where

Re: [Clamav-users] mytob.gh = morphine-packed binaries and bagle.bb-gen = pex-packed binaries?

2005-09-21 Thread Diego d'Ambra
Helga Fcours wrote: Does the mytob.gh signature match on most morphine/mew packed binaries? Bagle.BB-gen matches all pex packed binaries that are not infected (notepad and wordpad included) and the pex packer binary itself as Bagle.BB-gen, so I suspect that this mytob signature might be doing the