Derek J. Balling wrote:

I was originally going to ask "how come this virus is getting through ([EMAIL PROTECTED])", but decided "let's update the virus definitions and see if it's been added already".

Except that freshclam segfaults.

Anyone know of any known problems on that front?

[strace output below]

D



execve("/usr/bin/freshclam", ["freshclam", "--quiet"], [/* 20 vars */]) = 0
uname({sys="Linux", node="whitechapel.byramhealthcare.com", ...}) = 0
brk(0) = 0x804e458
open("/etc/ld.so.preload", O_RDONLY) = -1 ENOENT (No such file or directory)
open("/etc/ld.so.cache", O_RDONLY) = 3
fstat64(3, {st_mode=S_IFREG|0644, st_size=9594, ...}) = 0
old_mmap(NULL, 9594, PROT_READ, MAP_PRIVATE, 3, 0) = 0x40012000
close(3) = 0
open("/usr/lib/libclamav.so.1", O_RDONLY) = 3
read(3, "\177ELF\1\1\1\0\0\0\0\0\0\0\0\0\3\0\3\0\1\0\0\0\220V\0"..., 1024) = 1024
fstat64(3, {st_mode=S_IFREG|0644, st_size=111600, ...}) = 0
old_mmap(NULL, 133604, PROT_READ|PROT_EXEC, MAP_PRIVATE, 3, 0) = 0x40015000
mprotect(0x40030000, 23012, PROT_NONE) = 0
old_mmap(0x40030000, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED, 3, 0x1a000) = 0x40030000
old_mmap(0x40031000, 18916, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x40031000
close(3) = 0
open("/usr/lib/libz.so.1", O_RDONLY) = 3
read(3, "\177ELF\1\1\1\0\0\0\0\0\0\0\0\0\3\0\3\0\1\0\0\0\200\30"..., 1024) = 1024
fstat64(3, {st_mode=S_IFREG|0644, st_size=55432, ...}) = 0
old_mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x40036000
old_mmap(NULL, 54460, PROT_READ|PROT_EXEC, MAP_PRIVATE, 3, 0) = 0x40037000
mprotect(0x40043000, 5308, PROT_NONE) = 0
old_mmap(0x40043000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED, 3, 0xc000) = 0x40043000
close(3) = 0
open("/usr/lib/libbz2.so.1.0", O_RDONLY) = 3
read(3, "\177ELF\1\1\1\0\0\0\0\0\0\0\0\0\3\0\3\0\1\0\0\0\0\22\0"..., 1024) = 1024
fstat64(3, {st_mode=S_IFREG|0644, st_size=60392, ...}) = 0
old_mmap(NULL, 63472, PROT_READ|PROT_EXEC, MAP_PRIVATE, 3, 0) = 0x40045000
mprotect(0x40053000, 6128, PROT_NONE) = 0
old_mmap(0x40053000, 8192, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED, 3, 0xd000) = 0x40053000
close(3) = 0
open("/usr/lib/libgmp.so.3", O_RDONLY) = 3
read(3, "\177ELF\1\1\1\0\0\0\0\0\0\0\0\0\3\0\3\0\1\0\0\0\300U\0"..., 1024) = 1024
fstat64(3, {st_mode=S_IFREG|0644, st_size=160416, ...}) = 0
old_mmap(NULL, 163520, PROT_READ|PROT_EXEC, MAP_PRIVATE, 3, 0) = 0x40055000
mprotect(0x4007c000, 3776, PROT_NONE) = 0
old_mmap(0x4007c000, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED, 3, 0x26000) = 0x4007c000
close(3) = 0
open("/lib/libpthread.so.0", O_RDONLY) = 3
read(3, "\177ELF\1\1\1\0\0\0\0\0\0\0\0\0\3\0\3\0\1\0\0\0\224D\0"..., 1024) = 1024
fstat64(3, {st_mode=S_IFREG|0644, st_size=81959, ...}) = 0
old_mmap(NULL, 323104, PROT_READ|PROT_EXEC, MAP_PRIVATE, 3, 0) = 0x4007d000
mprotect(0x40089000, 273952, PROT_NONE) = 0
old_mmap(0x40089000, 12288, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED, 3, 0xc000) = 0x40089000
old_mmap(0x4008c000, 261664, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x4008c000
close(3) = 0
open("/lib/libc.so.6", O_RDONLY) = 3
read(3, "\177ELF\1\1\1\0\0\0\0\0\0\0\0\0\3\0\3\0\1\0\0\0\275Z\1"..., 1024) = 1024
fstat64(3, {st_mode=S_IFREG|0755, st_size=1104040, ...}) = 0
old_mmap(NULL, 1113796, PROT_READ|PROT_EXEC, MAP_PRIVATE, 3, 0) = 0x400cc000
mprotect(0x401d4000, 32452, PROT_NONE) = 0
old_mmap(0x401d4000, 24576, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED, 3, 0x107000) = 0x401d4000
old_mmap(0x401da000, 7876, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x401da000
close(3) = 0
old_mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x401dc000
munmap(0x40012000, 9594) = 0
getrlimit(0x3, 0xbffff734) = 0
setrlimit(RLIMIT_STACK, {rlim_cur=2044*1024, rlim_max=RLIM_INFINITY}) = 0
getpid() = 3674
rt_sigaction(SIGRTMIN, {0x40084c2a, [], 0x4000000}, NULL, 8) = 0
rt_sigaction(SIGRT_1, {0x40084c62, [], 0x4000000}, NULL, 8) = 0
rt_sigaction(SIGRT_2, {0x40084d15, [], 0x4000000}, NULL, 8) = 0
rt_sigprocmask(SIG_BLOCK, [RTMIN], NULL, 8) = 0
_sysctl({{CTL_KERN, KERN_VERSION}, 2, 0xbffff75c, 31, (nil), 0}) = 0
brk(0) = 0x804e458
brk(0x804f458) = 0x804f458
brk(0) = 0x804f458
brk(0x8050000) = 0x8050000
open("/etc/clamav/freshclam.conf", O_RDONLY) = 3
fstat64(3, {st_mode=S_IFREG|0644, st_size=412, ...}) = 0
old_mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 0x40012000
read(3, "# Automatically created by the c"..., 4096) = 412
--- SIGSEGV (Segmentation fault) ---
+++ killed by SIGSEGV +++

Please run "gdb freshclam", enter "run --quiet", and when it received signal 11, enter "bt". Then send me the output you got and your freshclam.conf + clamav.conf (in private, not to the list).


Thank you.


------------------------------------------------------- SF.Net is sponsored by: Speed Start Your Linux Apps Now. Build and deploy apps & Web services for Linux with a free DVD software kit from IBM. Click Now! http://ads.osdn.com/?ad_id=1356&alloc_id=3438&op=click _______________________________________________ Clamav-users mailing list [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/clamav-users

Reply via email to