* Joe Kletch <[EMAIL PROTECTED]> [2005-05-04 16:07]:
> I am still not catching this one on two of my four servers. Any 
> pointers to troubleshooting will be immediately pursued.

Some look like W32/[EMAIL PROTECTED] (by McAfee):

http://vil.mcafeesecurity.com/vil/content/v_132158.htm

~/virus > clamscan -V
ClamAV devel-20050504/866/Tue May  3 21:02:33 2005

~/virus > freshclam 
ClamAV update process started at Wed May  4 16:16:19 2005
main.cvd is up to date (version: 31, sigs: 33079, f-level: 4, builder: tkojm)
daily.cvd is up to date (version: 866, sigs: 1070, f-level: 4, builder: arnaud)

~/virus > clamscan *      
ATTACHMENT.zip: OK
DOCUMENT.zip: OK
Extra.dat: OK
FILE.scr: OK
FILE.zip: OK
LETTER.zip: OK
MAIL.zip: OK
README.zip: OK

----------- SCAN SUMMARY -----------
Known viruses: 34149
Engine version: devel-20050504
Scanned directories: 0
Scanned files: 8
Infected files: 0
Data scanned: 0.46 MB
Time: 1.696 sec (0 m 1 s)

WebImmune detects them. Extra.dat at:

https://www.webimmune.net/GetExtra.asp?Analysis=1751630

I submitted sample to http://www.clamav.net/sendvirus.html

Alex

-- 
Alex Pleiner                            zeitform Internet Dienste
mailto:[EMAIL PROTECTED]              Fraunhoferstra�e 5
PGP S/MIME: http://key.zeitform.de/ap   64283 Darmstadt, Germany
Tel./Fax: +49 (0) 6151 155-635 / -634   http://www.zeitform.de
Jabber: [EMAIL PROTECTED]
_______________________________________________
http://lurker.clamav.net/list/clamav-users.html

Reply via email to