I predict there will be a fix for this issue at the very beginning of the
week.
David Franco-Rocha
Declude Technical / Engineering
- Original Message -
From: "Markus Gufler" <[EMAIL PROTECTED]>
To:
Sent: Friday, October 28, 2005 1:53 PM
Subject: RE: [Declude.V
That's good to hear that others are seeing this as well... Hopefully, we
will have a fix soon.
Darrell
Check out http://www.invariantsystems.com for utilities for Declude And
Imail. IMail/Declude Overflow Queue Monitori
Yep, I'm seeing the same thing with Version 3.0.5.12:
=
10/28/2005 10:56:04.343 q662b02abbeb9.smd Vulnerability flags = 0
10/28/2005 10:56:04.343 q662b02abbeb9.smd MIME file: [text/html][7bit;
Length=714 Checksum=63910]
10/28/2005 10:56:04.390 q662b02abbeb9.smd MIME file: email-de
TED])
> Sent: Friday, October 28, 2005 6:44 PM
> To: Declude.Virus@declude.com
> Subject: Re: [Declude.Virus] Virus name reported as different
> than what scanner detected.
>
> A little more checking and this seems to be happening on any
> message infected with a virus
A little more checking and this seems to be happening on any message
infected with a virus Possible bug...
Running 3.x, AVAFTERJM, with EXITSCANONVIRUSDETECT ON
10/28/2005 00:39:56.359 qab8ff7a40618ffdf.smd File(s) are INFECTED [
W32/[EMAIL PROTECTED]: 3]
10/28/2005 00:41:47.968 qabfaf
I'm guessing this is a generic capture.
While I'm not familiar with the details on F-Prot, most Anti-virus
companies will see virus like structures and stop the file even though
they don't have the details to give it a name yet.
This might be happening with Bagle.Z (yesterday) or a new Bagle (
EMAIL PROTECTED]
> Subject: RE: [Declude.Virus] Virus name
>
> W32/[EMAIL PROTECTED] virus
>
>
> Aww, c'mon "NewWorm" has a nice ring to it.
>
> Sharyn
>
>
> We are the worldwide producer and marketer of the award winning Cruzan
> Single Barrel
W32/[EMAIL PROTECTED] virus
Aww, c'mon "NewWorm" has a nice ring to it.
Sharyn
We are the worldwide producer and marketer of the award winning Cruzan
Single Barrel Rum, judged "Best in the World" at the annual
San Francisco Wine and Spirits Championships. For
more information, please click (g
I am running Fprot and I am wanting to know how I can put the virus name in
the Declude LogFile when it reports in the log file.
If you use LOGLEVEL MID, it should get recorded in the log file.
-Scott
---
Declude JunkMail: The advanced anti-spam
y 15, 2002 3:54
PMTo: [EMAIL PROTECTED]Subject: Re:
[Declude.Virus] Virus name reporting for InoculateIT
Here's the reply from CA tech support:
"The scan from the DOS mode will not able to
report the virus name, even thesummary will display about the infection
and will t
could download a copy of inocucmd.exe,
since it isn't obvious on their website. We'll see what they
say.
Stan
- Original Message -
From:
Rodney Bertsch
To: [EMAIL PROTECTED]
Sent: Wednesday, May 15, 2002 7:58
AM
Subject: RE: [Declude.Virus] Virus name
Here's
a similar test from my system:
*** InoculateIT AntiVirus Summary
Listing *** 05-13-2002 13:58:42
Engine version: 35.02
05/02/2002Data version: 35.52 05/09/2002Examining
Workstation Memory...No Viruses Were Detected In Workstation MemoryScanning
INOCUCMD.EXE. Please wait ...No
Rodney
-Original Message-From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]]On Behalf Of Stan
BuckSent: Monday, May 13, 2002 12:11 PMTo:
[EMAIL PROTECTED]Subject: Re: [Declude.Virus] Virus name
reporting for InoculateIT
I believe that Inocluan is an earlier pr
EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On
Behalf Of Stan BuckSent: Monday, May 13, 2002 12:11
PMTo: [EMAIL PROTECTED]Subject: Re:
[Declude.Virus] Virus name reporting for InoculateIT
I believe that Inocluan is an earlier program than
InoculateIT. At any rate, I can't find
y Bertsch
To: [EMAIL PROTECTED]
Sent: Monday, May 13, 2002 11:15 AM
Subject: RE: [Declude.Virus] Virus name
reporting for InoculateIT
Hello,
Yes,
we use Inoculan and get the virus names no problem. We need to compare
notes and see what we have configured differently. Her
Hello,
Yes,
we use Inoculan and get the virus names no problem. We need to compare
notes and see what we have configured differently. Here is a piece of our
scan.bat that Declude calls;
INOCUcmd.exe %1 /LIS %1\report.txt
-
Rodney
-Original Message-From:
[EMAIL PROTECTED
16 matches
Mail list logo